<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Information Systems Auditing</title>
	<atom:link href="http://www.jedge.com/wordpress/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.jedge.com/wordpress</link>
	<description></description>
	<lastBuildDate>Mon, 30 Jan 2012 14:14:42 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Linux Penetration Testing Laptop Setup v4 (Ubuntu 11.4 Natty Narwhal)</title>
		<link>http://www.jedge.com/wordpress/2011/09/linux-penetration-testing-laptop-setup-v4-ubuntu-11-4-natty-narwhal/</link>
		<comments>http://www.jedge.com/wordpress/2011/09/linux-penetration-testing-laptop-setup-v4-ubuntu-11-4-natty-narwhal/#comments</comments>
		<pubDate>Tue, 20 Sep 2011 03:46:30 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Configuration Tutorials]]></category>
		<category><![CDATA[Aircrack]]></category>
		<category><![CDATA[Configuration]]></category>
		<category><![CDATA[Database]]></category>
		<category><![CDATA[Hydra]]></category>
		<category><![CDATA[Install]]></category>
		<category><![CDATA[John the Ripper]]></category>
		<category><![CDATA[JtR]]></category>
		<category><![CDATA[kismet]]></category>
		<category><![CDATA[Laptop]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[Nessus]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Ubuntu]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=440</guid>
		<description><![CDATA[I’m now providing an updated Linux Penetration Testing Laptop Setup document to help install popular and useful vulnerability assessment tools for the Linux operating system. You can go and obtain Backtrack but I feel that you will have more understanding of the tools and Linux in general if you install the tools yourself. You will <a href='http://www.jedge.com/wordpress/2011/09/linux-penetration-testing-laptop-setup-v4-ubuntu-11-4-natty-narwhal/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>I’m now providing an updated Linux Penetration Testing Laptop Setup document to help install popular and useful vulnerability assessment tools for the Linux operating system. You can go and obtain <a href="../category/configuration/www.backtrack-linux.org/">Backtrack</a> but I feel that you will have more understanding of the tools and Linux in general if you install the tools yourself. You will also have the most current version available. See <a title="Configuration Tutorials Page" href="http://www.jedge.com/wordpress/configuration-tutorials/">Configuration Tutorials</a> for the latest document.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/09/linux-penetration-testing-laptop-setup-v4-ubuntu-11-4-natty-narwhal/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Nokia N810 &#8211; Wireless Auditing</title>
		<link>http://www.jedge.com/wordpress/2011/09/nokia-n810-wireless-auditing/</link>
		<comments>http://www.jedge.com/wordpress/2011/09/nokia-n810-wireless-auditing/#comments</comments>
		<pubDate>Thu, 08 Sep 2011 12:52:14 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Configuration Tutorials]]></category>
		<category><![CDATA[Installing & Using Tools]]></category>
		<category><![CDATA[Using the Tools]]></category>
		<category><![CDATA[aircrack-ng]]></category>
		<category><![CDATA[auditing]]></category>
		<category><![CDATA[btscanner]]></category>
		<category><![CDATA[gps]]></category>
		<category><![CDATA[kismet]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=428</guid>
		<description><![CDATA[I created a tutorial on how to setup and configure the Nokia N810 Internet Tablet to conduct a wireless assessment or audit. The tools included in the tutorial include how to setup kismet (oldcore and newcore), aircrack-ng (airbase and aircrack), and btscanner. I&#8217;m still working on developing steps to install Metasploit and Karmetasploit for wireless <a href='http://www.jedge.com/wordpress/2011/09/nokia-n810-wireless-auditing/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>I created a tutorial on how to setup and configure the Nokia N810 Internet Tablet to conduct a wireless assessment or audit. The tools included in the tutorial include how to setup kismet (oldcore and newcore), aircrack-ng (airbase and aircrack), and btscanner. I&#8217;m still working on developing steps to install Metasploit and Karmetasploit for wireless client attacks. The tutorial also details using the internal GPS as well as adding an external wireless adapter. The latest version of the tutorial can be found <a href="http://www.jedge.com/docs/Nokia%20N810%20-%20Wireless%20Auditing.pdf">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/09/nokia-n810-wireless-auditing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ISACA Atlanta Chapter &#8211; GEEK WEEK 2011</title>
		<link>http://www.jedge.com/wordpress/2011/08/isaca-atlanta-chapter-geek-week-2011/</link>
		<comments>http://www.jedge.com/wordpress/2011/08/isaca-atlanta-chapter-geek-week-2011/#comments</comments>
		<pubDate>Wed, 24 Aug 2011 01:42:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[FYI]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=422</guid>
