<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress.com" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>cansecwest &amp;laquo; WordPress.com Tag Feed</title>
	<link>http://wordpress.com/tag/cansecwest/</link>
	<description>Feed of posts on WordPress.com tagged "cansecwest"</description>
	<pubDate>Sun, 20 Jul 2008 07:11:47 +0000</pubDate>

	<generator>http://wordpress.com/tags/</generator>
	<language>en</language>

<item>
<title><![CDATA[Νίκησε η Ubuntu, Leopard και Vista KO, CanSecWest συνέχεια.]]></title>
<link>http://altervedo.wordpress.com/?p=108</link>
<pubDate>Sun, 30 Mar 2008 17:32:09 +0000</pubDate>
<dc:creator>altervedo</dc:creator>
<guid>http://altervedo.wordpress.com/?p=108</guid>
<description><![CDATA[Σας μίλησα προχθές για τη δεύτερη μέρα του διαγωνισμού]]></description>
<content:encoded><![CDATA[<p><a href="http://altervedo.wordpress.com/2008/03/28/macbook-air2-hard-2-hack%ce%b3%ce%b9%ce%b1-2-%ce%bb%ce%b5%cf%80%cf%84%ce%ac/" title="Altervedo - MacBook Air Hacked in 2 minutes" target="_blank">Σας μίλησα προχθές</a> για τη δεύτερη μέρα του διαγωνισμού PWN to OWN που διεξήχθηκε κατά τη διάρκεια της CanSecWest στον Καναδά. Σήμερα σας αναφέρω τι έγινε την τρίτη και τελευταία μέρα του διαγωνισμού.</p>
<p>Επαναλαμβάνω κάποια γενικά πράγματα για το διαγωνισμό για όσους δεν έχουν διαβάσει το <a href="http://altervedo.wordpress.com/2008/03/28/macbook-air2-hard-2-hack%ce%b3%ce%b9%ce%b1-2-%ce%bb%ce%b5%cf%80%cf%84%ce%ac/" title="MacBook Air…2 hard 2 hack…για 2 λεπτά" target="_blank">προηγούμενό μου post</a> ή δεν παρακολούθησαν γενικότερα την εξέλιξη του διαγωνισμού:<br />
Οι διαγωνιζόμενοι έπρεπε να προσπαθήσουν να αποκτήσουν τον έλεγχο ενός από τα τρία notebooks χρησιμοποιώντας μια 0day αδυναμία. Τα notebooks: VAIO VGN-TZ37CN με Ubuntu 7.10, Fujitsu U810 με Vista Ultimate SP1 και ένα MacBook Air με OSX 10.5.2. O νικητής παίρνει το notebook δικό του και ένα χρηματικό βραβείο. Σκοπός του διαγωνισμού...κυρίως η ανακάληψη νέων 0day αδυναμιών.</p>
<p>Πώς πήγε ο διαγωνισμός:<br />
<b> Την πρώτη ημέρα</b> κανείς δεν κατάφερε να χακάρει κάποιο από τα τρία noteboοκs. Φταίξιμο, ίσως, του βαθμού δυσκολίας που είχαν αρχικά θέσει οι διοργανωτές. Πράγματι, κατά τη διάρκεια της πρώτης ημέρας οι επιθέσεις και προσπάθειες χακαρίσματος ήταν δυνατό να γίνουν μόνο διαμέσω δικτύου (στην πραγματικότητα ο υπολογιστής του hacker και το προς χακάρισμα notebook ήταν συνδεδεμένοι με ένα καλώδιο δικτύου crossover).<br />
<b> Την δέυτερη ημέρα</b>, αποφασίστηκε η χαλάρωση του βαθμού δυσκολίας. Έτσι, επιτράπηκε στους διαγωνιζόμενους να μπορούν<br />
να ζητούν από τους διοργανωτές να εκτελέσουν κάποιες ενέργειες, όπως το άνοιγμα ενός email ή την επίσκεψη σε κάποια σελίδα. Τη δεύτερη,λοιπόν, μέρα είχαμε το πρώτο θύμα. Το MacBook Air χακαρισμένο μέσα σε δύο λεπτά. Το χακάρισμα επιτεύχθηκε χρησιμοποιώντας μια 0day vulnerability του browser Safari. Μπορείτε να διαβάσετε περισσότερα στο post μου <a href="http://altervedo.wordpress.com/2008/03/28/macbook-air2-hard-2-hack%ce%b3%ce%b9%ce%b1-2-%ce%bb%ce%b5%cf%80%cf%84%ce%ac/" title="Altervedo - MacBook Air Hacked in 2 minutes" target="_blank">MacBook Air…2 hard 2 hack…για 2 λεπτά</a>.<br />
<b> Την τρίτη ημέρα</b> και τις πρώτες ώρες της, τα δύο εναπομείνοντα notebooks στεκόταν ακόμα περήφανα για την αντοχή τους όρθια στο χώρο του διαγωνισμού. Οι διοργανωτές αποφάσισαν να χαλαρώσουν και άλλο το βαθμό δυσκολίας, επιτρέποντας την εγκατάσταση κάποιων από τις πιο γνωστές εφαρμογές. Στην ουσία αυτή που θα ζητούσε ο διαγωνιζόμενος αρκεί να ήταν μια γνωστή δημοφιλής εφαρμογή και φυσικά αν ήταν σύμφωνοι οι κριτές.</p>
<p>Είχε φτάσει η ώρα να "πέσει" το δεύτερο notebook. Είχε φτάσει η ώρα για τον Shane Macaulay. Έκανε δικό του το Fujitsu U810 laptop που έτρεχε Vista Ultimate SP1 και 5.000$. Ο Macaulay εκμεταλλέυτηκε μια 0day αδυναμία του Adobe Flash και κατάφερε να αποκτήσει τον έλεγχο των Vista SP1.</p>
<p>Κερδισμένος του διαγωνισμού...η <a href="http://www.ubuntu.com" title="Ubuntu linux distribution" target="_blank">Ubuntu</a> φυσικά που κανείς δεν κατάφερε να χακάρει και εννοείται οι δύο νικητές που έφυγαν από το διαγωνισμό με χρήματα και ένα notebook.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Ασφάλεια διάρκειας δύο λεπτών!]]></title>
<link>http://oktabitos.wordpress.com/?p=556</link>
<pubDate>Sat, 29 Mar 2008 15:39:43 +0000</pubDate>
<dc:creator>Oktabitos</dc:creator>
<guid>http://oktabitos.wordpress.com/?p=556</guid>
<description><![CDATA[ 
Τόσο χρόνο χρειάστηκε ο Charlie Miller για να σπάσει τις δικ]]></description>
<content:encoded><![CDATA[<p align="center"><img src="http://oktabitos.wordpress.com/files/2008/03/macosx-leopard.jpg" alt="Mac OS X Leopard" /> </p>
<p align="justify">Τόσο χρόνο χρειάστηκε ο Charlie Miller για να σπάσει τις <strong>δικλείδες ασφαλείας</strong> του λειτουργικού συστήματος της <strong>Apple</strong>, σε διαγωνισμό στο Βανκούβερ.</p>
<p align="justify">Οι συμμετέχοντες του ετήσιου διαγωνισμού CanSecWest έπρεπε να σπάσουν τα μέτρα ασφαλείας σε τρία διαφορετικά laptops με λειτουργικά συστήματα <strong>Vista Ultimate SP1, Leopard OS X 10.5.2 και Ubuntu 7.10</strong>. Στόχος του διαγωνισμού είναι να εξακριβωθεί έστω και ανεπίσημα πίο λειτουργικό σύστημα είναι πίο ασφαλές ή πιο ευάλωτο. <!--more--></p>
