<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;DEIMRXkzfip7ImA9WhVbEEg.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612</id><updated>2012-05-26T15:23:04.786-03:00</updated><category term="TJX" /><category term="flash" /><category term="sox" /><category term="registro" /><category term="postgres" /><category term="hotmail" /><category term="kasumi" /><category term="logs" /><category term="fingerprinting" /><category term="aquisição" /><category term="flexispy" /><category term="dnschanger" /><category term="belkasoft" /><category term="desafios" /><category term="cnasi" /><category term="openvas" /><category term="etld" /><category term="engenharia reversa" /><category term="ameaça" /><category term="wpa2" /><category term="eff" /><category term="CyberCrime" /><category term="consciência situacional" /><category term="winacq" /><category term="f-secure" /><category term="eset" /><category term="bluepill" /><category term="irã" /><category term="ploks" /><category term="decaf" /><category term="assinaturas" /><category term="win32dd" /><category term="klaus steding-jessen" /><category term="emprego" /><category term="conficker" /><category term="cerberus" /><category term="forense corporativa" /><category term="mit" /><category term="BIOS" /><category term="visa" /><category term="patch" /><category term="locaweb" /><category term="treinamento" /><category term="venere" /><category term="IPv6" /><category term="pki" /><category term="nsa" /><category term="r2d2" /><category term="segurança por obscuridade" /><category term="visualize" /><category term="USSTRATCOM" /><category term="ssd" /><category term="blackhat seo" /><category term="java" /><category term="Gene Spafford" /><category term="metasploit" /><category term="elcomsoft" /><category term="wireshark" /><category term="apwg" /><category term="networking" /><category term="ms08-033" /><category term="kits" /><category term="australia" /><category term="sting" /><category term="antisec" /><category term="squid" /><category term="lockheed martin" /><category term="online" /><category term="oisf" /><category term="cucko´s egg" /><category term="superinteressante" /><category term="bloqueador de escrita" /><category term="citrix" /><category term="auditoria" /><category term="mac" /><category term="waf" /><category term="Netwtiness" /><category term="j2ee" /><category term="censura" /><category term="immunity" /><category term="pentest" /><category term="investimento" /><category term="dan geer" /><category term="google" /><category term="RH2.5" /><category term="sha1" /><category term="forense de rede" /><category term="capacidade" /><category term="lógica" /><category term="escola nacional de defesa cibernetica" /><category term="rsa" /><category term="Stratfor" /><category term="truecrypt" /><category term="SDDFJ" /><category term="usa" /><category term="segurança de rede" /><category term="hope" /><category term="renault" /><category term="baixaki" /><category term="quebra de sigilo" /><category term="pymail" /><category term="ips" /><category term="sri" /><category term="policia civil" /><category term="mindmap" /><category term="fraude" /><category term="evil maid" /><category term="sc magazine" /><category term="IJDCF" /><category term="enisa" /><category term="provedores" /><category term="shodan" /><category term="terra" /><category term="roi" /><category term="crise" /><category term="wasc" /><category term="mandiant" /><category term="wargaming" /><category term="caine" /><category term="afflib" /><category term="e-evidence" /><category term="backdoor" /><category term="sift" /><category term="magic lantern" /><category term="usb" /><category term="senasic" /><category term="psyb0t" /><category term="impacto" /><category term="coldboot" /><category term="0-day" /><category term="scm" /><category term="português" /><category term="ghostnet" /><category term="celular" /><category term="kntools" /><category term="forensic focus" /><category term="ddos" /><category term="oi" /><category term="ICS" /><category term="carnegie mellon" /><category term="trend micro" /><category term="negação de serviço" /><category term="regex" /><category term="comsic" /><category term="ceic" /><category term="phishing" /><category term="DoD" /><category term="pentesting" /><category term="ntlm" /><category term="sql" /><category term="renato maia" /><category term="unix" /><category term="avi rubin" /><category term="takedown" /><category term="twitter" /><category term="insecure magazine" /><category term="engenharia elétrica" /><category term="virus" /><category term="compliance" /><category term="shmoocon" /><category term="lm" /><category term="AppleGate" /><category term="ferramenta" /><category term="relatório" /><category term="gmail" /><category term="urna eletrônica" /><category term="AR-Drone" /><category term="mobile" /><category term="Craig Wright" /><category term="WPS" /><category term="cache poisoning" /><category term="live cd" /><category term="INFOSEG" /><category term="policia federal" /><category term="telefônica" /><category term="bitlocker" /><category term="grampo" /><category term="chris paget" /><category term="ambev" /><category term="Audit Viewer" /><category term="polypack" /><category term="secunia" /><category term="web 2.0" /><category term="httpry" /><category term="defacement" /><category term="pedofilia" /><category term="estatísticas" /><category term="firmware" /><category term="iPhoneTracker" /><category term="cpbr" /><category term="whitelisting" /><category term="FACE" /><category term="mcafee" /><category term="downadup" /><category term="autonomous systems" /><category term="votação" /><category term="marcapasso" /><category term="sites" /><category term="autenticação" /><category term="volatility" /><category term="cliff stoll" /><category term="wikileaks" /><category term="aduc" /><category term="SbSeg" /><category term="intenção" /><category term="exploit-db" /><category term="zdi" /><category term="TPM" /><category term=".mil" /><category term=".pac" /><category term="carnivore" /><category term="Asterisk" /><category term="openssl" /><category term="governo" /><category term="darkmarket" /><category term="unb" /><category term="comodo" /><category term="memscript" /><category term="hackerazzi" /><category term="cooperação" /><category term="dimmit" /><category term="wigle" /><category term="android" /><category term="bundestrojaner" /><category term="intel" /><category term="software" /><category term="venda de senhas" /><category term="ids" /><category term="ssl" /><category term="hacktivismo" /><category term="phonecrypt" /><category term="exploit" /><category term="fatal error" /><category term="spyeye" /><category term="javascript" /><category term="gpcode" /><category term="fast flux" /><category term="smartcard" /><category term="falso positivo" /><category term="topcell gsm" /><category term="fbi" /><category term="hosts" /><category term="skype" /><category term="evento" /><category term="hitler" /><category term="richard bejtlich" /><category term="winen" /><category term="spoofing" /><category term="panda" /><category term="gpl" /><category term="resposta a incidentes" /><category term="full disk encryption" /><category term="txtBBSpy" /><category term="amazon" /><category term="hakin9" /><category term="blacklist" /><category term="owasp" /><category term="guerra" /><category term="otp" /><category term="windows" /><category term="poisoning attack" /><category term="direito digital" /><category term="honeypot" /><category term="diário oficial" /><category term="Fred Cohen" /><category term="jacomo dimmit" /><category term="heap spray" /><category term="sanitização" /><category term="revista" /><category term="ICOFCS" /><category term="mitigação" /><category term="stj" /><category term="man in the middle" /><category term="anti-forense" /><category term="fud" /><category term="daemonlogger" /><category term="internet explorer" /><category term="nmap" /><category term="comodobr" /><category term="kevin mandia" /><category term="iccyber" /><category term="mawlare" /><category term="bbc" /><category term="nessus" /><category term="hbgary" /><category term="forense de vídeo" /><category term="adobe flash" /><category term="adobe reader" /><category term="blind sql injection" /><category term="street view" /><category term="algoritmo" /><category term="stuxnet" /><category term="pattern matching" /><category term="dfrws" /><category term="asprox" /><category term="cellebrite" /><category term="espionagem industrial" /><category term="fuzzy" /><category term="payback" /><category term="suricata" /><category term="realengo" /><category term="campus party" /><category term="loic" /><category term="netcontinuum" /><category term="dnssec" /><category term="rbn" /><category term="carbon black" /><category term="engenharia social" /><category term="https" /><category term="chromium" /><category term="windows7" /><category term="centera" /><category term="crackers" /><category term="rio de janeiro" /><category term="slideshare" /><category term="dnsbl" /><category term="idefense" /><category term="dpf" /><category term="forensicswiki" /><category term="netflow" /><category term="jaquith" /><category term="cuckoo" /><category term="avg" /><category term="Virustotal" /><category term="PL84/99" /><category term="harlan carvey" /><category term="APURA" /><category term="tools" /><category term=".gov" /><category term="dlp" /><category term="ironport" /><category term="drwxr" /><category term="pwn2own" /><category term="CDCiber" /><category term="blackhat" /><category term="malware" /><category term="hash" /><category term="dancho danchev" /><category term="convergence" /><category term="marcos ferrari" /><category term="nac" /><category term="memoria" /><category term="legislação" /><category term="perforce" /><category term="exploit kit" /><category term="chrome" /><category term="birthday attack" /><category term="bulk_extractor" /><category term="digital intelligence" /><category term="backtrack" /><category term="visualização" /><category term="techbiz" /><category term="securid" /><category term="xerxes" /><category term="atenção seletiva" /><category term="tizor" /><category term="dumpcap" /><category term="vazamento de informações" /><category term="forense digital" /><category term="pci" /><category term="technosecurity" /><category term="carders" /><category term="spam" /><category term="monitoração" /><category term="BSIMM" /><category term="tresor" /><category term="full disclosure" /><category term="israel" /><category term="breaking point" /><category term="openioc" /><category term="iOS" /><category term="ftk" /><category term="cnn" /><category term="brasil" /><category term="dcom" /><category term="scanner" /><category term="cipav" /><category term="networkminer" /><category term="zlob" /><category term="ps3" /><category term="cuda" /><category term="russia" /><category term="princeton" /><category term="mitm" /><category term="vulnerabilidade" /><category term="impressoras" /><category term="core" /><category term="forensic magazine" /><category term="aurora" /><category term="post-mortem" /><category term="netwitness" /><category term="trojan" /><category term="forense" /><category term="moxie" /><category term="record" /><category term="preparação" /><category term="pageviews" /><category term="wordpress" /><category term="pdf" /><category term="obama" /><category term="ferramentas" /><category term="verdasys" /><category term="oiss" /><category term="ftkimager" /><category term="presidência" /><category term="into the boxes" /><category term="dns" /><category term="portugal" /><category term="snapcell" /><category term="worm" /><category term="drive-by" /><category term="decaf v2" /><category term="USCyberPatriot" /><category term="holanda" /><category term="xry" /><category term="verisign" /><category term="métricas" /><category term="jailbreak" /><category term="anti-virus" /><category term="marcelo caiado" /><category term="wrf" /><category term="conferência" /><category term="Seccubus" /><category term="sorteio" /><category term="0day" /><category term="insiders" /><category term="ngrep" /><category term="etir" /><category term="estonia" /><category term="pdgmail" /><category term="clean pipe" /><category term="IJDE" /><category term="kaminsky" /><category term="perl" /><category term="XMLHttpRequest" /><category term="sony" /><category term="pgp disk" /><category term="CSI Cyber" /><category term="sysinternals" /><category term="3g" /><category term="enigma" /><category term="mrtg" /><category term="gcih" /><category term="zeus" /><category term="f-response" /><category term="shell" /><category term="pcap" /><category term="carving" /><category term="DC3" /><category term="mbr" /><category term="cbs" /><category term="irc" /><category term="inteligencia" /><category term="reação" /><category term="sep" /><category term="wlan" /><category term="junho 2008" /><category term="Facebook" /><category term="carolina dieckmann" /><category term="hardware" /><category term="falha" /><category term="Michael Cloppert" /><category term="mestrado" /><category term="router" /><category term="HP" /><category term="breno silva" /><category term="artefatos" /><category term="orkut" /><category term="bruce schneier" /><category term="sseguranca" /><category term="umass" /><category term="safe browsing" /><category term="cofee" /><category term="dsic" /><category term="verizon" /><category term="perícia digital" /><category term="mcgraw" /><category term="hackers" /><category term="segurança em profundidade" /><category term="rainbow tables" /><category term="botnet" /><category term="sans" /><category term="vivo" /><category term="gps" /><category term=".edu" /><category term="registry viewer" /><category term="port knocking" /><category term="comodogate" /><category term="segurança" /><category term="blackberry" /><category term="paypal" /><category term="hardening" /><category term="Encase Enterprise" /><category term="usenix" /><category term="wireless" /><category term="siemens" /><category term="recompensa" /><category term="awards" /><category term="siem" /><category term="md5" /><category term="prisão" /><category term="resumo" /><category term="criptografia" /><category term="black tulip" /><category term="TED" /><category term="sp" /><category term="modelagem de ameaças" /><category term="GPU" /><category term="Guidance Software" /><category term="emc" /><category term="Wifi Protected Setup" /><category term="cyberwar" /><category term="a5/1" /><category term="corey johnson" /><category term="reversing labs" /><category term="registry" /><category term="websense" /><category term="finfisher" /><category term="Enscript" /><category term="correlacionamento" /><category term="langner" /><category term="kgb" /><category term="ccc" /><category term="adeona" /><category term="risco" /><category term="secerno" /><category term="wipe" /><category term="defesa" /><category term="anti-theft" /><category term="limites" /><category term="interceptação" /><category term="firefox" /><category term="NIST" /><category term="second life" /><category term="openbts" /><category term="nuclear" /><category term="iphone" /><category term="winifixer" /><category term="privacidade" /><category term="tls" /><category term="expressões regulares" /><category term="RNP" /><category term="Diginotar" /><category term="t-mobile" /><category term="fernando carbone" /><category term="sotirov" /><category term="sucuri" /><category term="armoring" /><category term="entrevista" /><category term="MCT" /><category term="finlândia" /><category term="regripper" /><category term="xp" /><category term="helix" /><category term="blogs" /><category term="processo" /><category term="notebook" /><category term="snort" /><category term="recuperação" /><category term="cymru" /><category term="sentrigo" /><category term="mastercard" /><category term="windd" /><category term="aes" /><category term="turquia" /><category term="dsd" /><category term="rpc" /><category term="security" /><category term="convenção de budapeste" /><category term="esteganografia" /><category term="imperva" /><category term="gsm" /><category term="forense de memória" /><category term="iphone forensics" /><category term="india" /><category term="cloud" /><category term="perícia" /><category term="cristine hoepers" /><category term="rootkit" /><category term="info exame" /><category term="ransomware" /><category term="wpa" /><category term="ms08-067" /><category term="terrorismo" /><category term="oracle" /><category term="dam" /><category term="crime na rede" /><category term="insecure maganize" /><category term="slowloris" /><category term="whois" /><category term="trustwave" /><category term="reportagem" /><category term="stealth" /><category term="sslstrip" /><category term="a5/3" /><category term="evilgrade" /><category term="livros" /><category term="china" /><category term="proxies" /><category term="defcon" /><category term="extorsão" /><category term="XSS" /><category term="são paulo" /><category term="WiPhire" /><category term="cert.br" /><category term="vista" /><category term="ff4" /><category term="sequestro de dados" /><category term="ig" /><category term="FRED" /><category term="sandbox" /><category term="cheat sheet" /><category term="bgp" /><category term="ntop" /><category term="memoryze" /><category term="arcsight" /><category term="coleta" /><category term="pcre" /><category term="apple" /><category term="kaspersky" /><category term="htcia" /><category term="certificação digital" /><category term="prefeitura" /><category term="guilherme venere" /><category term="tecnologia" /><category term="ross anderson" /><category term="ediscovery" /><category term="csirt" /><category term="programação" /><category term="sql injection" /><category term="conscientização" /><category term="digitask" /><category term="evidence" /><category term="energia" /><category term="ptfinder" /><category term="python" /><category term="JDFSL" /><category term="gsi" /><category term="palantir" /><category term="psn" /><category term="referência" /><category term="apache" /><category term="linux" /><category term="fecomercio" /><category term="cnet" /><category term="guardium" /><category term="accessdata" /><category term="storm worm" /><category term="voip" /><category term="virtualização" /><category term="encase" /><category term="forense de disco" /><category term="lynis" /><category term="jotti" /><category term="windbg" /><category term="kraken" /><category term="database security" /><category term="lista" /><category term="forensics.wiki.br" /><category term="scada" /><category term="alemanha" /><category term="força bruta" /><category term="videntifier" /><category term="microsoft" /><category term="tse" /><category term="token" /><category term="IJOFCS" /><category term="premiação" /><category term="oportunidade" /><category term="c2c" /><category term="dou" /><category term="packers" /><category term="userassist" /><title>SSegurança - blog.suffert.com</title><subtitle type="html">&lt;p align="left"&gt;&lt;b&gt;Resposta a Incidentes, Forense Computacional, Crimes de Alta Tecnologia - por &lt;a href="http://suffert.com"&gt;&lt;u&gt;Sandro Süffert&lt;/u&gt;&lt;/a&gt;&lt;/b&gt;.&lt;/p&gt;</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://sseguranca.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default?start-index=11&amp;max-results=10&amp;redirect=false&amp;v=2" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>226</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>10</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/Sseguranca" /><feedburner:info uri="sseguranca" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>Sseguranca</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><entry gd:etag="W/&quot;DEIMRXY6fip7ImA9WhVbEEg.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-5610911142381301621</id><published>2012-05-26T15:23:00.000-03:00</published><updated>2012-05-26T15:23:04.816-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-26T15:23:04.816-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="forense digital" /><category scheme="http://www.blogger.com/atom/ns#" term="DoD" /><category scheme="http://www.blogger.com/atom/ns#" term="desafios" /><category scheme="http://www.blogger.com/atom/ns#" term="DC3" /><category scheme="http://www.blogger.com/atom/ns#" term="CyberCrime" /><category scheme="http://www.blogger.com/atom/ns#" term="USCyberPatriot" /><category scheme="http://www.blogger.com/atom/ns#" term="perícia digital" /><category scheme="http://www.blogger.com/atom/ns#" term="CSI Cyber" /><category scheme="http://www.blogger.com/atom/ns#" term="treinamento" /><title>DC3 CSI Cyber Survey - teste seus conhecimentos</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-e0ARN-keHK0/T8Ee4T7VWlI/AAAAAAAAAb8/kQwjS6sXf2o/s1600/DC3.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/-e0ARN-keHK0/T8Ee4T7VWlI/AAAAAAAAAb8/kQwjS6sXf2o/s1600/DC3.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Para quem não conhece, o &lt;i&gt;&lt;b&gt;DC3 -&amp;nbsp;&lt;/b&gt;&lt;/i&gt;&lt;i&gt;&lt;b&gt;Department of Defense Cyber Crime Center (DC3)&amp;nbsp;&lt;/b&gt;&lt;a href="http://www.dc3.mil/"&gt;&lt;b&gt;http://www.dc3.mil/&lt;/b&gt;&lt;/a&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;/i&gt;&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;é o órgão responsável por definir padrões no processamento, análise e diagnóstico de provas digitais em investigações do Departamento de Defesa norte-americano&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;(&lt;i&gt;DoD&lt;/i&gt;).&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Entre outras atividades públicas, eles são responsáveis pelo mais conhecido &lt;a href="http://www.dc3.mil/challenge/"&gt;&lt;b&gt;Desafio Forense&lt;/b&gt;&lt;/a&gt; (pense em um "&lt;i&gt;Capture The Flag&lt;/i&gt;", mas do ponto de vista investigativo). Outra atividade relacionada a treinamentos muito relevante deste grupo é o "&lt;b&gt;&lt;a href="http://www.uscyberpatriot.org/Pages/default.aspx"&gt;US Cyber Patriot&lt;/a&gt;&lt;/b&gt;" (uma competição nacional entre escolas de 2o grau nos Estados Unidos que objetiva inspirar alunos a decidir por carreiras em Cibersegurança ou áreas afins. Vale a pena dar uma olhada no &lt;a href="http://www.uscyberpatriot.org/CP5/Training.aspx"&gt;material de treinamento&lt;/a&gt; que eles possuem!)&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Pois bem, ontem através da conta oficial &lt;/span&gt;&lt;i style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://twitter.com/DoD_CyberCrime/"&gt;&lt;b&gt;DoD_CyberCrime&lt;/b&gt;&lt;/a&gt;&lt;/i&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt; no Twitter, tive uma grata surpresa:&amp;nbsp;&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;"&lt;/span&gt;&lt;i style="font-family: Arial, Helvetica, sans-serif;"&gt;CSI Cyber has been updated! Over 350 questions on Cyber Investigations – Go to &lt;a href="http://csicyber.dfilink.net/"&gt;http://csicyber.dfilink.net&lt;/a&gt; to view them all.&lt;/i&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;"&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;fonte:&amp;nbsp;&lt;a href="http://twitter.com/DoD_CyberCrime/statuses/206093531880759296" style="font-family: Arial, Helvetica, sans-serif;"&gt;http://twitter.com/DoD_CyberCrime/statuses/206093531880759296&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: -webkit-auto;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;O &lt;b&gt;&lt;i&gt;CSI Cyber&lt;/i&gt;&lt;/b&gt; possui uma série de Testes de 15 questões cada, divididos em 3 níveis de dificuldade (&lt;i&gt;Beginner&lt;/i&gt;, &lt;i&gt;Intermediate&lt;/i&gt; e &lt;i&gt;Expert&lt;/i&gt;) para averiguar a proficiência do analista em 5 diferentes "&lt;i&gt;&lt;b&gt;Areas of Expertise&lt;/b&gt;&lt;/i&gt;": &lt;i&gt;Law &amp;amp; Ethics, Investigative Process, Digital Forensics Lab, Crime Scene e Digital Forensics Examinations.&lt;/i&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;É provavelmente o mais extenso material de teste disponível publicamente, e o considero muito útil para validação e identificação de &lt;i&gt;gaps &lt;/i&gt;no &lt;i&gt;skill set&lt;/i&gt; de equipes de investigação de incidentes e crimes (auditores, analistas de segurança, peritos, etc.).&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Além de testar seus conhecimentos e descobrir ou rever tópicos importantes, ao passar nos testes você recebe "certificados" como este abaixo:&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-ZprdIEMLgug/T8EdEk-KTRI/AAAAAAAAAb0/XIH-BM6FcNw/s1600/CSICyberCompletionCertificate_DigitalForensicsExaminationsAdvanced-blog-small.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-ZprdIEMLgug/T8EdEk-KTRI/AAAAAAAAAb0/XIH-BM6FcNw/s1600/CSICyberCompletionCertificate_DigitalForensicsExaminationsAdvanced-blog-small.png" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;b&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Vale a pena conferir:&amp;nbsp;&lt;/span&gt;&lt;a href="http://csicyber.dfilink.net/" style="font-family: Arial, Helvetica, sans-serif;"&gt;http://csicyber.dfilink.net&lt;/a&gt;&lt;/b&gt;
