<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.honeynet.org" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Blog postings from honeynet.org</title>
 <link>http://www.honeynet.org/feed/blogfeed</link>
 <description></description>
 <language>en</language>
<item>
 <title>Malwr.com: powered by Cuckoo</title>
 <link>http://www.honeynet.org/node/808</link>
 <description>&lt;p&gt;We are proud and happy to announce that a new free malware analysis online service is born.&lt;/p&gt;
&lt;p&gt;Malwr.com is based on Cuckoo Sandbox, a project mentored by the Honeynet Project, sponsored by GSoC and developped by Claudio &quot;nex&quot; Guarnieri (@botherder), Dario Fernandes and Alessandro &quot;jekil&quot; Tanasi (@jekil). Malwr.com hosting is provided by ShadowServer.&lt;/p&gt;
&lt;p&gt;If you want to test Cuckoo&#039;s flavor before installing it or if you&#039;re too lazy to deploy your own sandbox, just go there ! :-)&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://malwr.com/&quot;&gt;http://malwr.com/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://cuckoobox.org/&quot;&gt;http://cuckoobox.org/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/node/808&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/212">malware sandbox cuckoo</category>
 <pubDate>Wed, 25 Jan 2012 10:29:26 -0600</pubDate>
 <dc:creator>guillaume.arcas</dc:creator>
 <guid isPermaLink="false">808 at http://www.honeynet.org</guid>
</item>
<item>
 <title>2012 Honeynet Project Security Workshop @ Facebook, Inc. - SF Bay Area, CA, USA - March 19th/20th 2012</title>
 <link>http://www.honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement</link>
 <description>&lt;p&gt;&lt;img src=&quot;/files/honeynet_sfbay_sticker_07-HIRES_border2.jpg&quot; style=&quot;float:right&quot; width=&quot;300px&quot;/&gt;&lt;br /&gt;
The Honeynet Project will hold its 2nd public security workshop at Facebook, Inc. in the San Francisco Bay Area. The workshop is going to be a two day event filled with technical presentations and hands-on tutorial training. On day 1 of the workshop, Honeynet Project members and Facebook will present on a wide range of information security topics: from honeypots and social networks to cybercrime and mobile malware. Day 2 will be a day of hands-on tutorial training. Our members will teach a total of 8 courses in forensics, honeypots, and visualization. For those who want to further hone their skills in a competitive setting, we will also host a capture-the-flag event on day 2.&lt;br/&gt;&lt;br /&gt;
Event details and registration information can be found at &lt;a href=&quot;https://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area&quot;&gt;https://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area&lt;/a&gt;. We hope to see you there!&lt;br /&gt;
&lt;/br&gt;&lt;br /&gt;
&lt;b&gt;Share: &lt;/b&gt;&lt;a href=&quot;http://www.facebook.com/sharer.php?u=http://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement&quot;&gt;&lt;img src=&quot;http://www.honeynet.org/files/images/facebook.gif&quot;/&gt;&lt;/a&gt; &lt;a href=&quot;http://twitter.com/home?status=http://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement&quot;&gt;&lt;img src=&quot;http://www.honeynet.org/files/images/twitter.gif&quot;/&gt;&lt;/a&gt; &lt;a href=&quot;http://digg.com/submit?phase=2&amp;amp;url=http://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement&quot;&gt;&lt;img src=&quot;http://www.honeynet.org/files/images/digg.gif&quot;/&gt;&lt;/a&gt; &lt;a href=&quot;http://del.icio.us/post?url=http://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement&quot;&gt;&lt;img src=&quot;http://www.honeynet.org/files/images/delicious.gif&quot;/&gt;&lt;/a&gt; &lt;a href=&quot;http://www.stumbleupon.com/submit?url=http://honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement&quot;&gt;&lt;img src=&quot;http://www.honeynet.org/files/images/stumbleupon.gif&quot;/&gt;&lt;/a&gt; &lt;g:plusone size=&quot;small&quot; annotation=&quot;none&quot;&gt;&lt;/g:plusone&gt;&lt;/p&gt;
&lt;p&gt;&lt;!-- Place this render call where appropriate --&gt;&lt;/p&gt;
&lt;script type=&quot;text/javascript&quot;&gt;
  (function() {
    var po = document.createElement(&#039;script&#039;); po.type = &#039;text/javascript&#039;; po.async = true;
    po.src = &#039;https://apis.google.com/js/plusone.js&#039;;
    var s = document.getElementsByTagName(&#039;script&#039;)[0]; s.parentNode.insertBefore(po, s);
  })();
&lt;/script&gt;&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/SecurityWorkshops/2012_SF_Bay_Area_Announcement&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/211">workshop 2012 facebook</category>
 <pubDate>Mon, 23 Jan 2012 22:16:15 -0600</pubDate>
 <dc:creator>christian.seifert</dc:creator>
 <guid isPermaLink="false">807 at http://www.honeynet.org</guid>
</item>
<item>
 <title>Cuckoo 0.3.1 released</title>
 <link>http://www.honeynet.org/node/796</link>
 <description>&lt;p&gt;Cuckoo Sandbox 0.3.1 has been released.&lt;/p&gt;
&lt;p&gt;The most interesting improvements include:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt; Extensive book guiding from setup to customization.
