<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Dragan on Security &#187; Software Security</title>
	<atom:link href="http://www.conwex.info/blog/index.php/category/software-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.conwex.info/blog</link>
	<description>Security Blog: Computers, Information and Communication Technology</description>
	<lastBuildDate>Thu, 05 Jan 2012 13:23:42 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.4</generator>
		<item>
		<title>Wireless Intrusion Detection and Prevention Systems</title>
		<link>http://www.conwex.info/blog/index.php/2009/06/13/wireless-intrusion-detection-and-prevention-systems/</link>
		<comments>http://www.conwex.info/blog/index.php/2009/06/13/wireless-intrusion-detection-and-prevention-systems/#comments</comments>
		<pubDate>Sat, 13 Jun 2009 09:17:10 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Intrusion Detection / Prevention Systems]]></category>
		<category><![CDATA[Mobile / Cellular / Bluetooth]]></category>
		<category><![CDATA[Security Research]]></category>
		<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Tools and Utilities]]></category>
		<category><![CDATA[Wireless Security]]></category>
		<category><![CDATA[ACSAC]]></category>
		<category><![CDATA[Agent]]></category>
		<category><![CDATA[AI]]></category>
		<category><![CDATA[artificial intelligence]]></category>
		<category><![CDATA[Console]]></category>
		<category><![CDATA[fuzzy logic]]></category>
		<category><![CDATA[investment]]></category>
		<category><![CDATA[Management]]></category>
		<category><![CDATA[neural networks]]></category>
		<category><![CDATA[Reporting]]></category>
		<category><![CDATA[Sensor]]></category>
		<category><![CDATA[Server]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[WIDS]]></category>
		<category><![CDATA[WIPS]]></category>
		<category><![CDATA[Wireless Intrusion Detection Systems]]></category>
		<category><![CDATA[Wireless Intrusion Prevention Systems]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=528</guid>
		<description><![CDATA[After quite some time of silence regarding my work on Wireless Intrusion Detection and Prevention Systems (WIDS / WIPS), I’m considering continuing that work. In past I have done research, published couple of papers on this topic at conferences and journals and also created concept, basic architecture and design of system and products. This possible “reactivating” of work is particularly pushed by recent interest of companies, organizations and institutions including commercial, government etc, and requirements of many production environments. 

This is just brief description. If you are interested in more details or want to consider contribution or investment into this development send me e-mail. <a href="http://www.conwex.info/blog/index.php/2009/06/13/wireless-intrusion-detection-and-prevention-systems/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2009/06/13/wireless-intrusion-detection-and-prevention-systems/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Tricked by Wrong PDFCreator Publisher</title>
		<link>http://www.conwex.info/blog/index.php/2009/01/23/tricked-by-wrong-pdfcreator-publisher/</link>
		<comments>http://www.conwex.info/blog/index.php/2009/01/23/tricked-by-wrong-pdfcreator-publisher/#comments</comments>
		<pubDate>Fri, 23 Jan 2009 14:10:03 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Internet Security]]></category>
		<category><![CDATA[Software Security]]></category>
		<category><![CDATA[PDFCreator]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=460</guid>
		<description><![CDATA[You probably need to print your files to PDF format sometimes. You can use Adobe Acrobat for this purpose, but it costs some significant amount of money. If your requirements are not to strong, you can use free open source version named PDFCreator.

PDFCreator is a free tool to create PDF files from nearly any Windows application. Real PDFCreator Web site is: http://www.pdfforge.org/products/pdfcreator. I have been using it for quite some time and it is really good tool. Easy to use and pretty fast, it satisfies most of my needs regarding creating PDF files i.e. printing to PDF from various programs which I use.

But there are some impostors on the Internet. So, be careful, very careful when downloading open source software, as many impostors use well known names and its variations to trick people and then to take many.
