<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-8108600773362279998</id><updated>2011-11-16T06:22:59.277-06:00</updated><category term='nitr0us nitrous blog hacking security research exploits mexico advisories mexican hacker code programming unix linux kernel 31337 elite l33t 1337'/><category term='31337 l33t 1337 order movies cinema movie teather hilarious funny voucher'/><category term='nitr0us john the ripper benchmark cracking hash password brute force ntlm'/><category term='nitr0us ekoparty 2011 eko argentina security hacking itsec infosec conferences buenos aires hackers hack'/><category term='apt advanced persistent threat hacking attacks military diplomatic malware'/><category term='_init coding c0ding exploiting research shared libraries glibc elf'/><category term='nitr0us chatsubo insecurity security dark labs research hacking hack mexico exploits code programming vulnerability development'/><category term='Trend Micro Data Loss Prevention 5.2 LeakProof Data Leakage data theft spionage vulnerability research exploit vuln-dev hacking'/><category term='nitr0us dotdotpwn dot dot pwn traversal vulnerability vuln-dev development security flaws insecurity hacking web mexico'/><category term='nitr0us science scientific technical report maths mathematics vulnerability development vuln-dev exploit  buffer overflows'/><category term='xor swap algorithm intercambio swapping variables C programming c0ding coding maths math science'/><category term='hacker c-level ceo cio chief ciso cso presentation speech mba anahuac'/><category term='cissp certified information systems security professional certification book industry money'/><category term='nitr0us dot dot pwn dotdotpwn ddpwn directory traversal fuzzer engine vulnerability development vulndev vuln-dev programming coding projects security insecurity hacking'/><category term='new york NY nyc times square terrorism bombing suspect'/><category term='nitr0us gpen sans giac certified penetration tester advanced pentester pentest pentesting hacker ethical hacking pwnage 0wnage ownage'/><category term='sans 560 CTF penetration testing ethical hacking training course capture the flag hacking pwnage own pwn exploit'/><category term='risk assessment equation formula threat information security iso 27001'/><category term='nitr0us toronto canada 2600 meeting phreaking car hacking hack pwnage pwn 0wn beige box lineman&apos;s headset insecurity urban exploration'/><title type='text'>Chatsubo [(in)Security Dark] Labs</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>19</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-8549266281034521660</id><published>2011-10-02T18:03:00.022-05:00</published><updated>2011-10-02T19:52:13.506-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us ekoparty 2011 eko argentina security hacking itsec infosec conferences buenos aires hackers hack'/><title type='text'>My experience at Ekoparty 2011</title><content type='html'>Hi fellows, after a long time, I've decided to create another entry in diz bl0g ... I'll put a few words about my experience in the most important IT security convention in Latinamerica.. Yes, I know what y0u have in mind and that'z what I'll be talking about ! &lt;span style="color: rgb(255, 0, 0); font-weight: bold;font-size:130%;" &gt;&lt;span&gt;EKOPARTY&lt;/span&gt;&lt;/span&gt; ! (&lt;a href="http://www.ekoparty.org/" target="_blank"&gt;www.ekoparty.org&lt;/a&gt; - @ekoparty) ;)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-IfFgyvSpIEc/Toj60DJbcCI/AAAAAAAAAMY/LWMDqKrxUgw/s1600/DSCF0763.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://2.bp.blogspot.com/-IfFgyvSpIEc/Toj60DJbcCI/AAAAAAAAAMY/LWMDqKrxUgw/s320/DSCF0763.JPG" alt="" id="BLOGGER_PHOTO_ID_5659048703896023074" border="0" /&gt;&lt;/a&gt;&lt;a href="http://1.bp.blogspot.com/-OYp-mJ8QRFA/Toj8kcbVTxI/AAAAAAAAANg/fc15ILGS1Uc/s1600/DSCF0685.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-OYp-mJ8QRFA/Toj8kcbVTxI/AAAAAAAAANg/fc15ILGS1Uc/s320/DSCF0685.JPG" alt="" id="BLOGGER_PHOTO_ID_5659050634827353874" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;It all started on Wednesday the September 21st, 2011 in Buenos Aires, Argentina, when I went to &lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;KONEX&lt;/span&gt; cultural center to get the badge, a cool one by the way. What I really liked of this badge unlike others, is that there's no difference between speaker/attendee badge. Anyway, I went with my friends &lt;span style="font-weight: bold;"&gt;Federico Bossi (@fedebossi)&lt;/span&gt; and &lt;span style="font-weight: bold;"&gt;Claudio (@claudio_leon)&lt;/span&gt; to get the badges. After that, we saw the Bus intented to go around the streets for wardriving purposes jejeje.. It was hilarious 'cauz the bus had very funny music (such as &lt;span style="font-weight: bold; font-style: italic;"&gt;Reggaeton&lt;/span&gt; =X) jajaj, and blinking lights around the windows... &lt;span id="result_box" class="short_text" lang="en"&gt;&lt;span class="hps"&gt;A&lt;/span&gt; &lt;span class="hps"&gt;picture is worth a&lt;/span&gt; &lt;span class="hps"&gt;thousand words&lt;/span&gt;&lt;/span&gt; =D. That night, I went with Fede to "Antares" a very nice pub in a city near Buenos Aires, which is called La Plata... 'til 6 am ¬¬' WTF !!&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/-I4A6AinKwLA/TojwVtGjVmI/AAAAAAAAAKo/yq80ezv2Pug/s1600/DSCF0679.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://4.bp.blogspot.com/-I4A6AinKwLA/TojwVtGjVmI/AAAAAAAAAKo/yq80ezv2Pug/s320/DSCF0679.JPG" alt="" id="BLOGGER_PHOTO_ID_5659037187466024546" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-3oHpuGoFABo/TojxH4NJOYI/AAAAAAAAAKw/9HLDxZ1xpmk/s1600/DSCF0682.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://3.bp.blogspot.com/-3oHpuGoFABo/TojxH4NJOYI/AAAAAAAAAKw/9HLDxZ1xpmk/s320/DSCF0682.JPG" alt="" id="BLOGGER_PHOTO_ID_5659038049439922562" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-B-A_gqf9H7M/TojzbCE4QJI/AAAAAAAAALI/G7BHTcbA0nM/s1600/DSCF0765.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://3.bp.blogspot.com/-B-A_gqf9H7M/TojzbCE4QJI/AAAAAAAAALI/G7BHTcbA0nM/s320/DSCF0765.JPG" alt="" id="BLOGGER_PHOTO_ID_5659040577530380434" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Thursday, September 22nd, I finally met in person to my br0ther &lt;span style="font-weight: bold;"&gt;Xava Du (@xavadu)&lt;/span&gt; !!! after 8 years !! =0 and we just were there walking around, drinking b33rs @ &lt;span style="font-weight: bold;"&gt;Immunity Sec&lt;/span&gt; stand, meeting some people and talking with other security researchers. In the same hall was the lockpicking village, fight with r0b0ts, a ping pong table, vendors, pop corns, old video games, wifi hack3rs, etc. etc. etc...&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-76vO3qkh_k4/Tojx-ErMITI/AAAAAAAAAK4/olJ9zfy6tos/s1600/DSCF0759.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 240px; height: 320px;" src="http://3.bp.blogspot.com/-76vO3qkh_k4/Tojx-ErMITI/AAAAAAAAAK4/olJ9zfy6tos/s320/DSCF0759.JPG" alt="" id="BLOGGER_PHOTO_ID_5659038980500103474" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-_28Mkni7wdg/TojzahSue-I/AAAAAAAAALA/L-d6jNhoQ-s/s1600/DSCF0762.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://3.bp.blogspot.com/-_28Mkni7wdg/TojzahSue-I/AAAAAAAAALA/L-d6jNhoQ-s/s320/DSCF0762.JPG" alt="" id="BLOGGER_PHOTO_ID_5659040568730090466" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Also, I found my mexican friend there, &lt;span style="font-weight: bold;"&gt;Diego Bauche (@dexosexo)&lt;/span&gt; !! it was great to see him there 'cause we really needed to talk in '&lt;span style="color: rgb(51, 255, 51); font-style: italic; font-weight: bold;"&gt;Mexican spanish&lt;/span&gt;' :D jejej which is pretty different than '&lt;span style="font-style: italic; font-weight: bold; color: rgb(51, 255, 51);"&gt;Argentinian Spanis&lt;/span&gt;&lt;span style="font-style: italic; font-weight: bold; color: rgb(51, 255, 51);"&gt;h&lt;/span&gt;&lt;span style="font-weight: bold; color: rgb(0, 0, 0);"&gt;&lt;/span&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;'&lt;/span&gt; !&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-CTGJxMp6lVY/Tojz6Xdxa1I/AAAAAAAAALQ/I-PW5eM0xMo/s1600/DSCF0833.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-CTGJxMp6lVY/Tojz6Xdxa1I/AAAAAAAAALQ/I-PW5eM0xMo/s320/DSCF0833.JPG" alt="" id="BLOGGER_PHOTO_ID_5659041115847879506" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;At the end of that night, there was a party just right there @ KONEX ;) ... There was a funny (weird) band performing xD. In that party, I met a &lt;span style="font-weight: bold;"&gt;pretty &amp;amp; intelligent girl&lt;/span&gt; who was also involved in IT security, she totally impressed me 'cause she has deep knowledge =0 (Note: She found a security vulnerability in a mainstream SCADA platform) ! It was nice 2 meet her =)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/-SPu2AEnd__o/Toj0lQy8EiI/AAAAAAAAALY/YB5cblxXr18/s1600/DSCF0782.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://4.bp.blogspot.com/-SPu2AEnd__o/Toj0lQy8EiI/AAAAAAAAALY/YB5cblxXr18/s320/DSCF0782.JPG" alt="" id="BLOGGER_PHOTO_ID_5659041852791984674" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Friday, September 23rd, the &lt;span style="font-weight: bold; color: rgb(255, 0, 0);font-size:130%;" &gt;EkoFest&lt;/span&gt; location was finally published.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-ya5Q0ZWcJV4/Toj1eDgbbnI/AAAAAAAAALg/jy9prpw38Js/s1600/DSCF0846.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://2.bp.blogspot.com/-ya5Q0ZWcJV4/Toj1eDgbbnI/AAAAAAAAALg/jy9prpw38Js/s320/DSCF0846.JPG" alt="" id="BLOGGER_PHOTO_ID_5659042828477230706" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Before the &lt;span style="font-weight: bold;"&gt;Juliano Rizzo (@julianor)&lt;/span&gt; talk, suddenly, a &lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;üb3r-h4x0r-3l3ctr0-p0st-futur1st r0b0t&lt;/span&gt; appeared =D IT WAS AMAZING !! I've never seen something like that before, even in Defcon or BlackHat ! ;)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-xuXjUN0nXA8/Toj1escEvXI/AAAAAAAAALo/zzUO1FZUo0w/s1600/DSCF0848.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-xuXjUN0nXA8/Toj1escEvXI/AAAAAAAAALo/zzUO1FZUo0w/s320/DSCF0848.JPG" alt="" id="BLOGGER_PHOTO_ID_5659042839464820082" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;At the end of Ekoparty, and before the party, we went to &lt;span style="font-weight: bold;"&gt;Agustin Gianni's (@agustingianni)&lt;/span&gt; house to drink some Fernet and after that we moved to another place to have some &lt;span style="color: rgb(255, 0, 0); font-weight: bold;font-size:130%;" &gt;Beers &amp;amp; Pizza&lt;/span&gt; with &lt;span style="font-weight: bold;"&gt;Xava Du, Claudio&lt;/span&gt;, more people and speakers such as &lt;span style="font-weight: bold;"&gt;Rubén Santamarta (@reversemode), Chema Alonso (@chemaalonso), Agustin Gianni (&lt;/span&gt;&lt;span style="font-weight: bold;" class="screen-name screen-name-agustingianni pill"&gt;@agustingianni), Juliano Rizzo (@julianor) and Pedro Varangot&lt;/span&gt;. After that we all went to the PARTY !! (no pictures xD)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-nb1cgpK-dbE/Toj4hXnDr0I/AAAAAAAAAL4/ijec8CoXIwU/s1600/DSCF0870.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 240px; height: 320px;" src="http://3.bp.blogspot.com/-nb1cgpK-dbE/Toj4hXnDr0I/AAAAAAAAAL4/ijec8CoXIwU/s320/DSCF0870.JPG" alt="" id="BLOGGER_PHOTO_ID_5659046183948234562" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Saturday, September 24th, we moved to La Plata and prepared our &lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(255, 255, 0); font-weight: bold;"&gt;ekoparty-afterasado&lt;/span&gt;&lt;/span&gt; ! jajaj I had a GREAT time with friends !! Thank you d000d3z !!!