<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Tech notes</title><link>https://alias454.com/</link><description>Recent content on Tech notes</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Mon, 30 Sep 2019 06:06:08 +0000</lastBuildDate><atom:link href="https://alias454.com/index.xml" rel="self" type="application/rss+xml"/><item><title>Understanding osquery Queries Pages</title><link>https://alias454.com/query/</link><pubDate>Fri, 30 May 2025 00:00:00 +0000</pubDate><guid>https://alias454.com/query/</guid><description>osquery Queries Pages This section provides an overview of the osquery queries pages, explaining what they are, how to use them, and why they are important.
What are osquery Queries Pages? osquery is an open-source tool that allows you to query your operating system like a database using SQL-like syntax. It exposes system data in tables you can query in real time, which is incredibly useful for monitoring, security auditing, and troubleshooting.</description></item><item><title>Privacy Policy</title><link>https://alias454.com/privacy/</link><pubDate>Thu, 29 May 2025 00:00:00 +0000</pubDate><guid>https://alias454.com/privacy/</guid><description>Information We Collect This page explains what information we collect, how we use it, and how we protect your data.
We do not collect any personally identifiable information unless you voluntarily provide it through contact forms or subscriptions.
We may collect anonymous usage data through third-party services to improve site performance and user experience.
Cookies Our site may use cookies to enhance your browsing experience. Cookies are small text files stored on your device.</description></item><item><title>Connect private network to AWS using ZeroTier</title><link>https://alias454.com/connect-private-network-to-aws-using-zerotier/</link><pubDate>Mon, 30 Sep 2019 06:06:08 +0000</pubDate><guid>https://alias454.com/connect-private-network-to-aws-using-zerotier/</guid><description>Site-to-Site Networking with ZeroTier I have been experimenting with ZeroTier and wanted to share how I was able to setup site-to-site connectivity between a home network and AWS to avoid installing the ZT app on every system in my network. It is easier than you might think. This is a quick how-to on setting up site-to-site connectivity from a private network to a basic AWS VPC.
Prerequisites: A quick note for those not familiar with ZeroTier.</description></item><item><title>Using kitchen-salt for testing salt-formulas</title><link>https://alias454.com/using-kitchen-salt-for-testing-salt-formulas/</link><pubDate>Sun, 25 Aug 2019 23:34:14 +0000</pubDate><guid>https://alias454.com/using-kitchen-salt-for-testing-salt-formulas/</guid><description>Use Kitchen-salt for testing I have put off learning how test-kitchen works with salt formulas for a while. Mainly due to the multi-step setup process that can be slightly confusing if you are not accustomed to working with developer tools day to day. It became clear though that learning this workflow would be really beneficial for developing salt-formulas and other projects because of the increased testing speed and the ability to quickly iterate changes without building bulky VM infrastructure.</description></item><item><title>RPM package creation for BRO IDS Deployments</title><link>https://alias454.com/rpm-package-creation-for-bro-ids-deployments/</link><pubDate>Sat, 14 Jul 2018 19:27:45 +0000</pubDate><guid>https://alias454.com/rpm-package-creation-for-bro-ids-deployments/</guid><description>Building a custom BRO IDS binary package Basically, there are two ways to install BRO. One is, download the source and compile it for your machine. The other option is to install BRO from a package. Compiling from source is a great option, which allows for customization but can become problematic when deploying BRO on several sensors. To address this challenge, compiling BRO on a build machine, and distributing the resulting package to sensor nodes for installation, seems like a good idea.</description></item><item><title>Installing pf_ring on CentOS 7 using yum</title><link>https://alias454.com/installing-pf_ring-on-centos-7-using-yum/</link><pubDate>Sat, 14 Jul 2018 07:51:29 +0000</pubDate><guid>https://alias454.com/installing-pf_ring-on-centos-7-using-yum/</guid><description>Installing pf_ring PF_RING is software that installs a network socket allowing for &amp;ldquo;High-speed packet capture, filtering and analysis&amp;rdquo; https://www.ntop.org/products/packet-capture/pf_ring/. It is useful in applications where capturing a lot of network traffic is a requirement such as Snort or BRO IPS/IDS deployments.
When possible, I use salt to manage pf_ring deployments but manual steps are condensed from the online documentation located at https://www.ntop.org/get-started/download/#PF_RING. For the purpose of this article, we will be installing the stable package on a CentOS 7 system from http://packages.</description></item><item><title>Using a systemd.service file to control promiscuous mode automatically at boot</title><link>https://alias454.com/using-a-systemd-service-file-to-control-promiscuous-mode-automatically-at-boot/</link><pubDate>Fri, 09 Feb 2018 04:21:53 +0000</pubDate><guid>https://alias454.com/using-a-systemd-service-file-to-control-promiscuous-mode-automatically-at-boot/</guid><description>Set per Interface Promiscuous mode State Automatically At some point while working on a Salt formula to deploy pfring, I got to a point where I wanted to set promiscuous mode on an interface automatically. I wasn&amp;rsquo;t exactly sure how to go about it on RHEL/CentOS 7. So many things have changed so I set out to do a quick google search. I found my Google foo was not very strong and searched for several solutions.</description></item><item><title>My Home Lab Setup</title><link>https://alias454.com/home-lab-setup/</link><pubDate>Sat, 01 Apr 2017 16:48:56 +0000</pubDate><guid>https://alias454.com/home-lab-setup/</guid><description>There are many reasons why one may want to set up a home lab. For me, the reason is being able to mock up several different scenarios using different software stacks and play with hardware.
If you want to set up a lab like I have, it requires ESXi as the hypervisor on physical hardware. However, you can choose VirtualBox, VMware Workstation, XenServer, KVM or whatever hypervisor you wish to use.</description></item><item><title>Deploy Graylog using SaltStack Formulas</title><link>https://alias454.com/deploy-graylog-using-saltstack-formula/</link><pubDate>Tue, 24 Jan 2017 15:43:07 +0000</pubDate><guid>https://alias454.com/deploy-graylog-using-saltstack-formula/</guid><description>Deploy Graylog using SaltStack and supporting formulas I &amp;rsquo;ve written a formula for deploying Graylog with additional Salt formulas for Elasticsearch and MongoDB, which support a Graylog install. Currently, this has only been deployed on CentOS 7 so the Salt states are pretty specific to CentOS and RHEL based distros. There are plans to expand support to Debian distros in the future though.
Both the Elasticsearch and MongoDB formulas can be used on their own, while the Graylog formula can be used in conjuncture with or deployed after the other requirements have been satisfied.</description></item><item><title>BRO and Fortinet Content Packs on Graylog Marketplace</title><link>https://alias454.com/bro-fortinet-content-packs-graylog-marketplace/</link><pubDate>Mon, 19 Dec 2016 16:34:35 +0000</pubDate><guid>https://alias454.com/bro-fortinet-content-packs-graylog-marketplace/</guid><description>Content Packs for Graylog Lately, I have been working with Graylog a lot so I decided to update a few items on github and update their entries on the Graylog marketplace website.
BRO content pack for Graylog The BRO IDS content pack contains pipeline rules, a stream, a dashboard displaying interesting activity, and a syslog tcp input to capture and index BRO logs coming from a Security Onion sensor.
Fortinet content pack for Graylog The Fortigate UTM content pack contains extractors, a stream, a dashboard displaying the last 24 hours of activity, and a syslog tcp input.</description></item><item><title>Replace rsync with lftp for remote file copies on Linux</title><link>https://alias454.com/remote-file-copies-using-lftp/</link><pubDate>Fri, 16 Dec 2016 03:12:52 +0000</pubDate><guid>https://alias454.com/remote-file-copies-using-lftp/</guid><description>rsync is an awesome tool that I have used extensively. However, I think it is time to explore other tools that can replace some of what rsync has been doing for so many years. I&amp;rsquo;m not saying you should never use rsync. What I am saying is there are other options, and in some circumstances, rsync isn&amp;rsquo;t the default choice anymore (at least for me).
