HNNCast.2010.07.09
HNNCast for the first week of July, 2010
Lead Stories:
- the iTunes Blues, YouTube XSS, Pirate Bay SQL Injections, Jackpotting, Facebook Admin pwned, Cisco Live SPAM, Cyber Command Code
News:
- Disclosure Debated Again, Photo Kioskery, Cybaby, Romanian FlexiSpies, Symbian Malware, South Korean Poker Jokers, Back Track Backed to get Stacked
Tool Time:
- BinNavi, PDF Dissector, ida2sql, Deblaze, KillerBee, Ostinato, NeoPwn, Cubes, SIP Vicious, SmartCarving
Quickies:
- PAK Bugs Busted, Biden Wifi Taunter Temps Fate, Hacker Croll Update, Brit Banking Boinked by da Boys, GEXA Getsa Disgruntled Ex, PHP Attacks Continue, FBI Truely Crypt-up, Dvorsky Pulls a Palin, Another Superman III Scam, Butterflies and Octopi, I Will Never Click Again, Maine-stay for Malware, Bush gets “Hi” from Saudi Hackers, XPSP3
Cons Call:
- B-Sides Detroit, B-Sides Cleveland, B-Sides Las Vegas, CCC 2011, the NEXT HOPE, dEFFcon 18 Getaway Results, #1 Hacker Contest, DC18 Ninja Party, pwnie Award Nominations Still Open, Hacker Poker Invitational
Stack of Shame
count: 141
There is no Stack of Shame this week. ZDI seems to be split between going with CVSS2 scores or H/M/L… and went BOTH ways… Perhaps this will be worked out soon?
Posted: July 11th, 2010
at 5:57am by tan
Tagged with "cross-site scripting", "Hacker Croll", "Hi from Saudi Hackers", "I Will Never Text Again", "Offensive Security", "South Korea", 0day, 2m, 70cm, 802.11.15.4, ActionScript, Anti-Virus, Ap Store, Apple, Ashton Kuchner, ATM jackpotting, Automatic Teller Machines, B-Sides, Back Track Linux, backtrack, Badges, Barnaby Jack, BinNavi, Blackberry, Blackhat, Bluehost, Bob Dvorsky, botnet, carding forum, CCC 2011, Cisco Live, Cleveland, CnC, Cubes, Cybaby, DDoS, Deblaze, defaced, Defcon, Defcon forums, dEFFcon 18 Getaway Contest, Detroit, EFF, email, encrypted string, Ethical Disclosure, Facebook, FBI, Federal Investigative Agency of Pakistan, Flash Remoting, Flexi Spy, forensic, Francois Cousteix, fraud, Fraud Prevention Specialist, FTC, full disclosure, Gen. Keith Alexander, George Bush Presidential Library and Museum, GEXA Energy, GPS, Hack In The Box, Hacker Poker Invitational, HAM radio, ida2sql, International Roll-Call, iPhone, itunes, Japanese Manga, javascript, Joomla, Justin Beiber, KillerBee, Kraken, Las Vegas, Legatt, Lilly Allen, Maine, mainelegislature.org, malware, Mariposa, md5, Microsoft, Microsoft Security Response Center, Microsoft Spurned Researcher Collective, MSRC, N900, NeoPwn, NetBot Attacker, Ninja Networks, NSA, online poker, Ostinato, PAKbugs, PDF Dissector, photo kiosk, PHP, Pirate Bay, piratebay.org, Pokercon, President Obama, Pwnie Awards, Raoul Chiesa, responsible disclosure, Riviera, Sarah Palin, SCADA, security challenge, Service Pack 2, Service Pack 3, Shawn Merdinger, SIP Vicious, smart phone, SmartCarving, SMS, software certification, SPAM, sql injection, Superman III, Symbian, Symbian Series 60, Tavis Ormandy, the Next HOPE, the Underground Economy, the World's #1 Hacker Contest, TrueCrypt, Twitter, U.S. Cyber Command, upSploit, US House of Representatives, USB, Vice President Biden, VM, WiFi, windows mobile, Windows XP, Wireshark, Wordpress, XSS, Yahoo, YouTube, youtube.com, zero-day, Zigbee, Zynamics
Comments: 1 comment
HNNCast.2010.06.25
HNNCast for the last week of June 2010
Top Stories
- Ali Wants to Do, Pump and Dump Bot, Get N3k3d or the GIFs go Public, Another Forum Bust, Too ilLEGATT to Quit, Baaaahd Goat
News
- We’ve All Got H0lez, a No-No from Lenovo, Embarxssed, Designed to Fail… on Purpose, a Real Turkey of a Move, POS for Alarm
Tool Time
- THC IPv6 Attack Toolkit, VASTO, Pwnage Tool, iPhone Password Breaker, L0phtCrack, HTTPS Everywhere
Quickies
- Civil Cyber War, Hungry Hungary Po-pos, Crime Bit Down Under, Bhutan Patch Predicament, ACL Needs Better ACLs, Tweets For Turks, Naidu Boo-boo, 1 Ringy Dingy, Sploit Stores DoSsed
Cons Call
- Conf Con, PacSec, HacKid Con, B-Sides Ottawa, B-Sides LV, Pokercon/Hackers Poker Invitational Tournament, CannonBall Run, Mohawkcon
Programming Note: No HNNCast for the 4th of July weekend!