&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;As 350 questões teóricas não são o suficiente? Achou muito fácil ou muito rápido? Você vai encontrar muitas outras oportunidades de aprender sobre Perícia Computacional e Investigações em Meios Digitais na prática com desafios e situações realistas no&amp;nbsp;&lt;b&gt;Desafio Forense do DC3&lt;/b&gt;:&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://www.dc3.mil/challenge/"&gt;&lt;img border="0" height="49" src="http://4.bp.blogspot.com/-DZaZkmi7dUo/T8EYd0z7YkI/AAAAAAAAAbo/ANbRYY9yitY/s320/header-dc3.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-5610911142381301621?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=jUQ3pGxOUw0:B3tfRGuhIW0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=jUQ3pGxOUw0:B3tfRGuhIW0:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=jUQ3pGxOUw0:B3tfRGuhIW0:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/jUQ3pGxOUw0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/5610911142381301621/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2012/05/dc3-csi-cyber-survey-teste-seus.html#comment-form" title="0 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/5610911142381301621?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/5610911142381301621?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/jUQ3pGxOUw0/dc3-csi-cyber-survey-teste-seus.html" title="DC3 CSI Cyber Survey - teste seus conhecimentos" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-e0ARN-keHK0/T8Ee4T7VWlI/AAAAAAAAAb8/kQwjS6sXf2o/s72-c/DC3.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2012/05/dc3-csi-cyber-survey-teste-seus.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkACQHw_fyp7ImA9WhVUGEU.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-4725278148752418531</id><published>2012-05-16T15:41:00.002-03:00</published><updated>2012-05-24T14:32:41.247-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-24T14:32:41.247-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="extorsão" /><category scheme="http://www.blogger.com/atom/ns#" term="vazamento de informações" /><category scheme="http://www.blogger.com/atom/ns#" term="hackerazzi" /><category scheme="http://www.blogger.com/atom/ns#" term="rio de janeiro" /><category scheme="http://www.blogger.com/atom/ns#" term="carolina dieckmann" /><category scheme="http://www.blogger.com/atom/ns#" term="perícia" /><title>Hackerazzi: Carolina Dieckmann</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-QJXi0CvRbIw/T7P9aF_Ik0I/AAAAAAAAAbc/1Pdu5mp94SU/s1600/hackerazzi.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="213" src="http://3.bp.blogspot.com/-QJXi0CvRbIw/T7P9aF_Ik0I/AAAAAAAAAbc/1Pdu5mp94SU/s320/hackerazzi.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Tenho acompanhado as várias notícias e reportagens que foram publicadas sobre o &lt;b&gt;vazamento de fotos íntimas e subsequente extorsão &lt;/b&gt;que teve como vítima a atriz &lt;b&gt;Carolina Dieckmann&lt;/b&gt;.&lt;br /&gt;
&lt;br /&gt;
Um termo foi cunhado e tem sido usado para identificar os perpetradores deste tipo de ação direcionada à privacidade de celebridades:&amp;nbsp;&lt;b&gt;Hackerazzi&lt;/b&gt;&amp;nbsp;(corruptela de&amp;nbsp;&lt;i&gt;Hacker + Paparazzi&lt;/i&gt;).&amp;nbsp;Vale ressaltar que casos semelhantes já ocorreram no passado, como por exemplo o que envoleu mais de 50 celebridades norte-americanas&amp;nbsp;(&lt;i&gt;&lt;a href="http://www.fbi.gov/losangeles/press-releases/2011/florida-man-arrested-in-operation-hackerazzi-for-targeting-celebrities-with-computer-intrusion-wiretapping-and-identity-theft"&gt;press release&lt;/a&gt;&lt;/i&gt;&amp;nbsp;do&amp;nbsp;&lt;i&gt;FBI&lt;/i&gt;), incluindo as atrizes&amp;nbsp;&lt;i&gt;Mila Kunis&lt;/i&gt;&amp;nbsp;e&amp;nbsp;&lt;i&gt;Scarlett Johansson&lt;/i&gt;&amp;nbsp;e a cantora&amp;nbsp;&lt;i&gt;Christina Aguilera&lt;/i&gt;. Neste caso&amp;nbsp;&lt;a href="http://www.theaustralian.com.au/australian-it/florida-man-who-hacked-into-hollywood-stars-accounts-tells-how-easy-it-was/story-e6frgakx-1226340461739"&gt;o perpetrador diz ter utilizado a função "esqueci minha senha"&lt;/a&gt;&amp;nbsp;e dados pessoais das vítimas para conseguir resetar as contas.&lt;br /&gt;
&lt;br /&gt;
Considero a situação relevante pois tem tido uma repercussão grande na mídia e traz o tema de investigação em meios digitais para a pauta do dia. Porém, para evitar teorizar sem dados mais concretos a disposição (como muitos comentaristas do caso fizeram), preferi aguardar a evolução das investigações em andamento para publicar um post sobre o assunto. Como diria &lt;i&gt;Sherlock Holmes&lt;/i&gt;: "&lt;i&gt;&lt;b&gt;It is a capital mistake to theorize before you have all the evidence. It biases the judgment&lt;/b&gt;&lt;/i&gt;."&lt;br /&gt;
&lt;br /&gt;
Muito já se publicou sobre o assunto, porém infelizmente em certos casos fica claro o objetivo de marketing de produtos e em outros o desconhecimento dos assuntos tratados acaba por minar as informações, por melhores que sejam as intenções dos advogados, jornalistas ou "especialistas" convidados a opinar.&lt;br /&gt;
&lt;br /&gt;
No caso da atriz brasileira, muito se especulou sobre a forma de obtenção das imagens (suporte técnico do notebook da atriz, uso de trojans, etc..) - a realidade acabou mostrando-se mais simples, e comum. &lt;b&gt;Os atacantes costumam fazer apenas o mínimo necessário para obter seus objetivos (&lt;i&gt;low hanging fruit&lt;/i&gt;)&lt;/b&gt; - neste caso, um email com um formulário a ser preenchido. &lt;br /&gt;
&lt;br /&gt;
Depois de ver na internet a&amp;nbsp;&lt;a href="http://fantastico.globo.com/Jornalismo/FANT/0,,MUL1680311-15605,00-POLICIA+ENCONTRA+HACKERS+QUE+ROUBARAM+FOTOS+DE+CAROLINA+DIECKMANN.html"&gt;matéria do &lt;b&gt;Fantástico&lt;/b&gt;&lt;/a&gt;&amp;nbsp;sobre o assunto, e depois de ler o artigo na&amp;nbsp;&lt;b&gt;INFO, &lt;/b&gt;abaixo&lt;b&gt;&amp;nbsp;&lt;/b&gt;resolvi publicar uma primeira versão, contendo meus comentários e o que de relevante já foi publicado sobre o tema.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Resumo da ópera (&lt;/b&gt;ou melhor entendimento até o momento da publicação deste post&lt;b&gt;):&amp;nbsp;&lt;/b&gt;&lt;a href="http://info.abril.com.br/noticias/seguranca/policia-identifica-5-cracker-do-caso-carolina-dieckmann-14052012-38.shl"&gt;http://info.abril.com.br/noticias/seguranca/policia-identifica-5-cracker-do-caso-carolina-dieckmann-14052012-38.shl&lt;/a&gt;&amp;nbsp;(&lt;b&gt;INFO&lt;/b&gt;).&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
"Leonam Santos, de 20 anos,&amp;nbsp;&lt;b&gt;invadiu o e-mail de Carolina&lt;/b&gt; após enviar uma mensagem para ela se passando por funcionário do provedor de internet.&amp;nbsp;&lt;b&gt;A mensagem continha um formulário, que foi preenchido pela atriz com seus dados pessoais e senha do e-mail&lt;/b&gt;. A partir daí, Leonam, que mora em Córrego Dantas, Minas Gerais, teria pego 60 fotos que estavam na pasta de mensagens enviadas.&lt;br /&gt;
As fotos foram enviadas a Diego Fernando Cruz, de 25 anos, morador de Macatuba, interior de São Paulo. &lt;b&gt;Ele teria, então, mandado 36 fotos para um site pornográfico&lt;/b&gt;. A página na internet pertenceria a Pedro Henrique Mathias. &lt;b&gt;O suspeito de tentar extorquir R$ 10 mil de Carolina para não divulgar as fotos seria um menor, morador de Bauru (SP)&lt;/b&gt;. Os policiais da DRCI investigam ainda a participação de um quinto hacker, que reside em Goiânia."&lt;/blockquote&gt;
&lt;b&gt;Update (23/05/2012)&lt;/b&gt; - Em uma entrevista à INFO, o delegado responsável pela investigação detalhou algumas informações sobre o caso:&amp;nbsp;&lt;a href="http://info.abril.com.br/noticias/blogs/trending-blog/geral/saiba-como-a-policia-identificou-os-crackers-do-caso-carolina-dieckmann/"&gt;http://info.abril.com.br/noticias/blogs/trending-blog/geral/saiba-como-a-policia-identificou-os-crackers-do-caso-carolina-dieckmann/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
Não vou entrar aqui na famosa discussão terminológica "&lt;i&gt;&lt;b&gt;hacker vs cracker&lt;/b&gt;&lt;/i&gt;" - mesmo porque os perpetradores destes crimes não se encaixariam emnenhuma das duas categorias, na minha opinião. Trata-se de um caso de &lt;b&gt;"171" ou engenharia social&lt;/b&gt;, seguido de &lt;b&gt;difamação, danos morais e&amp;nbsp;extorsão&lt;/b&gt;. O computador foi um meio utilizado para obter as informações (&lt;a href="http://www.informatica-juridica.com/trabajos/artigo_crimesinformticos.asp"&gt;crime impróprio&lt;/a&gt;), e mesmo sem uma lei específica para "crimes digitais" é possível responsabilizar os autores dos crimes.&lt;br /&gt;
&lt;br /&gt;
Uma observação interessante: a vítima publicou em seu &lt;i&gt;twitter, &lt;/i&gt;no dia 23/04/2012, o seguinte post:&lt;br /&gt;
&lt;i&gt;"&lt;b&gt;Tô sendo constantemente rackeada, sempre segunda-feira de manhã... Que estranho, viu? Tô de olho!!!&lt;/b&gt;" (&lt;/i&gt;&lt;a href="http://twitter.com/#!/cadieckmann/status/194440085549228033"&gt;http://twitter.com/#!/cadieckmann/status/194440085549228033&lt;/a&gt;)&lt;br /&gt;
&lt;br /&gt;
Sabemos que alguns serviços de webmail como o Gmail disponibilizam os últimos endereços de IP utilizados para acesso à sua conta, e tem inclusive como padrão um alerta para notificação de atividade suspeita (acesso de IPs geolocalizados em outras cidades/países, por exemplo: "&lt;i&gt;&lt;b&gt;Alert preference: Show an alert for unusual activity&lt;/b&gt;&lt;/i&gt;". Isto pode ajudar o usuário a identificar acessos indevidos à sua conta.&lt;br /&gt;
&lt;br /&gt;
Uma ação que possivelmente foi tomada foi a interceptação telemática e/ou telefônica dos suspeitos, considerando a matéria publicada pelo fantástico (link abaixo);&lt;br /&gt;
&lt;br /&gt;
Diante das ações tomadas pelo advogado da atriz, é possível imaginar que são necessárias&amp;nbsp;solicitações (extra-judicial e depois judicial) endereçadas ao serviço de email utilizado pela atriz para identificar os &lt;b&gt;IPs responsáveis pelos acessos não autorizados&lt;/b&gt;, seguido de uma solicitação de quebra de sigilo IP para os provedores e/ou operadoras responsáveis pelo acesso a internet dos suspeitos.&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
Em casos semelhantes ao que estamos tratando, &lt;b&gt;do ponto de vista da análise dos computadores envolvidos&lt;/b&gt;, muitas ações podem ser efetuadas, publico uma pequena lista (não exaustiva) abaixo:&lt;br /&gt;
&lt;br /&gt;
- Análise de URLs visitadas, histórico de navegação, temporários de browser (para idenficar, por exemplo, o envio das fotos para 1o site (inglês);&lt;br /&gt;
&lt;br /&gt;
- Informacoes de envio das imagens via browser para emails ou serviços externos nas máquinas dos suspeitos;&lt;br /&gt;
&lt;br /&gt;
- Informacoes de copia das imagens para dispositivos externos nos computadores dos suspeitos (Recents / MRU / .LNK &amp;gt; MAC &amp;nbsp;Addresses / &lt;a href="http://sseguranca.blogspot.com.br/2009/08/medley-forense-usb-e-shadow-backtrack-4.html"&gt;USB&lt;/a&gt;.. );&lt;br /&gt;
&lt;br /&gt;
- Indícios de acesso remoto não autorizado (busca de MD5 de ferramentas conhecidas, busca de vestígios no registro de máquina windows e equivalentes em MacOSX de instalação de RATs e serviços de acesso remoto) &amp;lt; preparação para casos de "&lt;a href="http://www.anti-forensics.com/the-trojan-defense"&gt;Trojan Defence&lt;/a&gt;"&lt;br /&gt;
&lt;br /&gt;
- Busca pelo conteúdo dos emails (enviados, recebidos) no espaço não alocado do computador &amp;nbsp;dos suspeitos (incluindo arquvo de paginação e hinernação);&lt;br /&gt;
&lt;br /&gt;
- EXIF das imagens pode conter informacoes como maquina fotografica, edicao em softwares, localizacao geografica (lat, long); (o que poderia indicar os endereços onde as fotos foram tiradas);&lt;br /&gt;
&lt;br /&gt;
- MD5/SHA1 e até mesmo FuzzyHashing do .RAR publicado e dos JPEGs individuais podem ser cruzados com a imagem forense feita com os computadores dos suspeitos;&lt;br /&gt;
&lt;br /&gt;
- Análise de linha do tempo (&lt;a href="http://www.forensicswiki.org/wiki/Timeline_Analysis_Bibliography"&gt;timeline&lt;/a&gt;) dos MACE (Modificação, Acesso, Criação e Entrada na $MFT) times dos arquivos / emails e seus vestígios no computador dos suspeitos podem indicar data/hora de cópia das imagens.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Se o tema é popular, certamente ele vai ser usado em outros ataques - &lt;/b&gt;&amp;nbsp;exemplos:&lt;br /&gt;
&lt;br /&gt;
1) Fotos falsas da atriz levam à malware (file sharing):&amp;nbsp;&lt;a href="http://www.securelist.com/en/blog/208193496/Carolina_Dieckmann_Brazilian_cybercrime_legislation_and_la_Viveza_criolla"&gt;http://www.securelist.com/en/blog/208193496/Carolina_Dieckmann_Brazilian_cybercrime_legislation_and_la_Viveza_criolla&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
2) &lt;i&gt;Defacers&lt;/i&gt; utilizando as fotos em ataques a sites do governo:&amp;nbsp;&lt;a href="http://g1.globo.com/sao-paulo/noticia/2012/05/hackers-postam-fotos-de-carolina-dieckmann-nua-em-site-da-cetesb.html"&gt;http://g1.globo.com/sao-paulo/noticia/2012/05/hackers-postam-fotos-de-carolina-dieckmann-nua-em-site-da-cetesb.html&lt;/a&gt;
&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Do ponto de vista de remoção ou bloqueio do material já publicado:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
- O primeiro site&amp;nbsp;onde o material foi publicado&amp;nbsp;(ImageEarn - do reino unido), já o retirou do ar:&lt;br /&gt;
&lt;a href="http://info.abril.com.br/noticias/internet/site-ira-retirar-fotos-de-carolina-dieckmann-do-ar-07052012-6.shl"&gt;http://info.abril.com.br/noticias/internet/site-ira-retirar-fotos-de-carolina-dieckmann-do-ar-07052012-6.shl&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
- O advogado da atriz notificou o Google e o Yahoo com o &lt;b&gt;objetivo de bloquear as imagens no seu mecanismo de busca&lt;/b&gt;: &amp;nbsp;"&lt;i&gt;Google é notificado para bloquear as imagens&lt;/i&gt;":&amp;nbsp;&lt;a href="http://diversao.terra.com.br/gente/noticias/0,,OI5758692-EI13419,00-Dieckmann+depoe+no+RJ+Google+e+notificado+para+bloquear+as+imagens.html"&gt;http://diversao.terra.com.br/gente/noticias/0,,OI5758692-EI13419,00-Dieckmann+depoe+no+RJ+Google+e+notificado+para+bloquear+as+imagens.html&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
- O Google informou que não filtra resultados de busca, e que as solicitações de remoção deveria ser feita diretamente aos sites que publicam as imagens. Neste caso, buscas por imagens reversas como o &lt;a href="http://www.tineye.com/"&gt;Tinyeye&lt;/a&gt;, e &lt;a href="http://www.google.com/insidesearch/features/images/searchbyimage.html"&gt;Google reverse image search&lt;/a&gt;) - podem mostrar informacoes de onde as imagens estão sendo veiculadas. Para priorizar as solicitações de remoção de conteúdo, pode ser utilizado um mecanismo de avaliação da popularidade dos sites a serem notificados (ex:&amp;nbsp;&lt;a href="http://www.alexa.com/topsites"&gt;ranking Alexa&lt;/a&gt;)&lt;br /&gt;
&lt;br /&gt;
- O trabalho é inglório, em uma avaliação publicada pela SaferNet, &lt;a href="http://idgnow.uol.com.br/internet/2012/05/14/mais-de-50-mil-copias-das-fotos-de-dieckmann-se-espalharam-pela-rede/"&gt;mais de 50.000 cópias não autorizadas&lt;/a&gt;&amp;nbsp; das fotos da atriz já estão disponíveis na Internet.&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Conclusão:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
O advogado de Carolina, Antônio&amp;nbsp;&lt;b&gt;Kakay&lt;/b&gt; - que &lt;a href="http://josiasdesouza.blogosfera.uol.com.br/2012/05/13/advogado-de-inimigos-publicos-kakay-admite-caso-carol-dieckmann-atenua-impopularidade/"&gt;também defende Demóstones Torres&lt;/a&gt;, afirma: "É uma causa interessante que pode ajudar no debate sobre o controle da internet, especialmente das mídias sociais. Hoje estamos diante do fenômeno dessas redes sociais que são uma mídia opressiva. O que aconteceu com essa menina é sórdido, cruel."&lt;br /&gt;
&lt;br /&gt;
No infográfico publicado pelo Alexandre Teixeira (&lt;i&gt;link&lt;/i&gt;&amp;nbsp;5 abaixo), é feita uma ligação entre o caso e a aprovação (ontem, dia 15/05/2012) do Projeto de Lei de Crimes Cibernéticos (não a &lt;a href="http://sseguranca.blogspot.com.br/2009/01/projeto-de-lei-crimes-eletronicos-pl.html"&gt;PL 84/99&lt;/a&gt; do Azeredo, mas o alternativo &amp;nbsp;&lt;a href="http://www.camara.gov.br/proposicoesWeb/fichadetramitacao?idProposicao=529011"&gt;PL 2793/2011&lt;/a&gt; de Paulo Teixeira e Erundina - que entre outras coisas, em seu Art. 154A criminaliza a produção de "ferramentas hackers" (Na linha do projeto iniciado na &lt;a href="http://bit.ly/Ka9s9R"&gt;Alemanha em 2007&lt;/a&gt;). Outra crítica sobre o assunto pode ser vista no artigo publicado pelo José Milagres (&lt;i&gt;link&lt;/i&gt; 8).&lt;br /&gt;
&lt;br /&gt;
Casos envolvendo celebridades são emblemáticos e &amp;nbsp;impactantes por trazer o assunto com prioridade à diferentes esferas (mídia, legisladores, juízes).&amp;nbsp;Um caso similar ocorreu no Brasil em 2007,&amp;nbsp;quando o acesso ao site Youtube foi afetado, no caso do vídeo na praia de Daniela Cicarelli - quando alguns AS´s (&lt;i&gt;Autonomous Systems&lt;/i&gt;) brasileiros acataram a decisão judicial do Tribunal de Justiça do Estado de São Paulo &lt;a href="http://tecnologia.terra.com.br/interna/0,,OI1336191-EI4802,00.html"&gt;e redirecionaram para 'null/0' todo o tráfego destinado ao Youtube&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
Resumo da ópera, cinco anos depois, o tema que engloba os Crimes Digitais é bastante complexo e controverso, e leis e decisões tomadas para resolver um problema que está em destaque podem gerar vários outros - muitas vezes piores... &lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Repercursão do caso da mídia e blogs:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;1) Globo/Jornal Nacional: &lt;/b&gt;Entrevista Carolina Dieckmann&lt;br /&gt;
&lt;a href="http://www.youtube.com/watch?feature=player_embedded&amp;amp;v=sSCXpjZaTYc"&gt;http://www.youtube.com/watch?feature=player_embedded&amp;amp;v=sSCXpjZaTYc&lt;/a&gt;
&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;2) Globo/Fantástico:&lt;/b&gt;&amp;nbsp;"Polícia encontra hackers que roubaram fotos de Carolina Dieckmann" (video)&lt;br /&gt;
&lt;a href="http://fantastico.globo.com/Jornalismo/FANT/0,,MUL1680311-15605,00-POLICIA+ENCONTRA+HACKERS+QUE+ROUBARAM+FOTOS+DE+CAROLINA+DIECKMANN.html"&gt;http://fantastico.globo.com/Jornalismo/FANT/0,,MUL1680311-15605,00-POLICIA+ENCONTRA+HACKERS+QUE+ROUBARAM+FOTOS+DE+CAROLINA+DIECKMANN.html&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;3) Record:&lt;/b&gt;&amp;nbsp;"Identidade de quem roubou fotos íntimas de Carolina Dieckmann ainda é mistério" (video)&lt;br /&gt;
&lt;a href="http://rederecord.r7.com/video/identidade-de-quem-roubou-fotos-intimas-de-carolina-dieckmann-ainda-e-misterio-4fb04c256b71c3d8bbc9a310/"&gt;http://rederecord.r7.com/video/identidade-de-quem-roubou-fotos-intimas-de-carolina-dieckmann-ainda-e-misterio-4fb04c256b71c3d8bbc9a310/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;4) Luiz Rabelo: "&lt;/b&gt;Vazam fotos de Carolina Dieckmann nua"&lt;br /&gt;
&lt;a href="http://forensics.luizrabelo.com.br/2012/05/vazam-fotos-de-carolina-dieckmann-nua.html"&gt;http://forensics.luizrabelo.com.br/2012/05/vazam-fotos-de-carolina-dieckmann-nua.html&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;5) Pablo Ximenes: "&lt;/b&gt;A verdade sobre as "Técnicas de Invasão" usadas no caso Carolina Dieckmann"&lt;br /&gt;
&lt;a href="http://ximen.es/?p=621"&gt;http://ximen.es/?p=621&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;6) Alexandre Teixeira:&lt;/b&gt; "Infográfico – Carolina Dieckmann"&lt;br /&gt;
&lt;a href="http://foren6.wordpress.com/2012/05/16/inforgrafico-carolina-dieckmann/"&gt;http://foren6.wordpress.com/2012/05/16/inforgrafico-carolina-dieckmann/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;7) Anchises Morais: &lt;/b&gt;"Carolina, suas fotos e o fim da privacidade" e "Hackerazzis"&lt;br /&gt;
&lt;a href="http://anchisesbr.blogspot.com.br/2012/05/seguranca-carolina-suas-fotos-e-o-fim.html"&gt;http://anchisesbr.blogspot.com.br/2012/05/seguranca-carolina-suas-fotos-e-o-fim.html&lt;/a&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;a href="http://anchisesbr.blogspot.com.br/2012/05/seguranca-hackerazzis.html"&gt;http://anchisesbr.blogspot.com.br/2012/05/seguranca-hackerazzis.html&lt;/a&gt;
&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;8) José Mariano:&lt;/b&gt; "Considerações sobre o caso Caso Carolina Dieckmann: a dura realidade de uma investigação"&lt;br /&gt;
&lt;a href="http://mariano.delegadodepolicia.com/consideracoes-sobre-o-caso-caso-carolina-dickeman-a-dura-realidade-de-uma-investigacao/"&gt;http://mariano.delegadodepolicia.com/consideracoes-sobre-o-caso-caso-carolina-dickeman-a-dura-realidade-de-uma-investigacao/&lt;/a&gt;
&lt;br /&gt;
&lt;br /&gt;
9) &lt;b&gt;Estadão:&amp;nbsp;&lt;/b&gt;&amp;nbsp;"Como não ser a próxima Carolina Dieckmann"&lt;br /&gt;
&lt;a href="http://blogs.estadao.com.br/radar-tecnologico/2012/05/14/como-nao-ser-a-proxima-carolina-dieckmann/"&gt;http://blogs.estadao.com.br/radar-tecnologico/2012/05/14/como-nao-ser-a-proxima-carolina-dieckmann/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
10) &lt;b&gt;José Milagres&lt;/b&gt;: "Projeto de Lei “Dieckmann” reforça agressão aos direitos dos cidadãos na Internet"&lt;br /&gt;
&lt;a href="http://josemilagre.com.br/blog/wp-content/uploads/2011/10/Artigo-Efeito-Dieckmann-refor%C3%A7a-agress%C3%A3o-aos-direitos-de-usu%C3%A1rios-de-Internet-Jose-Milagre-15-05-20121.pdf"&gt;http://josemilagre.com.br/blog/wp-content/uploads/2011/10/Artigo-Efeito-Dieckmann-refor%C3%A7a-agress%C3%A3o-aos-direitos-de-usu%C3%A1rios-de-Internet-Jose-Milagre-15-05-20121.pdf&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
11) &lt;b&gt;Fernando Fonseca: &lt;/b&gt;"As questões realmente relevantes no caso Carolina Dieckmann"&lt;br /&gt;
&lt;a href="http://segurancaobjetiva.wordpress.com/2012/05/17/as-questoes-realmente-relevantes-no-caso-carolina-dieckmann/"&gt;http://segurancaobjetiva.wordpress.com/2012/05/17/as-questoes-realmente-relevantes-no-caso-carolina-dieckmann/&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-4725278148752418531?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=jaPNQ5xLLwQ:PXiOTd48IyQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=jaPNQ5xLLwQ:PXiOTd48IyQ:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=jaPNQ5xLLwQ:PXiOTd48IyQ:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/jaPNQ5xLLwQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/4725278148752418531/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2012/05/hackerazzi-carolina-dickmann.html#comment-form" title="10 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/4725278148752418531?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/4725278148752418531?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/jaPNQ5xLLwQ/hackerazzi-carolina-dickmann.html" title="Hackerazzi: Carolina Dieckmann" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-QJXi0CvRbIw/T7P9aF_Ik0I/AAAAAAAAAbc/1Pdu5mp94SU/s72-c/hackerazzi.jpg" height="72" width="72" /><thr:total>10</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2012/05/hackerazzi-carolina-dickmann.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkYFQnw5fCp7ImA9WhVVGEU.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-1817789313796262097</id><published>2012-05-12T23:00:00.000-03:00</published><updated>2012-05-13T02:48:33.224-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-13T02:48:33.224-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="lista" /><category scheme="http://www.blogger.com/atom/ns#" term="português" /><category scheme="http://www.blogger.com/atom/ns#" term="blogs" /><category scheme="http://www.blogger.com/atom/ns#" term="brasil" /><category scheme="http://www.blogger.com/atom/ns#" term="portugal" /><title>163 blogs de Seguranca da Informação em português</title><content type="html">&lt;a href="http://3.bp.blogspot.com/_vHfhEO08cCE/SJoFpfiNv1I/AAAAAAAAIxs/t2jw_h2zf2o/s1600/BANDEIRA%2BUNICA%2BBRASIL-PORTUGAL.JPG"&gt;&lt;img alt="" border="0" src="http://3.bp.blogspot.com/_vHfhEO08cCE/SJoFpfiNv1I/AAAAAAAAIxs/t2jw_h2zf2o/s1600/BANDEIRA%2BUNICA%2BBRASIL-PORTUGAL.JPG" style="cursor: move; display: block; height: 250px; margin-bottom: 10px; margin-left: auto; margin-right: auto; margin-top: 0px; text-align: center; width: 400px;" /&gt;&lt;/a&gt;&lt;b&gt;&lt;/b&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: arial; font-size: small; font-weight: normal;"&gt;post original: 08/08/2008 | último update: 13/05/2012&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;
&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: small;"&gt;Acesso rápido a esta página: &lt;/span&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: small;"&gt;&lt;a href="http://tinyurl.com/blogseg"&gt;http://tinyurl.com/blogseg&lt;/a&gt;&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;
&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;b&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: small;"&gt;   &lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;b&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt; &lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;
&lt;br /&gt;
&lt;span style="font-size: 85%; font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;b&gt;&lt;i&gt;&lt;a href="http://www.google.com/reader/view/user%2F13736961360220030633%2Fbundle%2FBlogs%20de%20Seguran%C3%A7a%20Brasileiros"&gt;&lt;span class="Apple-style-span"&gt;RSS Feed&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span"&gt; pacial da lista &lt;a href="http://jczucco.blogspot.com/2010/09/todos-ja-devem-conhecer-lista-de-blogs.html"&gt;by Zucco&lt;/a&gt; | &lt;a href="http://planet.alexos.com.br/"&gt;Agregator&lt;/a&gt; parcial da lista &lt;a href="http://planet.alexos.com.br/"&gt;by Alexos&lt;/a&gt;&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 85%; font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;b&gt;&lt;i&gt;&lt;span class="Apple-style-span"&gt; &lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;b style="font-size: small;"&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;163&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;&lt;span class="Apple-style-span" style="font-size: x-small; font-weight: normal;"&gt;= &lt;/span&gt;&lt;span style="font-size: xx-small;"&gt;113&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&amp;nbsp;blogs brasileiros &lt;/span&gt;&lt;b style="font-weight: normal;"&gt;+ &lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial; font-size: xx-small;"&gt;11&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: xx-small;"&gt;&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;&lt;b style="font-weight: normal;"&gt;&amp;nbsp;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;blogs &lt;/span&gt;&lt;/b&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;portugueses &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&amp;nbsp;&lt;/span&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;+ &lt;/span&gt;&lt;span class="Apple-style-span"&gt;21&lt;/span&gt;&lt;/b&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&amp;nbsp;organizações&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: xx-small;"&gt;&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;&lt;b style="font-weight: normal;"&gt;+&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;19&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt; portais/revistas/podcasts&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;div style="text-align: left;"&gt;
&lt;b&gt;I - Blogs Autorais sobre Segurança da Informação brasileiros:&lt;/b&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ol&gt;
