Reading time:
Less than a minute
Posted
by Haroon Meer
on
29 December 2007
A while back some of us discovered and subsequently lost days to “The Python Challenge“. Well.. prepare to write off...
Reading time:
~2 min
Posted
by Haroon Meer
on
23 December 2007
Amazon announced the beta of Amazon SimpleDB without that much fanfare, but it is an interesting trend to watch.. Essentially...
Reading time:
~2 min
Posted
by Haroon Meer
on
18 December 2007
Ok.. so being the cautious geek i am, i had bought a mac mini a while back before jumping into...
Reading time:
~1 min
Posted
by Haroon Meer
on
11 December 2007
Rob had a rant on his site on the timing attack, with a CSRF twist.. We met him after our...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
06 December 2007
OK.. so it was a long time ago, and old code is supposed to embarrass you.. but i pulled casper.exe...
Reading time:
~1 min
Posted
by Haroon Meer
on
06 December 2007
Dino is the guy who added much shellcode coolness to MetaSploit, gave the world Karma, released the first virtualization rootkit...
Reading time:
~5 min
Posted
by nick
on
01 December 2007
So…because I don’t have a report to write this weekend I’ve had some time to ponder and reflect on stuff...
Reading time:
~2 min
Posted
by Haroon Meer
on
21 November 2007
Slashdot picked up on the blog post from Light Blue TouchPaper commenting on the fact that a researcher was suprised...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
02 November 2007
Of course, Leopard’s new improved ™ finder includes an Itunes’esque “Cover Flow” view (which includes quick view thumbnailing quite impressively).....
Reading time:
~1 min
Posted
by nick
on
01 November 2007
I’ve spoken before on how I like some of Simon T Bailey’s stuff and his general leetnesses…he has some gems…...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
31 October 2007
but Leopards default icon for windows machines has to rank up there with dvwssr.dll (yeah.. thats a BSOD) /mh ok.....
Reading time:
~4 min
Posted
by Haroon Meer
on
29 October 2007
Aka… A good weekend.. The weekend got off to a slow start, when Amazon claimed it would take a little...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
25 October 2007
OK.. so part one of our pauldotcom interview has hit the interwebs.. it was fun and involved a power failure...
Reading time:
~2 min
Posted
by marco
on
19 October 2007
while waiting around for the PSW guys last night, it seemed like a good time to test our mettle on...
Reading time:
~1 min
Posted
by Haroon Meer
on
17 October 2007
You can almost taste the fanboy excitement.. but im guessing there will also be the mandatory rush for the first...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
16 October 2007
The November edition of MSDN magazine [is available] and is another security issue.. The articles look interesting, and if you...
Reading time:
Less than a minute
Posted
by Ian de Villiers
on
08 October 2007
A new version of Wikto is also available, which provides a more reliable web spider and also includes some minor...
Reading time:
Less than a minute
Posted
by Ian de Villiers
on
08 October 2007
We are pleased to announce the release of Suru version 2.0, our MITM proxy. Suru has now been rewritten to...
Reading time:
~2 min
Posted
by Haroon Meer
on
02 October 2007
Way back in 2000 i bought my kid sister a Sony PlayStation.. I have never been a big gamer (not...
Reading time:
~1 min
Posted
by Haroon Meer
on
01 October 2007
Royal pingdom did a quick check on what was running at some of the more popular sites on the Internet...
Reading time:
~3 min
Posted
by nick
on
29 September 2007
Something we preach very strongly in our training is the importance of an understanding of the underlying technology / application...
Reading time:
~3 min
Posted
by Charl van der Walt
on
27 September 2007
We just finished presenting an HBN Bootcamp and an HBN Combat Edition in Lausanne, Switzerland. A lot of people don’t...
Reading time:
Less than a minute
Posted
by marco
on
26 September 2007
saw this in my RSS reader, the null poison byte makes a comeback! Until it gets fixed, you can view...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
25 September 2007
This will probably get cleaned up soon, but thats a huuuuuuuge robots.txt [ http://www.whitehouse.gov/robots.txt]
Reading time:
Less than a minute
Posted
by Haroon Meer
on
22 September 2007
but the last Scott Adams posting on the Iranian presidents US visit has to be the best piece i have...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
21 September 2007
The Symantec Security blog has an article titled “Botnets: not just for spamming anymore“. Interestingly we are now starting to...
