Friday, April 24, 2009

Mac's hacked makes bot net snacks.

To be honest, I am not much of a Mac person-when I have supported them, the end users were always fanatics. But I was always trying to right click..

So with some schadenfreude..
<>

Wednesday, April 22, 2009

RSA 2009 smaller, but still interesting.

For the forensics guys, not that much to see. Guidance was missing, but Access Data brought a boothful of folks. Mandiant had a half a dozen. Paraben had one guy-but he was from another company or something.

Most interesting stuff were the biometric access devices-one based on the vein pattern in your palm.

Groove on hippie chicks.

Wednesday, April 15, 2009

Tuesday, April 14, 2009

Forensics User Group Meetup at the RSA Conference?


Looking for other folks in the SF Bay area who are interested in computer forensics. For the fifth year in a row, I am going to the outstanding RSA conference at Moscone Center in SF. Probably would like to meet up with others on Tuesday.

Cyber Security Bulletin SB09-103

Vulnerability Summary for the Week of April 6, 2009
Post link

Need a bookkeeper?

So what I like to do is try and guess which job ads published on Craigslists are scams. If I see something that is fishy, I will send a blank email with a header that matches the job ad. Usually, I will then get back a response about the old keep 10% scam.

Monday, April 13, 2009

Boston College Student's Computer Search.

http://www.eff.org/files/filenode/inresearchBC/EXHIBIT-A.pdf

Basketball coach accused of CP.

PLAISTOW, N.H. -- A middle school teacher and coach was placed on leave Monday, accused of possessing child pornography.

Scott Buatti, a teacher and girl's basketball coach at Timberlane Regional Middle School, faces 10 indictments on child pornography charges after authorities said they a uncovered pornographic video of underage girls on his home computer.
Link to story.

Wednesday, April 8, 2009

Breaking into the data centers...

This is a great reason not to let just anyone into your data center. Seems that a tech guy showed up after hours to fix the servers...

Click here

Exclusive: U.S. Sailor Conducted Espionage on Behalf of al Qaeda

Story link

Cyberspies penetrate electrical grid: report

Story link from Reuters.

Sounds like infrastructure hacking.

News: FBI new regional lab accredited.

FBI lab

News: Arkansas lab overloaded by CP.

The Fort Smith, Arkansas police lab is overwhelmed with CP cases...

Story says that 85% of the cases involve potential CP. Which just points to the need for more certified examiners in the police field.

Fort Smith PD
TV link

http://www.4029tv.com/news/19121914/detail.html

Sunday, April 5, 2009

Book Review:No Tech Hacking by Johnny Long

No Tech Hacking: A Guide to Social Engineering, Dumpster Diving, and Shoulder Surfing

Read in a bookstore yesterday...

The book is an expansion of the DefCon video found on YouTube-http://www.youtube.com/watch?v=5CWrzVJYLWw

It is pretty good book, but probably not for buying. If you see the video, you get the general idea.

The book is probably better to scare IT managers and users with. The book goes into to good detail about physical security penetration. I liked how Johnny was able to grab great amounts of information about security from merely observing badges and parking stickers.

Worth a look.

CSI Stick off of Ebay for $75.

The other day, I got a CSI stick off of Ebay for $75. It seems to work fine, but I am waiting for the software from Paraben.

Wednesday, April 1, 2009

The Wiebetech Ultraduck.


This is another reason why Wiebetech is such a great company, none of the other forensics guys seem to have a sense of humor. They sent me an email to tell me about it.

Quack, quack, etc.