<p align="justify">Ο <strong>Charlie Miller</strong>, αναλυτής ασφαλείας που έγινε πρόσφατα γνωστός με το σπάσιμο του <strong>iPhone</strong> (φαίνεται πως έχει εξειδίκευση σε προϊόντα της Apple), χρησιμοποίησε τεχνική παρόμοια με <strong>phishing</strong> για να στείλει τον υπολογιστή με το <strong>Leopard</strong>, σε ιστοσελίδα που περιείχε κακόβουλο κώδικα. Ο κώδικας τελικά μέσα σε 2 λεπτά έσπασε την προστασία του φορητού, χαρίζοντας έτσι στον Miller τα πιο γρήγορα και ίσως εύκολα 10.000 δολάρια που ήταν και το έπαθλο από τον χορηγό.</p>
<p align="justify">Μέχρι τώρα τα <strong>Vista</strong> και το <strong>Ubuntu</strong> στέκονται στο ύψος των περιστάσεων και αμύνονται αρκετά καλά απέναντι στις επιθέσεις των «<strong>κακόβουλων</strong>» χάκερ!</p>
<p align="justify">[<strong><a href="http://www.pcw.gr/default.php?pid=6&#38;art_id=3079">via</a></strong>]</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacker exploits Safari in 2 minutes, wins $10k and MacBook Air]]></title>
<link>http://technologyinfo.wordpress.com/?p=512</link>
<pubDate>Fri, 28 Mar 2008 13:55:59 +0000</pubDate>
<dc:creator>jtsmyth8</dc:creator>
<guid>http://technologyinfo.wordpress.com/?p=512</guid>
<description><![CDATA[He took the first of three laptop computers &#8212; and a $10,000 cash prize &#8212; Thursday after ]]></description>
<content:encoded><![CDATA[<p>He took the first of three laptop computers -- and a $10,000 cash prize -- Thursday after breaking into a MacBook Air at the CanSecWest security conference's PWN 2 OWN hacking contest.</p>
<p>Show organizers offered a Sony Vaio, Fujitsu U810, and the MacBook as prizes, saying that they could be won by anybody at the show who could find a way to hack into each of them and read the contents of a file on the system using a previously undisclosed "0day" attack.</p>
<p>Nobody was able to hack into the systems on the first day of the contest when contestants were only allowed to attack the computers over the network, but on Thursday, the rules were relaxed so that attackers could direct contest organizers using the computers to do things like visit Web sites or open e-mail messages. (<a href="http://news.yahoo.com/s/infoworld/20080327/tc_infoworld/96676">link</a>)</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Mac supports Hacks?]]></title>
<link>http://bus442.wordpress.com/?p=146</link>
<pubDate>Sat, 09 Feb 2008 12:49:52 +0000</pubDate>
<dc:creator>Tasia</dc:creator>
<guid>http://bus442.wordpress.com/?p=146</guid>
<description><![CDATA[&nbsp;
&nbsp;
&nbsp;
Chapter 5 in Wikinomics covered a number of inter-related topics, which include]]></description>
<content:encoded><![CDATA[<p class="MsoNormal">&#160;</p>
<p class="MsoNormal">&#160;</p>
<p class="MsoNormal">&#160;</p>
<p class="MsoNormal">Chapter 5 in Wikinomics covered a number of inter-related topics, which included a company’s control over its products and the customer hacking of their products. Some companies, such as Sony, chose to stop <a target="_blank" href="http://www.psp-hacks.com" title="psp hacks site">customer hacks on its PSP</a> product using lock-up technology embedded in its upgrade firmware.<span> </span>Well, the title of this post may be deceiving, because <a target="_blank" href="http://www.apple.com" title="apple">Apple</a> doesn’t out rightly support customers hacking their products (ie <a target="_blank" href="http://ipodlinux.org" title="podzilla ">Podzilla</a>). However, the company doesn’t completely disapprove hacking because Apple has yet to take action to stop the progress of <a target="_blank" href="http://www.cansecwest.com" title="cansecwest">CanSecWest</a>’s <a target="_blank" href="http://security.itworld.com/4341/mac-hack-contest-080206/page_1.html" title="hacking contest to be held again">hacking contest</a> to be held at their security research conference in March. And why would they? The contestants find the faults in their computer systems!</p>
<p class="MsoNormal">&#160;</p>
<p class="MsoNormal">Last year, CanSecWest held a Macintosh computer hacking contest, in which the<a target="_blank" href="http://it.slashdot.org/it/08/02/06/2315222.shtml" title="contest info"> first contestant to hack the computer</a> <a target="_blank" href="http://www.news.com/2100-7350-5802411.html" title="offering a bounty">won the computer and $10,000</a>. The cash prize was given in exchange for details regarding the computer’s bug which enabled the hacker to gain access and thus give the company a chance to fix it.<a target="_blank" href="http://www.gartner.com/resources/148400/148455/quicktime_vulnerability_expo_148455.pdf" title="disapproval"></a></p>
<p class="MsoNormal"><a target="_blank" href="http://www.gartner.com/resources/148400/148455/quicktime_vulnerability_expo_148455.pdf" title="disapproval">Gartner disapprove of the method </a>used for finding security bugs in computer systems, saying it reveals computer system’s private information. However, the benefits of having a contest to find the bugs and then enable Mac to correct them, is more valuable to the security companies.</p>
<p class="MsoNormal">This year, CanSecWest and TippingPoint hopes to have computers running Linux, Vista, and OS X to see which one is the most secure during the contest. Or which one is the most vulnerable.</p>
<p class="MsoNormal">The contest is definitely an innovative idea for software companies. It’s actually a method of embracing consumer power, by letting consumers discover the bugs and allow the company to reap the benefits of co-innovation. Don’t get me wrong, there is something in it for consumers too! Not only does the contest winner get $10,000 cash and a computer, but other consumers and users of the computers get to benefit from a further secured product.</p>