&lt;li&gt;Sandro Süffert: &lt;a href="http://sseguranca.blogspot.com/"&gt;http://sseguranca.blogspot.com&lt;/a&gt; =)&lt;/li&gt;
&lt;li&gt;Ronaldo Lima: &lt;a href="http://www.crimesciberneticos.com/"&gt;http://www.crimesciberneticos.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Pedro Pereira:&amp;nbsp;
&lt;a href="http://www.pedropereira.net/"&gt;http://www.pedropereira.net/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Anchises de Paula: &lt;a href="http://anchisesbr.blogspot.com/"&gt;http://anchisesbr.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Alexandro Silva:&amp;nbsp;&lt;a href="http://blog.alexos.com.br/"&gt;http://blog.alexos.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Pablo Ximenes: &lt;a href="http://ximen.es/"&gt;http://ximen.es/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Paulo Pagliusi:&amp;nbsp;&lt;a href="http://mpsafe.blogspot.com/"&gt;http://mpsafe.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Luis Sales Rabelo:&amp;nbsp;&lt;a href="http://forensics.luizrabelo.com.br/"&gt;http://forensics.luizrabelo.com.br&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Ruy de Oliveira:&amp;nbsp;&lt;a href="http://5minseg.blogspot.com/"&gt;http://5minseg.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fernando Mercês:&amp;nbsp;&lt;a href="http://www.mentebinaria.com.br/blog"&gt;http://www.mentebinaria.com.br/blog&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Emerson Wendt:&amp;nbsp;&lt;a href="http://www.emersonwendt.com.br/"&gt;http://www.emersonwendt.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Rodrigo Montoro:&amp;nbsp;&lt;a href="http://spookerlabs.multiply.com/"&gt;&lt;/a&gt;&lt;a href="http://spookerlabs.blogspot.com/" target="_blank"&gt;http://spookerlabs.blogspot.&lt;wbr&gt;&lt;/wbr&gt;com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Antônio César:&amp;nbsp;&lt;a href="http://rootgen.blogspot.com/"&gt;http://rootgen.blogs pot.com/&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Wagner Elias:&amp;nbsp;&lt;a href="http://wagnerelias.com/"&gt;http://wagnerelias.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Tony Rodrigues:&amp;nbsp;&lt;a href="http://forcomp.blogspot.com/"&gt;http://forcomp.blogspot.com&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Fernando Nery:&amp;nbsp;&lt;a href="http://monitoramentocontinuo.blogspot.com/"&gt;http://monitoramentocontinuo.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;José Mariano A Filho:&amp;nbsp;&lt;a href="http://mariano.delegadodepolicia.com/"&gt;http://mariano.delegadodepolicia.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Antônio César:&amp;nbsp;&lt;a href="http://rootgen.blogspot.com/"&gt;http://rootgen.blogs pot.com/&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Moisés Cassanti: &lt;a href="http://www.crimespelainternet.com.br/"&gt;http://www.crimespelainternet.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Pedro Zaniolo:&amp;nbsp;&lt;a href="http://www.crimesmodernos.com.br/"&gt;http://www.crimesmodernos.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Júnior Moraes&amp;nbsp;&lt;a href="http://unsecurity.com.br/"&gt;http://unsecurity.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Diego Piffaretti: &lt;a href="http://www.mundotecnologico.net/"&gt;http://www.mundotecnologico.net&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Roney Medice:&amp;nbsp;&lt;a href="http://roneymedice.com.br/"&gt;http://roneymedice.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Raphael e Flávio: &lt;a href="http://0xcd80.wordpress.com/"&gt;http://0xcd80.wordpress.com&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Fernando Amatte:&amp;nbsp;&lt;a href="http://segurancaimporta.blogspot.com/"&gt;http://segurancaimporta.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcelo Fleury:&amp;nbsp;&lt;a href="http://marcelomf.blogspot.com/"&gt;http://marcelomf.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Daniel Checchia:&amp;nbsp;&lt;a href="http://checchia.net/"&gt;http://checchia.net&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Roberto Soares: &lt;a href="http://codesec.blogspot.com/"&gt;http://codesec.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fernando Fonseca: &lt;a href="http://segurancaobjetiva.wordpress.com/"&gt;http://segurancaobjetiva.wordpress.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Luiz Vieira:&amp;nbsp;&lt;a href="http://hackproofing.blogspot.com/" target="_blank"&gt;http://hackproofing.blogspot.&lt;wbr&gt;&lt;/wbr&gt;com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Higor Jorge: &lt;a href="http://cciberneticos.blogspot.com/"&gt;http://cciberneticos.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Jonatas Baldin:&amp;nbsp;&lt;a href="http://metasecurity.blogspot.com.br/"&gt;http://metasecurity.blogspot.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Alexandre Teixeira:&amp;nbsp;&lt;a href="http://foren6.wordpress.com/"&gt;http://foren6.wordpress.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Paulo Sá Elias: &lt;a href="http://www.direitodainformatica.com.br/"&gt;http://www.direitodainformatica.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Gustavo Lima:&amp;nbsp;&lt;a href="http://blog.corujadeti.com.br/"&gt;http://blog.corujadeti.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Anderson Clayton: &lt;a href="http://periciadigitaldf.blogspot.com/"&gt;http://periciadigitaldf.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fabiano Matias: &lt;a href="http://remote-execution.blogspot.com/"&gt;http://remote-execution.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcelo Assumpção: &lt;a href="http://www.direitobitebyte.com.br/"&gt;http://www.direitobitebyte.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Antônio Feitosa: &lt;a href="http://lncc.br/~antonio/"&gt;http://lncc.br/~antonio/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcos Nascimento: &lt;a href="http://respostaincidente.blogspot.com/"&gt;http://respostaincidente.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;José Milagre: &lt;a href="http://josemilagre.com.br/blog/"&gt;http://josemilagre.com.br/blog/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;João Paulo Back:&amp;nbsp;&lt;a href="http://seginfoatual.blogspot.com/"&gt;http://seginfoatual.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Daniel Santana: &lt;a href="http://danielmenezessantana.blogspot.com/"&gt;http://danielmenezessantana.blogspot.com/&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;João Rufino de Sales:&amp;nbsp;&lt;a href="http://jrsseg.blogspot.com/"&gt;http://jrsseg.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fabrício Braz: &lt;a href="http://softwareseguro.blogspot.com/"&gt;http://softwareseguro.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;João Eriberto: &lt;a href="http://www.eriberto.pro.br/blog/"&gt;http://www.eriberto.pro.br/blog&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Raffael Vargas:&amp;nbsp;&lt;a href="http://imasters.com.br/autor/512/raffael-vargas"&gt;http://imasters.com.br/autor/512/raffael-vargas&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Edison Figueira: &lt;a href="http://efigueira.blogspot.com/"&gt;http://efigueira.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Thiago Galvão: &lt;a href="http://www.grcti.com.br/"&gt;http://www.grcti.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fábio Dapper: &lt;a href="http://openpci.blogspot.com/"&gt;http://openpci.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Carlos Cabral: &lt;a href="http://uberitsecurity.blogspot.com/"&gt;http://uberitsecurity.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Glaysson Santos: &lt;a href="http://rapportsec.blogspot.com/"&gt;http://rapportsec.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Leonardo Moraes: &lt;a href="http://maiorativo.wordpress.com/"&gt;http://maiorativo.wordpress.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Rodrigo Jorge: &lt;a href="http://qualitek.blogspot.com/"&gt;http://qualitek.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Laércio Motta:&amp;nbsp;&lt;a href="http://laerciomotta.com/"&gt;http://laerciomotta.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Rodrigo Magdalena: &lt;a href="http://rmagdalena.wordpress.com/"&gt;http://rmagdalena.wordpress.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Rafael Correa: &lt;a href="http://www.rafaelcorrea.com.br/"&gt;http://www.rafaelcorrea.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Lucas Ferreira:  &lt;a href="http://blog.sapao.net/"&gt;http://blog.sapao.net&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fernando Carbone: &lt;a href="http://flcarbone.blogspot.com/"&gt;http://flcarbone.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Clandestine: &lt;a href="http://clandestine-ethicalforense.blogspot.com/"&gt;http://clandestine-ethicalforense.blogspot.com/&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Luiz Zanardo: &lt;a href="http://siembrasil.blogspot.com/"&gt;http://siembrasil.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Ivo e Ronaldo:&lt;a href="http://brainsniffer.blogspot.com/"&gt;&amp;nbsp;http://brainsniffer.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcelo Rocha: &lt;a href="http://www.cybercrimes.com.br/"&gt;http://www.cybercrimes.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Thiago Bordini:&amp;nbsp;&lt;a href="http://www.bordini.net/blog/"&gt;http://www.bordini.net/blog/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Maycon Vitali : &lt;a href="http://blog.hacknroll.com/"&gt;http://blog.hacknroll.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Samukt (Samuel?): &lt;a href="http://www.inw-seguranca.com/wordpress/"&gt;http://www.inw-seguranca.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcos Cabral: &lt;a href="http://maraurcab.blogspot.com/"&gt;http://maraurcab.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Gilberto Sudre: &lt;a href="http://gilberto.sudre.com.br/"&gt;http://gilberto.sudre.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Rogério Chola: &lt;a href="http://rchola.blogspot.com/"&gt;http://rchola.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcelo Fleury: &lt;a href="http://marcelomf.blogspot.com/search/label/seguran%C3%A7a"&gt;http://marcelomf.blogspot.com&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Ed Santos:&amp;nbsp;&lt;a href="http://edsecinfo.blogspot.com/"&gt;http://edsecinfo.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Flávio Anello: &lt;a href="http://www.sec-ip.net/"&gt;http://www.sec-ip.net&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Ulisses Castro: &lt;a href="http://ulissescastro.com/"&gt;http://ulissescastro.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Sérgio de Souza: &lt;a href="http://www.layer8howto.net/wordpress/"&gt;http://www.layer8howto.net&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Silas Junior: &lt;a href="http://silasjr.com/"&gt;http://silasjr.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Jerônimo Zucco:&amp;nbsp;&lt;a href="http://jczucco.blogspot.com/"&gt;http://jczucco.blogspot.com&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Gabriel Lima: &lt;a href="http://www.falandodeseguranca.com/"&gt;http://www.falandodeseguranca.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcelo Souza: &lt;a href="http://marcelosouza.com/"&gt;http://marcelosouza.com&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Felipe Tsi: &lt;a href="http://felipetsi.blogspot.com/"&gt;http://felipetsi.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;CamargoNeves: &lt;a href="http://camargoneves.wordpress.com/" target="_blank"&gt;http://camargoneves.wordpress.&lt;wbr&gt;&lt;/wbr&gt;com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Ranieri de Souza: &lt;a href="http://blog.segr.com.br/"&gt;http://blog.segr.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Claudio Moura: &lt;a href="http://webcasting-today.blogspot.com/"&gt;http://webcasting-today.blogspot.com&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Otavio Ribeiro: &lt;a href="http://otavioribeiro.com/"&gt;http://otavioribeiro.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Ricardo Pereira:&amp;nbsp;&lt;a href="http://www.ricardosecurity.com.br/"&gt;http://www.ricardosecurity.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Paulo Braga: &lt;a href="http://cyberneurons.blogspot.com/"&gt;http://cyberneurons.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Luis Bittencourt: &lt;a href="http://arquivosmaximus.blogspot.com/"&gt;http://arquivosmaximus.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcos Abadi: &lt;a href="http://marcosabadi.blogspot.com/"&gt;http://marcosabadi.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Bruno Gonçalves: &lt;a href="http://g0thacked.wordpress.com/"&gt;http://g0thacked.wordpress.com&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;Gustavo Bittencourt: &lt;a href="http://www.gustavobittencourt.com/"&gt;http://www.gustavobittencourt.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcelo Martins: &lt;a href="http://administrandoriscos.wordpress.com/"&gt;http://administrandoriscos.wordpress.com&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;William Caprino:&amp;nbsp;&lt;a href="http://mrbilly.blogspot.com/"&gt;http://mrbilly.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Kembolle Amilkar:&amp;nbsp;&lt;a href="http://www.kembolle.co.cc/"&gt;http://www.kembolle.co.cc&lt;/a&gt;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;Alex Loula: &lt;a href="http://alexloula.blogspot.com/"&gt;http://alexloula.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Victor Santos: &lt;a href="http://hackbusters.blogspot.com/"&gt;http://hackbusters.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Clandestine: &lt;a href="http://clandestine-ethicalforense.blogspot.com/"&gt;http://clandestine-ethicalforense.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Fábio Sales: &lt;a href="http://www.abrigodigital.com.br/"&gt;http://www.abrigodigital.com.br &lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;Drak: &lt;a href="http://deadpackets.wordpress.com/"&gt;http://deadpackets.wordpress.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;John Kleber: &lt;a href="http://www.hackernews.com.br/"&gt;http://www.hackernews.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Edison Fontes: &lt;a href="http://www.itweb.com.br/blogs/blog.asp?cod=58"&gt;http://www.itweb.com.br/blogs/blog.asp?cod=58&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Dantas: &lt;a href="http://hackereseguranca.blogspot.com/"&gt;http://hackereseguranca.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Anderson: &lt;a href="http://compforense.blogspot.com/"&gt;http://compforense.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Alex Silva: &lt;a href="http://linux4security.blogspot.com/"&gt;http://linux4security.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Clebeer: &lt;a href="http://clebeerpub.blogspot.com/"&gt;http://clebeerpub.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Paulo Cardoso: &lt;a href="http://paulofcardoso.wordpress.com/"&gt;http://paulofcardoso.wordpress.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marcos Aurélio: &lt;a href="http://deigratia33.blogspot.com/"&gt;http://deigratia33.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Andre Machado: &lt;a href="http://oglobo.globo.com/blogs/andremachado/"&gt;http://oglobo.globo.com/blogs/andremachado&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;André Pitkowski: &lt;a href="http://andrepitkowski.wordpress.com/category/seguranca-da-informacao/"&gt;http://andrepitkowski.wordpress.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Jacó Ramos: &lt;a href="http://computacaoforensepiaui.blogspot.com/"&gt;http://computacaoforensepiaui.blogspot.com/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Felipe Martins: &lt;a href="http://www.felipemartins.info/pt-br/"&gt;http://www.felipemartins.info/pt-br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Denny Roger: &lt;a href="http://blog.dennyroger.com.br/feed/"&gt;http://blog.dennyroger.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Heliton Júnior: &lt;a href="http://www.helitonjunior.com/"&gt;http://www.helitonjunior.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Luiz Felipe Ferreira: &lt;a href="http://usuariomortal.wordpress.com/"&gt;http://usuariomortal.wordpress.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;strike&gt;Pedro Quintanilha:&amp;nbsp;&lt;a href="http://pedroquintanilha.blogspot.com/"&gt;http://pedroquintanilha.blogspot.com&lt;/a&gt;&lt;/strike&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;b&gt;II - Blogs sobre Segurança da Informação em Portugal:&lt;/b&gt;
&lt;br /&gt;
&lt;ol&gt;
&lt;li&gt;Miguel Almeida: &lt;a href="http://miguelalmeida.pt/blog_index.html" target="_blank"&gt;http://miguelalmeida.pt/blog_&lt;wbr&gt;&lt;/wbr&gt;index.html&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Carlos Serrão: &lt;a href="http://blog.carlosserrao.net/"&gt;http://blog.carlosserrao.net/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;WebSegura: &lt;a href="http://www.websegura.net/%20"&gt;http://www.websegura.net&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Infosec Portugal: &lt;a href="http://www.infosec.online.pt/"&gt;http://www.infosec.online.pt&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;CrkPortugal: &lt;a href="http://www.crkportugal.net/"&gt;http://www.crkportugal.net&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;Seg. Informática: &lt;a href="http://www.seguranca-informatica.net/"&gt;http://www.seguranca-informatica.ne&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;ISMSPT: &lt;a href="http://ismspt.blogspot.com/"&gt;http://ismspt.blogspot.com&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;WebAppSec: &lt;a href="http://webappsec.netmust.eu/"&gt;http://webappsec.netmust.eu&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Hugo Ferreira: &lt;a href="http://blog.hugoferreira.com/"&gt;http://www.hugoferreira.com/&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;SysValue: &lt;a href="http://blog.sysvalue.com/"&gt;http://blog.sysvalue.com/&lt;/a&gt;  &lt;/li&gt;
&lt;li&gt;PCSeguro.pt:&amp;nbsp;&lt;a href="http://www.pcseguro.pt/blog/"&gt;http://www.pcseguro.pt/blog/&lt;/a&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;div&gt;
&lt;div&gt;
&lt;b&gt;III - Blogs/Notícias de Empresas e Universidades:&lt;/b&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;ol&gt;
&lt;li&gt;4Sec: &lt;a href="http://www.4secbrasil.com.br/blog/"&gt;http://www.4secbrasil.com.br/blog&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Aker:&amp;nbsp;&lt;a href="http://www.aker.com.br/Entidade/528/RelacaoNoticias/?slG=11783"&gt;http://www.aker.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Apura: &lt;a href="http://www.apura.com.br/"&gt;http://www.apura.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;CertiSign: &lt;a href="http://www.certisign.com.br/certinews/banco-de-noticias"&gt;http://www.certisign.com.br/certinews&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Conviso: &lt;a href="http://www.conviso.com.br/category/blog/"&gt;http://www.conviso.com.br/category/blog&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Clavis: &lt;a href="http://www.blog.clavis.com.br/"&gt;http://www.blog.clavis.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Cipher: &lt;a href="http://www.ciphersec.com.br/pag_not.aspx"&gt;http://www.ciphersec.com.br/pag_not.aspx&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;FlipSide: &lt;a href="http://www.flipside-scp.com.br/blog/"&gt;http://www.flipside-scp.com.br/blog&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Future: &lt;a href="http://www.future.com.br/?cont=noticias&amp;amp;bc=5_1"&gt;http://www.future.com.br/?cont=noticias&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;IBliss:&amp;nbsp;&lt;a href="http://www.ibliss.com.br/category/blog/"&gt;http://www.ibliss.com.br/category/blog/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;IESB: &lt;a href="http://segurancaiesb.blogspot.com/"&gt;http://segurancaiesb.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Nod32: &lt;a href="http://esethelp.blogspot.com/"&gt;http://esethelp.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Microsoft BR: &lt;a href="http://blogs.technet.com/risco/"&gt;http://blogs.technet.com/risco&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Módulo: &lt;a href="http://www.modulo.com.br/comunidade"&gt;http://www.modulo.com.br/comunidade&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Procela: &lt;a href="http://www.procela.com.br/"&gt;http://www.procela.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Qualitek: &lt;a href="http://www.qualitek.com.br/"&gt;http://www.qualitek.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Site Blindado:&amp;nbsp;&lt;a href="http://www.siteblindado.com/blog/"&gt;http://www.siteblindado.com/blog/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Techbiz Forense: &lt;a href="http://techbizforense.blogspot.com/"&gt;http://techbizforense.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Tempest: &lt;a href="http://blog.tempest.com.br/"&gt;http://blog.tempest.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Tivex: &lt;a href="http://www.tivex.com.br/blog/"&gt;http://www.tivex.com.br/blog/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;True Access: &lt;a href="http://www.trueaccess.com.br/noticias/"&gt;http://www.trueaccess.com.br/noticias&lt;/a&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;b&gt;&lt;/b&gt;&lt;br /&gt;
&lt;div style="font-weight: normal;"&gt;
&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;
&lt;b&gt;&lt;b&gt;IV - &lt;/b&gt;&lt;/b&gt;&lt;b&gt;&lt;b&gt;Portais/&lt;/b&gt;&lt;/b&gt;&lt;b&gt;&lt;b&gt;Revistas/Forums/Podcasts:&lt;/b&gt;&lt;/b&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div style="font-weight: normal;"&gt;
&lt;ol&gt;
&lt;li&gt;SegInfo:&amp;nbsp;&lt;a href="http://www.seginfo.com.br/"&gt;http://www.seginfo.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;BackTrack Brasil:&amp;nbsp;&lt;a href="http://www.backtrack.com.br/"&gt;http://www.backtrack.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;CAIS/RNP:&amp;nbsp;&lt;a href="http://www.rnp.br/cais/alertas/%20"&gt;http://www.rnp.br/cais/alertas&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;ThreatPost BR:&amp;nbsp;&lt;a href="http://threatpost.com/pt_br" target="_blank"&gt;http://&lt;span class="il"&gt;threatpost&lt;/span&gt;.com/pt_br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;PCMag Firewall:&amp;nbsp;&lt;a href="http://pcmag.uol.com.br/firewall/"&gt;http://pcmag.uol.com.br/firewall/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;ComputerWorld:&amp;nbsp;&lt;a href="http://computerworld.uol.com.br/seguranca" target="_blank"&gt;http://computerworld.uol.com.&lt;wbr&gt;&lt;/wbr&gt;br/seguranca&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;IDGNow:&amp;nbsp;&lt;a href="http://idgnow.uol.com.br/seguranca/"&gt;http://idgnow.uol.com.br/seguranca&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;NextHop:&amp;nbsp;&lt;a href="http://blog.nexthop.com.br/"&gt;http://blog.nexthop.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Linha Defensiva:&amp;nbsp;&lt;a href="http://www.linhadefensiva.org/"&gt;http://www.linhadefensiva.org&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;ISTF:&amp;nbsp;&lt;a href="http://www.istf.com.br/"&gt;http://www.istf.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;InfoAux:&amp;nbsp;&lt;a href="http://infoaux-security.blogspot.com/"&gt;http://infoaux-security.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Forum Invaders: &lt;a href="http://www.forum-invaders.com.br/vb/"&gt;http://www.forum-invaders.com.br/&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;RfdsLabs:&amp;nbsp;&lt;a href="http://www.rfdslabs.com.br/"&gt;http://www.rfdslabs.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Segurança Linux:&amp;nbsp;&lt;a href="http://segurancalinux.com/"&gt;http://segurancalinux.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Proteção de Dados:&amp;nbsp;&lt;a href="http://protecaodedados.blogspot.com/"&gt;http://protecaodedados.blogspot.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Crimes na Web:&amp;nbsp;&lt;a href="http://www.crimesnaweb.com.br/"&gt;http://www.crimesnaweb.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Segurança Digital:&amp;nbsp;&lt;a href="http://www.segurancadigital.info/"&gt;http://www.segurancadigital.info&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;NaoPod PodCast:&amp;nbsp;&lt;a href="http://www.naopod.com.br/"&gt;http://www.naopod.com.br&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;StaySafe PodCast:&amp;nbsp;&lt;a href="http://www.staysafepodcast.com.br/"&gt;http://www.staysafepodcast.com.br&lt;/a&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;/div&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Apêndice: &lt;/b&gt;o Rodrigo &lt;i&gt;Spooker&lt;/i&gt; Monteiro fez &lt;a href="http://spookerlabs.blogspot.com/2010/01/brasileirosseguranca-no-twitter.html"&gt;lista de twiteiros&lt;/a&gt; e o Anchises de Paula também mantém uma &lt;a href="http://anchisesbr.blogspot.com/2010/01/seguranca-72-perfis-de-profissionais-de.html"&gt;&lt;b&gt;bem completa&lt;/b&gt;.&lt;/a&gt; Ambas possuem vários profissionais da área de segurança da informação do Brasil.&lt;b&gt; &lt;/b&gt;
&lt;br /&gt;