&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-ZH2q9zKAdpg/Toj5ewtEvjI/AAAAAAAAAMI/ppN1fkL-WSM/s1600/DSCF0885.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://2.bp.blogspot.com/-ZH2q9zKAdpg/Toj5ewtEvjI/AAAAAAAAAMI/ppN1fkL-WSM/s320/DSCF0885.JPG" alt="" id="BLOGGER_PHOTO_ID_5659047238656376370" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-87thwM9o3M8/Toj5d9nLadI/AAAAAAAAAMA/qbo3dzTVF2I/s1600/DSCF0883.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-87thwM9o3M8/Toj5d9nLadI/AAAAAAAAAMA/qbo3dzTVF2I/s320/DSCF0883.JPG" alt="" id="BLOGGER_PHOTO_ID_5659047224941439442" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-M9G5PRNBTgM/Toj5fAiLOoI/AAAAAAAAAMQ/6dQ5889fB-c/s1600/DSCF0900.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://2.bp.blogspot.com/-M9G5PRNBTgM/Toj5fAiLOoI/AAAAAAAAAMQ/6dQ5889fB-c/s320/DSCF0900.JPG" alt="" id="BLOGGER_PHOTO_ID_5659047242905631362" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;On the other hand, I also had the chance to say hi to antoher Argentinian friends (security researchers) like &lt;span style="font-weight: bold;"&gt;Nahuel Grisolia (@cintainfinita), Maximiliano Soler (@maxisoler) and Ariel Sánchez (dymitri)&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-gmNcLnFUepM/Toj2HGALOXI/AAAAAAAAALw/GdVUcTg1XD4/s1600/DSCF0865.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 240px; height: 320px;" src="http://2.bp.blogspot.com/-gmNcLnFUepM/Toj2HGALOXI/AAAAAAAAALw/GdVUcTg1XD4/s320/DSCF0865.JPG" alt="" id="BLOGGER_PHOTO_ID_5659043533521893746" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;What about the &lt;span style="color: rgb(255, 255, 0); font-weight: bold;font-size:130%;" &gt;CONFERENCES&lt;/span&gt;??!! One single word: &lt;span style="color: rgb(255, 0, 0); font-weight: bold;"&gt;AMAZING&lt;/span&gt; ;) .. All of them ! what a great level. Som3 pix:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-tpmMnGDMWek/Toj7ysggRyI/AAAAAAAAANI/fuL1_yzrNyI/s1600/DSCF0861.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-tpmMnGDMWek/Toj7ysggRyI/AAAAAAAAANI/fuL1_yzrNyI/s320/DSCF0861.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049780150552354" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-S5OB_-pOEV8/Toj7zK-HR6I/AAAAAAAAANQ/o3p-4mNT0h8/s1600/DSCF0863.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://2.bp.blogspot.com/-S5OB_-pOEV8/Toj7zK-HR6I/AAAAAAAAANQ/o3p-4mNT0h8/s320/DSCF0863.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049788327806882" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-_j_vMVOAtqg/Toj7k0dPfGI/AAAAAAAAAM4/CFNunhtutz4/s1600/DSCF0780.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-_j_vMVOAtqg/Toj7k0dPfGI/AAAAAAAAAM4/CFNunhtutz4/s320/DSCF0780.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049541766184034" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-j36HnESyzoI/Toj7kjwYFBI/AAAAAAAAAMw/4KdhCgUw6Xs/s1600/DSCF0778.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-j36HnESyzoI/Toj7kjwYFBI/AAAAAAAAAMw/4KdhCgUw6Xs/s320/DSCF0778.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049537283036178" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-VRDKHnBaBKM/Toj7kZrnO5I/AAAAAAAAAMo/TjL7IA-H7L8/s1600/DSCF0767.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://3.bp.blogspot.com/-VRDKHnBaBKM/Toj7kZrnO5I/AAAAAAAAAMo/TjL7IA-H7L8/s320/DSCF0767.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049534578703250" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-jsArRXWZ0hc/Toj7kI7qIsI/AAAAAAAAAMg/yFy23cErWSc/s1600/DSCF0758.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-jsArRXWZ0hc/Toj7kI7qIsI/AAAAAAAAAMg/yFy23cErWSc/s320/DSCF0758.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049530082599618" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-L71SChDwZB0/Toj7laLXAgI/AAAAAAAAANA/u50u2SCUgEg/s1600/DSCF0829.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://3.bp.blogspot.com/-L71SChDwZB0/Toj7laLXAgI/AAAAAAAAANA/u50u2SCUgEg/s320/DSCF0829.JPG" alt="" id="BLOGGER_PHOTO_ID_5659049551891726850" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Definitely, I'll be there the next year ! ;)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Ch33rz !!!&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-8549266281034521660?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/8549266281034521660/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2011/10/my-experience-at-ekoparty-2011.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/8549266281034521660'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/8549266281034521660'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2011/10/my-experience-at-ekoparty-2011.html' title='My experience at Ekoparty 2011'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/-IfFgyvSpIEc/Toj60DJbcCI/AAAAAAAAAMY/LWMDqKrxUgw/s72-c/DSCF0763.JPG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-256540894039166270</id><published>2011-01-18T22:16:00.013-06:00</published><updated>2011-01-18T22:58:00.487-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us science scientific technical report maths mathematics vulnerability development vuln-dev exploit  buffer overflows'/><title type='text'>My research cited on a scientific technical report</title><content type='html'>Well, have past a long time since my fingers wr0te something on this wall... But today, I was just looking for advancements in vulnerability and exploit development on Google and !! something really nice appeared in front of my eyes and behind my screen jeje.&lt;br /&gt;&lt;br /&gt;I was reading the following technical report from &lt;span style="color: rgb(102, 255, 255);font-size:130%;" &gt;&lt;a style="font-weight: bold;" href="http://www.ma.rhul.ac.uk/techreports"&gt;The Department of Mathematics, Royal Holloway, University of London&lt;/a&gt;&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;&lt;span&gt;&lt;span style="font-weight: bold;"&gt;Technical Report&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0); font-weight: bold;font-size:130%;" &gt;&lt;a href="http://www.ma.rhul.ac.uk/static/techrep/2009/RHUL-MA-2009-06.pdf"&gt;RHUL-MA-2009-06&lt;/a&gt;&lt;/span&gt; &lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;16th February 2009&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Title: &lt;/span&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;Buffer Overflows in Microsoft Windows Environment&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Author: &lt;/span&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;Parvez Anwar&lt;/span&gt; &lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;Comments: &lt;/span&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;Search Security Award Winning Project&lt;/span&gt;&lt;p style="font-weight: bold;"&gt;&lt;/p&gt;... And suddenly, I read the author refering &lt;span style="color: rgb(255, 255, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;my name, comments and a c0de&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 255, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt; of mine&lt;/span&gt;&lt;/span&gt;. It made my day, obviously, B-)&lt;br /&gt;&lt;br /&gt;Here are the paragraphs that made me feel pr0ud of myself..&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_yWd4rUkBABM/TTZrScfjQdI/AAAAAAAAAJQ/ebDr3rb6rx8/s1600/my%2Bresearch%2Bcited%2Bon%2Ba%2Bscientific%2Btechnical%2Breport%2B1.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 327px; height: 400px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/TTZrScfjQdI/AAAAAAAAAJQ/ebDr3rb6rx8/s400/my%2Bresearch%2Bcited%2Bon%2Ba%2Bscientific%2Btechnical%2Breport%2B1.jpg" alt="" id="BLOGGER_PHOTO_ID_5563752354293170642" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;... and the c0de that made me scream like crazy :@ a few years ago ajaja.. but it was worth ;)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/_yWd4rUkBABM/TTZrSnJrKeI/AAAAAAAAAJY/0TP2BbhDgAI/s1600/my%2Bresearch%2Bcited%2Bon%2Ba%2Bscientific%2Btechnical%2Breport%2B2.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 310px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/TTZrSnJrKeI/AAAAAAAAAJY/0TP2BbhDgAI/s400/my%2Bresearch%2Bcited%2Bon%2Ba%2Bscientific%2Btechnical%2Breport%2B2.jpg" alt="" id="BLOGGER_PHOTO_ID_5563752357154204130" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);font-size:130%;" &gt;Full report:&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-size:100%;" &gt;&lt;a href="http://www.ma.rhul.ac.uk/static/techrep/2009/RHUL-MA-2009-06.pdf"&gt;http://www.ma.rhul.ac.uk/static/techrep/2009/RHUL-MA-2009-06.pdf&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;ch33rz !!! /o/&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-256540894039166270?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/256540894039166270/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2011/01/my-research-cited-on-scientific.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/256540894039166270'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/256540894039166270'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2011/01/my-research-cited-on-scientific.html' title='My research cited on a scientific technical report'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_yWd4rUkBABM/TTZrScfjQdI/AAAAAAAAAJQ/ebDr3rb6rx8/s72-c/my%2Bresearch%2Bcited%2Bon%2Ba%2Bscientific%2Btechnical%2Breport%2B1.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-8577020887821996326</id><published>2010-10-26T15:23:00.011-05:00</published><updated>2010-10-28T08:53:55.757-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us dotdotpwn dot dot pwn traversal vulnerability vuln-dev development security flaws insecurity hacking web mexico'/><title type='text'>DotDotPwn v2.1 - The Traversal Directory Fuzzer</title><content type='html'>Dewds!! we've set up the official Website:&lt;br /&gt;&lt;a href="http://dotdotpwn.sectester.net/" target="_blank"&gt;&lt;span style="color: rgb(51, 255, 51);font-size:180%;" &gt;&lt;span style="font-weight: bold;"&gt;http://dotdotpwn.sectester.net/&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;These are the new features included in v2.1 (transcription of &lt;span style="font-weight: bold;"&gt;CHANGELOG.txt&lt;/span&gt;):&lt;br /&gt;&lt;span style="font-size:100%;"&gt;----------------&lt;br /&gt;&lt;span style="font-weight: bold;font-size:130%;" &gt;DotDotPwn v2.1&lt;/span&gt;&lt;br /&gt;Release date: 29/Oct/2010 (&lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;PUBLIC &lt;/span&gt;&lt;/span&gt;Release at&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="color: rgb(255, 0, 0);"&gt; &lt;span style="font-weight: bold; color: rgb(255, 255, 153);"&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 255, 0);font-size:100%;" &gt;&lt;span style="font-weight: bold;"&gt;BugCon Security Conferences 2010&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;)&lt;br /&gt;Release date: 14/Oct/2010 (&lt;span style="color: rgb(255, 0, 0); font-weight: bold;font-size:130%;" &gt;NON-PUBLIC&lt;/span&gt; Version)&lt;br /&gt;&lt;br /&gt;Changes / Enhancements / Features:&lt;br /&gt;&lt;br /&gt;* STDOUT module implemented to be used as you wish (Read the EXAMPLES.txt to&lt;br /&gt;see some examples)&lt;br /&gt;* TFTP Module implemented&lt;br /&gt;* -k switch for false positive avoidance making another verification once the&lt;br /&gt;HTTP Status 200 is received. This option looks for the specified parameter&lt;br /&gt;in the server's response.&lt;br /&gt;(e.g. -k "root:" if trying with /etc/passwd file&lt;br /&gt;or -k "localhost" in windows/system32/drivers/etc/hosts)&lt;br /&gt;With this option enabled, the HTTP module will print the total of false&lt;br /&gt;positives detected during the scan as long as there is more than one.&lt;br /&gt;* -p switch for payload specification.