<p class="MsoNormal">Tasia</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Linux triunfa en otro concurso de Seguridad]]></title>
<link>http://escribosikiero.wordpress.com/?p=149</link>
<pubDate>Thu, 24 Apr 2008 10:02:33 +0000</pubDate>
<dc:creator>Karlos1337</dc:creator>
<guid>http://escribosikiero.wordpress.com/?p=149</guid>
<description><![CDATA[
El pasado Lunes la empresa CanSecWest organizó un concurso de seguridad, puso a disposición de to]]></description>
<content:encoded><![CDATA[<p><img src="http://cansecwest.com/images/square_logo_cansec.png" alt="" width="46" height="50" /></p>
<p>El pasado Lunes la empresa CanSecWest organizó un concurso de seguridad, puso a disposición de todo el que quisiera probar suerte y ganar un portátil y un buen puñado de dólares, los portátiles en cuestión eran un Sony Vaio corriendo una Ubuntu 7.10, un Fujitsu con Vista Ultimate SP1 y un MacBook Air con MacOsX 10.5.2, el primero en caer fue el Mac al segundo día de la competición, Vista también duro dos días aunque fue un equipo más que una sola persona los que lograron entrarle, y el único imbatido fue el Sony con Ubuntu 7.10, otra victoria más, aunque sea Ubuntu ;)</p>
<p>Fuentes:<br />
Inglés <a href="http://www.infoworld.com/article/08/03/31/Linux-unbeaten-in-hacking-contest_1.html">http://www.infoworld.com/</a> y la web del concurso <a title="http://cansecwest.com/" href="http://cansecwest.com/">http://cansecwest.com/</a><br />
Español: <a title="http://www.theinquirer.es/" href="http://www.theinquirer.es/2008/03/31/linux_gana_frente_a_mac_os_y_vista_en_un_concurso_de_crackeo.html">http://www.theinquirer.es/</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[The Much Needed Blog Post...]]></title>
<link>http://hellnbak.wordpress.com/?p=21</link>
<pubDate>Thu, 17 Apr 2008 02:19:47 +0000</pubDate>
<dc:creator>hellnbak</dc:creator>
<guid>http://hellnbak.wordpress.com/?p=21</guid>
<description><![CDATA[Between CanSecWest and then RSA a couple weeks after I have been way too busy to write a post so for]]></description>
<content:encoded><![CDATA[<p>Between CanSecWest and then RSA a couple weeks after I have been way too busy to write a post so for that I apologize.  So much has gone on in the last month that I probably have a half dozen posts and there is a lot I want to comment on but I will start with RSA and oh what a place to start.</p>
<p>If you ever have the need to drink on a vendor's tab -- RSA is the conference to do that.  While the talks are not of the caliber of a CanSecWest or even a Blackhat the parties go above and beyond and why wouldn't they?  There are a plethora of "Security Vendors" both known and unknown looking for your security budget dollars and it seems that the best way to do this is by either hiring booth sluts or getting a bunch of IT Geeks drunk.  Don't get me wrong, I have been known to enjoy a booth slut or two, and even sometimes enjoy some free drinks.  ;-)</p>
<p>So to all the vendors that kept me nicely sauced for the week -- Thank You!!!</p>
<p>I mentioned talks and how the quality of the talks is not as high as CanSecWest or Blackhat.  I am sure some of them were but in general the technical level is not there and most of the non-technical talks were simply vendors talking about the same crap as the last ten years with no real solutions.</p>
<p>I should know, I participated in a panel that was supposed to be on the technical track but was nothing more than my so called colleagues in this industry saying whatever they could to try and make their product or solution sound like the way to go.  At one point I was laughing inside wondering if any of the co-panelists actually believe the bullshit they were shovelling.</p>
<p>Apparently my honest opinions were not valued as anytime I attempted to make a statement that was not a thinly veiled product pitch I was quickly cut off.  I suppose I could have been more aggressive but in my defense I was hopped up on cold medicine and suffering from a bad sinus infection.</p>
<p>The theme I was attempting to get across was; Stop spending your money on the latest security buzzword or gimmick.  The problems you are facing today and the problems you will face tomorrow are simplyvariations on the problems that you faced in the past.  So, if the crap you bought five years ago did not help you do not expect the crap you are about to buy this year to fix that.   End users really need to start holding vendors accountable.  Accountable for writing bad security products that actually increase their vulnerability, responsible for making claims that are not true, and responsible for cashing in on fear uncertainty and doubt.</p>
<p>Apparently, there is not any room at RSA for honesty, because if you listened to the other panel members, their products can solve any buzzword you can throw at it.  sigh....</p>
<p>Not to sound bitter or burned out but security is a hell of a lot more than a check box on your &#60;insert bullshit compliance or standard here&#62; list or a stamp from your Final 4 Auditor.  It is doing the right thing that enables the business while keeping "the bad shit (TM)" from happening -- ask me for my definition of "the bad shit (TM)" later.</p>
