<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0"><channel><atom:link rel="hub" href="http://tumblr.superfeedr.com/" xmlns:atom="http://www.w3.org/2005/Atom"/><description>

  var _gaq = _gaq || [];
  _gaq.push([‘_setAccount’, ‘UA-15960086-16’]);
  _gaq.push([‘_trackPageview’]);

  (function() {
    var ga = document.createElement(‘script’); ga.type = ‘text/javascript’; ga.async = true;
    ga.src = (‘https:’ == document.location.protocol ? ‘https://ssl’ : ‘http://www’) + ‘.google-analytics.com/ga.js’;
    var s = document.getElementsByTagName(‘script’)[0]; s.parentNode.insertBefore(ga, s);
  })();</description><title>greenoperator</title><generator>Tumblr (3.0; @greenoperator)</generator><link>http://greenoperator.tumblr.com/</link><item><title>hak5 - Wireless Pineapple - URLSnarf infusion</title><description>&lt;p&gt;The wireless pineapple, is a very nifty device to have and experiment with. Many times on my assessment work, I am interested in seeing if an application is making any network calls using HTTP.  The pineapple and URLSnarf make this task very easy to check.&lt;/p&gt;
&lt;p&gt;I know, I know&amp;#8230; I could launch BurpSuite or any other proxy, update the proxy settings in the device and lauch the application. Although this would work, it is not as quick as just connecting to the pineapple over karma and then starting the URLSnarf infusion!&lt;/p&gt;
&lt;p&gt;The infusion is simple, easy, and effective. Prior to starting the infusion, there is a simple configuration that must be performed. The appropriate interface to listen on must be configured. Many times I had forgotten to update the interface and wondered why the infusion did not function properly.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Steps to use the infusion&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;1. Begin by powering up the pineapple and waiting for WAN, LAN, and USB LEDs to illuminate.&lt;/p&gt;
&lt;p&gt;2. Through the testing device, connect to the administration panel of the pineapple.&lt;br/&gt;In a browser navigate to: 172.16.42.1 and authenticate using the username root and the password which you configured. The default password is: pineapplesareyummy&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAMgAAAA7CAIAAACxPFJ+AAANKUlEQVR4nO2caVAb5xnH337ol8y0nel0+iFkxm3SxumHTjt178Z1kpkEO4fj+EhsGMfYhuID345twAc+MXZi57DTxgkhWCZcxkjIFuISGMwp0IUkJNDq2tW1h+4DMLb6gYlG2V0tCxEY4/3Pb5jVq+d93uvPvsvOskAl61IOdMr6Ovp77nJwJAsg6+sQ8qu+/OLKx5cvcnAkC1BTdaNBXI8g1lDIz8GRLMCVTy8ROOr3uX1egoMjWYDLly74/R6vB+fgSCLg8qULfp/b68Y4OJIIuPxRkc9LeAg0BoG54j9ycMwAcOnD8z4v7iZc8VRc+5TAnfElba2tpBgODgbARxcLvR6cwF0k7Ha70+kwuWCbzZKVmbU9e1tBwSlqGAcHLeDDi+e8bozAnFTsdnuJuqKvX3a9lNfYLJG0tdtsDtpIDg4S4OKFcx4Cw1EHLSdPFHz++f+KCs9PGqul9e6OHTmJgucYAADXh3kLuFB01o2jmMtOi8/nr73Fl7S1H/rgsKStfVHKM4FAkDYSxClWkihtUmCZn9qxZGVOFDmrLT4ugAvnz7hxF+ayUeHXVG/fnvNtWdlnV/57YP+h5xb96i9/WnL4UB5iNVKDAQC0x7MHm1Zm1hP2taiRs93i4wIoKjxDYE7UiVC5eL6wtfXulrW/eG7Rr6LBE1F/fnfb5qzMbIWsjxoMACAdx37GFB/AXEKtRVuSKBu1S6Rylm2RxkJbN+ktJmolUfL5CSgsPJ3IWGfzNgr4ddFo9IUl/7h3a+mPX9vy4MGDhw/aIkEd7dyRjqnTkaiEmodNrSmz0a4E+8zxa8ymbhJbpH77eLkKdSLg3NmTiYy1+uWnFV+A6KRG/vDZ5UsbVvw2e/Xzb//tadrpm/L3LH6amH+Jp2UsarZZXeZEkQwtTnd0DPGPC+DsmQJaY318es/V/c91XgXSL4Cj7ScZr6ekpaasWvZMWmpKWmrK9rUvMCwY+2X7IYs95aTPH2PNoA9Tpp3ngDOnTiQ6Y2FO6zD/2aFqMFwL0penpKWmpK14Pi01JePNX6cvT9mcupjN9P0Q07Apme6SzKqxZqnFx9JYp04eS2Qs1Ikoy38kLwWWpp+ve+WXaakpq15KOXXqbFpqyqa099Yv+RmbCaWdMurORT35k2JoSxJlI3UjUapECxmLoY6LoW6yWmTZyjwHFJw4ymispxQ8oKuJP2M9vXnls+nLU/ZkbpjFbi2I7eBJBpw4ns9gLKv8quH2Iue9P4e0b01eY006bMs7v5vdbnHGeswBx4/lMRiLxOsvPPXOspQVi3/6yPvNMc8Bx47msjcWBwdLQH7eEc5YHEkH5OUd5ozFkXTAunfXcsbiSDrA5YA5OJIOZyyOWQE47VaWILBJo9F090kl7ffELW2iplZRU6u4pa21vbO7T6rRaBDYxD4bx8IGOG2WKTFBw109vfWNEqVa7XK5AoHA6GhkbCwyNhYZHY0EAgGn06lUq+sbJd29fWbjCJucHAsb4LCZGUBgY4+0T9zcCiPI6Gh4bCwyGglFwsFwKBAK+kNBfzgUiISDo5Hw2FhkdDQMI4i4ubW3X2qDTcyZORY2wI6YEmGE9A2SNq1eHwmHIpFwMOgPBnwMhIL+SCQcDoc0Ol1LW7vFbGBIzrGwAXbYRIthWN8oacMwdCwSDgV8Qb+XJaGAbywSxjC0UdKWf/RYAacnUsAGG6kYIb2osYUg8Eg4GPB7ZkAkHCQIXKrUjY3fj3J68gRsVoiExTQibmqx223hUMDvc8+YcCiAE4RcMzzx4MGjHianuRZALAYSXd3dGq02HAoyvP3I7/P4/R6/38P8Yq1wOGg028yw41EPk9NcC8AWQzwjw1pRY0sg4PN53V4PQYvf5+mTDiz594qNmbtxDGWI9HndwWCgX6XlNsQnTQA2j8TT0dllNJoCPq/XjdPi97oHBmR/f2Xli6lr//ryyq079/u97kTBXjce8HkdTpfBjCTqQTgc1mg0EolEKBQKhUKJRKLRaMLh8BxOAqfkC1hNwzGMkE5wR+z1er1ujPalRz4PLpfL//XqqldXbVyXkfPWhqw339vs8+AM70nyujG/39c9oL4/MUFtHkGQ27dvd3V1yWQyrVYrk8kgCBIIBEKhEIbhuZ8OTskSsJj0MeTyfunAgN/npn3jkdeDyeSyF1PXvLr6/fWZezdk7V+bsVsxqPJ4MOZXJfl9bh1kwggPqW0Yhuvr61EUDQQCcrlcKBTW1dV1dnbW1tYKhUI+n8956/EVsBh1Mdo7OiCjkfatRh4CVSjlL6aueW3NprT/7E/PPvBe5j7VoNqT4BVI8XjdGGJ3kHbDUCgkEAgIgpiYmLh//77f7+/o6Kj5TvX19Uqlks/nh0KhRzU1j4UKCgqSHpmUPMAM6WLUNzU7HA4Cd5FeSePGXSqVcmnqmtS1GenbDm7KObJ5d65CqXITqBt3kSAwcnUCd6EoqtQa4htWKpWtra3j4+Pj4+MEQdTU1FR/XyqVqqamRqlU0vcbgPjjeJEKE46c8hVzfKJG2eePF+3yxApJNxsZak2WsFnsuTRWQUEBMENDMQR36gkCJTAHjtpjuHGnSqVY9sa65eu2bNxxaOveo1v25L+buXfZG+t//8/XFi95afGSZZP85o9L12dsc+Ou+Oo4aicwh8eN9ym08W2LRKKBgQEYhpVKpUAgqKSooaHBZDKJRCJqvxlWdLKc5AA2GZh9QKoyg/zxItmFoTBKcVuib6fUXJ+xTAZtjFvCOx4CQ522eHDUuWLNxhXrtmzKOZK1//gkGbty12ftW5ORs2bTzhgr07ctXfEujjpJGVCnzeMmugYG4xuuqKi4c+cOn88vp1NdXR0EQTiOV1RU0Pc7wXKyLIyyMAc1eMb5o5T1oP04pW8SfYxVpz3JkQqpHxPlZ67OUBKNRoFxRBOjpu42gaOkJ7Ywl31VenZa9gfZB08ys3XvsdfXZ2IuO/WxLw+BUY1VFqfKysqysjI+ny8QCMrKytRqdTAYdDgc5eXlUTqxXGOWWxV1J6WNnHH+KKNFaNd4ylrUitScbEpov2LoJ8uc3zMWXyhyOe2oEyEZS65Qvr/jSOaBgu2Hz0ySdaBgY07ehm2H4lm7dd+e3NNUY6FOBMNcpK2wrq6Ox+PxeLx79+4NDg6aTCaxWNzT03Pz5k0ejzc0NIQgiFwur6uro442ym6Np3XBxJyH1nns81OV6KTC5oqK+nFaxmLZFm0/WZZEo1EADatjiMQNkAlCHTDpoS3MaVMolRm78rIPnsrJPbfzyNmcI2d1uiG6K3eni1IddcBmq4V08d7f319aWtrU1OR2u71er9frtdvtDQ0NpaWlpaWlPB5v8lgqldIOeEobsdzdmI9ZVmHZw3hNeXqgjUnuGWvK/swgZ7yxBmNI2lqlAzLMZaM+t4U6EblSkbErf/vhszl5he/n5L6dnq1QyFxOeMpnvjCXTaXRk243BINBHo9XUlKiUqnc30kul1dWVpaUlNy4caOqqorH4wWDQdoBM9uIzUY5pbEYvDvd/FEWpokmWCE2SZK+FdLuztMzlkGvitHX21UjFOGo3Q4bqbgcVrlCvnnvsR2557YdPvNOxq6X31ov7et12iy08TFw1N7SIaXeIIUgqLi4uKKiAsdxgiAIgkBRtKysTCQSicXi0tJSCIKokxul+1OfuqjUzYv5ZgGbnS4+1XTz0+59pPxT7oPxtdibhlqROc+U1antUkcERnTKGDqtovTbKhtiscEmxApRcdgtMrl8674Tu/KLduYWrt60+411GQ6bmTZ4Ehtscjntje19ExM0D88YDIaSkpLa2tqenp7Ozs6ampra2lo+n19SUmIwGKjxnGJKtHnNfSu0Md8z1ohO2dzSLG5pRR0w9XGaSRw2i0wuzzx4ctfRi5v3ntiXf9qBmBMFIxYD6oA7euXDRmuibgUCgd7e3urq6uLi4uLi4urq6t7e3kAg8IPm4wnQfDfW8JAiHpVSerX4utkEIVbIah6hxY6Y+wb6t+w7nl/4icXCFIlYjTBsqRG1RUbHZmHUnOavwLBWTqKlpbnyVh3qgGHzsNWkp8UOG1EH7LRbEMtIohjYPIw5beK2bqPF/qiHyWmuBfRaGYkhdf/18qqG5haH3Ww2Ds0Yh918r1fW2iV7+PDhox4mp7kW0GtkVDQq6ZVr30j7+x2I2QLpzIahaWGBdA7ELO3vv1V/d/w+9+zokyigUw/QIu/vKvr0mrC+wQYbzdBQ/A16ZsyQzgYbhfUNRZ9e4/7964kVGFL3J2JQ2XvtG15J+U0jpEcsBqNBE383lYrJoEEsBgjSf11W9eU3N9SqPobkHAsbMDQoZUCj7L3Jrz1Z9Ingdr3ZqLdZIYtJbzJojSPqyXuqxhG1yaC1mPQ2K2Q26gW36wuKPrlZW6tV9TFn5ljYAK1KOiWyge6vr5fnnb589avr4uZmuUJmGNFN3v80jOjkCpm4qeXqV9fzTl/++nr5gLSLTU6Ohc3/AcxgbTmMFPnbAAAAAElFTkSuQmCC"/&gt;&lt;br/&gt;&lt;img alt="" src="denied:data:image/png;base64,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"/&gt;&lt;/p&gt;
&lt;p&gt;3. Navigate to the Pineapple bar where you can find a list of all the infusions avaialble. If URLSnarf is not already installed, follow the instructions to install it. Click on the URLSnarf link to navigate to the infusion.&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="data:image/png;base64,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"/&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="denied:data:image/png;base64,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"/&gt;&lt;/p&gt;