&lt;br /&gt;This option simply takes the text file passed as a parameter, replaces the&lt;br /&gt;'TRAVERSAL' tokens and sends it to the target (-h switch) in the specified&lt;br /&gt;port (-x switch)&lt;br /&gt;(e.g. a file called request.txt that contains an HTTP request including&lt;br /&gt;cookies, session ids, variables, etc. and the 'TRAVERSAL' tokens within the&lt;br /&gt;request that would be fuzzed)&lt;br /&gt;* For the impatient, when it's working in quiet mode (-q switch), it prints&lt;br /&gt;dots each certain number of attempts to inform that it's still working ;).&lt;br /&gt;* Prints the number of vulnerabilities found before exiting when an error&lt;br /&gt;ocurrs (e.g. the Web server doesn't respond anymore because it has reached&lt;br /&gt;the maximum number of clients/sockets/threads)&lt;br /&gt;* Prints the time taken at the end of the testing&lt;br /&gt;* A cleaner usage message (help message)&lt;br /&gt;&lt;br /&gt;Supported modules:&lt;br /&gt;- HTTP&lt;br /&gt;- HTTP URL&lt;br /&gt;- FTP&lt;br /&gt;- TFTP&lt;br /&gt;- Payload (Protocol independent)&lt;br /&gt;- STDOUT&lt;br /&gt;-------------&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;And again, I include some screensh0tz ... Enjoy them and stay tuned for the public release !!..&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;[ STDOUT Module + scripting ;) ] against Webmin 1.280&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_yWd4rUkBABM/TMdMQ3W6hYI/AAAAAAAAAIA/POBHG9JBpHQ/s1600/ddpwn21+stdout.bmp"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 94px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TMdMQ3W6hYI/AAAAAAAAAIA/POBHG9JBpHQ/s400/ddpwn21+stdout.bmp" alt="" id="BLOGGER_PHOTO_ID_5532474519869621634" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;TFTP Module against TFTPDWin&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/_yWd4rUkBABM/TMdM2Ids2NI/AAAAAAAAAIw/cpx-p2EeAxI/s1600/ddpwn21+tftp.bmp"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 253px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/TMdM2Ids2NI/AAAAAAAAAIw/cpx-p2EeAxI/s400/ddpwn21+tftp.bmp" alt="" id="BLOGGER_PHOTO_ID_5532475160116648146" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Without False Positive detection&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_yWd4rUkBABM/TMdMRL7G6NI/AAAAAAAAAII/3dktaXHCrj4/s1600/ddpwn21+false+positive.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 226px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TMdMRL7G6NI/AAAAAAAAAII/3dktaXHCrj4/s400/ddpwn21+false+positive.jpg" alt="" id="BLOGGER_PHOTO_ID_5532474525390137554" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;With False Positive detection&lt;/span&gt;&lt;a href="http://2.bp.blogspot.com/_yWd4rUkBABM/TMdMRopuJMI/AAAAAAAAAIY/A9z3PV3kWw4/s1600/ddpwn21+no+false+pos+2.jpg"&gt;&lt;br /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/_yWd4rUkBABM/TMdMROpUKjI/AAAAAAAAAIQ/j2dHRse5wEQ/s1600/ddpwn21+no+false+pos+1.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 130px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/TMdMROpUKjI/AAAAAAAAAIQ/j2dHRse5wEQ/s400/ddpwn21+no+false+pos+1.jpg" alt="" id="BLOGGER_PHOTO_ID_5532474526120815154" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_yWd4rUkBABM/TMl_OjWNFNI/AAAAAAAAAI4/zYuNg_uRjgo/s1600/ddpwn21+no+false+pos+2.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 105px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TMl_OjWNFNI/AAAAAAAAAI4/zYuNg_uRjgo/s400/ddpwn21+no+false+pos+2.jpg" alt="" id="BLOGGER_PHOTO_ID_5533093505184634066" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;PAYLOAD Module&lt;/span&gt; &lt;span style="font-weight: bold;"&gt;against Webmin 1.280&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_yWd4rUkBABM/TMdMR3uG5SI/AAAAAAAAAIg/ClTxvbEUXXk/s1600/ddpwn21+payload+1.bmp"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 46px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TMdMR3uG5SI/AAAAAAAAAIg/ClTxvbEUXXk/s400/ddpwn21+payload+1.bmp" alt="" id="BLOGGER_PHOTO_ID_5532474537146770722" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/_yWd4rUkBABM/TMl_q2JS0AI/AAAAAAAAAJA/x2um4J_6kwI/s1600/ddpwn21+payload+2.bmp"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 278px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/TMl_q2JS0AI/AAAAAAAAAJA/x2um4J_6kwI/s400/ddpwn21+payload+2.bmp" alt="" id="BLOGGER_PHOTO_ID_5533093991267094530" border="0" /&gt;&lt;/a&gt;&lt;a href="http://2.bp.blogspot.com/_yWd4rUkBABM/TMdMRopuJMI/AAAAAAAAAIY/A9z3PV3kWw4/s1600/ddpwn21+no+false+pos+2.jpg"&gt;&lt;br /&gt;&lt;/a&gt;&lt;br /&gt;Ch33333rz ! B-) c yaaa @ BugCon 2k10 !&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-8577020887821996326?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/8577020887821996326/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/10/dotdotpwn-v21-traversal-directory.html#comment-form' title='2 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/8577020887821996326'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/8577020887821996326'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/10/dotdotpwn-v21-traversal-directory.html' title='DotDotPwn v2.1 - The Traversal Directory Fuzzer'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/TMdMQ3W6hYI/AAAAAAAAAIA/POBHG9JBpHQ/s72-c/ddpwn21+stdout.bmp' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-5570040421243444137</id><published>2010-09-09T23:48:00.011-05:00</published><updated>2010-09-10T00:28:58.075-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us dot dot pwn dotdotpwn ddpwn directory traversal fuzzer engine vulnerability development vulndev vuln-dev programming coding projects security insecurity hacking'/><title type='text'>DotDotPwn - The Directory Traversal Fuzzer</title><content type='html'>&lt;span style="font-style: italic;"&gt;"Welly, welly, welly, well." -- &lt;/span&gt;A Clockwork Orange (movie).&lt;br /&gt;&lt;br /&gt;Hell Yes !!!! B-), a few weeks ago, my brother &lt;span style="font-weight: bold;"&gt;chr1x &lt;/span&gt;from &lt;span style="font-weight: bold;"&gt;CubilFelino Security Labs&lt;/span&gt; (published a tool to detect directory traversal vulnerabilities in FTP/HTTP servers. It only relied upon 2 .txt files (databases) with the payloads to be lauched to the target. Then, some cool ideas came into my mind, so, I wrote the c0de from the skratch and in a modular basis, as well as, I included a lot of features/enhacements, but the main change was the pass from being a &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;Checker&lt;/span&gt;&lt;/span&gt; to a &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;Fuzzer&lt;/span&gt;&lt;/span&gt; (I c0ded a &lt;span style="font-style: italic; color: rgb(255, 255, 0); font-weight: bold;"&gt;Traversal Engine&lt;/span&gt; for it).&lt;br /&gt;&lt;br /&gt;Well, Stay tuned for the public release ;) s00n !! (DotDotPwn v2.0)&lt;br /&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-weight: bold;"&gt;Official Website: &lt;a href="http://chr1x.sectester.net/toolz/ddpwn/" target="_blank"&gt;http://chr1x.sectester.net/toolz/ddpwn/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;----------&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;&lt;/span&gt;Release date: 2/Sept/2010 (NON-PUBLIC Version)&lt;br /&gt;Author: &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;nitrØus&lt;/span&gt;&lt;/span&gt; (nitrousenador@gmail.com)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Changes / Enhancements / Features:&lt;/span&gt;&lt;br /&gt;* From Checker to Fuzzer&lt;br /&gt;* Rewritten from the scratch&lt;br /&gt;* Modular architechture (DotDotPwn packages)&lt;br /&gt;* Traversal Engine to automatically create the fuzzing patterns to be sent.&lt;br /&gt;This engine makes all the permutations between the dots and slashes&lt;br /&gt;encodings, iterates the number of deepness passed as argument and finally,&lt;br /&gt;it concatenates the filenames intelligently according to the Operating System&lt;br /&gt;detected (in case of -O switch enabled), otherwise, the engine includes all&lt;br /&gt;the defined file sets (Windows, UNIX and Generic).&lt;br /&gt;* -O switch for Operating System (nmap) and -s switch for service detection&lt;br /&gt;* -f switch available to define a specific file name to retrive&lt;br /&gt;* -U and -P switches to supply specific usernames/passwords&lt;br /&gt;* -d switch to specify the desired deep of traversals&lt;br /&gt;(e.g. deep 3 equals to ../../../)&lt;br /&gt;* -t switch to specify the time in milliseconds between each attemp&lt;br /&gt;* -x switch to specify a different TCP/UDP port than the defaults&lt;br /&gt;* -b switch to break after the first vulnerability is found&lt;br /&gt;* -q switch for quiet mode (doesn't print each attemp in STDOUT)&lt;br /&gt;* Special treatment of Slash/Backslash in filenames in order to have a&lt;br /&gt;correct semantic within each traversal string.&lt;br /&gt;* Improvement in the FTP module to compare against the server's response code&lt;br /&gt;instead of vendor-dependent response message (in compliance with RFC 959 FTP)&lt;br /&gt;* Improvement in the parameter passing&lt;br /&gt;* A cool banner was included ;)&lt;br /&gt;&lt;br /&gt;Supported modules:&lt;br /&gt;- HTTP&lt;br /&gt;- HTTP Parameters (url)&lt;br /&gt;- FTP&lt;br /&gt;&lt;br /&gt;And as I said before, a picture is worth a thousand words, I post some screenshots ;) .. Enjoy them !&lt;br /&gt;&lt;br /&gt;DotDotPwn (Usage)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_yWd4rUkBABM/TIm-iu0BIAI/AAAAAAAAAGw/_4Ei2KCsgQs/s1600/ddpwn+usage.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 250px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TIm-iu0BIAI/AAAAAAAAAGw/_4Ei2KCsgQs/s400/ddpwn+usage.jpg" alt="" id="BLOGGER_PHOTO_ID_5515148722582921218" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Traversal Engine (Description)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm-i9fNPlI/AAAAAAAAAG4/NKMHHovZqlA/s1600/traversal+engine+definition.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 293px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm-i9fNPlI/AAAAAAAAAG4/NKMHHovZqlA/s400/traversal+engine+definition.jpg" alt="" id="BLOGGER_PHOTO_ID_5515148726522166866" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Traversal Engine (Resources)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm-kMzAg2I/AAAAAAAAAHA/BYylnuZZNAY/s1600/traversal+engine+resources.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 207px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm-kMzAg2I/AAAAAAAAAHA/BYylnuZZNAY/s400/traversal+engine+resources.jpg" alt="" id="BLOGGER_PHOTO_ID_5515148747811619682" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Traversal Engine (Working [internals])&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm-kY7zu4I/AAAAAAAAAHI/sRQRrlundN4/s1600/traversal+engine.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 250px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm-kY7zu4I/AAAAAAAAAHI/sRQRrlundN4/s400/traversal+engine.jpg" alt="" id="BLOGGER_PHOTO_ID_5515148751069756290" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;OS and Service detection (taken into account in the Traversal Engine for intelligent fuzzing)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm_jePTjwI/AAAAAAAAAH4/0Oo7Sgu_g5c/s1600/ddpwn+os+and+service+detection.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 239px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm_jePTjwI/AAAAAAAAAH4/0Oo7Sgu_g5c/s400/ddpwn+os+and+service+detection.jpg" alt="" id="BLOGGER_PHOTO_ID_5515149834825469698" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;HTTP-Params Module (Description)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_yWd4rUkBABM/TIm_R9y4puI/AAAAAAAAAHQ/CV7fJrdlwzw/s1600/ddpwn+http-params+definition.