HNNCast021910
HNNCast for the Third Week of February, 2010
Lead Stories
- Reality Shockwave: Government to Intrude Further and Ask for More Money, Russian Porno Prankster Faces 2 Years in the Pokey, Floyd Landiself in Trouble Over Drug Tester Breach, Badware BSOD Bug Fixed Faster than MS Responds, The Big Filmowski – the Dudes Abide
News
- Google:CanSec as K-12:Ivy League, Cash Grass or *ss – Nobody Passes for Free, Logic Bomb Blows 800 Boxes, Would You Like Some Identity Theft with that Shake Mate?
Quickies
- European PIN Bypass, Twitter Grader Fails with Grace, Acrobatics Are Unsafe Kids, Georgia Compromises, Conficker Burrows through Leeds to Middlesex, Paint Me Vuln, the Weekly Cons Call
Stack of Shame
- Count: 149
- Turning 1 Year Old This Week:
- ZDI-CAN-438 Cisco High 2009-02-24, 360 days ago Discovered by: Anonymous
- ZDI-CAN-434 RealNetworks High 2009-02-24, 360 days ago Discovered by: Anonymous , Hossein Lotfi
Posted: February 21st, 2010
at 12:45am by tan
Tagged with "Credit card", "Dan Kaminsky", #cybershockwave, 0day, Acrobat, Adobe PDF, Alureon, APEX Online Learning System, Australia, authentication, billboard, botnet, Broward School District, BruCon, BSOD, Bug Bounty, Cambridge university, CanSecWest, Card Skimming, Chip and PIN, Chrome, Cisco, City of Norfolk, Columbia, Conficker, data breach, Defcon 18, DHS, drug testing, Filmowisko.net, Floyd Landis, Foundation for the Protection of Audiovisual Creativity, Georgia, Google, grades, HD Moore, Hossein Lotfi, HubSpot, IOActive, JPEG, Kneber, Leeds HNS, Logic Bomb, maleware, Manchester Police Department, McDonald's, metasploit, Microsoft, MitM, Moscow, MS10-015, Open Security Foundation, operation cyber shockwave, OPFOR, OSF, OSVDB, Paint, passwords, Perth, porn, POS, pwn20wn, Quahog Con, rapidshare, Real Networks, Russia, Safari, ScanSafe, Security B-Sides Boston, Source Boston, teacher, Twitter Grader, wargame, West Middlesex University Hospital, ZDI, Zero Day Initiative, Zeus
Comments: 1 comment
Contest offers $100,000 for smartphone, browser hacks
NOW THIS is a bug bounty – Google and Mozilla take note – CANSECWEST is a small time hacker con and this is how serious THEY take 0day in your products
Wake up and read the fortune cookies.
An annual hacking contest that has made mincemeat of security on both Mac and Windows computers will set its sights on smartphones and browsers with as much as $100,000 in awards next month.
Now in its fourth year, the Pwn2Own competition will award $60,000 for exploits that successfully penetrate Apple’s iPhone 3GS, Research in Motion’s Blackberry Bold 9700, a Nokia device running the most recent version of Symbian and a Motorola phone running Google’s Android. Each mobile attack that results in code execution “with little to no user-interaction” will fetch $15,000…
Contest offers $100,000 for smartphone, browser hacks • The Register.
Posted: February 17th, 2010
at 12:43am by tan
Tagged with Bug Bounty, CanSecWest, pwn20wn
Categories: Breaking News
Comments: No comments
HNNCast020510
Also on YouTube (for 3GP mobile or 720p true HD users):
PART 1: Lead Stories & News
PART 2: Quickies
HNNCast for the first week of February, 2010
Lead Stories
- Pushdo Pushing Poopoo, Google Bug Bounty, iPhone OTAP Flaw, House Probes GovTrends, Bogus Charges for Bogus MACs, NOTRAX – yea right
News
- Temp Dasvidanya to Dovaya, RX for HoRrors 2221, Blackhat DC Wrap-Up, Po-po Go Offline for Conficker
Quickies
- Taxes-Death-and-Maleware, Biometrics Beat (by a girl), Humbolt Hacked, Iowa Gaming Commission Gets Got, Twitter Gets Proactive, Navy Cyber C&C, StopBadware Goes Pro, Twitter Password Warning, Cons Call
Stack of Shame
- Count: 152
- Turning 2 This Week:
- ZDI-CAN-298 IBM , EMC High 2008-02-07, 727 days ago Discovered by: Sebastian Apelt (sebastian.apelt@siberas.de)
- ZDI-CAN-294 IBM High 2008-02-07, 727 days ago Discovered by: Sebastian Apelt (sebastian.apelt@siberas.de)
- ZDI-CAN-288 IBM High 2008-02-07, 727 days ago Discovered by: Anonymous
Posted: February 6th, 2010
at 11:37pm by tan
Tagged with "South Korea", 10th Fleet, amazon, Äôs Berkman Center for Internet and Society, biometric, Blackhat DC, botnet, Bug Bounty, bug market, cable modem modders, Cablehack.net, certificates, Chicago, China, Chromium, CIA, Conficker, Connection String Parameter Pollution, CSPP, Cyber Command, Data Accountability and Trust Act, DDoS, Defcon 18, Defcon.org, DerEngle, electron microscope, EMC, Esther Dyson, fingerprint scanning, Ft. Meade, Google, Greater Manchester Police, H.R.2221, Hacking the Cable Modem, Harvard University, Humbolt State University, IBM, IE, Infineon, Interior Ministry, Iowa Racing and Gaming Commission, iPhone, Japan, Kaspersky, maleware, Massmodz.com, Matthew Delory, Microsoft, Mozilla, Naval Cyber Command, Naval Network Warfare Command, Notrax, Novaya Gazeta, Oklahoma, OTAP, password, paypal, Pokercon, Pushdo, RSA, Ryan Harris, San Francisco, SDLC, SecureStar, Security B-Sides, ShmooCon, smartphone, SSL, stopbadware, TCN-ISO.NET, Thomas Swingler, Thotcon, Torrent, Trojan, Twitter, US Navy, Verizon, Vint Cerf, virus, Washington DC, wiimodder, ZDI
Comments: 1 comment