&lt;div style="text-align: left;"&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;span class="Apple-style-span" style="font-weight: bold;"&gt;Você conhece mais algum blog sobre segurança da informação &lt;u&gt;escrito em português&lt;/u&gt; para incluir na lista?  Por favor, faça como os outros e sugira nos comentários!&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span style="font-weight: bold;"&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-1817789313796262097?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=Cy4iY7aYaRg:SiWCgbEuFu8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=Cy4iY7aYaRg:SiWCgbEuFu8:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=Cy4iY7aYaRg:SiWCgbEuFu8:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/Cy4iY7aYaRg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/1817789313796262097/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2008/12/blogs-brasileiros-sobre-seguranca-links.html#comment-form" title="78 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/1817789313796262097?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/1817789313796262097?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/Cy4iY7aYaRg/blogs-brasileiros-sobre-seguranca-links.html" title="163 blogs de Seguranca da Informação em português" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_vHfhEO08cCE/SJoFpfiNv1I/AAAAAAAAIxs/t2jw_h2zf2o/s72-c/BANDEIRA%2BUNICA%2BBRASIL-PORTUGAL.JPG" height="72" width="72" /><thr:total>78</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2008/12/blogs-brasileiros-sobre-seguranca-links.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0MFR309eCp7ImA9WhVWF0g.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-5576401934529419316</id><published>2012-04-29T23:55:00.000-03:00</published><updated>2012-04-30T00:10:16.360-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-30T00:10:16.360-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="street view" /><category scheme="http://www.blogger.com/atom/ns#" term="gsm" /><category scheme="http://www.blogger.com/atom/ns#" term="wigle" /><category scheme="http://www.blogger.com/atom/ns#" term="privacidade" /><category scheme="http://www.blogger.com/atom/ns#" term="wireless" /><category scheme="http://www.blogger.com/atom/ns#" term="google" /><category scheme="http://www.blogger.com/atom/ns#" term="3g" /><title>Google Street View coleta SSID, MAC e Payload de redes WiFi</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://blog.airtightnetworks.com/wp-content/uploads/2010/06/Google_Street_View_Car_WiFi1.JPG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="240" src="http://blog.airtightnetworks.com/wp-content/uploads/2010/06/Google_Street_View_Car_WiFi1.JPG" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="color: #f3f3f3; font-family: arial; font-size: medium;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;[ Update - 30/04/2012 ]&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="color: #f3f3f3; font-family: arial; font-size: medium;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;b&gt;Solução low-tech: Bode expiatório?&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;"&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family: arial; font-size: medium;"&gt;&lt;i&gt;Google Street View Report points the finger at a &lt;b&gt;rogue engineer&lt;/b&gt; who intentionally wrote software code that captured payload data information&lt;/i&gt;"&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;/div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;Mais informações:&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;i&gt;Exclusive (LA Times)&lt;/i&gt;:&amp;nbsp;&lt;a href="http://www.latimes.com/business/technology/la-fi-tn-exclusive-google-voluntarily-releases-fcc-report-into-street-view-20120427,0,5957937.story"&gt;Google releases FCC report on Street View probe&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div style="text-align: left;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;[ Post Original - 15/05/2010 ]&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;O &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Google&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; possui um serviço muito interessante e polêmico chamado &lt;/span&gt;&lt;/span&gt;&lt;a href="http://www.google.com/intl/en_us/help/maps/streetview/"&gt;&lt;i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Street View&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;. Em operação desde 2007, o &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Street View&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; possibilita a visualização panorâmica de ruas e avenidas de várias cidades do mundo a partir das interfaces do &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;a href="http://maps.google.com/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Google Maps&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; e &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;a href="http://earth.google.com/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Google Earth&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;. &lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;No Brasil, o lançamento do &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Street View&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; será no segundo semestre de 2010 e incluirá fotografias de Belo Horizonte,  São Paulo e Rio de Janeiro.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div&gt;
&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/div&gt;
&lt;div&gt;
&lt;i&gt;&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Desde o seu lançamento o &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Street View&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; já foi alvo de &lt;/span&gt;&lt;/span&gt;&lt;a href="http://www.digitaltrends.com/international/google-street-view-privacy-protest-in-japan/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;inúmeros&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;a href="http://nexus404.com/Blog/2010/04/21/western-governments-stage-their-own-google-street-view-protest-ten-major-countries-complain-to-google-over-street-view-buzz-privacy/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;protestos&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;a href="http://www.thelocal.de/sci-tech/20100330-26213.html"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;relativos&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; à &lt;/span&gt;&lt;/span&gt;&lt;a href="http://topnews.co.uk/23017-google-s-street-view-raises-protest-britain-owing-invasion-privacy"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;privacidade&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; ao redor do mundo. Algumas medidas são tomadas pelo Google para evitar este tipo de problema: &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;
&lt;li&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-style: normal;"&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;existe (no canto inferior esquerdo da interface do &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Street View&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;) a opção de solicitar ao Google a remoção de fotos consideradas vexatórias ou comprometedoras como a reproduzida no início deste artigo.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/span&gt;&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;as fotos são tratadas utilizando algorítimos automatizados para garantir que placas de carro e rostos, por exemplo, sejam adequadamente borrados; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-style: normal;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;as fotos originais (não tratadas) são apagadas dos servidores do Google em 1 ano ou 6 meses (dependendo do país);&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;Os milhões de fotos que são apresentadas no serviço são capturadas por carros (ou triciclos) do Google equipados com um GPS e 9 câmeras que proporcionam uma visão 360 graus. No caso do Brasil, 30 carros cedidos pela Fiat estão percorrendo mais de 1 milhão de quilômetros nas 3 cidades incluídas inicialmente no projeto.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;O que pouca gente sabe é que outros equipamentos mais discretos que câmeras são também embarcados nos carros do &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Street View&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;: são antenas Wi-Fi, GSM e 3G - usadas para coletar informações de redes wireless pelo mundo afora.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;O Google já havia &lt;/span&gt;&lt;/span&gt;&lt;a href="http://googlepolicyeurope.blogspot.com/2010/04/data-collected-by-google-cars.html"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;divulgado no final do mês passado&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; que estes dados se resumiam aos Mac Addresses (endereços físicos das interfaces de rede dos roteadores wireless) e SSIDs (nomes das redes), que seriam usados para identificação de estabelecimentos em ferramentas como o Google Search e o Google Maps...&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Do ponto de vista do mapeamento de redes WiFi, sem dúvida o Google supera grandes esforços de mapeamento de redes públicas, como o &lt;/span&gt;&lt;/span&gt;&lt;a href="http://wigle.net/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;http://wigle.net/&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Depois de protestos e pedidos de esclarecimento de países como &lt;/span&gt;&lt;/span&gt;&lt;a href="http://www.theregister.co.uk/2010/04/22/google_streetview_logs_wlans/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Alemanha&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; e &lt;/span&gt;&lt;/span&gt;&lt;a href="http://www.smh.com.au/technology/technology-news/dear-google-20100513-v10t.html?rand=1273731564805"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Austrália&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; e a &lt;/span&gt;&lt;span class="Apple-style-span" style="font-size: 16px;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;solicitação germânica de auditoria dos dados de redes &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;wireless&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; coletados - o Google resolveu olhar mais a fundo e publicou &lt;/span&gt;&lt;/span&gt;&lt;a href="http://googleblog.blogspot.com/2010/05/wifi-data-collection-update.html"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;um &lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;i&gt;&lt;a href="http://googleblog.blogspot.com/2010/05/wifi-data-collection-update.html"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;post &lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;/i&gt;&lt;a href="http://googleblog.blogspot.com/2010/05/wifi-data-collection-update.html"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;em seu blog principal hoje&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;, corrigindo a informação citada anteriormente e estarrecendo muita gente.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Na verdade, os carros do &lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Google Street View&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; também capturaram o &lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;payload &lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;(conteúdo das comunicações, como emails e navegação) de redes sem proteção Wireless. &lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;É isto mesmo, você entendeu certo. O Google possui terabytes e mais terabytes e dados capturados de redes WiFi do mundo todo - possivelmente desde 2007. E nunca reparou isto..&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;A desculpa que &lt;/span&gt;&lt;/span&gt;&lt;a href="http://googleblog.blogspot.com/2010/05/wifi-data-collection-update.html"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;foi dada&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; envolve a reutilização de um código feito anteriormente em um projeto experimental que tinha por objetivo capturar amostras de dados WiFi publicamente acessíveis. A equipe do Google Street View teria usado este código sem saber que além dos dados de SSID e MAC estaria também sendo capturado tráfego de milhões de diferentes &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;access points&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; pelo mundo...&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;Para minimizar o problema, o Google argumenta que apenas fragmentos de dados foram capturados porque:&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;os carros estão em movimento; &lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;alguém precisa estar usando a rede enquanto o carro passa;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;o equipamento WiFi embarcado troca de &lt;/span&gt;&lt;/span&gt;&lt;a href="http://en.wikipedia.org/wiki/List_of_WLAN_channels"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;canal Wlan&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; 5 vezes por segundo;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;não são coletadas informações trafegando em redes Wifi protegidas por WEP e WPA&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;Estes argumentos não devem impedir que autoridades de vários países (incluindo os Estados Unidos) avaliem se o Google não violou diferentes leis de sigilo de comunicações.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;A máquina de relações públicas do Google até o momento trabalhou bem diante do tamanho do problema, e divulgou que:&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;paralizou temporariamente a utilização dos carros do Street View; &lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;segregou os dados para outra rede separada da rede corporativa e desconectou esta rede; &lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;vai (e quer) deletar estes dados o quanto antes;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;trabalhará com instituições regulatórias em diferentes países para definir o método de &lt;/span&gt;&lt;/span&gt;&lt;a href="http://en.wikipedia.org/wiki/Data_erasure"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;descarte&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; destas informações;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;irá solicitar a uma organização idependente que faça a revisão do software em questão, seu funcionamento, dados coletados e método utilizado para descarte;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;revisão de procedimentos internos para garantir e revisar os controles necessários para evitar este problema no futuro;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;decisão de encerrar a coleta de dados &lt;/span&gt;&lt;/span&gt;&lt;i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;WiFi&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #f3f3f3;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;O pedido final de desculpas - no melhor espírito do "&lt;/span&gt;&lt;/span&gt;&lt;a href="http://en.wikipedia.org/wiki/Don't_be_evil"&gt;&lt;i&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Don´t Be Evil&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;" é o seguinte:&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: Arial, sans-serif;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;blockquote&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: Arial, sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;The engineering team at Google works hard to earn your trust—and we are acutely aware that we failed badly here. We are profoundly sorry for this error and are determined to learn all the lessons we can from our mistake.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: Arial, sans-serif;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: arial;"&gt;Mais informações:&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: Arial, sans-serif;"&gt;&lt;a href="http://www.theregister.co.uk/2010/05/14/google_street_view_cars_were_collecting_payload_data_from_wifi_networks/"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;The Register&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; - Google Street View snooped WiFi for personal data&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: Arial, sans-serif;"&gt;&lt;a href="http://www.wired.com/threatlevel/2010/05/google-street-view-cams"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;Wired&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt; - Google Street View Cams Collected Private Content From WiFi Networks &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="color: #f3f3f3; font-family: Arial, sans-serif;"&gt;&lt;a href="http://arstechnica.com/tech-policy/news/2010/05/google-says-wifi-data-collection-was-a-mistake.ars"&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;ArsTechnica&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span" style="font-family: arial;"&gt;&lt;span class="Apple-style-span"&gt; - Google StreetView cars grabbed traffic from open WiFi networks&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-5576401934529419316?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=TG0a7Po9RsU:SHGRQiK1R1M:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=TG0a7Po9RsU:SHGRQiK1R1M:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=TG0a7Po9RsU:SHGRQiK1R1M:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/TG0a7Po9RsU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/5576401934529419316/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2010/05/google-street-view-coleta-ssid-mac-e.html#comment-form" title="2 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/5576401934529419316?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/5576401934529419316?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/TG0a7Po9RsU/google-street-view-coleta-ssid-mac-e.html" title="Google Street View coleta SSID, MAC e Payload de redes WiFi" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><thr:total>2</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2010/05/google-street-view-coleta-ssid-mac-e.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkQERHY5fCp7ImA9WhVWFUs.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-8476047111035480410</id><published>2012-04-27T19:05:00.000-03:00</published><updated>2012-04-27T19:05:05.824-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-27T19:05:05.824-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="hotmail" /><category scheme="http://www.blogger.com/atom/ns#" term="skype" /><category scheme="http://www.blogger.com/atom/ns#" term="falha" /><category scheme="http://www.blogger.com/atom/ns#" term="python" /><category scheme="http://www.blogger.com/atom/ns#" term="privacidade" /><category scheme="http://www.blogger.com/atom/ns#" term="microsoft" /><category scheme="http://www.blogger.com/atom/ns#" term="vulnerabilidade" /><title>Hotmail e Skype - falhas de segurança e privacidade</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://i1-news.softpedia-static.com/images/news2/Microsoft-Security-Is-a-Conflict-of-Interest-2.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://i1-news.softpedia-static.com/images/news2/Microsoft-Security-Is-a-Conflict-of-Interest-2.png" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Podemos dizer que esta semana não foi uma das melhores do ponto de vista da Segurança e Privacidade para os produtos &lt;i&gt;online &lt;/i&gt;da &lt;i&gt;Microsoft&lt;/i&gt;.&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;1) Hotmail:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Uma falha no processo de &lt;i&gt;reset&lt;/i&gt; de senha no &lt;i&gt;Hotmail&lt;/i&gt; foi descoberta em 6 de julho e informada à &lt;i&gt;Microsoft &lt;/i&gt;no dia 20. Em resumo, o &lt;i&gt;reset &lt;/i&gt;do hotmail utiliza um sistema de &lt;i&gt;tokens&lt;/i&gt;&amp;nbsp;que não são validados de forma adequada, o que permitiu que qualquer usuário pudesse resetar a senha de qualquer conta!&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Depois de muita divulgação da falha, incluindo vídeos no &lt;i&gt;Youtube &lt;/i&gt;com o passo a passo necessário para resetar qualquer conta do &lt;i&gt;Hotmail&lt;/i&gt;, a falha &amp;nbsp;foi &lt;a href="https://twitter.com/#%21/msftsecresponse/status/195568235654021121"&gt;corrigida&lt;/a&gt;&amp;nbsp;ontem, sem muito estardalhaço por parte da Microsoft.&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Mais infomações:&lt;/b&gt;&amp;nbsp;&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;"&lt;i&gt;&lt;b&gt;Microsoft patches major Hotmail 0-day flaw after apparently widespread exploitation&lt;/b&gt;&lt;/i&gt;" -&amp;nbsp;&lt;/span&gt;&lt;a href="http://arstechnica.com/microsoft/news/2012/04/microsoft-patches-major-hotmail-0-day-flaw-after-apparently-widespread-exploitation.ars" style="font-family: Arial, Helvetica, sans-serif;"&gt;http://arstechnica.com/microsoft/news/2012/04/microsoft-patches-major-hotmail-0-day-flaw-after-apparently-widespread-exploitation.ars&lt;/a&gt;&lt;br /&gt;
&lt;br class="Apple-interchange-newline" /&gt;&lt;b style="font-family: Arial, Helvetica, sans-serif;"&gt;2) Skype:&lt;/b&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Sabemos que o &lt;b&gt;Skype&lt;/b&gt; é uma aplicação &lt;b&gt;P2P&lt;/b&gt;, mas o senso comum é que a não ser que você faça uma transferência de arquivo, um usuário não pode saber qual é o seu IP externo (e menos ainda o interno!). &amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Um grupo de desenvolvedores responsável por uma versão "&lt;i&gt;open-source&lt;/i&gt;" do &lt;i&gt;Skype (&lt;a href="http://skype-open-source.blogspot.com/"&gt;http://skype-open-source.blogspot.com&lt;/a&gt;) &lt;/i&gt;divulgou ontem um "&lt;i&gt;how to"&amp;nbsp;&lt;/i&gt;de como instalar uma versão&amp;nbsp;que foi disseminado no &lt;i&gt;pastebin&lt;/i&gt; (&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;"&lt;/span&gt;&lt;i style="font-family: Arial, Helvetica, sans-serif;"&gt;Skype user IP-address disclosure&amp;nbsp;&lt;/i&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;-&amp;nbsp;&lt;/span&gt;&lt;a href="http://pastebin.com/rBu4jDm8" style="font-family: Arial, Helvetica, sans-serif;"&gt;http://pastebin.com/rBu4jDm8&lt;/a&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;") e no twitter no dia de hoje&lt;i&gt;.&lt;/i&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Pois bem - hoje um desenvolvedor russo pediu ajuda para testar um novo serviço online que ele estava testando, utilizando os dados já publicados anteriormente sobre a "vulnerabilidade":&amp;nbsp;&lt;a href="http://news.ycombinator.com/item?id=3899829"&gt;http://news.ycombinator.com/item?id=3899829&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;O resultado: o serviço está no ar, e funcionando:&amp;nbsp;&lt;a href="http://skype-ip-finder.tk/"&gt;http://skype-ip-finder.tk/&lt;/a&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;O usuário do &lt;i&gt;Skype&lt;/i&gt; deve estar logado no momento da &lt;i&gt;query, &lt;/i&gt;e o resultado vai conter todos endereços IPs&amp;nbsp;&lt;b&gt;externos e internos&lt;/b&gt;&amp;nbsp;de todos os dispositivos do usuário que estiverem logados no &lt;i&gt;Skype&lt;/i&gt;, obtidos a partir do &lt;a href="https://github.com/zhovner/Skype-iplookup/"&gt;wrapper em python&lt;/a&gt; desenvolvido pelo russo "&lt;i&gt;zhovner&lt;/i&gt;".&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;a href="https://github.com/zhovner/Skype-iplookup/blob/master/README.md"&gt;Detalhes&lt;/a&gt;:&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Perform obscure ip lookup for online skype account.&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Can find local and remote ip address.&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Based on deobfuscated Skypekit runtime that write clear debug log&lt;/span&gt;&lt;/i&gt;&lt;/blockquote&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Esta falha, somada a facilidade de buscar por um nome no diretório no &lt;i&gt;Skype&lt;/i&gt;, deve ser considerada e usuários que pretendem omitir seu IP (e por consequência&lt;a href="http://en.utrace.de/"&gt; localização física&lt;/a&gt;) devem evitar utilizar o serviço até que haja uma correção por parte da &lt;i&gt;Microsoft/Skype&lt;/i&gt;.&lt;/span&gt;&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br class="Apple-interchange-newline" /&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Posts relacionados:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://sseguranca.blogspot.com.br/2009/02/nsa-paga-bilhoes-por-grampo-no-skype.html"&gt;NSA paga Bilhões por "grampo" no Skype&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://sseguranca.blogspot.com.br/2010/03/skypex-analise-de-dump-de-memoria-por.html"&gt;Skypeex - análise de dump de memória - chats do Skype&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://sseguranca.blogspot.com.br/2008/10/skype-chins-voc-est-sendo-vigiado-e.html"&gt;Skype Chinês - Você está sendo vigiado... e suas conversas estão disponíveis na Internet!&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-8476047111035480410?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=wW-3_bepjWU:W2nsmprKwww:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=wW-3_bepjWU:W2nsmprKwww:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=wW-3_bepjWU:W2nsmprKwww:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/wW-3_bepjWU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/8476047111035480410/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2012/04/hotmail-e-skype-falhas-de-seguranca-e.html#comment-form" title="0 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/8476047111035480410?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/8476047111035480410?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/wW-3_bepjWU/hotmail-e-skype-falhas-de-seguranca-e.html" title="Hotmail e Skype - falhas de segurança e privacidade" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><thr:total>0</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2012/04/hotmail-e-skype-falhas-de-seguranca-e.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUABRns_cCp7ImA9WhVXGUw.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-6473178846992214771</id><published>2012-04-20T05:11:00.003-03:00</published><updated>2012-04-20T06:22:37.548-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-20T06:22:37.548-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="trustwave" /><category scheme="http://www.blogger.com/atom/ns#" term="mandiant" /><category scheme="http://www.blogger.com/atom/ns#" term="verizon" /><category scheme="http://www.blogger.com/atom/ns#" term="pdf" /><category scheme="http://www.blogger.com/atom/ns#" term="HP" /><category scheme="http://www.blogger.com/atom/ns#" term="eset" /><category scheme="http://www.blogger.com/atom/ns#" term="relatório" /><category scheme="http://www.blogger.com/atom/ns#" term="verisign" /><category scheme="http://www.blogger.com/atom/ns#" term="segurança" /><title>CyberSecurity Reports: Mandiant, Verizon Business, HP, Verisign, WebSense, Trustwave &amp; others</title><content type="html">Existem muitos relatórios sobre o atual estado de ataques, a evolução e adaptação das técnicas utilizadas pelos perpetradores. Estamos acostumados a ver estes documentos sendo lançados por diversas fontes diferentes, deste empresas de anti-vírus, passando por fabricantes de sistemas operacionais e consultorias na área de governança corporativa.
