The Great Firewall - Internet in China
http://www.csnc.ch/ [NEWS]
http://www.csnc.ch/misc/files/publications/ChineseWall_V1.2.pdf
Freundliche Grüsse
Ivan Buetler
Welche Domain auf welcher IP?
Happy Testing
http://onsamehost.com/
Ivan
Solaris sadmind Exploit für Sol9 SPARC
http://packetstormsecurity.org/0810-exploits/sadmind-root.c
Ivan
Emergency Security Patch - Worm in the Wild

Update ist empfohlen
Ivan
Gained Windows Access - was nun?
http://synjunkie.blogspot.com/2008/03/basic-dos-foo.html
Gruss Ivan
Malware Analyse in PCAP Files (TCPDUMP)
http://taosecurity.blogspot.com/2008/10/cwsandbox-offers-pcaps.html
Ivan
Splunk Log Auswertung & Windows Events
Blog zur Usage von Splunk mit Windows Events.
Ivan
Hacker RFC
Original Hacker RFC
Compass Hacker RFC
Gruss Ivan
Oracle Hacking Seminar - BlackHat
- mod_plsql und XML DB HTTP
- Invoker versus Definer Rights
- SQL Injection Intro mit Bezug zur Programmier Sprache
- PL/SQL Hacking
- DB Privilege Escalation
Link: Packetstorm PDF
Wie man in Oracle SYSDBA über CREATE ANY DIRECTORY wird
"That is how to escalate from CREATE ANY DIRECTORY to SYSDBA and has been found to be reliable. This process relies on the fact that the Oracle DB allows DIRECTORY access to the password file location and allows UTL_FILE to overwrite the password file"
Remedy:
In addition to general DB hardening the analyst should REVOKE PUBLIC EXECUTE on
UTL_FILE, and REVOKE CREATE ANY DIRECTORY from all but SYSDBA.
Only SYSDBAs should be creating directories.
Link zum PDF: http://packetstormsecurity.org/papers/database/create_any_directory_to_sysdba.pdf
EPFL Keystroke Sniffer via Funk
Ich habe mit den beiden Autoren Kontakt aufgenommen und dabei auch über Wargames etc. gesprochen. Möglicherweise ergibt sich daraus ein Hack&Learn an der EPFL in Lausanne. Wäre doch cool?
Grüsse
Ivan
Video EPFL Keystroke Sniffing
Dan Kaminsky's DNS Schwachstelle erklärt
Ivan
Linux, Mac und OpenBSD sind sehr verwundbar - Kaspersky
Bemerkung Ivan: Dann müssen wir uns nicht mehr fragen, ob es auf einem Linux/Unix auch ein Anti-Viren Tool braucht....
Ivan
Hacking Oracle mit PL/SQL
http://packetstormsecurity.org/papers/database/oracle-assault.pdf
INSERT INTO ADMINS(DATE_CREATED, USER_NAME, PASSWORD) VALUES('24-AUG-08', 'SYSOP2', 'p07hf6523aseix'|| HR.GET_DBA_F)--')
Gruss Ivan
Fehlerhafte IPv6-Implementierungen ermöglichen Man-in-the-Middle-Angriffe
Link von Heise
http://www.heise.de/newsticker/Fehlerhafte-IPv6-Implementierungen-ermoeglichen-Man-in-the-Middle-Angriffe--/meldung/117030
Ivan
Gratis IT Security Awareness Tauschbörse
Beispiel
http://cyberexchange.isc2.org/search.aspx?page=1&q=&ResPerPage=50
Gruss Ivan
Chinesischer Skype Client loggt Gespräche
"A Chinese messaging and voice-over-IP client that uses the Skype protocol logs chat conversations based on certain keywords and other criteria"
Core Messages
- Although some have mooted that Skype is equipped with a backdoor for intelligence, and that TOM-Skype in particular contained a Trojan Horse for the Chinese government, the company publicly denied these suspicions
- These text messages, along with millions of records containing personal information, are stored on insecure publicly-accessible web servers together with the encryption key required to decrypt the data.
- The captured messages contain specific keywords relating to sensitive political topics such as Taiwan independence, the Falun Gong, and political opposition to the Communist Party of China
Das PDF der Untersuchung befindet sich hier:
Wow - aber es war ja zu vermuten.
