Planning…. maybe =)

Am sitting at work going through a few notes from the security side o things..  I am actually thinking about starting a spoof acc on social networks/sites and see how many people are gullable :)  Just to get a feeling for the stuff that can be learned not aiming at anyone special, but just do it to collect info. Prolly will make a small summary over it here later, but if yer felling nosey, just … Continue reading

Spidering @ LinkedIn (funny or handy?)

I joined LinkedIn a few months ago based on a notion from a mate that linkedin was kindof like facebook without the crap :) (I do not use FB at all) Well for starters it is a serious source of information regarding my work related interests and a good way of connecting back to old workmates and customers. I lagged around not doing much there for a while just looking into the ”groups” and reading … Continue reading

DefCon 20 Social Engineering CTF

Ett kommande event på DefCon 20, det är heller inte den första gången :) Så det nedanstående är en ”kass översättning” efter översättningen kan det komma en eller annan fundering ;) The Original Article http://www.social-engineer.org/defcon-sponsorship/ —-Snipe—- Social-Engineer.Org Team meddelar att de kommer att  hålla Social Engineering CTF och Social Engineering CTF för barn igen på Defcon 20. Vi söker fortfarande företag som vill bli sponsorer av ett eller av båda våra evenemang. EventetVårt Social-Engineering CTF är inte ett traditionell Capture the Flag Event. I denna är CTFlaggorna oskyldiga bitar av information som vi ber de tävlande att få. Hur? Varje deltagare tilldelas ett målföretag. De tävlande får två veckor … Continue reading

Codesigning in PKI

After some time working with PKI, one runs into the fun world of codesigning as a feature. Security, PKI, codesigning and lots of other words would fit as keywords :) This article is just a ”brain dump” of what has come up (in my head) this far. I won´t bet on that I will not change my opinion but… Hey this is a personal blog :) Summary of the handeling (internally in a org) of Code … Continue reading

Linux is safe? Linux security?

Linux is a safe system…….. When talking about IT security often people mention that Linux security is the highest/best one ;) Yeah it is, most of the time. Some bugs do at time pop up. This one is a ”old” one but probably alot of systems do still run the exploitable versions :) rofl I got this from a colleague after some Linux / patching discussions. ———————————————————————- Phenoelit Advisory <wir-haben-auch-mal-was-gefunden #0815 +–++> [ Authors ] … Continue reading

Weekly Updates 2012-01-30

On a train again, a good day with a few new things ;-) going back home now # Yet another morning at a trainstation hehe well counting on the meetings to be good tho ;-) # Hmm cyberwar… http://t.co/WJp1kRNp via @ria_novosti # So, it is once again Friday! Yay…. just 2 days to monday and the luxury to get back at work again :) # Good reading, or maybe not good but…. still informative >:) … Continue reading

Weekly Updates 2012-01-23

Uhoh ;-) too many beers … Again :-) ahh well customers are happy though :-P # So back working onsite again, it is kinda phun ;) missed the scada people and their way of doing it all :) and there´s alot of things to do # Uh hu! So back on the SCADA track fer a shortie :-) but it is for sure both phun and amazing O:-) # Old but still is a good … Continue reading

Publik Key Infrastructure

Some stuff about PKI PKI or Public Key Infrastructure is a strange thing. Or rather it is a somewhat hard to grasp issue. Most of this will be about PKI in a Microsoft environment but the basics are applicable on PKI as a concept. CA or Certificate Authority is the supplier of certificates, the structure is somewhat like DNS with the TLD at the top and subordinates in a chain, though with PKI it is … Continue reading

Weekly Updates 2012-01-16

Eric is really good at writing! ;) SCADA Mischief Episode 1: A Picture is Worth a Thousand Worms http://t.co/FhonS7Oo via @SecurityWeek # Nicely done :). – http://t.co/agalYkmA Though BT is still my fav ;) # Hmmz hockey is phun as long as "your" team plays good :-) go RödVitt! # hehe, nicely made article :) http://t.co/GFyyJhem # Nice one ;) (@YouTube http://t.co/mRJ5FaA0) # http://t.co/38JRyd4q is the linkage # yet another vunerability list, with scada/ics too … Continue reading

Weekly Updates 2012-01-02

Fun reading =) http://t.co/L4cpA3il # reading while having time off between xmas and newyears http://t.co/ruKQjpTc # Late hehe but can be fun.. CHMag ClubHACK Magazine's Issue 23 (December) released |: http://t.co/JLTIW0DV # Powered by Twitter Tools

PKI Jargong (Svenska)

ADCS: Active Directory Certificate Service Asymmetrisk kryptering: (kryptering och dekryptering med två olika nycklar) Den ena nyckeln används för kryptering, den andra för dekryptering. Nyckeln som används för kryptering är allmänt tillgänglig (öppen nyckel), men nyckeln som används för dekryptering hålls hemlig (privat nyckel). Asymmetrisk kryptering är förutsättningen för nästan all krypterad kommunikation på internet, till exempel banktjänster och andra betalningar. Fördelen, jämfört med den äldre typen av kryptering, symmetrisk kryptering, är att parterna inte … Continue reading

Weekly Updates 2011-12-19

Seems m$ could be making a good one this time :-) tho win7works for me hehe # strange to be talking func and feat in a prev of an os :-D but i guess ppl gotta make money ;-) no shadow on the ones holding the deep dive # Boring, on a train on my way to stockholm, might be worth the effort tho if win8 is kewl. But.. :-P # NewPost: Kul nyheter. http://t.co/HdqOu… … Continue reading