Time for an upgrade! Grab the sources and the patch here and there.
Time for an upgrade! Grab the sources and the patch here and there.
It's a nice idea in an preliminar stage, I've written a patch against the current svn release (r31 at the time of writing) which adds some extra functionality like the ability to run OpenVAS instead of nessus or the ability to load your preferred Metasploit Framework db plugin. I've also fixed some glitches while I was at it and added a bigger jerikorc.
So, go grab a copy of both the project and my patch and give the framework a spin: it surely is something intersting to play with!

Via DNA - Mauro Biani, vignette, comics, satira
La notizia sta qui, intanto ci si dimentica degli altri eventi.
Lo spiega l'Osservatore Romano, presentando la nuova legge della Santa Sede sulle fonti del Diritto, gia' firmata da Benedetto XVI, e che entrera' in vigore il primo gennaio 2009."
Significa che da gennaio possiamo esportare anche a loro un po di pace e democrazia a suon di bombe?
Raise hand who actually want sweaters or socks or ties for christmas or the birthday, sometimes I feel that every Linux nerd has been built with the same presets of ideas :D
Speaking of presents: my girlfriend gave me a cool iPod radio remote control for this holiday, no more tampering with the jacket in these cold mornings just to change a song, huzzah!
via Macchianera
"The patches greatly broaden hardware support of the XNU kernel, allowing it to run on Pentium M, Pentium 4, Turion 64, Athlon 64 and Phenom. Like the XNU kernel itself, the patches are released under the Apple Public Source License (APSL), which makes them suitable for inclusion in Darwin-based distributions like the one the PureDarwin project is working on."
I'm greatly tempted to try it out on the EeePC :)
me: "ah si
cioè, dai, non era sulla tipa biotta
era con la tipa biotta"
c: "beh com'è come non è ha battuto tutti i record di click"
me: "internet is for porn
internet is for porn
grab your dick and double click
for porn porn porn"
Sheeesh! Almost a month without updating the journal, that's because I'm trapped inside the addictive world of soup.io :)
However, what am I doing?
I've just bought this book and I'm reading it while commuting to work, It's well written and easy to read.
It takes the reader into the world of understanding of web applications work, how you can handle them and how you can exploit their weaknesses. It starts from scratch, from describing what a web application is, the HTTP protocol on which they rely upon and how you can take all of this elements on your side while analyzing your target. And it then moves on mapping the application behavior for finding weak spots how to exploit them.
It's a must read, even if you're only vaguely interested in the field.
From the svn log:
r16269@catbus: nickm | 2007-10-29 15:41:16 -0400
Apply linux-tor-prio.sh patch from Marco B by way of Mike.
One year and not knowing it: I'm too lame! Especially because it was even announced in the ChangeLog: http://archives.seul.org/or/talk/Nov-20
Well, thanks to Mike Perry for taking the patch into account! All of you: go grab a copy of Tor and try it out with the super-duper priorization script!
By the way, speaking of Tor: I'll be again at SMAU eAcademy this year, talking about the common exploitation techniques used against Tor, see http://smau.it/event/eventview/1118/1/0,0/p
Hope to see you there!
"Worm.Win32.AutoRun.nox has a payload that restores the original function pointers back to the kernel's System Service Table (SST). The usual motivation for malware to do this is to remove any SST hooks installed by security software or other malware that might affect its successful operation.
As noted, normally a special driver or the physical memory device is used to get access to kernel-mode memory to restore the pointers. AutoRun.nox is different — it uses "GDI Local Elevation of Privilege Vulnerability (CVE-2006-5758)" to do the job. For malware, its rather unique to see such a technique being used."
Actually, backpatching existing software with an old, vulnerable, version is not that new. It's nice to see this kind of exploit in the wild, though, and good luck to any anti-virus vendor which now has not only to check if a patch is installed, but also if corresponding files are correct :D
Thanks my friend!
A Back Track 3 lzm to enhance EeePC 700/701 support, enjoy :)
(ehi, ce, would you mind borrow me a nice css? :-P )
I've taken my second talk today, not bad except:
1) It was TOO hot and sunny
2) My audience was re-routed by a couple of hot young chicks giving free samples od red bull and cola :-/ THAT'S NOT FAIR!!!
Anyway, I'm enjoying my time a lot here :)
This talk wasn't scheduled: he's just doing it now because the guy who should bring the talk about hacking satellite tv went missing :-/
However I'menjoying it a lot, the wifi signal is crappy, the weather is hot and pasword are being sniffed :-/ too bad that the vpn sometimes doesn't correctly setup the gateway.
I've just finished preparing the stuff for moca, I'll pack the last things and I'll crash straight to bed.
See you there!
This time I'll held two talks at MOCA 2008, I hope to see you there!
(Not to mention that the organization put me first in the list instead of following the chronological order, I'm feeling a little under pressure :-p )
Your result for The Steampunk Style Test...
The Gadgeteer
18% Elegant, 52% Technological, 3% Historical, 52% Adventurous and 51% Playful!

You are the Gadgeteer, the embodiment of steampunk technology. Ironically, many of the things that most define your style are probably too large to easily carry about, but given the opportunity you would prefer to be seen surrounded by boiler engines, gear-driven calculators, and incredible automata. Of all the steampunk fashion styles, you place the greatest emphasis on technological accessories, and you are the most likely to create elaborate gadgets that are as much a part of your outfit as your clothes. You probably have goggles, but unlike most people you consider them to be for more than decoration. Whereas most people might look odd carrying a satchel of tools around, for you they may well be essential. Above all, you remind everyone that what sets the genre apart from Victoriana is simply the level of technology.
Try our other Steampunk test here.



