Why is Egypt's Christian minority targeted? AL JAZEERA ENGLISH (AJE)(cached at April 9, 2017, 11:30 pm)

The twin church bombings which killed at least 48 worshippers were one of the deadliest in recent memory.
Domain Whitelisting With Alexa and Umbrella Lists - update, (Sun, Apr 9th) SANS Internet Storm Center, InfoCON: green(cached at April 9, 2017, 11:30 pm)

A was asked if I could share the files of my last diary entry: text-align:left">You can find the files on my">site here. And to teach you how to fish :-), here are the commands I used to produce these lists:

margin-right:0px">csv-cut.py -s \t 1 emd.txt text-align:left">My csv tools can be found on my text-align:left">My assumption when I read this blog post, was that the blacklisted domains would rank low in the Alexa and Umbrella lists. They don text-align:left">Conclusion: dont use Alexa and Umbrella top 1,000,000 lists as whitelists blindly, even if you just use the top 1000 or 10000.

Didier Stevens
Microsoft MVP Consumer Security
blog.DidierStevens.com DidierStevensLabs.com

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Domain Whitelisting With Alexa and Umbrella Lists - update, (Sun, Apr 9th) SANS Internet Storm Center, InfoCON: green(cached at April 9, 2017, 11:30 pm)

A was asked if I could share the files of my last diary entry: text-align:left">You can find the files on my">site here. And to teach you how to fish :-), here are the commands I used to produce these lists:

margin-right:0px">csv-cut.py -s \t 1 emd.txt text-align:left">My csv tools can be found on my text-align:left">My assumption when I read this blog post, was that the blacklisted domains would rank low in the Alexa and Umbrella lists. They don text-align:left">Conclusion: dont use Alexa and Umbrella top 1,000,000 lists as whitelists blindly, even if you just use the top 1000 or 10000.

Didier Stevens
Microsoft MVP Consumer Security
blog.DidierStevens.com DidierStevensLabs.com

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Domain Whitelisting With Alexa and Umbrella Lists - update, (Sun, Apr 9th) SANS Internet Storm Center, InfoCON: green(cached at April 9, 2017, 10:30 pm)

A was asked if I could share the files of my last diary entry: Domain Whitelisting With Alexa and Umbrella Lists.

You can find the files on my site here. And to teach you how to fish :-), here are the commands I used to produce these lists:

csv-cut.py -s \t 1 emd.txt blacklist.txt
csv-lookup.py -s , -e blacklist.txt 0 top-1m-umbrella.csv 1 0 blacklist-umbrella.csv
csv-lookup.py -s , -e blacklist.txt 0 top-1m-alexa.csv 1 0 blacklist-alexa.csv

My csv tools can be found on my Beta GitHub repository.

My assumption when I read this blog post, was that the blacklisted domains would rank low in the Alexa and Umbrella lists. They dont, look at the histograms of the rankings.

Blacklisted domains with Alexa rank:

Blacklisted domains with Umbrella rank:

These long tail distributions indicate that blacklisted domains with higher ranks are more prevalent than those with lower ranks. This is also reflected in the ranking average: 350553 for Alexa and 420846 for Umbrella.

Conclusion: dont use Alexa and Umbrella top 1,000,000 lists as whitelists blindly, even if you just use the top 1000 or 10000.

Didier Stevens
Microsoft MVP Consumer Security
blog.DidierStevens.com DidierStevensLabs.com

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Domain Whitelisting With Alexa and Umbrella Lists - update, (Sun, Apr 9th) SANS Internet Storm Center, InfoCON: green(cached at April 9, 2017, 10:30 pm)

A was asked if I could share the files of my last diary entry: Domain Whitelisting With Alexa and Umbrella Lists.

You can find the files on my site here. And to teach you how to fish :-), here are the commands I used to produce these lists:

csv-cut.py -s \t 1 emd.txt blacklist.txt
csv-lookup.py -s , -e blacklist.txt 0 top-1m-umbrella.csv 1 0 blacklist-umbrella.csv
csv-lookup.py -s , -e blacklist.txt 0 top-1m-alexa.csv 1 0 blacklist-alexa.csv

My csv tools can be found on my Beta GitHub repository.