I went looking for an rsync replacement because I was seeing extremely slow transfer times when moving large data files.</description></item><item><title>Patching a Standalone ESXi host using the shell</title><link>https://alias454.com/patching-standalone-esxi-hosts/</link><pubDate>Tue, 13 Dec 2016 19:57:35 +0000</pubDate><guid>https://alias454.com/patching-standalone-esxi-hosts/</guid><description>Overview As with any system running software, you are going to have to apply patches to it at some point and VMware is no different. VMware recommends customers install all security patches to maximize the protection that VMware provides. For a list of all security patches, you can go here https://my.vmware.com/group/vmware/patch#search. Login with your myvmware credentials.
Once it has been determined patches are available for ESXi, download the offline bundle so they can be pushed out to each VMware host as needed.</description></item><item><title>RedHat Subscription Management</title><link>https://alias454.com/redhat-subscription-management/</link><pubDate>Sun, 11 Dec 2016 12:16:01 +0000</pubDate><guid>https://alias454.com/redhat-subscription-management/</guid><description>Subscription Management using subscription-manager Register a System
subscription-manager register --username &amp;lt;username&amp;gt; --password &amp;lt;password&amp;gt; --auto-attach
Disable managed yum repositories
subscription-manager config –rhsm.manage_repos=0
Enable a specific channel
subscription-manager repos –enable rhel-6-server-optional-rpms
Sync RHN Profile
rhn-profile-sync
From https://access.redhat.com/solutions/253273</description></item><item><title>Upgrading salt-minion on Windows using Salt</title><link>https://alias454.com/upgrading-salt-minion-on-windows-using-salt/</link><pubDate>Sat, 10 Dec 2016 21:52:18 +0000</pubDate><guid>https://alias454.com/upgrading-salt-minion-on-windows-using-salt/</guid><description>Upgrading the Salt Minion For installation, follow the instructions on the saltstack website
Upgrade the Windows salt-minion Login to the salt-master server and cd to the files directory
cd /srv/salt/server-base/file
Download the latest version from the SaltStack Website (https://repo.saltstack.com/)
wget https://repo.saltstack.com/windows/Salt-Minion-2016.11.1-AMD64-Setup.exe
Copy the newest version out to all the Windows servers based on architecture
salt -C 'G@os:win* and G@cpuarch:AMD64' cp.get_file 'salt://server-base/files/Salt-Minion-2016.11.1-AMD64-Setup.exe' 'C:\Downloads\Salt-Minion-2016.11.1-AMD64-Setup.exe'
Run the install as a background job so it completes (update salt-master with your salt-master&amp;rsquo;s DNS name or IP)</description></item><item><title>Resize an LVM Partition on VMware</title><link>https://alias454.com/resize-an-lvm-partition-on-vmware/</link><pubDate>Sat, 10 Dec 2016 03:27:26 +0000</pubDate><guid>https://alias454.com/resize-an-lvm-partition-on-vmware/</guid><description>Accommodate growth of a VM by expanding an LVM partition At some point, a &amp;ldquo;physical volume&amp;rdquo; may have to be enlarged to accommodate growth on a VM. This is how you grow the filesystem of an existing VMDK without adding an additional disk to your VM.
Enlarging a VMDK login to VMware Find the VM with the disk that needs to be made larger Right click and select &amp;ldquo;Edit Settings&amp;rdquo; Find the specific Hard Disk and update the capacity to the desired size Click &amp;ldquo;Ok&amp;rdquo; Expanding the VM Volume Size In most cases, the &amp;ldquo;Physical Volume&amp;rdquo; information will not be updated automatically.</description></item><item><title>Configure a default zone with firewalld</title><link>https://alias454.com/configure-a-default-zone-with-firewalld/</link><pubDate>Thu, 08 Dec 2016 21:58:27 +0000</pubDate><guid>https://alias454.com/configure-a-default-zone-with-firewalld/</guid><description>Configure a Default Zone This is not meant as a full primer for firewalld. It is just meant to document changing the default zone.
If you are looking for a more in-depth exposure to firewalld try https://www.hogarthuk.com/?q=node/9
Check available zones
firewall-cmd --get-zones
Check active zone
firewall-cmd --get-active-zones
Get current zone of interface (assumes it is in the public zone)
firewall-cmd --get-zone-of-interface=&amp;lt;interface returned from above output&amp;gt;
Check internal zone for existing services</description></item><item><title>Send Security Onion logs to a centralized Graylog Server</title><link>https://alias454.com/send-security-onion-logs-to-a-centralized-graylog-server/</link><pubDate>Mon, 05 Dec 2016 01:37:15 +0000</pubDate><guid>https://alias454.com/send-security-onion-logs-to-a-centralized-graylog-server/</guid><description>Overview For anyone that doesn&amp;rsquo;t know, Security Onion is a custom Linux distribution running on Ubuntu that can be used as a Network Intrusion Detection System (NIDS). Security Onion integrates several configurable apps like BRO IDS, Snort, Suricata, and OSSEC to name a few. By default, there is an integrated ELSA Stack that can be configured, which makes SO a pretty interesting one-stop shop for getting your feet wet with IDS technology.</description></item><item><title>Sorting /etc/passwd and /etc/shadow Files</title><link>https://alias454.com/sorting-passwd-and-shadow-files/</link><pubDate>Fri, 10 Jun 2016 03:43:45 +0000</pubDate><guid>https://alias454.com/sorting-passwd-and-shadow-files/</guid><description>Sorting /etc/passwd and /etc/shadow files Sorting /etc/passwd and /etc/shadow files [root@server~]# cd /root/ [root@server~]# touch passwd.sorted shadow.sorted [root@server~]# chmod 644 passwd.sorted [root@server~]# chmod 600 shadow.sorted [root@server~]# sort -t: -n -k3,3 /etc/passwd >passwd.sorted [root@server~]# gawk -F: '{system("grep \"^" $1 ":\" /etc/shadow")}' passwd.sorted >shadow.sorted [root@server~]# wc /etc/shadow shadow.sorted 211 211 10985 /etc/shadow 211 211 10985 shadow.sorted 422 422 21970 total [root@server~]# wc /etc/passwd passwd.sorted 211 413 11881 /etc/passwd 211 413 11881 passwd.sorted 422 826 23762 total [root@server~]# cp -a /etc/passwd /root/passwd.</description></item><item><title>Setup internal yum repositories for CentOS and RedHat Servers Part 4</title><link>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-4/</link><pubDate>Sun, 31 Jan 2016 18:23:32 +0000</pubDate><guid>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-4/</guid><description>Configure RHEL/CentOS client machines Setup Note: Now that the storage nodes are configured, the repo files have to be updated on client nodes to point them at the new internal mirrors. This can be accomplished in a few different ways.
Configure RHEL6/RHEL7 clients On RHEL systems the subscription manager has to be disabled
subscription-manager config --rhsm.manage_repos=0
Get the Redhat.repo file from internal repo server
wget http://el${OS_VER}repo/repo/Redhat.repo -O /etc/yum.repos.d/Redhat.repo
Configure CentOS6/CentOS7 clients Get the CentOS-Base.</description></item><item><title>Setup internal yum repositories for CentOS and RedHat Servers Part 3</title><link>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-3/</link><pubDate>Sun, 31 Jan 2016 18:22:40 +0000</pubDate><guid>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-3/</guid><description>Setup storage nodes Setup RHEL7 storage node Set hostname (example: el7repo)
hostnamectl set-hostname el7repo
Start apache and set to start on boot
systemctl start httpd.service systemctl enable httpd.service Create base directory structure
mkdir -p /var/www/html/repo/Package_Diff
Create repo config files (see Setup Note for link to contents)
touch /var/www/html/repo/CentOS-Base.repo touch /var/www/html/repo/Epel.repo touch /var/www/html/repo/Redhat.repo chmod 644 /var/www/html/repo/*.repo Setup Note: Remember to copy the content from the appropriate files.