<p>Some of you may be saying, yeah that is an obvious statement, but believe me dear reader you can be called compliant and still be as insecure as a chubby teenage girl.  Anyways, I am starting to rant and rave so I will cut this post short. </p>
<p>It was great seeing my friends that I only get to see at conferences this year at both RSA and CanSecWest and I will see you at the next conference.</p>
<p>To my one or two readers, I promise to post on a more frequent basis.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Ignorance is Bliss]]></title>
<link>http://systemofsystems.wordpress.com/?p=28</link>
<pubDate>Thu, 03 Apr 2008 04:14:29 +0000</pubDate>
<dc:creator>Derek Callaway</dc:creator>
<guid>http://systemofsystems.wordpress.com/?p=28</guid>
<description><![CDATA[ When you think about it, time really is all we have. It&#8217;s what you have at your disposal, to ]]></description>
<content:encoded><![CDATA[<p><a title="Ignorance is Bliss" rel="attachment wp-att-29" href="http://systemofsystems.wordpress.com/2008/04/03/ignorance-is-bliss/ignorance-is-bliss/"><img src="http://systemofsystems.wordpress.com/files/2008/04/ignoranceisbliss.jpg" border="2" alt="Ignorance is Bliss" hspace="8" vspace="4" width="168" height="144" align="left" /></a> When you think about it, time really is all we have. It's what you have at your disposal, to do anything and everything. It seems that we're better off not knowing when it comes to security--for our own good. Can it really be so utilitarian?</p>
<p><strong>To anybody out there writing exploits:</strong> make sure you're doing it just for fun. Currently, there are no outlets for any financial gain that will accurately measure your time investment or fairly compensate your hard work.</p>
<p>Security Objectives' own Shane Macaulay <a href="http://www.theregister.co.uk/2008/03/29/ubuntu_left_standing/" target="_blank">"owned"</a> Vista SP1 in the PWN2OWN contest at <a href="http://www.cansecwest.com" target="_blank">CanSecWest</a> 2008 by exploiting a bug in Adobe Flash. As a result of the contest's categorization of the bug as third-party, the exploit was grossly under-appraised (especially when considering cross-platform targets and the fact that it would work well into the future with Vista's new Service Pack.) Sure, it technically was a bug in a third-party application, but this particular third-party application happens to be installed on just about every Internet-enabled PC. <a href="http://www.adobe.com/products/player_census/flashplayer/" target="_blank">According to Adobe,</a> "Adobe® Flash® Player is the world's most pervasive software platform, used by over 2 million professionals and reaching over 98% of Internet-enabled desktops in mature markets as well as a wide range of devices."</p>
<p>Even if Shane was unfairly compensated, <em>it doesn't matter</em> because at least he used "responsible disclosure" -- <em>or does it</em>? I highly doubt that the people in charge of the companies writing buggy software and brokering bug information have any idea about the amount of work and skill that goes into discovering an exploitable bug, let alone writing a proof-of-concept for it. As it stands, software companies are setting themselves up for a black market in digital weapons trading of unprecedented proportions.</p>
<p>Here's something else to think about.. I expect Adobe to patch this one rather quickly given all the publicity. How long does it take for a vendor to fix a given vulnerability when it is reported to them directly? Even some of the brokered <a href="http://zerodayinitiative.com/advisories/upcoming/" target="_blank">"upcoming advisories"</a> on 3Com's ZDI site are many months or even years stale. This "patchtile dysfunction" will increase the value of a 0-day exploit exponentially.</p>
<p>Time is money and to make up for lost time, Mr. Macaulay <a href="http://www.infoworld.com/article/08/04/02/Why-the-Vista-hacker-turned-to-eBay_1.html" target="_blank">decided to sell the laptop he had won on eBay</a>. An innocent bystander at the contest dubbed this decision "from pwn to pawn." So why not? Laptops get sold on <a href="http://www.ebay.com" target="_blank">eBay</a> everyday--but not this one. It wasn't long before eBay pulled Mr. Macaulay's item from auction on the first of April, ostensibly as an April Fool's shenanigan. This came as a surprise to me. Things to consider here:</p>
<ul>
<li>The laptop may or may not have had forensic evidence of the controlled attack that occurred during the contest.</li>
<li>Even so, Mr. Macaulay is a responsible discloser and would not have shipped the laptop until the bug was patched.</li>
<li><a href="http://www.linkedin.com/in/shanemacaulay" target="_blank">Mr. Macaulay's</a> and <a href="http://www.linkedin.com/in/asotirov" target="_blank">Mr. Sotirov's</a> autographs should have increased the laptop value, regardless.</li>
</ul>
<p>This incident, in a way, reminded me of <a href="http://www.theregister.co.uk/2005/12/10/ebay_pulls_excel_vulnerability_auction/" target="_blank">eBay's great fearwall debacle</a> from a few years ago (<a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2005-4131" target="_blank">CVE-2005-4131</a>.) In that case, there were several key differences: an information broker such as ZDI was not involved, a pseudonym was being used, the code statements where the memory corruption occurred were disclosed, and no computer hardware was for sale. Nevertheless, I respect eBay's decision to discontinue the auction as this is obviously a very controversial issue.</p>
