<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Cisco Blog &#187; Russ Smoak</title>
	<atom:link href="http://blogs.cisco.com/author/RussSmoak/feed/" rel="self" type="application/rss+xml" />
	<link>http://blogs.cisco.com</link>
	<description></description>
	<lastBuildDate>Sat, 25 May 2013 00:10:13 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Reflections from a road trip: The evolving risk of DDoS attacks</title>
		<link>http://blogs.cisco.com/security/reflections-from-a-road-trip-the-evolving-risk-of-ddos-attacks/</link>
		<comments>http://blogs.cisco.com/security/reflections-from-a-road-trip-the-evolving-risk-of-ddos-attacks/#comments</comments>
		<pubDate>Thu, 14 Feb 2013 14:00:33 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[Denial of Service attack]]></category>
		<category><![CDATA[distributed denial of service]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/?p=101657</guid>
		<description><![CDATA[The author, Russ Smoak (Director of Cisco Security Intelligence Operations), discusses some of the feedback received from customers recently with regard to the Distributed Denial of Service (DDoS) activities that have occurred over the last few months.  One of the main themes from this post is that it is time to start considering the threat of DDoS as a business continuity risk and not necessarily just a security concern.]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/reflections-from-a-road-trip-the-evolving-risk-of-ddos-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>NCSAM: Diversity, Consistency, and Security Intelligence</title>
		<link>http://blogs.cisco.com/security/ncsam-diversity-consistency-and-security-intelligence/</link>
		<comments>http://blogs.cisco.com/security/ncsam-diversity-consistency-and-security-intelligence/#comments</comments>
		<pubDate>Mon, 01 Oct 2012 22:59:30 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[cyber security month]]></category>
		<category><![CDATA[cyber-security-month-2012]]></category>
		<category><![CDATA[National Cyper Security Awareness Month]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/?p=85225</guid>
		<description><![CDATA[The security community at Cisco is very diverse. It extends beyond the typical researcher or analyst roles to include customer-facing [...]]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/ncsam-diversity-consistency-and-security-intelligence/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Releases IPS Signature to Detect Alleged German Government Trojan</title>
		<link>http://blogs.cisco.com/security/cisco-releases-ips-signature-to-detect-alleged-german-government-trojan/</link>
		<comments>http://blogs.cisco.com/security/cisco-releases-ips-signature-to-detect-alleged-german-government-trojan/#comments</comments>
		<pubDate>Wed, 19 Oct 2011 20:49:18 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[trojan]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/?p=47487</guid>
		<description><![CDATA[Earlier today we released IPS Signatures 39866-0 and 39866-1 as part of the S603 update to our Cisco Services for IPS customers. These signatures detect or block network traffic associated with the “R2D2 trojan” allegedly used by German authorities to surveil individuals of interest.]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/cisco-releases-ips-signature-to-detect-alleged-german-government-trojan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Resources for the Apache HTTP Server Denial of Service Vulnerability</title>
		<link>http://blogs.cisco.com/security/resources-for-the-apache-http-server-denial-of-service-vulnerability/</link>
		<comments>http://blogs.cisco.com/security/resources-for-the-apache-http-server-denial-of-service-vulnerability/#comments</comments>
		<pubDate>Mon, 29 Aug 2011 13:53:02 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/?p=40987</guid>
		<description><![CDATA[Recently sample code was posted publicly that exploits a denial of service vulnerability in the Apache HTTP Server. This particular vulnerability is receiving considerable industry attention given the popularity of Apache httpd and amid reports that exploitation has been seen in the wild. This vulnerability has been assigned CVE ID CVE-2011-3192 and currently scores a <a href="https://intellishield.cisco.com/security/alertmanager/cvssCalculator.do?dispatch=1&#38;vector=AV:N/AC:L/Au:N/C:N/I:N/A:C/E:POC/RL:TF/RC:C&#38;version=2" target="_blank">7.8/6.3</a> using <a href="http://www.first.org/cvss/" target="_blank">CVSS</a>. By combining inefficiencies inside the web server software with a protocol design peculiarity, an attacker could consume substantial server CPU and memory by issuing requests that contain many overlapping Range or Request-Range values. Successful exploitation would consume server resources to the point of starving those needed to field legitimate requests from other users.]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/resources-for-the-apache-http-server-denial-of-service-vulnerability/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Top of Mind: Best Practices and Security Updates</title>
