<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;C0cFRn86fSp7ImA9WhRaFEk.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046</id><updated>2012-02-17T02:10:17.115+01:00</updated><category term="Cloudbook" /><category term="Nessus" /><category term="Cloud Computing" /><category term="Password Security" /><category term="HowTo" /><category term="Live Broadcast" /><category term="malware" /><category term="Metasploit" /><category term="PHUKD" /><category term="Linux / OSS" /><category term="Lab" /><category term="Security" /><category term="OSX" /><category term="Presentations" /><category term="EEE PC" /><category term="Politics" /><category term="Ubertooth" /><category term="KVM" /><category term="Code" /><category term="Online Gaming" /><category term="Blackhat USA 2011" /><category term="Book review" /><category term="Wiki updates" /><category term="Ubuntu" /><category term="Virtualbox" /><category term="iOS" /><category term="Virtualization" /><category term="Facebook" /><category term="GlusterFS" /><category term="fbpwn" /><category term="Defcon 19" /><category term="ConVirt" /><title>Michael Boman</title><subtitle type="html">Application Vulnerability and Malicious Code Hunter</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://blog.michaelboman.org/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>158</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/michaelboman/ttmb" /><feedburner:info uri="michaelboman/ttmb" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry gd:etag="W/&quot;DUUHRX09cCp7ImA9WhRaEUk.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-5592278166386959194</id><published>2012-02-13T16:33:00.001+01:00</published><updated>2012-02-13T16:33:54.368+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-02-13T16:33:54.368+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><category scheme="http://www.blogger.com/atom/ns#" term="KVM" /><category scheme="http://www.blogger.com/atom/ns#" term="Virtualization" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux / OSS" /><title>New virtual environment solution</title><content type="html">&lt;p&gt;I’ve been running &lt;a href="http://www.proxmox.com/products/proxmox-ve"&gt;Proxmox Virtual Environment&lt;/a&gt; (Proxmox VE or PVE) for the last week now, moving away from my own deployed Ubuntu/Convirture/GlusterFS solution. Reason for doing this is mainly to spend less time managing the virtual environment, but also because I had some issues with the setup in general.&lt;/p&gt;  &lt;p&gt;For the last week Proxmox (version 1.9) has worked without problems for me. I am not fully converted to the new system, and have plenty of machines to migrate from the old installation to the new system, but I am getting there (I have for an example 10+ anti-malware scanners to migrate).&lt;/p&gt;  &lt;p&gt;In the move to my new home office under the staircase I also lost two of my server nodes, as in I have no space to put them. They will live out the remaining operational live as desktop computers to the kids while I save up some dough for new, smaller and better cluster nodes. Hopefully the price of hard drives will have dropped by then as well.&lt;/p&gt;  &lt;p&gt;So right now I only have “sniper” in the lab, which is plenty enough for now. I have upgraded the network to the Netgear switch &lt;a href="http://blog.michaelboman.org/2012/01/new-hardware-ordered-to-lab.html"&gt;I wrote about&lt;/a&gt; a few weeks back, and it works great. I am currently designing how the lab network should be configured now when I am not depending on the Linksys WRT54G boxes. I will keep having them in the network, but they will just not have a central part of it. To try out wireless attacks and defenses I need them, and they will continue to be un-encrypted/WEP/WPA2-PSK encrypted. I am thinking about playing around with RADIUS and 801.1x authenticated wireless as well, but at the moment I don’t have that much time to spend so I am currently picking my fights very carefully.&lt;/p&gt;  &lt;p&gt;Enough talking, here’s some pictures:&lt;/p&gt;  &lt;p&gt;Listing of machines running on my Proxmox server&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-Y_2kVIwBCrc/TzktTY79vPI/AAAAAAAAAWg/soxDjM04PJI/s1600-h/image%25255B3%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="Listing of machines running on my Proxmox server" src="http://lh4.ggpht.com/-OTUK76fUl3w/TzktT27PGMI/AAAAAAAAAWo/AtHlHe0rRPM/image_thumb%25255B1%25255D.png?imgmax=800" width="1028" height="648" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Available templates (see &lt;a href="http://www.turnkeylinux.org/blog/openvz-proxmox"&gt;here&lt;/a&gt; how to get Turnkey templates into your Proxmox installation):&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-8mxlBUceJJI/TzktU7ES8lI/AAAAAAAAAWw/ej-kUaceobk/s1600-h/image%25255B7%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh4.ggpht.com/-ReXmLxNKHfw/TzktWPL6s2I/AAAAAAAAAW4/JwKr0_1LpEs/image_thumb%25255B3%25255D.png?imgmax=800" width="912" height="772" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;System information:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-V1OnqJFAkec/TzktWywyDBI/AAAAAAAAAXA/ue5MYm5XWvU/s1600-h/image%25255B12%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-WImxl0TKy3E/TzktYIABsdI/AAAAAAAAAXI/eX7wcIk3Cj0/image_thumb%25255B6%25255D.png?imgmax=800" width="783" height="524" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;I will continue with documenting my adventures with Proxmox VE as I go along.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-5592278166386959194?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/P_AoKGam2N01v1DBGzp2swe5Bdo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/P_AoKGam2N01v1DBGzp2swe5Bdo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/P_AoKGam2N01v1DBGzp2swe5Bdo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/P_AoKGam2N01v1DBGzp2swe5Bdo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/f5ln04FOW78" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/5592278166386959194/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2012/02/new-virtual-environment-solution.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5592278166386959194?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5592278166386959194?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/f5ln04FOW78/new-virtual-environment-solution.html" title="New virtual environment solution" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh4.ggpht.com/-OTUK76fUl3w/TzktT27PGMI/AAAAAAAAAWo/AtHlHe0rRPM/s72-c/image_thumb%25255B1%25255D.png?imgmax=800" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2012/02/new-virtual-environment-solution.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DE4ARX89eCp7ImA9WhRbFUQ.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-2395079193209632325</id><published>2012-02-07T07:40:00.001+01:00</published><updated>2012-02-07T07:42:24.160+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-02-07T07:42:24.160+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Presentations" /><category scheme="http://www.blogger.com/atom/ns#" term="Security" /><title>Sans och vett på Internet</title><content type="html">&lt;p&gt;I recently did a presentation for some high school students (freshmen) here in Sweden about their digital identity and what they should think about when they are online. I’ve embedded the presentation slides below.&lt;/p&gt;  &lt;div style="width:425px" id="__ss_11274075"&gt; &lt;strong style="display:block;margin:12px 0 4px"&gt;&lt;a href="http://www.slideshare.net/mboman/sans-och-vett-p-internet" title="Sans och vett på Internet" target="_blank"&gt;Sans och vett på Internet&lt;/a&gt;&lt;/strong&gt; &lt;iframe src="http://www.slideshare.net/slideshow/embed_code/11274075?rel=0" width="425" height="355" frameborder="0" marginwidth="0" marginheight="0" scrolling="no"&gt;&lt;/iframe&gt; &lt;div style="padding:5px 0 12px"&gt; View more &lt;a href="http://www.slideshare.net/" target="_blank"&gt;presentations&lt;/a&gt; from &lt;a href="http://www.slideshare.net/mboman" target="_blank"&gt;Michael Boman&lt;/a&gt; &lt;/div&gt; &lt;/div&gt;  &lt;p&gt;There were 58 students attending&amp;#160; and during the presentation I asked some questions and here is how they answered:&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;20 of the students have used their neighbors WiFi network&lt;/li&gt;    &lt;li&gt;25 students have got malware on their system in the past, but only 12 of the students has a antivirus installed.&lt;/li&gt;    &lt;li&gt;2 students has multiple Facebook accounts&lt;/li&gt;    &lt;li&gt;Almost all has been Faceraped (there were 2 students that didn’t have a Facebook account)&lt;/li&gt;    &lt;li&gt;Almost all have performed Facerape (again, 2 students didn’t have a Facebook account)&lt;/li&gt;    &lt;li&gt;1 student got their Facebook identity cloned or stolen&lt;/li&gt;    &lt;li&gt;20 students has a webcam connected to their computer&lt;/li&gt;    &lt;li&gt;Only 5 of them has the webcam disabled when not in use (by unplugging it or covering the lens with a post-it note)&lt;/li&gt;    &lt;li&gt;2 of the students has a single password for everything&lt;/li&gt;    &lt;li&gt;25 of the students has up to 5 different passwords&lt;/li&gt;    &lt;li&gt;5 of the students has more then 5 passwords&lt;/li&gt;    &lt;li&gt;13 of the students has a specific password for email&lt;/li&gt; &lt;/ul&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-2395079193209632325?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/vsw8_rkRkIfNH3aNU996QmXMoN0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/vsw8_rkRkIfNH3aNU996QmXMoN0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/vsw8_rkRkIfNH3aNU996QmXMoN0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/vsw8_rkRkIfNH3aNU996QmXMoN0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/ZxUbLLzpur4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/2395079193209632325/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2012/02/sans-och-vett-pa-internet.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/2395079193209632325?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/2395079193209632325?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/ZxUbLLzpur4/sans-och-vett-pa-internet.html" title="Sans och vett på Internet" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2012/02/sans-och-vett-pa-internet.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcBR386fCp7ImA9WhRUFkg.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-59735198143205129</id><published>2012-01-26T20:33:00.000+01:00</published><updated>2012-01-27T10:54:16.114+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-27T10:54:16.114+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><title>New hardware ordered to the lab</title><content type="html">&lt;p&gt;My mix of 5-port no-brand gigabit-switch and a handful of Linksys WRT54G doesn’t turn out to be a very stable choice for network connectivity, so I just put in a order for a &lt;a href="http://www.netgear.com/service-provider/products/switches/smart-switches/GS716T.aspx"&gt;Netgear GS716T-200EUS&lt;/a&gt;, a 16-port gigabit switch with VLAN capability. It will arrive in a few days, which should be just in time for my server move.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-Qw2VDeIFFfc/TyFyw02dayI/AAAAAAAAAV0/hF7-g6_isUA/s1600-h/image%25255B6%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-ffohl-PKESI/TyFyxU5YkCI/AAAAAAAAAV4/G1sTj5Wj2ng/image_thumb%25255B9%25255D.png?imgmax=800" width="244" height="73" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;I figured 16 ports should be enough. The devices that I am planning to connect to the switch now and in the future is:&lt;/p&gt;  &lt;table border="0" cellspacing="0" cellpadding="2" width="601"&gt;&lt;tbody&gt;     &lt;tr&gt;       &lt;td valign="top" width="165"&gt;&lt;strong&gt;Equipment&lt;/strong&gt;&lt;/td&gt;        &lt;td valign="top" width="154"&gt;&lt;strong&gt;Number of NICs each&lt;/strong&gt;&lt;/td&gt;        &lt;td valign="top" width="134"&gt;&lt;strong&gt;How many&lt;/strong&gt;&lt;/td&gt;        &lt;td valign="top" width="146"&gt;&lt;strong&gt;Total&lt;/strong&gt; &lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;Sniper&lt;/td&gt;        &lt;td valign="top" width="154"&gt;4&lt;/td&gt;        &lt;td valign="top" width="134"&gt;1&lt;/td&gt;        &lt;td valign="top" width="146"&gt;4&lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;WRT54G&lt;/td&gt;        &lt;td valign="top" width="154"&gt;1&lt;/td&gt;        &lt;td valign="top" width="134"&gt;4&lt;/td&gt;        &lt;td valign="top" width="146"&gt;4&lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;Slimline (desktop)&lt;/td&gt;        &lt;td valign="top" width="154"&gt;1&lt;/td&gt;        &lt;td valign="top" width="134"&gt;1&lt;/td&gt;        &lt;td valign="top" width="146"&gt;1&lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;Internet&lt;/td&gt;        &lt;td valign="top" width="154"&gt;1&lt;/td&gt;        &lt;td valign="top" width="134"&gt;1&lt;/td&gt;        &lt;td valign="top" width="146"&gt;1&lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;New cluster nodes&lt;/td&gt;        &lt;td valign="top" width="154"&gt;1&lt;/td&gt;        &lt;td valign="top" width="134"&gt;4 (max)&lt;/td&gt;        &lt;td valign="top" width="146"&gt;4 (max)&lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;Network Attach Storage&lt;/td&gt;        &lt;td valign="top" width="154"&gt;1-2&lt;/td&gt;        &lt;td valign="top" width="134"&gt;1&lt;/td&gt;        &lt;td valign="top" width="146"&gt;1-2&lt;/td&gt;     &lt;/tr&gt;      &lt;tr&gt;       &lt;td valign="top" width="165"&gt;&amp;#160;&lt;/td&gt;        &lt;td valign="top" width="154"&gt;&amp;#160;&lt;/td&gt;        &lt;td valign="top" width="134"&gt;&lt;strong&gt;Total:&lt;/strong&gt;&lt;/td&gt;        &lt;td valign="top" width="146"&gt;15-16&lt;/td&gt;     &lt;/tr&gt;   &lt;/tbody&gt;&lt;/table&gt;  &lt;p&gt;I have some other equipment like networked printers and print-servers which I will put on the ISP-supplied router (that also has a 4-port switch).&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-59735198143205129?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Vpwe9lyxQLRlYiWr_Xvkeh8mSvY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Vpwe9lyxQLRlYiWr_Xvkeh8mSvY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Vpwe9lyxQLRlYiWr_Xvkeh8mSvY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Vpwe9lyxQLRlYiWr_Xvkeh8mSvY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/Ut4_uaajctk" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/59735198143205129/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2012/01/new-hardware-ordered-to-lab.