Hanging GET - Comet
Eine für uns neue Technik lautet "Hanging Get". Es geht darum, gewisse Instant Messanging Anwendungen mit Web Technologien zu realisieren. Der Server kann mit Hanging GET jederzeit eine Antwort zum Client schicken und nicht nur aufgrund von einem einzelnen Request. Dies macht die Anwendung more responsive, wenn beispielsweise ein User einen Eintrag in sein Chat schreibt.
Die Suche im Internet nach "Hanging Get" verrät noch weitere Tricks und Links. Wie beispielsweise folgender Link, der auf die Unterschiede zwischen Ajax und Hanging Get, auch Comet Prinzip genannt, erläutert.
Das Problem beim Comet (Hanging Get) besteht darin, dass es Timeouts gibt und die Anzahl der Verbindungen seitens Client limitiert ist. Man kann jedoch den Hanging Get mit JavaScript realisieren und bei Timouts im Hintergrund automatisch einen neuen Hanging Get realisieren.
Gute Info für alle Advanced Web Programmierer.
Ivan
Neuer PCI Standard V1.2
Version 1.2 is effective immediately and version 1.1 of the standard will sunset on Dec. 31, 2008. The updated standard and supporting documentation is available on the Council’s Web site.
Compass befindet sich zurzeit in der Akkreditierungsphase; welche jedoch aufgrund der Finanzkrise zurzeit unterbrochen ist.
Ivan
Fun mit Dan Kaminsky' Stimme
Es gibt nun ein Dan Speak Cheat, wo man Dan's Sprüche hören kann. Sehr witzig, finde ich.
http://www.0x000000.com/?i=310
Ivan
Informationen sind Macht - Börsengewinn
The early morning report, which Apple Inc. spokesman Steve Dowling said was not true, sent shares plummeting to their lowest point in a year. The stock recovered around the time the post was removed from iReport.com, but ended the day off three per cent at US$97.07 amid a broader market slide.
An SEC spokesman declined to comment. Jobs, who survived pancreatic cancer, has remained quiet on the topic of his health despite appearing extremely thin in recent public appearances.
Original Link:
http://www.hackinthebox.org/modules.php?op=modload&name=News&file=article&sid=28529&mode=thread&order=0&thold=0
Quantum Kryptographie Angriff
Quantum cryptography has been used by some banks to protect data, and even to hide election results in Switzerland last year. But it has been discovered that shining bright light into the sensitive equipment needed makes it possible to hijack communications without a trace.
"It turns the equipment into a puppet-box that an eavesdropper can control," says Vadim Makarov from the Norwegian University of Science and Technology in Trondheim, who uncovered the vulnerability.
Bruce Schneier hat am 29. Oktober geschrieben
=====================================
Basically, the Swiss company ID Quantique convinced the Swiss government to use quantum cryptography to protect vote transmissions during their October 21 election. It was a great publicity stunt, and the news articles were filled with hyperbole: how the "unbreakable" encryption will ensure the integrity of the election, how this will protect the election against hacking, and so on.
Complete idiocy. There are many serious security threats to voting systems, especially paperless touch-screen voting systems, but they're not centered around the transmission of votes from the voting site to the central tabulating office. The software in the voting machines themselves is a much bigger threat, one that quantum cryptography doesn't solve in the least.
Links:
IEEE:
http://www.spectrum.ieee.org/oct07/5634
NEWS:
http://www.hackinthebox.org/modules.php?op=modload&name=News&file=article&sid=28538&mode=thread&order=0&thold=0
Schneider:
http://www.schneier.com/blog/archives/2007/10/switzerland_pro.html
Gefälschter e-Pass in Holland
http://freeworld.thc.org/thc-epassport/
Kevin Mitnick am Flughafen festgehalten
They also found a lock-picking kit and an HID proximity card spoofer that can be used to snag data stored on physical access cards by swiping it in front of them. The data can then be used to enter locked doors without having to make a forged access card. Mitnick says he used the device in a demonstration about security in his speech in Bogota, but that the customs agents' eyes lit up when they saw it, thinking it was a credit card reader.
...
http://www.cgisecurity.org/2008/10/kevin-mitnick-d.html