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 325px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TIm_R9y4puI/AAAAAAAAAHQ/CV7fJrdlwzw/s400/ddpwn+http-params+definition.jpg" alt="" id="BLOGGER_PHOTO_ID_5515149534058555106" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;HTTP-Params Module (Usage)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/_yWd4rUkBABM/TIm_SchpnfI/AAAAAAAAAHY/ivSAhIPiHjQ/s1600/ddpwn+http-params+usage.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 155px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/TIm_SchpnfI/AAAAAAAAAHY/ivSAhIPiHjQ/s400/ddpwn+http-params+usage.jpg" alt="" id="BLOGGER_PHOTO_ID_5515149542307765746" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;HTTP-Params Module (Vulnerabilities found)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/_yWd4rUkBABM/TIm_So_zGzI/AAAAAAAAAHg/lMRWaVHn5ho/s1600/ddpwn+http-params+working+nice.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 207px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/TIm_So_zGzI/AAAAAAAAAHg/lMRWaVHn5ho/s400/ddpwn+http-params+working+nice.jpg" alt="" id="BLOGGER_PHOTO_ID_5515149545655442226" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;FTP Module (Vulnerabilities found, quiet mode and retrieved files)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_yWd4rUkBABM/TIm_TH6XfVI/AAAAAAAAAHo/t4JK2Gsdz7I/s1600/ddpwn+ftp+module+quiet+mode+retrieved+files.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 308px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TIm_TH6XfVI/AAAAAAAAAHo/t4JK2Gsdz7I/s400/ddpwn+ftp+module+quiet+mode+retrieved+files.jpg" alt="" id="BLOGGER_PHOTO_ID_5515149553954159954" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;HTTP Module (Vulnerabilities found)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm_Tq8KMeI/AAAAAAAAAHw/aGA8IvjN_Kw/s1600/ddpwn+http+module.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 217px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TIm_Tq8KMeI/AAAAAAAAAHw/aGA8IvjN_Kw/s400/ddpwn+http+module.jpg" alt="" id="BLOGGER_PHOTO_ID_5515149563356918242" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Well, stay tuned on &lt;span style="font-size:130%;"&gt;&lt;span&gt;&lt;a href="http://chr1x.sectester.net/toolz/ddpwn/" target="_blank"&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-weight: bold;"&gt;http://chr1x.sectester.net/toolz/ddpwn/&lt;/span&gt;&lt;/span&gt;&lt;/a&gt; for the public release ;).&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Keep Fuzz1ng !!!!!! B-/&lt;br /&gt;&lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;nitrØus&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-5570040421243444137?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/5570040421243444137/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/09/dotdotpwn-directory-traversal-fuzzer.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/5570040421243444137'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/5570040421243444137'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/09/dotdotpwn-directory-traversal-fuzzer.html' title='DotDotPwn - The Directory Traversal Fuzzer'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/TIm-iu0BIAI/AAAAAAAAAGw/_4Ei2KCsgQs/s72-c/ddpwn+usage.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-4395417549837828885</id><published>2010-08-26T23:06:00.014-05:00</published><updated>2010-08-27T09:33:05.396-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us chatsubo insecurity security dark labs research hacking hack mexico exploits code programming vulnerability development'/><title type='text'>Chatsubo [(in)Security Dark] Labs say Hi !</title><content type='html'>Well, before I go to bed, I'd like to present my workplace, the :&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-weight: bold;font-size:130%;" &gt;Chatsubo &lt;span style="color: rgb(255, 0, 0);"&gt;[&lt;/span&gt;&lt;span style="color: rgb(255, 255, 0);"&gt;(&lt;/span&gt;&lt;span style="color: rgb(153, 153, 153);"&gt;in&lt;/span&gt;&lt;span style="color: rgb(255, 255, 0);"&gt;)&lt;/span&gt;&lt;span style="color: rgb(153, 153, 153);"&gt;Security Dark&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0);"&gt;]&lt;/span&gt; Labs&lt;/span&gt;.&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/THfL9DEwyiI/AAAAAAAAAGg/Fl16NeLPWOw/s1600/07_chatsubo02-1.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 200px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/THfL9DEwyiI/AAAAAAAAAGg/Fl16NeLPWOw/s400/07_chatsubo02-1.jpg" alt="" id="BLOGGER_PHOTO_ID_5510096918768831010" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;Here, cool stuff happens, insanity crossing the wires, sparks emerging from the keyboards and damn g00d music resounding the walls. Nowadays, distributed in 3 different geographic locations in Mexico, &lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;The Chatsubo Labs&lt;/span&gt; is armed with laptops, servers, desktops, one firewall, one access point, switches and routers. In there, resides research projects, tons and tons of lines of c0de developed by me (&lt;span style="font-weight: bold;"&gt;nitrØus&lt;/span&gt;), a variety of Operating Systems (Solaris, OpenBSD, NetBSD, Minix, Gentoo, Debian, CentOS, n00buntu, RedHat, IOS and probably others) and many virtual machines to have fun as well.&lt;br /&gt;&lt;br /&gt;By now, you may be wondering where the hell the name came from? Well, It's inpired in the bar described early in the Cyberpunk novell &lt;a href="http://en.wikipedia.org/wiki/Neuromancer"&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;Neuromancer&lt;/span&gt;&lt;/a&gt; (William Gibson), &lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(255, 255, 0); font-weight: bold;"&gt;The Chat&lt;/span&gt;&lt;/span&gt; (short of Chatsubo), exists in some particularly dingy corner of Night City, in Chiba, Japan. Then, that's why I liked the name, a concensual hallucination, my meeting place for cyberspace c0wboys and hackers (friends of mine) eager to do interesting stuff.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_yWd4rUkBABM/THfL8oEAl7I/AAAAAAAAAGY/4_hlKpo31Ss/s1600/07_chatsubo03.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 200px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/THfL8oEAl7I/AAAAAAAAAGY/4_hlKpo31Ss/s400/07_chatsubo03.jpg" alt="" id="BLOGGER_PHOTO_ID_5510096911517915058" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;Now, lexicographically speaking, the [] and the () represents nested options, what I mean is that I can call my labs as any of the following ways (which helps me in different situations depending on the context;)):&lt;br /&gt;&lt;span style="color: rgb(255, 0, 0); font-weight: bold;"&gt;- Chatsubo Labs&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0); font-weight: bold;"&gt;- Chatsubo inSecurity Dark Labs&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0); font-weight: bold;"&gt;- Chatsubo Security Dark Labs&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Wanna see?... A picture is worth a thousand words, so, this is it !,  a picture of &lt;span style="font-weight: bold;"&gt;the &lt;/span&gt;&lt;span style="font-weight: bold;"&gt;Chat &lt;/span&gt;that I took a few years ago in one of the currently 3 different geographic locations:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/THdGlh-OKVI/AAAAAAAAAF4/6cLynstZxvE/s1600/Chatsubo+inSecurity+Dark+Labs.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 300px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/THdGlh-OKVI/AAAAAAAAAF4/6cLynstZxvE/s400/Chatsubo+inSecurity+Dark+Labs.jpg" alt="" id="BLOGGER_PHOTO_ID_5509950279699540306" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;The next is a picture of an old laptop where I learned some of  Operating Systems Development and learned how to build my 0wn boot  loader in ASM in a floppy disk (3.5") jeje. With this toy, I used to have fun with my first OpenBSD 3.4 and Red Hat Linux 7.3&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_yWd4rUkBABM/THdH3Ep69RI/AAAAAAAAAGA/t93JkphKunI/s1600/fraktal.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 264px; height: 198px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/THdH3Ep69RI/AAAAAAAAAGA/t93JkphKunI/s400/fraktal.jpg" alt="" id="BLOGGER_PHOTO_ID_5509951680579040530" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;What about decoration???... Well, a jellyfish thank and lavalamp helps to make the &lt;span style="font-weight: bold;"&gt;Chatsubo Labs &lt;/span&gt;a nice place to work:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_yWd4rUkBABM/THdKJvZgyiI/AAAAAAAAAGQ/VJ3jgkpL8bI/s1600/LavaLamp.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 288px; height: 216px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/THdKJvZgyiI/AAAAAAAAAGQ/VJ3jgkpL8bI/s400/LavaLamp.jpg" alt="" id="BLOGGER_PHOTO_ID_5509954200313842210" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/THdKJKuM2_I/AAAAAAAAAGI/7rZlDfDNvNE/s1600/JellyFish+Tank.JPG"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 217px; height: 214px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/THdKJKuM2_I/AAAAAAAAAGI/7rZlDfDNvNE/s400/JellyFish+Tank.JPG" alt="" id="BLOGGER_PHOTO_ID_5509954190468504562" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;Video of the Jellyfish Tank:&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;object style="background-image: url(&amp;quot;http://i1.ytimg.com/vi/XPsc0yUN68k/hqdefault.jpg&amp;quot;);" width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/XPsc0yUN68k?fs=1&amp;amp;hl=es_ES"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;embed src="http://www.youtube.com/v/XPsc0yUN68k?fs=1&amp;amp;hl=es_ES" allowscriptaccess="never" allowfullscreen="true" wmode="transparent" type="application/x-shockwave-flash" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;Finally, if u want 2 add teh labs on ur 0wn website/bl0g, these are the  *official* banners (note my highly specialized graphic design sk1lls in  MS Paint jaja):&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/THdE7fEXWcI/AAAAAAAAAFg/0NNSFiSC1jc/s1600/chatsubo_3.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 397px; height: 141px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/THdE7fEXWcI/AAAAAAAAAFg/0NNSFiSC1jc/s400/chatsubo_3.jpg" alt="" id="BLOGGER_PHOTO_ID_5509948457853868482" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_yWd4rUkBABM/THdFFRNgiVI/AAAAAAAAAFw/O4LAVTxnrXg/s1600/chatsubo_msn.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 255px; height: 251px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/THdFFRNgiVI/AAAAAAAAAFw/O4LAVTxnrXg/s400/chatsubo_msn.jpg" alt="" id="BLOGGER_PHOTO_ID_5509948625932814674" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_yWd4rUkBABM/THdE_Hg7E8I/AAAAAAAAAFo/l5Ljjn_mBDE/s1600/chatsubo_2.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 397px; height: 141px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/THdE_Hg7E8I/AAAAAAAAAFo/l5Ljjn_mBDE/s400/chatsubo_2.jpg" alt="" id="BLOGGER_PHOTO_ID_5509948520250676162" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Keep r0cking !!!!! Ch33rz !&lt;br /&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;- nitrØus&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-4395417549837828885?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/4395417549837828885/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/08/chat-see-light.html#comment-form' title='2 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/4395417549837828885'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/4395417549837828885'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/08/chat-see-light.html' title='Chatsubo [(in)Security Dark] Labs say Hi !'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_yWd4rUkBABM/THfL9DEwyiI/AAAAAAAAAGg/Fl16NeLPWOw/s72-c/07_chatsubo02-1.