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/59735198143205129?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/59735198143205129?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/Ut4_uaajctk/new-hardware-ordered-to-lab.html" title="New hardware ordered to the lab" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh3.ggpht.com/-ffohl-PKESI/TyFyxU5YkCI/AAAAAAAAAV4/G1sTj5Wj2ng/s72-c/image_thumb%25255B9%25255D.png?imgmax=800" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2012/01/new-hardware-ordered-to-lab.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkIGQ3s-cSp7ImA9WhRUEUs.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-1363752316652694421</id><published>2012-01-17T07:46:00.001+01:00</published><updated>2012-01-21T16:42:02.559+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-21T16:42:02.559+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><title>New home office (work in progress)</title><content type="html">&lt;p&gt;We are expecting an additional family member late May/early June and I have to give up my old home office and move to the space under the stairs instead. No matter how much I love technology, flesh and bones has priority when it comes to living arrangement.&lt;/p&gt;  &lt;p&gt;It will however not be all bad. Sure, the amount of space is significantly smaller, but used correctly it won’t effect me too much. Here is some pictures for the interested.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-VENlhycD8VM/TxUZJjQLyRI/AAAAAAAAAU4/kmJ_Xs6a-Q0/s1600-h/IMG_0911%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0911" border="0" alt="IMG_0911" src="http://lh3.ggpht.com/-eVeL31lhsoA/TxUZKDitLpI/AAAAAAAAAU8/ptLdCdQ18n4/IMG_0911_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh3.ggpht.com/-dhIPF3YbFf0/TxUZLTscoWI/AAAAAAAAAVE/ntiz8sy_wG4/s1600-h/IMG_0912%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0912" border="0" alt="IMG_0912" src="http://lh5.ggpht.com/-4LzSRQUAYVo/TxUZL5IMOSI/AAAAAAAAAVM/HXuwVKg28CI/IMG_0912_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh3.ggpht.com/-ekIzaMKUyjw/TxUZM6NOJUI/AAAAAAAAAVU/ymaQrJpKMs4/s1600-h/IMG_0913%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0913" border="0" alt="IMG_0913" src="http://lh3.ggpht.com/-l6Uii5S5YYo/TxUZNjtzn_I/AAAAAAAAAVc/1RRrt3GYb0g/IMG_0913_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;The new office is the result from a trip to Ikea. Following items was bought:&lt;/p&gt;  &lt;p&gt;Desk&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;1 x Trofast frame, pine (000.636.72) &lt;/li&gt;    &lt;li&gt;1 x Trofast frame, pine (800.636.72) &lt;/li&gt;    &lt;li&gt;2 x Trofast shelf, pine (700.635.84) &lt;/li&gt;    &lt;li&gt;1 x Vika Furuskog table top, pine (401.365.58) &lt;/li&gt;    &lt;li&gt;1 x Trofast large storage box, white (200.892.42) &lt;/li&gt;    &lt;li&gt;3 x Trofast medium storage box, white (956.851.00) &lt;/li&gt;    &lt;li&gt;3 x Trofast small storage box, white (800.892.39) &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Chair&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;1 x Franklin bar stool (201.992.07) &lt;/li&gt;    &lt;li&gt;1 x Ritva cushion (200.696.92) &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Bookshelf (no picture yet)&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;1 x Billy bookshelf, white (400.857.14) &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Still have some way to go before it is completed. Will let you know the progress &lt;img style="border-bottom-style: none; border-left-style: none; border-top-style: none; border-right-style: none" class="wlEmoticon wlEmoticon-winkingsmile" alt="Winking smile" src="http://lh4.ggpht.com/-Ap9Kvuv_KUg/TxUZOaUFloI/AAAAAAAAAVk/Iso5_9j3V8U/wlEmoticon-winkingsmile%25255B2%25255D.png?imgmax=800" /&gt;. Many thanks to &lt;a href="http://www.ikeahackers.net/"&gt;IKEA Hackers&lt;/a&gt; for a inspiring website!&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-1363752316652694421?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/_6VlELBV2meRFGMeQcWKaBttyaU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/_6VlELBV2meRFGMeQcWKaBttyaU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/_6VlELBV2meRFGMeQcWKaBttyaU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/_6VlELBV2meRFGMeQcWKaBttyaU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/_5GII75mZFY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/1363752316652694421/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2012/01/new-home-office-work-in-progress.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1363752316652694421?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1363752316652694421?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/_5GII75mZFY/new-home-office-work-in-progress.html" title="New home office (work in progress)" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh3.ggpht.com/-eVeL31lhsoA/TxUZKDitLpI/AAAAAAAAAU8/ptLdCdQ18n4/s72-c/IMG_0911_thumb.jpg?imgmax=800" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2012/01/new-home-office-work-in-progress.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0EHQHc9fyp7ImA9WhRQE0k.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-8570920155771181630</id><published>2011-12-08T12:56:00.001+01:00</published><updated>2011-12-08T13:00:31.967+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-08T13:00:31.967+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Nessus" /><category scheme="http://www.blogger.com/atom/ns#" term="Metasploit" /><title>Vulnerability scanning with Nessus from within Metasploit</title><content type="html">&lt;p&gt;&lt;a href="http://metasploit.com/"&gt;Metasploit&lt;/a&gt; is a very cool tool to use in your penetration testing, if you didn’t already knew that. There is a few things you should add to it for a really good time: &lt;a href="http://www.fastandeasyhacking.com/"&gt;Armitage&lt;/a&gt; and &lt;a href="http://code.google.com/p/xssf/"&gt;XSS Framework&lt;/a&gt;.&lt;/p&gt;  &lt;p&gt;Armitage makes Metasploit a multi-player exploitation tool with a graphical user interface, and XSS Framework makes XSS-attacks with Metasploit easier to perform. You can also use &lt;a href="http://beefproject.com/"&gt;BeEF&lt;/a&gt; to exploit XSS-vulnerabilities.&lt;/p&gt;  &lt;p&gt;But before I go and talk about all those tools I thought I should start off with how you can perform and import vulnerability scans from within Metasploit itself. It has been known for a while that you can use “db_import” to import data from various security tools:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; db_import     &lt;br /&gt;Usage: db_import &amp;lt;filename&amp;gt; [file2...]&lt;/p&gt;    &lt;p&gt;Filenames can be globs like *.xml, or **/*.xml which will search recursively     &lt;br /&gt;Currently supported file types include:      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Acunetix XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Amap Log      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Amap Log -m      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Appscan XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Burp Session XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Foundstone XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; IP360 ASPL      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; IP360 XML v3      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Microsoft Baseline Security Analyzer      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Nessus NBE      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Nessus XML (v1 and v2)      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; NetSparker XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; NeXpose Simple XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; NeXpose XML Report      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Nmap XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; OpenVAS Report      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Qualys Asset XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Qualys Scan XML      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Retina XML      &lt;br /&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;But that means that you need to first run the scan and then import it to Metasploit. A much cooler feature is to run the vulnerability scan directly from your Metasploit console.&lt;/p&gt;  &lt;h2&gt;Nessus from msfconsole / Armitage&lt;/h2&gt;  &lt;p&gt;To run a Nessus vulnerability scan from the Metasploit console you first need to have a Nessus installation somewhere. I’ll wait while you install it, and don’t forget to register your installation so you can download the latest plugins for it.&lt;/p&gt;  &lt;p&gt;In Metasploit you start with loading the nessus plugin:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; load nessus&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;and then connect to the Nessus installation&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; nessus_connect -h     &lt;br /&gt;[*] You must do this before any other commands.      &lt;br /&gt;[*] Usage:       &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; nessus_connect username:password@hostname:port &amp;lt;ssl ok&amp;gt;      &lt;br /&gt;[*]&amp;#160; Example:&amp;gt; nessus_connect msf:msf@192.168.1.10:8834 ok      &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; OR      &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; nessus_connect username@hostname:port &amp;lt;ssl ok&amp;gt;      &lt;br /&gt;[*]&amp;#160; Example:&amp;gt; nessus_connect msf@192.168.1.10:8834 ok      &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; OR      &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; nessus_connect hostname:port &amp;lt;ssl ok&amp;gt;      &lt;br /&gt;[*]&amp;#160; Example:&amp;gt; nessus_connect 192.168.1.10:8834 ok      &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; OR      &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; nessus_connect      &lt;br /&gt;[*]&amp;#160; Example:&amp;gt; nessus_connect      &lt;br /&gt;[*] This only works after you have saved creds with nessus_save      &lt;br /&gt;[*]       &lt;br /&gt;[*] username and password are the ones you use to login to the nessus web front end      &lt;br /&gt;[*] hostname can be an ip address or a dns name of the web front end.      &lt;br /&gt;[*] port is the standard that the nessus web front end runs on : 8834.&amp;#160; This is NOT 1241.      &lt;br /&gt;[*] The &amp;quot;ok&amp;quot; on the end is important.&amp;#160; It is a way of letting you      &lt;br /&gt;[*] know that nessus used a self signed cert and the risk that presents.&lt;/p&gt;    &lt;p&gt;msf&amp;gt; nessus_connect user:password@localhost:8834 ok&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;If you save the credentials using&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; nessus_save&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;You only need to issue&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; nessus_connect&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;to automatically connect to your Nessus instance. Be warned, your Nessus credentials are stored in the clear in ~/.msf4/nessus.yaml - but it saves on typing…&lt;/p&gt;  &lt;p&gt;After you have connected to the Nessus scan it is time to scan the target. First we need to select a policy:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; nessus_policy_list     &lt;br /&gt;[+] Nessus Policy List      &lt;br /&gt;[+] &lt;/p&gt;    &lt;p&gt;[+] ID&amp;#160; Name&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; Comments     &lt;br /&gt;--&amp;#160; ----&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; --------      &lt;br /&gt;-1&amp;#160; Web App Tests&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;br /&gt;-2&amp;#160; Internal Network Scan&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;br /&gt;-3&amp;#160; Prepare for PCI DSS audits&amp;#160; &lt;br /&gt;-4&amp;#160; External Network Scan&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Then we need to start the scan:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; nessus_scan_new -h     &lt;br /&gt;[*] Usage:       &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; nessus_scan_new &amp;lt;policy id&amp;gt; &amp;lt;scan name&amp;gt; &amp;lt;targets&amp;gt;      &lt;br /&gt;[*]&amp;#160; Example:&amp;gt; nessus_scan_new 1 &amp;quot;My Scan&amp;quot; 192.168.1.250      &lt;br /&gt;[*]       &lt;br /&gt;[*] Creates a scan based on a policy id and targets.      &lt;br /&gt;[*] use nessus_policy_list to list all available policies&lt;/p&gt;    &lt;p&gt;msf&amp;gt; nessus_scan_new -4 “Metasploit Scan” 192.168.1.0/24&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Once the scan is completed it is time to import the result into Metasploit&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;msf&amp;gt; nessus_report_list&lt;/p&gt;    &lt;p&gt;msf&amp;gt; nessus_report_get -h     &lt;br /&gt;[*] Usage:       &lt;br /&gt;[*]&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; nessus_report_get &amp;lt;report id&amp;gt;      &lt;br /&gt;[*]&amp;#160; Example:&amp;gt; nessus_report_get f0eabba3-4065-7d54-5763-f191e98eb0f7f9f33db7e75a06ca      &lt;br /&gt;[*]       &lt;br /&gt;[*] This command pulls the provided report from the nessus server in the nessusv2 format      &lt;br /&gt;[*] and parses it the same way db_import_nessus does.&amp;#160; After it is parsed it will be      &lt;br /&gt;[*] available to commands such as db_hosts, db_vulns, db_services and db_autopwn.      &lt;br /&gt;[*] Use: nessus_report_list to obtain a list of report id's&lt;/p&gt;    &lt;p&gt;msf&amp;gt; nessus_report_get f0eabba3-4065-7d54-5763-f191e98eb0f7f9f33db7e75a06ca&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;After which it is time to check what we now know about our target network using the “hosts”, “services” and “vulns” commands.&lt;/p&gt;  &lt;h2&gt;References&lt;/h2&gt;  &lt;p&gt;&lt;a title="http://www.offensive-security.com/metasploit-unleashed/Working_With_Nessus" href="http://www.offensive-security.com/metasploit-unleashed/Working_With_Nessus"&gt;Metasploit Unleashed: Working With Nessus&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a title="http://www.offensive-security.com/metasploit-unleashed/Nessus_Via_Msfconsole" href="http://www.offensive-security.com/metasploit-unleashed/Nessus_Via_Msfconsole"&gt;Metasploit Unleashed: Nessus Via Msfconsole&lt;/a&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-8570920155771181630?