Web Security Dojo v1.0 release
Web Security Dojo is a turnkey web application security lab with tools, targets, and training materials built into a Virtual Machine(VM). It is ideal for both self-instruction and training classes since everything is pre-configured and no external network connection is needed. All tools and targets are configured to use non-conflicting ports and a Firefox proxy switcher is set up to match.
Web Security Dojo is an open source project built on Ubuntu and hosted at SourceForge. It is available in three flavors: a Virtualbox VM, VMWare VM, and a build script which can be used on a standard Ubuntu 9.10 install to produce the Dojo. Collaboration and contributions are welcomed.
Looks pretty promising, I will be checking this out and writing more (as usual, when my "relaxed" schedule allows me to) later. But this looks like one of those training tools that I wished existed far earlier: a full environment with the targets and tools to let you learn and train your web application security kung-fu.
So what're you waiting for ?! Go grab a copy and try it out! Unless you really really want to see a review from me first. Heeeyyaaaahhhh!!
All ’bout Security & Connectivity Seminar 2010
The 2nd All ‘Bout Security& Connectivity Seminar is here again in Temasek Polytechnic! This seminar provides a knowledge-sharing platform for IT Security, Network Professionals and students.
The seminar includes talks on IT security and connectivity and a Web Challenge (supported by HITB), which is open to public. The aim of the challenge is to test the contestants on various web penetration techniques.
Interested? It's being held on Friday, March 05, 2010 from 10:00 AM - 6:00 PM (GMT+0800). Find out more from their site, or get the agenda for the day here, and you can signup at this link.
(How to) Signup for SecureMe
If you wish to have a safe and private way to surf the internets while you're at a public wifi hotspot, or somewhere like a hotel "free" network or whatnot, why not consider using a VPN + proxy + DNS resolver combination?
SecureMe is a project I started to try out and get some experience from running an operational combination like this, and I have been using it without much issues for the past quarter year to date.
I'm opening this as a service to people who'd like to make use of this service too, and for no minimum cost! I only ask for the following:
1. feedback/suggestions/complaints/compliments!
2. (if you're feeling generous) donations to help me upkeep my server at least (I don't intend to strike it rich with this anyway)
If you wish to use this, email me at secureme{@T}rayfoo[dot]info to enquire on availability. Alternatively you could tweet or FB me...
I'll support this as much as possible where time/resources permits, but for now I'd suggest that (at least) the slightly more technically inclined try this.