Path: /var/www/html/repo/CentOS-Base.repo CentOS-Base.repo
Path: /var/www/html/repo/Epel.</description></item><item><title>Setup internal yum repositories for CentOS and RedHat Servers Part 2</title><link>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-2/</link><pubDate>Sun, 31 Jan 2016 18:22:19 +0000</pubDate><guid>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-2/</guid><description>Setup storage nodes Setup RHEL6 storage node Set hostname (example: el6repo)
vi /etc/sysconfig/network
Start apache and set to start on boot
service httpd start chkconfig httpd on Create base directory structure
mkdir -p /var/www/html/repo/Package_Diff
Create repo config files (see Setup Note for link to contents)
touch /var/www/html/repo/CentOS-Base.repo touch /var/www/html/repo/Epel.repo touch /var/www/html/repo/Redhat.repo chmod 644 /var/www/html/repo/*.repo Setup Note: Remember to copy the content from the appropriate files.
Path: /var/www/html/repo/CentOS-Base.repo CentOS-Base.repo
Path: /var/www/html/repo/Epel.repo Epel.</description></item><item><title>Setup internal yum repositories for CentOS and RedHat Servers Part 1</title><link>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-1/</link><pubDate>Sun, 31 Jan 2016 18:21:57 +0000</pubDate><guid>https://alias454.com/setup-internal-yum-repositories-for-centos-and-redhat-servers-part-1/</guid><description>Internal RHEL/CentOS repo for yum Overview The main goal for setting up internal yum repo (or mirror) servers is having more control and consistency over the software deployed within a RHEL/CentOS Linux environment. The process we used prior to using internal repos was much more ad-hoc, causing discrepancies with test server software versions and production server software versions. While a practice of upgrading test servers prior to production servers was in place, trying to manage versions at the endpoint was troublesome and tedious.</description></item><item><title>Setup SaltStack on CentOS 7</title><link>https://alias454.com/setup-saltstack-on-centos-7/</link><pubDate>Sun, 31 Jan 2016 01:14:48 +0000</pubDate><guid>https://alias454.com/setup-saltstack-on-centos-7/</guid><description>Setup Salt Components on CentOS 7 Setup Note: This guide is basically copied from the salt docs https://docs.saltstack.com/en/latest/topics/installation/rhel.html. The only reason for it to exist is to expand on the RHEL/CENTOS 7 post install specifics for adding firewall rules and enabling the service.
Import SaltStack GPG-KEY
rpm --import https://repo.saltstack.com/yum/redhat/7/x86_64/latest/SALTSTACK-GPG-KEY.pub
Setup SaltStack repo file
Edit /etc/yum.repos.d/saltstack.repo
vi /etc/yum.repos.d/saltstack.repo
Insert this text
[saltstack-repo] name=SaltStack repo for RHEL/CentOS $releasever baseurl=https://repo.saltstack.com/yum/redhat/$releasever/$basearch/latest enabled=1 gpgcheck=1 gpgkey=https://repo.saltstack.com/yum/redhat/$releasever/$basearch/latest/SALTSTACK-GPG-KEY.pub Install the salt-minion, salt-master, or other Salt components:</description></item><item><title>Setting up a multi-tiered log infrastructure Part 11 -- Cluster Tuning</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-11/</link><pubDate>Tue, 03 Feb 2015 19:35:49 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-11/</guid><description>Tuning Graylog, Elasticsearch, and MongoDB for optimized cluster performance This has been an article a long time in the making. One problem with making changes to a complex clustered environment is that you may have to wait long periods of time to gather data that either shows an improvement or shows a negative impact. Some other considerations just make total sense, if you can afford them. Running on SSDs is going to perform far better than spinning disks.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 10 -- HA Cluster Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-10/</link><pubDate>Tue, 03 Feb 2015 05:37:06 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-10/</guid><description>Setup HA Cluster Services on CentOS 7 Install HA Cluster components Install pacemaker and the cluster control software on both nodes that will be part of the cluster(corosync is pulled in as a dependency)
yum install pacemaker pcs
Enable and start the cluster management service
systemctl enable pcsd.service systemctl start pcsd.service Enable corosync and pacemaker to start on boot on all nodes
systemctl enable corosync.service systemctl enable pacemaker.service Set the hacluster user’s password</description></item><item><title>Setting up a multi-tiered log infrastructure Part 9 -- Rsyslog HA Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-9/</link><pubDate>Tue, 03 Feb 2015 05:31:20 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-9/</guid><description>Setup for Logging Setup rsyslog aggregator nodes (Optional) Setup Note: As part of the overall design, an HA cluster allows aggregating logs to the Central Log Repository with as little loss of logs as possible due to downtime or maintenance. Below are steps for building an HA cluster and setting up rsyslog for CENTOS 7.
Install/upgrade to the latest rsyslog
yum update rsyslog
Create an rsyslog spool directory (this will be needed later)</description></item><item><title>Setting up a multi-tiered log infrastructure Part 8 -- Rsyslog Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-8/</link><pubDate>Tue, 03 Feb 2015 05:20:54 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-8/</guid><description>Setup for Logging Setup rsyslog node Install/upgrade to the latest rsyslog
yum update rsyslog
Create an rsyslog spool directory (this will be needed later)
mkdir /var/lib/rsyslog
Setup Note: A custom rsyslog.conf is available for the CLR node that allows receiving logs on tcp port 514 by default. Copy the content from the appendixes into the appropriate files.
Path: /etc/rsyslog.conf rsyslog.conf for CLR server
Edit the rsyslog config
vi /etc/rsyslog.conf
Uncomment the lines for the action and change server.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 7 -- Graylog WebUI Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-7/</link><pubDate>Tue, 03 Feb 2015 04:59:45 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-7/</guid><description>Additional Setup for master node Setup Graylog Web UI on master node Setup Note: newer versions of graylog do not require a separate install for the web interface anymore so we can make a few firewall rule changes and be good.
Configure Graylog WebUI firewalld rules Let &amp;rsquo;s make some firewall rule changes specifically to allow web traffic. If for some reason you aren&amp;rsquo;t using a firewall then you can skip this.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 6 -- Graylog Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-6/</link><pubDate>Tue, 03 Feb 2015 04:53:44 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-6/</guid><description>Additional setup for master node Setup graylog-server on master node Install instructions from http://docs.graylog.org/en/2.2/pages/installation.html
Setup Note: This deployment is not using a prebuilt rpm package, many of the next steps will be moving files, creating directories, creating additional files, and setting up the proper permissions on the linux command line. An rpm package is available but because when this guide for first written, the RPM only had support for openjdk v1.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 5 -- MongoDB Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-5/</link><pubDate>Tue, 03 Feb 2015 04:44:44 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-5/</guid><description>Additional Setup for master node Install mongodb on master node Install instructions from https://docs.mongodb.com/manual/administration/install-on-linux/
Create repo file for mongodb
vi /etc/yum.repos.d/MongoDB-3.4.repo
Insert this text
[mongodb-org-3.4] name=MongoDB Repository baseurl=https://repo.mongodb.org/yum/redhat/$releasever/mongodb-org/3.4/x86_64/ gpgcheck=1 enabled=1 gpgkey=https://www.mongodb.org/static/pgp/server-3.4.asc&amp;lt;/pre&amp;gt; Install mongodb
yum install mongodb-org
Set mongod to start on boot
systemctl enable mongod .service
Allow mongodb to use port 27017 for communication
semanage port -a -t mongod_port_t -p tcp 27017
Start mongodb
systemctl start mongod
Setup Note: By default, mongodb does not enforce any kind of user authentication.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 4 -- Elasticsearch Setup</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-4/</link><pubDate>Tue, 03 Feb 2015 04:37:24 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-4/</guid><description>Setup Elasticsearch cluster nodes Install Elasticsearch In this example we are building out a three node cluster but this can scale up to fit whatever cluster size you choose. View Elasticsearch setup and configuration docs https://www.elastic.co/guide/en/elasticsearch/reference/2.4/index.html
Install Java
yum install java-1.8.0-openjdk-headless.x86_64
Import signing key from elastic.co
rpm --import https://packages.elastic.co/GPG-KEY-elasticsearch
Create repo file
vi /etc/yum.repos.d/Elasticsearch.repo
Insert this text
[elasticsearch-2.x] name=Elasticsearch repository for 2.x packages baseurl=http://packages.elastic.co/elasticsearch/2.x/centos gpgcheck=1 gpgkey=http://packages.elastic.co/GPG-KEY-elasticsearch enabled=1 Install elasticsearch
yum install elasticsearch</description></item><item><title>Setting up a multi-tiered log infrastructure Part 3 -- System Build</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-3/</link><pubDate>Tue, 03 Feb 2015 04:22:30 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-3/</guid><description>Partitioning layout Setup Note: The partition layout for elasticsearch nodes may vary depending on how much data storage is needed. It makes sense to create mount points with the idea they may grow in the future.