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/3QC7QhpQpSjzlm9GbOnCX2oe-i8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3QC7QhpQpSjzlm9GbOnCX2oe-i8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/3QC7QhpQpSjzlm9GbOnCX2oe-i8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3QC7QhpQpSjzlm9GbOnCX2oe-i8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/odv0b2LdmlE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/8570920155771181630/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/12/vulnerability-scanning-with-nessus-from.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8570920155771181630?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8570920155771181630?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/odv0b2LdmlE/vulnerability-scanning-with-nessus-from.html" title="Vulnerability scanning with Nessus from within Metasploit" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/12/vulnerability-scanning-with-nessus-from.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0QDQn05eCp7ImA9WhRbFUQ.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-3987269810752787622</id><published>2011-10-17T09:41:00.001+02:00</published><updated>2012-02-07T07:16:13.320+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-02-07T07:16:13.320+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Nessus" /><category scheme="http://www.blogger.com/atom/ns#" term="Code" /><title>Merging multiple Nessus reports</title><content type="html">&lt;p&gt;I have recently had the need to merge multiple Nessus reports into single reports and here is the code I used to do it. Take care and if it breaks for you you get to keep both pieces &lt;img style="border-bottom-style: none; border-left-style: none; border-top-style: none; border-right-style: none" class="wlEmoticon wlEmoticon-winkingsmile" alt="Winking smile" src="http://lh4.ggpht.com/-exAnPacZAuw/TpvcDFfofnI/AAAAAAAAASE/8LKMAnq-7Js/wlEmoticon-winkingsmile%25255B2%25255D.png?imgmax=800" /&gt;. Please note that you need to change the report name to the same value, like this:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;sed -i -e s/\&amp;lt;Report\ name=\&amp;quot;.*\&amp;quot;\&amp;gt;/\&amp;lt;Report\ name=\&amp;quot;&lt;em&gt;Combined\ report\ name&lt;/em&gt;\&amp;quot;\&amp;gt;/g reports/*.xml&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;mergeReports.pl&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;#!/usr/bin/env perl&lt;/p&gt;    &lt;p&gt;use strict;      &lt;br /&gt;use warnings;&lt;/p&gt;    &lt;p&gt;use XML::Merge;&lt;/p&gt;    &lt;p&gt;if ( $#ARGV &amp;lt; 0 ) {      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; print &amp;quot;Merging into &amp;quot; . $ARGV[0] . &amp;quot;\n&amp;quot;;       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; my $merge_obj = XML::Merge-&amp;gt;new( 'filename' =&amp;gt; $ARGV[0] );       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; foreach my $filename (@ARGV) {       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; if ( $filename ne $ARGV[0] ) {       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; print &amp;quot;Merging &amp;quot; . $filename . &amp;quot;...&amp;quot;;       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; $merge_obj-&amp;gt;merge( 'filename' =&amp;gt; $filename );       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; print &amp;quot; Done!\n&amp;quot;;       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; }       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; }&lt;/p&gt;    &lt;p&gt;&amp;#160;&amp;#160;&amp;#160; print &amp;quot;Tiding up.... &amp;quot; . $ARGV[0];      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; $merge_obj-&amp;gt;tidy();       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; print &amp;quot;Done!\n&amp;quot;;       &lt;br /&gt;} else {       &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; print &amp;quot;Usage: mergeReports.pl Output.xml inputfiles.xml\n&amp;quot;;       &lt;br /&gt;}       &lt;/p&gt;&lt;/blockquote&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-3987269810752787622?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/6-k5cBRbl4QfCZmx7xbpN0e5e7I/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/6-k5cBRbl4QfCZmx7xbpN0e5e7I/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/6-k5cBRbl4QfCZmx7xbpN0e5e7I/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/6-k5cBRbl4QfCZmx7xbpN0e5e7I/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/rwtIl8nbAJo" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/3987269810752787622/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/10/merging-multiple-nessus-reports.html#comment-form" title="4 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/3987269810752787622?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/3987269810752787622?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/rwtIl8nbAJo/merging-multiple-nessus-reports.html" title="Merging multiple Nessus reports" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh4.ggpht.com/-exAnPacZAuw/TpvcDFfofnI/AAAAAAAAASE/8LKMAnq-7Js/s72-c/wlEmoticon-winkingsmile%25255B2%25255D.png?imgmax=800" height="72" width="72" /><thr:total>4</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/10/merging-multiple-nessus-reports.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D04MQnc_fyp7ImA9WhdUGU4.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-8009992544389494159</id><published>2011-10-06T23:19:00.001+02:00</published><updated>2011-10-06T23:19:43.947+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-06T23:19:43.947+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="fbpwn" /><category scheme="http://www.blogger.com/atom/ns#" term="Security" /><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><title>Cloning Facebook accounts with FBPwn</title><content type="html">&lt;p&gt;&lt;a href="http://lh4.ggpht.com/-8CQ-oRbNhtk/To4ZQ_ZG0OI/AAAAAAAAARM/k8IUxgHTEdk/s1600-h/image%25255B11%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: right; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" align="right" src="http://lh6.ggpht.com/-X5pz1A8mTQY/To4ZTVTeATI/AAAAAAAAARQ/WL_Ch3KtHW4/image_thumb%25255B7%25255D.png?imgmax=800" width="130" height="59" /&gt;&lt;/a&gt;When you do penetration testing it is useful to become “friends” with the employees of the target organization to gather information and perhaps slip a spiked link or two to the employee in hopes that the user clicks and executes its content. However, it is quite tedious to manually clone a Facebook profile (a lot of copy and paste, downloading and re-uploading of images etc.) and become one of the target organization employees. Luckily there is now a tool available to automate the task.&lt;/p&gt;  &lt;p&gt;FBPwn (Facebook Pwn (slang for owning [taking control over] a resource)) is a application written in Java that downloads a target profile and, if one so chooses, clones the acquired information into a new Facebook profile.&lt;/p&gt;  &lt;p&gt;First you need to create a Facebook profile which will be used to access the data and, if chosen, updates the profile information with the targets including pictures. You can also make FBPwn to send friend requests to the cloned profile’s Facebook friends, and more often then not the friends will accept the friend requests because it is from someone they “know” (has the same name and picture of someone they know). The tool has, even at this early stage of development, quite a few tricks up its sleeve and I will go through each of them here.&lt;/p&gt;  &lt;h2&gt;Getting FBPwn&lt;/h2&gt;  &lt;p&gt;You can download FBPwn from the &lt;a href="http://code.google.com/p/fbpwn/"&gt;Google code project site&lt;/a&gt;. As it is written in Java is will run practically everywhere Java can run. Here I will go through version beta-0.1.6, which is the latest release at this moment.&lt;/p&gt;  &lt;p&gt;First off we download it:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-sLK4k4OsYzI/To4ZXw0pUbI/AAAAAAAAARU/6Op8FWOwNc0/s1600-h/image%25255B17%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-TAnWAErLCEs/To4ZwbmPfEI/AAAAAAAAARY/sbFHcqr6spk/image_thumb%25255B11%25255D.png?imgmax=800" width="544" height="375" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Then we unpack and execute the “run.sh” script (OSX, Linux) or “run.bat” (Windows). You will be greeted with the following screen:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-8H1BYM_WVPg/To4Z6QZIXMI/AAAAAAAAARc/1gkORYOUFHA/s1600-h/image%25255B28%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-P42SCNksPGg/To4aA3vcXiI/AAAAAAAAARg/0YN8OFCRckY/image_thumb%25255B26%25255D.png?imgmax=800" width="644" height="347" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;h2&gt;Using FBPwn&lt;/h2&gt;  &lt;p&gt;First you need to configure one or more Facebook profiles to be used to access the profile you want to attack. The Facebook profile needs to be created separately from this tool and the profile language needs to be set to English for FBPwn to work at this stage.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-jy1eozpksfc/To4aoU7eDLI/AAAAAAAAARk/WwojDbbk8tY/s1600-h/image%25255B27%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-1t8_G2426QY/To4a_swNYQI/AAAAAAAAARo/Vn5MoT8VfE4/image_thumb%25255B25%25255D.png?imgmax=800" width="644" height="344" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Select one of the accounts you want to use for the next step and click on the “Attack !” button.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-zfIYO8Ggv1E/To4bFnyTgNI/AAAAAAAAARs/P4Y-1ideX98/s1600-h/image%25255B33%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-PKqFBFbV9lE/To4bXH-jIKI/AAAAAAAAARw/LMqq4T-J3YM/image_thumb%25255B34%25255D.png?imgmax=800" width="644" height="346" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Friend URL: The URL of the Facebook profile you want to target. For an example: &lt;a title="http://www.facebook.com/profile.php?id=100001638343979" href="http://www.facebook.com/profile.php?id=100001638343979"&gt;http://www.facebook.com/profile.php?id=100001638343979&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;At the moment FBPwn has following attack methods (plugins):&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-iUXD6OImsBU/To4bYGQK3LI/AAAAAAAAAR0/Se6R-w6pLY4/s1600-h/image%25255B38%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-i1owjqQAnEQ/To4bZLRrdxI/AAAAAAAAAR4/4kNIWamW63o/image_thumb%25255B42%25255D.png?imgmax=800" width="644" height="388" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;Add Victims Friends     &lt;br /&gt;Add the target profile’s friends to the configured profile.&lt;/li&gt;    &lt;li&gt;Check Friend Request Task     &lt;br /&gt;Ask to become friend with the targeted profile.&lt;/li&gt;    &lt;li&gt;Dump Friends Task     &lt;br /&gt;Download the target profile’s list of Facebook friends.&lt;/li&gt;    &lt;li&gt;Dump Images Task     &lt;br /&gt;Download the images from the target profile.&lt;/li&gt;    &lt;li&gt;Dump Info Task     &lt;br /&gt;Download the target profile’s information.&lt;/li&gt;    &lt;li&gt;Dump Thumbnail Images Task     &lt;br /&gt;Download the target profile’s thumbnail images.&lt;/li&gt;    &lt;li&gt;Dump Wall Task     &lt;br /&gt;Download the target profile’s wall postings.&lt;/li&gt;    &lt;li&gt;Profile Cloner Task     &lt;br /&gt;Clone the target profile into the configured account.&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Once you have selected the modules you want to use click on the “Lunch Attack” button.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-TK4yOoNuj7s/To4badjXp1I/AAAAAAAAAR8/9mS2d0KqQpQ/s1600-h/image%25255B43%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-RZNHbGGTR0c/To4bbgLo-AI/AAAAAAAAASA/9Lh8bwHI36c/image_thumb%25255B50%25255D.png?imgmax=800" width="644" height="345" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;The “Monitor Submitted Tasks” tab will show the progress of the selected tasks.&lt;/p&gt;  &lt;p&gt;Do note that Facebook’s &lt;a href="http://www.facebook.com/terms.php"&gt;Terms of Use&lt;/a&gt; actually forbids many of the things FBPwn is performing. For an example, under section 4 (Registration and Account Security)&amp;#160; section 1 and section 2. You have been warned.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-8009992544389494159?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/-Zai3BuGVche4IuBtNDi7UYlBcU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-Zai3BuGVche4IuBtNDi7UYlBcU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/-Zai3BuGVche4IuBtNDi7UYlBcU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-Zai3BuGVche4IuBtNDi7UYlBcU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/XcTVbOYJgvs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/8009992544389494159/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/10/cloning-facebook-accounts-with-fbpwn.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8009992544389494159?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8009992544389494159?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/XcTVbOYJgvs/cloning-facebook-accounts-with-fbpwn.html" title="Cloning Facebook accounts with FBPwn" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh6.ggpht.com/-X5pz1A8mTQY/To4ZTVTeATI/AAAAAAAAARQ/WL_Ch3KtHW4/s72-c/image_thumb%25255B7%25255D.png?imgmax=800" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/10/cloning-facebook-accounts-with-fbpwn.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0MGQXw5fyp7ImA9WhdWFEs.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-6977619748151660880</id><published>2011-09-08T07:57:00.000+02:00</published><updated>2011-09-08T07:57:00.227+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-08T07:57:00.227+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="OSX" /><category scheme="http://www.blogger.com/atom/ns#" term="Code" /><title>Implementing VT Uploader in OSX</title><content type="html">&lt;p&gt;&lt;a href="http://www.virustotal.com/"&gt;VirusTotal.com&lt;/a&gt;, possible the best malware analysis service on the web, has a application for Windows called “VT Uploader” which sends selected file to VirusTotal.com for analysis. Unfortunately they don’t have a similar program for OSX… Well, here is how I implemented the same functionality using Automator in OSX &lt;img style="border-bottom-style: none; border-left-style: none; border-top-style: none; border-right-style: none" class="wlEmoticon wlEmoticon-smile" alt="Smile" src="http://lh5.ggpht.com/-6Sdjx5HTJfE/Tmc2a8fqttI/AAAAAAAAAQg/H__UYTcXprc/wlEmoticon-smile%25255B2%25255D.png?imgmax=800" /&gt;.&lt;/p&gt;  &lt;p&gt;First off you need an API key for VirusTotal.com, which you get by &lt;a href="http://www.virustotal.com/vt-community/register.html"&gt;register yourself&lt;/a&gt; on the website (found in your &lt;a href="http://www.virustotal.com/vt-community/inbox.html"&gt;Inbox&lt;/a&gt; -&amp;gt; Public API).