|
EH-Net
|
|
May 16, 2012, 12:25:12 PM
|
Show Posts
|
|
Pages: 1 2 [3] 4 5 ... 256
|
|
31
|
EH-Net / Calendar Of Events / BSides Sao Paulo 2012
|
on: March 31, 2012, 12:41:37 PM
|
BSides Sao Paulo 2012 May 6, 2012 Sao Paulo, BrazilCost: Free (as always!)BSidesSP is a one-day conference on information security and hacker culture, organized by Brazilian hakerspace Garoa Hacker Clube as a way to promote the exchange of information and the integration between security researchers, professionals, and students. BSidesSP also represents the third edition of Garoa's "The Other Side Conference" (Co0L) and will take place on May 06, 2012 (Sunday), the day before You Sh0t the Sheriff (YSTS) conference, a traditional Brazilian security conference to be held on May 07 (Monday). BSidesSP will be free of charge and wants to create a day full of activities to promote information security and hacker culture in the country, with various activities scheduled to take place simultaneously: talks, debates, technical workshops and a Brazilian barbecue. VenueGaroa Hacker Clube São Paulo, Brazil http://garoa.net.br/For more info: http://www.securitybsides.com/w/page/39150452/BSidesSaoPauloDon
|
|
|
|
|
32
|
EH-Net / Calendar Of Events / BSides Algiers 2012
|
on: March 31, 2012, 12:37:03 PM
|
BSides Algiers 2012 May 4 - 5, 2012 Oued Smar, AlgiersCost: Free (as always!)Each BSides is a community-driven framework for building events for and by information security community members. The goal is to expand the spectrum of conversation beyond the traditional confines of space and time. It creates opportunities for individuals to both present and participate in an intimate atmosphere that encourages collaboration. It is an intense event with discussions, demos, and interaction from participants. It is where conversations for the next-big-thing are happening. VenueEcole nationale Supérieure d’Informatique Oued Smar, Algiers For more info: http://www.securitybsides.com/w/page/49880385/BSidesAlgiersDon
|
|
|
|
|
33
|
EH-Net / Calendar Of Events / BSides Charleston 2012
|
on: March 31, 2012, 12:32:57 PM
|
BSides Charleston 2012 April 13 - 14, 2012 Charleston, SCCost: Free (as always!)Each BSides is a community-driven framework for building events for and by information security community members. The goal is to expand the spectrum of conversation beyond the traditional confines of space and time. It creates opportunities for individuals to both present and participate in an intimate atmosphere that encourages collaboration. It is an intense event with discussions, demos, and interaction from participants. It is where conversations for the next-big-thing are happening. VenueCollege of Charleston campus Charleston, SC For more info: http://www.securitybsides.com/w/page/50788290/BSidesCharlestonDon
|
|
|
|
|
34
|
EH-Net / Calendar Of Events / BSides Austin 2012
|
on: March 31, 2012, 12:28:17 PM
|
BSides Austin 2012 April 12 - 13, 2012 Austin, TXCost: Free (as always!)Each BSides is a community-driven framework for building events for and by information security community members. The goal is to expand the spectrum of conversation beyond the traditional confines of space and time. It creates opportunities for individuals to both present and participate in an intimate atmosphere that encourages collaboration. It is an intense event with discussions, demos, and interaction from participants. It is where conversations for the next-big-thing are happening. VenueThe Hideout Theatre 617 Congress Ave Austin, TX 78701 (512) 443-3688 http://www.hideouttheatre.comLive stream info: Video and Streaming will be brought to you by Georgia Weidman & Bulb Security - http://georgiaweidman.comFor more info: http://www.securitybsides.com/w/page/50371774/BSidesAustin2012Don
|
|
|
|
|
35
|
EH-Net / Calendar Of Events / SecureWorld Expo Philadelphia 2012
|
on: March 31, 2012, 12:21:01 PM
|
SecureWorld Expo Philadelphia 2012 May 23 - 24, 2012 King of Prussia, PASecureWorld regional conferences deliver the highest quality security education, training and networking right to your community. The theme for the 2012 conferences is, "Decrypting the Mayan Code": In 1592 Cortez conquered Mexico and the ancient Mayan language was lost... nearly 400 years later a boy scientist discovers the secret to the Code. Join SecureWorld as we discover the people and technology behind Decrypting the Mayan Code. VenueDoubleTree by Hilton Hotel Philadelphia - Valley Forge - NEW VENUE! 301 West DeKalb Pike King of Prussia, Pennsylvania USA 19406 Tel: +1-610-337-1200 For more info: http://secureworldexpo.com/event/index.php/2012-philadelphia-homeDon
|
|
|
|
|
36
|
EH-Net / Calendar Of Events / SecureWorld Expo Charlotte 2012
|
on: March 31, 2012, 12:17:55 PM
|