<p>Brokering information? How can you do it? From experience, the idea of using an escrow service and 3rd party verification is largely ineffective. It would appear that <a href="http://www.zerodayinitiative.com" target="_blank">ZDI</a> is the only show in town. Of course there's <a href="http://www.wslabi.com" target="_blank">that auction service</a>, but you have to send them your exploit first so how does that work? It appears that they're still trying to do business by the way, despite alleged legal troubles. I'm subscribed to their mailing list and they send out an e-mail every time new information goes up for auction; they put up a dozen or so new exploits last week but it would appear that few if any were sold. Where do we go from here? Is brokering information even possible?</p>
<p>Imagine for a moment a scenario where a dozen or so exploits of critical severity related to a single software company are posted to <a href="http://www.grok.org.uk/full-disclosure/" target="_blank">Full Disclosure</a> with rumors of many more circulating in the underground and exploits actively being carried out in the wild. Now imagine shareholders shorting that company's stock. I suppose that the vulnerability information might be more realistically valued in a situation such as this. Anyone have any other ideas?</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[CanSecWest 2008]]></title>
<link>http://hellnbak.wordpress.com/?p=20</link>
<pubDate>Thu, 03 Apr 2008 03:07:41 +0000</pubDate>
<dc:creator>hellnbak</dc:creator>
<guid>http://hellnbak.wordpress.com/?p=20</guid>
<description><![CDATA[Yes, I know I haven&#8217;t updated this BLOG in quite a while.  Basically, the busier I get at wor]]></description>
<content:encoded><![CDATA[<p>Yes, I know I haven't updated this BLOG in quite a while.  Basically, the busier I get at work, the less time and motivation I have to update the BLOG.  Work has been super busy but to be honest that is a good thing, I have been in situations in the past where things have been slow and steady and typically those jobs don't last long.</p>
<p>Anyways, back to the point of this post - CanSecWest 2008.  As usual, Dragos, Wil, Sean, and the rest of the crew put on a great show.  Yes, I am a bit biased because I have always been a CSW fanboy, but I like to think that I am honest enough that if I found something sucked -- I would say it sucked.</p>
<p>Pwn-2-0wn was as usual a feast for the press.  Huge apologies to my new friend <a target="_blank" href="http://aviv.raffon.net/2008/04/02/PureBadLuck.aspx">Aviv Raf</a> who was counting on me to use a flaw he found to win him the Vista box.  There is no one to blame on this not happening, his vulnerability works, but myself and perhaps my lack of motivation.  So again, huge apologies.</p>
<p>That said, congrats to K2 (the Whiner.. hehe) for taking the Vista box.  I love how K2 has stirred the pot around this contest and the buying of vulnerabilities in general.  Perhaps we will see organizations like ZDI start to actually offer what they are worth and not the low-ball amounts.  Although in their defense, they do not resell the vulnerabilities or make any money off of them other than the associated PR it generates.</p>
<p>All of the Operating System fanboy traffic around the contest was amusing.  Between the claims that the Mac box only fell because Microsoft was a sponsor (<em>note: they were a conference sponsor not the pwn-2-0wn contest sponsor</em>) and the claims that Ubuntu didn't fall because it's the most secure I could do nothing but laugh.  I highly doubt any of us will live long enough to see the day that the O/S wars cease. </p>
<p>Those of you that follow my <a target="_blank" href="http://www.twitter.com/hellnbak">Twitter Feed</a> probably saw me poking fun at one of the VMWare talks.  Please do not take my comments as disrespect, anyone who puts the time in to research an issue then gets up in front of a group of hung over and in general grumpy geeks and presents their work is cool with me.  But I found it hard to get excited about issues that require me to have local physical access to the system.  I mean, of course at that point there are a number of ways to pop the Guest Operating Systems.</p>
<p>In general all of the talks were great, some hard to hear due to audio issues, but other than that I can say I learned a few things, met some more cool people and had a great time.  That is, in general, the point and not to beat up on other conferences, something that is missing from many of the old school conferences.  Hopefully I make it out to Tokyo for PacSec this year too!</p>
<p>Oh, and to those that expressed concern over Dragos handing me a sharp Samurai Sword.  The sword has safely made it back to Calgary and this weekend will safely make it back to California incident and more importantly blood free.</p>
<p>I will be at RSA next week, possibly only on Tuesday to participate in my panel but if you are going to be there and want to grab some beers, feel free to get in touch with me.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Mac OS X is NOT safer than Vista.]]></title>
<link>http://lazytechie.wordpress.com/?p=95</link>
<pubDate>Tue, 01 Apr 2008 16:26:09 +0000</pubDate>
<dc:creator>AskMike</dc:creator>
<guid>http://lazytechie.wordpress.com/?p=95</guid>
