Your hackers yearning to build and break things.
Geekdom is moving us to the Rand Building. It is pretty much right kiddie-corner to the Weston. You can still use the Weston garage for the free parking. Next meeting will be the first at the new location.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters. Learn more about bidirectional Unicode characters Show hidden characters extern crate getopts; extern crate redis; extern crate time; use redis::RedisResult; use redis::Value as […]
Thank you to the CSA group at UTSA for asking me to come and present. Here is a PDF of the slide deck SMT.
DJ Manilla Ice got himself in da newz overseas for pwn2own. Drop him a line to say congrats: Youtube: http://goo.gl/txQZPL (Japanese)
We had presentations from vesh, brownbear/ivorywolf, and les (from lescon). Vesh did an example of the SEH-All-At-Once attack using SMT to create the necessary malicious SEH struct. Les did a les-son on translating from C to assembly, and the pointer garbage that goes along with it. BrownIvoryBearWolf did an examination of spam email headers. Also, […]
We had a pretty good line up this time. Steven gave us a preview of his submission to Schmoocon. Dave pointed out some command injection using various stock Perl modules in Linux. vesh gave a talk on the mystery of the urlmon call “FileBearsMarkOfTheWeb” and the safety of using the WinHTTP and Wininet libraries in […]
So we were interviewed for a segment about password security. I think they missed the point a bit, but media will be media. The real crime was cutting out scriptjunkie’s cutting remarks about password futility, and pointing out that robbing me of my logbook is a good idea since it’s on me AT ALL TIMES. […]
One of SAHA!’s own was featured in an article in the UK Register. Check it out here: http://www.theregister.co.uk/2014/09/12/phone_scammer_slammer/
As pointed out in https://twitter.com/grsecurity/status/508354758940581888, there is some new fun in overwriting running executables in the upcoming Ubuntu release. It’s a kernel thing, so other distros are affected, but I’m going with the old standby Ubuntu. (thank you, sadbox for the inotify stuff) I’m just going to post findings, because they mostly speak for themselves. […]
scriptjunkie presented a 0 day in a popular piece of software sam S. presented on a linux variant for Mimikatz vesh presented on process injection brownbear showed off his raspi wap platform
