Blog

ITWeb Security Summit 2009 – CFP Deadline

I just wanted to remind everyone that the CFP for the 2009 ITWeb Security Summit closes on 26 Jan. We’re hoping to see much more in the way of submissions from local infosec people (especially from corporates) but there’s also still room for international submissions. So far I know of 11 ‘international’ submissions. ITWeb is really good to its international speakers so non- South Africans shouldn’t be put off by the long distances. The conference is at an excellent location, South Africa is beautiful at that time of year, you’ll stay in a swanky hotel (this is the one they used last), the food and beer are cheap and ITWeb will take good care of you. You can check out the conference home page and CFP here.

BiDiBLAH 2.0 Released!

Yup, that’s right, BiDIBLAH 2.0 has finally been released and is available for purchase at an incredibly low US$500!! You can get BiDiBLAH here. Users who would like to try it out first, can download the evaluation copy, which is limited to a 60 minute runtime. Also, check out the FAQ page for some common / technical questions and answers. ./frankieg

SensePost Training @ Black Hat DC

So… Black Hat DC is rushing at us like a speeding big… speeding thing. This is just a friendly a reminder about the show (Hyatt Regency Crystal City • February 16-19). We have two courses on offer at the DC show this year – Bootcamp (a highly practical course that teaches method-based hacker thinking, skills and techniques) and Combat (all hack, no talk – our flagship course). One small change to our usual approach this time is that we’re requesting Combat students to bring their own laptops. On Bootcamp and our other courses we provide pre-configured XP boxes but Combat participants are generally already quite experienced and comfortable on their own platforms.

“Hooker” approach to break-in!

Interesting post on cost/benefit analysis of hacker and hooker attacks…. behrang

Hacking By Numbers Online – your thoughts?

We often get asked by students of our Hacking By Numbers courses if the course environments or at least the VMWare images are available after the training is over. As a result we’ve started to experiment with a model for offering our courses in an online environment. The idea would be to maintain the full numbers of labs and technical work, maintain the high standard of trainers and materials, but make the training available via the internet to people at various diverse locations. The approach we’ve been testing appears to show some promise, so we’re hoping to ask some of you for your input and opinions.

Headhunter: Employers Hate World Of Warcraft Players

This is an old post, regurgitated because it yielded some spirited discussion. Apparantly headhunters are being told to avoid World of Warcraft players: http://www.alleyinsider.com/2008/12/headhunter-employers-hate-world-of-warcraft-players It’s an interesting twist, because a little while back i also recall hearing an itconversations interview on in-game leadership skills.. My own views on this are mixed.. i find the amount of time spent on gaming to be staggering (at least with gamers ive spoken to) but ive also heard some pretty hard core hax0rs talking about gaming.. hmm….

Dont look now, but it seems they broke the Interwebs again..

Those pesky hackers! Alex Sotirov (of heap feng shui fame, famous for breaking everything from Vista, to web browsers, to facebook) and Jacob Applebaum (of cold-boot attack fame, and more importantly of “knuth is my homeboy” fame) will be talking in a few hours at the 25c3 conference in Germany and by all accounts its going to be an “Internet Breaker”. There is a fair bit of speculation on the nature of the bug (though most people some confident that its routing protocol related) and HD Moore has blogged that the pair have sought legal advice pre-publishing.

We going to sue and make Squillions…..

or maybe not… The twitters informed me that Singe uncovered a case of brand plagiarism!!!1! -snip- -snip- So lets review.. the logo looks shockingly the same they no doubt, behind closed doors refer to themselves as SP too just based on their staff numbers, they probably have 16 good looking people there too! i had the lawyers lined up but decided to dig more info. on them first..

… Scrapy…

(an open source web crawling and screen scraping framework written in Python..) i promised deels i wld stay off the interwebs for a few days, which means my quick stops are filling up my bookmarks list.. This looks worth checking out.. http://dev.scrapy.org/ /mh

Ted Speaker List up and Free hackin9

(aka 2 completely unrelated topics) You can grab a free copy of the Hackin9 magazine [here] And you can view the speakers list for Ted09 [here]… /mh