Worksheet for estimating proper sizing that can be helpful https://community.graylog.org/t/sizing-estimator/644
For ES data nodes, ES master node, and rsyslog storage node /dev/sda1 mount on /boot 500MB vg_local-lv_swap swap partition 1024MB (up to twice size of installed RAM) vg_local-lv_root mount on / minimum 10240MB (10GB) vg_local-lv_home mount on /home minimum 15360MB (15GB), expandable vg_local-lv_tmp mount on /tmp minimum 1024MB (1GB) vg_local-lv_usr mount on /usr minimum 4096MB (4GB) vg_local-lv_var mount on /var minimum 8000MB (8GB), expandable For rsyslog aggregator nodes (Optional) /dev/sda1 mount on /boot 500MB vg_local-lv_swap 1024MB up to twice size of installed RAM vg_local-lv_root mount on / minimum of 8192MB vg_local-lv_home mount on /home minimum of 10240MB up to whatever size vg_local-lv_tmp mount on /tmp minimum of 1024MB vg_local-lv_usr mount on /usr minimum of 4096MB vg_local-lv_var mount on /var minimum of 8000MB up to whatever size For OSSEC node (Optional) /dev/sda1 mount on /boot 500MB vg_local-lv_swap 1024MB up to twice size of installed RAM vg_local-lv_root mount on / minimum of 8192MB vg_local-lv_home mount on /home minimum of 10240MB up to whatever size vg_local-lv_tmp mount on /tmp minimum of 1024MB vg_local-lv_usr mount on /usr minimum of 4096MB vg_local-lv_var mount on /var minimum of 8000MB up to whatever size Install prerequisite apps Setup Note: Some services should be available on the network such as a timeserver and DNS services otherwise, some assumptions made throughout this document will not be correct.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 2 -- System Overview</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-2/</link><pubDate>Tue, 03 Feb 2015 04:21:23 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-2/</guid><description>System Build Overview The next steps are to build the environment; starting with the elasticsearch (ES) nodes and the log parser/search frontend because they require certain components to be identical. The process assumes the use of a minimal OS install using CENTOS 7 but any major NIX based OS can be used (just remember the commands might be different). Start by building three servers; two will be ES data nodes and one will be used as the ES master node.</description></item><item><title>Setting up a multi-tiered log infrastructure Part 1 -- Getting Started</title><link>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-1/</link><pubDate>Tue, 03 Feb 2015 02:48:43 +0000</pubDate><guid>https://alias454.com/setting-up-a-multi-tiered-log-infrastructure-part-1/</guid><description>Logging Infrastructure Overview Setting up a multi-tiered logging infrastructure can be a little more complicated than just spinning up an rsyslog server and shipping logs to it (although that is an option). A few products come up repeatedly when looking for logging stack solutions—these include elasticsearch, logstash, kibana, and graylog, along with rsyslog, nxlog, syslog-ng, and OSSEC.
The ELK stack uses Elasticsearch, Logstash, and Kibana. The Graylog and Elasticsearch stack (or GELP – Graylog Enhanced Logging Platform, for lack of a better acronym) utilizes Graylog to perform the same functions as Logstash and Kibana.</description></item><item><title>About</title><link>https://alias454.com/about/</link><pubDate>Tue, 03 Feb 2015 00:00:00 +0000</pubDate><guid>https://alias454.com/about/</guid><description>Hello! This site is my little corner for sharing solutions to weird, unique, or complicated problems, especially ones that took way too long to figure out. If you’re into Open Source, Linux, cloud security, or you’re a log junkie like me, you might find something useful here.
I’m not a “guru” or influencer, I’m just someone who’s been messing with computers since ’96. I caught the Linux bug early, and ended up working in large-scale cloud environments where automation, security, and solid operations are important enough to get paid for.</description></item><item><title>55808.a Worm</title><link>https://alias454.com/55808-a-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/55808-a-worm/</guid><description/></item><item><title>Acpi Tables</title><link>https://alias454.com/acpi-tables/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/acpi-tables/</guid><description/></item><item><title>Ad Config</title><link>https://alias454.com/ad-config/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ad-config/</guid><description/></item><item><title>Adore Rootkit</title><link>https://alias454.com/adore-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/adore-rootkit/</guid><description/></item><item><title>Adore Worm</title><link>https://alias454.com/adore-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/adore-worm/</guid><description/></item><item><title>Ajakit Rootkit</title><link>https://alias454.com/ajakit-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ajakit-rootkit/</guid><description/></item><item><title>Alf</title><link>https://alias454.com/alf/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/alf/</guid><description/></item><item><title>Alf Exceptions</title><link>https://alias454.com/alf-exceptions/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/alf-exceptions/</guid><description/></item><item><title>Alf Explicit Auths</title><link>https://alias454.com/alf-explicit-auths/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/alf-explicit-auths/</guid><description/></item><item><title>Alf Services</title><link>https://alias454.com/alf-services/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/alf-services/</guid><description/></item><item><title>Anonoiyng Rootkit</title><link>https://alias454.com/anonoiyng-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/anonoiyng-rootkit/</guid><description/></item><item><title>Aobo Keylogger</title><link>https://alias454.com/aobo-keylogger/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/aobo-keylogger/</guid><description/></item><item><title>Apa Kit</title><link>https://alias454.com/apa-kit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/apa-kit/</guid><description/></item><item><title>App DisabledExceptionChainValidation</title><link>https://alias454.com/app-disabled-exception-chain-validation/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/app-disabled-exception-chain-validation/</guid><description/></item><item><title>App ExecuteOptions</title><link>https://alias454.com/app-execute-options/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/app-execute-options/</guid><description/></item><item><title>App MitigationOptions</title><link>https://alias454.com/app-mitigation-options/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/app-mitigation-options/</guid><description/></item><item><title>App Schemes</title><link>https://alias454.com/app-schemes/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/app-schemes/</guid><description/></item><item><title>AppCompat</title><link>https://alias454.com/app-compat/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/app-compat/</guid><description/></item><item><title>Apt Sources</title><link>https://alias454.com/apt-sources/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/apt-sources/</guid><description/></item><item><title>Ark Rootkit</title><link>https://alias454.com/ark-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ark-rootkit/</guid><description/></item><item><title>Arp Cache</title><link>https://alias454.com/arp-cache/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/arp-cache/</guid><description/></item><item><title>AuditSpecialGroups</title><link>https://alias454.com/audit-special-groups/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/audit-special-groups/</guid><description/></item><item><title>Backdoor MAC Eleanor</title><link>https://alias454.com/backdoor-mac-eleanor/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/backdoor-mac-eleanor/</guid><description/></item><item><title>Backdoored Python Packages</title><link>https://alias454.com/backdoored-python-packages/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/backdoored-python-packages/</guid><description/></item><item><title>Bash Door</title><link>https://alias454.com/bash-door/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/bash-door/</guid><description/></item><item><title>Beastkit Rootkit</title><link>https://alias454.com/beastkit-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/beastkit-rootkit/</guid><description/></item><item><title>Behavioral Reverse Shell</title><link>https://alias454.com/behavioral-reverse-shell/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/behavioral-reverse-shell/</guid><description/></item><item><title>BetternetVPN</title><link>https://alias454.com/betternet-vpn/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/betternet-vpn/</guid><description/></item><item><title>BlazingKeylogger</title><link>https://alias454.com/blazing-keylogger/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/blazing-keylogger/</guid><description/></item><item><title>Bmbl Rootkit</title><link>https://alias454.com/bmbl-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/bmbl-rootkit/</guid><description/></item><item><title>Bobkit Rootkit</title><link>https://alias454.com/bobkit-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/bobkit-rootkit/</guid><description/></item><item><title>Browser Plugins</title><link>https://alias454.com/browser-plugins/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/browser-plugins/</guid><description/></item><item><title>Buca</title><link>https://alias454.com/buca/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/buca/</guid><description/></item><item><title>Bundlore</title><link>https://alias454.com/bundlore/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/bundlore/</guid><description/></item><item><title>CallMe</title><link>https://alias454.com/call-me/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/call-me/</guid><description/></item><item><title>Careto</title><link>https://alias454.com/careto/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/careto/</guid><description/></item><item><title>Cback