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-1599234166403669826</id><published>2010-08-24T15:48:00.005-05:00</published><updated>2010-08-24T15:59:14.047-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='apt advanced persistent threat hacking attacks military diplomatic malware'/><title type='text'>Advanced Persistent Threat</title><content type='html'>I was reordering and deleting some old bookmarks, and I found a good article I read the past month about APT.&lt;br /&gt;&lt;br /&gt;For those who haven't heard about it, I suggest u to read this good article...&lt;br /&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 255, 0);font-size:130%;" &gt;&lt;b&gt;Understanding the  advanced persistent threat&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;by: Richard Bejtlich&lt;br /&gt;Issue: Jul 2010&lt;br /&gt;&lt;a href="http://searchsecurity.techtarget.com/magazinePrintFriendly/0,296905,sid14_gci1516312,00.html" target="_blank"&gt;http://searchsecurity.techtarget.com/magazinePrintFriendly/0,296905,sid14_gci1516312,00.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;l8 chr33z !!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-1599234166403669826?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/1599234166403669826/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/08/advanced-persistent-threat.html#comment-form' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/1599234166403669826'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/1599234166403669826'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/08/advanced-persistent-threat.html' title='Advanced Persistent Threat'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-3896674177146180593</id><published>2010-08-08T15:49:00.004-05:00</published><updated>2010-08-08T16:06:35.929-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us john the ripper benchmark cracking hash password brute force ntlm'/><title type='text'>John the Ripper benchmark</title><content type='html'>These are the results of a little benchmark that I performed a couple of months ago.&lt;br /&gt;&lt;br /&gt;Versions that I compiled and tested:&lt;br /&gt;- ANY&lt;br /&gt;- SSE2&lt;br /&gt;- MMX&lt;br /&gt;- NTLM (source code patched to crack NTLM hashes)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(51, 255, 51);"&gt;BENCHMARKING&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;ANY&lt;/span&gt;&lt;br /&gt;Benchmarking: Traditional DES [24/32 4K]... DONE&lt;br /&gt;Many salts:     278297 c/s real, 347004 c/s virtual&lt;br /&gt;Only one salt:  268979 c/s real, 334551 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: BSDI DES (x725) [24/32 4K]... DONE&lt;br /&gt;Many salts:     9484 c/s real, 11738 c/s virtual&lt;br /&gt;Only one salt:  9288 c/s real, 11552 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: FreeBSD MD5 [32/32]... DONE&lt;br /&gt;Raw:    6795 c/s real, 8472 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: OpenBSD Blowfish (x32) [32/32]... DONE&lt;br /&gt;Raw:    409 c/s real, 496 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: Kerberos AFS DES [24/32 4K]... DONE&lt;br /&gt;Short:  266547 c/s real, 331526 c/s virtual&lt;br /&gt;Long:   772505 c/s real, 960827 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: NT LM DES [32/32 BS]... DONE&lt;br /&gt;Raw:    4773K c/s real, 5951K c/s virtual&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;MMX&lt;/span&gt;&lt;br /&gt;Benchmarking: Traditional DES [64/64 BS MMX]... DONE&lt;br /&gt;Many salts:     1041K c/s real, 1301K c/s virtual&lt;br /&gt;Only one salt:  936512 c/s real, 1150K c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: BSDI DES (x725) [64/64 BS MMX]... DONE&lt;br /&gt;Many salts:     34188 c/s real, 42417 c/s virtual&lt;br /&gt;Only one salt:  33753 c/s real, 41982 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: FreeBSD MD5 [32/32]... DONE&lt;br /&gt;Raw:    6794 c/s real, 8425 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: OpenBSD Blowfish (x32) [32/32]... DONE&lt;br /&gt;Raw:    417 c/s real, 520 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: Kerberos AFS DES [48/64 4K MMX]... DONE&lt;br /&gt;Short:  339046 c/s real, 422751 c/s virtual&lt;br /&gt;Long:   1031K c/s real, 1276K c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: NT LM DES [64/64 BS MMX]... DONE&lt;br /&gt;Raw:    8434K c/s real, 10516K c/s virtual&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;SSE2&lt;/span&gt;&lt;br /&gt;Benchmarking: Traditional DES [128/128 BS SSE2]... DONE&lt;br /&gt;Many salts:     2050K c/s real, 2543K c/s virtual&lt;br /&gt;Only one salt:  1760K c/s real, 2194K c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: BSDI DES (x725) [128/128 BS SSE2]... DONE&lt;br /&gt;Many salts:     68352 c/s real, 85014 c/s virtual&lt;br /&gt;Only one salt:  66560 c/s real, 82376 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: FreeBSD MD5 [32/32]... DONE&lt;br /&gt;Raw:    6819 c/s real, 8465 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: OpenBSD Blowfish (x32) [32/32]... DONE&lt;br /&gt;Raw:    417 c/s real, 520 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: Kerberos AFS DES [48/64 4K MMX]... DONE&lt;br /&gt;Short:  339814 c/s real, 420562 c/s virtual&lt;br /&gt;Long:   1025K c/s real, 1279K c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: NT LM DES [128/128 BS SSE2]... DONE&lt;br /&gt;Raw:    9648K c/s real, 11912K c/s virtual&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;NTLM Patch&lt;/span&gt;&lt;br /&gt;Benchmarking: Traditional DES [24/32 4K]... DONE&lt;br /&gt;Many salts:     280217 c/s real, 348529 c/s virtual&lt;br /&gt;Only one salt:  269644 c/s real, 333718 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: BSDI DES (x725) [24/32 4K]... DONE&lt;br /&gt;Many salts:     9659 c/s real, 12013 c/s virtual&lt;br /&gt;Only one salt:  8982 c/s real, 10980 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: FreeBSD MD5 [32/32]... DONE&lt;br /&gt;Raw:    6806 c/s real, 8402 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: OpenBSD Blowfish (x32) [32/32]... DONE&lt;br /&gt;Raw:    417 c/s real, 520 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: Kerberos AFS DES [24/32 4K]... DONE&lt;br /&gt;Short:  265574 c/s real, 331140 c/s virtual&lt;br /&gt;Long:   741427 c/s real, 901979 c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: NT LM DES [32/32 BS]... DONE&lt;br /&gt;Raw:    4750K c/s real, 5836K c/s virtual&lt;br /&gt;&lt;br /&gt;Benchmarking: NT MD4 [Generic 1x]... DONE&lt;br /&gt;Raw:    9549K c/s real, 11906K c/s virtual&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 255, 51); font-weight: bold;"&gt;CRACKING&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;[nitr0us@nectar run]$ ./unshadow ~/passwd ~/shadow  &gt; ~/passshad&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;ANY&lt;/span&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/passshad&lt;br /&gt;Loaded 4 password hashes with 4 different salts (FreeBSD MD5 [32/32])&lt;br /&gt;eilrahc          (charlie)&lt;br /&gt;newpass          (ted)&lt;br /&gt;Bond007          (jim)&lt;br /&gt;virginia         (monk)&lt;br /&gt;guesses: 4  time: 0:00:00:01 100% (2)  c/s: 5654  trying: virginia&lt;br /&gt;&lt;br /&gt;real    0m1.016s&lt;br /&gt;user    0m0.730s&lt;br /&gt;sys     0m0.022s&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;MMX&lt;/span&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/passshad&lt;br /&gt;Loaded 4 password hashes with 4 different salts (FreeBSD MD5 [32/32])&lt;br /&gt;eilrahc          (charlie)&lt;br /&gt;newpass          (ted)&lt;br /&gt;Bond007          (jim)&lt;br /&gt;virginia         (monk)&lt;br /&gt;guesses: 4  time: 0:00:00:00 100% (2)  c/s: 5768  trying: virginia&lt;br /&gt;&lt;br /&gt;real    0m1.008s&lt;br /&gt;user    0m0.695s&lt;br /&gt;sys     0m0.025s&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;SSE2&lt;/span&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/passshad&lt;br /&gt;Loaded 4 password hashes with 4 different salts (FreeBSD MD5 [32/32])&lt;br /&gt;eilrahc          (charlie)&lt;br /&gt;newpass          (ted)&lt;br /&gt;Bond007          (jim)&lt;br /&gt;virginia         (monk)&lt;br /&gt;guesses: 4  time: 0:00:00:00 100% (2)  c/s: 5827  trying: virginia&lt;br /&gt;&lt;br /&gt;real    0m0.984s&lt;br /&gt;user    0m0.734s&lt;br /&gt;sys     0m0.016s&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;NTLM-Patch&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;ANY&lt;/span&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/PWDUMP_OUT.txt&lt;br /&gt;Loaded 7 password hashes with no different salts (NT LM DES [32/32 BS])&lt;br /&gt;PASSWOR          (susan:1)&lt;br /&gt;JOSHUA           (falken)&lt;br /&gt;A                (monk:2)&lt;br /&gt;MASTER1          (george)&lt;br /&gt;VIRGINI          (monk:1)&lt;br /&gt;8                (susan:2)&lt;br /&gt;POOR             (mike)&lt;br /&gt;guesses: 7  time: 0:00:00:01 (3)  c/s: 1560K  trying: 4OUH - POOR&lt;br /&gt;&lt;br /&gt;real    0m1.252s&lt;br /&gt;user    0m0.843s&lt;br /&gt;sys     0m0.043s&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/PWDUMP_OUT.txt --format=nt&lt;br /&gt;Loaded 5 password hashes with no different salts (NT MD4 [Generic 1x])&lt;br /&gt;joshua           (falken)&lt;br /&gt;master1          (george)&lt;br /&gt;virginia         (monk)&lt;br /&gt;passwor8         (susan)&lt;br /&gt;poor             (mike)&lt;br /&gt;guesses: 5  time: 0:00:00:01 (3)  c/s: 1309K  trying: cbc7 - pamc&lt;br /&gt;&lt;br /&gt;real    0m1.474s&lt;br /&gt;user    0m0.952s&lt;br /&gt;sys     0m0.040s&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;MMX&lt;/span&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/PWDUMP_OUT.txt&lt;br /&gt;Loaded 7 password hashes with no different salts (NT LM DES [64/64 BS MMX])&lt;br /&gt;PASSWOR          (susan:1)&lt;br /&gt;JOSHUA           (falken)&lt;br /&gt;A                (monk:2)&lt;br /&gt;MASTER1          (george)&lt;br /&gt;VIRGINI          (monk:1)&lt;br /&gt;8                (susan:2)&lt;br /&gt;POOR             (mike)&lt;br /&gt;guesses: 7  time: 0:00:00:01 (3)  c/s: 1727K  trying: 4OUH - PAVS&lt;br /&gt;&lt;br /&gt;real    0m1.127s&lt;br /&gt;user    0m0.804s&lt;br /&gt;sys     0m0.039s&lt;br /&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/PWDUMP_OUT.txt --format=nt&lt;br /&gt;Loaded 5 password hashes with no different salts (NT MD4 [Generic 1x])&lt;br /&gt;joshua           (falken)&lt;br /&gt;master1          (george)&lt;br /&gt;virginia         (monk)&lt;br /&gt;passwor8         (susan)&lt;br /&gt;poor             (mike)&lt;br /&gt;guesses: 5  time: 0:00:00:01 (3)  c/s: 1426K  trying: cbc7 - pamc&lt;br /&gt;&lt;br /&gt;real    0m1.348s&lt;br /&gt;user    0m1.009s&lt;br /&gt;sys     0m0.040s&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;SSE2&lt;/span&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/PWDUMP_OUT.txt&lt;br /&gt;Loaded 7 password hashes with no different salts (NT LM DES [128/128 BS SSE2])&lt;br /&gt;PASSWOR          (susan:1)&lt;br /&gt;JOSHUA           (falken)&lt;br /&gt;A                (monk:2)&lt;br /&gt;MASTER1          (george)&lt;br /&gt;VIRGINI          (monk:1)&lt;br /&gt;8                (susan:2)&lt;br /&gt;POOR             (mike)&lt;br /&gt;guesses: 7  time: 0:00:00:01 (3)  c/s: 1915K  trying: 4OUH - PRN3&lt;br /&gt;&lt;br /&gt;real    0m1.019s&lt;br /&gt;user    0m0.732s&lt;br /&gt;sys     0m0.030s&lt;br /&gt;&lt;br /&gt;[nitr0us@nectar run]$ time ./john ~/PWDUMP_OUT.txt --format=nt&lt;br /&gt;Loaded 5 password hashes with no different salts (NT MD4 [X86 SSE2 5x])&lt;br /&gt;joshua           (falken)&lt;br /&gt;master1          (george)&lt;br /&gt;virginia         (monk)&lt;br /&gt;passwor8         (susan)&lt;br /&gt;poor             (mike)&lt;br /&gt;guesses: 5  time: 0:00:00:01 (3)  c/s: 1459K  trying: cbjk - pov0&lt;br /&gt;&lt;br /&gt;real    0m1.315s&lt;br /&gt;user    0m0.935s&lt;br /&gt;sys     0m0.046s&lt;br /&gt;&lt;br /&gt;Interesting results ;) ... &lt;span style="font-weight: bold; color: rgb(255, 0, 0);font-size:130%;" &gt;HAPPY CRACKING&lt;/span&gt; !!