LITICODE REFERENCE MATERIALS

Reference items and other interesting bits. Updates regularly.

Exchange 2007 Powershell Script for harvesting mailboxes from an Exchange 2007 system using the Exchange Powershell on a 32 bit host on the same domain with Outloook 2003/2007 for installed for PST dependencies.

foreach ($mboxID in Get-Content UserNames.dat) {

export-mailbox -identity $mboxID -confirm:$false -pstfolderpath x:\DestinationDir

Exchange 2010 makes it a bit more difficult. You need to make a shared data area available from your storage medium to the Exchange server you’ll be dumping from.

You’ll need to install the Exchange Management Console Powershell on a 64bit client machine. From that shell,
foreach ($mboxID in Get-Content mboxlist.txt) {
New-MailboxExportRequest -mailbox $mboxID ‘
-filepath \\yourshareddataarea\mboxID.PST
}

This will dump all the content, including trash, but not deleted boxes. Note: Microsoft changes how commands quite frequently, so validate your dumps every so often to ensure you’re not missing content. Note also: Exchange only supports 10 open Export Requests at one time, so you’ll need to loop on long lists of mailboxes and perform a Remove-MailboxExportRequest to clear the lists every so often.

INFOSEC Metrics

  • Security Metrics Catalog Project
  • Infosec Metrics v02.03.mm – Mindmap of Infosec Metrics from LinkedIn:Strictly Infosec Metrics group
  • Infosec Metrics v01.02.mm (prior version)

Smart People Saying Interesting Things

  • http://geer.tinho.net/geer.suitsandspooks.8ii12.txt (the cybersecurity loop)
  • Why Users Circumvent Security, Herley

eDiscovery & Legal Rulings

  • Risks of Overbroad Demands for ESI and Improper Denials (cached copy, original paywalled @Lexis)
  • http://www.leagle.com/
  • http://www.wired.com/threatlevel/2012/02/laptop-decryption-unconstitutional/
  • http://hack-igations.blogspot.com/2008/04/reducing-volume-of-e-mail-archives.html (w/ case reference!)
  • From Kramer Levin: Ultimate Sanction for Spoliation (excellent read)

HIPAA

  • http://www.healthcareinfosecurity.com/articles.php?art_id=4426&rf=2012-01-23-eh&elq=3ce79bd1882a4796a5b91ec109e039ad&elqCampaignId=
  • Man convicted under HIPAA of selling medical record information.

Robots, Spybots, Mecha, Tools

  • http://www.hitechinc.us/ – Resller/Education
  • http://jbhtech.com/ – Resller/Education
  • http://denford.co.uk/ – Tools Supplier
  • http://www.depcollc.com/ – Robot Chassis
  • New tool from the FCC to assist small businesses with security needs.

Humor

  • http://xkcd.com/350/

Tales of Woe

  • http://business.financialpost.com/2012/02/25/nortel-hacked-to-pieces/

Technical Reference Materials

  • http://academic.evergreen.edu/projects/biophysics/technotes/program/batch.htm

Scholastics

  • http://www.uscyberchallenge.org/index.cfm
  • http://www.cyberwatchcenter.org/
  • http://csrc.nist.gov/nice/framework/

Additional Tools References

  • http://www.howtoforge.com/creating_dd_images_with_air