Worm</title><link>https://alias454.com/cback-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/cback-worm/</guid><description/></item><item><title>CCleaner Trojan Stage2.Floxif</title><link>https://alias454.com/ccleaner-trojan-stage2-floxif/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ccleaner-trojan-stage2-floxif/</guid><description/></item><item><title>CCleaner Trojan.Floxif</title><link>https://alias454.com/ccleaner-trojan-floxif/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ccleaner-trojan-floxif/</guid><description/></item><item><title>Chrome Extensions</title><link>https://alias454.com/chrome-extensions/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/chrome-extensions/</guid><description/></item><item><title>Chrometana</title><link>https://alias454.com/chrometana/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/chrometana/</guid><description/></item><item><title>Codecm</title><link>https://alias454.com/codecm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/codecm/</guid><description/></item><item><title>Conduit</title><link>https://alias454.com/conduit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/conduit/</guid><description/></item><item><title>Conhost.exe Incorrect Path</title><link>https://alias454.com/conhost-exe-incorrect-path/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/conhost-exe-incorrect-path/</guid><description/></item><item><title>ControlFlowGuard</title><link>https://alias454.com/control-flow-guard/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/control-flow-guard/</guid><description/></item><item><title>CopyFish</title><link>https://alias454.com/copy-fish/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/copy-fish/</guid><description/></item><item><title>Cpuid</title><link>https://alias454.com/cpuid/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/cpuid/</guid><description/></item><item><title>Crontab</title><link>https://alias454.com/crontab/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/crontab/</guid><description/></item><item><title>CwdIllegalInDllSearch</title><link>https://alias454.com/cwd-illegal-in-dll-search/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/cwd-illegal-in-dll-search/</guid><description/></item><item><title>Darwin Kernel System Controls</title><link>https://alias454.com/darwin-kernel-system-controls/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/darwin-kernel-system-controls/</guid><description/></item><item><title>Deb Packages</title><link>https://alias454.com/deb-packages/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/deb-packages/</guid><description/></item><item><title>DefaultLevelMachine</title><link>https://alias454.com/default-level-machine/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/default-level-machine/</guid><description/></item><item><title>DefaultLevelUser</title><link>https://alias454.com/default-level-user/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/default-level-user/</guid><description/></item><item><title>DepPolicy</title><link>https://alias454.com/dep-policy/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/dep-policy/</guid><description/></item><item><title>DeveloperMode</title><link>https://alias454.com/developer-mode/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/developer-mode/</guid><description/></item><item><title>Device Nodes</title><link>https://alias454.com/device-nodes/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/device-nodes/</guid><description/></item><item><title>DevilRobber</title><link>https://alias454.com/devil-robber/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/devil-robber/</guid><description/></item><item><title>DisabledExceptionChainValidation</title><link>https://alias454.com/disabled-exception-chain-validation/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/disabled-exception-chain-validation/</guid><description/></item><item><title>Disallowed</title><link>https://alias454.com/disallowed/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/disallowed/</guid><description/></item><item><title>Disallowed Paths</title><link>https://alias454.com/disallowed-paths/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/disallowed-paths/</guid><description/></item><item><title>Disallowed Paths ItemData</title><link>https://alias454.com/disallowed-paths-item-data/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/disallowed-paths-item-data/</guid><description/></item><item><title>Disk Encryption</title><link>https://alias454.com/disk-encryption/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/disk-encryption/</guid><description/></item><item><title>Dllhost.exe Incorrect Path</title><link>https://alias454.com/dllhost-exe-incorrect-path/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/dllhost-exe-incorrect-path/</guid><description/></item><item><title>Dockster</title><link>https://alias454.com/dockster/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/dockster/</guid><description/></item><item><title>Efi File Hashes</title><link>https://alias454.com/efi-file-hashes/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/efi-file-hashes/</guid><description/></item><item><title>EliteKeylogger</title><link>https://alias454.com/elite-keylogger/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/elite-keylogger/</guid><description/></item><item><title>EmPyre Agent</title><link>https://alias454.com/em-pyre-agent/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/em-pyre-agent/</guid><description/></item><item><title>EnableCertPaddingCheck</title><link>https://alias454.com/enable-cert-padding-check/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/enable-cert-padding-check/</guid><description/></item><item><title>EnableCertPaddingCheck Wow64</title><link>https://alias454.com/enable-cert-padding-check-wow64/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/enable-cert-padding-check-wow64/</guid><description/></item><item><title>EnableLowVaAccess</title><link>https://alias454.com/enable-low-va-access/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/enable-low-va-access/</guid><description/></item><item><title>Enye Sec Rootkit</title><link>https://alias454.com/enye-sec-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/enye-sec-rootkit/</guid><description/></item><item><title>Esrk Rootkit</title><link>https://alias454.com/esrk-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/esrk-rootkit/</guid><description/></item><item><title>Etc Hosts</title><link>https://alias454.com/etc-hosts/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/etc-hosts/</guid><description/></item><item><title>Events</title><link>https://alias454.com/events/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/events/</guid><description/></item><item><title>ExecutableTryMachine</title><link>https://alias454.com/executable-try-machine/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/executable-try-machine/</guid><description/></item><item><title>ExecutableTryUser</title><link>https://alias454.com/executable-try-user/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/executable-try-user/</guid><description/></item><item><title>Fan Speeds</title><link>https://alias454.com/fan-speeds/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/fan-speeds/</guid><description/></item><item><title>Firefox Addons</title><link>https://alias454.com/firefox-addons/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/firefox-addons/</guid><description/></item><item><title>FontBlocking</title><link>https://alias454.com/font-blocking/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/font-blocking/</guid><description/></item><item><title>Fu Rootkit</title><link>https://alias454.com/fu-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/fu-rootkit/</guid><description/></item><item><title>Genieo</title><link>https://alias454.com/genieo/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/genieo/</guid><description/></item><item><title>GenieoPart2</title><link>https://alias454.com/genieo-part2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/genieo-part2/</guid><description/></item><item><title>Giphy</title><link>https://alias454.com/giphy/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/giphy/</guid><description/></item><item><title>HackingTeam Mac Persistence</title><link>https://alias454.com/hacking-team-mac-persistence/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hacking-team-mac-persistence/</guid><description/></item><item><title>HackingTeam Mac RAT1</title><link>https://alias454.com/hacking-team-mac-rat1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hacking-team-mac-rat1/</guid><description/></item><item><title>HackingTeam Mac RAT2</title><link>https://alias454.com/hacking-team-mac-rat2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hacking-team-mac-rat2/</guid><description/></item><item><title>HackingTeam Mac RAT3</title><link>https://alias454.com/hacking-team-mac-rat3/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hacking-team-mac-rat3/</guid><description/></item><item><title>Hardware Events</title><link>https://alias454.com/hardware-events/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hardware-events/</guid><description/></item><item><title>Hidr00tkit</title><link>https://alias454.com/hidr00tkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hidr00tkit/</guid><description/></item><item><title>HolaVPN</title><link>https://alias454.com/hola-vpn/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/hola-vpn/</guid><description/></item><item><title>Homebrew Packages</title><link>https://alias454.com/homebrew-packages/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/homebrew-packages/</guid><description/></item><item><title>Icefog</title><link>https://alias454.com/icefog/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/icefog/</guid><description/></item><item><title>Illogic