HNNCast.2011.04.22
HNNCast for the first week of April, 2011
Top Stories
Breach-omattic, BigR and the FPL, RockYou Case Rocks On
News
Drop the B.S., Botnet Busters, Another Pathetic Transferrence, Week of Threat Briefs
T00lT1m3
updates: Wireshark, SandCat, Amap, Armitage, CVEchecker, QubesOS, Sys Internals, Olly Debug, Creepy, Maltego
new: RawCap, Streams, ViewStateHacker, DirectoryScanner, ShareScan, GetSploits, SQLmap, redsn0w, SpoofTooph
hardware: Fluke Air-Check
Quickies
TurboMessa, Ai Shitunot, WiFi Insecurity Conference, Key-through-12 Logging, CCDC Championship
ConFu
CanSecWest Media Posted, Hack.LU CFP, EkoParty Expanded
DefCon Wrap-Up: Pokercon, Scavenger Hunt Sponsors, SkyTalk CFP, Call for New Vendors
Stack of Shame
count: 146 (+4)
Top Offender: HP (27)
One Response to 'HNNCast.2011.04.22'
Subscribe to comments with RSS
Leave a Reply
You must be logged in to post a comment.
Posted: April 24th, 2011
at 10:29am by tan
Tagged with "open source", 0day, 802.11a, 802.11b, 802.11g, 802.11n, Advanced Persistent Threat, Ai Weiwei, AirCheck, Amap, analyzing debugger, APT, Armitage, Automattic, BigR, botnet, breach, Buenos Aries, CanSecWest, CERT, change, China, CIFS, Cisco, closed source, command and control, Coreflood, Creepy, cve, CVEchecker, data mining, DDoS, Defcon, DirectoryScanner, DOJ, DropBox, EkoParty, EvilMadScientist, exploit-db, Facebook, FBI, file synchronization, fingerprinting, Florida Power and Light, Fluke, Fort Sumner New Mexico Wind Turbine Facility, FPL, geolocation aggregator, GetSploits, Hack.LU, honeynet project, HP, IBM Lotus Domino, IE, InfroSecFreeWiFi, insecure coding practices, inside threat, iPad, jail-break, keylogger, Lancaster County School District, London Infosec, Luxemburg, Maltego, malware, McAfee, metasploit, Microsoft Active Directory, National Collegeiate Cyber Defense Competition, netscape, NextEra Energy, Novell eDirectory, Oak Ridge National Laboratory, OllyDbg, OpenLDAP, Oracle Directory Services, OSVDB, pcap, personal information, phishing, Pokercon, Qubes, RawCap, redsn0w, RockYou, rogue access point, rogue employee, Sandcat, SCADA, scavenger hunt, secure operating system, security management software, ShareScan, SkyTalks, sniffer, source code, sql injection, SQLmap, State of Software Security Report, streams, Sun One, Sys Internals, ThinkGeek, Thom Mason, Turbomeca, University of Washington, vendors, Veracode, Verizon Business Data Breach Investigations Report, ViewStateHacker, vulnerability disclosure, web scanner, WiFi, Wireshark, woanware, Wordpress, ZDI, Zero Day Initiative, zero-day, _VIEWSTATE
Comments: 1 comment










HNNCast for the first week of April, 2011
Top Stories
Breach-omattic
http://www.zdnet.com.au/wordpress-hacked-in-root-level-attack-339313284.htm
BigR and the FPL
http://www.scmagazineus.com/wind-power-company-disputes-alleged-scada-hack/article/200961/
http://img838.imageshack.us/i/49986845.png/
http://img718.imageshack.us/i/24380855.png/
http://img24.imageshack.us/i/58868342.png/
http://img228.imageshack.us/i/85258364.png/
http://img163.imageshack.us/i/90736853.png/
http://img217.imageshack.us/i/55439027.png/
http://img40.imageshack.us/i/87526089.png/
http://img864.imageshack.us/i/94061747.png/
RockYou Case Rocks On
http://www.theregister.co.uk/2011/04/18/rockyou_data_breach_lawsuit/
News
Drop the B.S.