SecureWorld Expo Charlotte 2012 May 2 - 3, 2012 Charlotte, NCSecureWorld regional conferences deliver the highest quality security education, training and networking right to your community. The theme for the 2012 conferences is, "Decrypting the Mayan Code": In 1592 Cortez conquered Mexico and the ancient Mayan language was lost... nearly 400 years later a boy scientist discovers the secret to the Code. Join SecureWorld as we discover the people and technology behind Decrypting the Mayan Code. VenueCharlotte Convention Center 501 South College Street Charlotte, NC 28202 704.339.6000 For more info: http://secureworldexpo.com/event/index.php/2012-charlotte-event-informationDon
|
|
|
|
|
37
|
EH-Net / Calendar Of Events / Secureworld Expo Houston 2012
|
on: March 31, 2012, 12:12:35 PM
|
Secureworld Expo Houston 2012 April 17 - 18, 2012 Houston, TXSecureWorld regional conferences deliver the highest quality security education, training and networking right to your community. The theme for the 2012 conferences is, "Decrypting the Mayan Code": In 1592 Cortez conquered Mexico and the ancient Mayan language was lost... nearly 400 years later a boy scientist discovers the secret to the Code. Join SecureWorld as we discover the people and technology behind Decrypting the Mayan Code. VenueStafford Centre - NEW VENUE! Ballroom C 10505 Cash Road Stafford, TX 77477 (281) 208-6900 For more info: http://secureworldexpo.com/event/index.php/2012-houston-homeDon
|
|
|
|
|
41
|
Resources / Mass Media / Reboot - A Film by Joe Kawasaki
|
on: March 29, 2012, 07:10:18 PM
|
Joe Kawasaki wrote and directed this hacker-themed film described as: Set within a dystopian world that is a collision between technology and humanity, "Reboot" touches upon many of the current social and political concerns that arise from becoming more and more intertwined with the virtual.
In contemporary Los Angeles, a young female hacker (Stat) awakens from unconsciousness to find an iPhone glued to her hand and a mysterious countdown ticking away on the display. Suffering from head trauma, and with little recollection of who she is or what is happening, Stat races against time to figure out what the code means, and what unknown event the pending zero-hour will bring.
Check out trailer here: http://www.rebootfilm.com/trailerSpecial Sneak Preview of REBOOT hosted by Hak5's Darren Kitchen in SF on Friday March 30. Get details here: http://www.rebootfilm.com/sneakpeakDon
|
|
|
|
|
42
|
Features / Book Reviews / [Article]-Book Review: The Tangled Web
|
on: March 29, 2012, 03:39:43 PM
|
Tristan offers us a quick look into another No Starch title. Hope you enjoy. Permanent link: [Article]-Book Review: The Tangled WebReview by Tristan Lawson, CISSP, MCSE: Security, GCIH, OSCP et alMichal Zalewski, author of 2005’s highly praised Silence on the Wire, is at it again with "The Tangled Web: A Guide to Securing Modern Web Applications," an incredible and highly technical book published by No Starch Press. Since the browser is the portal of choice for so many users, its inherent security flaws leave the user at a significant risk. This book details the issues surrounding insecure web browsers and what developers can do to mitigate those risks. Mr. Zalewski writes about modern web applications which are built within a tangled mess of technologies, developed over time and then slapped together into a confusing monstrosity. This in turn leads to inconsistent operation with all kinds of vulnerabilities at several levels. The author goes into great detail taking apart every level of web applications from HTTP communication to browser and server-side scripts and dissects the subtle security consequences and the corresponding dangers of the unorganized conglomeration of web applications and browser code. The author then goes into how developers can work through the current problems and solve them down the road through new and revised code. This book begins with the observation that the field of information security seems to be a mature and well-defined discipline, but in reality there is not even a rudimentary framework for understanding and assessing the security of modern software. So let’s dive deeper into the book to see how Mr. Zalewski addresses the issues in an attempt to untangle this mess. After the break, look for a link to a free download of Chapter 3: "Hypertext Transfer Protocol" Let us know what you think, Don
|
|
|
|
|
43
|
Columns / Hadnagy / [Article]-Scam Your Clients for Their Own Good
|
on: March 26, 2012, 01:50:44 PM
|