&lt;/p&gt;  &lt;p&gt;Second you need the &lt;a href="http://www.bryceboe.com/2010/09/01/submitting-binaries-to-virustotal/"&gt;Python script&lt;/a&gt; from Bryce Boe that uploads a file to VirusTotal.com. Make sure that you put your API key into the code (API_KEY variable) and run it from the command line to make sure that you have all the Python dependencies:&lt;/p&gt;  &lt;blockquote&gt;$ /usr/bin/python virustotal_report.py eicar.com&lt;/blockquote&gt;  &lt;p&gt;You can download the simplejson dependency by using the easy_install utility like this:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo easy_install simplejson&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;When you have the prerequisites you start a new “Service” project in Automator. Create a new “Run Shell Script” action and choose the shell “/usr/bin/python”. Paste the code from Bryce Boe’s site in the “Run Shell Script” editor.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-hqk1J77ObcA/Tmc2bfqLyxI/AAAAAAAAAQk/Pubjm_W7Jcc/s1600-h/image%25255B20%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh4.ggpht.com/-CW5rD_TXfv0/Tmc2b4DNRsI/AAAAAAAAAQo/w76NCCzvpkQ/image_thumb%25255B10%25255D.png?imgmax=800" width="1028" height="664" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Select “Pass input: &lt;em&gt;as arguments&lt;/em&gt;” on the top right of the action window.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-4DWlD_7_77o/Tmc2cTunyII/AAAAAAAAAQs/HuTr5mJ6qhg/s1600-h/image%25255B11%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh4.ggpht.com/-a8tLHaP4XwQ/Tmc2c-bxB0I/AAAAAAAAAQw/0NL5jF7I7Ys/image_thumb%25255B5%25255D.png?imgmax=800" width="614" height="81" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Finally you select “Service receives selected &lt;em&gt;files or folders&lt;/em&gt; in &lt;em&gt;Finder&lt;/em&gt;”.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-OOBeWHopWjg/Tmc2dL8AV6I/AAAAAAAAAQ0/RpX_fCIN-Rc/s1600-h/image%25255B7%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-tQJx5B8c_2s/Tmc2dlxFAZI/AAAAAAAAAQ4/3gXo7A8J4Pc/image_thumb%25255B3%25255D.png?imgmax=800" width="622" height="62" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Save the project at “Send to Virustotal”, and you have a nice menu item for it in Finder:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-GPY_rMpD1x4/Tmc2eM5XA2I/AAAAAAAAAQ8/cpfnZdW5P9k/s1600-h/image%25255B15%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-yeLUqh2fOXs/Tmc2el2LCFI/AAAAAAAAARA/FqrPMDzSnfI/image_thumb%25255B7%25255D.png?imgmax=800" width="415" height="348" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Until next time &lt;img style="border-bottom-style: none; border-left-style: none; border-top-style: none; border-right-style: none" class="wlEmoticon wlEmoticon-openmouthedsmile" alt="Open-mouthed smile" src="http://lh5.ggpht.com/-Sw-qoD9N7Ns/Tmc2ezw2nLI/AAAAAAAAARE/QqPtE4nlRmw/wlEmoticon-openmouthedsmile%25255B2%25255D.png?imgmax=800" /&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-6977619748151660880?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/nYGsEPVEiDEMdIsaRvINM2GBIvM/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/nYGsEPVEiDEMdIsaRvINM2GBIvM/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/nYGsEPVEiDEMdIsaRvINM2GBIvM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/nYGsEPVEiDEMdIsaRvINM2GBIvM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/HBvcIXnh4J8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/6977619748151660880/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/09/implementing-vt-uploader-in-osx.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/6977619748151660880?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/6977619748151660880?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/HBvcIXnh4J8/implementing-vt-uploader-in-osx.html" title="Implementing VT Uploader in OSX" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh5.ggpht.com/-6Sdjx5HTJfE/Tmc2a8fqttI/AAAAAAAAAQg/H__UYTcXprc/s72-c/wlEmoticon-smile%25255B2%25255D.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/09/implementing-vt-uploader-in-osx.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEcEQXY5eyp7ImA9WhdWE0Q.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-8422370948251187452</id><published>2011-09-07T12:40:00.000+02:00</published><updated>2011-09-07T12:40:00.823+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-07T12:40:00.823+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="HowTo" /><category scheme="http://www.blogger.com/atom/ns#" term="OSX" /><category scheme="http://www.blogger.com/atom/ns#" term="Code" /><title>OSX Automator script for pasting to Pastebin.com</title><content type="html">&lt;p&gt;I found this cool &lt;a href="http://marc-abramowitz.com/archives/2011/01/02/os-x-service-for-posting-text-to-pastebin-com/"&gt;Automator script&lt;/a&gt; for OSX that allows you to paste text from your selection to Pastebin.com.&lt;/p&gt;  &lt;p&gt;The steps provided in the original article was a bit difficult to follow at first so here is a visual walkthrough how to do it:&lt;/p&gt;  &lt;p&gt;Start the Automator application&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-utl2bI8c2qI/TmcwVE3UrcI/AAAAAAAAAPc/zL-6OH4tO6A/s1600-h/image%25255B8%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-YpLFDdtHyuE/TmcwVdVNGsI/AAAAAAAAAPg/QPI1kHONmX4/image_thumb%25255B12%25255D.png?imgmax=800" width="105" height="124" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Create a new “Service” application&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-tvAvN48LniI/TmcwV5zVMbI/AAAAAAAAAPk/mqDK0mrXBhE/s1600-h/image%25255B12%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-XKj8YL8ZGHU/TmcwWTkeXRI/AAAAAAAAAPo/FWxIr06ayWk/image_thumb%25255B14%25255D.png?imgmax=800" width="547" height="527" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Drag a “Run AppleScript” action to the workflow workspace&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-mB5h8SIjYF8/TmcwWphZADI/AAAAAAAAAPs/CLDjwjqhH3g/s1600-h/image%25255B27%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh4.ggpht.com/-G18XuitFfLA/TmcwXXYLAkI/AAAAAAAAAPw/HCCdx8ODeFQ/image_thumb%25255B21%25255D.png?imgmax=800" width="841" height="447" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Paste in the code from &lt;a title="https://gist.github.com/761482" href="https://gist.github.com/761482"&gt;https://gist.github.com/761482&lt;/a&gt; into the “Run AppleScript” code window&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-0h434KBel9s/TmcwX-vJb4I/AAAAAAAAAP0/tR2ZaVQKfwQ/s1600-h/image%25255B28%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-DH5b8cXpups/TmcwYHVR2QI/AAAAAAAAAP4/ij1vu_Qv24c/image_thumb%25255B22%25255D.png?imgmax=800" width="611" height="305" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Then I created a “Copy to Clipboard” action&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-AFFcdlDy2ps/TmcwYttpu0I/AAAAAAAAAP8/CGQT3eHWUPg/s1600-h/image%25255B29%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-XRc0FSXUw-g/TmcwZJwjS4I/AAAAAAAAAQA/E1uIaz_MiiM/image_thumb%25255B23%25255D.png?imgmax=800" width="841" height="468" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Then I made sure that the actions are “Service receives selected &lt;em&gt;text&lt;/em&gt; in &lt;em&gt;any application&lt;/em&gt;” and “Input is &lt;em&gt;entire selection&lt;/em&gt;” with “Output replaces selected text” unchecked.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-cOtNxgGC4vk/TmcwZjW_i5I/AAAAAAAAAQE/wdzsuw5lopw/s1600-h/image%25255B30%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-utnCous-wUo/TmcwaIdJdzI/AAAAAAAAAQI/QcPiv-ETO1Q/image_thumb%25255B24%25255D.png?imgmax=800" width="623" height="62" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Finally I saved the file as “Pastebin.bin.workflow”.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-bw--Vkq-dp8/TmcwaoHU4hI/AAAAAAAAAQM/heoZxO2RwqI/s1600-h/image%25255B4%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-48-pGV72DBo/TmcwbVN1CUI/AAAAAAAAAQQ/O08mkNy1cWc/image_thumb%25255B7%25255D.png?imgmax=800" width="880" height="772" /&gt;&lt;/a&gt;&lt;/p&gt;              &lt;p&gt;when you select some text and right-click you get a nice option of sending the selected text to Pastebin.com:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-GULyJJxKvRk/Tmcwb4NuvtI/AAAAAAAAAQU/55OGDfL2uQQ/s1600-h/image%25255B34%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-ODbh3KpzxAo/TmcwcdrM7zI/AAAAAAAAAQY/UykshngytmU/image_thumb%25255B26%25255D.png?imgmax=800" width="359" height="262" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Many thanks to &lt;a href="http://marc-abramowitz.com/"&gt;Marc Abramowitz&lt;/a&gt; for his very nice blog entry. I haven’t been looking at Automator before but now I think I will automate a lot of tasks in OSX &lt;img style="border-bottom-style: none; border-left-style: none; border-top-style: none; border-right-style: none" class="wlEmoticon wlEmoticon-winkingsmile" alt="Winking smile" src="http://lh6.ggpht.com/-_26_Ecgglpw/Tmcwcw3_OrI/AAAAAAAAAQc/tltHHryO2Og/wlEmoticon-winkingsmile%25255B2%25255D.png?imgmax=800" /&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-8422370948251187452?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/vm3oiDnSpXafOi7k_762BXZPR-g/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/vm3oiDnSpXafOi7k_762BXZPR-g/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/vm3oiDnSpXafOi7k_762BXZPR-g/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/vm3oiDnSpXafOi7k_762BXZPR-g/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/9bP1HqN7zWs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/8422370948251187452/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/09/osx-automator-script-for-pasting-to.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8422370948251187452?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8422370948251187452?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/9bP1HqN7zWs/osx-automator-script-for-pasting-to.html" title="OSX Automator script for pasting to Pastebin.com" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh6.ggpht.com/-YpLFDdtHyuE/TmcwVdVNGsI/AAAAAAAAAPg/QPI1kHONmX4/s72-c/image_thumb%25255B12%25255D.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/09/osx-automator-script-for-pasting-to.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUYCQXo7eyp7ImA9WhdWEEk.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-1919953141494196776</id><published>2011-09-03T11:46:00.000+02:00</published><updated>2011-09-03T11:46:00.403+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-03T11:46:00.403+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="KVM" /><category scheme="http://www.blogger.com/atom/ns#" term="Virtualization" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux / OSS" /><category scheme="http://www.blogger.com/atom/ns#" term="Ubuntu" /><category scheme="http://www.blogger.com/atom/ns#" term="ConVirt" /><title>Introduction to the ConVirt console</title><content type="html">&lt;p&gt;When you go to the ConVirt console you are greeted by a login screen:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-l9fMcHPXoeY/Tl8xiAzGg2I/AAAAAAAAAOs/oQ2WTwNCRpU/s1600-h/image%25255B9%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-iHwhL8DV0YA/Tl8xihW37sI/AAAAAAAAAOw/UbXbWHKiIpc/image_thumb%25255B11%25255D.png?imgmax=800" width="336" height="228" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;The default username and password is admin/admin.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/--QCGMJE_r_w/Tl8xkh7ZDtI/AAAAAAAAAO0/ZxAOIawtATc/s1600-h/image%25255B19%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-NA4Q4vEt78M/Tl8xmMzJ5QI/AAAAAAAAAO4/4mPCW2cEfgo/image_thumb%25255B33%25255D.png?imgmax=800" width="856" height="772" /&gt;&lt;/a&gt;&lt;/p&gt;      &lt;p&gt;As you can see I have several machines already running. Let’s try out this system migration I talked about in an earlier blog post.&lt;/p&gt;  &lt;p&gt;First you select the machine you want to move:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-ehWWywa2dDA/Tl8xmuMY6fI/AAAAAAAAAO8/5ShTwGS-8mw/s1600-h/image%25255B35%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-mhLPS0fKNyA/Tl8xnLfm_VI/AAAAAAAAAPA/5vwJJnV9w5I/image_thumb%25255B39%25255D.png?imgmax=800" width="182" height="239" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;and then you right-click on it&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-R2HF-KI8E5Q/Tl8xnqLVB_I/AAAAAAAAAPE/taVNLGa7fIk/s1600-h/image%25255B36%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/-ANW2HhkF5CA/Tl8xo3s3ZbI/AAAAAAAAAPI/kWXHVquFWow/image_thumb%25255B40%25255D.png?imgmax=800" width="342" height="411" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;and select “Migrate Virtual Machine”. Select where you want it migrated to:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-dP6HYwZKYuE/Tl8xpnz7gNI/AAAAAAAAAPM/xh81IVZVR6w/s1600-h/image%25255B37%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh4.ggpht.com/-GhFy_cSMeFU/Tl8xqIqIlTI/AAAAAAAAAPQ/yUVvtYrpr8c/image_thumb%25255B41%25255D.png?imgmax=800" width="320" height="328" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;In this example I will migrate it to “hunter”. Confirm that you want to migrate the virtual machine:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-_LvqN37NGGw/Tl8xqjMEJDI/AAAAAAAAAPU/tEFRB-hAJv8/s1600-h/image%25255B38%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-szZrwimIiDs/Tl8xrBw3spI/AAAAAAAAAPY/_wJPqbWH_lc/image_thumb%25255B42%25255D.png?imgmax=800" width="312" height="113" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;After confirming that you want to move the virtual machine to the other server you just need to sit back and in a few seconds the machine will pop up on “hunter” with almost no down-time at all.&lt;/p&gt;  &lt;p&gt;That’s all for this time, join me next time when I discuss more part of my home lab.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-1919953141494196776?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/lMiSMh1fLio8gYTDwr7lvINwOd0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lMiSMh1fLio8gYTDwr7lvINwOd0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/lMiSMh1fLio8gYTDwr7lvINwOd0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lMiSMh1fLio8gYTDwr7lvINwOd0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/MmupmEBQLoM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/1919953141494196776/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/09/introduction-to-convirt-console.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1919953141494196776?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1919953141494196776?