<description><![CDATA[As you surely know by now, the CanSecWest conference was the stage for a contest, PWN to OWN. Three ]]></description>
<content:encoded><![CDATA[<p>As you surely know by now, the CanSecWest conference was the stage for a contest, PWN to OWN. Three laptops were set up; laptops running Windows Vista, Ubuntu Linux, and Mac OS X. The goal was to hack the computer and read the contents of a file located on each of the machines, using a 0day code execution vulnerability.</p>
<p>During the first day, you can only attack the machine over the network, without physical access. On the second day, user interaction comes into play (visiting a website, opening an email). On the third and final day, third-party applications are added to the mix. Each machine had the same cash prize on its head.</p>
<p>As you all know, <strong>the Mac was hacked first</strong>, on day two. <font color="#ff0000">The user only had to visit a website, and the Mac was hacked.</font> Vista got hacked on the third day using a security hole in Adobe's Flash, and the Ubuntu machine did not get hacked at all.</p>
<p>when the hacking contest was on its second day. The second day consisted of stock configurations along with browsers and some mail applications. That’s when the MacBook Air laptop was hacked in in about 2 minutes utilizing a Safari vulnerability that Apple has now been notified of.</p>
<p>Technically it wasn’t really Microsoft’s fault that the machine was hacked since Adobe is the one who creates Flash. The MacBook Air vulnerability, on the other hand, was in the Safari browser which ships on all Apple computers.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hack a Mac: PWN2OWN at CanSecWest]]></title>
<link>http://lockup.wordpress.com/?p=29</link>
<pubDate>Tue, 01 Apr 2008 03:19:30 +0000</pubDate>
<dc:creator>glenn0</dc:creator>
<guid>http://lockup.wordpress.com/?p=29</guid>
<description><![CDATA[A security researcher at a Canadian security conference won over $10,000 in prize money for attackin]]></description>
<content:encoded><![CDATA[<p>A security researcher at a Canadian security conference won over $10,000 in prize money for attacking a completely patched OSX system.</p>
<p>Hackers in the "<a href="http://cansecwest.com/post/2008-03-20.21:33:00.CanSecWest_PWN2OWN_2008" target="_blank"><span style="text-decoration:underline;">PWN2OWN</span></a>" competition at CanSecWest were given the choice of attacking Vista SP1, OSX 10.5.2 or Ubunti 7.10. The winner of the competition, Charlie Miller, chose OSX as his platform, explaining "it was the easiest one of the three". He exploited a Safari vulnerability and compromised the system within the space of two minutes.</p>
<p>This doesn't mean that there will suddenly be an deluge of OSX attacks. Windows is, without doubt, the platform of choice to exploit. Just a heads up for all those Mac users out there.</p>
<p><a href="http://www.computerworld.com.au/index.php?id=790701222&#38;eid=-144" target="_blank">http://www.computerworld.com.au/index.php?id=790701222&#38;eid=-144 </a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[CanSecWest: Competencia de seguridad en sistemas operativos]]></title>
<link>http://kessuser.wordpress.com/2008/03/31/cansecwest-competencia-de-seguridad-en-sistemas-operativos/</link>
<pubDate>Mon, 31 Mar 2008 22:02:29 +0000</pubDate>
<dc:creator>frantom255</dc:creator>
<guid>http://kessuser.wordpress.com/2008/03/31/cansecwest-competencia-de-seguridad-en-sistemas-operativos/</guid>
<description><![CDATA[Marzo 31/3/2008
 
Un pequeño ordenador portátil Fujitsu corriendo con Vista fue hackeado en el úl]]></description>
<content:encoded><![CDATA[<p>Marzo 31/3/2008</p>
<p align="center"> <img src="http://noticiastech.com/wordpress/wp-content/uploads/2008/03/crack.jpg" /></p>
<p>Un pequeño ordenador portátil Fujitsu corriendo con Vista fue hackeado en el último día del concurso. <a href="http://www.linux.com/feature/131059"><b>Linux, corriendo sobre una Sony Vaio, se mantuvo intacto.</b></a></p>
<p>Le llevó dos días de trabajo, pero Shane Macaulay, finalmente logró apoderarse del Vista este viernes, con un poco de ayuda de sus amigos. Macaulay, quien fue un co-ganador del año pasado del concurso de hacking, necesitó algunos trucos de hacking cortesía del investigador de VMware Alexander Sotirov. Esto se debe a que Macaulay no esperaba atacar la versión de Service Pack 1 de Vista, que viene con unas medidas de seguridad adicionales. También recibió una pequeña ayuda de su compañero de trabajo Derek Callaway.</p>
<p>En virtud de las reglas del concurso, Macaulay y Miller no están autorizados a revelar información específica acerca de sus trabajos hasta que se disponga de un parche, pero Macaulay dijo que aprovechó de errores de Java para burlar la seguridad de Vista. “La falla está en otra cosa, pero la naturaleza inherente de Java nos ha permitido sortear las protecciones de Microsoft”, dijo en una entrevista poco después de que reivindica su premio el viernes.”Esto también podría afectar a Linux o Mac OS X.” Macaulay dijo que escogió Vista para trabajar, ya que había estado contratado en el pasado para Microsoft y está más familiarizados con sus productos. Aunque algunos asistentes <a href="http://ubuntuarte.com/wordpress/?p=424"><b>trataron de romper el sistema Linux, </b></a>nadie pudo hackear el sistema, dijo Terri Forslof, un gerente de seguridad de TippingPoint. “Me sorprendió que no se pueda”, dijo.</p>
