Hardware Hacking: Have Fun While Voiding Your Warranty, Joe Grand, Ryan Russell, Kevin Mitnick (Editor)
Hacking Exposed: Network Security Secrets and Solutions, Sixth Edition, Stuart McClure, Joel Scambray, George Kurtz
The Art of Intrusion: The Real Stories Behind the Exploits of Hackers, Intruders and Deceivers, Kevin D. Mitnick, William L. Simon
Beginning Python (Programmer to Programmer), Peter C. Norton, Alex Samuel, Dave Aitel, Eric Foster-Johnson, Leonard Richardson, Jason Diamond, Aleatha Parker, Michael Roberts
The Shellcoder's Handbook: Discovering and Exploiting Security Holes, Jack Koziol, David Litchfield, Dave Aitel, Chris Anley, Sinan "noir" Eren, Neel Mehta, Riley Hassell
The Fugitive Game: Online with Kevin Mitnick, Jonathan Littman
Exploiting Software: How to Break Code, Greg Hoglund, Gary McGraw
Applied Cryptography: Protocols, Algorithms, and Source Code in C, Second Edition, Bruce Schneier
Software Security: Building Security In, Gary McGraw
The Cuckoo's Egg: Tracking a Spy Through the Maze of Computer Espionage, Cliff Stoll
The Cyberthief and the Samurai: The True Story of Kevin Mitnick-And the Man Who Hunted Him Down, Jeff Goodell
The Best of 2600: A Hacker Odyssey, Emmanuel Goldstein
< Breakpoint, Richard A. Clarke
The Scorpion's Gate, Richard A. Clarke
Hacking the Cable Modem: What Cable Companies Don't Want You to Know, DerEngel
Cyber War: The Next Threat to National Security and What to Do About It, Richard A. Clarke, Robert Knake
The Database Hacker's Handbook: Defending Database Servers, David Litchfield, Chris Anley, John Heasman, Bill Grindlay
The Oracle Hacker's Handbook: Hacking and Defending Oracle, David Litchfield
The Mac Hacker's Handbook, Charles Miller, Dino Dai Zovi
The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws, Dafydd Stuttard, Marcus Pinto
Forensic Discovery, Dan Farmer, Wietse Venema
Masters of Deception: The Gang That Ruled Cyberspace, Michele Slatalla
The Art of Deception: Controlling the Human Element of Security, Kevin D. Mitnick, William L. Simon
Stealing the Network: How to Own a Continent, FX, Paul Craig, Joe Grand, Tim Mullen, Fyodor, Ryan Russell, Jay Beale
File System Forensic Analysis, Brian Carrier
Introduction to RISC Assembly Language Programming, John Waldron
Solaris Internals(TM): Solaris 10 and OpenSolaris Kernel Architecture (2nd Edition), Richard McDougall, Jim Mauro
The Art of Assembly Language, Randall Hyde
Joe Grand's Best of Hardware, Wireless, and Game Console Hacking, Joe Grand, Frank Thornton, Albert Yarusso, Lee Barken, Tom Owad, Ryan Russell, Bobby Kinstle, Marcus R Brown, Job de Haas, Deborah Kaplan
Windows Admin Scripting Little Black Book (Little Black Books (Paraglyph Press)), Jesse Torres
Practical Guide to Photographic Intelligence, Harold Hough
Envious of your friends who got their HNN TShirt at #Defcon? Now you can be just as 1337 Get your very own HNN TShirt! http://3.ly/HNNTshirt10:31:43 AM September 01, 2010from web
Hack is Whack? SnoopDog teams with SYMC to solicit rap videos http://3.ly/HNNwhack Win a trip to LA and a free laptop. whoop.10:07:33 AM September 01, 2010from web
Looks pretty neat… for free… …a tool that could take timeline analysis to a new level. That is to create a single tool that could parse various artifacts found on a suspect drive and include them in the timeline, a some sort of super timelining… via log2timeline. […]
I have to say that DannyQuist has it right. The AV industry is not real world and not effective. The fact remains that the AV industry is about selling signatures, not about preventing malware from infesting your PC. The fact that they can take a finger print of what they’ve found “in the wild” is [...] […]
We are proud to announce that we are finally approaching a beta release of the first BackTrack Mobile operating system for the Nokia N900! The release will be public shortly before the Blackhat and Defcon conferences in July 2010. via NeoPwn Mobile Pentesting – First Ever Network Auditing Distribution for a Mobile Phone Platform. […]
This looks like a really cool contest – other cons take note. There are all sorts of variations on this theme – who’s going to do the counterfeiting competition? I know one year HOPE held one with their badges – whether they realized it or not – LOL. I suppose counterfeit DEFCON badges would be… [...] […]
Interesting debate – it starts off all over the road but eventually gets to the point – that even though our new Cyber Czar talks about making us more secure, the policies he is pushing are not secure software, and not about shaking up an industry that perpetuates the problem. Instead they’re about establishing power [...] […]
So audio forensic techniques have only been around since Watergate and haven’t really progressed since then… until now. It would be very interesting to read up on the details but it appears that the “grid” has a fingerprint that constantly changes. It appears there is also a way to find this signature in an audio [...] […]
Seems reasonable to me – get them all in 1 “room” so the talented one can get their hands into more stuff. Telecom is way behind and needs some infusion of critique like they can get from web app testers. Your automated telephone attendant systems for example – it’s like they were invented before we [...] […]