Rootkit</title><link>https://alias454.com/illogic-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/illogic-rootkit/</guid><description/></item><item><title>Imuler</title><link>https://alias454.com/imuler/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/imuler/</guid><description/></item><item><title>InfinityNewTab</title><link>https://alias454.com/infinity-new-tab/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/infinity-new-tab/</guid><description/></item><item><title>Inqtana</title><link>https://alias454.com/inqtana/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/inqtana/</guid><description/></item><item><title>Installed Applications</title><link>https://alias454.com/installed-applications/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/installed-applications/</guid><description/></item><item><title>Iokit Devicetree</title><link>https://alias454.com/iokit-devicetree/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/iokit-devicetree/</guid><description/></item><item><title>Ip Forwarding</title><link>https://alias454.com/ip-forwarding/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ip-forwarding/</guid><description/></item><item><title>Iptables</title><link>https://alias454.com/iptables/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/iptables/</guid><description/></item><item><title>IWorkServ</title><link>https://alias454.com/i-work-serv/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/i-work-serv/</guid><description/></item><item><title>IWorm</title><link>https://alias454.com/i-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/i-worm/</guid><description/></item><item><title>IWorm 1</title><link>https://alias454.com/i-worm-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/i-worm-1/</guid><description/></item><item><title>Java Adwind Trojan</title><link>https://alias454.com/java-adwind-trojan/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/java-adwind-trojan/</guid><description/></item><item><title>Kenga3 Rootkit</title><link>https://alias454.com/kenga3-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/kenga3-rootkit/</guid><description/></item><item><title>Keranger 1</title><link>https://alias454.com/keranger-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/keranger-1/</guid><description/></item><item><title>Keranger 2</title><link>https://alias454.com/keranger-2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/keranger-2/</guid><description/></item><item><title>Kernel Extensions</title><link>https://alias454.com/kernel-extensions/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/kernel-extensions/</guid><description/></item><item><title>Kernel Info</title><link>https://alias454.com/kernel-info/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/kernel-info/</guid><description/></item><item><title>Kernel Modules</title><link>https://alias454.com/kernel-modules/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/kernel-modules/</guid><description/></item><item><title>KernelSehopEnabled</title><link>https://alias454.com/kernel-sehop-enabled/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/kernel-sehop-enabled/</guid><description/></item><item><title>Kextstat</title><link>https://alias454.com/kextstat/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/kextstat/</guid><description/></item><item><title>Keychain Items</title><link>https://alias454.com/keychain-items/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/keychain-items/</guid><description/></item><item><title>Knark Installed</title><link>https://alias454.com/knark-installed/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/knark-installed/</guid><description/></item><item><title>Last</title><link>https://alias454.com/last/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/last/</guid><description/></item><item><title>Launchd</title><link>https://alias454.com/launchd/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/launchd/</guid><description/></item><item><title>Ldp Worm</title><link>https://alias454.com/ldp-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ldp-worm/</guid><description/></item><item><title>Leverage-A 1</title><link>https://alias454.com/leverage-a-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/leverage-a-1/</guid><description/></item><item><title>Leverage-A 2</title><link>https://alias454.com/leverage-a-2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/leverage-a-2/</guid><description/></item><item><title>Leverage-A 3</title><link>https://alias454.com/leverage-a-3/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/leverage-a-3/</guid><description/></item><item><title>Lion Worm</title><link>https://alias454.com/lion-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/lion-worm/</guid><description/></item><item><title>Listening Ports</title><link>https://alias454.com/listening-ports/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/listening-ports/</guid><description/></item><item><title>Loc Rookit</title><link>https://alias454.com/loc-rookit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/loc-rookit/</guid><description/></item><item><title>Logged In Users</title><link>https://alias454.com/logged-in-users/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/logged-in-users/</guid><description/></item><item><title>Loginwindow1</title><link>https://alias454.com/loginwindow1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/loginwindow1/</guid><description/></item><item><title>Loginwindow2</title><link>https://alias454.com/loginwindow2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/loginwindow2/</guid><description/></item><item><title>Loginwindow3</title><link>https://alias454.com/loginwindow3/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/loginwindow3/</guid><description/></item><item><title>Loginwindow4</title><link>https://alias454.com/loginwindow4/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/loginwindow4/</guid><description/></item><item><title>Lrk Rootkit</title><link>https://alias454.com/lrk-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/lrk-rootkit/</guid><description/></item><item><title>Lsass.exe Incorrect Path</title><link>https://alias454.com/lsass-exe-incorrect-path/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/lsass-exe-incorrect-path/</guid><description/></item><item><title>MacKontrol</title><link>https://alias454.com/mac-kontrol/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/mac-kontrol/</guid><description/></item><item><title>MacOSInstallCore</title><link>https://alias454.com/mac-os-install-core/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/mac-os-install-core/</guid><description/></item><item><title>MacSearch Adware</title><link>https://alias454.com/mac-search-adware/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/mac-search-adware/</guid><description/></item><item><title>Madalin Rootkit</title><link>https://alias454.com/madalin-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/madalin-rootkit/</guid><description/></item><item><title>Maniac Rk</title><link>https://alias454.com/maniac-rk/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/maniac-rk/</guid><description/></item><item><title>Mithra`s Rootkit</title><link>https://alias454.com/mithras-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/mithras-rootkit/</guid><description/></item><item><title>MitigationOptions</title><link>https://alias454.com/mitigation-options/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/mitigation-options/</guid><description/></item><item><title>Monkit</title><link>https://alias454.com/monkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/monkit/</guid><description/></item><item><title>Monkit Found</title><link>https://alias454.com/monkit-found/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/monkit-found/</guid><description/></item><item><title>Morcut</title><link>https://alias454.com/morcut/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/morcut/</guid><description/></item><item><title>Mounts</title><link>https://alias454.com/mounts/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/mounts/</guid><description/></item><item><title>MoveImages</title><link>https://alias454.com/move-images/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/move-images/</guid><description/></item><item><title>Nfs Shares</title><link>https://alias454.com/nfs-shares/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/nfs-shares/</guid><description/></item><item><title>Nvram</title><link>https://alias454.com/nvram/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/nvram/</guid><description/></item><item><title>OceanLotus Dropped File 1</title><link>https://alias454.com/ocean-lotus-dropped-file-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ocean-lotus-dropped-file-1/</guid><description/></item><item><title>OceanLotus Launchagent</title><link>https://alias454.com/ocean-lotus-launchagent/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ocean-lotus-launchagent/</guid><description/></item><item><title>Old Rootkits</title><link>https://alias454.com/old-rootkits/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/old-rootkits/</guid><description/></item><item><title>Olyx</title><link>https://alias454.com/olyx/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/olyx/</guid><description/></item><item><title>Omega Worm</title><link>https://alias454.com/omega-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/omega-worm/</guid><description/></item><item><title>Open Files</title><link>https://alias454.com/open-files/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/open-files/</guid><description/></item><item><title>Open Sockets</title><link>https://alias454.com/open-sockets/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/open-sockets/</guid><description/></item><item><title>OpenType Font Driver Vulnerability</title><link>https://alias454.com/open-type-font-driver-vulnerability/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/open-type-font-driver-vulnerability/</guid><description/></item><item><title>Opera