You never know where and when you may need to pick a lock. You may just need to get into your house or car, or you may be captured by insurgents in a foreign nation. Whatever the case may be, this is the Beginners Guide To Lock Picking. With practice and time, your skills will improve.
read more | digg story
Nmap 127.0.0.1: Flash Style
Originally posted at: http://tech.nocr.at/hacking-security/nmap-127-0-0-1-flash-style
A design flaw found in ActionScript (Flash) has been allowed the scanning hosts via trial and error. Whenever a port is queried by Flash that isn’t open, it responds with a “SecurityErrotEvent” instantly. But, when a port is open, it doesn’t get that response for an extended period of time, while it waits for a reply to “policy-file-request”. PoC can be viewed at the below address. Now the question is: What ELSE can you do with this information once you have this ability. I’ll leave that up to the color of your hat.
How to Avoid Tethered Data Charges on Your Mobile Device.
How to save $840 a year by using Internet Connection Sharing instead of the paid service from your cell phone provider on your Windows mobile device.
NBC Dateline Reporter Flees Defcon 15
I know I am a bit late to the game but here it is:
[youtube=http://www.youtube.com/watch?v=nCvmkxO5hoQ&w;=425&h;=350]
Also, if you can hear, check out this arstechnica article
DEFCON and an Interview With Dark Tangent
This is a very cool interview with Dark Tangent, the founder of Defcon, that was done recently.
[youtube=http://www.youtube.com/watch?v=lg6bQMTjHCE&w;=425&h;=350]
Are You Secure: Secunia to the Rescue
Originally Posted on TECH.NOCR.AT @ http://tech.nocr.at/content/view/22/1/
Secunia.com has been a great resource of vulnerability and virus information over the years for Black, Grey, and White hat hackers alike. Recently they released a BETA project that looks promising and could be the first step into a “package manager” for Windows. In there own words:
A new addition to the Secunia Software Inspector series, the free Secunia Personal Software Inspector (PSI), is now available for BETA testing. Capable of detecting and categorizing more than 4,200 applications.
So far, I have run it on a Vista Ultimate and XP SP2 box and it has come back with some impressive results. It found some software that I hate to admit, had totally forgotten about, on my system that was out of date. As for cons, I have only found two thus. One, it detected my Firefox install as 2.0.0.4 instead of 2.0.0.6. The second being, not so much a technical fault, but a person preference. It is not portable, you install it and it works on that box.
What they don’t tell you on the site is that when it detects out of date applications, it provides you a direct download link. This is good and bad, you are not seeing where this download is coming from, so you are trusting Secunia. It’s good for us lazy computer geeks though, because it is only one click.
Finally, they provide you a detailed write up on the out of date software you have and links to find out what vulnerabilities affect that software package.
In closing, this is a great piece of software that I will definitely keep tabs on and take around with me, along with my File Hippo Updater
Check out and follow this project at https://psi.secunia.com/
Transformers
Alright, this is just a quick update. The torrent is still up and functional. Also, I just had to post this. It has a weak but feasible link to tech.
http://www.votemoojj.com/stuff/shoes/index.html
USB Sauces and the Making of Apps
A couple people have asked for links on where I got this portable app or that, well, all over really. Here are a few links to get you started:
http://www.dirk-loss.de/win-tools.htm
http://www.tinyapps.org/
http://www.portablefreeware.com/
http://en.wikipedia.org/wiki/List_of_portable_applications
http://standalone.atspace.org/
http://portableapps.com/apps
http://www.kikizas.net/en/usbapps.html
Also, I gave some of the apps their portability myself. It’s a easy process. Drag and drop an installer file “setup.exe” or “whatever.msi” into Universal Extractor. What you are going to get is a folder right where that installer is, with the same name as the installer. Open the folder and you will have a couple folders. Usally and “app” folder. Check inside, and usually you have the application itself that you were supposed to install. Run it, see if it works by itself, take it to another computer, try it there. If so, you have yourself your own personal portable app.
Have fun, and if you find an app that you can’t live without or think is just plain cool, shoot me a link, I’ll try it out, and it may just become the next app I show on Hak.5 or The Portable Admin. Giving credit of course.
mubix
[EDIT]It has been requested that I post a link to sysinternals, since I have their tools in my torrent. Well. I have one rule on my blog: No links to Microsoft. Sorry.[EDIT]
Wine Doors
I don’t use Wine. It’s difficult to get anything working and a pain once it is. However since I found out about the Wine-Doors project, it’s made me go back on that thought.
It’s a fairly new project, but well on it’s way to being an enabler for a great many users. A great many users have been looking for that one last thing, to get them over the hump of still using Windows. Some tried Wine, and couldn’t get it to work properly, like myself, that is where Wine-Doors helps out. Out of the box it installs things like the Microsoft core fonts, winegecko, mozilla activex control and the visual C++ runtime, which resolves a great many discrepancies that users wrestle with in wine.
Once installed, you can install some of the hardest Wine apps with the grace of the double click:
World of Warcraft
Halflife 2 (Steam)
iTunes
Flash 8
And many more, with more all the time. You can check out the growing list at the Wine-Doors wiki under BundledWith
mubix
USB Tools Torrent and More!
Yup, it’s finally here. Download it here! RIGHT CLICK AND SAVE AS
So now that is done, I get to talk about other things that I am getting into:
Wubi “Linux” Installer: http://wubi-installer.org/
This is actually pretty amazing. What it does is automagically downloads an ISO (takes a while), makes a virtual disk, puts entries in the Windows boot loader and tells you to restart. When you restart it boots to the virutal disk and installs the version of Ubuntu you chose. From then on (yes there is an uninstaller) you have a “dual boot” machine without having to repartition your system.
Tcpxtract and Foremost:
These application try to reconstruct files from network streams or captures. I haven’t delved to far into these yet, but they look pretty interesting. I’m thinking tcpxtract + ettercap
And I have been wanting to setup Nagios and Cacti for the longest time, I just have never gotten around to it. Thoughts? Is it worth it? We set it up at ShmooCon but I really didn’t have time to get hands on it.
Enjoy the torrent. If you can’t figure out a program, just post a comment and I’ll explain it.
mubix
P.S. You guys better appreciate this, I am up at 3:37 AM getting this out to you guys