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/MmupmEBQLoM/introduction-to-convirt-console.html" title="Introduction to the ConVirt console" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh5.ggpht.com/-iHwhL8DV0YA/Tl8xihW37sI/AAAAAAAAAOw/UbXbWHKiIpc/s72-c/image_thumb%25255B11%25255D.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/09/introduction-to-convirt-console.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUQDRHc-fip7ImA9WhRbFUQ.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-5840787468457009601</id><published>2011-09-02T13:19:00.000+02:00</published><updated>2012-02-07T07:49:35.956+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-02-07T07:49:35.956+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><category scheme="http://www.blogger.com/atom/ns#" term="Security" /><category scheme="http://www.blogger.com/atom/ns#" term="iOS" /><title>Automatically add clan-members on Zynga’s Vampires iPhone game</title><content type="html">&lt;p&gt;&lt;a href="http://lh5.ggpht.com/-9g5Xa5Sredo/TzDCgpkipBI/AAAAAAAAAWI/buOWd8x0wsw/s1600-h/image2.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: right; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" align="right" src="http://lh3.ggpht.com/-7-KMvtLQL9c/TzDChoBgK1I/AAAAAAAAAWM/KCtXmAkjtBU/image_thumb.png?imgmax=800" width="179" height="179" /&gt;&lt;/a&gt;This is a quick hack I’ve done on &lt;a href="http://www.zynga.com/"&gt;Zynga&lt;/a&gt;’s “&lt;a href="http://itunes.apple.com/hk/app/vampires-bloodlust/id316438305?mt=8"&gt;Vampires&lt;/a&gt;” game on the iPhone. One of the parameters of becoming powerful in the game is to have a large clan (friends) in the game. As there is no downside with being clan-member with people outside your normal social sphere (like the loss of privacy) people have published their player IDs on the net in the hope that people will add them.&lt;/p&gt;  &lt;p&gt;The thing is that adding members to your clan is a tedious effort, where you can add a member perhaps every 30 seconds if you are really fast. Still, adding hundreds of members is something that I rather not do manually. Luckily for me I didn’t need to.&lt;/p&gt;  &lt;p&gt;First off I sniffed the traffic between the iPhone and Zynga’s servers while playing the game and especially took note how the “add player to clan” message looked like. It looked something like this:&lt;/p&gt;  &lt;blockquote&gt;&lt;style type="text/css"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;.csharpcode, .csharpcode pre&lt;br /&gt;{&lt;br /&gt;	font-size: small;&lt;br /&gt;	color: black;&lt;br /&gt;	font-family: consolas, "Courier New", courier, monospace;&lt;br /&gt;	background-color: #ffffff;&lt;br /&gt;	/*white-space: pre;*/&lt;br /&gt;}&lt;br /&gt;.csharpcode pre { margin: 0em; }&lt;br /&gt;.csharpcode .rem { color: #008000; }&lt;br /&gt;.csharpcode .kwrd { color: #0000ff; }&lt;br /&gt;.csharpcode .str { color: #006080; }&lt;br /&gt;.csharpcode .op { color: #0000c0; }&lt;br /&gt;.csharpcode .preproc { color: #cc6633; }&lt;br /&gt;.csharpcode .asp { background-color: #ffff00; }&lt;br /&gt;.csharpcode .html { color: #800000; }&lt;br /&gt;.csharpcode .attr { color: #ff0000; }&lt;br /&gt;.csharpcode .alt &lt;br /&gt;{&lt;br /&gt;	background-color: #f4f4f4;&lt;br /&gt;	width: 100%;&lt;br /&gt;	margin: 0em;&lt;br /&gt;}&lt;br /&gt;.csharpcode .lnum { color: #606060; }&lt;/style&gt;    &lt;p&gt;{&lt;span class="str"&gt;&amp;quot;purchase_level&amp;quot;&lt;/span&gt;:0,&lt;span class="str"&gt;&amp;quot;accept_codes&amp;quot;&lt;/span&gt;:[&lt;span class="str"&gt;&amp;quot;PLAYER_TO_ADD&amp;quot;&lt;/span&gt;],&lt;span class="str"&gt;&amp;quot;zid&amp;quot;&lt;/span&gt;:&lt;span class="str"&gt;&amp;quot;8:14103891&amp;quot;&lt;/span&gt;,&lt;span class="str"&gt;&amp;quot;client_version&amp;quot;&lt;/span&gt;:&lt;span class="str"&gt;&amp;quot;1.72&amp;quot;&lt;/span&gt;,&lt;span class="str"&gt;&amp;quot;gids&amp;quot;&lt;/span&gt;:[46],&lt;span class="str"&gt;&amp;quot;data&amp;quot;&lt;/span&gt;:{},&lt;span class="str"&gt;&amp;quot;ipid&amp;quot;&lt;/span&gt;:&lt;span class="str"&gt;&amp;quot;IPHONE_ID&amp;quot;&lt;/span&gt;,&lt;span class="str"&gt;&amp;quot;gid&amp;quot;&lt;/span&gt;:46}&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;The nice thing is that it is not protected against replay attacks, so I can post the same message over and over again with a list of clan members to add.&lt;/p&gt;  &lt;p&gt;So lets get the second piece of the puzzle and grab some player IDs. I grabbed almost 1200 player IDs from &lt;a title="http://mycodelive.com/vampires#ids" href="http://mycodelive.com/vampires#ids"&gt;http://mycodelive.com/vampires#ids&lt;/a&gt; and put them in a text-file called “vampires.txt”. I then wrote a little bash-script around curl that looks like this:&lt;/p&gt;  &lt;blockquote&gt;   &lt;pre&gt;#!/bin/bash&lt;br /&gt;&lt;span class="kwrd"&gt;for&lt;/span&gt; VAMP_ID &lt;span class="kwrd"&gt;in&lt;/span&gt; `cat vampires.txt`&lt;br /&gt;&lt;span class="kwrd"&gt;do&lt;br /&gt;&lt;/span&gt;        POST_DATA1=&lt;span class="str"&gt;'{&amp;quot;purchase_level&amp;quot;:0,&amp;quot;accept_codes&amp;quot;:[&amp;quot;'&lt;/span&gt;&lt;br /&gt;        POST_DATA2=&lt;span class="str"&gt;'&amp;quot;],&amp;quot;zid&amp;quot;:&amp;quot;8:14103891&amp;quot;,&amp;quot;client_version&amp;quot;:&amp;quot;1.72&amp;quot;,&amp;quot;gids&amp;quot;:[46],&amp;quot;data&amp;quot;:{},&amp;quot;ipid&amp;quot;:&amp;quot;IPHONE_ID&amp;quot;,&amp;quot;gid&amp;quot;:46}'&lt;/span&gt;&lt;br /&gt;        POST_DATA=${POST_DATA1}${VAMP_ID}${POST_DATA2}&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; &lt;br /&gt;        curl \&lt;br /&gt;            --user-agent &lt;span class="str"&gt;&amp;quot;Vampires/1.72 CFNetwork/485.13.9 Darwin/11.0.0&amp;quot;&lt;/span&gt; \&lt;br /&gt;            --data-binary ${POST_DATA} \&lt;br /&gt;            http:&lt;span class="rem"&gt;//net.iphone.zynga.com/net/group/accept.php?zsig=A79D802A730CE31B1AC5853615AD87A0&lt;br /&gt;&lt;/span&gt;done&lt;/pre&gt;&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;style type="text/css"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;.csharpcode, .csharpcode pre&lt;br /&gt;{&lt;br /&gt;	font-size: small;&lt;br /&gt;	color: black;&lt;br /&gt;	font-family: consolas, "Courier New", courier, monospace;&lt;br /&gt;	background-color: #ffffff;&lt;br /&gt;	/*white-space: pre;*/&lt;br /&gt;}&lt;br /&gt;.csharpcode pre { margin: 0em; }&lt;br /&gt;.csharpcode .rem { color: #008000; }&lt;br /&gt;.csharpcode .kwrd { color: #0000ff; }&lt;br /&gt;.csharpcode .str { color: #006080; }&lt;br /&gt;.csharpcode .op { color: #0000c0; }&lt;br /&gt;.csharpcode .preproc { color: #cc6633; }&lt;br /&gt;.csharpcode .asp { background-color: #ffff00; }&lt;br /&gt;.csharpcode .html { color: #800000; }&lt;br /&gt;.csharpcode .attr { color: #ff0000; }&lt;br /&gt;.csharpcode .alt &lt;br /&gt;{&lt;br /&gt;	background-color: #f4f4f4;&lt;br /&gt;	width: 100%;&lt;br /&gt;	margin: 0em;&lt;br /&gt;}&lt;br /&gt;.csharpcode .lnum { color: #606060; }&lt;/style&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;You need to replace IPHONE_ID with your iPhone ID (you can grab it by sniffing the traffic just like how I did it).&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;I hope that you will use this successfully and get as large clan as I have now &lt;img style="border-bottom-style: none; border-left-style: none; border-top-style: none; border-right-style: none" class="wlEmoticon wlEmoticon-winkingsmile" alt="Winking smile" src="http://lh6.ggpht.com/-TcuLY9Vyurc/TzDCib9AEKI/AAAAAAAAAWU/9wFSKKD90o4/wlEmoticon-winkingsmile2.png?imgmax=800" /&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;PS:&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;Just to be clear: The player IDs from &lt;a title="http://mycodelive.com/vampires#ids" href="http://mycodelive.com/vampires#ids"&gt;http://mycodelive.com/vampires#ids&lt;/a&gt; are from people who wants to be added to your clan so in their turn get a larger clan for the game (if I add you to my clan I automatically becomes added to your clan as well). The “hack” in this is that I automated the process of adding people to my clan. I am lazy, but in a good way.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-5840787468457009601?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/rrH9Mp5GN2satbisbpu2fS1ubVE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/rrH9Mp5GN2satbisbpu2fS1ubVE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/rrH9Mp5GN2satbisbpu2fS1ubVE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/rrH9Mp5GN2satbisbpu2fS1ubVE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/GBhiDq9pKOo" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/5840787468457009601/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/09/automatically-add-clan-members-on.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5840787468457009601?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5840787468457009601?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/GBhiDq9pKOo/automatically-add-clan-members-on.html" title="Automatically add clan-members on Zynga’s Vampires iPhone game" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh3.ggpht.com/-7-KMvtLQL9c/TzDChoBgK1I/AAAAAAAAAWM/KCtXmAkjtBU/s72-c/image_thumb.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/09/automatically-add-clan-members-on.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkIEQH8-eSp7ImA9WhdXGUg.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-3303307147087628576</id><published>2011-09-02T12:15:00.000+02:00</published><updated>2011-09-02T12:15:01.151+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-02T12:15:01.151+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><category scheme="http://www.blogger.com/atom/ns#" term="Security" /><category scheme="http://www.blogger.com/atom/ns#" term="iOS" /><title>“Cheating” on Zynga’s Vampires game</title><content type="html">&lt;p&gt;I recently blogged on how I “cheated” (a.k.a. automated) on &lt;a href="http://opseclab.blogspot.com/2011/09/automatically-add-clan-members-on.html"&gt;adding members to my clan in Zynga’s Vampire game on the iPhone&lt;/a&gt; over at &lt;a href="http://opseclab.blogspot.com"&gt;Omegapoint Security Lab&lt;/a&gt; blog. Check it out!&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-3303307147087628576?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/xXtnsq-5tuFiQWgO-BX-47Eq-eg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xXtnsq-5tuFiQWgO-BX-47Eq-eg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/xXtnsq-5tuFiQWgO-BX-47Eq-eg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xXtnsq-5tuFiQWgO-BX-47Eq-eg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/WpgYRCS343Y" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/3303307147087628576/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/09/cheating-on-zyngas-vampires-game.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/3303307147087628576?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/3303307147087628576?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/WpgYRCS343Y/cheating-on-zyngas-vampires-game.html" title="“Cheating” on Zynga’s Vampires game" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/09/cheating-on-zyngas-vampires-game.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0IBRns8cSp7ImA9WhdXGEs.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-7058854794571023829</id><published>2011-08-31T22:45:00.000+02:00</published><updated>2011-09-01T09:19:17.579+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-01T09:19:17.579+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><category scheme="http://www.blogger.com/atom/ns#" term="KVM" /><category scheme="http://www.blogger.com/atom/ns#" term="Virtualbox" /><category scheme="http://www.blogger.com/atom/ns#" term="GlusterFS" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux / OSS" /><category scheme="http://www.blogger.com/atom/ns#" term="Ubuntu" /><category scheme="http://www.blogger.com/atom/ns#" term="ConVirt" /><title>Changing VirtualBox to KVM/ConVirt</title><content type="html">&lt;p&gt;As I have mentioned earlier VirtualBox and PHPVirtualBox didn’t work out for me and I have since moved on to KVM (QEMU) and ConVirt - which so far works out pretty well.&lt;/p&gt;  &lt;h3&gt;Uninstalling VirtualBox&lt;/h3&gt;  &lt;p&gt;First one needs to uninstall VirtualBox as it is no longer needed&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo apt-get remove virtualbox-4.1      &lt;br /&gt;$ sudo apt-get autoremove&lt;/p&gt; &lt;/blockquote&gt;  &lt;h3&gt;Installing KVM&lt;/h3&gt;  &lt;p&gt;KVM is very easy to install, even if you didn’t select the virtualization profile when you installed Ubuntu Server. The “magic” command to install KVM is:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo apt-get install qemu-kvm libvirt-bin ubuntu-vm-builder bridge-utils&lt;/p&gt; &lt;/blockquote&gt;  &lt;h3&gt;Installing ConVirt&lt;/h3&gt;  &lt;p&gt;First you need to enable the partner repositories on your Ubuntu installation. Edit /etc/apt/sources.list and uncomment the following lines:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;deb http://archive.canonical.com/ubuntu lucid partner      &lt;br /&gt;deb-src http://archive.canonical.com/ubuntu lucid partner&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Then run the following commands to install ConVirt version 2&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo apt-get update      &lt;br /&gt;$ sudo apt-get install convirt2 convirture-tools       &lt;br /&gt;$ sudo apt-get install ssh kvm socat dnsmasq uml-utilities lvm2 expect&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Install required dependencies for convirt-tool:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo convirt-tool install_dependencies&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;To have a virtual machine connect to a network, bridge setup is required. With virtualization platform installation, depending on the version, you would have either virbr0 or eth0 or br0 setup. You can verify this using the brctl show command. If you do not have any bridge, convirt-tool can set up bridges for each network interface.&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo convirt-tool setup&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Once this is done you can start the ConVirt console:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo /etc/init.d/convirt2 start&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;The web interface can be reached at &lt;a href="http://localhost:8081/"&gt;http://localhost:8081/&lt;/a&gt; or the IP / hostname of your choice.&lt;/p&gt;  &lt;h3&gt;Setting up distributed file system for the virtual system images&lt;/h3&gt;  &lt;p&gt;ConVirt stores the virtual system images in /var/cache/convirt and the images needs to exists on all servers for system migration to work. See a separate blog post why this is a very cool thing.