&lt;br /&gt;
&lt;br /&gt;
A &lt;a href="http://sseguranca.blogspot.com/search?q=mandiant"&gt;&lt;i&gt;Mandiant&lt;/i&gt;&lt;/a&gt;&amp;nbsp;e a &lt;i&gt;&lt;a href="http://sseguranca.blogspot.com/search?q=verizon"&gt;Verizon Business&lt;/a&gt;&lt;/i&gt; estão entre as empresas mais especializadas e bem sucedidas em serviços de Resposta a Incidentes no mundo, e por isto mesmo lidam com os mais variados tipos de situações ao tratar inúmeros incidentes de segurança como vazamento de informações e invasão de sistemas em clientes de várias verticais de atuação diferentes.&lt;br /&gt;
&lt;br /&gt;
Lendo este material é possivel perceber a melhoria na qualidade e quantidade de informações à disposição de uma empresa a partir do tratamento adequado de seus incidentes de segurança realmente criticos, o que auxilia as áreas envolvidas a desenvolver uma postura de segurança com&amp;nbsp;&lt;a href="http://sseguranca.blogspot.com/search?q=amea%C3%A7a"&gt;foco nas&amp;nbsp;&lt;b&gt;ameaças&lt;/b&gt;&amp;nbsp;reais&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
Devido a este embasamento em casos reais, &amp;nbsp;considero que estes relatórios merecem uma leitura detalhada. Ao final deste post eu incluí também referências a outros &lt;b&gt;6&amp;nbsp;relatórios&lt;/b&gt;&amp;nbsp;interessates publicados por outras organizações (&lt;i&gt;HP, VeriSign, WebSense, TrustWave, ESET e Sophos&lt;/i&gt;).&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Destaques M-Trends Mandiant:&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;u&gt;Tipos de Ataques mais comuns&lt;/u&gt;:&amp;nbsp;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
O tipo de ameaça enfrentado por uma organização deve nortear os investimentos em Segurança da Informação, dentre os maiores tipos de ataques investigados pela Mandiant em 2011,&amp;nbsp;&lt;/div&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-oOiRRkR0lUE/T1mdcUhjglI/AAAAAAAAAYk/_GaktHMED9Q/s1600/m-trends2012_1.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="220" src="http://4.bp.blogspot.com/-oOiRRkR0lUE/T1mdcUhjglI/AAAAAAAAAYk/_GaktHMED9Q/s400/m-trends2012_1.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;u&gt;Indústrias sendo afetadas por ataques avançados&lt;/u&gt;:&lt;/div&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-6SJCoC92KEY/T1mebuy0ShI/AAAAAAAAAYs/ZAueyxtTyTQ/s1600/m-trends2012_2.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="271" src="http://4.bp.blogspot.com/-6SJCoC92KEY/T1mebuy0ShI/AAAAAAAAAYs/ZAueyxtTyTQ/s320/m-trends2012_2.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;u&gt;Utilização de malware publicamente disponível&lt;/u&gt; &amp;nbsp;e &lt;u&gt;Detecção dos incidentes&lt;/u&gt; (!)&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-zFY0Hms9DYo/T1me8v0vKeI/AAAAAAAAAY0/Ol8WDG3ud2E/s1600/m-trends2012_3.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="187" src="http://4.bp.blogspot.com/-zFY0Hms9DYo/T1me8v0vKeI/AAAAAAAAAY0/Ol8WDG3ud2E/s400/m-trends2012_3.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;u&gt;&lt;b&gt;Tendências (M-Trends)&lt;/b&gt;&lt;/u&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;/div&gt;
&lt;ol&gt;
&lt;li&gt;&lt;b&gt;Malware só conta uma parte da história:&lt;/b&gt;&amp;nbsp;apenas 54% de todos sistemas comprometidos nos ataques investigados possuiam traços da execução de malware (o uso de credenciais válidas para acesso aos sistemas comprometidos é mais difícil de identificar e possibilita aos atacantes um movimento lateral entre sistemas, explorando senhas iguais e relações de confiança existentes nas redes atacadas) ;&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Técnicas antigas sendo ressuscitadas:&lt;/b&gt;&amp;nbsp;&lt;i&gt;backdoors &lt;/i&gt;passivos estão sendo usados para bypassar detecção no host e na rede (... );&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;b&gt;RATs - &lt;a href="http://en.wikipedia.org/wiki/Remote_administration_software#Typical_RAT_software_and_trojans"&gt;Remote Access Software &amp;amp; Trojans&lt;/a&gt;&lt;/b&gt;&amp;nbsp;disponíveis publicamente são cada vez mais usados em ataques direcionados;&lt;/li&gt;
&lt;li&gt;Processos de &lt;b&gt;Fusão e Aquisição de empresas&lt;/b&gt; geram mercado de venda de informações confidenciais roubadas.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Empresas que participam de uma mesma cadeia produtiva&lt;/b&gt; são comprometidas pelos mesmos atacantes, que buscam obter mais informações de propriedade intelectual sobre o negócio.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Vale a pena ser persistente: &lt;/b&gt;atacantes que buscam ganho financeiro cada vez mais pretendem permanecer o maior tempo possível nas redes comprometidas.&lt;/li&gt;
&lt;/ol&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;u&gt;Evidências de Comprometimentos (ou &lt;a href="http://sseguranca.blogspot.com/2011/11/framework-openioc-open-indicators-of.html"&gt;IOC/Indicators of Compromise&lt;/a&gt;) - além da presença de &lt;i&gt;malware&lt;/i&gt;&lt;/u&gt;:&lt;/div&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-ORxD99R2g6s/T1ocSo2eSxI/AAAAAAAAAY8/EtkLYhATzAg/s1600/m-trends2012_4.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="201" src="http://2.bp.blogspot.com/-ORxD99R2g6s/T1ocSo2eSxI/AAAAAAAAAY8/EtkLYhATzAg/s400/m-trends2012_4.PNG" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;&lt;b&gt;Uso não autorizado de credenciais válidas &lt;/b&gt;(estas informações normalmente estão presentes em registros do Event Log do Windows, no registro, nas propriedades do arquivo/sistema de arquivo e no tráfego de rede) &amp;lt;= idealmente, parte destas informações está sendo logada remotamente em outros sistemas (&lt;i&gt;AD&lt;/i&gt;, &lt;i&gt;SIEM&lt;/i&gt;,&lt;i&gt; Network Forensics&lt;/i&gt;, &lt;i&gt;CarbonBlack&lt;/i&gt;, etc.);&amp;nbsp;&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Acesso Remoto a Sistema ou a arquivos &lt;/b&gt;(...)&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Vestígios de evidência e arquivos parciais &lt;/b&gt;(através de técnicas de perícia forense, é possivel&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;br /&gt;
&lt;b&gt;Um parêntese aqui para um ponto que gosto de salientar - as evidências estão por toda a parte:&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Quanto mais visibilidade e automação na criação de registros que possam ser considerados "indicadores de comprometimento", melhor - de preferência, em memória, no tráfego de rede, nos logs de sistemas, no sistema de arquivo, em bancos de dados - ou seja, aonde quer que informação esteja armazenada ou trafegue temporariamente.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Relatório &lt;i&gt;Mandiant M-Trends&lt;/i&gt;:&lt;/b&gt;&amp;nbsp;&lt;a href="http://fred.mandiant.com/M-Trends_2012.pdf"&gt;http://fred.mandiant.com/M-Trends_2012.pdf&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Relatorio&lt;i&gt;&amp;nbsp;Verizon Business - 2011 CaseLoad Review&lt;/i&gt;:&lt;/b&gt;&amp;nbsp;&lt;a href="http://www.verizonbusiness.com/resources/whitepaper/wp_verizon-2011-investigative-response-caseload-review_en_xg.pdf"&gt;http://www.verizonbusiness.com/resources/whitepaper/wp_verizon-2011-investigative-response-caseload-review_en_xg.pdf&lt;/a&gt;&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;b&gt;Relatório Verizon Business - 2012 Databreach Investigations Report&lt;/b&gt;&lt;/div&gt;
&lt;div&gt;
&lt;a href="http://www.verizonbusiness.com/resources/reports/rp_data-breach-investigations-report-2012_en_xg.pdf"&gt;http://www.verizonbusiness.com/resources/reports/rp_data-breach-investigations-report-2012_en_xg.pdf&lt;/a&gt;
&lt;/div&gt;
&lt;br /&gt;
Alguns pontos e &lt;a href="http://www.troyhunt.com/2012/04/5-interesting-security-trends-from.html"&gt;tendências relacionados ao relatório da Verizon&lt;/a&gt; foram publicados recentemente no blog do Troy Hunt - leitura recomendada! Comento alguns dos principais pontos levantados, abaixo:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-LgTjXayTQF8/T5EZ82Jb_oI/AAAAAAAAAaQ/y3yx1KhoFJg/s1600/verizon_2012.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="220" src="http://2.bp.blogspot.com/-LgTjXayTQF8/T5EZ82Jb_oI/AAAAAAAAAaQ/y3yx1KhoFJg/s400/verizon_2012.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;&lt;u&gt;&lt;b&gt;Os ataques estão sendo originados quase sempre de fora das organizações &lt;/b&gt;(98%) e apenas 4% envolveram pessoal interno (ativamente)&lt;/u&gt; &amp;lt; esta tendência está aumentando nos últimos anos. É importante ressaltar que a segurança das redes e &amp;nbsp;sistemas internos continua sendo fundamental, para identificar e conter a evolução de ataques iniciados externamente.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;ul&gt;
&lt;li&gt;&lt;u&gt;&lt;b&gt;Hacktivistas estão se tornando um problema real e sério&lt;/b&gt;&amp;nbsp;
(58% do roubo de informações)&lt;/u&gt;&amp;nbsp;&amp;lt; aqui vale a pena mencionar que pela característica de divulgação do resultado dos ataques, este valor certamente está distorcido em relação aos ataques tradicionais para venda de informações no underground, por exemplo.&lt;/li&gt;
&lt;/ul&gt;
&lt;ul&gt;
&lt;li&gt;&lt;u&gt;&lt;b&gt;A maioria dos comprometimentos envolve o simples roubo de credenciais&lt;/b&gt;&lt;/u&gt; &amp;lt; ou seja, ninguém vai ter que desenvolver um &lt;i&gt;StuxNet/DuQu&lt;/i&gt; se para obter as informações sensíveis for suficiente adivinhar ou usar ferramentas de bruteforce de senha..&lt;/li&gt;
&lt;/ul&gt;
&lt;ul&gt;
&lt;li&gt;&lt;u&gt;&lt;b&gt;O tempo entre o comprometimento inicial e sua descoberta e contenção tem levado normalmente meses (54%) ou semanas (29%)&lt;/b&gt;, e em poucos casos dias (13%) ou horas (2%)&lt;/u&gt; &amp;lt; isto é tempo mais do que suficiente para garantir aos atacantes um acesso a diversas informações sensíveis contidas em diferentes sistemas de uma empresa.&lt;/li&gt;
&lt;/ul&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;u&gt;&lt;b&gt;Outros Relatórios relevantes e dignos de nota, publicados recentemente:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;HP: 2011 Top Cyber Security Risks Report&lt;/b&gt;&lt;br /&gt;
&lt;a href="http://www.hpenterprisesecurity.com/news/download/2011-top-cyber-security-risks-report"&gt;http://www.hpenterprisesecurity.com/news/download/2011-top-cyber-security-risks-report&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Verisign iDefense 2012 Cyber Threats and Trends White Paper&lt;/b&gt;&lt;br /&gt;
&lt;a href="http://www.verisigninc.com/en_GB/forms/idefense2012cybertrends.xhtml"&gt;http://www.verisigninc.com/en_GB/forms/idefense2012cybertrends.xhtml&lt;/a&gt;
&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Websense: 2012 Threat Report&lt;/b&gt;&lt;br /&gt;
&lt;a href="http://www.websense.com/content/websense-2012-threat-report-download.aspx"&gt;http://www.websense.com/content/websense-2012-threat-report-download.aspx&lt;/a&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Trustwave: 2012 Global Security Report&lt;/b&gt;&lt;br /&gt;
&lt;a href="https://www.trustwave.com/global-security-report"&gt;https://www.trustwave.com/global-security-report&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;ESET: Global Threat Report for 2012&lt;/b&gt;&lt;br /&gt;
&lt;a href="http://go.eset.com/us/threat-center/"&gt;http://go.eset.com/us/threat-center/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div&gt;
&lt;b&gt;Sophos: Security Threat Report 2012&lt;/b&gt;&lt;/div&gt;
&lt;div&gt;
&lt;a href="http://www.sophos.com/en-us/security-news-trends/reports/security-threat-report.aspx"&gt;http://www.sophos.com/en-us/security-news-trends/reports/security-threat-report.aspx&lt;/a&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-6473178846992214771?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=qEPMqQ1Ncnw:WR3Mljr2TTY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=qEPMqQ1Ncnw:WR3Mljr2TTY:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=qEPMqQ1Ncnw:WR3Mljr2TTY:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/qEPMqQ1Ncnw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/6473178846992214771/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2012/04/cybersecurity-reports-mandiant-verizon.html#comment-form" title="1 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/6473178846992214771?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/6473178846992214771?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/qEPMqQ1Ncnw/cybersecurity-reports-mandiant-verizon.html" title="CyberSecurity Reports: Mandiant, Verizon Business, HP, Verisign, WebSense, Trustwave &amp; others" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-oOiRRkR0lUE/T1mdcUhjglI/AAAAAAAAAYk/_GaktHMED9Q/s72-c/m-trends2012_1.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2012/04/cybersecurity-reports-mandiant-verizon.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0IFRHs8eip7ImA9WhVXFUU.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-1702760040479281478</id><published>2012-04-16T10:00:00.001-03:00</published><updated>2012-04-16T10:05:15.572-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-16T10:05:15.572-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="evento" /><category scheme="http://www.blogger.com/atom/ns#" term="conferência" /><category scheme="http://www.blogger.com/atom/ns#" term="aduc" /><category scheme="http://www.blogger.com/atom/ns#" term="accessdata" /><title>ADUC 2012 Vegas</title><content type="html">&lt;span style="color: #eeeeee;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;header class="entry-header" style="font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 15px; margin-bottom: 0px; margin-left: auto; margin-right: auto; margin-top: 0px; width: 700px;"&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;
&lt;a href="http://www.apuratrustedservices.com/apura/wp-content/uploads/2012/04/new_aduc_apura.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="color: #eeeeee;"&gt;&lt;img border="0" height="84" src="http://www.apuratrustedservices.com/apura/wp-content/uploads/2012/04/new_aduc_apura.jpg" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;/header&gt;&lt;br /&gt;
&lt;div class="entry-content" style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 15px; margin-bottom: auto; margin-left: auto; margin-right: auto; margin-top: auto; min-height: 500px; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 1.625em; vertical-align: baseline; width: 700px;"&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;span style="font-style: inherit;"&gt;A &lt;/span&gt;&lt;b&gt;&lt;i&gt;&lt;a href="http://www.apura.com.br/" target="_blank"&gt;Apura – Inteligência em Cibersegurança&lt;/a&gt;&lt;/i&gt;&lt;/b&gt;&lt;span style="font-style: inherit;"&gt;, tem o prazer de&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;span style="font-style: inherit;"&gt;lhe convidar &amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;para a &lt;/span&gt;&lt;i style="color: #eeeeee; font-family: inherit;"&gt;Access Data Users' Conference&lt;/i&gt;&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;, evento que&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;&amp;nbsp;acontece entre os dias&lt;/span&gt;&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;&amp;nbsp;8 e 10 de maio, em Las Vegas (EUA).&lt;/span&gt;&lt;/div&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-style: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;Este evento proporcionará várias atividades de treinamento e&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee;"&gt;workshops&amp;nbsp;&lt;/span&gt;&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;com os maiores especialistas da indústria da&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;investigação digital do mundo. &amp;nbsp;&lt;/span&gt;&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;O evento este ano terá trilhas&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;de aprimoramento em computação forense,&amp;nbsp;&lt;/span&gt;&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;cibersegurança,&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee; font-family: inherit; font-style: inherit;"&gt;análises legais e muito mais.&lt;/span&gt;&lt;/div&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-style: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;A ADUC é um evento produzido pela &lt;a href="http://www.accessdata.com/" target="_blank"&gt;Accessdata&lt;/a&gt;,&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee;"&gt;parceira da &lt;a href="http://www.apura.com.br/" target="_blank"&gt;Apura&lt;/a&gt;.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-style: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;b&gt;Mais informações&lt;/b&gt;:&amp;nbsp;&lt;/span&gt;&lt;/div&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;b&gt;&lt;i&gt;APURA&lt;/i&gt;&lt;/b&gt;&lt;span style="font-style: inherit;"&gt;:&amp;nbsp;&lt;/span&gt;&lt;a href="http://www.apuratrustedservices.com/apura/aduc2012/" style="font-style: inherit;"&gt;http://www.apuratrustedservices.com/apura/aduc2012/&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-style: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;Site oficial:&amp;nbsp;&lt;a href="http://accessdata.com/aduc/" style="font-family: inherit; font-style: inherit;"&gt;http://accessdata.com/aduc/&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-image: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; margin-bottom: 1.625em; outline-color: initial; outline-style: initial; outline-width: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;span style="font-style: inherit;"&gt;&lt;b&gt;PS:&lt;/b&gt; Nesta mesma semana estarão ocorrendo o &lt;/span&gt;&lt;b&gt;&lt;i&gt;&lt;a href="http://www.interop.com/lasvegas/" target="_blank"&gt;INTEROP&lt;/a&gt;&lt;/i&gt;&lt;/b&gt;&lt;span style="font-style: inherit;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #eeeeee;"&gt;&lt;span style="font-style: inherit;"&gt;e o &lt;/span&gt;&lt;b&gt;&lt;i&gt;&lt;a href="http://www.symantec.com/vision/welcome/?locid=las_vegas" target="_blank"&gt;Symantec Vision&lt;/a&gt;&lt;/i&gt;&lt;/b&gt;&lt;span style="font-style: inherit;"&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-1702760040479281478?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=Lha_A9mS2d0:dt_EsESgPPE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=Lha_A9mS2d0:dt_EsESgPPE:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=Lha_A9mS2d0:dt_EsESgPPE:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/Lha_A9mS2d0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/1702760040479281478/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2012/04/aduc-2012-vegas.html#comment-form" title="0 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/1702760040479281478?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/1702760040479281478?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/Lha_A9mS2d0/aduc-2012-vegas.html" title="ADUC 2012 Vegas" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><thr:total>0</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2012/04/aduc-2012-vegas.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0MHRH85fSp7ImA9WhVXEUQ.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-1726660211501199027</id><published>2012-04-11T22:47:00.000-03:00</published><updated>2012-04-11T22:50:35.125-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-11T22:50:35.125-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="usa" /><category scheme="http://www.blogger.com/atom/ns#" term="tse" /><category scheme="http://www.blogger.com/atom/ns#" term="segurança em profundidade" /><category scheme="http://www.blogger.com/atom/ns#" term="votação" /><category scheme="http://www.blogger.com/atom/ns#" term="urna eletrônica" /><category scheme="http://www.blogger.com/atom/ns#" term="segurança por obscuridade" /><category scheme="http://www.blogger.com/atom/ns#" term="vulnerabilidade" /><title>(in)Segurança das Urnas Eletrônicas</title><content type="html">&lt;span style="font-weight: bold;"&gt;[ Update - 2012/04/11 ]&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;Todo eleitor brasileiro deveria assistir:&lt;/b&gt;&lt;span style="font-weight: normal;"&gt;&amp;nbsp;&lt;/span&gt;Palestra proferida no 1° ENGCCI -&amp;nbsp;Goiânia, GO, 30 de março de 2012 por&amp;nbsp;Pedro Antônio Dourado de Rezende (UnB):&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;b&gt;Para Onde Foi o [Sigilo do] Voto? [legendado]:&lt;/b&gt;&lt;/div&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;object class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://1.gvt0.com/vi/pngHKZkHzjU/0.jpg" height="266" width="320"&gt;&lt;param name="movie" value="http://www.youtube.com/v/pngHKZkHzjU&amp;fs=1&amp;source=uds" /&gt;

&lt;param name="bgcolor" value="#FFFFFF" /&gt;

&lt;embed width="320" height="266"  src="http://www.youtube.com/v/pngHKZkHzjU&amp;fs=1&amp;source=uds" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;[ Update - 2012/02/06 ]&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
O Tribunal Superior Eleitoral divulgou as datas dos "Testes Públicos de Segurança do Sistema Eletrônico" para 20 a 22 de março de 2012.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Mais informação no HotSite do TSE abaixo:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;a href="http://www.tse.jus.br/hotSites/testes-publicos-de-seguranca/"&gt;http://www.tse.jus.br/hotSites/testes-publicos-de-seguranca/&lt;/a&gt;&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
O Edital publicado, em seu parágrafo único, define os seguintes "elementos de segurança" a serem testados:&lt;br /&gt;
&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;processo de carga das urnas eletrônicas;&lt;/li&gt;
&lt;li&gt;hardware das urnas eletrônicas;&lt;/li&gt;
&lt;li&gt;lacre físico.&lt;/li&gt;
&lt;/ul&gt;
&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;[ Update - 2011/09/28 ]&lt;/span&gt;&lt;br /&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt; &lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: normal;"&gt;Mais uma demonstração de vulnerabilidade de urnas eletrônicas - neste caso trata-se de um modelo &lt;i&gt;Diebold&lt;/i&gt;, que está entre os mais utilizados nas eleições nos Estados Unidos.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-weight: normal;"&gt;O ataque demonstrado é extremamente barato (de US $10 a US $26 - no último caso quando há transmissor e receptor de radio-frequência, para ataques remotos) e envolve acesso físico anterior às urnas eletrônicas.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-weight: normal;"&gt; Componentes eletrônicos são inseridos na urna com o objetivo de&amp;nbsp; executar um ataque "&lt;i&gt;Man-in-the-Middle&lt;/i&gt;" entre a interface &lt;i&gt;touch screen&lt;/i&gt; da urna e o processador do computador.&amp;nbsp; São possíveis ações como captura de senhas, alteração de votos, sem que o usuário perceba que isto ocorreu.&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: normal;"&gt;&lt;br /&gt;Veja a descrição do ataque e os vídeos relacionados no site do &lt;b&gt;&lt;a href="http://www.ne.anl.gov/capabilities/vat/"&gt;"Vulnerability Assessment Team" dos laboratórios Argonne&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt; &lt;/span&gt;&lt;span style="font-weight: normal;"&gt;- vinculado ao Departamento de Energia dos Estados Unidos&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;. &lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;[ Update - 2010/10/31 ]&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold; text-align: left;"&gt;
