Happy Fourth of July

It’s the fourth of July which means it’s a holiday and thus I’m not going to be posting any updates today. Go out and enjoy yourselves and remember to be careful, you don’t want to lose any digits.

A New Take on an Old Favorite

What would modernize the ancient act of the elderly whoopin’ those youngin’s with a cane? As Every Day, No Days Off points out you electrifying the cane of course! Meet the child of Mr. Taser and Mrs. Cane. It’s inventions like this that make me look forward to getting old.

Posers Gonna’ Pose

You know what’s almost adorable? Wanna be “l33t hax0rz.” These are the kids who have either just downloaded Cain and Able and think they’re hot shit or somebody who just found out what Wireshark is. Usually you can identify these punks by talking to them for five seconds… they’re the ones that will tell you how they can “hax0rz ur netwurkz.” Spotting them on IRC is made even easier because they’ll usually ask for your IP address so they can “hax ur azz.” Two things become apparent when talking to these people; they don’t know what the Hell they’re talking about and they can’t spell. I actually find the former more annoying than the latter to be honest.

Sometimes I find these people amusing enough to post about them. I’m sure you’ve deducted that this is one of those times. Via a good joke thread going around I found this little gem of an article about one of these “hax0rz.”. Although the information in this article is technically correct it’s shrouded in such a thick fog of bullshit I couldn’t help but laugh. The premise here is the author has decided to show how “l33t” he is by sneaking into an apartment building and listening to traffic on an open Wi-Fi network. I’m mostly going to be making fun of his delivery of information here. Shall we begin (yes I’ve been drinking beer and feel like being a total prick, why do you ask?):

Wearing pyjama pants and an ironic t-shirt, I headed towards a large apartment building near where I live. I choose it because a lot of students live there and I could easily blend in. That and I knew there would be lots of targets.

Yes camouflage is required to sneak into an apartment. When doing tactical entries into apartment complexes sometimes it’s just not convenient to wear your tactical entry vest. Usually when I’m on one of these black ops I disguise myself in a button-down shirt, pants, and a good pair of boots. You know what? I blend right the fuck in with everybody else who wears regular looking clothes. I’m such a bad ass.

I used to be a door to door salesman, so I know a few unique ways to get into a building, but I didn’t need them. As I walked up to the door, someone else was leaving. They held the door open for me and I was in. As soon as I entered, I noticed a video camera. What I planned to do would look weird on camera and I didn’t want security on my butt, so I was more careful from there onwards.

Wait… this guy used to be a door to door salesman and thus knows tricks to get into buildings? Personally I know a thing or two about getting into buildings as well. Of course I’m not a complete dumb ass and know the best way to gain entry into a building is to just wait for somebody to let you in. You’ll not Al Capone here used that “trick.” It’s pretty damned difficult to stand outside and act like you forgot your key.

How about that camera? I know being on a laptop sure looks suspicious this day and age. Every time I’m on my laptop in a public area I get hassled by all sorts of security personnel. Wait… scratch that, I never get hassled by security because nobody sees somebody on a laptop as weird this day an age. Well I take that back, they do if you act suspicious by trying to avoid cameras. That’s why the best trick when entering a building is to walk in like you own the place. Don’t give anybody watching any cameras a reason to be suspicious such as keeping your head low when you see a camera:

When I finally made it to my floor a camera greeted me. I ducked my head low and walked over to the staircase. If security was watching me, I didn’t want them knowing where I was.

Dumb ass.

After dropping down a few floors and switching to the other staircase I decided to do my dirty work on the 18th floor. The building was huge and it would take hours for them to search the entire thing. I opened up my laptop and lo and behold, there were eight insecure networks. I picked one at random and hit the mother-load.

Remember kids if you’re going to be an elite “hax0rz” you need to avoid cameras but then post exactly where you were in the building online. That way nobody can find out that the weird guy who entered or left floor 18 is the guy who wasn’t supposed to be there. Of course being an apartment I don’t think anybody gives two shits.

The program you see those IP’s in is called Ettercap. It’s no longer in development and I don’t want to go over everything it does, lets just say it makes it so I can steal usernames and passwords among other things. All I had to do was install the program and run it.

Ettercap is so elite and secret that “hax0rz” can’t talk about it.

I then opened a program called WireShark (you can see it in the second screenshot). Using this program I can easily see the websites these four people were browsing. As you can see this person is browsing IMDb. And in the next screenshot the person is… err…

OH MY GOD! WIRESHARK! IT’S SO FUCKING L33T! In fact it’s so fucking “l33t” that I use it almost every day at work. Wireshark is a packet analyzer. What the fuck is a packet analyzer you ask? Nothing fancy. It captures traffic going across a network and saves it for analysis. Wireshark has a million and one uses (for instance I use it to debug network applications I’m developing). Basically you can view all unencrypted data that goes across a network meaning if somebody on your network is using HTTPS you’re shit out of luck.

So I’m sure you’re asking why I wasted my time ridiculing this kid. The answer is simple… I’ve been drinking which means I’m a bigger asshole at the moment than usual (hard to believe isn’t it?). Additionally “hax0r” kiddies irritate me. They prey on peoples’ ignorance of computers to make themselves look more intelligent.

What the kid said in this article is technically correct. If can turn on my laptop, sniff an open wireless access point, and obtain any unencrypted traffic going across said network. I just don’t try to make myself look like a bad ass doing it. I also don’t do it on networks that I don’t own or have permission from the owner. The proper way to demonstrate this fact would have been to setup a private open network, generate traffic on it, and demonstrate the fact you can obtain the traffic from it via another computer by simply listening.