&lt;/p&gt;  &lt;p&gt;Anyway, I already have GlusterFS installed and created a new share very much like the /home share I already have but this time share /export/convirt and mount it on /var/cache/convirt. Once that is done all my 3 systems share the same data and can perform system migration, both live and offline.&lt;/p&gt;  &lt;h3&gt;Converting VirtualBox and VMWare virtual machines to KVM/QEMU&lt;/h3&gt;  &lt;p&gt;If you haven’t noticed VMWare has become the de-facto standard when it comes to virtual machines (of all the virtual systems I have imported only ZeroWine seems to be shipping as a QEMU image). It can be useful to convert the .vmdk file to a .raw (or any other format that KVM/ConVirt supports). This I do using the qemu-img utility:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ qemu-img convert virtualmachine.vmdk -O raw virtualmachine.raw&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Then I create a new virtual machine using ConVirt and replace the created virtual hard disk with the converted one, something in the style of:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;$ sudo cp $HOME/virtualmachine.raw /var/cache/convirt/vm_disks/virtualmachine.disk.xm&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;There is a conversion utility that supposed to solve this, but I didn’t get it to work. Maybe another time…&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-7058854794571023829?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/_G9zWJCmKb2A1dCNMjyPOfxou48/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/_G9zWJCmKb2A1dCNMjyPOfxou48/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/_G9zWJCmKb2A1dCNMjyPOfxou48/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/_G9zWJCmKb2A1dCNMjyPOfxou48/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/eaCn358feiE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/7058854794571023829/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/changing-virtualbox-to-kvmconvirt.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/7058854794571023829?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/7058854794571023829?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/eaCn358feiE/changing-virtualbox-to-kvmconvirt.html" title="Changing VirtualBox to KVM/ConVirt" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/changing-virtualbox-to-kvmconvirt.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0INSXc_cCp7ImA9WhdXGEs.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-7564402638515710617</id><published>2011-08-29T19:23:00.000+02:00</published><updated>2011-09-01T09:19:58.948+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-01T09:19:58.948+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lab" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux / OSS" /><title>Welcome to the Hacklab</title><content type="html">&lt;p&gt;I promised a while ago that I would show you guys how my lab environment at home looks like, and here it is:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-amx31a9YnIw/Tls-bjBJh3I/AAAAAAAAAOk/-rR0R-PjXjg/s1600-h/image%25255B7%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: block; float: none; border-top-width: 0px; border-bottom-width: 0px; margin-left: auto; border-left-width: 0px; margin-right: auto; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-DQJoQhT6dn8/Tls-cHlVy7I/AAAAAAAAAOo/SGfdO5v0TrE/image_thumb%25255B3%25255D.png?imgmax=800" width="583" height="484" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Sniper:&lt;/strong&gt;&lt;/p&gt; model name : Intel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz   &lt;br /&gt;cpu MHz&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; : 2000.000   &lt;br /&gt;cpu cores&amp;#160;&amp;#160;&amp;#160; : 4   &lt;br /&gt;MemTotal:&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; 16467156 kB   &lt;br /&gt;  &lt;p&gt;&lt;strong&gt;Hunter:&lt;/strong&gt;&lt;/p&gt; model name : Dual-Core AMD Opteron(tm) Processor 1214   &lt;br /&gt;cpu MHz&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; : 1000.000   &lt;br /&gt;cpu cores&amp;#160;&amp;#160;&amp;#160; : 2   &lt;br /&gt;MemTotal:&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; 4057096 kB   &lt;br /&gt;  &lt;p&gt;&lt;strong&gt;Scout:&lt;/strong&gt;&lt;/p&gt; model name : Intel(R) Core(TM)2 CPU 6300 @ 1.86GHz   &lt;br /&gt;cpu MHz&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; : 1596.000   &lt;br /&gt;cpu cores&amp;#160;&amp;#160;&amp;#160; : 2   &lt;br /&gt;MemTotal:&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; 2056892 kB   &lt;p&gt;Sniper has 4 NICs (Network Interface Cards), 3 of them currently in use: one to the LAN and 2 to some wireless access points I had laying around. One of the access points uses WPA2 encryption while the other is unencrypted. Connecting to the unencrypted is ill-advised as you are then targeted with SSLStrip, Metasploit, BeEF and other goodies. Don’t steal peoples internet without permission (the access point identifies itself as “Virus distribution network”). I plan to add a splash-screen when people tries to surf for the first time. The other AP (Access Point) is to provide network connectivity to my wireless devices.&lt;/p&gt;  &lt;p&gt;I have removed VirtualBox as the virtualization environment as it didn’t work out for me, and phpvirtualbox kept loosing connectivity with the VirtualBox instances. I tried to run VMWare Server 2.0.2 but it didn’t want to build on my Ubuntu servers - which is actually a good thing as I discovered KVM and ConVirt (see separate blog post on how to get them installed).&lt;/p&gt;  &lt;p&gt;I will blog about each aspect of the Hacklab the next few weeks, including creating (or converting) virtual machines for&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;target practice (on-purpose vulnerable systems for penetration testing testing) &lt;/li&gt;    &lt;li&gt;malware collection &lt;/li&gt;    &lt;li&gt;malware analysis &lt;/li&gt;    &lt;li&gt;TOR network participant &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;among other things. Stay tuned!&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-7564402638515710617?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/lscRweMEvh_z5GklJv1Bn4r4Yg8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lscRweMEvh_z5GklJv1Bn4r4Yg8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/lscRweMEvh_z5GklJv1Bn4r4Yg8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lscRweMEvh_z5GklJv1Bn4r4Yg8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/MsCIb7zRI7E" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/7564402638515710617/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/welcome-to-hacklab.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/7564402638515710617?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/7564402638515710617?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/MsCIb7zRI7E/welcome-to-hacklab.html" title="Welcome to the Hacklab" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh5.ggpht.com/-DQJoQhT6dn8/Tls-cHlVy7I/AAAAAAAAAOo/SGfdO5v0TrE/s72-c/image_thumb%25255B3%25255D.png?imgmax=800" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/welcome-to-hacklab.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkYEQXg4eSp7ImA9WhdQGUQ.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-1424551361348526256</id><published>2011-08-22T07:15:00.000+02:00</published><updated>2011-08-22T07:15:00.631+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-22T07:15:00.631+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Defcon 19" /><title>What I learned from participating in “Crack me if you can” @ Defcon 19</title><content type="html">&lt;p&gt;I (tried) to participate in &lt;a href="https://www.defcon.org/html/defcon-19/dc-19-index.html"&gt;Defcon 19&lt;/a&gt;’s “&lt;a href="https://forum.defcon.org/forumdisplay.php?f=550"&gt;Crack me if you can&lt;/a&gt;” contest with the “&lt;a href="http://contest.korelogic.com/stats_7D47E99A316E29D7.html"&gt;John Users&lt;/a&gt;” group, but I did not manage to contribute much to the team (more then CPU-cycles on my quad-core server). I have analyzed why I couldn’t contribute more and it came down to “time” and “internet access”.&lt;/p&gt;  &lt;p&gt;Time: I went to Defcon to watch the presentations, not to crack hashes (although it is fun to crack hashes). I over-estimated how much time I could spend on cracking hashes while attending the talks.&lt;/p&gt;  &lt;p&gt;Internet access: Free internet access was available at the conference area, if it wasn’t attacked by someone. Internet access at the hotel room was about $25/day, a bit more then I was willing to spend. Next year I’ll buy a &lt;a href="http://www.bestbuy.com/site/Virgin+Mobile+-+MiFi+2200+Mobile+Hotspot/9919286.p?id=1218195439442&amp;amp;skuId=9919286"&gt;MiFi&lt;/a&gt; from Best Buy and a month pre-paid subscription (@ USD$ 50) for my internet needs.&lt;/p&gt;  &lt;p&gt;If I solve the internet access problem I can make more use of the time between the presentations, social activities and sleep at Defcon, which should add up to at lease a few hours every day. As most of the time the computer chugs along cracking hashes anyway it should be enough to take a 30-60 minute look at it a few times a day.&lt;/p&gt;  &lt;p&gt;I hope that Defcon 20 will also have a “Crack me if you can” contest.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-1424551361348526256?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/kvJwi8KYFlzOnIyZGJBpLpz0kJQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/kvJwi8KYFlzOnIyZGJBpLpz0kJQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/kvJwi8KYFlzOnIyZGJBpLpz0kJQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/kvJwi8KYFlzOnIyZGJBpLpz0kJQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/NG8p-UfDleU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/1424551361348526256/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/what-i-learned-from-participating-in.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1424551361348526256?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1424551361348526256?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/NG8p-UfDleU/what-i-learned-from-participating-in.html" title="What I learned from participating in “Crack me if you can” @ Defcon 19" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/what-i-learned-from-participating-in.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8MSHY-eCp7ImA9WhdQGUg.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-6597513558839989423</id><published>2011-08-21T22:18:00.001+02:00</published><updated>2011-08-21T22:18:09.850+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-21T22:18:09.850+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Defcon 19" /><title>Defcon 19 Conference Material</title><content type="html">&lt;p&gt;You can download the slide pack from &lt;a title="http://dl.dropbox.com/u/10217290/Defcon19.zip" href="http://dl.dropbox.com/u/10217290/Defcon19.zip"&gt;http://dl.dropbox.com/u/10217290/Defcon19.zip&lt;/a&gt;. The DVDs with the material had ran out of stock when I got my badge (did get a real titanium badge though).&lt;/p&gt;  &lt;p&gt;Note to Defcon staff: please make sure that all pre-registered, pre-paid (via Black Hat USA conference) attendees gets a complete conference stack. You don’t need to know who we are to get the number of sign-ups from Black hat crew.&lt;/p&gt;  &lt;p&gt;Thanks!&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-6597513558839989423?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/ItwDeMeJJivHaHLLvtQ6tK91Gao/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/ItwDeMeJJivHaHLLvtQ6tK91Gao/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/ItwDeMeJJivHaHLLvtQ6tK91Gao/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/ItwDeMeJJivHaHLLvtQ6tK91Gao/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/bfAmmaMlJWk" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/6597513558839989423/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/defcon-19-conference-material.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/6597513558839989423?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/6597513558839989423?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/bfAmmaMlJWk/defcon-19-conference-material.html" title="Defcon 19 Conference Material" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/defcon-19-conference-material.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEMCRHk9eyp7ImA9WhdQEE0.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-8628569884762721573</id><published>2011-08-10T22:01:00.001+02:00</published><updated>2011-08-10T22:01:05.763+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-10T22:01:05.763+02:00</app:edited><title>Trojan t-shirts</title><content type="html">&lt;p&gt;According to &lt;a href="http://www.bbc.co.uk/news/world-europe-14465150"&gt;BBC&lt;/a&gt; right-wing extremists that attended “Rock für Deutschland” was given free t-shirts with the following print (“Hardcore Rebels”):&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-pCVhIyRolHY/TkLjeOdXsxI/AAAAAAAAAOQ/rMtOEJKGMn0/s1600-h/image%25255B2%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-SepvOXqVeQk/TkLjeka0YwI/AAAAAAAAAOU/44Pg0NYq1TE/image_thumb.png?imgmax=800" width="244" height="228" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;However, when they was washed the hidden message was reviled:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-TyfcFQXTLKs/TkLjfqOla4I/AAAAAAAAAOY/axPi_teooVg/s1600-h/image%25255B5%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh5.ggpht.com/-FQ3HfQE9mj8/TkLjgCX2tII/AAAAAAAAAOc/mCas1HmRIoU/image_thumb%25255B1%25255D.png?imgmax=800" width="244" height="184" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;The new message reads: &amp;quot;What happened to your shirt can happen to you. We can help you break with right-wing extremism&amp;quot;.&lt;/p&gt;  &lt;p&gt;The prank (I’d call it a cool hack) was done by the group &lt;a href="http://www.exit-deutschland.de/"&gt;Exit&lt;/a&gt;, who is trying to help people who has not been totally brain-washed to change their ways and turn their back on neo-Nazism for a more balanced world view.&lt;/p&gt;  &lt;p&gt;Really cool hack, I wonder if it could be used for some sort of prank at next years Defcon?&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-8628569884762721573?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KUzrli5TbaKknRirG3HzrvLfrYY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KUzrli5TbaKknRirG3HzrvLfrYY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KUzrli5TbaKknRirG3HzrvLfrYY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KUzrli5TbaKknRirG3HzrvLfrYY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/u9Xr8XKg_C4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/8628569884762721573/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/trojan-t-shirts.