&lt;span style="font-weight: bold;"&gt;Eleições Seguras e Verificáveis: uma solução simples e elegante.&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Mais uma eleição termina no Brasil e infelizmente por aqui ainda insistimos na &lt;i&gt;segurança por obscuridade, &lt;/i&gt;na desinformação e no marketing vazio de "segurança inquebrável" da urna eletrônica ao invés de uma verificação séria e aprofundada dos problemas existentes por &lt;a href="http://www.cic.unb.br/~pedro/trabs/relatoriocmind.pdf"&gt;quem de direito&lt;/a&gt; (&lt;i&gt;pdf)&lt;/i&gt; &lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Hoje tive a oportunidade de assitir a uma palestra excelente feita pelo sueco &lt;a href="http://www.ted.com/talks/david_bismark_e_voting_without_fraud.html"&gt;David Bismark no fantástico evento de novas idéias "TED"&lt;/a&gt; cita as razões fundamentais pelas quais um &lt;/span&gt;&lt;b&gt;processo de votação precisa ser verificável&lt;/b&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt; ("&lt;i&gt;Elections should be verifiable&lt;/i&gt;"). E isto não por um grupo interno do governo, alguns representantes de partidos políticos, mas &lt;/span&gt;&lt;b&gt;por todo e qualquer interessado&lt;/b&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;. A maneira que ele sugere que isto seja feito é típica de uma grande idéia - simples e elegante. &lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span class="Apple-style-span" style="font-size: x-large;"&gt;&lt;b&gt; [ &lt;a href="http://www.ted.com/talks/david_bismark_e_voting_without_fraud.html"&gt;Assista aqui&lt;/a&gt; ]&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
Muitos grupos independentes no Brasil lutaram pela existência de um "recibo" de votação impresso para que esta verificação seja possível - e o formato sugerido por David Bismark vai de encontro a esta idéia, e ainda por cima adiciona a transparência e o sigilo do processo com a utilização de diferentes ordens dos candidatos para votação e do código de barras 2D criptografado. O eleitor pode então levar o recibo para casa e verificar se seu voto foi contato posteriormente! &lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;b&gt;Fantástico... &lt;/b&gt; Espero que no futuro tenhamos humildade e inteligência para implementar os conceitos apresentados por ele por aqui!&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;[ Update - 2010/08/24 ] &lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;Vote no Pac-Man!&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Com a proximidade das eleições, voltamos ao tema da (in)Segurança das Urnas Eletrônicas. Dois acontecimentos recentes e relacionados - um nos Estados Unidos e outro na Índia - mostram (assim como os diversos outros estudos presentes neste longo &lt;i&gt;post&lt;/i&gt;) como é fácil burlar os mais modernos sitemas de votação eletrônica:&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;a href="http://www.cse.umich.edu/~jhalderm/pacman/"&gt;http://www.cse.umich.edu/~jhalderm/pacman/&lt;/a&gt; - Pesquisadores da Universidade de Princeton e Michigan instalaram o jogo PAC-MAN em uma urna eletrônica &lt;i&gt;sem violar os lacres de segurança&lt;/i&gt;.&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;a href="http://www.wired.com/threatlevel/2010/08/researcher-arrested-in-india/"&gt;http://www.wired.com/threatlevel/2010/08/researcher-arrested-in-india/&lt;/a&gt; - Pesquisador preso na Ìndia depois de descobrir problemas em urnas eletrônicas.&lt;/div&gt;
&lt;div style="font-weight: bold;"&gt;
&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;b&gt;[ Update - 2010/04/16 ] &lt;/b&gt;&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span"&gt;CorreioWeb: &lt;a href="http://www.correioweb.com.br/euestudante/noticias.php?id=9867"&gt;Relatório aponta falhas no sistema de votação brasileiro&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;Trecho:&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;blockquote&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Comitê Multidisciplinar Independente sobre o Sistema Brasileiro de Votação Eletrônica apresentou relatório que aponta falhas consideradas gravíssimas no programa de urnas eletrônicas adotado no Brasil. O documento foi entregue ao vice-reitor da UnB, João Batista de Sousa. &lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;
&lt;blockquote&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;O comitê diz que é impossível auditar, de maneira isenta, o resultado da apuração dos votos nas urnas eletrônicas. “Caso ocorra uma infiltração criminosa determinada a fraudar as eleições, restou evidente que a fiscalização externa dos partidos, da OAB e do MP, de modo como é permitida, será incapaz de detectá-la”, diz o relatório. “Esta impossibilidade de auditoria independente do resultado eleitoral é que levou à rejeição de nossas urnas eletrônicas em todos os mais de 50 países que a estudaram”, acrescenta. &lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;
&lt;blockquote&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Segundo o professor de Criptografia e Ciência da Computação da Universidade de Brasília, Pedro Antônio Rezende, o modelo atual privilegia rapidez em detrimento da segurança de informações. “O sistema troca coisas supérfulas como a rapidez e a visibilidade de espetáculo pela certeza de uma apuração correta", denuncia. "Precisamos ficar atentos, pois isso pode corroer a democracia”, afirma. &lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;
&lt;blockquote&gt;
&lt;span style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;O número de envolvidos no processo eleitoral também é visto como vilão. “Há exagerada concentração de poderes, resultando em comprometimento do princípio da publicidade e da soberania do eleitor, em poder conhecer e avaliar, o destino do seu voto”, afirma o relatório. “Nossa intenção é buscar transparência em todos os níveis da votação”, garante Rezende. “Quem critica o sistema eleitoral brasileiro é alvo de preconceito. Existe um tabu em se falar sobre o tema com esse nível de franqueza”, conclui. &lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;
&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;Link para o relatório:  &lt;a href="http://www.cic.unb.br/~pedro/trabs/relatoriocmind.pdf"&gt;http://www.cic.unb.br/~pedro/trabs/relatoriocmind.pdf&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;[ Update - 2009/11/20 ]&lt;/span&gt;&lt;a href="http://idgnow.uol.com.br/seguranca/2009/11/20/perito-quebra-sigilo-eleitoral-e-descobre-voto-de-eleitores-na-urna-eletronica/"&gt;Perito quebra sigilo e descobre voto de eleitores em urna eletrônica do Brasil&lt;/a&gt;&lt;span style="font-weight: bold;"&gt; (IDG Now)&lt;br /&gt;&lt;br /&gt;[ Update - 2009/11/16 ]&lt;/span&gt;Com as restrições ressaltadas abaixo, os testes foram finalizados com sucesso pelo TSE e a Urna brasileira passou &lt;a href="http://g1.globo.com/Noticias/Politica/0,,MUL1378481-5601,00.html"&gt;a ser considerada segura pela mídia&lt;/a&gt;.&lt;span style="font-weight: bold;"&gt; &lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
Para muitos especialistas, um teste como este não passa de propaganda e não pode se considerado definitivo, pois não se pode partir do princípio que um atacante não teria acesso físico interno e ao código da urna, por exemplo (veja mais comentários do Lucas Ferreira abaixo).&lt;br /&gt;
&lt;br /&gt;
&lt;span align="justify" class="textos_internos texto_divulga"&gt;Um exemplo vindo dos Estados Unidos: na conferência acontecida há alguns meses "&lt;a href="http://www.usenix.org/event/evtwote09/"&gt;&lt;span style="text-decoration: underline;"&gt;Eletronic Voting Technology Workshop&lt;/span&gt;&lt;/a&gt;", &lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt; um grupo de pesquisadores das &lt;span style="font-weight: bold;"&gt;Universidades da Califórnia, Michgan e Princeton&lt;/span&gt; &lt;a href="http://www.tgdaily.com/content/view/43579/108/" style="font-weight: bold;"&gt;demonstrou &lt;/a&gt;que em poucos minutos - utilizando uma técnica chamada "&lt;/span&gt;&lt;a href="http://cseweb.ucsd.edu/~hovav/talks/blackhat08.html"&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;return-oriented programming&lt;/span&gt;&lt;/a&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;" - &lt;a href="http://www.tgdaily.com/content/view/43579/108/"&gt;votos podem ser roubados&lt;/a&gt; utilizando e subvertendo pequenas partes de código já existentes nas urnas.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
Por causa deste tipo de resultados, &lt;span style="font-weight: bold;"&gt;os Estados Unidos &lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;(vide reportagem no &lt;a href="http://www.nytimes.com/2009/06/22/opinion/22mon2.html?_r=1"&gt;New York Times&lt;/a&gt;)  &lt;/span&gt;&lt;span style="font-weight: bold;"&gt;e a Alemanha &lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;(vide editorial da &lt;a href="http://www.dw-world.de/dw/article/0,,4070568,00.html"&gt;Deutche-Welle&lt;/a&gt;) &lt;/span&gt;&lt;span style="font-weight: bold;"&gt;tiveram testes e resultados diferentes dos tupiniquins... &lt;/span&gt;Talvez devessemos exportar a tecnologia de urna eletrônicas para estes dois países - assim os testes poderão ser efetuados de forma mais completa por lá.. =)&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;[ Update - 2009/09/14 ]&lt;br /&gt;&lt;br /&gt;Meu amigo Lucas Ferreira - especialista em segurança em desenvolvimento seguro - &lt;a href="http://blog.sapao.net/2009/09/urnas-eletronicas-uma-avanco-afinal.html"&gt;postou comentários interessantes&lt;/a&gt; sobre o anúncio de testes às urnas eletrônicas feito pelo Tribunal Superior Eleitoral:&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote&gt;
O TSE vai permitir que pesquisadores tenham acesso às urnas para a execução de testes de segurança. No entanto, mantém uma série de restrições que vão restringir a eficácia dos testes:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;não haverá acesso ao código fonte&lt;/li&gt;
&lt;li&gt;o plano de testes deverá ser submetido com antecedência e não poderá ser alterado&lt;/li&gt;
&lt;li&gt;o prazo para a realização dos testes é de apenas alguns dias&lt;/li&gt;
&lt;li&gt;os testes deverão ser realizados no ambiente do TSE, o que restringe a liberdade de ação dos pesquisado&lt;/li&gt;
&lt;/ul&gt;
&lt;/blockquote&gt;
&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;[ 2009/09/12 Update - Desafio do TSE a cidadãos e hackers tem data marcada ]&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
O &lt;span style="font-weight: bold;"&gt;Jornal da Globo&lt;/span&gt; agora há pouco divulgou informações à notícia "&lt;a href="http://g1.globo.com/jornaldaglobo/0,,MUL1301874-16021,00-TSE+PROCURA+HACKERS+PARA+TESTAR+AS+NOVAS+URNAS+ELETRONICAS.html" style="font-weight: bold;"&gt;TSE procura hackers para testar as novas urnas eletrônicas&lt;/a&gt;". Mais detalhes sobre o processo neste &lt;a href="http://www.tse.gov.br/internet/eleicoes/arquivos/teste_seguranca_fluxograma.pdf"&gt;fluxograma&lt;/a&gt; dos testes de segurança - que está marcado para ocorrer na primeira quinzena de         novembro.&lt;br /&gt;
&lt;br /&gt;
Em todo o mundo, sempre que as urnas eletrônicas foram testadas (de verdade) elas falharam em aspectos críticos de segurança - como pode ser visto no post original abaixo - cabe agora acompanharmos os testes que serão executados em novembro no importante teste do processo de votação eletrônica programado pelo  &lt;a href="http://www.tse.gov.br/internet/eleicoes/teste_seguranca.htm"&gt;TSE (site oficial do teste)&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
Acredito que independente do resultado dos testes que serão feitos a existência de um registro impresso da votação para um possível batimento e validação posterior dos votos de uma urna eletrônica são fundamentais para manter a idoneidade no processo.&lt;br /&gt;
&lt;br /&gt;
Além disto para a avaliação da segurança e a transparência do processo possa ser completa, especialistas precisam ter acesso ao código fonte da urna, obviamente.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-size: 130%; font-weight: bold;"&gt;[ 2009/08/12 - Post Original ]&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;a href="http://www.bradblog.com/Images/DieboldHacked_Virus.jpg"&gt;&lt;img alt="" border="0" src="http://www.bradblog.com/Images/DieboldHacked_Virus.jpg" style="cursor: pointer; display: block; height: 150px; margin: 0px auto 10px; text-align: center; width: 175px;" /&gt;&lt;/a&gt;&lt;br /&gt;
Já faz algum tempo (vide discussões em &lt;a href="http://www.mail-archive.com/voto-eletronico@encoder1.iron.com.br/msg00018.html"&gt;2005&lt;/a&gt; e &lt;a href="http://virgo.pop-rs.rnp.br/pipermail/infoseg/2006-September/1585421.html"&gt;2006&lt;/a&gt;) que eu me preocupo com o assunto da segurança do processo de votação - especialmente das urnas eletrônicas utilizadas no Brasil pelo &lt;a href="http://www.tse.gov.br/"&gt;&lt;span style="font-weight: bold;"&gt;TSE&lt;/span&gt;&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
Hoje lendo meus &lt;a href="http://en.wikipedia.org/wiki/RSS"&gt;&lt;span style="font-style: italic;"&gt;RSS Feeds&lt;/span&gt;&lt;/a&gt; (via &lt;a href="http://www.istf.com.br/"&gt;ISTF)&lt;/a&gt; tive a feliz notícia de que o "&lt;a href="http://agencia.tse.gov.br/sadAdmAgencia/noticiaSearch.do?acao=get&amp;amp;id=1210499#arquivos" style="font-weight: bold;"&gt;TSE confirma a realização de testes de segurança no sistema eletrônico de votação&lt;/a&gt;&lt;span style="font-weight: bold;"&gt;"&lt;/span&gt;.&lt;br /&gt;
&lt;br /&gt;
Esta notícia é ótima e nos dá a esperança de viver em uma real democracia! Agora é só ver para crer. Os testes segurança serão coordenados pelo Ministro &lt;span align="justify" class="textos_internos texto_divulga"&gt;Ricardo Lewandowski&lt;/span&gt; e ocorrerão em novembro de 2009  "&lt;span align="justify" class="textos_internos texto_divulga"&gt;por meio de tentativas a serem feitas para burlar seus programas".&lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;Segundo as &lt;a href="http://agencia.tse.gov.br/sadAdmAgencia/noticiaSearch.do?acao=get&amp;amp;id=1210499"&gt;informações divulgadas no site do TSE&lt;/a&gt;:&lt;br /&gt;&lt;br /&gt;"&lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;&lt;span style="font-style: italic;"&gt;Para a realização do teste, duas comissões deverão ser formadas. &lt;span style="font-weight: bold;"&gt;A Comissão Disciplinadora dos Testes de Segurança&lt;/span&gt; vai definir o escopo, a metodologia e a formatação dos testes, os critérios de julgamento, a análise e a aprovação das inscrições dos investigadores, o exame e a aprovação dos testes propostos pelos investigadores, a supervisão nos dias de execução e o registro das atividades executadas durante as aferições. Essa comissão &lt;span style="font-weight: bold;"&gt;será composta por servidores da Justiça Eleitoral, indicados pelo TSE&lt;/span&gt;.&lt;/span&gt;  &lt;span style="font-style: italic;"&gt;&lt;br /&gt;&lt;br /&gt;Já a &lt;span style="font-weight: bold;"&gt;Comissão Avaliadora dos Testes de Segurança&lt;/span&gt; será responsável por validar o escopo, a metodologia e os critérios de julgamento definidos pela Comissão Disciplinadora, analisar os testes realizados e os resultados obtidos, julgar e examinar os artigos a serem publicados e por produzir o relatório final.&lt;br /&gt;&lt;br /&gt;A Comissão Avaliadora &lt;span style="font-weight: bold;"&gt;será integrada por professores universitários e cientistas, a serem indicados pelo presidente do TSE&lt;/span&gt;, por meio de portaria.&lt;/span&gt;  &lt;span style="font-style: italic;"&gt;Além disso, a Comissão Avaliadora será &lt;span style="font-weight: bold;"&gt;composta opcionalmente&lt;/span&gt;, a depender da disponibilidade e do interesse de cada entidade, pelos seguintes participantes: &lt;span style="font-weight: bold;"&gt;por um representante, respectivamente, do Ministério Público da União, da Ordem dos Advogados do Brasil (OAB),  da comunidade jurídica e por um representante do ministro do TSE coordenador do processo&lt;/span&gt;.&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;Existem alguns trabalhos já executados nos EUA que podem servir de referência para os trabalhos que serão executados nos próximos meses:&lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;&lt;br /&gt;Como pode ser visto no link com o assunto tratado &lt;a href="http://virgo.pop-rs.rnp.br/pipermail/infoseg/2006-September/1585421.html"&gt;em 2006&lt;/a&gt;, a &lt;span style="font-weight: bold;"&gt;Universidade de Princeton&lt;/span&gt; fez um &lt;a href="http://itpolicy.princeton.edu/voting/" style="font-weight: bold;"&gt;interessante estudo&lt;/a&gt;&lt;span style="font-weight: bold;"&gt; &lt;/span&gt;(&lt;span style="font-weight: bold;"&gt;&lt;a href="http://citp.princeton.edu/pub/ts06full.pdf"&gt;paper&lt;/a&gt;/&lt;a href="http://itpolicy.princeton.edu/voting/videos.html"&gt;vídeo&lt;/a&gt;&lt;/span&gt;) mostrando as vulnerabilidades de um modelo de urnas Diebold Accuvote-TS - similares aos utilizados nas votações brasileira.&lt;br /&gt;&lt;br /&gt;Um trabalho similar foi &lt;a href="http://www.sos.ca.gov/elections/elections_vsr.htm"&gt;executado em 2007 pelo &lt;span style="font-weight: bold;"&gt;governo do estado da Califórnia&lt;/span&gt;&lt;/a&gt; (reports em pdf), onde equipamentos de votação de 4 diferentes fabricantes tiveram sua segurança testada (&lt;a href="http://en.wikipedia.org/wiki/Red_Team"&gt;&lt;span style="font-style: italic;"&gt;red teams&lt;/span&gt;&lt;/a&gt;, revisão de código fonte e revisão de documentação).&lt;br /&gt;&lt;br /&gt;Na semana passada, durante a conferência "&lt;a href="http://www.usenix.org/event/evtwote09/"&gt;&lt;span style="text-decoration: underline;"&gt;Eletronic Voting Technology Workshop&lt;/span&gt;&lt;/a&gt;" &lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt; um grupo de pesquisadores das &lt;span style="font-weight: bold;"&gt;Universidades da Califórnia, Michgan e Princeton&lt;/span&gt; &lt;a href="http://www.tgdaily.com/content/view/43579/108/" style="font-weight: bold;"&gt;demonstrou &lt;/a&gt;que em poucos minutos e sem conhecimento do código fonte da urna eletrônica - utilizando uma técnica chamada "&lt;/span&gt;&lt;a href="http://cseweb.ucsd.edu/~hovav/talks/blackhat08.html"&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;return-oriented programming&lt;/span&gt;&lt;/a&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;" - &lt;a href="http://www.tgdaily.com/content/view/43579/108/"&gt;votos podem ser roubados&lt;/a&gt; utilizando e subvertendo pequenas partes de código já existentes nas urnas.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Estes pesquisadores chegam a recomendar que o processo de votação não aconteça em urnas eletrônicas, mas com cédulas de papel lidas por scanners óticos que permitem uma auditoria estatística rápida e mais segura.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;A opinião pública americana (vide reportagem no &lt;a href="http://www.nytimes.com/2009/06/22/opinion/22mon2.html?_r=1"&gt;New York Times&lt;/a&gt;) e a Justiça Alemã (vide editorial da &lt;a href="http://www.dw-world.de/dw/article/0,,4070568,00.html"&gt;Deutche-Welle&lt;/a&gt;) já se posicionaram contra a utilização de urnas eletrônicas.&lt;/span&gt;&lt;span align="justify" class="textos_internos texto_divulga"&gt;Reproduzo aqui &lt;a href="http://www.mail-archive.com/voto-eletronico@encoder1.iron.com.br/msg00018.html"&gt;a minha opinião sobre o assunto (que não mudou) de 4 anos atrás&lt;/a&gt;:&lt;/span&gt;&lt;br /&gt;
&lt;pre&gt;&lt;/pre&gt;
&lt;pre&gt;"A informatização da votação não muda o fato de serimperativo oacompanhamento (auditoria) do processo epossível verificação dos votos a posteriori. É umamudança tecnológica, e em nada acrescenta ao quesitosegurança. Obviamente, como o professor Del Picchiasugere, as tecnologias utilizadas pelo TSE poderiamser mais seguras e conhecidas (através da utilizaçãode hardware nacional e software livre, por exemplo).Porém isto não afetaria em nada a possibilidade defraude "interna" por quem controla a votação (videPainel do Senado), como foi sugerido também no texto(Jobim).Ou seja, em qualquer caso (inclusive com a impressãodos votos para uso em possível recontagem) vocêprecisa confiar no governo...Uma possível melhoria no processo seria a aberturado funcionamento da urna E de todo o processo decontagem para especialistas indicados por cadapartido político e por setores da sociedadeinteressados, o que evitaria a temida "segurançapor obscuridade", que torna o processo maispassível de ser fraudado internamente e acabaimpactando negativamente na segurança do sistemaeleitoral como um todo.Pois o que não pode ser testado exaustivamentecontra falhas - inclusive as exploráveis porperpetradores externos - não pode em hipótesenenhuma ser considerada segura."&lt;/pre&gt;
&lt;pre&gt;&lt;span style="font-size: 100%;"&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/pre&gt;
&lt;pre&gt;&lt;span style="font-size: 100%;"&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;Aproveito para passar aos leitores interessados dois grupos dediscussão sobre&lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt; o assunto no Brasil: &lt;/span&gt;&lt;a href="http://br.groups.yahoo.com/group/votoseguro/messages" style="font-family: arial; font-weight: bold;"&gt;VotoSeguro&lt;/a&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt; e &lt;/span&gt;&lt;a href="http://groups.google.com/group/votoeletronico/" style="font-family: arial; font-weight: bold;"&gt;VotoEletrônico&lt;/a&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;.Através deles fui informado que hoje (12/08/2009) haverá umaaudiência pública no Senado sobre a exclusão do artigo de leido voto impresso da minirreforma eleitoral - fiquemos de olho.&lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;Somente um esforço contínuo, transparente&lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt; e democrático deauditoria das urnas e do processo eleitoral pode tranquilizar a&lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;opinião pública acerca da legitimidade das eleições, e &lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;a &lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt;sinalização do TSE acerca dos testes que serão&lt;/span&gt;&lt;span style="font-family: arial; font-weight: bold;"&gt; efetuadosem novembro são um ótimo começo.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/pre&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-1726660211501199027?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=WcLhwVfDdaQ:LP9VHHwy_8s:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=WcLhwVfDdaQ:LP9VHHwy_8s:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=WcLhwVfDdaQ:LP9VHHwy_8s:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/WcLhwVfDdaQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/1726660211501199027/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2009/08/inseguranca-das-urnas-eletronicas.html#comment-form" title="7 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/1726660211501199027?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/1726660211501199027?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/WcLhwVfDdaQ/inseguranca-das-urnas-eletronicas.html" title="(in)Segurança das Urnas Eletrônicas" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><thr:total>7</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2009/08/inseguranca-das-urnas-eletronicas.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUAFQHY4fyp7ImA9WhVRFkk.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-4251560831509403587</id><published>2012-03-25T00:55:00.000-03:00</published><updated>2012-03-25T00:55:11.837-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-03-25T00:55:11.837-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="APURA" /><category scheme="http://www.blogger.com/atom/ns#" term="ftk" /><category scheme="http://www.blogger.com/atom/ns#" term="corey johnson" /><category scheme="http://www.blogger.com/atom/ns#" term="fuzzy" /><category scheme="http://www.blogger.com/atom/ns#" term="postgres" /><category scheme="http://www.blogger.com/atom/ns#" term="accessdata" /><category scheme="http://www.blogger.com/atom/ns#" term="forense de rede" /><category scheme="http://www.blogger.com/atom/ns#" term="visualização" /><category scheme="http://www.blogger.com/atom/ns#" term="marcos ferrari" /><category scheme="http://www.blogger.com/atom/ns#" term="evento" /><category scheme="http://www.blogger.com/atom/ns#" term="ftkimager" /><category scheme="http://www.blogger.com/atom/ns#" term="forense de memória" /><category scheme="http://www.blogger.com/atom/ns#" term="perícia digital" /><category scheme="http://www.blogger.com/atom/ns#" term="treinamento" /><category scheme="http://www.blogger.com/atom/ns#" term="forense de disco" /><category scheme="http://www.blogger.com/atom/ns#" term="cerberus" /><title>FTK 4 - Evolução, Funcionalidades e evento de lançamento</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;/div&gt;
