Archive for the ‘Security’ Category

How to go round the no fly list

Christopher Soghoian set up a site that allowed you to print your own boarding passes, exploiting a big hole in US domestic flight security, which allows anyone to board domestic flights without showing IDs if they allready have a boarding pass.

Read the rest of this entry »

Vista woes

Vista is upsetting everyone, with rumours that you can’t turn off the starting sound or have access to the kernel etc. but now it’s getting quite serious. First, Patchguard has been compormised by Authentium prompting a backlash from Redmond stating that companies have no business even trying to compromise the kernel protection because it makes [...]

Read the rest of this entry »

Security Engineering

This book was reccomended by Bruce Schneier and is now downloadable for free.

Read the rest of this entry »

DIY Cryptbook

Use Linux to create a cryptographically protected laptop. Cheap and easy.

Read the rest of this entry »

An oblique attack on DRM

In an interesting new vector, now it’s the libraries that are attacking DRM – on the grounds that as libraries they are exempted from these DRM laws as it’s their job to provide anyone who wants it with content. Also, as copyright expires legally, so does the legality of the DRM – but will the [...]

Read the rest of this entry »

Fake your fingerprints

Easy to do and takes, what, 5 hours on a free sunday afternoon?

Read the rest of this entry »

Read and retransmit proximity cards

DIY way to go do it

Read the rest of this entry »

How to crack WEP

Well, we all knew wifi is unsafe – here’s how to make it unsafe for yourself using 2 laptops with wifi cards. Script kiddies eat your heart out. And this is part 2

Read the rest of this entry »

BluejackQ

There’s a page dedicated to hijacking your mobile phone via Bluetooth. Appropriately enough, it’s called BluejackQ. Linkie: http://www.bluejackq.com/index.shtml

Read the rest of this entry »

Windows 2003 and XP vulnerable to LAND DoS attack

LAND attack: Sending TCP packet with SYN flag set, source and destination IP address and source and destination port as of destination machine, results in 15-30 seconds DoS condition. Which is funny. The last time the LAND attack was seen was about 8 years ago. It’s a trivial remote DoS and you’d think that even [...]

Read the rest of this entry »

PaX: One bug and they roll over and die, how lame is that?

http://msgs.securepoint.com/cgi-bin/get/bugtraq0503/73.html

Read the rest of this entry »