Category: General Information Security

  • Check Point R80.30 New Features

    Earlier this month, Check Point released version R80.30 of their Gaia operating system. A few of our favorite new features in R80.30 are as follows: Ability to import Cyber Intelligence Feeds to the Security Gateway using custom CSV and Structured Threat Information Expression (STIX) Enhanced visibility to “Malware DNA” analysis Multihop Ping and Multiple ISPs…

  • “404 cannot POST https…” after enabling ssl on Graylog

    I recently spent the better part of the day banging on a problem with a Graylog Virtual Machine Appliance (install guide here) after enabling SSL with the graylog-ctl enforce-ssl command. I was using a fresh download of the VM, v2.3.2. After reapplying the new configuration with graylog-ctl reconfigure, I was getting the error “Error –…

  • RDP and SMTP Authentication Failures

    I wanted to write a quick post after a few recent security experiences that I’ve had involving log monitoring and analysis…It turned out a little longer than expected as I trailed off down a few side streams of thought. Anyhow, I wanted to cover a few of the low/no cost important practices around security monitoring…