		<link>http://blogs.cisco.com/security/top-of-mind-best-practices-and-security-updates/</link>
		<comments>http://blogs.cisco.com/security/top-of-mind-best-practices-and-security-updates/#comments</comments>
		<pubDate>Tue, 09 Aug 2011 13:00:10 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[network security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security top of mind]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/?p=39188</guid>
		<description><![CDATA[This post focuses on the most recent "Top of Mind" concerns from Russell Smoak and these two concerns are (1) best practices for securing the network and (2) the importance of applying software security updates. ]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/top-of-mind-best-practices-and-security-updates/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Cisco Investigation for TCP Split-Handshake Issue Reported by NSS</title>
		<link>http://blogs.cisco.com/security/cisco-investigation-for-tcp-split-handshake-issue-reported-by-nss/</link>
		<comments>http://blogs.cisco.com/security/cisco-investigation-for-tcp-split-handshake-issue-reported-by-nss/#comments</comments>
		<pubDate>Thu, 14 Apr 2011 18:40:19 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[firewalls]]></category>
		<category><![CDATA[psirt]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/?p=27621</guid>
		<description><![CDATA[Recently there's been some activity in the press regarding an NSS Labs report on potential vulnerabilities in Next-Generation Firewalls (NGFW).  The Cisco Adaptive Security Appliance (ASA) was one of the products mentioned as vulnerable to these attacks.   Based on the investigation of this issue to date, the data indicates that Cisco customers are not exposed to this issue.]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/cisco-investigation-for-tcp-split-handshake-issue-reported-by-nss/feed/</wfw:commentRss>
		<slash:comments>22</slash:comments>
		</item>
		<item>
		<title>Security Intelligence Operations Portal: A New Look for a Trusted Resource</title>
		<link>http://blogs.cisco.com/security/security_intelligence_operations_portal_a_new_look_for_a_trusted_resource/</link>
		<comments>http://blogs.cisco.com/security/security_intelligence_operations_portal_a_new_look_for_a_trusted_resource/#comments</comments>
		<pubDate>Mon, 13 Sep 2010 20:00:00 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/ibc_2010_the_emergence_of_the_media_data_center</guid>
		<description><![CDATA[Over the weekend, we updated a security resource that many of you have come to trust: the <a href="http://cisco.com/security" target="_blank">Cisco Security Intelligence Operations (SIO) Portal</a> . Just as [...]]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/security_intelligence_operations_portal_a_new_look_for_a_trusted_resource/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Security Predictions &#8211; Reviewed</title>
		<link>http://blogs.cisco.com/security/cisco_security_predictions_reviewed/</link>
		<comments>http://blogs.cisco.com/security/cisco_security_predictions_reviewed/#comments</comments>
		<pubDate>Mon, 01 Mar 2010 20:00:00 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/maximizing_unified_communications_investments_through_enterprise_social_sof</guid>
		<description><![CDATA[We recently released the <a href="http://www.cisco.com/go/securityreport" target="_blank">Cisco 2009 Annual Security Report</a> . This is the most recent edition of our security report series, which was started in [...]]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/cisco_security_predictions_reviewed/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Collaboration: For Good and Bad Alike</title>
		<link>http://blogs.cisco.com/security/collaboration_for_good_and_bad_alike/</link>
		<comments>http://blogs.cisco.com/security/collaboration_for_good_and_bad_alike/#comments</comments>
		<pubDate>Wed, 24 Jun 2009 20:00:00 +0000</pubDate>
		<dc:creator>Russ Smoak</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blogs.cisco.com/finalists_announced_for_cisco_dfj_global_business_plan_competition</guid>
		<description><![CDATA[As <a href="http://blogs.cisco.com/authors/bio/83" title="Marie">Marie</a> and <a href="http://blogs.cisco.com/authors/bio/372" title="Pat">Pat</a> have mentioned in previous posts, we are busy applying the final edits to the <a href="http://www.cisco.com/go/securityreport" title="2009 Cisco Midyear Security Report">2009 Cisco Midyear Security Report</a> . Cisco will provide [...]]]></description>
		<wfw:commentRss>http://blogs.cisco.com/security/collaboration_for_good_and_bad_alike/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
