Our Blog

We are famous (almost!)

Last week had two “cloud-security” related articles hit the inter-webs.. After our Vegas09 talk on “clobbering the cloud” we had a brief chat to Rob Lemos, who called us up again, so we ended up adding the soundbyte to his piece in Technology review along with guys like Moxie Marlinspike and Danny MacPherson [here] We also showed up on Read/Write Web, where we were called “security nerds” and “black hats”…

Criticism, Cheerleading, and Negativity

[Alex Payne] has an excellent post up titled “Criticism, Cheerleading, and Negativity“. It’s a 2 minute read, but its worth it: ” We understand well the idea of being in favor or something, or against something, but we don’t particularly understand how criticism fits into this dichotomy. .. The reason a person is critical of a thing is because he is passionate about that thing. In order to have a…

ZaCon – A con in need of a better tagline…

ZaCon came and went, “and a fun time was had by all!” The first run was a semi-cosy affair held at the University of Johannesburg, with 16 speakers holding the crowd from 08h00 till 18h00. ZaCon had many SensePost faces, but is not expressly an SP initiative.. It’s a community based con aimed at growing the next gen of South African hax0rs.. My brief ~12 minute intro: “Why Zacon” explains…

Defcon-17 – Clobbering the Cloud

Our DC-17 video (of the “Clobbering the Cloud” talk) is now available on the the new look DefCon download site: [here] All of the other DC17 videos can be found [here] (if you are a senseposter, you can grab them with descriptions from [here])

Twitter killed the (infosec) Blogging Star ?

Like it, hate it or just plain struggling to understand it, Twitter has made a huge impact across a wide range of fields. We use it fairly heavily internally for simulated water-cooler chatter and quick link-exchange. (like any piece of sp-geek-over-engineering we also have a tweet-bot to convert tweets to emails, and convert blog notifications to tweets). It’s pretty clear though, that once we started tweeting internally, people started blogging…

Spammers need love too..

-snip- From: Haroon Meer <haroon@sensepost.com> To: Marc Schneider <marcs@mplw.net> Subject: Re: http://www.sensepost.com – Contact needed Hi Dr Schneider. * Marc Schneider [marcs@mplw.net] seemed to say: >I am Dr. Marc Schneider and I work for Multilingual Search Engine >Optimization Inc. in Washington DC ( Tel: 1 202-250-3645) – I would >like to speak with the person in charge of your international >clientele. Who is my contact? Who should I speak to??…

Dvorak, on Windows 7, Microsoft and attention to details..

The other day i tweeted a link from John Dvorak reviewing Windows 7. He basically said that Microsoft was dying, and said the product was “made with the same cheap Microsoft vodka.” Dvoraks not new to this[1], (i recall reading his columns in PC magazine in the early 90’s, so he has been around). He slates Microsoft, not because of the code in windows7, but because (he feels) Microsoft has…

Sensepost’s Developer and Bootcamp Security courses (November)

Hi All SensePost will be running their next Developer and Bootcamp courses for 2009, scheduled for November. Please drop me an email if you know of anyone in your area that would like to attend. – 1) Hacking by Numbers – Developer Edition (16-18 November 2009) – 2) Hacking by Numbers -Extended (Bootcamp) Edition (10-13 November) Information about courses: 1) HBN – Developer Edition ‘Hacking By Numbers – Developer Edition‘…

*sigh* alas poor kindle…

my wife might have a kindle, which i might have bought in the US, which she might have loved dearly.. Buying books might have been possible using the “gift card hack” or the “US Postal Address hack” – but alas! It seems as if i can no longer transfer my money from me to Amazon this way.. Must our beautiful friendship end this way amazon? Will this geofilter come between…

SensePost again accredited as a PCI ASV

SensePost is proud to announce that they have retained their status as an Approved Scanning Vendor for PCI DSS purposes. This letter of acknowledgement was gladly received: Truth be told, we did pop the bubbly for this one.