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8628569884762721573?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8628569884762721573?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/u9Xr8XKg_C4/trojan-t-shirts.html" title="Trojan t-shirts" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh5.ggpht.com/-SepvOXqVeQk/TkLjeka0YwI/AAAAAAAAAOU/44Pg0NYq1TE/s72-c/image_thumb.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/trojan-t-shirts.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEIMRX44fyp7ImA9WhdRGUU.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-5949039146495466886</id><published>2011-08-10T16:24:00.001+02:00</published><updated>2011-08-10T16:29:44.037+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-10T16:29:44.037+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Password Security" /><title>XKCD on Password Strength</title><content type="html">&lt;p&gt;The final statement says it all: Through 20 years of effort, we’ve successfully trained everyone to use passwords that are hard for humans to remember, but easy for computers to guess.&lt;/p&gt;  &lt;p&gt;&lt;img src="http://imgs.xkcd.com/comics/password_strength.png" /&gt;&lt;/p&gt;  &lt;p&gt;I am going to print this and put it at the geek corner in the office. XKCD should make a t-shirt of this one…&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-5949039146495466886?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/iEBo0CazOFvgR3IpsByturUeNh8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/iEBo0CazOFvgR3IpsByturUeNh8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/iEBo0CazOFvgR3IpsByturUeNh8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/iEBo0CazOFvgR3IpsByturUeNh8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/XZfyx_soKHk" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/5949039146495466886/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/xkcd-on-password-strength.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5949039146495466886?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5949039146495466886?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/XZfyx_soKHk/xkcd-on-password-strength.html" title="XKCD on Password Strength" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/xkcd-on-password-strength.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEcEQn0-fSp7ImA9WhdRGUU.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-8745508806988365885</id><published>2011-08-10T00:02:00.001+02:00</published><updated>2011-08-10T16:20:03.355+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-10T16:20:03.355+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Defcon 19" /><category scheme="http://www.blogger.com/atom/ns#" term="Blackhat USA 2011" /><title>Swag from Black Hat USA 2011 and Defcon 19</title><content type="html">&lt;p&gt;This post is triggered by &lt;a href="http://twitter.com/fyrtiosju"&gt;@fyrtiosju&lt;/a&gt;’s tweet: &lt;a href="http://twitter.com/mboman"&gt;@mboman&lt;/a&gt; maximizes his baggage allowance with all #DefCon swagger on our way back home to Sweden. See you at DC20! &lt;a href="http://twitpic.com/633b27"&gt;twitpic.com/633b27&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-FQiG9gPj0Eo/TkGtnYUCy-I/AAAAAAAAAK4/hX5JAllVPAg/s1600-h/image%25255B2%25255D.png"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh3.ggpht.com/-2QFPAaN72lQ/TkGtoos3nUI/AAAAAAAAAK8/pb3EYShMjxQ/image_thumb.png?imgmax=800" width="184" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Here are the t-shirts I managed to get my hands on:&lt;/p&gt;  &lt;p&gt;PaulDotCom (Thanks for the t-shirt Paul!). The back says “Hack Naked”, which my colleges found very cool and somewhat disturbing.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-paRjG_2LEF8/TkGtpYjIfAI/AAAAAAAAALA/lgyaT84S6sM/s1600-h/IMG_0480%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0480" border="0" alt="IMG_0480" src="http://lh5.ggpht.com/-HcMXq0Ody80/TkGtqK9Lv1I/AAAAAAAAALE/qe5GRyI2sxA/IMG_0480_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&amp;#160;&lt;a href="http://lh6.ggpht.com/-AXAlA9CDfE0/TkGtrK-syoI/AAAAAAAAALI/xnvp7hKKEJA/s1600-h/IMG_0481%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0481" border="0" alt="IMG_0481" src="http://lh5.ggpht.com/-K1Y2jywxV44/TkGtsNIPIBI/AAAAAAAAALM/YgTfL8Cim5k/IMG_0481_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;HBGary is taking a piss at APT. I like the attitude.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-OdioTVlB00w/TkGttto6akI/AAAAAAAAALQ/HU-QOEZwZ2Q/s1600-h/IMG_0482%25255B6%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0482" border="0" alt="IMG_0482" src="http://lh4.ggpht.com/-cTOR4yb0qlA/TkGtuKLKO7I/AAAAAAAAALU/kq3dB1hFN_8/IMG_0482_thumb%25255B3%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Splunk&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-Dmjg1YEr5eg/TkGtva8fVQI/AAAAAAAAALY/oAN-ZahqYpE/s1600-h/IMG_0483%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0483" border="0" alt="IMG_0483" src="http://lh6.ggpht.com/-C49qP2hKRmI/TkGtv-FJMNI/AAAAAAAAALc/MiW8RQjkFqI/IMG_0483_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh5.ggpht.com/-jQsB7xd2W0A/TkGtxJ3zypI/AAAAAAAAALg/L657KRsgqgU/s1600-h/IMG_0484%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0484" border="0" alt="IMG_0484" src="http://lh6.ggpht.com/-A9L6sFbH9nc/TkGtxtyOm8I/AAAAAAAAALk/forWBQNq0sY/IMG_0484_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Metasploit / Rapid7. Doesn’t look as cool as a Metasploit-inspired t-shirt should. Corporate marketing must have been involved a bit too much.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-6RpQjjIK0_E/TkGty1VwvAI/AAAAAAAAALo/elH_RvAKHYo/s1600-h/IMG_0485%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0485" border="0" alt="IMG_0485" src="http://lh4.ggpht.com/-RUWnbB95iPM/TkGtzVKV7KI/AAAAAAAAALs/psb7fuzjyoU/IMG_0485_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh5.ggpht.com/-7Ux2lkcQbyg/TkGt0qJp24I/AAAAAAAAALw/CwuiUvo8Kcc/s1600-h/IMG_0486%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0486" border="0" alt="IMG_0486" src="http://lh6.ggpht.com/-WReTafy-8HM/TkGt0_BFBQI/AAAAAAAAAL0/SW7iNFipSAY/IMG_0486_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;DefCon 19 has some pretty nice graffiti-inspired print on the back.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/-fny_LMgWPq4/TkGt2HdY0iI/AAAAAAAAAL4/4gBAADGqA8o/s1600-h/IMG_0487%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0487" border="0" alt="IMG_0487" src="http://lh6.ggpht.com/-pKdck5L7Src/TkGt2unOx0I/AAAAAAAAAL8/p4rjbgZopuQ/IMG_0487_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh4.ggpht.com/-wS-lPHsY0ng/TkGt3xLrwwI/AAAAAAAAAMA/dNX9uWZt7QY/s1600-h/IMG_0488%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0488" border="0" alt="IMG_0488" src="http://lh3.ggpht.com/-S_4pMd3M9J8/TkGt4cFo24I/AAAAAAAAAME/Z64t8stMyPQ/IMG_0488_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;…&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-b63aAKlah0c/TkGt5lGnJrI/AAAAAAAAAMI/kaACK1tmapc/s1600-h/IMG_0489%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0489" border="0" alt="IMG_0489" src="http://lh5.ggpht.com/-8Ry8bMIRnms/TkGt6CmrOjI/AAAAAAAAAMM/KMc-yg_SFwc/IMG_0489_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh3.ggpht.com/-9SFhagXp7UI/TkGt7SN0Y6I/AAAAAAAAAMQ/WiqU8RoShrk/s1600-h/IMG_0490%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0490" border="0" alt="IMG_0490" src="http://lh6.ggpht.com/-HoYyuwwSQlY/TkGt7wqx-oI/AAAAAAAAAMU/cYH2eWZc3rc/IMG_0490_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;…&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-IsYLvWmstqc/TkGt89mSJGI/AAAAAAAAAMY/f3s4Ss_2JYo/s1600-h/IMG_0491%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0491" border="0" alt="IMG_0491" src="http://lh3.ggpht.com/-Bt7PVSKNjR4/TkGt9eeEHWI/AAAAAAAAAMc/7VtDF1jjXJ4/IMG_0491_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh6.ggpht.com/-f2UFwxud8Tc/TkGt-UiDwuI/AAAAAAAAAMg/-wMS97Ulz4c/s1600-h/IMG_0492%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0492" border="0" alt="IMG_0492" src="http://lh3.ggpht.com/-BhSkhzIMzUs/TkGt-0Mi1sI/AAAAAAAAAMk/2SLCVWKVS-w/IMG_0492_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;…&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-K_p8Du0IHn0/TkGuAMRNhpI/AAAAAAAAAMo/BRF0X6qrkYI/s1600-h/IMG_0493%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0493" border="0" alt="IMG_0493" src="http://lh3.ggpht.com/-3-eZabWoqAk/TkGuBwTeQJI/AAAAAAAAAMs/TlMGXU5yFxo/IMG_0493_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh3.ggpht.com/-A3z6rzOkmjo/TkGuDxgiLfI/AAAAAAAAAMw/3YWFiRtEfpQ/s1600-h/IMG_0494%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0494" border="0" alt="IMG_0494" src="http://lh5.ggpht.com/-6ss3XtdzaFQ/TkGuETsaF6I/AAAAAAAAAM0/pZ_0Dy_CMHw/IMG_0494_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This one must be my favorite one; not because of the vendor (eEye), but because it has quite a kick-ass lolzsec-inspired message on the back:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-KRKl_KM9PQs/TkGuFqbMOYI/AAAAAAAAAM4/2ex2qlDGoxM/s1600-h/IMG_0495%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0495" border="0" alt="IMG_0495" src="http://lh3.ggpht.com/-EphbYVf9p5U/TkGuGGspyzI/AAAAAAAAANA/YOIGGQDr1hI/IMG_0495_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh6.ggpht.com/-j0S2rEkYpG8/TkGuHQbj5GI/AAAAAAAAANE/bfSBJRbrI6w/s1600-h/IMG_0496%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0496" border="0" alt="IMG_0496" src="http://lh5.ggpht.com/-RoNE9Bho9ao/TkGuHxQU68I/AAAAAAAAANI/SAgapVzR0_I/IMG_0496_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Core Security Technologies has a cool cobra on the back. Really cool, just like last years t-shirt was.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-rbRLxkMjYb4/TkGuJcb0SDI/AAAAAAAAANM/1iiQsHWso-A/s1600-h/IMG_0497%25255B4%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0497" border="0" alt="IMG_0497" src="http://lh4.ggpht.com/-j1aW9oJ9jis/TkGuJ_xnXSI/AAAAAAAAANQ/Y2PK2GSDUIc/IMG_0497_thumb%25255B1%25255D.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh6.ggpht.com/-lJvaHBambC0/TkGuK9y1xWI/AAAAAAAAANU/urndnOOviC4/s1600-h/IMG_0498%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0498" border="0" alt="IMG_0498" src="http://lh3.ggpht.com/-GvRzvABlLiU/TkGuLaqsDuI/AAAAAAAAANY/XOYL-I6JPFQ/IMG_0498_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;…&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-9go32W8D_7k/TkGuNgcMTcI/AAAAAAAAANc/hVK6FwgFX6M/s1600-h/IMG_0500%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0500" border="0" alt="IMG_0500" src="http://lh6.ggpht.com/--AFtDGmrSS8/TkGuONz8u2I/AAAAAAAAANk/UQyqW5lVCx0/IMG_0500_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh4.ggpht.com/-2cv04nX2Gqc/TkGuO-sj8LI/AAAAAAAAANo/w1p-JaA1_gY/s1600-h/IMG_0501%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0501" border="0" alt="IMG_0501" src="http://lh6.ggpht.com/-fjN0eDboLx8/TkGuPZeDiWI/AAAAAAAAANs/Keb3W6iiiiE/IMG_0501_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;…&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh3.ggpht.com/-ZA3PEUXohUE/TkGuQcycgbI/AAAAAAAAANw/XMcfk1LwJDE/s1600-h/IMG_0502%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0502" border="0" alt="IMG_0502" src="http://lh6.ggpht.com/-3X5LtyZJuLY/TkGuQ3GhM0I/AAAAAAAAAN0/SY4WVECmXis/IMG_0502_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh3.ggpht.com/-b6ojqK1ZDoo/TkGuRpSXIaI/AAAAAAAAAN4/o2aiV492Zg0/s1600-h/IMG_0503%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0503" border="0" alt="IMG_0503" src="http://lh3.ggpht.com/-lwSu-b6HIFI/TkGuT7wy8BI/AAAAAAAAAN8/q46-Vtw4Y7A/IMG_0503_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;…&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/-Ss7KDnP9yu8/TkGuU_rPnzI/AAAAAAAAAOA/j_YqNFk4FnY/s1600-h/IMG_0504%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0504" border="0" alt="IMG_0504" src="http://lh4.ggpht.com/-Tp4-qQukb2o/TkGuVZ2FFyI/AAAAAAAAAOE/s-GaIcz4yq0/IMG_0504_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;a href="http://lh4.ggpht.com/-1H_mAVrvtpE/TkGuWg90chI/AAAAAAAAAOI/yjOS0AElNV0/s1600-h/IMG_0505%25255B3%25255D.jpg"&gt;&lt;img style="background-image: none; border-right-width: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="IMG_0505" border="0" alt="IMG_0505" src="http://lh5.ggpht.com/-LFtOmjOXZ60/TkGuXLHHhZI/AAAAAAAAAOM/DuGAXtrWbUw/IMG_0505_thumb.jpg?imgmax=800" width="183" height="244" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Just thought I would share what swag I brought home with me.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-8745508806988365885?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/1CkznWJtTYTqQY-BxCk0fppfwyo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/1CkznWJtTYTqQY-BxCk0fppfwyo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/1CkznWJtTYTqQY-BxCk0fppfwyo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/1CkznWJtTYTqQY-BxCk0fppfwyo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/2lFs2lBo0Ps" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/8745508806988365885/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/swag-from-black-hat-usa-2011-and-defcon.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8745508806988365885?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/8745508806988365885?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/2lFs2lBo0Ps/swag-from-black-hat-usa-2011-and-defcon.html" title="Swag from Black Hat USA 2011 and Defcon 19" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh3.ggpht.com/-2QFPAaN72lQ/TkGtoos3nUI/AAAAAAAAAK8/pb3EYShMjxQ/s72-c/image_thumb.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/swag-from-black-hat-usa-2011-and-defcon.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0YBRH8zfyp7ImA9WhdRF0k.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-7086315487353602171</id><published>2011-08-07T21:25:00.001+02:00</published><updated>2011-08-07T21:25:55.187+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-07T21:25:55.187+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Defcon 19" /><title>DefCon 19: Notes from Saturday</title><content type="html">&lt;p&gt;On day two of DefCon 19 I attended “Battery Firmware Hacking” by Charlie Miller, which was a very good presentation and hack. Charlie discovered how to update the Apple MacBook battery to make it lie about when the battery was manufactured, charge status and how many charge cycles it has done etc. This can be used to make the battery to be within the warranty even if it isn’t. It can also be used to cause a catastrophic failure on the battery and potentially destroy the computer the battery is connected to. Dangerous stuff. I am predicting that easy-to-use tools that change values related to warranty period will soon be made available.