I always find it funny how the script kiddies (a person who doesn’t actually know about security flaws but instead utilizes automated tools and pretends they’re a bad ass) are the most boastful punks. Most people with actual knowledge of security issue will explain it to you in such a way that it doesn’t make it seem like they’re trying to be an elite bad ass operator. I’m sure this kid thought he was hot shit once he realized that you can actually see peoples’ network traffic via a packet analyzer.

Honestly I’d be embarrassed if I posted some drivel such as that article on my web site. Hell I’m almost embarrassed just linking to it. Let me redeem myself by recommending the awesome beer that inspired this post.

I guess that’s all I have to say about this “l33t hax0rz.” Just remember kids, always herp before you derp.

Hell I’ll Do That for Free

Random Nuclear Strikes has another post showing how incompetence of our government when it comes to money management. It seems our government paid $92.86 to destroy a single firearm. The kick in the teeth is the fact that they paid to have 1.4 million firearms destroyed.

I have a proposition for our government. Should you come across another 1.4 million guns you no longer want (or more, or less) I’m offering my services to take them off of your hand for free. That’s right instead of having to waste $92.86 dollars per gun to dispose of them you can give me the firearms at no cost to you. It’s simple, it’s easy, and best of all it’s free! I’ll also ensure the firearms I do not want find good homes (don’t worry I’ll ensure background checks are completed and everything). Yup that’s right I’m going to be green on this and recycle those arms that I do not want.

So donate today to Christopher Burg’s Home for Wayward Guns.

Your Daily Dose of Irony

It appears IBM slipped up a little bit:

Delegates to AusCERT, Australia’s premier information security event held this week on the Gold Coast, have taken home a little of the stuff they spent the week agonising over – a virus.

In an email this afternoon, IBM advised visitors to its AusCERT booth that its complimentary USB key was infected with a virus. An IBM spokesman and conference organisers confirmed the email was genuine.

There has to be an award for distributing a virus at a security conference.

Welcome to 2010

Welcome everybody to the new year. It is now officially 2010 in the central time zone.

And no I’m not on WordPress making a post instead of drinking and partying. I’m just not that thoughtful. I scheduled this post so it would make it appear as though I were that thoughtful. Either way here is to the new year.

The Nobel Peace Prize Lost All Credibility… Again

OK let’s set the way back machine to 1895. In this year through the will of an industrialist named Alfred Nobel the Nobel peace prize was established. The award according to the late Mr. Nobel’s will would got to:

to the person who shall have done the most or the best work for fraternity between nations, for the abolition or reduction of standing armies and for the holding and promotion of peace congresses.

Of course this prize lost all legitimacy in 2007 when Al Gore won it due to his scam known as global warming (oops sorry I forgot it’s a record cold year this year so it’s now called climate change). Well the prize that is supposed to be handed out to those that work to bring peace has been awarded to the Obamessiah.

Yup that’s right less than one year in his first term and accomplishing nothing to further peace Obama is the recipient of the 2009 Nobel Peace Prize. It seems strange that a man who promised to pull us out of Iraq and Afghanistan and has done nothing to further either sentiment won a prize for the person who did the most to promote peace.

You have to love this quote:

Asked why the prize had been awarded to Mr Obama less than a year after he took office, Nobel Committee head Thorbjoern Jagland said: “It was because we would like to support what he is trying to achieve”.

Well in that case I believe I should win the 2010 award since I’m promoting the idea of pulling our troops out of every foreign country and therefore ending a lot of wars. Come on guys do you want to support me and what I’m trying to achieve?

Seriously the award is supposed to be given out to “to the person who shall have done the most or the best work.” See the important clause there “have done” implying the person actually did something. The wording doesn’t state “shall do” or “shall possibly maybe consider” or even “shall make a promise and make no effort to keep it.”

Yeah I’m sorry I’m a little bitter. Not because a person I don’t like won the award but because the person who won it has done NOTHING to further the progress of peace.

Using 1984 as a Blueprint by “Protecting the Children”

If there was every a story to use my “1984 was a Warning not a Blueprint” tag it’s this one found on John C. Dvorak’s site. Everybody’s favorite fascist state, Oceania the United Kingdom, is at it again and this time in the name of everybody’s favorite excuse, protecting the children.

Oceania has setup a new program where they put “problem” families into a “sin bin.” This excerpt is directly from the article:

The Children’s Secretary set out £400million plans to put 20,000 problem families under 24-hour CCTV super-vision in their own homes.

They will be monitored to ensure that children attend school, go to bed on time and eat proper meals.

Private security guards will also be sent round to carry out home checks, while parents will be given help to combat drug and alcohol addiction.

Yes these “problem” families, all 20,000 of them, will not be under 24 hour surveillance by their government and have their homes invaded checked out by the Party private security guards. This is of course being done to protect the children as all invasive government programs generally are.

Just imagine the scope of this for a second. You will have 20,000 homes under 24 hour government surveillance. If that isn’t a page ripped straight from 1984 I don’t know what is. Now I’m going to extend off of this and bring up the fact that government likes to use power to obtain more power. It certainly wouldn’t take much to put more families into this “sin bin.” Why almost anything can be considered bad for children.

For instance talking badly about the government could be seen as a method of scaring your kids and frightened kids need to be protected. Not properly sorting your recyclables (current an topic of government crackdown) could be seen as destroying the environment and would impact negatively against your children in the future. Not preparing government approved meals could be seen as acting against the health of your child. The list goes on as you can make almost anything work against the welfare of children.

I think it’s well overdue time for the citizens of Oceania to rise up and take back their liberties. Oh wait never mind the government already confiscated their guns making armed resistance very difficult.

I hate subjects like this because it makes me out to be a conspiracy theorist but honestly when a government does something as blatant as place CCTV cameras not just on the streets but also in peoples’ homes you have to be at least a wee bit worried.