Reading time:
~1 min
Posted
by Haroon Meer
on
13 September 2007
These days its almost impossible to read a book on security or vuln-dev without a gratuitous IDA-Pro screenshot. IDA has...
Reading time:
Less than a minute
Posted
by Ian de Villiers
on
13 September 2007
’twas only a matter of time before various FaceBook developers started cashing in on the amount of personal info they...
Reading time:
~1 min
Posted
by Haroon Meer
on
12 September 2007
In early 2002 i suggested that we could solve some computer problems and south africas street-kid problem by setting up...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
12 September 2007
A recent maillist thread shows that the DC15 videos are anow available online [here] Our video (although my voice sounded...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
10 September 2007
Courtesy of afx:
Reading time:
Less than a minute
Posted
by Haroon Meer
on
04 September 2007
Steven Murdoch over at lightbluetouchpaper did an investigation into the Privila internship program.. What was also cool however was that...
Reading time:
~1 min
Posted
by Haroon Meer
on
02 September 2007
ok.. so a long time ago we tried the you-tube mentos stuff and happily wasted time (and coke) in the...
Reading time:
~3 min
Posted
by Haroon Meer
on
02 September 2007
I’ve ranted a few times about things i hate about the way we “do medicine”. (Doctors are not alone here.....
Reading time:
Less than a minute
Posted
by Haroon Meer
on
30 August 2007
If a picture is worth a 1000 words, then i dont want to know what this reads…
Reading time:
~1 min
Posted
by Haroon Meer
on
27 August 2007
For those of you haven’t yet seen, the J.S.E listed SecureData bought 100% of the shares in SensePost late last...
Reading time:
~8 min
Posted
by Charl van der Walt
on
24 August 2007
In Vegas I bought Herman “Exploiting Online Games” by Greg Hoglund and Gary McGraw. Being the saint that I am,...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
24 August 2007
I cant recall who said it in yesterdays meeting, but my response is simple: http://begthequestion.info/
Reading time:
~1 min
Posted
by Haroon Meer
on
23 August 2007
Some of you will know that i finally moved out of the shoe box i lived in for 6 years...
Reading time:
~1 min
Posted
by Haroon Meer
on
23 August 2007
BMC did his 90 minute engedu talk on DTrace at google to show some of its coolness (and from the...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
22 August 2007
For all those guys who usually scoff at CSI / Police Movies where the detective shouts “enhance image” or remove...
Reading time:
~2 min
Posted
by Haroon Meer
on
20 August 2007
I suspect somewhere there exist cardinal rules of blogging which would state that using a single post to make 2...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
16 August 2007
Hernan Ochoa from Core has released the Pass the Hash Toolkit which is very cool.. It basically means that you...
Reading time:
~2 min
Posted
by Charl van der Walt
on
15 August 2007
SensePost is an exciting & dynamic young company with strong values & a world vision. We specialize in high-end technical...
Reading time:
~5 min
Posted
by Haroon Meer
on
15 August 2007
OK.. So as i mentioned before, I saw Robert Graham from Erratasec demo hamster live on stage and wondered if...
Reading time:
~2 min
Posted
by Haroon Meer
on
14 August 2007
Ok.. so its a lot later than i promised, but i did mention that i would post some feedback on...
Reading time:
~2 min
Posted
by Charl van der Walt
on
11 August 2007
I meant to blog this whilst I was still in Vegas, but only got around to it now. Its arb,...
Reading time:
~2 min
Posted
by Haroon Meer
on
10 August 2007
The slides | tool | paper from BlackHat07/DefCon07 have been posted online for your wget’ing pleasure. More details on squeeza...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
08 August 2007
Spock have just opened up beyond their private beta and promise to be the most comprehensive people search tool on...
Reading time:
~4 min
Posted
by nick
on
07 August 2007
The bulk of security research pertaining to VoIP call control, setup and signaling protocols has focused on the Session Initiation...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
03 August 2007
During our talk we demo’d squeeza.. We will link to the slides and .ppt as soon as we can, but...
Reading time:
~1 min
Posted
by Haroon Meer
on
03 August 2007
ok.. so im in my room finally catching up on sleep (or will be in a few minutes) while most...
Reading time:
~1 min
Posted
by Haroon Meer
on
30 July 2007
(always wanted to say that!) 2 SensePost Training sessions are over, and as i type The weekday sessions are at...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
27 July 2007
Ok.. so the 2nd plane with SensePost’ers has touched down in LasVegas and the first cheeze-pizza from the caesars food...
