The man in the middle

The last weeks I was tinkering around on an old HTTP proxy skript I wrote about one year ago. This script doesn’t contain any rocket science skills and you have the same or probably even more functionality with any other HTTP proxy. Implementing the server in PERL allows me to extend, modify and adjust it [...]

read full post »

Cloud-based WPA cracking is here

Nice article found on TechRepublic. Welcome to the future: cloud-based WPA cracking is here In 2008, I speculated about the future of distributed security cracking. That future has arrived, in the form of a $17 “cloud” based service provided through the efforts of a security researcher known as Moxie Marlinspike. It is effective against pre-shared [...]

read full post »

Safer ebanking

Recently I read an article in the newspaper about a new product incorporated in a Swiss bank where they use a security token with fingerprint check and visual data transmission interpreted by the token. Check this site if you want to know more about it and you understand German : http://www.axsionics.ch/ . The point where [...]

read full post »

Russian police have arrested the hacker who last month projected some adult entertainment on an enormous video screen in Moscow, giving locals around two minutes unexpurgated coverage of “a white male and a black female having sex”. According to Pravda, the grumble flick appeared at 11pm on 14 January on an giant display on the [...]

read full post »

Holidays are over …

So I am back again after one week away from the keyboard. I was not completely off-line but I reduced the efforts to a minimum. Recreation and preparation work for the exams had the main priority. What I am going to release next is some kind of a digital bug. It’s a small piece of [...]

read full post »

The new code that extracts the Firefox account data out of the SQLite database is more or less done. If everything goes well I’ll upload the new sourcecode tonight (Swiss time) in a new version of the FFPasswordRecovery tool. During spring I plan to conduct some tests with the SkypeTap plugin and other instant messengers. [...]

read full post »

From time to time the documents I’ve stumbled uppon in the Internet or people recommended me and I’ve considered as interesting were put on the server and announced afterwards in the blog. Things that seem interesting to me may also be of your interest. The same thing with the software from other places. On the [...]

read full post »

I uploaded some screenshots of the VoIP-Recorder web GUI. For the end user it looks about like this when using the GUI for processing the intercepted Skype calls … Further screenshots will be posted here.

read full post »

This article will take you through the basic steps of building an executable crypter. All of the steps performed in this article require manual setup and integration to prepare the exe for the crypter stub. The focus of this article is to walk you through the theory and knowhow of how crypters work and does [...]

read full post »

An extract from Brian Krebs last blog post. I have often recommended file-scanning services like VirusTotal and Jotti, which allow visitors to upload a suspicious file and scan it against dozens of commercial anti-virus tools. If a scan generates any virus alerts or red flags, the report produced by the scan is shared with all [...]

read full post »

older posts »