My assumption when I read this blog post, was that the blacklisted domains would rank low in the Alexa and Umbrella lists. They dont, look at the histograms of the rankings.

Blacklisted domains with Alexa rank:

Blacklisted domains with Umbrella rank:

These long tail distributions indicate that blacklisted domains with higher ranks are more prevalent than those with lower ranks. This is also reflected in the ranking average: 350553 for Alexa and 420846 for Umbrella.

Conclusion: dont use Alexa and Umbrella top 1,000,000 lists as whitelists blindly, even if you just use the top 1000 or 10000.

Didier Stevens
Microsoft MVP Consumer Security
blog.DidierStevens.com DidierStevensLabs.com

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Mac-OSVersion-Lite-0.06 search.cpan.orgby Pine Mizune at January 1, 1970, 1:00 am (cached at April 9, 2017, 10:03 pm)

It's the lightweight version object for Mac OS X
Pcore-v0.29.0 search.cpan.orgby Dmytro Zagashev at January 1, 1970, 1:00 am (cached at April 9, 2017, 10:03 pm)

perl applications development environment
Jenkins-API-0.12 search.cpan.orgby Colin Newell at January 1, 1970, 1:00 am (cached at April 9, 2017, 10:03 pm)

A wrapper around the Jenkins API
DBIx-PivotQuery-0.01 search.cpan.orgby Max Maischein at January 1, 1970, 1:00 am (cached at April 9, 2017, 10:03 pm)

create pivot tables from queries
Test-Nginx-0.26 search.cpan.orgby Yichun Zhang (章亦春) at January 1, 1970, 1:00 am (cached at April 9, 2017, 10:03 pm)

Data-driven test scaffold for Nginx C module and Nginx/OpenResty-based libraries and applications
Five days in Perugia Scripting News(cached at April 9, 2017, 10:03 pm)

It's been interesting in Perugia with me being the designated rep of the open web.

Many many interesting conversations.

Facebook, Google and Amazon were everywhere. They paid for a lot of the conference.

I had a rollicking session. A real come to Jesus revival for the open web. We started two new rivers at the show. One by a very popular startup in the Netherlands that's coming to the US (the startup Jay Rosen was singing the praises of, rightfully) and one from a journalism class at an Italian university. I'll share more info when I have URLs to share.

At one session, I wondered if Twitter had ever considered buying a major news org. I know the party line on that was no, but I think with Twitter sort of stuck in the mud, if that might not be an interesting way to get unstuck. Consider that the valuation of Twitter is over three times that of the NYT, Twitter is still a much more efficient attractor of value than the news industry, even with it being in the doldrums, as it is (disclaimer I am a Twitter shareholder).

I met a lot of interesting people, and spent major time with some people I already knew. I saw Hossein Derakhshan for the first time since he spent six years in prison in Iran. Lots to say about that. He's an amazing guy.

And many others. Just starting to sort it out in my mind.

Basically, I achieved my goal and much more. I wanted to get new rivers going in journalism. One in publishing and one in J-school. Perfect. With a few more, I'll have the beginnings of a Tom Sawyer evangelism strategy going. And I have some excellent ideas on how to take Electric River to the next level. 

At next year's #ijf the goal is to have reps of the open web on every panel that Facebook and Google people are on. I think that's a reasonable goal. And yes, also to bring some of what we've learned to journalism conferences in the US.

Egypt declares state of emergency after church bombings AL JAZEERA ENGLISH (AJE)(cached at April 9, 2017, 10:00 pm)

President Abdel Fattah el-Sisi announces measure after two ISIL-claimed bombings at Coptic churches kill dozens.
Egypt declares state of emergency after church bombings AL JAZEERA ENGLISH (AJE)(cached at April 9, 2017, 10:00 pm)

President Abdel Fattah el-Sisi announces measure after two ISIL-claimed bombings at Coptic churches kill dozens.
This Week, Uber Panned Its Own Tech In Court And Got Banned From Italy (Forbes) SANS ISC SecNewsFeed(cached at April 9, 2017, 10:00 pm)

Net-Fritz-Phonebook-0.01 search.cpan.orgby Max Maischein at January 1, 1970, 1:00 am (cached at April 9, 2017, 8:03 pm)

manage the Fritz!Box phonebook from Perl