&lt;li&gt; Improved analysis results processing engine.
&lt;li&gt; Modular reporting engine with default HTML, TXT and JSON reports being generated.
&lt;li&gt; Minimal web server/interface that allows you to browse, search and view HTML reports.
&lt;li&gt; Introduction of support to URL submission.
&lt;li&gt; UDP connections extraction.
&lt;li&gt; A cool new logo. :-)
&lt;li&gt; A lot of other things you can find listed in the CHANGELOG file.
&lt;/ul&gt;
&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/node/796&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/210">cuckoo sandbox malware analysis</category>
 <pubDate>Tue, 03 Jan 2012 01:10:50 -0600</pubDate>
 <dc:creator>guillaume.arcas</dc:creator>
 <guid isPermaLink="false">796 at http://www.honeynet.org</guid>
</item>
<item>
 <title>Forensic Challenge 10 - &quot;Attack Visualization&quot; - Deadline Extended</title>
 <link>http://www.honeynet.org/node/795</link>
 <description>&lt;p&gt;Taking a look at the first submissions, it seems like more time is needed in order to solve the &lt;a href=&quot;http://www.honeynet.org/node/781&quot;&gt;Forensic Challenge 10 - &quot;Attack Visualization&quot;&lt;/a&gt;. For this reason we decided to extend the submission deadline to 2012, January 22th.&lt;/p&gt;
&lt;p&gt;Have fun!&lt;/p&gt;
&lt;p&gt;Angelo Dell&#039;Aera&lt;br /&gt;
The Honeynet Project&lt;/p&gt;
</description>
 <category domain="http://www.honeynet.org/taxonomy/term/120">Forensic Challenge</category>
 <pubDate>Mon, 19 Dec 2011 08:01:25 -0600</pubDate>
 <dc:creator>angelo.dellaera</dc:creator>
 <guid isPermaLink="false">795 at http://www.honeynet.org</guid>
</item>
<item>
 <title>HoneySpider Network Capture-HPC NG is out!</title>
 <link>http://www.honeynet.org/node/794</link>
 <description>&lt;p&gt;Client honeypots are tools that actively search servers for malicious data like malware, exploits, malicious PDF files, etc.&lt;/p&gt;
&lt;p&gt;The Polish Chapter just released a new version of Capture-HPC originally developed by Christian Seifert and Ramon Steenson of the New Zealand Chapter. Capture-HPC focuses primarily on attacks against, or involving the use of, Web browsers.&lt;/p&gt;
&lt;p&gt;It is available for download as binary Debian package on Polish Chapter webpage:&lt;br /&gt;
&lt;a href=&quot;http://pl.honeynet.org&quot;&gt;http://pl.honeynet.org&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Source code is made available via github:&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/node/794&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/209">capture-hpc honeyclient honeyspider</category>
 <pubDate>Wed, 07 Dec 2011 06:49:54 -0600</pubDate>
 <dc:creator>guillaume.arcas</dc:creator>
 <guid isPermaLink="false">794 at http://www.honeynet.org</guid>
</item>
<item>
 <title>A new Cuckoo hatched his egg!</title>
 <link>http://www.honeynet.org/node/793</link>
 <description>&lt;h4&gt;Overview&lt;/h4&gt;
&lt;p&gt;Cuckoo Sandbox is an Open Source automated dynamic malware analysis system designed to analyze and report on suspicious files.&lt;br /&gt;
Cuckoo started as a Google Summer of Code project in 2010 within The Honeynet Project. It was designed and developed by Claudio Guarnieri who still maintains the project and lead its development efforts.&lt;/p&gt;
&lt;p&gt;Cuckoo has been selected again this year for Google Summer of Code 2011 with The Honeynet Project and with Dario Fernandes who joined the team. The work being done in the last months lead to the release of the 0.2 version.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/node/793&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/208">dynamic malware analysis virtuaization cuckoo gsoc</category>
 <pubDate>Fri, 25 Nov 2011 06:09:43 -0600</pubDate>
 <dc:creator>guillaume.arcas</dc:creator>
 <guid isPermaLink="false">793 at http://www.honeynet.org</guid>
</item>
<item>
 <title>WireShnork - A Snort plugin for Wireshark</title>
 <link>http://www.honeynet.org/node/790</link>
 <description>&lt;p&gt;GSoC 2011 #8 project&#039;s goal was to add forensics features to the popular Wireshark network analyzer.&lt;/p&gt;
&lt;h3&gt;Overview&lt;/h3&gt;
&lt;p&gt;Wireshark is an open source network analyzer widely used for network debugging as well as security analysis. Wireshark provides network&lt;br /&gt;