Extensions</title><link>https://alias454.com/opera-extensions/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/opera-extensions/</guid><description/></item><item><title>Optickit</title><link>https://alias454.com/optickit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/optickit/</guid><description/></item><item><title>OS Version</title><link>https://alias454.com/os-version/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/os-version/</guid><description/></item><item><title>Osquery Info</title><link>https://alias454.com/osquery-info/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osquery-info/</guid><description/></item><item><title>OSX Backdoor Mokes</title><link>https://alias454.com/osx-backdoor-mokes/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-backdoor-mokes/</guid><description/></item><item><title>OSX ColdRoot RAT Files</title><link>https://alias454.com/osx-cold-root-rat-files/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-cold-root-rat-files/</guid><description/></item><item><title>OSX ColdRoot RAT Launchd</title><link>https://alias454.com/osx-cold-root-rat-launchd/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-cold-root-rat-launchd/</guid><description/></item><item><title>OSX DOK 1</title><link>https://alias454.com/osx-dok-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-dok-1/</guid><description/></item><item><title>OSX DOK 2</title><link>https://alias454.com/osx-dok-2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-dok-2/</guid><description/></item><item><title>OSX DOK 3</title><link>https://alias454.com/osx-dok-3/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-dok-3/</guid><description/></item><item><title>OSX DOK 4</title><link>https://alias454.com/osx-dok-4/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-dok-4/</guid><description/></item><item><title>OSX Dummy Files</title><link>https://alias454.com/osx-dummy-files/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-dummy-files/</guid><description/></item><item><title>OSX Dummy Launchd</title><link>https://alias454.com/osx-dummy-launchd/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-dummy-launchd/</guid><description/></item><item><title>OSX FruitFly</title><link>https://alias454.com/osx-fruit-fly/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-fruit-fly/</guid><description/></item><item><title>OSX HiddenLotus</title><link>https://alias454.com/osx-hidden-lotus/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-hidden-lotus/</guid><description/></item><item><title>OSX Keydnap</title><link>https://alias454.com/osx-keydnap/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-keydnap/</guid><description/></item><item><title>OSX Komplex</title><link>https://alias454.com/osx-komplex/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-komplex/</guid><description/></item><item><title>OSX MaMi Certificate</title><link>https://alias454.com/osx-ma-mi-certificate/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-ma-mi-certificate/</guid><description/></item><item><title>OSX MaMi DNS Servers</title><link>https://alias454.com/osx-ma-mi-dns-servers/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-ma-mi-dns-servers/</guid><description/></item><item><title>OSX Mughthesec</title><link>https://alias454.com/osx-mughthesec/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-mughthesec/</guid><description/></item><item><title>OSX Pirrit</title><link>https://alias454.com/osx-pirrit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-pirrit/</guid><description/></item><item><title>OSX Proton Files</title><link>https://alias454.com/osx-proton-files/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-proton-files/</guid><description/></item><item><title>OSX Proton Launchd</title><link>https://alias454.com/osx-proton-launchd/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-proton-launchd/</guid><description/></item><item><title>OSX Proton Process</title><link>https://alias454.com/osx-proton-process/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-proton-process/</guid><description/></item><item><title>OSX Snake</title><link>https://alias454.com/osx-snake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/osx-snake/</guid><description/></item><item><title>Override Rootkit</title><link>https://alias454.com/override-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/override-rootkit/</guid><description/></item><item><title>Package Receipts</title><link>https://alias454.com/package-receipts/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/package-receipts/</guid><description/></item><item><title>Pci Devices</title><link>https://alias454.com/pci-devices/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/pci-devices/</guid><description/></item><item><title>Phalanx Rootkit</title><link>https://alias454.com/phalanx-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/phalanx-rootkit/</guid><description/></item><item><title>PolicyScopeMachine</title><link>https://alias454.com/policy-scope-machine/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/policy-scope-machine/</guid><description/></item><item><title>PolicyScopeUser</title><link>https://alias454.com/policy-scope-user/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/policy-scope-user/</guid><description/></item><item><title>Portage Packages</title><link>https://alias454.com/portage-packages/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/portage-packages/</guid><description/></item><item><title>PremierOpinion</title><link>https://alias454.com/premier-opinion/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/premier-opinion/</guid><description/></item><item><title>Process Env</title><link>https://alias454.com/process-env/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/process-env/</guid><description/></item><item><title>Process Memory</title><link>https://alias454.com/process-memory/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/process-memory/</guid><description/></item><item><title>Pronto</title><link>https://alias454.com/pronto/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/pronto/</guid><description/></item><item><title>Protecting Against Weak Crypto Algo</title><link>https://alias454.com/protecting-against-weak-crypto-algo/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/protecting-against-weak-crypto-algo/</guid><description/></item><item><title>PubSab</title><link>https://alias454.com/pub-sab/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/pub-sab/</guid><description/></item><item><title>Quimitchin Backdoor</title><link>https://alias454.com/quimitchin-backdoor/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/quimitchin-backdoor/</guid><description/></item><item><title>Ramdisk</title><link>https://alias454.com/ramdisk/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ramdisk/</guid><description/></item><item><title>Ramen Worm</title><link>https://alias454.com/ramen-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/ramen-worm/</guid><description/></item><item><title>Recent Items</title><link>https://alias454.com/recent-items/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/recent-items/</guid><description/></item><item><title>Rh Sharpe</title><link>https://alias454.com/rh-sharpe/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/rh-sharpe/</guid><description/></item><item><title>Rk17</title><link>https://alias454.com/rk17/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/rk17/</guid><description/></item><item><title>Romanian Rootkit</title><link>https://alias454.com/romanian-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/romanian-rootkit/</guid><description/></item><item><title>Rpm Packages</title><link>https://alias454.com/rpm-packages/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/rpm-packages/</guid><description/></item><item><title>Rsha</title><link>https://alias454.com/rsha/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/rsha/</guid><description/></item><item><title>Rule</title><link>https://alias454.com/rule/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/rule/</guid><description/></item><item><title>RuleSetEnforcementMode</title><link>https://alias454.com/rule-set-enforcement-mode/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/rule-set-enforcement-mode/</guid><description/></item><item><title>Sadmind/iis Worm</title><link>https://alias454.com/sadmindiis-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sadmindiis-worm/</guid><description/></item><item><title>Safari Extensions</title><link>https://alias454.com/safari-extensions/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/safari-extensions/</guid><description/></item><item><title>SaferFlags</title><link>https://alias454.com/safer-flags/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/safer-flags/</guid><description/></item><item><title>Sandboxes</title><link>https://alias454.com/sandboxes/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sandboxes/</guid><description/></item><item><title>Scalper Installed</title><link>https://alias454.com/scalper-installed/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/scalper-installed/</guid><description/></item><item><title>Schedule</title><link>https://alias454.com/schedule/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/schedule/</guid><description/></item><item><title>SearchInstUpdater</title><link>https://alias454.com/search-inst-updater/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/search-inst-updater/</guid><description/></item><item><title>SecureBoot</title><link>https://alias454.com/secure-boot/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/secure-boot/</guid><description/></item><item><title>Services.exe Incorrect Parent Process</title><link>https://alias454.com/services-exe-incorrect-parent-process/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/services-exe-incorrect-parent-process/</guid><description/></item><item><title>Shell History</title><link>https://alias454.com/shell-history/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/shell-history/</guid><description/></item><item><title>Shitc</title><link>https://alias454.com/shitc/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/shitc/</guid><description/></item><item><title>Shkit