&lt;p&gt;4. Ensure that the appropriate interface is selected. The interface that should be shown is br-lan. This assumes that you have the pineapple hooked up to a PC and the interface on the PC is bridged to another interface with ICS enabled.&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="data:image/png;base64,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"/&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="denied:data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAYkAAACECAIAAADqVkCAAAAIXUlEQVR4nO3dza7cxhGG4c+KkMDZGckVxEDiH8GAEWSvxIvAXsVwkKyEwNtYyvHOsGEgdXleeuH7mSx0fMTD7i5Wd7PC+XkfFAROs1jskTil5uiMRgIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAXL2n0kfSP6U76RvJCIIgOuMb6U76h/SR9FR7+ED6+uhnRRDENcWd9L4mPJE+Pfo5EARxrfFX6YmGfHb01AmCuO74VP3eO3rSBEFcffxX+oN6PE15j+m0cPxvyuP5nMmUCOLm4q7rrfFniVM5k0ZwJtMgCEIfKuzvifM4k6ZwJtMgCEJfKOw/XqHVTdDy4eoWqXq71GoKp0KreOuo1mBrwtzQEcRZxEuFfbdRq9oLVg+XvcA5drNgtbNsTmlsGgRBHBDfKmyrVqQ3BY9dDlZXMcE+uHlgZBoEQRwTUVuFdu9Ny13+Qqm1i95EEBccUVuFyqawy7rJqb+5i95EEBccUYFay5Z0cq3yg3vL8fJh60DnRJt7CYI4IKIOnyhBEDcVUYdPlCCIm4qowydKEMRNRdThEyUI4qYi6vCJEgRxUxF1+EQJgripiDp8ogRB3FREHT5RgiBuKqI6UgFgjqWkAsAcS0kFgDmWkgoAcywlFQDmWEoqAMyxlFQAmGMpqQAwx1JSAWCOpaT2uf9PJo/w5r+4DGVL89PsKnJaRGQ8XhA4c5aS2u2Q3nRMQxxuKLuUGj4K+D+zXVOXa5DqdmudUh159F931+q08sv5VOtUD2k8sdqK41RE65CTO+icYrmrNavIVJfJ9CZcBNs7ddUalttOCygbjVNz2WK68v2TbnNe8MHtapGus0zOh3s6XArbO9XpTcGjHkaqixq/91WXTvGTbujtBQOLIH/JE5xPa73mVwPOiu2duldv6qoZ7F9dJ60dEO5Ny5HIuilSp3c+8frAGbK9U8v3hlbj/lGbDzd70xmtm6pHrXZt5ldHgpnc0+FyWUJq+Y6188ZzdZdzg1bWbO2K1KlOqfaUavdK1fumUy2/Vc0/RW+Udcr6rbMD58ZSUgFgjqWkAsAcS0kFgDmWkgoAcywlFcC9n378IR7Pnz8/er5nw1JSAdz76ccfyn8XrjIzetMblpIK4N7r3hRZNNGbHrGUVAD36E2DLCUVwD160yBLSe0T+snszFPHz+7/xPXgHLY+lDJQv+uovt98a3wrtO10hQzV2f0S2rEgvWmQpaR2O6Q3jZ004/Mefs2xM6b0Jiv6UWvXsNE6u19C9KaD2a6p5QfcVtutdUp1pPy826pOK7+cT7VO9ZDmU3v8cbTloP+ZufLjt61BuaWc+pvz3Hhqw71pNW61hOr4cmS5y6mzpXWBbV57fsHVyGb9ss6yN1VPRG+qs71TV39sy23nsigbjVNz2WK68v2TOvzPyfoj/v3acrvVU+L1xz7P29Gb1G4c1UEnwR63p3idhrJltHbFCwYfVq/JB6t1U7mX3lRne6c610fwqIeR6l90/vVX/WstftJmpttrWiPx9dRM/Xidlu7XrbXXR06yxXpQa3xL8DpZDraumdZRkWtsszct2xP3dB7bO3Wv3tRVs/e6jJz0UWZn71iOR3rHWG/qnWfLwJpCivWa5WAk3xnfMnYNjBV06kd60+v2xPtNG2zv1GW/GO5NvdeBs4DftzdVV0P+SHz7VIxH6qtWs7Vqq+p46drj7dZDaww6h/t1ArrWMsGCrYeT6ybeCw+xhNSHP7nVRnXxXN3lLJ7Lmq1dkTrVKdWfVO1lfypCtfGyTjXkFnFOsTnPjafW+164uaskawwu9w7UcbWuiuVI8A/aOcS/xqpnF71pmKWk4pJ09Cb0ozcNspRUXBJ6Uyp60yBLSQVwj940yFJScY3soLhwr5tOEL3pDUtJBXDveaej53s2LCUVAOZYSioAzLGUVACYYympADDHUlIBYI6lpALAHEtJBYA5lpIKAHMsJRUA5lhKKgDMsZRUAJhjKakAMMdSUgFgjqWkAsAcS0kFgDmWkgoAcywlFQDmWEoqAMyxlFQAmGMpqQAwxxJS41+gejWC30U+X3O1q7d+yneR205fjuIcO1kZl8hSUju+jnGvLnZ4nclONFBz7Iz79yYVXcPqWd11uvbiylhC6sN3wy9HHh6W29VvkY+MD9dpfYG9U6f5ZH9+qS9f88665tTY6wzKLeXU35znxlMb6E2rX6295KmO2+NjW2fZrIMrYAmpZW9aPWxttwaXvSNSc7OO2jeeXeum1Qt+856u7F9OzVXZmfr+PFu6e5M1GlC57edYI3+sPi6UJaTm9Sa566nWZFpLJ2fyQX6vaY3E11Mz9eN1WsbXTeW4it5htY7m5DsjZR1cAUtI3ewdM70pUjNS55DetByP9I6x3tQ7z5aR3vTwsByf2Y6P4GrY3qmbPchZv2zeu/X2O+cmbrjfPUp275UG7rmq26diPFJftZqtVVvVYb3JajUjI6u9uGi2a+pyxVS9jVruqh5VDrZu6MpXjl+nnEBXneZTrr3s/Xsrp5FVQ24R5xSb89x4apM/Q2DtvtM6ymqNyUlTbQTXweKp30m/TJsHzk/X7S2wp19J38azX0m/yZsLzg69CYf5rfQynv2F9Me8uQDAz/4kfR7Pfia9yJsLLpadWeAK/Ev6MJ79C+mV9Lu86QCA9K70b+lJ1zHvSS+lt5NmBODmvS29kn4/cOQn0pe0JwAJfi19Kf157OC3pE+kO27uAOzqXelO+ov01kyVD6SvpRfSx9I70tO9ZgfgljyV3pE+ll5Id9L7exV9Jn0ufSV9f/Q/zRAEcYnxvfSV9DfpGUscAAAAAAAAAAAAAAAAAACALP8DTapS71JYa3UAAAAASUVORK5CYII="/&gt;&lt;/p&gt;
&lt;p&gt;5. Click the start button to start executing the infusion. The Output tab will show a message urlsnarf is running.&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="data:image/png;base64,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"/&gt;&lt;/p&gt;
&lt;p&gt;6. Start an application on your mobile device. If all goes well, the traffic will be shown. The URL at least :)&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="denied:data:image/png;base64,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"/&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="" src="data:image/png;base64,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"/&gt;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/51024600739</link><guid>http://greenoperator.tumblr.com/post/51024600739</guid><pubDate>Tue, 21 May 2013 19:18:38 -0400</pubDate><category>hak5</category><category>pineapple</category><category>wireless</category><category>urlsnarf</category><category>penetration</category><category>testing</category><category>mobile application</category></item><item><title>OpenWRT entering failsafe mode using windows</title><description>&lt;p&gt;Have you made any updates to your OpenWRT device and it is acting up? Well you have a chance to fix it by entering into the failsafe mode. Follow the steps below and you can telnet into the device if required to make modifications to the configuration.&lt;/p&gt;
&lt;p&gt;Short instructions are:&lt;br/&gt;1. Configure windows PC with address&lt;br/&gt;    IP Address: 192.168.1.10&lt;br/&gt;    Subnet Mask: 255.255.0.0&lt;br/&gt;    Gateway: 192.168.1.1&lt;br/&gt;2. Opened a command prompt window and ran PING -t -w 5&amp;#160;192.168.1.1&lt;br/&gt;3. Pulled the power cable from the router and then hooked it up again.&lt;br/&gt;4. Your PC will get some replies from the router&amp;#8230; look out for the DMZ LED lighting up.&lt;br/&gt;5. Hold the Reset button for a few seconds&amp;#8230;.&lt;br/&gt;6. If it works, you will continue to get responses from your router and you will see in your command prompt window&lt;br/&gt;   Reply from 192.168.1.1: bytes=32 time&amp;lt;1ms TTL=64&lt;br/&gt;7. When the responses come and don&amp;#8217;t stop&amp;#8230; Then you are in failsafe mode and you can telnet in, else repeat the process&amp;#8230;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/50667505313</link><guid>http://greenoperator.tumblr.com/post/50667505313</guid><pubDate>Fri, 17 May 2013 15:08:52 -0400</pubDate><category>OpenWRT</category><category>wireless</category><category>router</category><category>failsafe</category><category>broken</category><category>bricked</category><category>network</category></item><item><title>Don't lose your caffeine buzz to cybercrime</title><description>&lt;p&gt;I love infographics, they present a log of information in a concise easy to understand visual that is both educational and entertaining. I ran into the below infographic from ThreatMetrix and thought it applied to many of us, as we frequently visit various coffee shops in our neighborhoods.&lt;/p&gt;
&lt;p&gt;&lt;!-- more --&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/24c746fe3a3e463ff74fb5c4f3370a61/tumblr_inline_mmswg3jdsA1qz4rgp.jpg"/&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;
&lt;p&gt;citation: &lt;a href="http://www.threatmetrix.com/" target="_blank"&gt;&lt;a href="http://www.threatmetrix.com"&gt;www.threatmetrix.com&lt;/a&gt;&lt;/a&gt;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/50432812463</link><guid>http://greenoperator.tumblr.com/post/50432812463</guid><pubDate>Tue, 14 May 2013 14:25:00 -0400</pubDate><category>threat</category><category>threatmetrix</category><category>coffee shop</category><category>security</category><category>network security</category><category>network capture</category><category>infographics</category><category>precautions</category><category>prevention</category><category>tips</category></item><item><title>Creating Large Files for Testing Procedures</title><description>&lt;p&gt;&lt;strong&gt;Creating arbitrarily large text files using command line&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span&gt;Description&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Based on business need web applications allow end-users to upload various types of files. The &lt;span&gt;applications must have controls in place to accept allowed file type extensions and must have file &lt;/span&gt;&lt;span&gt;size limitations to prevent nefarious users from attacking a system’s availability or legit users from &lt;/span&gt;&lt;span&gt;uploading large files accidentally which can impact the system’s availability.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span&gt;&lt;!-- more --&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span&gt;Security Domains Addressed&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The SWFScan tool can be used to identify and test an array of vulnerabilities for web traffic between &lt;span&gt;the flash application and backend web servers. The security domains which can be tested for are &lt;/span&gt;&lt;span&gt;identified given the OWASP Top 10 list for 2010:&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;• A1: Injection&lt;/p&gt;
&lt;p&gt;• A6: Security Misconfiguration&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;How to create a large file&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The only tool required to create large files in Microsoft Windows is the command line. The only &lt;span&gt;component required for creating the files is a starting file and a loop construct that will append the &lt;/span&gt;&lt;span&gt;data to create a larger file.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;The format of a loop construct in the Microsoft Windows command line is:&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;strong&gt;for&lt;/strong&gt; &lt;em&gt;&amp;lt;iterations definition&amp;gt;&lt;/em&gt; &lt;strong&gt;do&lt;/strong&gt; &lt;em&gt;&amp;lt;action&amp;gt;&lt;/em&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;The iterations of a loop are based on a counter which starts from a value x and counts until value y; &lt;span&gt;the rate at which the counter increments is the step amount for the loop. The syntax in the command &lt;/span&gt;&lt;span&gt;for defining the loop parameters is: (counter start, step amount, counter end)&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Example 1&lt;/strong&gt; – Set a loop to run from 1 to 10 stepping on each value.&lt;/p&gt;