http://www.theregister.co.uk/2011/04/12/dropbox_security/
http://paranoia.dubfire.net/2011/04/how-dropbox-sacrifices-user-privacy-for.html
http://tirania.org/blog/archive/2011/Apr-19.html
http://www.zdnet.com/blog/government/if-you-have-something-to-hide-from-the-government-dont-use-dropbox/10283
http://www.flickr.com/photos/imamon/
Botnet Busters
http://threatpost.com/en_us/blogs/doj-shuts-down-botnet-disables-infected-systems-041411
Another Pathetic Transferrence
http://www.computerworld.com/s/article/9215962/Oak_Ridge_National_Lab_shuts_down_Internet_email_after_cyberattack
Week of Threat Briefs
http://www.theregister.co.uk/2011/04/19/verizon_security_breach_study/
T00lT1m3
http://isc.sans.edu/diary.html?storyid=10720
http://www.vulnerabilitydatabase.com/2011/04/sandcat-the-web-scanner-v4-2-released-with-new-enhancements/
http://www.vulnerabilitydatabase.com/2011/04/exclusive-thc-amap-v5-3-released-now-udp-ipv6-support/
http://www.vulnerabilitydatabase.com/2011/04/armitage-ui-for-metasploit-v04-13-11-released/
http://www.vulnerabilitydatabase.com/2011/04/cvechecker-updated-to-v3-1/
http://www.vulnerabilitydatabase.com/2011/04/qubes-the-os-for-desktop-strong-security-version-beta-1-released/
http://blogs.technet.com/b/sysinternals/archive/2011/04/13/updates-process-monitor-v2-95-tcpview-v3-04-autoruns-v10-07-and-a-new-blog-post-and-webcast-from-mark.aspx
https://www.facebook.com/pages/Maltego/149160308483288
http://www.vulnerabilitydatabase.com/2011/04/2766/
http://www.vulnerabilitydatabase.com/2011/04/honeypot-new-tool-streams-v0-1-0-released/
http://www.woanware.co.uk/
http://security-sh3ll.blogspot.com/2011/04/directoryscanner-v10-free-directory.html
http://www.vulnerabilitydatabase.com/2011/04/mcafee-sharescan-v1-0-0-2-available/
http://www.vulnerabilitydatabase.com/2011/04/getsploits-v0-9-search-exploits-in-exploit-db-com-database/
http://security-sh3ll.blogspot.com/2011/04/sqlmap-v09-released.html?utm_source=feedburner&utm_medium=twitter&utm_campaign=Feed%3A+security-shell+%28Security-Shell%29
http://blog.iphone-dev.org/post/4731948971/the-untether-rolls-on
http://www.vulnerabilitydatabase.com/2011/04/spooftooph-the-bluetooth-spoofer-v0-4-released/
http://www.vulnerabilitydatabase.com/2011/04/exclusive-aircheck%E2%84%A2-wi-fi-tester-v1-2-released/
Quickies
http://www.theinquirer.net/inquirer/news/2042435/france-investigates-cyber-espionage-defence-helicopter-firm
http://www.businessweek.com/news/2011-04-20/chinese-artist-ai-s-online-support-group-attacked-by-hackers.html
http://www.theinquirer.net/inquirer/news/2045528/hundreds-log-rogue-wireless-hotspot-infosec-conference
http://www.wcnc.com/news/local/Personal-Information-of-Thousands-exposed-to-Internet-Hackers-120316064.html
http://seattletimes.nwsource.com/html/localnews/2014746226_uwcyberwin12m.html
ConFu
http://cansecwest.com/csw11archive.html
http://seclists.org/bugtraq/2011/Apr/225
http://www.ekoparty.org
https://www.defcon.org/
Stack of Shame
http://www.zerodayinitiative.com/advisories/upcoming/
tan
24 Apr 11 at 10:31 am