		<description><![CDATA[The 4th annual  Atlanta Chapter of ISACA GEEK WEEK conference was held the week of August 22nd &#8211; 26th.  GEEK WEEK is a track-oriented, full week Conference focusing on providing training, networking, and roundtable sessions on IT governance, audit &#38; security. I conducted the presentation Wireless Auditing on a Budget:  Using Low Cost Hardware and <a href='http://www.jedge.com/wordpress/2011/08/isaca-atlanta-chapter-geek-week-2011/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.jedge.com/wordpress/wp-content/uploads/2011/08/geek.week.jpg"><img class="alignleft size-thumbnail wp-image-423" style="margin: 5px;" title="geek week logo-c-noborder" src="http://www.jedge.com/wordpress/wp-content/uploads/2011/08/geek.week.jpg" alt="Atlanta Chapter of ISACA GEEK WEEK 2011" width="226" height="103" /></a>The 4th annual  Atlanta Chapter of ISACA GEEK WEEK conference was held the week of August 22nd &#8211; 26th.  GEEK WEEK is a track-oriented, full week Conference focusing on providing training, networking, and roundtable sessions on IT governance, audit &amp; security.</p>
<p>I conducted the presentation Wireless Auditing on a Budget:  Using Low Cost Hardware and Open Source Software.  You can find the presentation slides <a href="http://www.jedge.com/docs/Wireless%20Auditing%20on%20a%20Budget.pdf" target="_blank">here</a>.  For links and information on the other presentations you can go <a href="http://www.isaca-atlanta.org/events/GeekWeek/geekweek2011.htm" target="_blank">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/08/isaca-atlanta-chapter-geek-week-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SNMP Assessment Worksheet</title>
		<link>http://www.jedge.com/wordpress/2011/06/snmp-assessment-worksheet/</link>
		<comments>http://www.jedge.com/wordpress/2011/06/snmp-assessment-worksheet/#comments</comments>
		<pubDate>Tue, 07 Jun 2011 23:50:35 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Configuration Tutorials]]></category>
		<category><![CDATA[Installing & Using Tools]]></category>
		<category><![CDATA[Scripts]]></category>
		<category><![CDATA[Using the Tools]]></category>
		<category><![CDATA[SNMP]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=380</guid>
		<description><![CDATA[I put together another Technical Assessment Plan for assessing the SNMP protocol.  You will use open source and freely download-able utilities to assess the SNMP protocol.  This is for auditors that do not have access to or cannot afford the Solarwinds toolset.  This is version 0.1 of the document and I plan on making updates <a href='http://www.jedge.com/wordpress/2011/06/snmp-assessment-worksheet/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>I put together another<a title="Technical Assessment Plans" href="http://www.jedge.com/wordpress/?page_id=210"> Technical Assessment Plan</a> for assessing the <a title="SNMP Assessment Worksheet" href="http://www.jedge.com/docs/SNMP%20Assessment%20Worksheet.docx" target="_blank">SNMP protocol</a>.  You will use open source and freely download-able utilities to assess the SNMP  protocol.  This is for auditors that do not have access to or cannot  afford the Solarwinds toolset.  This is version 0.1 of the document and I  plan on making updates and add new tools in the future.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/06/snmp-assessment-worksheet/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>LAMP setup for .nessus v2 custom report generation.</title>
		<link>http://www.jedge.com/wordpress/2011/05/lamp-setup-for-nessus-v2-custom-report-generation/</link>
		<comments>http://www.jedge.com/wordpress/2011/05/lamp-setup-for-nessus-v2-custom-report-generation/#comments</comments>
		<pubDate>Mon, 02 May 2011 18:15:56 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Installing & Using Tools]]></category>
		<category><![CDATA[Scripts]]></category>
		<category><![CDATA[Appliance]]></category>
		<category><![CDATA[executive report]]></category>
		<category><![CDATA[framework]]></category>
		<category><![CDATA[kismet]]></category>
		<category><![CDATA[LAMP]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Nessus]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[Project RF]]></category>
		<category><![CDATA[reports]]></category>
		<category><![CDATA[Turn Key]]></category>
		<category><![CDATA[VirtualBox]]></category>
		<category><![CDATA[VMWare]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=373</guid>