&lt;p&gt;for /L %i in (1,1,10) do &lt;em&gt;&amp;lt;action&amp;gt;&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Example 2&lt;/strong&gt; – Set a loop to run from 1 to 10 stepping by 2; it executes 5 times.&lt;/p&gt;
&lt;p&gt;for /L %i in (1,2,10) do &lt;em&gt;&amp;lt;action&amp;gt;&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;NOTE: The action to be performed by a loop can be any command that is executable in Microsoft &lt;/span&gt;&lt;span&gt;Windows command line.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Example 3&lt;/strong&gt; – Create a loop that prints the index of the loop for /L %i in (1,1,10) do echo %i&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/36c3e445c1dd0e455efe1cc4340c103f/tumblr_inline_mmqychKk7v1qz4rgp.png"/&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;
&lt;p&gt;Using the looping constructs available in the command line is a powerful tool for creating large files.&lt;/p&gt;
&lt;p&gt;The steps to create arbitrarily large files follow:&lt;/p&gt;
&lt;p&gt;1. Use notepad to create a file with 100&amp;#160;A values and save it as fileA.txt&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/f448120cb1b62fc60e390902604925da/tumblr_inline_mmqyh0yCWm1qz4rgp.png"/&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;2. Check the directory the file is saved into to confirm the file is present. A text file with 100 bytes &lt;/span&gt;&lt;span&gt;length should be present.&lt;/span&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/6c5915af8d0cd433be45f4b5ec48b8f6/tumblr_inline_mmqyizUeXF1qz4rgp.png"/&gt;&lt;/p&gt;
&lt;p&gt;3. Write a for loop to concatenate the file 10 times.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/f3449f77dd53e111fd042ad73255e542/tumblr_inline_mmqyjlZNs11qz4rgp.png"/&gt;&lt;/p&gt;

&lt;p&gt;4. Check the directory the file is saved into and confirm a new file is created named largefile.txt. The &lt;span&gt;file size should be 1000 bytes long given the original file was 100 bytes and we had 10 iterations.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;5. Changing the number of times the loop iterates will impact the size of the larger file.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/54bacce0fa32dcf6b41dfcd2d2320db8/tumblr_inline_mmqyrop0Ip1qz4rgp.png"/&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;
&lt;p&gt;6. Repeat step 4 to see the file size of the new file created. The file size is now 11,000 bytes given &lt;span&gt;we iterated 1000 times. Feeding the process a larger input file will increase the size of the file &lt;/span&gt;&lt;span&gt;faster.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/0259906bba11359f6915244ae62d6cec/tumblr_inline_mmqyracN3f1qz4rgp.png"/&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Summary&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The contents of this document have provided guidance how large text files can be created by using &lt;span&gt;tools that are part of a standard Microsoft Windows workstation, e.g. Notepad and command line. By &lt;/span&gt;&lt;span&gt;combining the principles of looping and command line file handling one can quickly and easily generate &lt;/span&gt;&lt;span&gt;large text files that otherwise would not be possible to create using notepad alone or using any other &lt;/span&gt;&lt;span&gt;editor.&lt;/span&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/50351164513</link><guid>http://greenoperator.tumblr.com/post/50351164513</guid><pubDate>Mon, 13 May 2013 13:19:00 -0400</pubDate><category>Penetration Testing</category><category>commandline</category><category>large file</category><category>owasp</category></item><item><title>Using Bash to download multiple files</title><description>&lt;p&gt;Ever need to download a series of files which have a similar name, indexed with a number, but did not want to save each one, one at a time?&lt;/p&gt;
&lt;p&gt;Writing a for loop in Bash can help solve this issue very quickly.&lt;/p&gt;
&lt;p&gt;In my case, wget was not available on my machine, thus curl was used to download the files. &lt;/p&gt;
&lt;p&gt;The bash command looked as follows, where URL was the sites path where the images were stored:&lt;/p&gt;
&lt;p&gt;for i in {1..59}; do curl -o &amp;#8220;slide&amp;#8212;$i&amp;#8212;1024.jpg&amp;#8221; &amp;#8220;&amp;lt;URL&amp;gt;/slide-$i-1024.jpg&amp;#8221;; done&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/47124924968</link><guid>http://greenoperator.tumblr.com/post/47124924968</guid><pubDate>Thu, 04 Apr 2013 15:15:52 -0400</pubDate><category>bash</category><category>for loop</category><category>slides</category><category>download</category><category>curl</category></item><item><title>Wireshark Filters for Wireless packets</title><description>&lt;p&gt;Capture filters for Wireshark when reviewing 802.11 packets.&lt;/p&gt;
&lt;p&gt;The frames are broken up into types and subtypes.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Frame type                    Filter Statement&lt;br/&gt;&lt;/strong&gt;Management Frames     wlan.fc.type == 0&lt;br/&gt;Control Frames               wlan.fc.type == 1&lt;br/&gt;Data Frames                   wlan.fc.type == 2&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Frame sub type             Filter Statement&lt;br/&gt;&lt;/strong&gt;Association Request       wlan.fc.type_subtype == 0&lt;br/&gt;Association Request       wlan.fc.type_subtype == 1&lt;br/&gt;Probe Request                wlan.fc.type_subtype == 4&lt;br/&gt;Probe Response             wlan.fc.type_subtype == 5&lt;br/&gt;Beacon                           wlan.fc.type_subtype == 8&lt;br/&gt;Authentication                wlan.fc.type_subtype == 11&lt;br/&gt;De-authentication          wlan.fc.type_subtype == 12&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/46848753344</link><guid>http://greenoperator.tumblr.com/post/46848753344</guid><pubDate>Mon, 01 Apr 2013 10:32:02 -0400</pubDate><category>wireshark</category><category>filters</category><category>802.11</category></item><item><title>Steps to unlock your iPhone</title><description>&lt;p&gt;&lt;strong&gt;iPhone Unlocking Instructions:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;1. Press *#06# to find your iPhone’s IMEI number; the number will be 16 characters long&lt;/p&gt;
&lt;p&gt;2. Provider your IMEI to an unlocking service and wait for a response that your device is unlocked.&lt;/p&gt;
&lt;p&gt;3. Now do the following below:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;- Then, install last version of iTunes&lt;/li&gt;
&lt;li&gt;- Make sure your itunes is the latest version&lt;/li&gt;
&lt;li&gt;- Connect phone to iTunes with not accepted (not valid) SIM&lt;/li&gt;
&lt;li&gt;- Wait until itunes detects phone&lt;/li&gt;
&lt;li&gt;- Now disconnect your iPhone and then reconnect after 10 seconds.&lt;/li&gt;
&lt;li&gt;- Phone Unlocked. Once unlocked, your device will show the below image&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;img src="http://media.tumblr.com/2e31d3947e8f4aa4e78a438a1b36ed05/tumblr_inline_mh75og76iU1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;Note: In some cases the device may not show the above screen and may ask for to be re-activated when you insert the new SIM.&lt;/p&gt;
&lt;p&gt;Don&amp;#8217;t worry if the above screenshot is not displayed, you phone will still be unlocked after it completes the activation process.&lt;/p&gt;
&lt;div&gt;&lt;/div&gt;</description><link>http://greenoperator.tumblr.com/post/41457573078</link><guid>http://greenoperator.tumblr.com/post/41457573078</guid><pubDate>Fri, 25 Jan 2013 14:47:00 -0500</pubDate><category>iphone</category><category>3G</category><category>3GS</category><category>iphone4</category><category>iphone4s</category><category>iphone5</category><category>unlock</category><category>itunes</category></item><item><title>Disable Java in the Browser</title><description>&lt;p&gt;Java&amp;#8217;s unlimited supply of zero day exploits raises the question if we need to have Java on our machines. The most likely answer is probably no, however there are many reasons to have Java running on your machine. &lt;/p&gt;
&lt;p&gt;If Java has to be installed on your device, then ensure that the Java plugin is not enabled within your browser. This is important because, if your system is running an older version of Java or an up to date version of Java, which may have zero days, then your system is at risk of being compromised. As a user, all it takes is to browse to a site that uses a Java applet to provide some functionality. This can be the entry way for the bad guys into your system. &lt;/p&gt;
&lt;p&gt;&lt;!-- more --&gt;&lt;/p&gt;