 <a href="http://www.conwex.info/blog/index.php/2009/01/23/tricked-by-wrong-pdfcreator-publisher/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2009/01/23/tricked-by-wrong-pdfcreator-publisher/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Security Quiz: Test Your Security IQ</title>
		<link>http://www.conwex.info/blog/index.php/2008/10/30/security-quiz-test-your-security-iq/</link>
		<comments>http://www.conwex.info/blog/index.php/2008/10/30/security-quiz-test-your-security-iq/#comments</comments>
		<pubDate>Thu, 30 Oct 2008 22:05:03 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Bryan Sullivan]]></category>
		<category><![CDATA[IQ]]></category>
		<category><![CDATA[Michael Howard]]></category>
		<category><![CDATA[Security Quiz]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=436</guid>
		<description><![CDATA[Michael Howard and Bryan Sullivan wrote a couple of articles for this month's MSDN Magazine. One of them is Test Your Security IQ. It’s chance for you to take the challenge. <a href="http://www.conwex.info/blog/index.php/2008/10/30/security-quiz-test-your-security-iq/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2008/10/30/security-quiz-test-your-security-iq/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Edgios or will new Google come from Serbia!?</title>
		<link>http://www.conwex.info/blog/index.php/2008/10/20/edgios-or-will-new-google-come-from-serbia/</link>
		<comments>http://www.conwex.info/blog/index.php/2008/10/20/edgios-or-will-new-google-come-from-serbia/#comments</comments>
		<pubDate>Mon, 20 Oct 2008 13:23:40 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Internet Security]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Security Research]]></category>
		<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Belgrade]]></category>
		<category><![CDATA[Borislav Agapiev]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[Edgios]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[large-scale distributed search]]></category>
		<category><![CDATA[search]]></category>
		<category><![CDATA[Serbia]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=412</guid>
		<description><![CDATA[Edgios is a large-scale distributed search 'cloud' that offers higher-quality search results. Users participate in the cloud by downloading the Edgios personal search software, and connecting that software to the net.  <a href="http://www.conwex.info/blog/index.php/2008/10/20/edgios-or-will-new-google-come-from-serbia/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2008/10/20/edgios-or-will-new-google-come-from-serbia/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>MD5 Collisions</title>
		<link>http://www.conwex.info/blog/index.php/2008/07/01/md5-collision/</link>
		<comments>http://www.conwex.info/blog/index.php/2008/07/01/md5-collision/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 15:46:46 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Security Research]]></category>
		<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Threats, Vulnerabilities, Attacks]]></category>
		<category><![CDATA[attach]]></category>
		<category><![CDATA[collisions]]></category>
		<category><![CDATA[Hash]]></category>
		<category><![CDATA[Hongbo Yu]]></category>
		<category><![CDATA[MD5]]></category>
		<category><![CDATA[tool]]></category>
		<category><![CDATA[Xiaoyun Wang]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=390</guid>
		<description><![CDATA[It seems that bad days came for MD5 and those who based hashes on it. It is possible to create two executable programs with different functionalities with identical MD5 hash. Therefore, it is possible to create malicious executable which has &#8230; <a href="http://www.conwex.info/blog/index.php/2008/07/01/md5-collision/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2008/07/01/md5-collision/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Michael Howard from Microsoft Analyzes Recent Symantec and IBM Vulnerabilities</title>
		<link>http://www.conwex.info/blog/index.php/2008/01/05/michael-howard-from-microsoft-analyzes-recent-symantec-and-ibm-vulnerabilities/</link>
		<comments>http://www.conwex.info/blog/index.php/2008/01/05/michael-howard-from-microsoft-analyzes-recent-symantec-and-ibm-vulnerabilities/#comments</comments>
		<pubDate>Sat, 05 Jan 2008 10:23:16 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Threats, Vulnerabilities, Attacks]]></category>
		<category><![CDATA[IBM]]></category>
		<category><![CDATA[Michael Howard]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[SDL]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[Vulnerabilitites]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/index.php/2008/01/05/michael-howard-from-microsoft-analyzes-recent-symantec-and-ibm-vulnerabilities/</guid>