&lt;div style="text-align: -webkit-auto;"&gt;
&lt;b style="font-family: Arial, Helvetica, sans-serif;"&gt;[ Update 25/03/2012 ]&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Mais de 100 inscrições&lt;/b&gt; foram feitas no &lt;i&gt;link&lt;/i&gt; &lt;a href="http://tinyurl.com/ApuraFTK4"&gt;http://tinyurl.com/ApuraFTK4&lt;/a&gt;&amp;nbsp;e os eventos ocorrerão nesta semana em Brasília (3a) e São Paulo (5a).&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;b style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b style="font-family: Arial, Helvetica, sans-serif;"&gt;[ Update 07/03/2012 ]&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Nos últimos dias alguns profissionais de renome na área comentaram e expandiram o assunto que tratamos neste post:&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Em primeiro lugar, agradeço ao meu amigo&amp;nbsp;&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Andrés Velázquez&lt;/b&gt;&amp;nbsp;&lt;/span&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;e expert em pericia forense da &lt;/span&gt;&lt;a href="http://mattica.com/" style="font-family: Arial, Helvetica, sans-serif;"&gt;Mattica&lt;/a&gt;&amp;nbsp;- &lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;empresa mexicana precursora da área na América Latina - que &lt;a href="http://www.andresvelazquez.com/2012/03/la-nueva-version-de-accessdata-ftk-4-la-historia-por-sandro-suffert/"&gt;publicou em seu blog&lt;/a&gt; sobre Computação Forense em espanhol o seguinte post:&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;a href="http://www.andresvelazquez.com/2012/03/la-nueva-version-de-accessdata-ftk-4-la-historia-por-sandro-suffert/"&gt;http://www.andresvelazquez.com/2012/03/la-nueva-version-de-accessdata-ftk-4-la-historia-por-sandro-suffert/&lt;/a&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;(1)&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Aproveito também para agradecer ao &lt;b&gt;&lt;a href="http://www.seginfo.com.br/lancamento-da-nova-versao-do-forensic-toolkit-ftk-4-este-mes/"&gt;SegInfo&lt;/a&gt;&amp;nbsp;(2)&lt;/b&gt; e ao &lt;b&gt;&lt;a href="http://forensics.luizrabelo.com.br/"&gt;Luiz Rabelo&lt;/a&gt;&amp;nbsp;(3)&lt;/b&gt; por publicarem em seus respectivos blogs material sobre o assunto em pauta. &lt;b&gt;Muito obrigado, senhores!&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b style="font-family: Arial, Helvetica, sans-serif;"&gt;[ Post Original 03/03/2012 ]&lt;/b&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #f3f3f3; font-family: Arial, Helvetica, sans-serif; font-size: 13px;"&gt;&lt;b&gt;O world tour de lançamento da ferramenta FTK4 passará pelo Brasil em março (Brasília - 27 e São Paulo - 29). Caso você tenha interesse em participar do evento, faça seu cadastro &lt;a href="http://www.apuratrustedservices.com/apura/accessdata-ftk-4-world-tour/" target="_blank"&gt;neste link&lt;/a&gt;. &lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: -webkit-auto;"&gt;
&lt;/div&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://tinyurl.com/ApuraFTK4" target="_blank"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="400" src="http://3.bp.blogspot.com/-AGg8gbusZAc/T1GncRTjFpI/AAAAAAAAAYU/P4RoQLR0NQo/s400/FTK4_Apura_Accessdata.jpg" width="400" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Tive a oportunidade de iniciar os testes da
versão &lt;b&gt;4.0&lt;/b&gt; do&amp;nbsp;&lt;b&gt;&lt;i&gt;Forensic Toolkit&lt;/i&gt;&amp;nbsp;&lt;/b&gt;da&amp;nbsp;&lt;i&gt;&lt;b&gt;&lt;a href="http://www.accessdata.com/" target="_blank"&gt;AccessData&lt;/a&gt;&lt;/b&gt;&lt;/i&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;em 16 de fevereiro (obrigado &lt;i&gt;Corey Johnson&lt;/i&gt; e &lt;i&gt;Marcos Ferrari&lt;/i&gt;) e desde então estou esperando ter tempo para apresentar um resumo e capturas de tela das inovações que a ferramenta vem apresentando em suas últimas versões.&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Antes de tratarmos algumas das novidades e pontos fortes da solução, gostaria de fazer um breve histórico da evolução da ferramenta nos últimos anos:&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;b&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;FTK 1.x)&lt;/b&gt; A versão mais antiga da solução já possuía alguns diferenciais interessantes, como a &lt;b&gt;categorização/overview baseada em assinatura de arquivos;&lt;/b&gt; um processo de &lt;b&gt;indexação (baseado no dtSearch) eficiente;&lt;/b&gt; e uma capacidade de &lt;b&gt;análise de emails&lt;/b&gt; superior.&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;FTK 2.x e 3.x)&lt;/b&gt; Nesta versão foram incluídas funcionalidades como o &lt;b&gt;Banco do Dados Oracle &lt;/b&gt;(2.x) para processamento de casos (em oposição ao processamento em memória); foi adicionada a &lt;b&gt;capacidade de processamento distribuído&lt;/b&gt; em várias máquinas (1+3); A possibilidade de &lt;b&gt;cálculo de &lt;a href="http://sseguranca.blogspot.com/2009/11/fuzzy-logic-e-fuzzy-hashing.html" target="_blank"&gt;Fuzzy Hashing&lt;/a&gt;&lt;/b&gt;, reconhecimento e indexação de texto em imagens (&lt;b&gt;OCR&lt;/b&gt;); Detecção automatizada de imagens pornográficas (&lt;b&gt;EID&lt;/b&gt;); Agente para aquisição de imagem de disco, dados voláteis e memória remotamente - para windows somente, Banco de dados PostGres (3.x), &lt;i&gt;metacarving&lt;/i&gt;).&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;b&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;FTK 4.x)&lt;/b&gt; Análise de memória incluindo varredura de &lt;a href="http://sseguranca.blogspot.com/2011/06/forense-em-windows-aquisicao-e-analise.html" target="_blank"&gt;VAD TREE&lt;/a&gt; de processos, e possibilidade de utilização de agentes de "forense &lt;i&gt;enterprise&lt;/i&gt;" para aquisição de dados em uma máquina ligada (Mac, Linux, ou Windows); Iremos tratar abaixo várias novidades desta versão e funcionalidades consagradas que se mantiveram, incluindo os novos módulos exclusivos da nova versão;
&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;u&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;u&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Alguns screenshots exclusivos do FTK4 em execução:&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;1) Gerenciamento de Casos&lt;/b&gt; é feito de forma transparente em um BD &lt;i&gt;&lt;b&gt;postgres&lt;/b&gt;&lt;/i&gt;:&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-f1U78X5RuFI/T1GhCnWYktI/AAAAAAAAAW8/MVzMFAMvGhI/s1600/FTK4_1.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="104" src="http://4.bp.blogspot.com/-f1U78X5RuFI/T1GhCnWYktI/AAAAAAAAAW8/MVzMFAMvGhI/s320/FTK4_1.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;2) Barra de navegação e visualização do FTK4 &lt;/b&gt;alia&lt;b&gt; &lt;/b&gt;facilidade e poder de uso:&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-e5viNdGmw9A/T1GhSwGTG1I/AAAAAAAAAXE/p40vMMOMHG8/s1600/FTK4_2.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="12" src="http://3.bp.blogspot.com/-e5viNdGmw9A/T1GhSwGTG1I/AAAAAAAAAXE/p40vMMOMHG8/s320/FTK4_2.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;3) O Case Overview&lt;/b&gt; proporciona múltiplas maneiras de visualizar os dados presentes nas imagem forenses inseridas no caso:&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-G_7cWMRqy5g/T1GhoThQJZI/AAAAAAAAAXM/_UBwoaVdpXE/s1600/FTK4_3.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-G_7cWMRqy5g/T1GhoThQJZI/AAAAAAAAAXM/_UBwoaVdpXE/s1600/FTK4_3.PNG" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;4) Categorias de arquivos &lt;/b&gt;agrupadas por assinatura (headers):&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-zlO2UWLzfic/T1GiP9ZzxDI/AAAAAAAAAXU/2FyzxChKW0U/s1600/FTK4_4.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-zlO2UWLzfic/T1GiP9ZzxDI/AAAAAAAAAXU/2FyzxChKW0U/s1600/FTK4_4.PNG" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;5) Análise de dados voláteis e de memória&lt;/b&gt; incluindo processos, bibliotecas, sockets, arquivos abertos, parâmetros, etc..&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/--3igB8Ce-KE/T1GjHQVRFlI/AAAAAAAAAXk/sprSeY9md2Y/s1600/FTK4_5.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="129" src="http://3.bp.blogspot.com/--3igB8Ce-KE/T1GjHQVRFlI/AAAAAAAAAXk/sprSeY9md2Y/s320/FTK4_5.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;6) Opção "Exportar informações de arquivos .LNK"&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;b style="font-family: Arial, Helvetica, sans-serif; font-size: small; text-align: center; white-space: pre-wrap;"&gt;(&lt;i&gt;hat tip to&lt;/i&gt; &lt;a href="http://hackingexposedcomputerforensicsblog.blogspot.com/2012/02/best-feature-you-never-knew-existed.html" target="_blank"&gt;David Cohen&lt;/a&gt;)&lt;/b&gt;&lt;b style="font-family: Arial, Helvetica, sans-serif; font-size: small; white-space: pre-wrap;"&gt; &lt;/b&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small; white-space: pre-wrap;"&gt;que possibilita a geração de uma planilha com informações valiososas sobre a atividade de usuários no sistema operacional Windows, incluindo abertura de arquivos de pendrives, discos externos:&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-lkmnhiq9z18/T1Gk-NgwleI/AAAAAAAAAX0/B9dJa08yoF4/s1600/FTK4_7.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="78" src="http://2.bp.blogspot.com/-lkmnhiq9z18/T1Gk-NgwleI/AAAAAAAAAX0/B9dJa08yoF4/s320/FTK4_7.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;7) A Opção acima também facilita a extração de informações relacionadas ao acesso de diretórios de rede:&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-ysYwNSjvP4w/T1Gl6LPtYbI/AAAAAAAAAX8/wF5uqG62uHc/s1600/FTK4_8.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="320" src="http://1.bp.blogspot.com/-ysYwNSjvP4w/T1Gl6LPtYbI/AAAAAAAAAX8/wF5uqG62uHc/s320/FTK4_8.PNG" width="269" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt; &lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;8) O novo módulo Cerberus de análise estática de binários, &lt;/b&gt;calcula uma classificação de risco baseada em uso de comunicações de rede, persistência, criptografia, obfuscação, APIs e funções utilizadas pelo binário&lt;b&gt; - &lt;/b&gt;muito&lt;b&gt; &lt;/b&gt;útil para casos envolvendo malwares&lt;b&gt;:&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-gaalp3URmEY/T1Gj89ZYRVI/AAAAAAAAAXs/3_gndwMHwTg/s1600/FTK4_6.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="192" src="http://1.bp.blogspot.com/-gaalp3URmEY/T1Gj89ZYRVI/AAAAAAAAAXs/3_gndwMHwTg/s320/FTK4_6.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;9) O novo módulo de Visualização &lt;/b&gt;é extremamente flexível, permitindo a geração de gráficos baseados em diferentes informações presentes no caso, como estatísticas de arquivos selecionados:&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-Qr-ImGDG08s/T1GmzGi__0I/AAAAAAAAAYE/uBDareVcXIU/s1600/FTK4_12.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="178" src="http://2.bp.blogspot.com/-Qr-ImGDG08s/T1GmzGi__0I/AAAAAAAAAYE/uBDareVcXIU/s320/FTK4_12.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt; &lt;b&gt;  &lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;10) &lt;/b&gt;O módulo permite também outros tipos de visualização, como o &lt;b&gt;envio e recebimento de emails&lt;/b&gt;:&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-YN-LLKFo7zA/T1GnCNbhU8I/AAAAAAAAAYM/cEbYiZEivGw/s1600/FTK4_11.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="180" src="http://1.bp.blogspot.com/-YN-LLKFo7zA/T1GnCNbhU8I/AAAAAAAAAYM/cEbYiZEivGw/s320/FTK4_11.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt; &lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;11) processamento distribuído - &lt;/b&gt;para casos maiores e análises mais rápidas, é possível habilitar o processamento distribuido em até quatro máquinas (O &lt;i&gt;&lt;b&gt;FTK4&lt;/b&gt;&lt;/i&gt; estará rodando em uma delas e o "Distributed Processing Engine" em outras três) - isto pode significar um aumento significativo de performance.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt; &lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;12) agentes &lt;i&gt;enterprise&lt;/i&gt; para Windows, MacOS e Linux - &lt;/b&gt;o&lt;b&gt;&lt;i&gt; FTK4&lt;/i&gt;&lt;/b&gt; possibilita a aquisição remota de imagens (físicas ou lógicas) e também uma obtenção de dados voláteis e/ou o dump de memória RAM de máquinas dos sistemas operacionais Windows, Linux e MacOS.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;13) &lt;/b&gt;Para finalizar, podemos verificar o poder da ferramenta observando o&lt;b&gt; menu de Análises Adicionais:&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-vKPImEfcl4E/T1Grd8EYWhI/AAAAAAAAAYc/BEfqFDd-GNA/s1600/FTK4_13.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="310" src="http://3.bp.blogspot.com/-vKPImEfcl4E/T1Grd8EYWhI/AAAAAAAAAYc/BEfqFDd-GNA/s320/FTK4_13.PNG" width="320" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;u&gt;São dignas de nota especial as seguintes funcionalidades adicionais&lt;/u&gt;:&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;a.&lt;/b&gt; Detecção de Imagens Pornográficas (&lt;b&gt;EID&lt;/b&gt;) - com váras opções de algorítimos com diferentes níveis de precisão (e velocidade); &lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;b.&lt;/b&gt; O reconhecimento óptico de caracteres (&lt;b&gt;OCR&lt;/b&gt;) em arquivos de imagem, pdf, - com dois algorítimos disponíveis;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;c. &lt;/b&gt;Fuzzy Hashing - muito útil para identificar mesmo pequenas alterações feitas em documentos e outros arquivos;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;d. &lt;/b&gt;o poder de customização no &lt;b&gt;&lt;i&gt;carving&lt;/i&gt;&lt;/b&gt; (recuperação a partir de clusters não alocados) de arquivos e a funcionalidade de &lt;b style="font-style: italic;"&gt;meta carving &lt;/b&gt;(busca por entradas órfãs na tabela FAT e no índice $MFT do NTFS);&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;e. &lt;/b&gt;a capacidade de geração de relatórios de informações do registro windows baseados em templates pré-configurados; &lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b style="font-size: small; white-space: pre-wrap;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;14)&lt;/b&gt; Caso eu tenha esquecido algo de relevante - e para encerrar o post&lt;b&gt; - segue a lista de novidades listadas pela &lt;/b&gt;&lt;b style="font-style: italic;"&gt;AccessData &lt;/b&gt;e ao final um link para os&lt;b style="font-style: italic;"&gt; "Release Notes"&lt;/b&gt;&lt;b&gt;:&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div class="MsoNormal" style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;
&lt;span style="font-size: 10pt;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Forensic Toolkit 4 is now available!&lt;/b&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;
&lt;span style="font-size: 10pt;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: xx-small;"&gt;This major release is designed to &lt;b&gt;deliver enterprise-class capabilities at a stand-alone price&lt;/b&gt;. Now, you can leverage the full functionality of AD Enterprise against a single live remote node. This means FTK users can conduct remote investigations to eliminate travel, reduce response times, and speed acquisitions…. And organizations gain incident response capabilities that are so critical in securing networks. In addition to AD Enterprise functionality, FTK 4 users are able to &lt;b&gt;integrate malware triage and visual analytics with two new FTK add-on modules&lt;/b&gt;, the industry-first Cerberus malware triage and analysis module and our new state-of the art Visualization solution.&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size: xx-small;"&gt;FTK continues to be the&amp;nbsp;most innovative solution on the market, as well as the best value, giving you integrated functionality that would normally cost tens of thousands of dollars. It’s time to learn the meaning of next-generation digital investigations…&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: 11px;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div align="center" style="background-color: white; color: #222222; font-size: 13px; line-height: 18px; text-align: center;"&gt;
&lt;strong&gt;&lt;span style="font-size: 14pt;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div align="center" style="background-color: white; color: #222222; font-size: 13px; line-height: 18px; text-align: center;"&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;strong&gt;&lt;span style="font-size: 14pt;"&gt;What’s New in FTK 4?&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;strong style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;&lt;span style="font-size: 10pt;"&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;strong style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;&lt;span style="font-size: 10pt;"&gt;&lt;strong style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;strong style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;&lt;span style="font-size: 10pt;"&gt;
Single-Node Enterprise&lt;/span&gt;&lt;/strong&gt;&lt;span style="background-color: white; color: #222222; font-size: 10pt; line-height: 18px;"&gt;&lt;br /&gt;Install a persistent agent on a single computer to enable the remote analysis and incident response capabilities of AD Enterprise. Preview, acquire and analyze hard drive data, peripheral device data, (RAM Windows Only) and volatile data on Windows&lt;sup&gt;®&lt;/sup&gt;, Apple&lt;sup&gt;®&lt;/sup&gt;&amp;nbsp;OS, UNIX&lt;sup&gt;®&lt;/sup&gt;&amp;nbsp;and Linux&lt;sup&gt;®&lt;/sup&gt;&amp;nbsp;machines. Uninstall the agent at any time, and push it out to a different computer.&lt;br /&gt;&lt;a href="http://cts.vresp.com/c/?AccessData/7d53ad6faa/94b2d46c61/f26f50fabd/redirectName=000112" style="color: #888888; text-decoration: none;"&gt;&lt;strong&gt;&lt;span style="font-size: 8pt;"&gt;WATCH DEMONSTRATION &amp;gt;&lt;/span&gt;&lt;/strong&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Expanded RAM Analysis&lt;/strong&gt;&lt;br /&gt;FTK 4 now provides VAD tree analysis. To see a full list of static RAM analysis capabilities, view the&amp;nbsp;&lt;a href="http://cts.vresp.com/c/?AccessData/7d53ad6faa/94b2d46c61/f67249a8c1" style="color: #888888; text-decoration: none;"&gt;FTK data sheet.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;New File System /File Type Support&lt;/strong&gt;&lt;/span&gt;&lt;span style="background-color: white; color: #222222; font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;ul style="background-color: white; color: #222222; font-size: 13px; line-height: 18px; margin-bottom: 0.5em; margin-left: 0px; margin-right: 0px; margin-top: 0.5em; padding-bottom: 0px; padding-left: 2.5em; padding-right: 2.5em; padding-top: 0px;" type="disc"&gt;
&lt;li class="MsoNormal" style="margin-bottom: 0.25em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: 10pt;"&gt;YAFFS and YAFFS2&lt;/span&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="margin-bottom: 0.25em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: 10pt;"&gt;Exchange 2010 EDB&lt;/span&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="margin-bottom: 0.25em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: 10pt;"&gt;7zip&lt;/span&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;strong style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;&lt;span style="font-size: 10pt;"&gt;Enhanced decryption support (with proper credentials)&lt;/span&gt;&lt;/strong&gt;&lt;span style="background-color: white; color: #222222; font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;ul style="background-color: white; color: #222222; font-size: 13px; line-height: 18px; margin-bottom: 0.5em; margin-left: 0px; margin-right: 0px; margin-top: 0.5em; padding-bottom: 0px; padding-left: 2.5em; padding-right: 2.5em; padding-top: 0px;" type="disc"&gt;