&lt;p&gt;The easiest way to block Java from the browser is to update to the most current version of Java or a version after Version 7 Update 11 (build 1.7.0_11-b21). The reason for this is because the Java control panel found inside of the Microsoft Windows Control panel allows an easy way to disable Java&amp;#8217;s support in the browser.&lt;/p&gt;
&lt;p&gt;The steps to disable Java in the browser are shown below.&lt;/p&gt;
&lt;p&gt;1. Navigate to your Microsoft Windows Control panel. How you get to this varies a bit on each version of Windows, but it is accessible from the Start button.&lt;/p&gt;
&lt;p&gt;2. From the Control Panel, look for the Java settings and double click it to open.&lt;br/&gt;&lt;img alt="image" src="http://media.tumblr.com/7c11518b443eb6a1cc83f4a42c622eb1/tumblr_inline_mgvtp7qahF1qjsv3q.png"/&gt; &lt;/p&gt;
&lt;p&gt;3. If you have the most recent version of Java installed, or a version newer than the one posted above, then the below option will be available. Click the link.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/9eac79bbedd8a195c26cc7f94d387c73/tumblr_inline_mgvtraOTOs1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;4. On the Security tab disable the &amp;#8220;Enable Java content in the browser&amp;#8221; checkbox.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/eb5cb2a48e6a3d3f74b054d38b2e1d03/tumblr_inline_mgvtu5WqfE1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;5. Click the Apply button to apply the change.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/92ab742351fbe1d70148a6b06bff63b8/tumblr_inline_mgvtw8nPRb1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;6. Click OK on the confirmation window. Close any open browsers and restart them to ensure the setting is in effect.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/dcc89c52ec817ec5c646aac6789b44f4/tumblr_inline_mgvtyqI2Ps1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;Enjoy a more safe browsing experience!&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/40932057533</link><guid>http://greenoperator.tumblr.com/post/40932057533</guid><pubDate>Sat, 19 Jan 2013 12:02:00 -0500</pubDate><category>java</category><category>security</category><category>exploit</category><category>browser</category><category>windows</category><category>control panel</category><category>disable</category></item><item><title>Toyota/Scion Key Fab Battery Replacement</title><description>&lt;p&gt;My girlfriends key had stopped functioning several months ago and became a paper weight. She called the Toyota dealership in her neighborhood and they asked for over $100 dollars to look at it and fix it. I decided to try to take it apart and replace the battery as the red LED was not very faint indicating a battery issue.&lt;/p&gt;
&lt;p&gt;&lt;!-- more --&gt;&lt;/p&gt;
&lt;p&gt;Below follow the steps to take the key apart and get to the battery. The only supplies required are a small flat head screw driver and a CR2016 battery.  &lt;/p&gt;
&lt;p&gt;1. Pick up the key and rotate it until you find a little gap where the screwdriver is used to pry the key casing open.&lt;/p&gt;
&lt;p&gt;Hold the key as shown in the image below.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/7d15a264024fb33d4d3b7a4f45bffc08/tumblr_inline_mgvok9WImR1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;The hitch to pry the key fab case open is found above the trunk release button.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/64d648f1fa783241d20215d1aee5e692/tumblr_inline_mgvos3CcmN1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;The housing pops off revealing the guts of the key.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/ccfc59812b2f11687f18b91cf9d75750/tumblr_inline_mgvou0JeIM1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/00638b0fba4ab7fbfc26a38d8279a64f/tumblr_inline_mgvow4ABgM1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;2. After the case is pried of, the key will house the actual key electronics in an internal unit. Rotate the key and the internal unit should just fall out. If it does not, use the screw driver to lift it out of the key housing.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/ba59fb34265d30f6deff4ada918a55a3/tumblr_inline_mgvoxoj1vD1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;4. The key electronics are stuffed inside a plastic casing. As shown in the image below, there is an arrow indicating how to pry the plastic casing. Use the flat head screw driver to losen the casing. There are some clips around the rest of the housing which pop off fairly easy once you get started. &lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/7768486794eb971aaf2c683a6cad2a8f/tumblr_inline_mgvoz7Gj221qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;Opened casing reveals the battery of the key.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/34e7f7434b316eacba78e163f9e028b0/tumblr_inline_mgvp2di1Ar1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;5. Take out the battery from the key fab and replace it with the new one.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/699417bdd418d568f4ec297f7ccba0ad/tumblr_inline_mgvp3f9kvu1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;New battery in place!&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/4395af8497573ae4f5de10261b0b454e/tumblr_inline_mgvp32d2Wt1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;6. The lights on the fab are lighting up! Success. (Image below doesn&amp;#8217;t show the LED on as I didn&amp;#8217;t capture an image of this.&lt;/p&gt;
&lt;p&gt;&lt;img alt="image" src="http://media.tumblr.com/0f591cd89a73d845eb36347dd6e2a845/tumblr_inline_mgvp4uyIsg1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;7. Reverse the steps to put the key together.&lt;/p&gt;
&lt;p&gt;Hopefully the steps can help you replace your battery in the Toyota/Scion key and save you some money!&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/40925237975</link><guid>http://greenoperator.tumblr.com/post/40925237975</guid><pubDate>Sat, 19 Jan 2013 10:19:00 -0500</pubDate><category>Toyota</category><category>key</category><category>fab</category><category>battery</category><category>diassemble</category><category>replace</category></item><item><title>BleachBit</title><description>&lt;p&gt;BleachBit quickly frees disk space and tirelessly guards your privacy. Free cache, delete cookies, clear Internet history, shred temporary files, delete logs, and discard junk you didn&amp;#8217;t know was there. Designed for Linux and Windows systems, it wipes clean 90 applications including Firefox, Internet Explorer, Adobe Flash, Google Chrome, Opera, Safari,and more. Beyond simply deleting files, BleachBit includes advanced features such as shredding files to prevent recovery, wiping free disk space to hide traces of files deleted by other applications, and vacuuming Firefox to make it faster. &lt;strong&gt;Better than free, BleachBit is open source&lt;/strong&gt;.&lt;/p&gt;
&lt;p class="code"&gt;sudo apt-get install bleachbit&lt;/p&gt;
&lt;p&gt;&lt;a class="source" href="http://bleachbit.sourceforge.net/" target="_blank"&gt;Source&lt;/a&gt;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/37416815956</link><guid>http://greenoperator.tumblr.com/post/37416815956</guid><pubDate>Fri, 07 Dec 2012 14:22:51 -0500</pubDate><category>bleachbit</category><category>ubuntu</category><category>firefox</category><category>internet explorer</category><category>adobe flash</category><category>google chrome</category><category>google</category><category>chrome</category><category>opera</category><category>safari</category><category>shred</category><category>files</category><category>cache</category><category>delete cache</category><category>delete cookies</category></item><item><title>Flush DNS in Windows and MacOSX</title><description>&lt;p&gt;Looking to flush your DNS on your Microsoft Windows or Apple MacOSX 10.5+ machine? Its easier than you may think. DNS requests are usually cached by your machine to help speed up subsequent requests, but in many cases you may be interested in flushing the cache in order to ensure you are connecting to the updated or correct IP address.&lt;/p&gt;
&lt;p&gt;To flush the DNS cache on each of the Windows and Apple machine, open the command prompt for each and execute the commands as shown.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Microsoft Windows&lt;/strong&gt;: ipconfig /flushdns&lt;br/&gt;&lt;strong&gt;Apple MacOSX 10.5+&lt;/strong&gt;:  dscacheutil - flushcache&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/36917730744</link><guid>http://greenoperator.tumblr.com/post/36917730744</guid><pubDate>Fri, 30 Nov 2012 20:33:49 -0500</pubDate><category>ip</category><category>address</category><category>dns</category><category>speed up</category><category>windows</category><category>microsoft</category><category>apple</category><category>mac</category><category>osx</category><category>10.5</category><category>10.6</category><category>10.7</category><category>10.8</category><category>flush</category></item><item><title>Unhiding ~/Library directory on OSX 10.7 and 10.8</title><description>&lt;p&gt;Mac OS 10.7 and 10.8 hide by default the ~/Library directory.&lt;/p&gt;