&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-3896674177146180593?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/3896674177146180593/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/08/john-ripper-benchmark.html#comment-form' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/3896674177146180593'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/3896674177146180593'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/08/john-ripper-benchmark.html' title='John the Ripper benchmark'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-4126755855155927467</id><published>2010-07-29T10:01:00.010-05:00</published><updated>2010-08-07T22:10:59.368-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='risk assessment equation formula threat information security iso 27001'/><title type='text'>Having fun with RISK management equations</title><content type='html'>Have past a few weeks without any post, so, I think it's the time... Today, I'm havin' fun with MS Excel (yes, I'm a &lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;f**ck1ng n00b in Excel&lt;/span&gt;&lt;/span&gt;) calculating and automating some equations for the risk assessment methodology I've created for a company.&lt;br /&gt;&lt;br /&gt;Example of threat evaluation (taken from the Internet):&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_yWd4rUkBABM/TFG6BKlXqxI/AAAAAAAAAD4/fiwfhr6zgsA/s1600/risk.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 146px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TFG6BKlXqxI/AAAAAAAAAD4/fiwfhr6zgsA/s400/risk.JPG" alt="" id="BLOGGER_PHOTO_ID_5499381149179816722" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;The methodology that we created as a team, includes the basic principles of risk management. I've used some references such as NIST-800-30 special publication (&lt;span style="font-style: italic; font-weight: bold;"&gt;Risk Management Guide for Information Technology Systems&lt;/span&gt;), &lt;span style="font-weight: bold; font-style: italic;"&gt;ISO/IEC 27005:2008 Information technology - Security techniques - Information security risk management &lt;/span&gt;and many others documents widespread on the Internet !&lt;br /&gt;&lt;br /&gt;Finally, a few moments ago I optimized an excel formula to automate the process of &lt;span style="font-weight: bold; color: rgb(51, 255, 51);"&gt;THREATS &lt;/span&gt;valuation using their impacts and likelihoods. First, I tried this one:&lt;br /&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;=IF(AND(C4=1,D4=1),1,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt; &lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(AND(C4=2,D4=1),1,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt; IF(AND(C4=3,D4=1),2,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt; IF(AND(C4=1,D4=2),1,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt; &lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(AND(C4=2,D4=2),2,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt; &lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(AND(C4=3,D4=2),3,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt; &lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(AND(C4=1,D4=3),2,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt;&lt;span style="font-weight: bold;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(AND(C4=2,D4=3),3,&lt;/span&gt;&lt;span style="font-family:verdana;"&gt; &lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(AND(C4=3,D4=3),3,0)))))))))&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;But... It's too long, and excel sends u a syntax error. So, I exercised my mind and I could make it easier taking leverage of the boolean operators &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;OR()&lt;/span&gt;&lt;/span&gt; and &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;AND()&lt;/span&gt;&lt;/span&gt; as well as nested &lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(255, 0, 0);"&gt;IF()&lt;/span&gt;&lt;/span&gt; statements.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;=IF(OR(&lt;br /&gt;AND(C4=1,D4=1),&lt;br /&gt;AND(C4=2,D4=1),&lt;br /&gt;AND(C4=1,D4=2)),1,&lt;/span&gt; &lt;span style="font-weight: bold;font-family:verdana;" &gt;&lt;br /&gt;IF(OR(&lt;br /&gt;AND(C4=3,D4=1),&lt;br /&gt;AND(C4=2,D4=2),&lt;br /&gt;AND(C4=1,D4=3)),2,&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;" &gt;IF(OR(&lt;br /&gt;AND(C4=3,D4=2),&lt;br /&gt;AND(C4=2,D4=3),&lt;br /&gt;AND(C4=3,D4=3)),3,0)))&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Works fine !, not a big deal though. As you can see, this is something VERY VERY simple, but I'm pr0ud of my &lt;span style="font-weight: bold; font-style: italic;"&gt;newbie Excel Skillz&lt;/span&gt; jajaj :D...&lt;br /&gt;&lt;br /&gt;Have fun ! ;)&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-4126755855155927467?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/4126755855155927467/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/07/having-fun-with-risk-management.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/4126755855155927467'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/4126755855155927467'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/07/having-fun-with-risk-management.html' title='Having fun with RISK management equations'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/TFG6BKlXqxI/AAAAAAAAAD4/fiwfhr6zgsA/s72-c/risk.JPG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-945025125772980018</id><published>2010-07-11T14:05:00.003-05:00</published><updated>2010-07-11T14:12:40.799-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='new york NY nyc times square terrorism bombing suspect'/><title type='text'>NY Times - Bombing Suspect's Long Path to Times Square</title><content type='html'>This is a picture that I took the past month to a &lt;span style="font-weight: bold; font-style: italic;"&gt;New York Times &lt;/span&gt;newspaper ... I was there a week after the failed attemp..&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;Fuck t3rr0r1st5 !!.. Fuck 'em all !!&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_yWd4rUkBABM/TDoW_xgnXWI/AAAAAAAAADw/_778mjC9008/s1600/DSCF3186.JPG"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 422px; height: 562px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TDoW_xgnXWI/AAAAAAAAADw/_778mjC9008/s400/DSCF3186.JPG" alt="" id="BLOGGER_PHOTO_ID_5492727980409445730" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-945025125772980018?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/945025125772980018/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/07/ny-times-bombing-suspects-long-path-to.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/945025125772980018'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/945025125772980018'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/07/ny-times-bombing-suspects-long-path-to.html' title='NY Times - Bombing Suspect&apos;s Long Path to Times Square'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/TDoW_xgnXWI/AAAAAAAAADw/_778mjC9008/s72-c/DSCF3186.JPG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-4297952565596222977</id><published>2010-06-19T21:55:00.006-05:00</published><updated>2010-06-19T22:35:00.116-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us toronto canada 2600 meeting phreaking car hacking hack pwnage pwn 0wn beige box lineman&apos;s headset insecurity urban exploration'/><title type='text'>2600 m33ting @ Toronto, Canada</title><content type='html'>&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_yWd4rUkBABM/TB2K8NiECtI/AAAAAAAAADo/zuq9J3j754Q/s1600/DSCF3008.JPG"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 300px; height: 400px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TB2K8NiECtI/AAAAAAAAADo/zuq9J3j754Q/s400/DSCF3008.JPG" alt="" id="BLOGGER_PHOTO_ID_5484692688236448466" border="0" /&gt;&lt;/a&gt;me (&lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;nitr0us&lt;/span&gt;) holding a Lineman's Handset (the *LEGAL* beige b0x :D)&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;I spent a great time with some Canadian friends in the monthly Toronto's&lt;span style="color: rgb(51, 255, 51);font-size:180%;" &gt;&lt;a style="font-weight: bold;" href="http://www.2600.org/" target="_blank"&gt; 2600 &lt;/a&gt;&lt;/span&gt;m33ting. It started at 6pm when I arrived to the venue (Free Times Coffee), met Nicholaus and at the same time we asked for organic beer. We talked for about half an hour when another girl &amp;amp; boy arrived to the place =).&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;After that, we &lt;span style="font-size:100%;"&gt;asked for more beer and fries !.. Meanwhile, we were talking about some interesting topics s&lt;/span&gt;uch as Toronto's airport physical insecurity, urban exploration, plants growth, comics, phreaking, electricity, comedy, etc..&lt;br /&gt;&lt;br /&gt;1 hour later, another guy and hi's girlfriend joined us. He was a very interesting guy who brought a &lt;span style="font-size:130%;"&gt;&lt;a style="font-weight: bold;" href="http://en.wikipedia.org/wiki/Lineman%27s_handset" target="_blank"&gt;Lineman's Handset&lt;/a&gt;&lt;/span&gt; (the *LEGAL* beige b0x :D) and knew a looooot of things about phreaking and electricity.&lt;br /&gt;&lt;br /&gt;2 hours later, 2 r&lt;span style="font-size:100%;"&gt;adical guys, dressed all in black (I mean, ALL), I can't remember where they came from, if from Chicago or San Francisco, but anyway... They were there, in Toronto, 'cause of their work: &lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;CAR HA&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;CKING &lt;/span&gt;&lt;/span&gt;=)... Yes, those guys were aliens or something like that, they weren't humans jejeje, they knew a lot of things to hack new and old Cars!!! and also, they carried a lot of cool stuff and devices in their bags ;).. Aw3some shit !!!...&lt;br /&gt;&lt;br /&gt;As you can see, &lt;span style="font-style: italic; font-weight: bold;"&gt;THAT'S HACKING&lt;/span&gt; ... As I said before, hacking is not about 31337 üb3r 0-day exploits and l33tz0r pwnz0r st3alth b4ckd00rz ...&lt;br /&gt;&lt;br /&gt;I had a great and interesting time there !...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_yWd4rUkBABM/TB2Kz421LTI/AAAAAAAAADg/L0rNw5ObVYw/s1600/DSCF3007.JPG"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 300px; height: 400px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/TB2Kz421LTI/AAAAAAAAADg/L0rNw5ObVYw/s400/DSCF3007.JPG" alt="" id="BLOGGER_PHOTO_ID_5484692545247456562" border="0" /&gt;&lt;/a&gt;The venue, Free Times Coffe @ Toronto, Canada&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;Keep rocking !&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-4297952565596222977?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/4297952565596222977/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/06/2600-m33ting-toronto-canada.html#comment-form' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/4297952565596222977'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/4297952565596222977'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/06/2600-m33ting-toronto-canada.html' title='2600 m33ting @ Toronto, Canada'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_yWd4rUkBABM/TB2K8NiECtI/AAAAAAAAADo/zuq9J3j754Q/s72-c/DSCF3008.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-8006304178172157673</id><published>2010-06-01T20:24:00.003-05:00</published><updated>2010-06-01T20:32:39.647-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Trend Micro Data Loss Prevention 5.2 LeakProof Data Leakage data theft spionage vulnerability research exploit vuln-dev hacking'/><title type='text'>Trend Micro Data Loss Prevention 5.2 (formerly LeakProof) Data Leakage</title><content type='html'>I just published a security advisory regarding a vulnerability that I found the last year.