MISSION: Gather Intel
| Sunday, May 06, 2007 | Mark Orlando |

MISSION: Gather global security intelligence
EXECUTION TIME: 15 minutes
TOOLS: RSS feed aggregator of choice or customizable home page
Situational awareness is a key element of deploying and maintaining effective security measures. Part of that recurring effort should be intelligence gathering. Putting together a comprehensive list of security-related RSS feeds can be a great alternative to hitting numerous sites each day or trying to sift through busy “dashboard” pages. There are many great security related sites out there that support RSS; the key is not to add as many as you can, but rather to identify dependable sources of information that focus on issues pertinent to your mission. Here are some of our favorites:
Special Ops, of course! (Security how-to’s and news items)
URL: http://feeds.feedburner.com/SpecialOpsSecurity
SecuriTeam (Various security advisories and vulnerabilities)
URL: http://www.securiteam.com/securiteam.rss
TaoSecurity (Network Security Monitoring-centric postings by Richard Bejtlich)
URL: http://taosecurity.blogspot.com/feeds/posts/default
SANS Internet Storm Center (ISC Handlers diary, security items of note)
URL: http://isc.sans.org/rssfeed.xml
GeeKool (Another NSM-centric blog with an emphasis on technical information and how-to’s)
URL: http://geek00l.blogspot.com/feeds/posts/default
Zone-H (Emerging threats, defacements, items of note - Global)
URL: http://www.zone-h.org/index2.php?option=com_rss&no_html=1
Security Fix (Security news)
URL: http://blog.washingtonpost.com/securityfix/index.xml
Of course, there are many, many more, including several vendor blogs that actually have some pretty good info. Please add a comment with your favorites!




Absolutely essential!
http://dilbertblog.typepad.com