&lt;p&gt;To unhide it, execute the below command in the command prompt or terminal.&lt;/p&gt;
&lt;p&gt;chflags nohidden ~/Library&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/35711768414</link><guid>http://greenoperator.tumblr.com/post/35711768414</guid><pubDate>Wed, 14 Nov 2012 12:24:34 -0500</pubDate><category>MacOS</category><category>OSX</category><category>10.7</category><category>10.8</category><category>command</category><category>prompt</category><category>terminal</category><category>library</category><category>directory</category><category>hidden</category></item><item><title>The presentation at DerbyCon 2012 by Chris Jenks on hardening a...</title><description>&lt;iframe width="400" height="225" src="http://www.youtube.com/embed/euFh1FzcnWg?wmode=transparent&amp;autohide=1&amp;egm=0&amp;hd=1&amp;iv_load_policy=3&amp;modestbranding=1&amp;rel=0&amp;showinfo=0&amp;showsearch=0" frameborder="0" allowfullscreen&gt;&lt;/iframe&gt;&lt;br/&gt;&lt;br/&gt;&lt;p&gt;The presentation at DerbyCon 2012 by Chris Jenks on hardening a Linux system, is a very good summary of the basic controls to implement on in order to harden a system.&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/35060645863</link><guid>http://greenoperator.tumblr.com/post/35060645863</guid><pubDate>Mon, 05 Nov 2012 11:23:00 -0500</pubDate><category>DerbyCon</category><category>Security</category><category>Linux</category><category>Hardening</category><category>Intro</category><category>System</category><category>Administration</category></item><item><title>Android versus iOS Data Protection Stand</title><description>&lt;p&gt;&lt;span&gt;Please find below a bit of my understanding of data protection controls available on the Android and iOS mobile operating systems. If you see that I have something is wrong, please bring it to my attention to address it.&lt;/span&gt;&lt;br/&gt;&lt;br/&gt;&lt;/p&gt;

&lt;p class="MsoNormal"&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;strong&gt;Storage of credentials on iOS and Android mobile operating systems&lt;/strong&gt;&lt;/p&gt;

&lt;p class="MsoNormal"&gt;The iOS and Android operating systems have been in our lives for several years. Although they both made their presence about the same time, each has evolved differently. iOS has had a controlled flow of major operating system releases occurring approximately once every twelve months with minor updates throughout the year if required. This has led to a less fragmented ecosystem of supported devices and operating system versions. The majority of the users update their device days after the new operating system is released as it is not dependent on the service providers. Android has continued to push forward with its releases of the Android operating system, but it has not been as controlled as iOS. Android has a much more fragmented ecosystem of devices as the users are relying on updates to be provided by the manufacturers or the service providers, which in many cases does not occur. The manufacturers are rushing to bring out the latest generation device in order to compete and do not update the older devices that in many cases have the capability to support the new operating system. Of course this impacts the security posture of the devices. &lt;span&gt; &lt;/span&gt;Both the Android and iOS operating systems have been steadily maturing and hardening themselves with each generation of their operating system primarily because of the use of consumer devices in the enterprise.&lt;/p&gt;

&lt;p class="MsoNormal"&gt;&lt;strong&gt;iOS&lt;/strong&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;With the release of the third generation iPhone (3GS), Apple supported full drive encryption at the hardware level. The encryption provided on the device does not allow a 3&lt;sup&gt;rd&lt;/sup&gt; party from extracting information from it when it is in a powered off state. If the device is powered on, then the low level boot operating system can be leveraged to inject a small program into the device and image the devices drive. Effectively, although the control did provide some level of security it was not very effective against all attacks. With the release of the iPhone4 and iOS4, the operating system was enhanced to include a Data Protection API that allows third party application developers to store their data in an encrypted format until the device is unlocked. The Data Protection API derives the decryption key using a Password-Based Key Derivation Function2 (PBKDF-2) and tied to the users passcode. The password used by the Mail app on the device is stored in the KeyChain, a secure container provided by the operating system, and is encrypted prior to placing it in this container by the operating system itself.&lt;/p&gt;
&lt;p class="MsoNormal"&gt;By default, all data used by an application developed by a third party developer is not encrypted, unless the developer has encrypted it explicitly, thus putting sensitive information at risk of being compromised. The mail application on the iOS devices protects the e-mail credentials, but does not provide any real protection for the other applications. Third party developers have the ability to use the security controls provided by the operating system to store their own information used by their application. Small pieces of data can be stored in the KeyChain while larger blocks of data should leverage the Data Protection API with a strong passcode. If the developers rely solely on the controls provided by the operating system, then their data is encrypted while the device is locked and if the device is unlocked, then the information is decrypted. Additional application specific encryption is recommended to ensure that the amount of time the data remains in clear-text format is minimized. Using a strong passcode will help defend against open source tools available for download that can brute force weak passcodes such as using a PIN to decode the data stored in the keychain and the devices flash memory.&lt;/p&gt;

&lt;p class="MsoNormal"&gt;&lt;strong&gt;Android&lt;/strong&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;Android in its initial releases did not provide strong controls to enable third party developers to protect their data. The credentials for the mail application and other applications were stored in clear-text in a SQLite database. Android did not support full drive encryption until its release of Android 3.0 (Honeycomb), in February 2011, which was primarily targeted for tablet devices and Android 4.0 (Ice Cream Sandwich), in October 2011, which supported phone devices. With the support of boot-time, on-the-fly decryption, the data stored on the devices internal storage drive is encrypted. Data stored on the SD Card is not protected and can be readily available to anyone who reviews it. Just as in iOS the encryption of the devices is based on the passcode/lock screen pattern. Use of the lock screen pattern does not provide much security as it is a 9-bit value which can easily be bruteforced in a fairly short period of time, thus it is recommended that a strong passcode is used to ensure data is not easily extracted from the device’s internal storage media. The passcode is derived by a salted Password-Based Key Derivation2 Function (PBKDF-2), thus an offline attack of the key would need to be performed and then tried against the device partition to extract an image.&lt;/p&gt;
&lt;p class="MsoNormal"&gt;Data used by applications on the device did not provide much security. Until recently, credentials from system and many third party developed applications was stored in an SQLite database or Shared Preferences file that is accessible only to the application which requires it, given that each application at installation creates a new user on the device, thus providing application isolation. The issue however is that if a device is “rooted/jailbroken”, then a rogue application has root access and can read the data in any directory of the device. Android does not provide any API for encrypting data other than the full file-system encryption/decryption that is performed and discussed above. An AccountManager is available and provided by Android, but it is not very secure as it stores the password as clear-text.&lt;/p&gt;