Rootkit</title><link>https://alias454.com/shkit-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/shkit-rootkit/</guid><description/></item><item><title>Showtee</title><link>https://alias454.com/showtee/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/showtee/</guid><description/></item><item><title>Showtee / Romanian Rootkit</title><link>https://alias454.com/showtee-romanian-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/showtee-romanian-rootkit/</guid><description/></item><item><title>Shv5 Rootkit</title><link>https://alias454.com/shv5-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/shv5-rootkit/</guid><description/></item><item><title>Sip Config</title><link>https://alias454.com/sip-config/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sip-config/</guid><description/></item><item><title>Slapper Installed</title><link>https://alias454.com/slapper-installed/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/slapper-installed/</guid><description/></item><item><title>Smbios Tables</title><link>https://alias454.com/smbios-tables/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/smbios-tables/</guid><description/></item><item><title>SniperSpy</title><link>https://alias454.com/sniper-spy/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sniper-spy/</guid><description/></item><item><title>SocialFixer</title><link>https://alias454.com/social-fixer/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/social-fixer/</guid><description/></item><item><title>Solaris Worm</title><link>https://alias454.com/solaris-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/solaris-worm/</guid><description/></item><item><title>Spigot</title><link>https://alias454.com/spigot/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/spigot/</guid><description/></item><item><title>Startup Items</title><link>https://alias454.com/startup-items/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/startup-items/</guid><description/></item><item><title>StickyKeys File Replace Backdoor</title><link>https://alias454.com/sticky-keys-file-replace-backdoor/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sticky-keys-file-replace-backdoor/</guid><description/></item><item><title>StickyKeys Registry Backdoor</title><link>https://alias454.com/sticky-keys-registry-backdoor/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sticky-keys-registry-backdoor/</guid><description/></item><item><title>Suckit Rootkit</title><link>https://alias454.com/suckit-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/suckit-rootkit/</guid><description/></item><item><title>Suid Bin</title><link>https://alias454.com/suid-bin/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/suid-bin/</guid><description/></item><item><title>Suspicious File</title><link>https://alias454.com/suspicious-file/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/suspicious-file/</guid><description/></item><item><title>Svchost.exe Incorrect Parent Process</title><link>https://alias454.com/svchost-exe-incorrect-parent-process/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/svchost-exe-incorrect-parent-process/</guid><description/></item><item><title>Svchost.exe Incorrect Path</title><link>https://alias454.com/svchost-exe-incorrect-path/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/svchost-exe-incorrect-path/</guid><description/></item><item><title>SysmonConfig</title><link>https://alias454.com/sysmon-config/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/sysmon-config/</guid><description/></item><item><title>T0rn Rootkit</title><link>https://alias454.com/t0rn-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/t0rn-rootkit/</guid><description/></item><item><title>Tc2 Worm</title><link>https://alias454.com/tc2-worm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/tc2-worm/</guid><description/></item><item><title>Telekit Trojan</title><link>https://alias454.com/telekit-trojan/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/telekit-trojan/</guid><description/></item><item><title>Temperatures</title><link>https://alias454.com/temperatures/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/temperatures/</guid><description/></item><item><title>Tibet.D</title><link>https://alias454.com/tibet-d/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/tibet-d/</guid><description/></item><item><title>TouchVPN</title><link>https://alias454.com/touch-vpn/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/touch-vpn/</guid><description/></item><item><title>TransparentEnabledMachine</title><link>https://alias454.com/transparent-enabled-machine/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/transparent-enabled-machine/</guid><description/></item><item><title>TransparentEnabledUser</title><link>https://alias454.com/transparent-enabled-user/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/transparent-enabled-user/</guid><description/></item><item><title>Tribe Bot</title><link>https://alias454.com/tribe-bot/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/tribe-bot/</guid><description/></item><item><title>Trk Rootkit</title><link>https://alias454.com/trk-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/trk-rootkit/</guid><description/></item><item><title>Tuxkit Rootkit</title><link>https://alias454.com/tuxkit-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/tuxkit-rootkit/</guid><description/></item><item><title>UAC Disabled</title><link>https://alias454.com/uac-disabled/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/uac-disabled/</guid><description/></item><item><title>Unauthenticated Sparkle Feeds</title><link>https://alias454.com/unauthenticated-sparkle-feeds/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/unauthenticated-sparkle-feeds/</guid><description/></item><item><title>Unrestricted</title><link>https://alias454.com/unrestricted/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/unrestricted/</guid><description/></item><item><title>Unrestricted Paths</title><link>https://alias454.com/unrestricted-paths/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/unrestricted-paths/</guid><description/></item><item><title>Unrestricted Paths ItemData</title><link>https://alias454.com/unrestricted-paths-item-data/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/unrestricted-paths-item-data/</guid><description/></item><item><title>UnTabs 1</title><link>https://alias454.com/un-tabs-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/un-tabs-1/</guid><description/></item><item><title>UnTabs 2</title><link>https://alias454.com/un-tabs-2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/un-tabs-2/</guid><description/></item><item><title>USB Devices</title><link>https://alias454.com/usb-devices/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/usb-devices/</guid><description/></item><item><title>Volc Rootkit</title><link>https://alias454.com/volc-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/volc-rootkit/</guid><description/></item><item><title>Vsearch</title><link>https://alias454.com/vsearch/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/vsearch/</guid><description/></item><item><title>WebDeveloper</title><link>https://alias454.com/web-developer/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/web-developer/</guid><description/></item><item><title>WebPaint</title><link>https://alias454.com/web-paint/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/web-paint/</guid><description/></item><item><title>Whitesmoke</title><link>https://alias454.com/whitesmoke/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/whitesmoke/</guid><description/></item><item><title>Windows Drivers</title><link>https://alias454.com/windows-drivers/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/windows-drivers/</guid><description/></item><item><title>Windows Patches</title><link>https://alias454.com/windows-patches/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/windows-patches/</guid><description/></item><item><title>Windows Programs</title><link>https://alias454.com/windows-programs/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/windows-programs/</guid><description/></item><item><title>Windows Shared Resources</title><link>https://alias454.com/windows-shared-resources/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/windows-shared-resources/</guid><description/></item><item><title>Winsecurity Info 1</title><link>https://alias454.com/winsecurity-info-1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/winsecurity-info-1/</guid><description/></item><item><title>Winsecurity Info 2</title><link>https://alias454.com/winsecurity-info-2/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/winsecurity-info-2/</guid><description/></item><item><title>Wireless Networks</title><link>https://alias454.com/wireless-networks/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/wireless-networks/</guid><description/></item><item><title>WireLurker</title><link>https://alias454.com/wire-lurker/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/wire-lurker/</guid><description/></item><item><title>XcodeGhost</title><link>https://alias454.com/xcode-ghost/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/xcode-ghost/</guid><description/></item><item><title>Xprotect Reports</title><link>https://alias454.com/xprotect-reports/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/xprotect-reports/</guid><description/></item><item><title>XSLCmd</title><link>https://alias454.com/xsl-cmd/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/xsl-cmd/</guid><description/></item><item><title>Zarwt Rootkit</title><link>https://alias454.com/zarwt-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/zarwt-rootkit/</guid><description/></item><item><title>Zk Rootkit</title><link>https://alias454.com/zk-rootkit/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://alias454.com/zk-rootkit/</guid><description/></item></channel></rss>