		<description><![CDATA[I created Project RF to have a reporting framework that provides  consistent reports for various vulnerability scanning tools.  The  project started with support for Nessus back when I would parse nbe files.   I’ve  since included reporting for eEye Retina, Nmap, HP WebInpect,  AppScan AppDetective,  Kismet, and GFI Languard.  This project is still in its <a href='http://www.jedge.com/wordpress/2011/05/lamp-setup-for-nessus-v2-custom-report-generation/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>I created Project RF to have a reporting framework that  provides  consistent reports for various vulnerability scanning tools.   The  project started with support for Nessus back when I would parse nbe  files.   I’ve  since included reporting for eEye Retina, Nmap, HP  WebInpect,  AppScan AppDetective,  Kismet, and GFI Languard.  This  project is still in its alpha stages as  I’m not a top notch web program  developer.  Scan results are exported to  XML which is then uploaded,  parsed, and imported into a backend MySQL  database.  I have found this  framework very useful in generating reports  for my workpapers.  I still  continue to work on this project even though I&#8217;m no longer an auditor.   Recently I stripped it down to just Nessus and I rewrote the  Nessus portion to support the .nesses v2 xml output.  Installation and setup instructions can be found <a href="http://www.jedge.com/docs/install%20Project%20RF.pdf">here</a>.</p>
<p>This framework supports many options for report generation and executive reporting.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/05/lamp-setup-for-nessus-v2-custom-report-generation/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Kennesaw &#8211; ISA 4220 Students</title>
		<link>http://www.jedge.com/wordpress/2011/03/isa-4220-students/</link>
		<comments>http://www.jedge.com/wordpress/2011/03/isa-4220-students/#comments</comments>
		<pubDate>Wed, 30 Mar 2011 14:17:21 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[FYI]]></category>
		<category><![CDATA[Kennesaw]]></category>
		<category><![CDATA[Linux Hardening]]></category>
		<category><![CDATA[Presentation]]></category>
		<category><![CDATA[University]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=324</guid>
		<description><![CDATA[Students from ISA 4220 Server Systems Security can download the PowerPoint presentation from here.]]></description>
			<content:encoded><![CDATA[<p>Students from ISA 4220 Server Systems Security can download the PowerPoint presentation from <a href="http://www.jedge.com/docs/Assessing%20Vulnerabilities.pptx">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/03/isa-4220-students/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Linux Penetration Testing Laptop Setup v3.5</title>
		<link>http://www.jedge.com/wordpress/2011/03/linux-penetration-testing-laptop-setup-v3-5/</link>
		<comments>http://www.jedge.com/wordpress/2011/03/linux-penetration-testing-laptop-setup-v3-5/#comments</comments>
		<pubDate>Wed, 30 Mar 2011 13:39:40 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Configuration Tutorials]]></category>
		<category><![CDATA[Aircrack]]></category>
		<category><![CDATA[Configuration]]></category>
		<category><![CDATA[Database]]></category>
		<category><![CDATA[Hydra]]></category>
		<category><![CDATA[Install]]></category>
		<category><![CDATA[John the Ripper]]></category>
		<category><![CDATA[JtR]]></category>
		<category><![CDATA[kismet]]></category>
		<category><![CDATA[Laptop]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[Nessus]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Ubuntu]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=321</guid>
		<description><![CDATA[I&#8217;m now providing an updated Linux Penetration Testing Laptop Setup document to help install popular and useful vulnerability assessment tools for the Linux operating system. You can go and obtain Backtrack but I feel that you will have more understanding of the tools and Linux in general if you install the tools yourself. You will <a href='http://www.jedge.com/wordpress/2011/03/linux-penetration-testing-laptop-setup-v3-5/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m now providing an updated Linux Penetration Testing Laptop Setup document to help install popular and useful vulnerability assessment tools for the Linux operating system. You can go and obtain <a href="www.backtrack-linux.org/">Backtrack</a> but I feel that you will have more understanding of the tools and Linux in general if you install the tools yourself. You will also have the most current version available. See <a href="http://www.jedge.com/wordpress/?page_id=8">Configuration Tutorials</a> for the latest document.</p>
<p>Update:  The latest version is now v4 on Ubuntu 11.4 Natty Narhwal.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/03/linux-penetration-testing-laptop-setup-v3-5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>External Fingerprinting Worksheet</title>
		<link>http://www.jedge.com/wordpress/2011/02/external-fingerprinting-worksheet/</link>
		<comments>http://www.jedge.com/wordpress/2011/02/external-fingerprinting-worksheet/#comments</comments>
		<pubDate>Fri, 25 Feb 2011 02:46:31 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Configuration Tutorials]]></category>
		<category><![CDATA[Installing & Using Tools]]></category>
		<category><![CDATA[Scripts]]></category>
		<category><![CDATA[Using the Tools]]></category>
		<category><![CDATA[Assessment]]></category>
		<category><![CDATA[Audit]]></category>
		<category><![CDATA[Configuration]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[onesixtyone]]></category>
		<category><![CDATA[SNMP]]></category>
		<category><![CDATA[snmpenum.pl]]></category>