&lt;/p&gt;  &lt;p&gt;I then attended the “Hacking Google Chrome OS” talk on how Chrome extensions can be used as an attack vector, possible with persistence. Scary stuff.&lt;/p&gt;  &lt;p&gt;Hackajar went through the economics of password cracking in the GPU area. What you can take away from the talk is that if you don’t value your password (and what it’s protecting) to more then USD$2000 you can continue to use 8 character passwords; for everyone else make sure your password is longer then 8 characters.&lt;/p&gt;  &lt;p&gt;Jason Ostrom talked about how to hack VOIP networks and released a tool for that. I’ll put that on my “to investigate” list.&lt;/p&gt;  &lt;p&gt;Finally Nicole Ozer talked about how far from reality Hollywood is in their movies. Unfortunately it is not that far off, and governments in the western world (both US and EU) is making laws to make the technology legal.&lt;/p&gt;  &lt;p&gt;There was a rumor that LulzSec had a party in the middle of no-where. Acrylic badges was handed out to some people with instructions to dial a certain number after 11pm for the location that was later mapped to an address quite a bit from the Rio hotel. Although we managed to get some badges we decided it was not worth going, and we were discouraged to go by some anonymous feds (anonymous in the way that they don’t want me to disclosed their names). &lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-7086315487353602171?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/CCjCjDeduoCaUBO98ZSFxRXqUw8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CCjCjDeduoCaUBO98ZSFxRXqUw8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/CCjCjDeduoCaUBO98ZSFxRXqUw8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CCjCjDeduoCaUBO98ZSFxRXqUw8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/bBKtV_pFbD4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/7086315487353602171/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/defcon-19-notes-from-saturday.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/7086315487353602171?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/7086315487353602171?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/bBKtV_pFbD4/defcon-19-notes-from-saturday.html" title="DefCon 19: Notes from Saturday" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/defcon-19-notes-from-saturday.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0UNRn86fSp7ImA9WhdRFko.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-4602645048151790128</id><published>2011-08-07T00:54:00.001+02:00</published><updated>2011-08-07T00:54:57.115+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-07T00:54:57.115+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Blackhat USA 2011" /><title>Conference CD from Black Hat USA uploaded</title><content type="html">&lt;p&gt;I have uploaded the contents from the Black Hat USA 2011 CD to &lt;a title="http://dl.dropbox.com/u/10217290/BH-US-2011.zip" href="http://dl.dropbox.com/u/10217290/BH-US-2011.zip"&gt;http://dl.dropbox.com/u/10217290/BH-US-2011.zip&lt;/a&gt;. If you missed the conference then at least you can get (some) of the presentation material now.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-4602645048151790128?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/TDpGIKnOfwXpCRWTktw60hp4bkM/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/TDpGIKnOfwXpCRWTktw60hp4bkM/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/TDpGIKnOfwXpCRWTktw60hp4bkM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/TDpGIKnOfwXpCRWTktw60hp4bkM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/sHOfrnNpOCQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/4602645048151790128/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/conference-cd-from-black-hat-usa.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/4602645048151790128?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/4602645048151790128?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/sHOfrnNpOCQ/conference-cd-from-black-hat-usa.html" title="Conference CD from Black Hat USA uploaded" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/conference-cd-from-black-hat-usa.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEMNSXs4fSp7ImA9WhdRFkg.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-6266199636250841899</id><published>2011-08-05T17:24:00.000+02:00</published><updated>2011-08-06T20:48:18.535+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-06T20:48:18.535+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Defcon 19" /><title>DefCon 19: Notes from the day</title><content type="html">&lt;p&gt;Today we (some of my colleges and myself) changed hotel from Caesars Palace to Rio and DefCon 19. Started the day by listening to Mikko Hypponen (of F-Secure fame) about the history of malware (very educational and entertaining), followed by Moxie Marlinspikes talk about trust in SSL and his new tool &lt;a href="http://convergence.io"&gt;Convergence&lt;/a&gt; (which was released today). Moxie had some cool ideas on how to fix the CA authority problem with SSL, and I will install his tool when I get back home.&lt;/p&gt;  &lt;p&gt;I also attended panel discussions on hacker spaces and vulnerability databases, both of them pretty good.&lt;/p&gt;  &lt;p&gt;I am also participating in this years “Crack me if you can” competition on the “John Users” team. I will (hopefully have time to) do a write-up on it at a later date.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-6266199636250841899?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/gusNBOeKzDcXw4XxK-e5Ww5ivXw/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/gusNBOeKzDcXw4XxK-e5Ww5ivXw/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/gusNBOeKzDcXw4XxK-e5Ww5ivXw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/gusNBOeKzDcXw4XxK-e5Ww5ivXw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/iuNKP6uDaqs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/6266199636250841899/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/defcon-19-notes-from-day.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/6266199636250841899?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/6266199636250841899?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/iuNKP6uDaqs/defcon-19-notes-from-day.html" title="DefCon 19: Notes from the day" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/defcon-19-notes-from-day.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUQESXg9eCp7ImA9WhdRFEU.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-5419947092203762782</id><published>2011-08-04T21:45:00.001+02:00</published><updated>2011-08-04T21:48:28.660+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-04T21:48:28.660+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Blackhat USA 2011" /><title>Black Hat USA 2011: Zero Day Malware Cleaning with the Sysinternals Tools</title><content type="html">&lt;p&gt;Mark Russinovich starts of by mentioning how popular Sysinternals tools are with the anti-malware crowd and that some malware detects if the Sysinternals tools are running on the system and try to terminate them.&lt;/p&gt;  &lt;p&gt;The workshop begins with walking through the features of Process Explorer followed by Process Monitor. I have been using the tools before, but there was a lot of things I haven’t tried out before that turns out to be pretty useful.&lt;/p&gt;  &lt;p&gt;Mark also had plenty of war stories on how Sysinternal tools has been used to locate and remove malware, including one on Stuxnet. Very entertaining and I learned a few new techniques I will apply from now on. &lt;/p&gt;  &lt;p&gt;The PowerPoint slides was not included on the conference CD so I have not been able to upload them. I hope that they will be available soon.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-5419947092203762782?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/04oIDgKFx-c2LT1Ox0y6lCgPF7Q/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/04oIDgKFx-c2LT1Ox0y6lCgPF7Q/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/04oIDgKFx-c2LT1Ox0y6lCgPF7Q/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/04oIDgKFx-c2LT1Ox0y6lCgPF7Q/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/21Nsh-ocmKM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/5419947092203762782/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/black-hat-2011-zero-day-malware.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5419947092203762782?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/5419947092203762782?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/21Nsh-ocmKM/black-hat-2011-zero-day-malware.html" title="Black Hat USA 2011: Zero Day Malware Cleaning with the Sysinternals Tools" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>1</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/black-hat-2011-zero-day-malware.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEMMQXY9eyp7ImA9WhdRFkg.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-1893067817476246987</id><published>2011-08-04T15:38:00.000+02:00</published><updated>2011-08-06T20:48:00.863+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-06T20:48:00.863+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Blackhat USA 2011" /><title>Black Hat USA 2011: Final thoughts</title><content type="html">&lt;p&gt;Black Hat USA 2011 is over for this year. I went to many good presentations but didn’t have time to blog about each of them, however the “Chip and Pin is Dead” was a particular interesting one that I want to look closer in to at a later date.&lt;/p&gt;  &lt;p&gt;Black Hat has (again) inspired me to take a closer look at many different things, so I need to put them in some sort of list and get started.&lt;/p&gt;  &lt;p&gt;Last night we went out to party: first we went to the Netwitness party at the Jet night club and then we moved to Qualys’ party at The Bank. Qualys party was the better one of them, but it didn’t match up to their party last year. Qualys: please bring back the live band for next year.&lt;/p&gt;  &lt;p&gt;I will continue to blog from DefCon 19. Ta ta for now…&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-1893067817476246987?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/QYPn53O0O5Wn96FhE9KUG0mpZOk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/QYPn53O0O5Wn96FhE9KUG0mpZOk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/QYPn53O0O5Wn96FhE9KUG0mpZOk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/QYPn53O0O5Wn96FhE9KUG0mpZOk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/-m5nv-CJ5Lc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/1893067817476246987/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/black-hat-usa-2011-final-thoughts.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1893067817476246987?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/1893067817476246987?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/-m5nv-CJ5Lc/black-hat-usa-2011-final-thoughts.html" title="Black Hat USA 2011: Final thoughts" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/black-hat-usa-2011-final-thoughts.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0cCQHs5eSp7ImA9WhdRFE0.&quot;"><id>tag:blogger.com,1999:blog-3343693239455968046.post-267330435498071011</id><published>2011-08-04T00:04:00.001+02:00</published><updated>2011-08-04T00:04:21.521+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-04T00:04:21.521+02:00</app:edited><title>Black Hat USA 2011 - The Art of Exploiting Lesser Known Injection Flaws</title><content type="html">&lt;p&gt;This workshop was an interactive experience where we, the participants, got to hack some servers. The target machine for the first challenge was running LAMP (&lt;strong&gt;L&lt;/strong&gt;inux, &lt;strong&gt;A&lt;/strong&gt;pache, &lt;strong&gt;M&lt;/strong&gt;ySQL and &lt;strong&gt;P&lt;/strong&gt;HP), which is not my everyday target environment and I didn’t realize why I couldn’t crack the first challenge in time.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh5.ggpht.com/-5aOkR1rKMYM/TjnF21AUJ0I/AAAAAAAAAKg/oeKmVaL_NaU/s1600-h/image%25255B3%25255D.png"&gt;&lt;img style="background-image: none; border-bottom: 0px; border-left: 0px; padding-left: 0px; padding-right: 0px; display: inline; border-top: 0px; border-right: 0px; padding-top: 0px" title="image" border="0" alt="image" src="http://lh4.ggpht.com/-0q2XnMMhOg0/TjnF4p9wOHI/AAAAAAAAAKk/mJ_yPDp6LPA/image_thumb%25255B1%25255D.png?imgmax=800" width="428" height="169" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;The workshop was haunted by technical problems, the software used was Windows only without any mentions in the material that a Windows machine is required for participate on some of the labs. I also got the feeling that the presenters was poorly prepared, and combined with the technical problems I lost interest and left after the first break.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3343693239455968046-267330435498071011?l=blog.michaelboman.org' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/lNFHi7aEu8aO28HKNcUWSuYga80/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lNFHi7aEu8aO28HKNcUWSuYga80/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/lNFHi7aEu8aO28HKNcUWSuYga80/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lNFHi7aEu8aO28HKNcUWSuYga80/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/michaelboman/ttmb/~4/4B_2F7laJV8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://blog.michaelboman.org/feeds/267330435498071011/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://blog.michaelboman.org/2011/08/black-hat-usa-2011-art-of-exploiting.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/267330435498071011?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3343693239455968046/posts/default/267330435498071011?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/michaelboman/ttmb/~3/4B_2F7laJV8/black-hat-usa-2011-art-of-exploiting.html" title="Black Hat USA 2011 - The Art of Exploiting Lesser Known Injection Flaws" /><author><name>Michael Boman</name><uri>http://www.blogger.com/profile/11401103751625555325</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="http://1.bp.blogspot.com/_JINOKv354Xc/TKlcoLV1gtI/AAAAAAAAAAM/7ihX4KT53mc/S220/avatar+face.png" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh4.ggpht.com/-0q2XnMMhOg0/TjnF4p9wOHI/AAAAAAAAAKk/mJ_yPDp6LPA/s72-c/image_thumb%25255B1%25255D.png?imgmax=800" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://blog.michaelboman.org/2011/08/black-hat-usa-2011-art-of-exploiting.html</feedburner:origLink></entry></feed>