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.brainoverflow.org/advisories/TrendMicro_DLP_data_leakage.pdf"&gt;CLICK HERE TO READ IT&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_yWd4rUkBABM/TAW0N_Tc5lI/AAAAAAAAADY/6IN43tWKx7c/s1600/advisory+title.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 367px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/TAW0N_Tc5lI/AAAAAAAAADY/6IN43tWKx7c/s400/advisory+title.jpg" alt="" id="BLOGGER_PHOTO_ID_5477982674190394962" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Keep rocking !!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-8006304178172157673?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/8006304178172157673/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/06/trend-micro-data-loss-prevention-52.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/8006304178172157673'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/8006304178172157673'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/06/trend-micro-data-loss-prevention-52.html' title='Trend Micro Data Loss Prevention 5.2 (formerly LeakProof) Data Leakage'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/TAW0N_Tc5lI/AAAAAAAAADY/6IN43tWKx7c/s72-c/advisory+title.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-7313510140711543640</id><published>2010-05-26T22:55:00.007-05:00</published><updated>2010-05-26T23:06:32.687-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us gpen sans giac certified penetration tester advanced pentester pentest pentesting hacker ethical hacking pwnage 0wnage ownage'/><title type='text'>I'm a GPEN now ! ;)</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_yWd4rUkBABM/S_3uW63qLLI/AAAAAAAAADQ/xddgfJtCF5Y/s1600/GPEN.jpg"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 326px; height: 326px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/S_3uW63qLLI/AAAAAAAAADQ/xddgfJtCF5Y/s400/GPEN.jpg" alt="" id="BLOGGER_PHOTO_ID_5475794799479631026" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Today I presented the 4-hour &lt;a style="color: rgb(51, 255, 51); font-weight: bold;" href="http://www.giac.org/certifications/security/GPEN.php"&gt;GPEN Certification&lt;/a&gt; exam (by &lt;a style="font-weight: bold; color: rgb(51, 255, 51);" href="http://www.sans.org/"&gt;SANS Institute&lt;/a&gt;), and finished it in 1 1/4 hours, yes, Childs play (hehe just kidding).&lt;br /&gt;&lt;br /&gt;I like this certification, 'cause is one of the most advanced in the market and also, demand very realistics &lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;hardc0re n1nj4 h4cking skillz&lt;/span&gt;&lt;/span&gt; that &lt;span style="font-weight: bold;"&gt;MUST &lt;/span&gt;be presented in all the (supposedly) &lt;span style="font-weight: bold;"&gt;EXPERT PENETRATION TESTERS&lt;/span&gt; xDDD !...&lt;br /&gt;&lt;br /&gt;But anyway =) ... keep pwning&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-7313510140711543640?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/7313510140711543640/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/05/im-gpen-now.html#comment-form' title='2 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7313510140711543640'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7313510140711543640'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/05/im-gpen-now.html' title='I&apos;m a GPEN now ! ;)'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_yWd4rUkBABM/S_3uW63qLLI/AAAAAAAAADQ/xddgfJtCF5Y/s72-c/GPEN.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-3408492290757022310</id><published>2010-05-11T19:22:00.006-05:00</published><updated>2010-05-18T21:26:34.589-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='sans 560 CTF penetration testing ethical hacking training course capture the flag hacking pwnage own pwn exploit'/><title type='text'>SANS Toronto - I got the Flag in the CTF ! ;)</title><content type='html'>Well, I'd like to post my experience at &lt;a href="http://www.sans.org/security-training/network-penetration-testing-ethical-hacking-937-mid"&gt;SANS 560&lt;/a&gt; CTF (Captuer The Flag), which was held on May 10th at the Intercontinental Toroton Centre in Toronto, Canada.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/S_NL2mkyD6I/AAAAAAAAADI/Z3d_1Db30Hc/s1600/DSCF3095.JPG"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 400px; height: 300px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/S_NL2mkyD6I/AAAAAAAAADI/Z3d_1Db30Hc/s400/DSCF3095.JPG" alt="" id="BLOGGER_PHOTO_ID_5472801373625126818" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Everything started at 9 am and 4 specially configured &amp;amp; hardened servers and 2 routers were setup in order to break into them. Anyway, it was one of the most challenging CTF's I ever had, 'cause I showed up my &lt;span style="color: rgb(51, 255, 51);"&gt;COMPLETE NINJA SKILL-SET&lt;/span&gt; B-D !!.. yeahh baby !!&lt;br /&gt;&lt;br /&gt;Well, the challenge was about to get a 4-times GPG encrypted file, by different people, and then, decrypt it in the inverse order it was encrypted. So, the challenge was to obtain the public and private keys from the 4 different users from the Windows and Linux b0xes.&lt;br /&gt;&lt;br /&gt;Ready, set, go !!... Then, I started my &lt;span style="font-weight: bold; font-style: italic; color: rgb(255, 0, 0);font-size:130%;" &gt;ninjutsu h4ck1ng&lt;/span&gt;, and also, I had no time to eat, nor time to go to the restroom, I had only time to go for phree c0ffee while my GBs of RAM-resident rainbow tables were destroying some NTLM hashes and my source-c0de patch3d John the ripp3r was cracking others *UNIX accounts.&lt;br /&gt;&lt;br /&gt;So, teh hard work was based on some of the f0llowing n1nj4 skillz:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;MOSTLY  &lt;span style="font-weight: bold;"&gt;TACTICAL EXPLOITATION&lt;/span&gt; (yes, use of the BRAIN)&lt;/li&gt;&lt;li&gt;netcat hardc0re ninj4 hacking, using *NIX backpipes (&lt;span style="font-weight: bold;"&gt;$man mknod&lt;/span&gt; with the 'p' parameter for n00bz) in order to chain different b0xes/ports to bypass FW rules..&lt;/li&gt;&lt;li&gt;Hardc0re packet analysis, specifically capturing traffic with tcpdump with very specific pcap filters and sending the output somewhere you can reach it through a wind0wz machine in order to analyze all the traffic so as to detect a specific pattern to continue the attack against other servers (LOT OF PEOPLE &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;DIED &lt;/span&gt;&lt;/span&gt;HERE xDDD, n000bz)&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Very Rude ! UNIX commands !!! (not for newbies B-D !! like j00 !!!) and STDIN, STDOUT, STDERR deeeeeeeeeeeep knowledge&lt;/li&gt;&lt;li&gt;Rem0te and privilege scalation Exploits' source code modification and compilation...&lt;/li&gt;&lt;li&gt;iptables knowledge in order to append some SPECIFIC rule sets (no &lt;span style="font-weight: bold; font-style: italic;"&gt;iptables -F&lt;/span&gt; allowed for kiddies xDDD)&lt;/li&gt;&lt;li&gt;Using l33t techn1quez like &lt;span style="font-style: italic; font-weight: bold; color: rgb(51, 255, 51);"&gt;passing-the-hash to SMB &lt;/span&gt;services to PWN other win b0xez !! ;)&lt;span style="font-style: italic; font-weight: bold; color: rgb(51, 255, 51);"&gt; &lt;/span&gt;(yes n00b, I know it's the first time you read about it  xDDD)&lt;/li&gt;&lt;li&gt;d3crypting files using stolen public and private GPG keys (yes, I know, it was the easy part =D)&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;At the end, after of 6:30 hours of non-stopin' &lt;span style="font-weight: bold;font-size:180%;" &gt;PWNAGE&lt;/span&gt;, I got teh madafakin' Flag ! ;) !!&lt;br /&gt;&lt;br /&gt;Keep r0cking !! B-) !&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-3408492290757022310?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/3408492290757022310/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/05/sans-toronto-i-got-flag-in-ctf.html#comment-form' title='1 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/3408492290757022310'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/3408492290757022310'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/05/sans-toronto-i-got-flag-in-ctf.html' title='SANS Toronto - I got the Flag in the CTF ! ;)'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_yWd4rUkBABM/S_NL2mkyD6I/AAAAAAAAADI/Z3d_1Db30Hc/s72-c/DSCF3095.JPG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-7259759610981857089</id><published>2010-04-30T20:03:00.006-05:00</published><updated>2010-04-30T20:14:26.938-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='cissp certified information systems security professional certification book industry money'/><title type='text'>c155p... my next challenge ! 4 phun &amp; pr0fit</title><content type='html'>Hi all, a couple of days ago, I bought the "&lt;a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178/ref=sr_1_1?ie=UTF8&amp;amp;s=books&amp;amp;qid=1271612746&amp;amp;sr=1-1"&gt;CISSP All-in-one Exam Guide, 5th Edition (Hardcover)&lt;/a&gt;" by Shon Harris , yes, the &lt;span style="color: rgb(255, 0, 0);"&gt;*NEW*&lt;/span&gt; edition (2010). So, i'll have a lot of fun reading 1216 pages about "&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;5ecur1ty&lt;/span&gt;&lt;/span&gt;" in the next months, and then, I'll try to obtain the certificate jeje ... For fun.. and for FUCKING pr0fit !! yeahh !!! xDD&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_yWd4rUkBABM/S9t_aoEz1sI/AAAAAAAAAC4/ok0GUNymw9o/s1600/DSCF2003.JPG"&gt;&lt;img style="cursor: pointer; width: 400px; height: 300px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/S9t_aoEz1sI/AAAAAAAAAC4/ok0GUNymw9o/s400/DSCF2003.JPG" alt="" id="BLOGGER_PHOTO_ID_5466102668155147970" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_yWd4rUkBABM/S9t_h8y_FHI/AAAAAAAAADA/wVk5zgwtBuI/s1600/DSCF2005.JPG"&gt;&lt;img style="cursor: pointer; width: 400px; height: 300px;" src="http://4.bp.blogspot.com/_yWd4rUkBABM/S9t_h8y_FHI/AAAAAAAAADA/wVk5zgwtBuI/s400/DSCF2005.JPG" alt="" id="BLOGGER_PHOTO_ID_5466102793976616050" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-7259759610981857089?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/7259759610981857089/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/c155p-my-next-challenge-4-phun-pr0fit.html#comment-form' title='6 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7259759610981857089'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7259759610981857089'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/c155p-my-next-challenge-4-phun-pr0fit.html' title='c155p... my next challenge ! 4 phun &amp; pr0fit'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/S9t_aoEz1sI/AAAAAAAAAC4/ok0GUNymw9o/s72-c/DSCF2003.JPG' height='72' width='72'/><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-7053791087802539662</id><published>2010-04-22T11:52:00.007-05:00</published><updated>2010-04-22T12:39:58.639-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='xor swap algorithm intercambio swapping variables C programming c0ding coding maths math science'/><title type='text'>XOR Swap Algorithm</title><content type='html'>20 minutes before I got to work, I was tackling against a couple of Mexico City's traffic jams !! and then, I recalled a simple but pretty cool algorithm I used like 5 years ago to swap 2 different variables &lt;span style="font-weight: bold;"&gt;without using a temporary&lt;/span&gt; &lt;span style="font-weight: bold;"&gt;one&lt;/span&gt;. If you're new at programming, there exist a variety of such algorithms, more commonly referred as &lt;a style="font-weight: bold;" href="http://en.wikipedia.org/wiki/Sorting_algorithm"&gt;Sorting Algorithms&lt;/a&gt;, and most of them use a &lt;span style="font-weight: bold;"&gt;temporary variable&lt;/span&gt; in order to swap the values they have, so, if u want to optimize your &lt;span style="font-weight: bold; color: rgb(255, 255, 0);"&gt;c0de and n1nj4 skillz&lt;/span&gt; ;) take a look at this !..