Recent Posts
- TYPO3 t3extplorer – path traversal
- {Quick Post} More fun with Python ctypes – InternetConnectedState
- {Quick Post} Fun with Python ctypes – simpleicmp
- {book review} The Tangled Web
- ShmooCon 2012: Raising The White Flag
- ShmooCon 2012: Java backdoors and Cross Framework Abuse
- SANS Germany 2012
- Eurotrashsec… the year that was!
- Unsung heros
- The CSRF that almost was…
Archives
@ChrisJohnRiley
- Right now, somewhere out there, the designer of the Samsung Note is nodding in agreement --> http://t.co/EqI1GJ3v #Dilbert 2 hours ago
- I suggest we replace the term "like taking candy from a baby" and replace it with "like bypassing AV"... same thing really ;) 3 hours ago
- [Blog SPAM] TYPO3 t3extplorer – path traversal http://t.co/JkeiOkZZ #security #directorytraversal #t3extplorer 4 hours ago
- Previous tweet was from the InfoSecLeaders 2011 Survey: The Value of Certifications--> http://t.co/Zs1StWqw (sign-up required) 4 hours ago
- "...25% go so far as to say that, without the CISSP, you shouldn’t be recognized as a security professional" Wow... #FullOfThemselves 4 hours ago
- [SuggestedReading] The perils of auto-configuring IP webcams (via @digininja) http://t.co/3587KQAd 5 hours ago
Flickr Photos
|
Links
Disclaimer
The contents of this personal blog are solely my own opinions and comments, as such they do not reflect the opinions of my employer(s) past, present or future. No legal liability is accepted for anything you do, think, or consider fact as the basis of articles and links posted on this blog.
"Three to one...two...one...probability factor of one to one...we have normality, I repeat we have normality. Anything you still can’t cope with is therefore your own problem."
Note: A large portion of content I post on my blog comes from "live blogging" of security conferences. These posts are in notes form and are written live during a talk. As such errors and emissions are expected. I'm only human after all!





What about pulling out referrers as well? May as well while you are at it.
It’s a thought…. was going to maybe look at the user agent strings too
Added support for extracting basic auth usernames in 0.4
If you pull out the time and date it happened and the response code you could probably create a set of Apache logs
OMG… you’re so right…
I could just open the logfile…. and print out each line to the screen, Maybe throw some colours in for good measure