		<category><![CDATA[snmpwalk]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Tutorials]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=310</guid>
		<description><![CDATA[I put together a Technical Assessment Plan that can be used to conduct external fingerprinting using the tools and utilities that a penetration tester would use.  The assessment plans are structured in a way to help with the documentation of evidence for inclusion in a work-paper process.  The plan provides helpful information on how to <a href='http://www.jedge.com/wordpress/2011/02/external-fingerprinting-worksheet/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>I put together a Technical Assessment Plan that can be used to  conduct external fingerprinting using the tools and utilities that a penetration  tester would use.  The assessment plans are structured in a way to help  with the documentation of evidence for inclusion in a work-paper  process.  The plan provides helpful information on how to install,  configure, and use the tools to obtain the evidence needed for an  engagement.  The Technical Assessment Plans that I have created can be found <a href="http://www.jedge.com/wordpress/?page_id=210">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/02/external-fingerprinting-worksheet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Earning CPE credits in a down economy.</title>
		<link>http://www.jedge.com/wordpress/2011/01/earning-cpe-credits-in-a-down-economy/</link>
		<comments>http://www.jedge.com/wordpress/2011/01/earning-cpe-credits-in-a-down-economy/#comments</comments>
		<pubDate>Tue, 25 Jan 2011 19:18:30 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[FYI]]></category>
		<category><![CDATA[CPE]]></category>
		<category><![CDATA[Education]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=270</guid>
		<description><![CDATA[Earning CPE credits in a down economy for your Information Security certifications. As we enter 2011 the financial talking heads say that our economy is recovering.  However, your company’s training budget does not reflect this recovery.  Trips to security conferences in Las Vegas, Miami, and Orlando are all out of the question.  With all of <a href='http://www.jedge.com/wordpress/2011/01/earning-cpe-credits-in-a-down-economy/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>Earning CPE credits in a down economy for your Information Security certifications.</p>
<p>As we enter 2011 the financial talking heads say that our economy is recovering.  However, your company’s training budget does not reflect this recovery.  Trips to security conferences in Las Vegas, Miami, and Orlando are all out of the question.  With all of the information security certifications that you have obtained to keep competitive in this tough economy you are required to earn Continuing Professional Education (CPE) credits.  Below I will list some simple steps you can take to still keep current on the latest security trends while earning those valuable CPE credits to maintain your certification.</p>
<p><a href="http://www.jedge.com/wordpress/?page_id=273" target="_self">Read more…</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2011/01/earning-cpe-credits-in-a-down-economy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Stand-Alone Tools and Utilities</title>
		<link>http://www.jedge.com/wordpress/2010/08/stand-alone-tools-and-utilities/</link>
		<comments>http://www.jedge.com/wordpress/2010/08/stand-alone-tools-and-utilities/#comments</comments>
		<pubDate>Wed, 01 Sep 2010 00:31:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Installing & Using Tools]]></category>
		<category><![CDATA[Command Line]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Stand-Alone]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.jedge.com/wordpress/?p=261</guid>
		<description><![CDATA[A question was raised today during a presentation about what utilities you can use without installing them. There are engagements that the auditor is not allowed to use their own laptop and must use a laptop provided by the auditee. This severely limits how effective an engagement can be but it is not impossible to <a href='http://www.jedge.com/wordpress/2010/08/stand-alone-tools-and-utilities/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>A question was raised today during a presentation about what utilities you can use without installing them.  There are engagements that the auditor is not allowed to use their own laptop and must use a laptop provided by the auditee.  This severely limits how effective an engagement can be but it is not impossible to obtain the information you need when you connect to the auditee&#8217;s network.  I&#8217;ve made changes to the <a href="http://www.jedge.com/wordpress/?page_id=72">Security Tools</a> page to highlight which tools are stand-alone and do not require installation.  Also for reference see <a href="http://www.jedge.com/wordpress/?p=82">Penetration Testing Ninjitsu</a> which I pulled from a Core Security webcast.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.jedge.com/wordpress/2010/08/stand-alone-tools-and-utilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