&lt;li class="MsoNormal" style="margin-bottom: 0.25em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: 10pt;"&gt;Checkpoint Pointsec disk encryption&lt;/span&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="margin-bottom: 0.25em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: 10pt;"&gt;Sophos Safeguard Enterprise (latest version)&lt;/span&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="margin-bottom: 0.25em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"&gt;&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;span style="font-size: 10pt;"&gt;Multi-password capability&lt;/span&gt;&lt;span style="font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;strong style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;"&gt;&lt;span style="font-size: 10pt;"&gt;Increased processing performance, especially on systems with more than 8 cores.&lt;/span&gt;&lt;/strong&gt;&lt;span style="background-color: white; color: #222222; font-size: 10pt; line-height: 18px;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;New Regular Expression Support for Index Searching&lt;/strong&gt;&lt;br /&gt;FTK users can now search for advanced combinations of characters against the index.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Licensing&lt;/strong&gt;&lt;br /&gt;Added support for soft dongle licensing in virtual machines.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Add Integrated Malware Analysis with&amp;nbsp;&lt;/strong&gt;&lt;em&gt;&lt;b&gt;CERBERUS&lt;/b&gt;&lt;/em&gt;&lt;br /&gt;Cerberus is a malware triage technology that is available as an add-on for FTK 4. The first step towards automated reverse engineering, Cerberus provides threat scores and disassembly analysis to determine both the behavior and intent of suspect binaries.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Add state-of-the-art data analytics with&amp;nbsp;&lt;/strong&gt;&lt;em&gt;&lt;b&gt;VISUALIZATION*&lt;/b&gt;&lt;/em&gt;&lt;br /&gt;With our new visualization module you can view data in seconds in multiple display formats, including timelines, cluster graphs, pie charts and more.&lt;/span&gt;&lt;span style="background-color: white; color: #222222; font-size: 10.5pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br style="background-color: white; color: #222222; font-size: 13px; line-height: 18px;" /&gt;&lt;span style="background-color: white; color: #222222;"&gt;&lt;br /&gt;&lt;a href="http://cts.vresp.com/c/?AccessData/7d53ad6faa/94b2d46c61/1f026f6c74" style="color: #888888;"&gt;&lt;b&gt;SEE RELEASE NOTE FOR ADDITIONAL PRODUCT ENHANCEMENTS&amp;gt;&lt;/b&gt;&lt;/a&gt;&lt;/span&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Arial, sans-serif; font-size: x-small;"&gt;&lt;span style="white-space: pre-wrap;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-4251560831509403587?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=D81_ukhkfA0:mbnkQZvnWtg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=D81_ukhkfA0:mbnkQZvnWtg:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=D81_ukhkfA0:mbnkQZvnWtg:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/D81_ukhkfA0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/4251560831509403587/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2012/03/ftk-4-evolucao-funcionalidades-e-evento.html#comment-form" title="4 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/4251560831509403587?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/4251560831509403587?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/D81_ukhkfA0/ftk-4-evolucao-funcionalidades-e-evento.html" title="FTK 4 - Evolução, Funcionalidades e evento de lançamento" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-AGg8gbusZAc/T1GncRTjFpI/AAAAAAAAAYU/P4RoQLR0NQo/s72-c/FTK4_Apura_Accessdata.jpg" height="72" width="72" /><thr:total>4</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2012/03/ftk-4-evolucao-funcionalidades-e-evento.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEAFQ3Y-fSp7ImA9WhVREk0.&quot;"><id>tag:blogger.com,1999:blog-1682241822228148612.post-2504835602897898282</id><published>2012-03-19T22:25:00.000-03:00</published><updated>2012-03-19T22:25:12.855-03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-03-19T22:25:12.855-03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="java" /><category scheme="http://www.blogger.com/atom/ns#" term="secunia" /><category scheme="http://www.blogger.com/atom/ns#" term="kaspersky" /><category scheme="http://www.blogger.com/atom/ns#" term="windows" /><category scheme="http://www.blogger.com/atom/ns#" term="exploit" /><category scheme="http://www.blogger.com/atom/ns#" term="drive-by" /><category scheme="http://www.blogger.com/atom/ns#" term="exploit kit" /><category scheme="http://www.blogger.com/atom/ns#" term="vulnerabilidade" /><title>Exploit Kits e o seu Java (CVE 2011-3544 Java_Rhino)</title><content type="html">&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;[ Update: 19/03/2012 ]&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://www.yourdictionary.com/images/articles/lg/2368.LaptopCoffeeSpill.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="212" src="http://www.yourdictionary.com/images/articles/lg/2368.LaptopCoffeeSpill.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;A vulnerabilidade &lt;i&gt;&lt;b&gt;JAVA&lt;/b&gt;&lt;/i&gt;&amp;nbsp;&lt;b&gt;&lt;a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3544" target="_blank"&gt;CVE-2011-3544&lt;/a&gt;&amp;nbsp;&lt;/b&gt;continua exercendo um papel fundamental em diferentes campanhas de ataque analisadas recentemente - segue uma breve compilação de &lt;i&gt;cases&lt;/i&gt; abaixo.&amp;nbsp; (obrigado ao &lt;i&gt;Alberto Fabiano&lt;/i&gt; pela dica de alguns links):&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;i&gt;1 - F-Secure: Mac Malware at the Moment&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://www.f-secure.com/weblog/archives/00002330.html"&gt;http://www.f-secure.com/weblog/archives/00002330.html&lt;/a&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;i&gt;2 - ESet: Drive-by FTP: a new view of CVE-2011-3544&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://blog.eset.com/2012/03/17/drive-by-ftp-a-new-view-of-cve-2011-3544"&gt;http://blog.eset.com/2012/03/17/drive-by-ftp-a-new-view-of-cve-2011-3544&lt;/a&gt;&amp;nbsp;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;i&gt;3 - TrendMicro: NGOs Targeted with Backdoors&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://blog.trendmicro.com/human-rights-organizations-possible-new-targets/"&gt;http://blog.trendmicro.com/human-rights-organizations-possible-new-targets/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: x-small;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;4 - GFI:&amp;nbsp;&lt;/i&gt;&lt;/span&gt;&lt;span style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;Online Criminals Bank on Skype Vouchers to Spread Exploit&lt;/i&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://www.gfi.com/blog/online-criminals-bank-on-skype-vouchers-to-spread-exploit/"&gt;http://www.gfi.com/blog/online-criminals-bank-on-skype-vouchers-to-spread-exploit/&lt;/a&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;i&gt;5 - ThreatPost: &lt;/i&gt;Rare RAM-Based Malware Attacks Visitors of Russian Information Sites&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://threatpost.com/en_us/blogs/rare-ram-based-malware-attacks-visitors-russian-information-sites-031912"&gt;http://threatpost.com/en_us/blogs/rare-ram-based-malware-attacks-visitors-russian-information-sites-031912&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: x-small;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;6 -&amp;nbsp;&lt;/span&gt;&lt;span style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;Mac OS X exploit and Trojan horse monitoring users via webcam&lt;/i&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://news.drweb.com/show/?i=2262&amp;amp;lng=en&amp;amp;c=5"&gt;http://news.drweb.com/show/?i=2262&amp;amp;lng=en&amp;amp;c=5&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;i&gt;7 - SecureList:&amp;nbsp;A unique 'fileless' bot attacks news site visitors&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: x-small;"&gt;&lt;a href="http://www.securelist.com/en/blog/687/A_unique_fileless_bot_attacks_news_site_visitors"&gt;http://www.securelist.com/en/blog/687/A_unique_fileless_bot_attacks_news_site_visitors&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;[ Update: 28/12/2011 ]&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Como imaginado o&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt; &lt;b&gt;CVE 2011-3544&lt;/b&gt;&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt; já é desde ontem o principal vetor entre as infecções "&lt;a href="http://en.wikipedia.org/wiki/Drive-by_download"&gt;drive-by-download&lt;/a&gt;" no Brasil.&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Uma imagem vale mais do que mil palavras:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-BHTKE2gXr6s/TvuHt1zU5NI/AAAAAAAAAWM/YjlPm9ElgMw/s1600/java-rhino-BR.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="201" src="http://4.bp.blogspot.com/-BHTKE2gXr6s/TvuHt1zU5NI/AAAAAAAAAWM/YjlPm9ElgMw/s320/java-rhino-BR.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Fonte:&amp;nbsp;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;Assolini da Kaspersky via Twitte&lt;/i&gt;r&lt;b&gt;&amp;nbsp;[&lt;/b&gt;&lt;a href="https://twitter.com/#!/assolini/statuses/152119152281255936" style="font-weight: bold;"&gt;1&lt;/a&gt;&lt;b&gt;, &lt;/b&gt;&lt;a href="https://twitter.com/#!/assolini/statuses/152121744071725057" style="font-weight: bold;"&gt;2&lt;/a&gt;&lt;b&gt;]&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;[ Update: 01/12/2011 ]&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;object class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://0.gvt0.com/vi/cXctDpaNIjw/0.jpg" height="266" width="320"&gt;&lt;param name="movie" value="http://www.youtube.com/v/cXctDpaNIjw&amp;fs=1&amp;source=uds" /&gt;











&lt;param name="bgcolor" value="#FFFFFF" /&gt;











&lt;embed width="320" height="266"  src="http://www.youtube.com/v/cXctDpaNIjw&amp;fs=1&amp;source=uds" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Java.. um mal desnescesário?&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;I) Problemas com o Java, mais uma vez:&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Alguns &lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://krebsonsecurity.com/2011/11/new-java-attack-rolled-into-exploit-kits/"&gt;"&lt;i&gt;exploit kits&lt;/i&gt;" já continham o exploit&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;"&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;i&gt;Java Rhino&lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;" (&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3544"&gt;CVE 2011-3544&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;) e o nível de &lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://pastebin.com/txeUU4d0"&gt;sucesso de sua execução&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt; em diferentes versões de &lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;S.O.&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt; e&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt; browsers&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt; é bem alto - veja um exemplo de&amp;nbsp;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://s1-01.twitpicproxy.com/photos/large/460827095.png"&gt;console do &lt;i&gt;exploit kit "BlackHole&lt;/i&gt;"&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;(&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;imagem&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;)&lt;/span&gt;&lt;br /&gt;
&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Pra piorar a situação, ontem foi disponibilizado para qualquer um baixar (&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://www.metasploit.com/"&gt;projeto metasploit&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;) um módulo de exploração desta vulnerabilidade Java (ou seja:&amp;nbsp;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;cross-platform &amp;amp; cross-browser&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;).&lt;/span&gt;&lt;/div&gt;
&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Código (&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;Metasploit - Ruby&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;):&amp;nbsp;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://dev.metasploit.com/redmine/projects/framework/repository/revisions/f26f6da74b4e6d87d2c59034b85dfb1ae0d1b1d7/entry/modules/exploits/multi/browser/java_rhino.rb"&gt;http://dev.metasploit.com/redmine/projects/framework/repository/revisions/f26f6da74b4e6d87d2c59034b85dfb1ae0d1b1d7/entry/modules/exploits/multi/browser/java_rhino.rb&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Mas, vulnerabilidades são descobertas a todo minuto, exploits são escritos a toda hora, porque dar destaque a esta específica? &lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Continue lendo..&lt;/b&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Logo que saiu, eu testei em Linux, Mac e Windows 7 - funcionou em todos sem exceção (&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;Firefox, Chrome, IE, Safari&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;)!&amp;nbsp;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Como vocês podem ver no &lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;post &lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;original (de 02 Agosto) abaixo, a elevação de privilégios explorando vulnerabilidades Java é bem mais simples de ser obtida e esta é uma mina de ouro para ataques de&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;i&gt;&amp;nbsp;&lt;a href="http://en.wikipedia.org/wiki/Drive-by_download"&gt;Drive-by Download&lt;/a&gt;&lt;/i&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;,&amp;nbsp;entre outros..&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;A coisa é mais complicada ainda porque o usuário não precisa interagir em absolutamente nada durante o processo de exploração da vulnerabilidade.&amp;nbsp;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Some a isto a realidade da dificuldade de manter todas as instalações de JAVA "up-to-date" em uma empresa, e você tem um cenário bem negro pra lidar..&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;II) Cenário provável nos próximos dias:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="border-collapse: collapse;"&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;Quanto tempo até que grande portais e provedores redirecionem [WEB ou&amp;nbsp;DNS invadido ou envenenado] milhares de usuários de internet banking&amp;nbsp;(ou até&amp;nbsp;&lt;/span&gt;&lt;a href="http://hotmail.com/" style="font-weight: normal;" target="_blank"&gt;hotmail.com&lt;/a&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;,&amp;nbsp;&lt;/span&gt;&lt;a href="http://google.com/" style="font-weight: normal;" target="_blank"&gt;google.com&lt;/a&gt;&lt;span class="Apple-style-span" style="font-weight: normal;"&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="http://www.securelist.com/en/blog/208193214/Massive_DNS_poisoning_attacks_in_Brazil"&gt;como aconteceu recentemente&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="border-collapse: collapse; font-weight: normal;"&gt;) pruma&amp;nbsp;página com um Drive-By Download (&lt;i&gt;iframe&lt;/i&gt;&amp;nbsp;invisível no site, por exemplo) com este exploit Java - multi-browser e&amp;nbsp;multi-plataforma?&lt;br /&gt;&lt;br /&gt;Minha opinião: &lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="border-collapse: collapse;"&gt;não demora e vai ser feio.. =/&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;III) &amp;nbsp;Para os que só acreditam vendo:&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Vídeo 1)&lt;/b&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt; Original: &lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://www.youtube.com/watch?v=4xI9USYl8P0"&gt;www.youtube.com/watch?v=4xI9USYl8P0&lt;/a&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt; (IE / XP)&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Vídeo 2)&lt;/b&gt; Armitage:&amp;nbsp;&lt;a href="http://www.youtube.com/watch?v=cXctDpaNIjw"&gt;www.youtube.com/watch?v=cXctDpaNIjw&lt;/a&gt; (Firefox, Internet Explorer, Safari - Windows, MacOS X, Linux)&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;IV) O que você pode fazer quanto a isto?&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;a href="http://blogs.technet.com/b/security/archive/2011/11/28/millions-of-java-exploit-attempts-the-importance-of-keeping-all-software-up-to-date.aspx"&gt;Segundo a Microsoft&lt;/a&gt;, o cliente &lt;i&gt;Java&lt;/i&gt; hoje é responsável por praticamente a metade das explorações a máquina Windows. Ou seja, antes de mais nada - avalie se você realmente precisa do Java.. assim como do Adobe Reader.. =) Pelo altíssimo grau de exploração de ambos, seriam "um mal desnecessário"?&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Se você é usuário Linux ou Mac - tenha certeza de sempre fazer update das aplicações assim que as correções são lançadas.&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Mas - como garantir que você tem as últimas versões do Java e de outros aplicativos no(s) seu(s) computador(es) Windows?&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Software (já recomendado aqui várias vezes):&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Secunia PSI - &lt;a href="http://secunia.com/vulnerability_scanning/personal/"&gt;http://secunia.com/vulnerability_scanning/personal/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Se você acha que não precisa, faça o teste online e veja quantas aplicações você vulneráveis (apenas aguardando a exploração..) no seguinte link:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;OSI (Online):&lt;a href="http://secunia.com/vulnerability_scanning/personal/"&gt; http://secunia.com/vulnerability_scanning/online/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;b&gt;Mais informações:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="http://www.oracle.com/technetwork/topics/security/javacpuoct2011-443431.html"&gt;&lt;span class="Apple-style-span" style="color: #999999; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: xx-small;"&gt;http://www.oracle.com/technetwork/topics/security/javacpuoct2011-443431.html&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://eromang.zataz.com/2011/11/30/cve-2011-3544-java-applet-rhino-script-engine-metasploit-demo/"&gt;&lt;span class="Apple-style-span" style="color: #999999; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: xx-small;"&gt;http://eromang.zataz.com/2011/11/30/cve-2011-3544-java-applet-rhino-script-engine-metasploit-demo/&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="color: #999999; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: xx-small;"&gt;&lt;a href="http://krebsonsecurity.com/2011/11/public-java-exploit-amps-up-threat-level/"&gt;http://krebsonsecurity.com/2011/11/public-java-exploit-amps-up-threat-level/&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="border-collapse: collapse; color: #999999; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: xx-small;"&gt;&lt;a href="http://allthingsd.com/20111202/why-today-is-a-very-good-day-to-update-java-on-your-computer/" target="_blank"&gt;http://allthingsd.com/&lt;wbr&gt;&lt;/wbr&gt;20111202/why-today-is-a-very-&lt;wbr&gt;&lt;/wbr&gt;good-day-to-update-java-on-&lt;wbr&gt;&lt;/wbr&gt;your-computer/&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.darkreading.com/vulnerability-management/167901026/security/attacks-breaches/232200604/the-dark-side-of-java.html"&gt;&lt;span class="Apple-style-span" style="color: #999999; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: xx-small;"&gt;http://www.darkreading.com/vulnerability-management/167901026/security/attacks-breaches/232200604/the-dark-side-of-java.html&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="Apple-style-span" style="color: #999999; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif; font-size: xx-small;"&gt;&lt;a href="https://community.rapid7.com/community/metasploit/blog/2011/11/30/test-results-for-javarhino"&gt;https://community.rapid7.com/community/metasploit/blog/2011/11/30/test-results-for-javarhino&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;[ Post Original: 02/08/2011 ]&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Entre 2009 e 2010 eu publiquei e atualizei um artigo entitulado "&lt;a href="http://sseguranca.blogspot.com/2009/02/saga-de-se-manter-seguro-usando-windows.html"&gt;A saga de se manter seguro usando Windows&lt;/a&gt;", contendo dicas para usuários finais (usando ferramentas gratuitas).&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;As dicas da época &lt;b&gt;continuam valendo&lt;/b&gt; - assim como a recomendação do &lt;a href="http://www.secunia.com/"&gt;Secunia&lt;/a&gt;&amp;nbsp;para facilitar a aplicação dos &lt;i&gt;patches&lt;/i&gt; necessários -&amp;nbsp;porém infelizmente a facilidade de exploração de aplicações vulneráveis não deixa de ficar maior a cada ano..&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Hoje são tantos os &lt;i&gt;&lt;b&gt;exploit kits&lt;/b&gt; &lt;/i&gt;disponíveis no mercado que análises comparativas como a &lt;a href="http://www.securelist.com/en/analysis/204792184/Exploit_kits_attack_vector_mid_year_update"&gt;publicada pela Kaspersky recentemente&lt;/a&gt; não chegam a ser novidade, mas alguns detalhes merecem destaque:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Os &lt;i&gt;exploit kits &lt;/i&gt;mais famosos (&lt;i&gt;&lt;a href="https://isc.sans.edu/diary.html?storyid=12079"&gt;BlackHole&lt;/a&gt;&lt;/i&gt;, &lt;i&gt;&lt;a href="http://labs.m86security.com/2011/01/shedding-light-on-the-neosploit-exploit-kit/"&gt;NeoSploit&lt;/a&gt;&lt;/i&gt;, &lt;i&gt;&lt;a href="http://sofosecurity.files.wordpress.com/2011/08/20110525_0330_phoenixexploitkit_v0nsch3lling.pdf"&gt;Phoenix&lt;/a&gt;&lt;/i&gt;, &lt;i&gt;&lt;a href="http://stopmalvertising.com/malware-reports/analysis-of-an-incognito-v20-exploit-kit.html"&gt;Incognito&lt;/a&gt;&lt;/i&gt; e &lt;i&gt;&lt;a href="http://blog.9bplus.com/eleonore-is-one-ugly-mistress"&gt;Eleonore&lt;/a&gt;&lt;/i&gt;) objetivam atingir usuários com uma série de exploits sucessivos durante a sua navegação (em um ataque conhecido como &lt;a href="http://en.wikipedia.org/wiki/Drive-by_download"&gt;Drive-by Download&lt;/a&gt;), e por isto exploram principalmente vulnerabilidades de navegadores e seus &lt;i&gt;plugins. &lt;/i&gt;São exploradas vulnerabilidades do IE, Firefox, Chrome, Flash e Java, por exemplo. Porém as vulnerabilidades do JAVA são as mais utilizadas nos &lt;i&gt;exploit kits..&amp;nbsp;&lt;/i&gt;Mas, por que?&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Confiram o caminho necessário para exploração de cada aplicação a partir da imagem abaixo (publicada no artigo da &lt;i&gt;Kaspersky linkado &lt;/i&gt;acima&lt;i&gt;): está esclarecida a preferência por vulnerabilidades no JAVA? &amp;nbsp;&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;
&lt;i&gt;&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://www.securelist.com/en/images/vlill/vicent_pic05s.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span class="Apple-style-span" style="color: black; font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;img border="0" height="217" src="http://www.securelist.com/en/images/vlill/vicent_pic05s.png" width="400" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;u&gt;&lt;b&gt;E o seu Java,&amp;nbsp;&lt;/b&gt;está &lt;b&gt;atualizado&lt;/b&gt;&lt;i&gt;? &lt;/i&gt;Confira&amp;nbsp;&lt;a href="http://secunia.com/vulnerability_scanning/online/?task=load"&gt;aqui&lt;/a&gt;&amp;nbsp;no site da&amp;nbsp;&lt;b&gt;Secunia.&lt;/b&gt;&lt;/u&gt;&lt;/span&gt;&lt;/div&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;Com a melhoria na proteção de execução em memória no Windows, principalmente com as "barreiras" DEP e ALSR - o atacante tem mais trabalho para conseguir executar instruções maliciosas a partir de um processos em execução que possuam estas proteções.&amp;nbsp;Para um detalhamento de como estes &lt;i&gt;bypasses&lt;/i&gt; funcionam, sugiro um &lt;a href="http://www.crimesciberneticos.com/2011/03/exploits-e-protecoes-de-memoria-aslr-e.html"&gt;artigo do Ronaldo do blog "Crimes Cinernéticos"&lt;/a&gt;.&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Helvetica Neue', Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: Arial, Helvetica, sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;&lt;img src="http://www.feedburner.com/fb/images/pub/feed-icon32x32.png" alt="" style="border:0"/&gt;&lt;/a&gt;&lt;a href="http://feeds.feedburner.com/Sseguranca" title="Subscribe to my feed" rel="alternate" type="application/rss+xml"&gt;Inscreva-se no RSS Feed e receba atualizações automáticas&lt;/a&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1682241822228148612-2504835602897898282?l=sseguranca.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=zBX7zH-5MeU:lTscATDas94:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Sseguranca?a=zBX7zH-5MeU:lTscATDas94:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Sseguranca?i=zBX7zH-5MeU:lTscATDas94:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Sseguranca/~4/zBX7zH-5MeU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://sseguranca.blogspot.com/feeds/2504835602897898282/comments/default" title="Postar comentários" /><link rel="replies" type="text/html" href="http://sseguranca.blogspot.com/2011/08/exploit-kits-e-o-seu-java.html#comment-form" title="0 Comentários" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/2504835602897898282?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1682241822228148612/posts/default/2504835602897898282?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Sseguranca/~3/zBX7zH-5MeU/exploit-kits-e-o-seu-java.html" title="Exploit Kits e o seu Java (CVE 2011-3544 Java_Rhino)" /><author><name>Sandro Süffert</name><uri>https://profiles.google.com/114477833632426722312</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh3.googleusercontent.com/-0RrKL2lEU-c/AAAAAAAAAAI/AAAAAAAAATw/ohfv80Om6j4/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-BHTKE2gXr6s/TvuHt1zU5NI/AAAAAAAAAWM/YjlPm9ElgMw/s72-c/java-rhino-BR.png" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://sseguranca.blogspot.com/2011/08/exploit-kits-e-o-seu-java.html</feedburner:origLink></entry></feed>