Another EH-ntertaining entry by regular columnist, Chris Hadnagy. Hopefully this starts some interesting conversations. Let us know about how you scammed your clients for their own good. Permanent Link: [Article]-Scam Your Clients for Their Own GoodBy Chris HadnagyAs a professional social engineer, it is beneficial to study the methods of scamming that the bad guys have used in the past, compare it to modern tactics and see what can be learned. Experts have agreed that the motivation for most scams is greed. Although that is true, it is also found that fame, attention or just the need to maliciously hurt and steal from others are strong motivators for scamming people. This month, let’s analyze some old scams, compare them to a modern-day equivalent and see what we can learn as Social Engineering Pentesters. Although scams have been around since the dawn of man, this one from 1812 is notable. A Philadelphia man name Charles Redheffer claimed that he invented a perpetual motion machine, a theoretical device that, after only one initial input of power, will perpetually continue to generate energy. Even though such a machine would break the laws of thermodynamics, his claim was supposedly backed up by an actual working device. His next desire was to secure government funding to "build a larger version". He actually got the money and built a new machine, but he then fled the city when inspectors found that he had hidden the real power source. Undeterred, he tried the same scam in New York City but was again caught when the inspectors removed a wall of the machine to reveal an old man eating a sandwich and turning a crank. This machine can still be seen today in the Franklin Institute of Philadelphia. In analyzing this scam we can see some basic principles at play here. If there's any topic you'd like Chris to cover, please don't hesitate to share your thoughts. Who knows, you may just dictate the contents of his next article. Don
|
|
|
|
|
44
|
EH-Net / News Items and General Discussion About EH-Net / [Article]-February 2012 Free Giveaway Winner - Global Knowledge
|
on: March 22, 2012, 09:45:49 PM
|
Another month another winner. Here's to everyone advancing their careers. Hopefully when all is said and done, we can take pride in knowing that we all help each other and that a rising tide lifts all boats. Permanent link: [Article]-February 2012 Free Giveaway Winner - Global KnowledgeWe Have a Winner!! Hopefully most of you not only have the technical side of your brain in your plans, but also the management skills that are more and more expected of us geeks as we advance in our careers. Enter Global Knowledge and their dedication in helping to support your pursuit of IT security knowledge building. Global Knowledge offers one lucky EH-Net member the CISSP Prep Course ( terms & conditions) worth $2895! This course includes all the tools you need to prepare for the updated (ISC) 2 Certified Information Systems Security Professional exam. Prepare with confidence with this course and these exciting tools: • Custom study guide containing summary charts, insightful data, and practice exams • A free copy of McGraw-Hill's CISSP Certification All-in-One Exam Guide, 5th Edition • CISSP Exam Cram Sheet • CISSP certification practice exam To make it even better, Global Knowledge has several ways in which to deliver this course whether it be in-person or online. That kind of flexibility gives this month's winner, TheXero, options when it comes to both budget and travel. Congrats and keep us posted as to your progress. But the prizes don't stop just because a winner has been chosen. Another great prize is up for grabs. So go hit the EH-Net Community Forums and you could be one of the many winners of high cost, high quality prizes offered each and every month. Congrats, Don
|
|
|
|
|
45
|
Resources / Tools / Ettercap 0.7.4 - Lazarus RELEASED
|
on: March 16, 2012, 10:21:22 AM
|
A little background info: 0.7.4-Lazarus RELEASED!! "Children are made to let them go their own way, while you look at them happy, spying how it will end." This is exactly how I feel right now. The project was born when we were at the University, it grew up for 5 years and then it was put on hold. The job and the family had not left enough free time to code like in the past. Now it's time to let it go and grow in the hands of someone else looking at what it will become. It's time to pass the baton. I'm sure new the developer team will keep up the project and will let it become something bigger than what it's now. The todo i've seen is great, lot of new feature are coming out, stay tuned... -Alor & Naga- Short Description:Ettercap is a suite for man in the middle attacks on LAN. It features sniffing of live connections, content filtering on the fly and many other interesting tricks. It supports active and passive dissection of many protocols (even ciphered ones) and includes many feature for network and host analysis. For more details and download: http://ettercap.sourceforge.net/history.phpDon
|
|
|
|
|
Loading...
|