Header
4 results were found... happy reading.

Mon, 30 Nov 2009

ZaCon - A con in need of a better tagline...
@

ZaCon came and went, "and a fun time was had by all!"

The first run was a semi-cosy affair held at the University of Johannesburg, with 16 speakers holding the crowd from 08h00 till 18h00. ZaCon had many SensePost faces, but is not expressly an SP initiative.. It's a community based con aimed at growing the next gen of South African hax0rs..

My brief ~12 minute intro: "Why Zacon" explains some of the organizers thinking.. You can watch me blab [here] and you can watch the rest of the videos [here]

/mh

Mon, 16 Nov 2009

Defcon-17 - Clobbering the Cloud
@

Our DC-17 video (of the "Clobbering the Cloud" talk) is now available on the the new look DefCon download site: [here]

All of the other DC17 videos can be found [here]

(if you are a senseposter, you can grab them with descriptions from [here])

Tue, 10 Nov 2009

Twitter killed the (infosec) Blogging Star ?
@

Like it, hate it or just plain struggling to understand it, Twitter has made a huge impact across a wide range of fields. We use it fairly heavily internally for simulated water-cooler chatter and quick link-exchange. (like any piece of sp-geek-over-engineering we also have a tweet-bot to convert tweets to emails, and convert blog notifications to tweets). It's pretty clear though, that once we started tweeting internally, people started blogging less. There's something liberating about saying "here's a link", as opposed to taking the time to formulate your thoughts into a full blown posting.

We were curious if this twitter-effect was real, imaginary or only applicable to lazy people like us.. Thanks to python-twitter and a few lines of script we can look at the the blogging habits of some info-sec superstars (and maybe confuse correlation and causation to jump to conclusions while we at it).

Hmm.. maybe its not just us!

/mh

PS. SensePoster's who tweet (albeit infrequently) can be found at:

PPS. We wanted to, but skipped the following:
  • @DinoDaiZovi (Dino dai Zovi) (Started blogging and tweeting at roughly the same time)
  • @Dakami (Dan Kaminsky) (Doxpara is currently down)
  • @tqbf (Tom Ptacek) (Matasano blog history is incomplete)

Fri, 6 Nov 2009

Spammers need love too..
@

-snip-
From: Haroon Meer <haroon@sensepost.com>
To: Marc Schneider <marcs@mplw.net>
Subject: Re: http://www.sensepost.com - Contact needed

Hi Dr Schneider.

* Marc Schneider [marcs@mplw.net] seemed to say:
>I am Dr. Marc Schneider and I work for Multilingual Search Engine
>Optimization Inc. in Washington DC ( Tel: 1 202-250-3645) - I would
>like to speak with the person in charge of your international
>clientele. Who is my contact? Who should I speak to??
>
>In fact, after visiting http://www.sensepost.com , I have noticed that your
>website
>cannot be found on foreign search engines (I tested it on Hispanic
>search engines, German search engines, Asian search engines, etc.) Our
>company is specialized in multilingual search engine promotions in 28
>languages . From the Japanese Google to the German Yahoo, from the AOL
>in Spanish to the MSN in Chinese, we can show you how to develop a
>true international online presence by promoting your website on
>foreign search engines.


Thanks for the many (many many) emails you have sent to us to fix this
problem.

Two things though:
a) We are a South African company, and a quick check on a South African
search engine (http://www.ananzi.co.za) reveals that your site can not
be found on our local search engine. We arenot experts at all in this field but
if you are interested, let me know and ill try to get you listed.

b) A quick check reveals that your domain is zone transferable and a
cursory look shows that both your primary and secondary DNS servers live
on the same physical network. This is not quite best practice. Our
company is specialized in security assessments, we can show you how to
truly protect your website.

>Please call me at +1 (202) 250-3645 or email me and let's work on
>giving your website the true international exposure which it deserves
>to have with foreign native online users!!


I would prefer you dont call me, but you could email instead and lets
work on getting your security issues resolved!!

Haroon Meer

PS. i checked, and it appears possible (though unusual) to make use of
exclamation and punctuation marks one at a time.

--
Haroon Meer, SensePost Information Security
PGP: http://www.sensepost.com/pgp/haroon.txt
-snip-

Blog
Video
Research
QotW
Categories
about:us (31)
blackhat (5)
blog (10)
broadview (2)
build-it (1)
cloud (12)
community (15)
conferences (60)
crypto (3)
fail (3)
foos (1)
fun (51)
goodbye (1)
hackrack (2)
Hope? (2)
howto (8)
imsojaded (2)
infosec-soapies (25)
infrastructure (3)
local (5)
mac (15)
management (7)
materials (3)
memcached (2)
mindless-politics (4)
mindmaps (1)
PCI (2)
post-it (1)
privacy (6)
product (2)
programming (5)
public (275)
qo[w|m|?] (5)
README (1)
real-world (14)
research (37)
reversing (4)
security-fyi (8)
security-news (6)
silly-yammerings (19)
tech-toys (3)
time-waster (6)
tin-foil-hat (6)
tools (46)
training (18)
travel (1)
tricks (1)
Uncategorized (3)
vendors (6)
videos (6)
vulnerability (7)
wasc (1)
webapps (6)
web_x.0 (2)
writing-advice (1)
zen-hacking (6)
Archives
August 2010 (4)
July 2010 (1)
June 2010 (4)
May 2010 (3)
April 2010 (3)
March 2010 (7)
Feburary 2010 (2)
January 2010 (3)
December 2009 (4)
November 2009 (4)
October 2009 (3)
September 2009 (5)
August 2009 (9)
July 2009 (1)
June 2009 (5)
May 2009 (4)
April 2009 (10)
March 2009 (13)
Feburary 2009 (12)
January 2009 (11)
December 2008 (9)
November 2008 (8)
October 2008 (5)
September 2008 (5)
August 2008 (6)
July 2008 (6)
June 2008 (6)
May 2008 (2)
April 2008 (3)
March 2008 (7)
Feburary 2008 (12)
January 2008 (9)
December 2007 (8)
November 2007 (4)
October 2007 (9)
September 2007 (14)
August 2007 (18)
July 2007 (13)
June 2007 (17)
May 2007 (2)
July 2006 (1)
April 2006 (1)
August 2005 (1)
June 2005 (1)
May 2005 (2)
Archives
Conditions of use Privacy statement
Top of Page Legal stuff