<p align="left">&#160;</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacker viola in due minuti il nuovo MacBook]]></title>
<link>http://thecrowrm.wordpress.com/?p=26</link>
<pubDate>Mon, 31 Mar 2008 18:43:35 +0000</pubDate>
<dc:creator>thecrowrm</dc:creator>
<guid>http://thecrowrm.wordpress.com/?p=26</guid>
<description><![CDATA[ 
Appena due minuti e i sistemi di sicurezza del MacBook Air, il nuovo notebook ultrasottile della]]></description>
<content:encoded><![CDATA[<div><font size="2"> <img src="http://thecrowrm.wordpress.com/files/2008/03/macworld.jpg" alt="MacWorld" /></p>
<p>Appena due minuti e i sistemi di sicurezza del MacBook Air, il nuovo notebook ultrasottile della Apple sono stati violati da un hacker. E' successo a Vancouver, durante la nona edizione del CanSecWest, uno dei piu' importanti convegni sulla sicurezza informatica. In palio per chi fosse riuscito nell'impresa c'erano 10mila dollari, che sono andati a Charlie Miller, che di professione fa il consulente informatico, e che era divenuto gia' famoso per essere ruscito a violarel'i-phone.</p>
<p>Secondo il regolamento del concorso, Miller non ha potuto rivelare come e' riuscito ad aggirare i sistemi di sicurezza del notebook.Quello che si sa e' che il punto debole sembra essere Safari, il browser usato dal computer. In due minuti Miller e' riuscito a far visitare dagli ultizzatori del MacBook un sito da lui preparato e a installare un virus da questo sito. L'impresa di Miller ha dimostrato che anche il sistema operativo della Apple, che un tempo si credeva immune dai virus, puo' ormai essere vittima dell'azione degli hacker.</p>
<p></font></div>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Gewinner oder Verlierer?]]></title>
<link>http://soundmonster.wordpress.com/?p=120</link>
<pubDate>Mon, 31 Mar 2008 13:40:59 +0000</pubDate>
<dc:creator>soundmonster</dc:creator>
<guid>http://soundmonster.wordpress.com/?p=120</guid>
<description><![CDATA[Bei CanSecWest werden um die Wetter drei Rechner gehackt - ein Windows-PC, ein Mac und eine Ubuntu-K]]></description>
<content:encoded><![CDATA[<p>Bei CanSecWest werden um die Wetter drei Rechner gehackt - ein Windows-PC, ein Mac und eine Ubuntu-Kiste. Der eindeutige Verlierer war der Mac - schon nach 2 Minuten wurde das MacBook Air über eine offene Lücke in Safari geknackt. Die Vista-Maschine gab nach drei Tagen nach, der Ubuntu-Rechner gar nicht.</p>
<p>Kurios - der Preis, den die Hackergruppe bekommen hat, ist ein MacBook Air. Macht irgendwie keinen Sinn :-)</p>
<p>via [<a href="http://www.golem.de/0803/58655.html">Golem.de</a>]</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[La sicurezza della solidarietà.]]></title>
<link>http://informaticoinesperto.wordpress.com/?p=78</link>
<pubDate>Sun, 30 Mar 2008 16:47:47 +0000</pubDate>
<dc:creator>pochigiorni</dc:creator>
<guid>http://informaticoinesperto.wordpress.com/?p=78</guid>
<description><![CDATA[In questi giorni a Vancouver si tiene il CanSecWest 2008, evento dedicato alla sicurezza informatica]]></description>
<content:encoded><![CDATA[<p><img src="http://cansecwest.com/images/secwest_circle_34.png" alt="CanSecWest logo" hspace="5" vspace="5" width="34" height="34" align="left" />In questi giorni a Vancouver si tiene il CanSecWest 2008, evento dedicato alla sicurezza informatica. All'interno di questa manifestazione si svolge un simpatico contest. Tre laptop, più esattamente:</p>
<ul>
<li>VAIO VGN-TZ37CN running Ubuntu 7.10</li>
<li>Fujitsu U810 running Vista Ultimate SP1</li>
<li>MacBook Air running OSX 10.5.2<img src="http://cansecwest.com/images/pwn2own.jpg" alt="" hspace="5" vspace="5" width="320" height="240" align="right" /></li>
</ul>
<p>sono dati in pasto agli hacker. Che riesce a violarli si porta a casa 10000$. L'hacker è infine tenuto a non rivelevare le modalità dell'attacco.</p>
<p>Bene. <a href="http://www.pcworld.com/article/id,143901-page,1/article.html" target="_blank">Il MacBookAir è stato violato in 2 minuti</a> da Charlie Miller, con tanti saluti alla presunta sicurezza offerta da casa Apple. Il laptop con Vista a bordo ha richiesto due giorni di lavoro e l'aiuto di un collaboratore: alla fine Shane Macaulay e Derek Callaway hanno bucato il sistema che, aggiornato al service pack 1, si è rivelato più ostico del previsto. <a href="http://www.pcworld.com/article/id,143962-page,1/article.html" target="_blank">L'unico rimasto è il laptop con Linux</a>. Ma non perché a prova di hacker. Sono invece stati diversi i bug rinvenuti nel sistema, solo che nessuno si è voluto cimentare a scrivere codice per attaccare la LinuxBox.</p>
<p>Fatta l'ovvia premessa che non è dagli hacker che ci dobbiamo guardare ( che, ricordiamolo, non sono pirati informatici ) viene comunque il dubbio che forse la sicurezza oggi è offerta più che dagli sviluppatori dalla solidarietà di chi attacca. A patto che abbiate Linux!</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Concurso para hackers termina em 2 minutos com invasão de MacBook Air]]></title>
<link>http://zettabit.wordpress.com/2008/03/30/concurso-para-hackers-termina-em-2-minutos-com-invasao-de-macbook-air/</link>
<pubDate>Sun, 30 Mar 2008 04:35:57 +0000</pubDate>
<dc:creator>mustabr</dc:creator>
<guid>http://zettabit.wordpress.com/2008/03/30/concurso-para-hackers-termina-em-2-minutos-com-invasao-de-macbook-air/</guid>
<description><![CDATA[Devem ser os 10 mil dólares mais rápidos que Charlie Miller já ganhou na vida.