		<description><![CDATA[One of main persons behind Microsoft SDL, Michael Howard analyzes recent Symantec and IBM Vulnerabilities in his post on MSDN SDL blog. Michael says: The vulnerabilities are not in Symantec code, yet Symantec customers are still open to attack. The &#8230; <a href="http://www.conwex.info/blog/index.php/2008/01/05/michael-howard-from-microsoft-analyzes-recent-symantec-and-ibm-vulnerabilities/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2008/01/05/michael-howard-from-microsoft-analyzes-recent-symantec-and-ibm-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Top 100 Network Security Tools</title>
		<link>http://www.conwex.info/blog/index.php/2007/12/19/top-100-network-security-tools/</link>
		<comments>http://www.conwex.info/blog/index.php/2007/12/19/top-100-network-security-tools/#comments</comments>
		<pubDate>Wed, 19 Dec 2007 11:20:26 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Tools and Utilities]]></category>
		<category><![CDATA[insecure.org]]></category>
		<category><![CDATA[network security tools]]></category>
		<category><![CDATA[top 100]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/index.php/2007/12/19/top-100-network-security-tools/</guid>
		<description><![CDATA[Insecure.org has Top 100 Network Security Tools list. Author says: Anyone in the security field would be well advised to go over the list and investigate tools they are unfamiliar with. I discovered several powerful new tools this way. I also &#8230; <a href="http://www.conwex.info/blog/index.php/2007/12/19/top-100-network-security-tools/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2007/12/19/top-100-network-security-tools/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ophcrack &#8211; Rainbow Tables Based Password Cracker</title>
		<link>http://www.conwex.info/blog/index.php/2007/09/17/ophcrack-rainbow-tables-based-password-cracker/</link>
		<comments>http://www.conwex.info/blog/index.php/2007/09/17/ophcrack-rainbow-tables-based-password-cracker/#comments</comments>
		<pubDate>Mon, 17 Sep 2007 21:16:10 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Operating Systems and Application Security]]></category>
		<category><![CDATA[Security Research]]></category>
		<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Tools and Utilities]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=318</guid>
		<description><![CDATA[If you think your passwords are strong enough, think twice. They are probably not. Ophcrack is a Windows password cracker based on rainbow tables. It is a very efficient implementation of rainbow tables done by the inventors of the method. It comes with &#8230; <a href="http://www.conwex.info/blog/index.php/2007/09/17/ophcrack-rainbow-tables-based-password-cracker/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2007/09/17/ophcrack-rainbow-tables-based-password-cracker/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Application Verifier</title>
		<link>http://www.conwex.info/blog/index.php/2007/09/06/application-verifier/</link>
		<comments>http://www.conwex.info/blog/index.php/2007/09/06/application-verifier/#comments</comments>
		<pubDate>Thu, 06 Sep 2007 11:27:47 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Software Security]]></category>
		<category><![CDATA[Tools and Utilities]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=314</guid>
		<description><![CDATA[Application Verifier is nice tool, designed in Microsoft, specifically to detect and help debug memory corruptions and critical security vulnerabilities. It makes it easier to create reliable applications by monitoring an application&#8217;s interaction with the Windows operating system, profiling its &#8230; <a href="http://www.conwex.info/blog/index.php/2007/09/06/application-verifier/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2007/09/06/application-verifier/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Ethics of Perfection</title>
		<link>http://www.conwex.info/blog/index.php/2007/08/29/the-ethics-of-perfection/</link>
		<comments>http://www.conwex.info/blog/index.php/2007/08/29/the-ethics-of-perfection/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 08:56:01 +0000</pubDate>
		<dc:creator>Dragan Pleskonjic</dc:creator>
				<category><![CDATA[Security Research]]></category>
		<category><![CDATA[Software Security]]></category>

		<guid isPermaLink="false">http://www.conwex.info/blog/?p=312</guid>
		<description><![CDATA[Interesting blog post from Steve Lipner: The Security Development Lifecycle : The Ethics of Perfection. He says in conclusion: What does all this have to do with ethics?  Well, I think that given the choice between shipping perfectly secure software (whatever &#8230; <a href="http://www.conwex.info/blog/index.php/2007/08/29/the-ethics-of-perfection/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
		<wfw:commentRss>http://www.conwex.info/blog/index.php/2007/08/29/the-ethics-of-perfection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