&lt;p class="MsoNormal"&gt;&lt;strong&gt;Conclusion&lt;/strong&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;Although each platform has been making strides in the right direction towards strengthening their security posture, it still remains that users information is at risk. Passwords even for applications provided by the system such as mail can be compromised if the appropriate encryption is not present. Specifically, for the Android operating system, the mail system credentials are stored on the device in clear-text and are at a greater risk of compromise than those from Apple’s iOS. In short, third party developers must ensure that they provide their own encryption for any sensitive data that is to be stored on the devices and cannot solely rely on the controls provided by the operating system their applications run on. Later versions of the devices and operation systems do provided full drive or file system encryption, but its security is based on the strength of the passcode the users created. It is highly recommended that devices are managed by a mobile device management (MDM) system to ensure that the appropriate security profiles are configured to support strong passcodes as these are the keystone in the encryption used by the devices.&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/33359781515</link><guid>http://greenoperator.tumblr.com/post/33359781515</guid><pubDate>Thu, 11 Oct 2012 07:53:00 -0400</pubDate><category>android</category><category>ios</category><category>data protection</category><category>full disk drive encryption</category><category>brute force</category></item><item><title>Q-See Low-cost home CCTV system and default credentials</title><description>&lt;p&gt;Q-See offers cheap home CCTV systems which can be purchased at most electronic stores. The systems allows for capturing video from various CCTV cameras on a hard drive. In almost all cases the DVR system uses Linux to as the operating system.&lt;/p&gt;
&lt;p&gt;&lt;!-- more --&gt;&lt;/p&gt;
&lt;p&gt;I decided to scan my device with nmap and discovered ports are open; the most interesting port listening was port 23 (telnet).&lt;/p&gt;
&lt;p&gt;&lt;img src="http://media.tumblr.com/tumblr_m9kuzvVmDg1qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;After few minutes of searching Google a short list of default Q-See passwords was compiled. The passwords discovered where: &amp;lt;blank&amp;gt;, 88888888, 12345, 123456.&lt;/p&gt;
&lt;p&gt;Each of the passwords was tried, my device&amp;#8217;s root default password was &lt;strong&gt;123456&lt;/strong&gt;.&lt;/p&gt;
&lt;p&gt;&lt;img src="http://media.tumblr.com/tumblr_m9kv6fRbt21qjsv3q.png"/&gt;&lt;/p&gt;
&lt;p&gt;Check your environment, whether at home or enterprise, to ensure devices such as the above listed one are not available with the default passwords.&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/30525784359</link><guid>http://greenoperator.tumblr.com/post/30525784359</guid><pubDate>Thu, 30 Aug 2012 12:31:00 -0400</pubDate><category>q-see</category><category>cctv</category><category>default</category><category>default credentials</category><category>credentials</category><category>security</category><category>telnet</category><category>nmap</category><category>123456</category></item><item><title>Impersonating Access Points and Injecting JavaScript </title><description>&lt;p&gt;&lt;em&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;Abstract&lt;/span&gt;&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;Devices with a Wi-Fi radio on board are always looking to be connected. Mobiles devices have a yearning to be connected. By exploiting this functionality, a malicious user or can impersonate an otherwise safe network and take control of the network that the device has connected to. Using a consumer-grade access point with modifications to the firmware, we will be able to manipulate the unencrypted traffic which is traversing the access point’s network, although the tool can be configured to modify and inject code for a secure connection (SSL connection). Clients however would see a warning message.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;!-- more --&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;br/&gt;&lt;em&gt;&lt;span&gt;Introduction&lt;/span&gt;&lt;/em&gt;&lt;br/&gt;&lt;span&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Many wireless devices persist the list of wireless networks they have connected to in the past. On the Microsoft Windows Operating system this list of networks is called the “Preferred Networks”.  When the operating system is booted and if the Wi-Fi network interface is enabled, the operating system will begin transmitting specifically crafted packets called a probe request frame. These request frames are responsible for determining which access points are in range; they belong of the Management Frames defined in the 802.11 specification. Two types of probe requests are sent: generic probe requests, to determine all Access Points available in range, along with specific probe requests for each of the networks in the Preferred Network List.&lt;/p&gt;
&lt;p&gt;&lt;br/&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;&lt;em&gt;Vulnerability&lt;/em&gt; &lt;/span&gt;&lt;br/&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Devices broadcasting their Preferred Network List by trying to identify if a network is in range put themselves in a position that may allow an attacker to impersonate a network. An attacker can configure an Access Point to respond with Probe Response frames that indicates to the probing devices they can associate with it. This forces the probing devices to connect to the impersonated network where an attacker can capture and manipulate the traffic. More advanced attacks can also be launched to distribute malware or attempt to compromise the end-user machines.&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;br/&gt;&lt;em&gt;&lt;span&gt;Hardware&lt;/span&gt;&lt;/em&gt;&lt;br/&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Any consumer grade wireless router supporting custom firmware can be flashed with an open-source custom firmware. Most consumer grade wireless routers are loaded with a Linux-like operating system.  For this attack the specific piece of hardware used was an Alfa AP121-8MB access point.&lt;/p&gt;
&lt;p&gt;                                       &lt;img height="247px;" src="https://lh4.googleusercontent.com/FEp9QWa8dAPgJzkXPYC7VDPRhz3JoHQ06RWz36BcQ59r3TYMNHGt5i1gqckIKcpYrQSIWiJRYGkT1Pr1wI6JG5u0s-tRuPSe2Hp1iRr2D0j-phA-Gag" width="266px;"/&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt; Fig 1 – Image of hardware used for hacker challenge&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;&lt;/span&gt;&lt;br/&gt;&lt;span&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;br/&gt;&lt;em&gt;&lt;span&gt;Software&lt;/span&gt;&lt;br/&gt;&lt;span&gt;&lt;/span&gt;&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The access point used in the attack supports custom firmware as it runs an operating system that is for embedded devices; the operating system is a Linux distribution which allows for modular deployment of various packages.&lt;/p&gt;
&lt;p&gt;The software installed on the device for the hacker challenge was the modified Jasager software from wifipineapple.com.&lt;/p&gt;
&lt;p&gt;The software tools required to launch the attack and inject HTML code were already preloaded on the device.&lt;/p&gt;
&lt;p&gt;The only tools required for use on the flash were ettercap and karma.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;Configuration&lt;/span&gt;&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;NOTE: All the configuration details required to set up the impersonating access point are covered in the document from last year’s hacker challenge. The device used for this year’s hacker challenge automated many of the configurations, this allowed for a quicker turn around in the implementation of the attack.&lt;/p&gt;
&lt;p&gt;The device has two interfaces for configuring it. The device can be configured by a web interface which was installed when initially setting up the device, or through a command line interface which can be accessed using SSH. The preferred method of configuration for this attack was to use SSH.&lt;/p&gt;
&lt;p&gt;The scenario’s configuration required the device to have a bridged connection to a live internet connection. This allowed all the clients of the network to get a live internet connection further making it appear to the clients as if nothing have occurred.&lt;/p&gt;