Stack of Shame
Count: 142
BIRTHDAYS:
- Turning 1 Yr Old:
- ZDI-CAN-509 from RealNetworks = HIGH RISK by: Anonymous 2009-06-25
- ZDI-CAN-508 from RealNetworks = HIGH RISK by: Anonymous 2009-06-25
- ZDI-CAN-506 from RealNetworks = HIGH RISK by: Anonymous 2009-06-25
- ZDI-CAN-490 from RealNetworks = HIGH RISK by: Anonymous 2009-06-25
- Turning 2 Yr Old:
- ZDI-CAN-348 from RealNetworks = HIGH RISK by: Matteo Memelli aka ryujin 2008-06-25
Posted: June 27th, 2010
at 1:58am by tan
Tagged with "bit torrent", "Conf-con", "Jason Scott", "Kevin Mitnick", 501-3c, ACL, Adobe, Alistair Peckover, Argenta, Australian Christian Lobby, bank accounts, Belgium, Bhutan, botnet, botnets, British Telecom, Byrone Sonne, CannonBall Run, CISSP, Citrix, cloud, comspiracy to commit fraud, credit card umbers, Cyber War, DDoS, defacement, Defcon 18, Dexia, Dixie Cafe, DoS, Driskill Hotel, Durknet, ElcomSoft, Eleonore Exploit Pack, encryption, Exploit Sharing, extortion, F-Secure, Facebook, Fake Anti-Virus, Firefox, forums, fox news, fraud, g20, Gmail, Google Docs, Google Maps, Google Voice, Gregory Evans, hacked by Turkish Hackers, Hackers Poker Invitational Tournament, Hackerspace, HacKid Con, hacktivism, How to Become the Worlds #1 Hacker, HP, HTTPS Everywhere, Hungary, intimidating justice system participants, iPhone, iPhone Password Breaker, IPSwitch, ISC2, ISP, KBC, Kyrgyzstan, L0phtCrack, Las Vegas, Lenovo, Liberty Exploit Pack, Ligatt Security International, Lucky Exploit Pack, Luis Mijangos, malware, Meghna Naidu, Meredrop, metasploit, Metropolitan Police Central e-Crime Unit, milw0rm, mischief, Mohawkcon, National CyberCrime Centre, nCore, Neon Exploit Pack, New Zealand, Ottawa, PacketStorm, PacSec, phished passwords, PIN, Pokercon, POS, possession of explosives, Pwnage Tool, Rainbow Table, Real Networks, remote shells, Security B-Sides, Security Klatch, Sketch Cow, Sniper Backdoor, Spain, sql injection, THC IPv6 Attack Toolkit, The Hacker's Choice, Toronto Goat, Toronto Hack Lab T.O., Trojan, Trust Key, Turkey, Twitter, unauthorised computer access, VASTO, VMWare, vulnerabilities, weapons, whistle-blower, WiFi, Xen, XSS, XSSED, XSSED.com, Yes Exploit Pack, YouTube, ZDI, Zero Day Initiative, Zeus
Comments: 1 comment
HNNCast040910
HNNCast for the second week of April, 2010
Lead Stories
- China: See No Evil – Hear No Evil – Speak No Evil, Valley of the Kings, Good Typing Vietnam!, RSA overlooks CRL History
News
- Adopey Advice, OCC Shifting Risk to Consumers?, Skimmin U.S.A., Visa POS Terminally Ill, Qubies!, MIT Campus Prankster Week
Quickies
- Russian Theif now Schwabbin the Decks, Rubico Ruling, unWholey Foods, Insider ATM Attacker Plea, Bachmann just Batty, Lower Colorado River Authority, RSA jobs, the Weekly Cons Call
Stack of Shame
count: 131
Turning 1 this Week:
- ZDI-CAN-473 RealNetworks Medium 2009-04-15, 356 days ago Discovered by: Anonymous
- ZDI-CAN-472 RealNetworks High 2009-04-15, 356 days ago Discovered by: Anonymous
Posted: April 10th, 2010
at 8:29pm by tan
Tagged with 'bank account', ACH, Adobe, Afghanistan, Aleksey Volynskiy, ATM, Automated Clearing House, Bank of America, bauxite mining, botnet, Bucharest, Campus Preview Weekend, certificate, Charles Schwab, ChengDu, Citizen lab, credentials, credit card skimmer, Dalai Lama, David Kernel, DEEPSEC, Defcon CannonBall Run, DIICOT, Directorate for Investigating Organized Crime and Terrorism, eBay, education, Facebook, fan, fan pages, FBI, fourth amendment, fraud, Ghost net, Hack.LU, HP, India, Joanna Rutkowska, Joe's Crab Shack, K.P.R.C., key logger, keyboard driver, Las Vegas, launch mechanism, Linux, Lower Colorado River Authority, malware, Massachusetts Institute of Technology, Media Lab, Michele Bachmann, MIT, Mozilla, N.B.C., NATO, nuclear strike, OCC, Office of the Comptroller of the Currency, PC infection, PDF, People's Liberation Army, POS, Publix, QubesOS, Real Networks, Redondo Beach, Rivera, Rodney Caverly, Romania, rootkits, RSA, Rubico, Russia, Sarah Palin, search, SecDev, Shadowserver Foundation, Tibet, Trojan, Trust Manager, University of Electronic Science and Technology, University of Toronto, US Secret Service, Valley of the Kings, Viennna, vietnamese language, Vietnamese Ministry of Foreign Affairs, virtualization security, Visa, Volgograd, Whole Foods, wire transfer fraud, wire transfers
Comments: 1 comment