A quick looksie into this shows we’re talking Cross Site Scripting (XSS) here… http://energiser.bp.com/login/index.php?lang= + trigger, + iFrame of content to display Which is why this is up on XSSED.NET I guess – LOL. You can visit the archive and follow the actual link to see the site is STILL VULNERABLE. Found by: holisticinfosec Past XSS finds by holist […]
On Tuesday, an independent hacker and security researcher who goes by the handle Moxie Marlinspike and his Pittsburgh-based startup Whisper Systems launched free public betas for two new privacy-focused programs on Google's Android mobile platform: RedPhone, a voice over Internet protocol (VoIP) program that encrypts phone calls, and TextSecure, an app […]
Web Fuzzing Discovery and Attack Pattern Database – A comprehensive set of fuzzing patterns for discovery and attack during highly targeted brute force testing of web applications. This is especially useful for many filter bypass type exploits. Identical encoding sequences have been observed to bypass filters for more than one application. Examples can be ob […]
OK, so it’s from 2007 but given the recent news around Google/China and the push by Uncle Sam reaching the point that “return fire” in “cyber space” is the “rule of engagement”, this is still very timely. Great stuff from Marcus… Spotlight: Cyber Terrorism Roundtable with Sami Saydjari, Marcus Ranum, Dean Turner and hosted by Nicole [...] […]
Let’s hope we ALL get to ‘return fire’ and that this ‘right’ is not limited to the military and DHS. …One of the major themes of Thursday’s hearing was questioning where the Cyber Command would fit within the traditional military chain of command and when and how Alexander and his team of computer whizzes would launch [...] […]
As much as we at HNN balk at all the cyber warfare talk out there, here’s some solid thinking that applies to just about everyone. When the the Lower Colorado River Authority finally notices people are trying to login to their site – but only because one of the IPs resolved to China… that’s just [...] […]
It’s been far too long since we’ve seen an effort like this. First there was multix; then there was OpenBSD; now, hold on to your qubes – LOL. Pretty exciting stuff. Joanna Rutkowska, a security researcher known for her work on virtualization security and low-level rootkits, has released a new open-source operating system meant to provide [...] […]
Do you want to solve problems instead of sitting through meetings? Do you work better as part of a small, focused team? Do you want to feel a sense of ownership in what you do and make a real impact? So do we. We are looking for individuals who love technology, appreciate elegant solutions to hard problems, and want [...] […]
Exciting start-up is looking for an experienced Python/Django developer…. experience required: Python / Django – Satchmo html/CSS/ html5 and Javascript/jQuery Experience developing with Web Services (REST, SOAP, etc) Our current project is an audible Tweet platform: http://ShoutOmatic.com allowing your voice to be “heard” within your facebook status updates. […]
Anyone that supports 501(c)(3) not-for-profit organizations that promote security. “Huh?!” you say? All proceeds of this auction are being donated to the Open Security Foundation (OSF), maintainers of the Open Source Vulnerability Database and the DatalossDB project. Anyone who likes stickers should bid. Bosses, get them for your employees. Security types, g […]
Job Description: Enterprise Software Developer - FreshBooks – Toronto, ON FreshBooks is looking for an experienced Enterprise Software Developer to help build out our world-class invoicing platform. Thousands of people use FreshBooks every day to manage their businesses — tracking time, billing and getting paid more easily and more reliably. Your role is to […]
Job Description: Software Developer - FreshBooks – Toronto, ON Love the fast-paced and creative environment of a start-up, but could do without the stress and chaos? FreshBooks has been around for more than five years now and has a fanatical fan base of over 900,000 people who use our groundbreaking Web 2.0 application. Whatever “Web 2.0″ means. We [...] […]
Aftershock is looking for great developers to join our team. http://www.aftershocksf.com/ Web Application Developers: Java, Ruby on Rails, or Django About Aftershock: We make software for mobile devices, we’ve launched 2 apps that made it into the Top 5 of the iTunes App Store. We’ve launched more than 10 apps that have been downloaded cumulatively more than […]
It’s a regular thing for us to decide we need specific help or for us to receive offers of help in areas we have no immediate need for. Hacker News Network is still at a stage where things are VERY tight. The burglary of Space Rogue’s car during his move took all the equipment we [...] […]
The Plea from HFC What I need is for a small army of people to swarm the net in search of training courses (Office, Graphics packages, just about anything). We need to: Find sites that offer training If free, search for a terms of use prohibiting downloading If terms restrict downloading, send an email explaining what we’re doing and ask [...] […]
HNN MERCHANDISE
Site last updated August 29, 2010 @ 10:49 pm; This content last updated May 16, 2010 @ 6:50 pm