&lt;p&gt;&lt;br/&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;em&gt;&lt;span&gt;Attack&lt;/span&gt;&lt;br/&gt;&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The attack was launched once the configuration of the device was complete; the rouge access point was deployed in the target environment. The access point does not require power from an outlet as it can be powered by a battery pack, however for this challenge an outlet was used as the target environment was the office. &lt;/p&gt;
&lt;p&gt;Once clients were connected to the rogue network AP, we were then able to run Ettercap and perform an ARP poisoning attack.  This was required to allow Ettercap to get visibility to the network traffic.&lt;/p&gt;
&lt;p&gt;Ettercap has a feature that allows users to manipulate the traffic running through the device on which it is running on. This feature was used to write a short filter as it is called in Ettercap to inject JavaScript. The payload of this injection was harmless; it displayed an alert box on the end-users browser indicating that the code was successfully injected. The code then resides on the end-users browser cache until they clear the cache. The attack results in a cache poisoning attack. ;) The payloads which can be provided in the injection step can be malicious. They can harvest cookies from the browser, install a keylogger, and or even modify the structure of the page as it is displayed on the end-users browser to harvest PII data.&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;if (ip.proto == TCP &amp;amp;&amp;amp; tcp.dst == 80)&lt;br/&gt;{&lt;br/&gt;    if (search(DATA.data, &amp;#8220;Accept-Encoding&amp;#8221;)) {&lt;br/&gt;        replace(&amp;#8220;Accept-Encoding&amp;#8221;, &amp;#8220;Accept-Rubbishh&amp;#8221;);&lt;br/&gt;        # note: replacement string is same length as original string&lt;br/&gt;        msg(&amp;#8220;zapped Accept-Encoding!\n&amp;#8221;);&lt;br/&gt;    }&lt;br/&gt;}&lt;/span&gt;&lt;br/&gt;&lt;span&gt;if (ip.proto == TCP &amp;amp;&amp;amp; tcp.src == 80)&lt;br/&gt;{&lt;br/&gt;     replace(&amp;#8220;&amp;lt;/head&amp;gt;&amp;#8221;, &amp;#8220;&amp;lt;/head&amp;gt;&amp;lt;script type=&amp;#34;text/javascript&amp;#34;&amp;gt;alert(&amp;#8216;jim was here&amp;#8217;);&amp;lt;/script&amp;gt;&amp;#8221;);&lt;br/&gt;     msg(&amp;#8220;Code injected at &amp;lt;/head&amp;gt;&amp;#8230; injecting javascript\n&amp;#8221;);&lt;br/&gt;}&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The code required to implement the attack was minimal and can be found below. It is the implementation of the Ettercap filter.&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;etterfilter myFilter.filter –o a.ef&lt;br/&gt;&lt;/span&gt;&lt;br/&gt;&lt;/strong&gt;The above filter was compiled into a binary format which Ettercap requires by executing the Etterfilter application.&lt;br/&gt;&lt;br/&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;span&gt;ettercap –Tq –F a.ef –i br-lan –M ARP:remote // // -P autoadd&lt;br/&gt;&lt;/span&gt;&lt;br/&gt;&lt;/strong&gt;The filter is the used with Ettercap to launch the attack. The syntax used for Ettercap is: &lt;br/&gt;&lt;br/&gt;The parameters provided to the application are:&lt;br/&gt;-T                           - Launch app in text mode&lt;br/&gt;-q                          - Do not be verbose&lt;br/&gt;-F a.ef                    - Execute filter a.ef against all network traffic &lt;br/&gt;-i br-lan                - Use interface br-lan on the access point &lt;br/&gt;-M ARP:remote  - Man In The Middle Attack using an ARP poison attack on all hosts on the network&lt;br/&gt;// //                      - Empty filter; do not performing an attack against a specific target, perform on all&lt;br/&gt;-P autoadd           - Execute the autoadd Ettercap plugin automatically to ARP poison new clients&lt;br/&gt;&lt;br/&gt;Below are screenshots of the end user’s machine once they are attacked. If a different payload was used, then no indication would be present on the users browser.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span&gt;&lt;br/&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong id="internal-source-marker_0.736533987801522"&gt;&lt;img height="439px;" src="https://lh6.googleusercontent.com/Y8ESmhhA5eZqG3cynGpVsH45AccQqB9HHVDbkyWjt2ZnOr59YnC8ycQAcG8OTlbTsWKQwUimMIyn-e3us_1MozKpOPeT8yatHw_H62vf1F55xSgwaAc" width="624px;"/&gt;&lt;br/&gt;&lt;/strong&gt; Fig 2 – Browser when trying to visit cnn.com&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;img height="135px;" src="https://lh5.googleusercontent.com/wROS4LQaOgwTHEEwpXnYDfUuaK0NpRwdTao6HJrU_ZGwl7ak76AMuDWoOIxZn5_UrBcY4H189pYe35lD82GfmRfGuWNLvawrDIXUlJrhhMkSlnvWTZw" width="557px;"/&gt;&lt;span&gt;&lt;/span&gt;&lt;br/&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Fig 3 – Evidence of injected code on HTML page&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;br/&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;em&gt;Conclusion&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;To conclude, a consumer grade low-cost access point was modified fairly simply using open-source tools available online to take over a network connection and inject malicious JavaScript to an end user’s browser. Given the environment is not a rich environment of users using Wi-Fi, we were not able to compromise the get additional users to join our network, however, if this was a more targeted attack which also introduced a de-authentication attach against network users, we could have more users connecting to our network.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span&gt;&lt;br/&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/30393645613</link><guid>http://greenoperator.tumblr.com/post/30393645613</guid><pubDate>Tue, 28 Aug 2012 13:12:00 -0400</pubDate><category>javascript injection</category><category>injection</category><category>javascript</category><category>malicious</category><category>exploit</category><category>browser</category><category>pineapple</category><category>wifi</category><category>impersonate</category><category>access point</category><category>wireless</category><category>internet</category><category>jasegar</category></item><item><title>Building iSecPartners ios-SSL-Kill-Switch tweak</title><description>&lt;p&gt;For some time it has been a challenge to trap SSL traffic from iOS applications in a web proxy tools such as Fiddler or WebScarab. iOS application in many cases performed Certificate Pinning which checked for specific information within the SSL certificate before accepting allowing the application to complete a request.&lt;/p&gt;
&lt;p&gt;&lt;!-- more --&gt;&lt;/p&gt;
&lt;p&gt;While attending BlackHat 2012 in Las Vegas, I saw a talk from Alban Diquet which allowed for disabling the iOS operating system from validating the certificates. The solution is very simple and elegant! I never thought to think of writing an iOS MobileSubstrate tweak to turn off the validation! Especially after experimenting with tweaks for some time.&lt;/p&gt;
&lt;p&gt;Below are the steps for building the tweak and installing it on a jailbroken iOS device.&lt;/p&gt;
&lt;p&gt;1. Download the source code from the iSECPartners GitHub (&lt;a href="https://github.com/iSECPartners/ios-ssl-kill-switch"&gt;https://github.com/iSECPartners/ios-ssl-kill-switch&lt;/a&gt;)&lt;/p&gt;
&lt;p&gt;2. Assuming you have already installed THEOS on your system, execute the below steps to create the tweak.&lt;/p&gt;
&lt;p&gt;3. There is actually a coding mistake in the github code that must be fixed prior to building the tweak. The fix is below and is part of the Tweak.xm file:&lt;/p&gt;
&lt;p&gt;Original Code:&lt;/p&gt;
&lt;pre&gt;HookedNSURLConnectionDelegate* delegateProxy = [[HookedNSURLConnectionDelegate alloc] initWithOriginal: delegate];&lt;/pre&gt;
&lt;p&gt;Modified Code:&lt;/p&gt;
&lt;pre&gt;HookedNSURLConnectionDelegate* delegateProxy = [[HookedNSURLConnectionDelegate alloc] initWithOriginalDelegate: delegate];&lt;/pre&gt;
&lt;p&gt;This change has to be made in two locations; line 10 and line 21.&lt;/p&gt;
&lt;p&gt;4. Once the change is made to the source code, we will make a new tweak in THEOS by executing: $THEOS/bin/nic.pl. NOTE: The menu displayed below may be slightly different depending on the version of THEOS that is installed.&lt;/p&gt;
&lt;pre&gt;NIC 1.0 - New Instance Creator&lt;br/&gt;------------------------------&lt;br/&gt;  [1.] iphone/application&lt;br/&gt;  [2.] iphone/library&lt;br/&gt;  [3.] iphone/preference_bundle&lt;br/&gt;  [4.] iphone/tool&lt;br/&gt;  [5.] iphone/tweak&lt;br/&gt;Choose a Template (required):&lt;/pre&gt;
&lt;p&gt;5. Select the option that is &lt;em&gt;iphone/tweak&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;6. Fill out the question in the form as specified below.&lt;/p&gt;