&lt;br /&gt;&lt;br /&gt;This is the &lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;XOR Swap Algorithm&lt;/span&gt;, and instead I explain it... A picture is worth a thousand words ;) ...&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_yWd4rUkBABM/S9CAPc_tsXI/AAAAAAAAACo/QBd3qWUd-eE/s1600/xor+swap.JPG"&gt;&lt;img style="cursor: pointer; width: 239px; height: 121px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/S9CAPc_tsXI/AAAAAAAAACo/QBd3qWUd-eE/s400/xor+swap.JPG" alt="" id="BLOGGER_PHOTO_ID_5463007350970233202" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;As you can see, it's mathematically simple, and below you can see the c0de &amp;amp; screensh0t I took a few minutes before ...&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/S9CImLhT-DI/AAAAAAAAACw/75c1NTek5pw/s1600/xor_swap.bmp"&gt;&lt;img style="cursor: pointer; width: 400px; height: 392px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/S9CImLhT-DI/AAAAAAAAACw/75c1NTek5pw/s400/xor_swap.bmp" alt="" id="BLOGGER_PHOTO_ID_5463016537509328946" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;Keep h4cking !!&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-7053791087802539662?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/7053791087802539662/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/xor-swap-algorithm.html#comment-form' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7053791087802539662'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7053791087802539662'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/xor-swap-algorithm.html' title='XOR Swap Algorithm'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_yWd4rUkBABM/S9CAPc_tsXI/AAAAAAAAACo/QBd3qWUd-eE/s72-c/xor+swap.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-7053523384923546410</id><published>2010-04-17T18:35:00.007-05:00</published><updated>2010-04-17T18:46:10.939-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='31337 l33t 1337 order movies cinema movie teather hilarious funny voucher'/><title type='text'>31337 order at Cinépolis</title><content type='html'>Yes! that'z right, more than a year ago, I received the order number &lt;span style="font-weight: bold; color: rgb(51, 255, 51);font-size:130%;" &gt;31337&lt;/span&gt; !!! just imagine the number of posibilities, thousands of people buyin' shit at the cinema, hundres of malls within a movie theater, thousands of orders !!! pfff, and yes, teh fate, my fate, did the work !! B-D !...&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_yWd4rUkBABM/S8pGvRj5uTI/AAAAAAAAACg/2jDdeB5oBN8/s1600/31337+Order+by+nitr0us+2.jpg"&gt;&lt;img style="cursor: pointer; width: 277px; height: 439px;" src="http://3.bp.blogspot.com/_yWd4rUkBABM/S8pGvRj5uTI/AAAAAAAAACg/2jDdeB5oBN8/s400/31337+Order+by+nitr0us+2.jpg" alt="" id="BLOGGER_PHOTO_ID_5461255276121930034" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;Who one else better than me would receive "&lt;span style="font-weight: bold;"&gt;teh number&lt;/span&gt;" jajaj &lt;span style="color: rgb(255, 0, 0); font-weight: bold;"&gt;none&lt;/span&gt; !! that's right xDDD.. just kidding !!! ... someday, u'll have one too ... just fucking kidding again jajajajajja !!!! xDDDDD ..&lt;br /&gt;&lt;br /&gt;Afterall, I still have the voucher in my wallet =D !&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-7053523384923546410?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/7053523384923546410/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/31337-order-at-cinepolis.html#comment-form' title='2 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7053523384923546410'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/7053523384923546410'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/31337-order-at-cinepolis.html' title='31337 order at Cinépolis'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_yWd4rUkBABM/S8pGvRj5uTI/AAAAAAAAACg/2jDdeB5oBN8/s72-c/31337+Order+by+nitr0us+2.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-6240808438734282529</id><published>2010-04-12T09:04:00.004-05:00</published><updated>2010-04-12T10:54:38.307-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='_init coding c0ding exploiting research shared libraries glibc elf'/><title type='text'>Exploiting apps replacing _init through shared libraries</title><content type='html'>Yes, an old topic, but this time, with a different and interesting approach. This time, &lt;span style="font-weight: bold;"&gt;Rh0&lt;/span&gt; found a new attack vector, taking advantage of Glibc's shared library.&lt;br /&gt;&lt;br /&gt;It reminds me the old &lt;span style="font-weight: bold;"&gt;LD_PRELOAD &lt;/span&gt;technique ;). Anyway, this time, everything is on dlopen(3), so, let's take a look into the man-page:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;"The four functions &lt;/span&gt;&lt;b style="font-style: italic;"&gt;dlopen&lt;/b&gt;&lt;span style="font-style: italic;"&gt;(), &lt;/span&gt;&lt;b style="font-style: italic;"&gt;dlsym&lt;/b&gt;&lt;span style="font-style: italic;"&gt;(), &lt;/span&gt;&lt;b style="font-style: italic;"&gt;dlclose&lt;/b&gt;&lt;span style="font-style: italic;"&gt;(), &lt;/span&gt;&lt;b style="font-style: italic;"&gt;dlerror&lt;/b&gt;&lt;span style="font-style: italic;"&gt;() implement  the interface to the dynamic linking loader...  &lt;/span&gt;&lt;span style="font-style: italic;"&gt;The function &lt;/span&gt;&lt;b style="font-style: italic;"&gt;dlopen&lt;/b&gt;&lt;span style="font-style: italic;"&gt;() loads the dynamic library file named by the  null-terminated string &lt;/span&gt;&lt;i style="font-style: italic;"&gt;filename&lt;/i&gt;&lt;span style="font-style: italic;"&gt; and returns an opaque "handle" for the dynamic library."&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Independently the binary was compiled with &lt;b&gt;RTLD_LAZY &lt;/b&gt;(Lazy Binding) or &lt;b&gt;RTLD_NOW&lt;/b&gt;, the dynamic linker always execute the content of &lt;span style="font-weight: bold;"&gt;_init&lt;/span&gt;, which in a C programm it's defined by the function with the attribute &lt;b&gt;__attribute__((constructor))&lt;/b&gt; assigned.&lt;br /&gt;&lt;br /&gt;So, I tested this in my leasure time and the results are displayed in the next screensh0t.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_yWd4rUkBABM/S8NBW6rweWI/AAAAAAAAACQ/FEux7pF-KzU/s1600/_init.bmp"&gt;&lt;img style="cursor: pointer; width: 400px; height: 300px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/S8NBW6rweWI/AAAAAAAAACQ/FEux7pF-KzU/s400/_init.bmp" alt="" id="BLOGGER_PHOTO_ID_5459279035268888930" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_yWd4rUkBABM/S8NBXFNjrfI/AAAAAAAAACY/wS9mbFq2HC0/s1600/codes.bmp"&gt;&lt;img style="cursor: pointer; width: 400px; height: 300px;" src="http://1.bp.blogspot.com/_yWd4rUkBABM/S8NBXFNjrfI/AAAAAAAAACY/wS9mbFq2HC0/s400/codes.bmp" alt="" id="BLOGGER_PHOTO_ID_5459279038095011314" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;ch33rz!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-6240808438734282529?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/6240808438734282529/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/exploiting-apps-replacing-init-through.html#comment-form' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/6240808438734282529'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/6240808438734282529'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/exploiting-apps-replacing-init-through.html' title='Exploiting apps replacing _init through shared libraries'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_yWd4rUkBABM/S8NBW6rweWI/AAAAAAAAACQ/FEux7pF-KzU/s72-c/_init.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-2998537436662410184</id><published>2010-04-11T21:42:00.003-05:00</published><updated>2010-04-11T21:46:51.921-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='hacker c-level ceo cio chief ciso cso presentation speech mba anahuac'/><title type='text'>From Hacker to C-Level</title><content type='html'>This is the latest speech I gave. It was given in the Master of Business Administration at Universidad Anáhuac, a couple of months ago.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.brainoverflow.org/presentations/TOPICOS%20SELECTOS%20-%20DE%20HACKER%20A%20C-LEVEL%20-%20MBA%20ANAHUAC.pdf"&gt;CLICK HERE TO DOWNLOAD THE PRESENTATION&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_yWd4rUkBABM/S8KJTGq9YlI/AAAAAAAAACI/s9Z8wKIKiuk/s1600/hacker2clevel.jpg"&gt;&lt;img style="cursor: pointer; width: 400px; height: 299px;" src="http://2.bp.blogspot.com/_yWd4rUkBABM/S8KJTGq9YlI/AAAAAAAAACI/s9Z8wKIKiuk/s400/hacker2clevel.jpg" alt="" id="BLOGGER_PHOTO_ID_5459076659627778642" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;Any comments, suggestions, or anything ... send them 2 me !&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-2998537436662410184?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/2998537436662410184/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/from-hacker-to-c-level.html#comment-form' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/2998537436662410184'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/2998537436662410184'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/from-hacker-to-c-level.html' title='From Hacker to C-Level'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_yWd4rUkBABM/S8KJTGq9YlI/AAAAAAAAACI/s9Z8wKIKiuk/s72-c/hacker2clevel.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8108600773362279998.post-2551003041470376507</id><published>2010-04-08T14:36:00.005-05:00</published><updated>2010-04-08T14:46:15.268-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nitr0us nitrous blog hacking security research exploits mexico advisories mexican hacker code programming unix linux kernel 31337 elite l33t 1337'/><title type='text'>Welcome</title><content type='html'>&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.govoid.es/wp-content/uploads/2009/11/hacker.gif"&gt;&lt;img style="cursor: pointer; width: 229px; height: 229px;" src="http://www.govoid.es/wp-content/uploads/2009/11/hacker.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;Hi all,&lt;br /&gt;&lt;br /&gt;Welcome 2 my bl0g, yes, I'll retake it 'cause I removed the last I had (~4 years ago).. Anyway, I'll write in english 'cause I've to improve it ...&lt;br /&gt;&lt;br /&gt;In this little internet corner, you'll find some things I've found interesting, voodoo, hilarious, complex, weird, cool, etc etc, and all about hacking, research, c0ding, security, inse-fucking-curity, voodoo coding shits, presentations, projectz, blah blah !!..&lt;br /&gt;&lt;br /&gt;Hope u enj0y it !!&lt;br /&gt;&lt;br /&gt;Kind regards madafakaz !!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8108600773362279998-2551003041470376507?l=chatsubo-labs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://chatsubo-labs.blogspot.com/feeds/2551003041470376507/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/welcome.html#comment-form' title='2 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/2551003041470376507'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8108600773362279998/posts/default/2551003041470376507'/><link rel='alternate' type='text/html' href='http://chatsubo-labs.blogspot.com/2010/04/welcome.html' title='Welcome'/><author><name>nitrØus</name><uri>http://www.blogger.com/profile/15550961026293815423</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='32' src='http://4.bp.blogspot.com/-mGCk2liAeZE/TiMf899HDEI/AAAAAAAAAKI/pcmMNZPbx-4/s220/bc10_1.jpg'/></author><thr:total>2</thr:total></entry></feed>