Reading time:
~1 min
Posted
by marco
on
24 July 2007
A little while back we published our first public QoW for your abuse and enjoyment, and the time to close...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
22 July 2007
Deels stumbled on www.simpsonizeme.com to give me mh, the springfield edition.. Combine with your intranet mug-shots, and it could give...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
16 July 2007
Google have finally revised their cookie expiration policy, which will have user cookies expiring after 2 years. (For those of...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
16 July 2007
hmmm… i have heard this somewhere before…. ” However, in cases where your finger is used to identify or authenticate...
Reading time:
~2 min
Posted
by Haroon Meer
on
12 July 2007
ok.. some of you in the office would have heard me whine when vmware fusion recently started taking my whole...
Reading time:
~2 min
Posted
by Haroon Meer
on
11 July 2007
Someone in the office was discussing Microsoft’s recent horrible foray into the anti-virus market. Apparently an online source held one-care...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
07 July 2007
Richard Bejtlich didnt give the pre-release a glowing review but i know at least a few people waiting eagerly to...
Reading time:
~7 min
Posted
by Haroon Meer
on
04 July 2007
A short while back, a discussion broke out on a mailing list about the nature of being a pen-tester. The...
Reading time:
~1 min
Posted
by Charl van der Walt
on
03 July 2007
The Black Hat Briefings is arguably the most significant technical security conference in the world. It takes every year in...
Reading time:
~4 min
Posted
by Charl van der Walt
on
01 July 2007
Many years ago, when we first released ‘Setiri’ one of the controls that we preached was website white-listing. As talk-back...
Reading time:
~1 min
Posted
by Haroon Meer
on
19 June 2007
First IBM announced their interest in Watchfire, and now HP announces their interest in SPI Dynamics. “Consolidation in the industry”...
Reading time:
~1 min
Posted
by Haroon Meer
on
16 June 2007
Mark Shuttleworth on his blog makes it clear -snip- “We have declined to discuss any agreement with Microsoft under the...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
13 June 2007
BlackHat Vegas is almost on us again, and this will be the 6th year running that we present there.. This...
Reading time:
~1 min
Posted
by Charl van der Walt
on
12 June 2007
Whew. After much last-minute war with PPT C# and ORM our slides and Beta 1.0 of our tool are available...
Reading time:
~2 min
Posted
by Haroon Meer
on
12 June 2007
Gareth linked to David Maynor’s blog where he documents the results of some simple fuzzing against the new Win32 port...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
10 June 2007
R J Hillhouse (who has a fascinating background) found that when she double clicked a graph on a slide deck...
Reading time:
~1 min
Posted
by Charl van der Walt
on
09 June 2007
After a six hour delay due to technical problems *before* my journey even started I’m finally on the plane and...
Reading time:
~1 min
Posted
by Haroon Meer
on
09 June 2007
VMware have just released beta4 of its Fusion product for OSX. The initial beta was hard to justify and a...
Reading time:
~1 min
Posted
by craig
on
06 June 2007
Scheduled tasks and services are often run as accounts with excessive privileges (HP Insight, backups etc) instead of limited service...
Reading time:
Less than a minute
Posted
by Charl van der Walt
on
05 June 2007
Check out http://hongkong.langhamplacehotels.com/accom/technology.htm in Hong Kong. They provide Cisco IP phones in the rooms, but with a difference. According to...
Reading time:
~3 min
Posted
by Haroon Meer
on
05 June 2007
Jeremiah from WhiteHatSec has just written a quick piece on how to find your websites. Now Footprinting is obviously dear...
Reading time:
~1 min
Posted
by Haroon Meer
on
04 June 2007
Ars Technica is reporting on the law suit filed in 2006 by Martin Bragg who accused Linden labs of wrongfully...
Reading time:
~1 min
Posted
by Haroon Meer
on
03 June 2007
[Yahoo pipes] looks like an awesome way for even non-programmers to create web mashups trivially. Aside from the fact that...
Reading time:
Less than a minute
Posted
by Haroon Meer
on
02 June 2007
Aaron Adams over at SYMANTEC, did a quick check on the version of Samba running on currently up to date...
Reading time:
~1 min
Posted
by Haroon Meer
on
30 May 2007
Ok.. so we have an outside gate type thing that leads to our garden. Since we would probably get to...
Reading time:
~1 min
Posted
by Haroon Meer
on
30 May 2007
This has probably been pondered, but something occurred to me whilst entering my new home.. The guard house grants access...