&lt;p&gt;NOTE:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;Field Author/Maintainer, I specified Alban&amp;#8217;s name instead of mine as he&amp;#8217;s the author of the tweak, but you can specify what you wish.&lt;/li&gt;
&lt;li&gt;Field Package Name: I specified the original package as there are some hard coded paths within the code that reference it. I&amp;#8217;d stick to the original one unless you are performing a huge modification to the code.&lt;/li&gt;
&lt;/ul&gt;&lt;pre&gt;Choose a Template (required): 5&lt;br/&gt;Project Name (required): ios-ssl-kill-switch-tweak&lt;br/&gt;Package Name [com.yourcompany.ios-ssl-kill-switch-tweak]: com.isecpartners.nabla.sslkillswitch&lt;br/&gt;Author/Maintainer Name [mac_user]: Alban Diquet&lt;br/&gt;MobileSubstrate Bundle filter [com.apple.springboard]: &lt;br/&gt;Instantiating iphone/tweak in iossslkillswitchtweak/...&lt;br/&gt;Done.&lt;/pre&gt;
&lt;p&gt;7. Navigate to the project directory that was created and open the file Tweak.xm&lt;/p&gt;
&lt;p&gt;8. Paste the code from the original tweak with the updated fix on the lines mentioned in the previous step.&lt;/p&gt;
&lt;p&gt;9. Copy the files HookedNSURLConnectionDelegate.h and HookedNSURLConnectionDelegate.m file to the tweak directory.&lt;/p&gt;
&lt;p&gt;10. Copy the Makefile downloaded from GitHub and replace the one that was generated for us. If you wish to edit the contents of the file, then use the code found below&lt;/p&gt;
&lt;pre&gt;include theos/makefiles/common.mk&lt;br/&gt;&lt;br/&gt;TWEAK_NAME = SSLKillSwitch&lt;br/&gt;SSLKillSwitch_FILES = Tweak.xm HookedNSURLConnectionDelegate.m&lt;br/&gt;&lt;br/&gt;SSLKillSwitch_FRAMEWORKS = UIKit&lt;br/&gt;include $(THEOS_MAKE_PATH)/tweak.mk&lt;br/&gt;&lt;br/&gt;&lt;/pre&gt;
&lt;p&gt;11. Execute make package on the command line to build the tweak. If all went well, you will see the below output.&lt;/p&gt;
&lt;pre&gt;Making all for tweak SSLKillSwitch...&lt;br/&gt; Preprocessing Tweak.xm...&lt;br/&gt; Compiling Tweak.xm...&lt;br/&gt; Compiling HookedNSURLConnectionDelegate.m...&lt;br/&gt; Linking tweak SSLKillSwitch...&lt;br/&gt; Stripping SSLKillSwitch...&lt;br/&gt; Signing SSLKillSwitch...&lt;br/&gt;Making stage for tweak SSLKillSwitch...&lt;br/&gt;dpkg-deb: building package `com.isecpartners.nabla.sslkillswitch' in `./com.isecpartners.nabla.sslkillswitch_0.0.1-1_iphoneos-arm.deb'.&lt;/pre&gt;
&lt;p&gt;&lt;br/&gt;12. To clean the build execute make clean.&lt;/p&gt;
&lt;pre&gt;rm -rf ./obj&lt;br/&gt;rm -rf "/opt/iossslkillswitchtweak/_"&lt;br/&gt;&lt;br/&gt;&lt;/pre&gt;
&lt;p&gt;Enjoy reviewing the iOS SSL traffic :)&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/29635255720</link><guid>http://greenoperator.tumblr.com/post/29635255720</guid><pubDate>Fri, 17 Aug 2012 15:07:00 -0400</pubDate></item><item><title>Symantec Antivirus - Password Required for uninstall</title><description>&lt;p&gt;Ran a across a couple machines this weekend which I was fixing for my friends and family which was out dated. The machines had outdated Symantec Antivirus installations from several years ago. &lt;/p&gt;
&lt;p&gt;Tried to remove the software and was prompted for a password. Doh! Given I didn&amp;#8217;t have this I needed to determine if this is something which can be bypassed.&lt;/p&gt;
&lt;p&gt;When reviewing the registry I was able to identify a few registry values which I attempted to change. Turns out they worked to bypass the password for uninstall :)&lt;/p&gt;
&lt;p&gt;Navigate to the registry and flip the below values from 1 to 0.&lt;/p&gt;
&lt;p&gt;Registry path: &lt;span&gt;HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Administrator Only\Security\&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;UseVPUninstallPassword DWORD set to 0&lt;br/&gt;UseScanNetDrivePassword DWORD set to 0&lt;br/&gt;VPUninstallPassword set to blank &lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/21444783420</link><guid>http://greenoperator.tumblr.com/post/21444783420</guid><pubDate>Fri, 20 Apr 2012 14:44:26 -0400</pubDate><category>antivirus</category><category>password</category><category>symantec</category><category>registry</category></item><item><title>Mobile Application Assessment Series - Approach</title><description>&lt;p&gt;It is very important to have an approach when performing mobile application assessments as it is for any other application assessment being performed. This will help to drive your work.&lt;/p&gt;
&lt;p&gt;The approach I have been using for a few months seems to be working fairly well. The approach is comprised of two sections. All the assessments performed undergo a static analysis of the application installation file and a dynamic analysis or behavioral analysis of the application.&lt;/p&gt;
&lt;p&gt;The analysis approach is the same across all mobile platforms. The tools used may differ, but the high-level idea is the same. The static analysis involves reviewing the application installation file which can be gotten off of a mobile application store such as Apple&amp;#8217;s AppStore or Google&amp;#8217;s marketplace or from a developer directly.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;          Mobile Platform    Application Installation Extension&lt;br/&gt;&lt;/strong&gt;     Apple iOS                                 .ipa&lt;br/&gt;&lt;strong&gt;          &lt;/strong&gt;Google Android                            .apk&lt;/p&gt;
&lt;p&gt;The application installation file can store a wealth of information and should be reviewed to understand the structure of the application and the resources it uses.&lt;/p&gt;
&lt;p&gt;The dynamic analysis of an application refers to the behavioral analysis of the application once it is installed on a mobile device and is executing. The application when running stars creating artifacts which can be left on the device&amp;#8217;s internal storage memory or can be captured by performing a review of the data being transmitted between the mobile device and the backend systems. &lt;/p&gt;
&lt;p&gt;In the next post we will begin to review the type of information which can be extracted from the IPA and APK files by performing a static analysis.&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/19296497920</link><guid>http://greenoperator.tumblr.com/post/19296497920</guid><pubDate>Wed, 14 Mar 2012 13:49:12 -0400</pubDate><category>application vulnerabilities</category><category>assessment</category><category>mobile application</category><category>security</category></item><item><title>Mobile Application Assessment Series</title><description>&lt;p&gt;&lt;p class="MsoNormal"&gt;As technology changes over time, it leads to new innovation and as the focus of developers and needs of end-users change, it can lead to a rise of new software being created. With the proliferation of smart phones, the consumer behavioral practices have pushed businesses to expose functionality from their business applications that are traditionally inside the businesses network perimeter to begin wondering outside of the perimeter. The network boundaries which use to protect data are now being stretched; the &lt;em&gt;hard&lt;/em&gt; edge that defined what is inside the network versus what is not has become a gray area. The network perimeter has become notably more fluid. Specifically, smart phones with native applications have helped data spread across millions of user’s devices. Data wants to be free! Data does not want to be trapped. Thus data does its best to try and escape. Smart phones are currently a major medium that data is using to escape from its owners and controllers.&lt;/p&gt;
&lt;p class="MsoNormal"&gt;Businesses and mobile application developers appear to have forgotten every lesson that was learned over the last decade regarding building defensive and secure applications. The same issues which were present in web applications since the late nineties are manifesting themselves once again, elevating the risk of businesses and  their sensitive information that is &lt;em&gt;escaping&lt;/em&gt;.&lt;/p&gt;
&lt;p class="MsoNormal"&gt;Over the next several weeks I will focus on providing relevant mobile application assessment information for the iOS and Android platforms. First a framework for testing mobile applications will be presented followed by examples.&lt;/p&gt;
&lt;p class="MsoNormal"&gt;Stay tuned for the new series on testing mobile applications.&lt;/p&gt;&lt;/p&gt;</description><link>http://greenoperator.tumblr.com/post/17170137860</link><guid>http://greenoperator.tumblr.com/post/17170137860</guid><pubDate>Mon, 06 Feb 2012 16:37:00 -0500</pubDate><category>mobile application</category><category>assessment</category><category>security</category><category>application vulnerabilities</category></item></channel></rss>