analyzer with graphical interface as well as command line tools.&lt;br /&gt;
Wireshark also provides network protocol decoders and support filters that allow to search through packets with keywords.&lt;/p&gt;
&lt;p&gt;GSoC plugins extend Wireshark capabilities when Wireshark is used to analyze network traffic with security and forensic in mind.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/node/790&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/206">forensics</category>
 <category domain="http://www.honeynet.org/taxonomy/term/44">gsoc</category>
 <category domain="http://www.honeynet.org/taxonomy/term/205">snort</category>
 <category domain="http://www.honeynet.org/taxonomy/term/204">wireshark</category>
 <category domain="http://www.honeynet.org/taxonomy/term/207">wireshnork</category>
 <pubDate>Thu, 17 Nov 2011 01:43:45 -0600</pubDate>
 <dc:creator>guillaume.arcas</dc:creator>
 <guid isPermaLink="false">790 at http://www.honeynet.org</guid>
</item>
<item>
 <title>Android Reverse Engineering (A.R.E.) Virtual Machine available for download now!</title>
 <link>http://www.honeynet.org/node/783</link>
 <description>&lt;p&gt;The Honeynet Project is happy to announce the release of the Android Reverse Engineering (A.R.E.) Virtual Machine.&lt;/p&gt;
&lt;p&gt;Do you need to analyze a piece of Android malware, but dont have all your analysis tools at hand? The Android Reverse Engineering (A.R.E.) Virtual Machine, put together by Anthony Desnos from our French chapter, is here to help. A.R.E. combines the latest Android malware analysis tools in a readily accessible toolbox.&lt;/p&gt;
&lt;p&gt;Tools currently found on A.R.E. are:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Androguard&lt;/li&gt;
&lt;li&gt;Android sdk/ndk&lt;/li&gt;
&lt;li&gt;APKInspector&lt;/li&gt;
&lt;li&gt;Apktool&lt;/li&gt;
&lt;li&gt;Axmlprinter&lt;/li&gt;
&lt;p&gt;&lt;a href=&quot;http://www.honeynet.org/node/783&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <category domain="http://www.honeynet.org/taxonomy/term/188">android</category>
 <pubDate>Mon, 31 Oct 2011 22:11:20 -0500</pubDate>
 <dc:creator>christian.seifert</dc:creator>
 <guid isPermaLink="false">783 at http://www.honeynet.org</guid>
</item>
<item>
 <title>Forensic Challenge 10 - &quot;Attack Visualization&quot;</title>
 <link>http://www.honeynet.org/node/782</link>
 <description>&lt;p&gt;I am pleased to announce the next forensic challenge: &lt;a href=&quot;https://www.honeynet.org/node/781&quot;&gt;Forensic Challenge 10 - &quot;Attack Visualization&quot;&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The challenge has been created by Ben Reardon from Australia Chapter.&lt;/p&gt;
&lt;p&gt;Submission deadline is December 18th and we will be announcing winners around the last week of January 2012. We have a few small prizes for the top three submissions.&lt;/p&gt;
&lt;p&gt;Have fun!&lt;/p&gt;
&lt;p&gt;Angelo Dell&#039;Aera&lt;br /&gt;
The Honeynet Project&lt;/p&gt;
</description>
 <category domain="http://www.honeynet.org/taxonomy/term/120">Forensic Challenge</category>
 <pubDate>Mon, 31 Oct 2011 17:47:17 -0500</pubDate>
 <dc:creator>angelo.dellaera</dc:creator>
 <guid isPermaLink="false">782 at http://www.honeynet.org</guid>
</item>
<item>
 <title>Forensic Challenge 9 – “Mobile Malware” - And the winners are...</title>
 <link>http://www.honeynet.org/node/780</link>
 <description>&lt;p&gt;Folks,&lt;br /&gt;
Frank, Mahmud, Azizan and Matt have judged all submissions and results have been posted on the &lt;a href=&quot;https://www.honeynet.org/node/751&quot;&gt;challenge web site&lt;/a&gt;. The winners are:&lt;/p&gt;
&lt;p&gt;1. Emilien Girault&lt;br /&gt;
2. Yuhao Luo, Wenbo Yang and Juanru Li&lt;br /&gt;
3. José Lopes Esteves&lt;/p&gt;
&lt;p&gt;Really congratulations to the winners and thanks to the other partecipants.&lt;/p&gt;
&lt;p&gt;Stay tuned because a new challenge is going to start in the next hours!&lt;/p&gt;
&lt;p&gt;Angelo Dell&#039;Aera&lt;br /&gt;
The Honeynet Project&lt;/p&gt;
</description>
 <pubDate>Mon, 31 Oct 2011 04:26:05 -0500</pubDate>
 <dc:creator>angelo.dellaera</dc:creator>
 <guid isPermaLink="false">780 at http://www.honeynet.org</guid>
</item>
</channel>
</rss>

