Category Archives: security

Funny ‘Hacker’ Story

Funny ‘Hacker’ Story.
A funny story about a hacker named “bitchchecker”, proving his mad skills by attacking someone on the Internet.
Using the IP: 127.0.0.1
Watch out for this guy.

VRT: APT: Should your panties be in a bunch, and how do you un-bunch them?

VRT: APT: Should your panties be in a bunch, and how do you un-bunch them?.
I don’t know how to say it anymore than this:
Matt Olney wrote a damn, a DAMN good post about APT on the VRT blog, and if you read my blog, and you don’t go over to the VRT blog and [...]

Sourcefire VRT Labs: MS to SID mappings

Sourcefire VRT Labs.
For those of you that are using Sourcefire VRT rules to protect your network with your Snort IDS/IPS installation, (as you should!).  There are mappings from MS vulnerability number to SID number, in the past, you either had to be a Sourcefire customer (we make this super easy in the Policy Editor GUI) [...]

Offset, Depth, Distance, and Within

Without going off the deep-end here and discussing every single Snort rule keyword, I just wanted to touch on a few modifiers that people sometimes misunderstand.  They aren’t difficult, and hopefully after this explanation and a few examples, I can clear some of the air around these five modifiers.
The five modifiers that I am talking [...]

Hogging the Snort Host Attribute Table

Hogger is a new Snort supportive tool written in Perl.  It takes Nmap output and makes a Host Attribute Table.
via Security – The Global Perspective: Hogging the Snort Host Attribute Table.
I talked about the above here.

Stop Google Buzz From Showing the World Your Contacts

Stop Google Buzz From Showing the World Your Contacts – google buzz – Lifehacker.
If you are a person who values their privacy and want to secure you Google Buzz contacts, I.E.  Not show everyone in the world who is in your contact book, follow the directions above.
I’ve done this, just for good citizen’s sake, as [...]

Tuning Snort with Host Attribute Tables – CSO Online – Security and Risk

Tuning Snort with Host Attribute Tables – CSO Online – Security and Risk.
Here is an article I wrote for CSO magazine, thought the readers of my blog might like to check it out as well.
I was asked to write a fairly technical article for CSO magazine about Snort, the problem is, which part of Snort [...]

Will Hack For SUSHI » MiFi Config Hack

Will Hack For SUSHI » MiFi Config Hack.
A post by friend and collegue at SANS Joshua Wright.  Joshua is one of the guys I know that is really proficient at hacking wireless.  Bluetooth, wifi, etc.  He does some really wonderful work at that, and he’s fantastic at it.
This post is about him hacking [...]

Fun with Firewall Logs

So, after my post about ask.com’s network…  Here’s another quiz for you.

Feb 15 09:16:39 localhost kernel: IN=eth0 OUT= MAC=00:03:47:f1:52:0d:00:18:01:b6:c1:4d:08:00 SRC=121.242.15.135 DST=192.168.x.x LEN=72 TOS=0×00 PR
EC=0×00 TTL=45 ID=32394 DF PROTO=TCP SPT=52764 DPT=22 WINDOW=46 RES=0×00 ACK PSH FIN URGP=0

What kind of fun is that!

If you never knew it occurred, did it occur in the first place?

In my To-Do list, I have a section for Blog topics that I think of in $random_place and I want to jot down for brainstorming later. This topic has been on my to-do list for about a year.
I was standing on a stage giving a speech at a military base, in about 2004.  The people [...]

12 visitors online now
12 guests, 0 members
Max visitors today: 18 at 08:09 am GMT+5
This month: 103 at 03-10-2010 11:24 am GMT+5
This year: 104 at 02-22-2010 12:55 am GMT+5
All time: 104 at 02-22-2010 12:55 am GMT+5