O hacker foi o pr]]></description>
<content:encoded><![CDATA[<p>Devem ser os 10 mil dólares mais rápidos que Charlie Miller já ganhou na vida.</p>
<p align="center"><img src="http://i132.photobucket.com/albums/q11/mustabr/Zettabit/Posts/131583-mbair_largecopy.jpg" height="125" width="300" /></p>
<p>O hacker foi o primeiro a invadir um dos três laptops (e ganhar o prêmio máximo de 10 mil dólares) nesta quinta-feira (27/03), o MacBook Air, no caso, durante o concurso "PWN 2 OWN" na conferência CanSecWest.</p>
<p><!--more--></p>
<p>Organizadores do evento ofereceram um Sony Vaio, um Fujitsu U810 ou o MacBook como prêmios, afirmando que eles poderiam ser ganhos por qualquer um que descobrisse uma maneira inédita de invadi-los e ler conteúdos em um arquivo no sistema.<br />
Ninguém conseguiu a proeza no primeiro dia do concurso, onde só eram permitidos ataques pela rede. No dia seguinte, porém, as regras foram relaxadas para que ações de usuários, como navegar ou receber e-mails, pudessem ser uma porta de entrada para ataques.Miller, mais conhecido como um dos pesquisadores que invadiram o sistema do iPhone em 2007, precisou de apenas 2 minutos para invadir ao redirecionar os responsáveis pelo concurso a um site que continha um malware que, acessado, dava controle do micro ao hacker. Uma platéia de 20 presentes delirou com o feito.</p>
<p>Ao ganhar, Miller assinou um acordo em que não revelaria informações sobre a falha até que uma empresa de segurança patrocinadora do evento notificasse a Apple.</p>
<p>O campeão no ano passado, Dino Dai Zovi, explorou uma brecha no QuickTime para ganhar o prêmio. Zovi não participou da edição deste ano, afirmando que era hora de outra pessoa ganhar.</p>
<p>Fonte: <a href="http://idgnow.uol.com.br/seguranca/2008/03/27/concurso-para-hackers-termina-em-2-minutos-com-invasao-de-macbook-air/">IDG Now!</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Macbook air hacked in just 2 minutes.]]></title>
<link>http://worldofitblog.wordpress.com/?p=20</link>
<pubDate>Sat, 29 Mar 2008 13:29:08 +0000</pubDate>
<dc:creator>david coxon</dc:creator>
<guid>http://worldofitblog.wordpress.com/?p=20</guid>
<description><![CDATA[The ninth annual CanSecWest conference held, at the Mariott Renaissance Harbourside         hotel in]]></description>
<content:encoded><![CDATA[<p>The ninth annual CanSecWest conference held, at the Mariott Renaissance Harbourside         hotel in downtown Vancouver, British Columbia kicked off on March 26, offering a $10,000 reward for anyone hacking the new macbook air with an original zeroday attack. The Prize (put up by <span class="body">TippingPoint, the security division of networking giant 3Com) </span>did not stand for long, being claimed within the first 2 minutes of the conference opening.</p>
<p>Well known security researcher Shane Macaulay claimed the prize, but it is believed <span class="body">Dino Dai Zovi was the real creater of the attack, and that he and </span>Macaulay had some sort of  deal over the competition entry. <span class="body">Dino Dai Zovi, has a strong track record with exposing flaws in Apple, Windows and other Networking software,  having previously and somewhat famously exposed flaws in Safari and Quicktime. </span></p>
<p>While neither Shane Macaulay, <span class="body">Dino Dai Zovi made any statements about whether mac or pc were more secure (and both are users of both Macbooks and pc's) they have previously been on record as saying that Mac are not as immune to attacks as many of their users may like to believe.</span></p>
<p><span class="body">The 2 other note books, a sony vaio and a </span>Fujitsu U810 were not successfully hacked during the expo and remained unclaimed.</p>
<p>A <a href="http://en.wikipedia.org/wiki/Zero_day_attack" title="definition of a zeroday attack" target="_blank">zero day attack</a> is defined as an computer threat that tries to exploit unknown, undisclosed or unpatched vulnerabilities in a computer application.</p>
<p><span class="body">The flaw in Safari, that was exploited during the expo was actually </span><span class="body">in the way QuickTime handles Java</span><span class="body">. This threatens everyone running the Mac OS X and may even expose pc users running Safari and quicktime. It is expected that a patch to protect users from this flaw will be released soon.</span></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Conferences.......]]></title>
<link>http://hellnbak.wordpress.com/?p=6</link>
<pubDate>Wed, 05 Mar 2008 22:22:20 +0000</pubDate>
<dc:creator>hellnbak</dc:creator>
<guid>http://hellnbak.wordpress.com/?p=6</guid>
<description><![CDATA[Just a quick shoutout for anyone going to CanSecWestor RSA this year.  If you enjoy beverages with ]]></description>
<content:encoded><![CDATA[<p>Just a quick shoutout for anyone going to <a target="_blank" href="http://www.cansecwest.com/">CanSecWest</a>or RSA this year.  If you enjoy beverages with alcohol content -- hit me up as I will be around and seeking out the good parties with the open bars.  (*don't worry HD, I am sure they will have apple juice for you haha)</p>
<p>Speaking of parties there will be a great one sponsored by my employer at CanSecWest so at the very least hunt me down for details on that closer to the conference.  I am participating on a panel this year at RSA as well.</p>
<p>I am skipping <a target="_blank" href="http://www.sourceboston.com/">Source Boston </a>this year due to personal stuff which kind of sucks but next year I will make sure to be there next year as this one looks like a great con.</p>
<p>*inside joke that is probably unfair but funny.</p>
]]></content:encoded>
</item>

</channel>
</rss>
