Profile for Robert McDougal
Robert McDougal
Member Since: April 18, 2014
Ninja
Posts: 182

Robert McDougal
Senior Information Security Analyst
Financial Sector
Birmingham, AL

Follow me on Twitter   Visit my LinkedIn page  

Robert is a security professional with extensive IT experience. His skills and knowledge base reaches across many security topics ranging from specific technologies to risk management, compliance, DLP, forensics, vulnerability management, penetration testing and secure coding. He provides strong technical skills with solid ethical judgment to the IT groups and businesses he supports. He is especially interested in quantum cryptography and web application penetration testing. He's also investigating new technologies for providing the IT community as a whole with better phishing intelligence.

When not working he enjoys to hike, camp and travel with his family.

Robert earned a BS from Troy University with a major in computer science. He also holds several certifications including Security+, CEH, CPT, CCFE, and WAPT.



Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
10 Recommendations for Outsourcing Security
10 Recommendations for Outsourcing Security
Enterprises today have a wide range of third-party options to help improve their defenses, including MSSPs, auditing and penetration testing, and DDoS protection. But are there situations in which a service provider might actually increase risk?
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-4077
Published: 2015-09-03
The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient before 5.2.4 allows local users to read arbitrary kernel memory via a 0x22608C ioctl call.

CVE-2015-5189
Published: 2015-09-03
Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.

CVE-2015-5190
Published: 2015-09-03
The pcsd web UI in PCS 0.9.139 and earlier allows remote authenticated users to execute arbitrary commands via "escape characters" in a URL.

CVE-2015-5735
Published: 2015-09-03
The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient before 5.2.4 allows local users to write to arbitrary memory locations via a 0x226108 ioctl call.

CVE-2015-5736
Published: 2015-09-03
The Fortishield.sys driver in Fortinet FortiClient before 5.2.4 allows local users to execute arbitrary code with kernel privileges by setting the callback function in a (1) 0x220024 or (2) 0x220028 ioctl call.

Dark Reading Radio
Archived Dark Reading Radio
Another Black Hat is in the books and Dark Reading was there. Join the editors as they share their top stories, biggest lessons, and best conversations from the premier security conference.