Archive for July, 2005

5 years, 1 month ago

Michael Lynn’s BlackHat 2005 Cisco talk

Hey people turns out the Michael Lynn Cisco exploit talk from this years 2005 Black Hat are available online via two different websites. It is unknown how long these links will work what with lawyers, Slashdot, and the FBI being involved. Worth reading, make sure you get in the know here:

http://cryptome.org/lynn-cisco.zip

http://cryptome.org.nyud.net:8090/lynn-cisco.zip

Get the PDF while it’s still hot!

5 years, 1 month ago

Xprobe2 update is out

The popular active OS fingerprinting tool used in Nessus, Xprobe2 has released a new update today with significantly updated OS fingerprints in its database for:

- FreeBSD 5.3; 5.2.1; 5.2; 4.10; 4.9
- Linux Kernel 2.6.9; 2.6.8; 2.6.7; 2.6.6; 2.6.5; 2.6.4; 2.6.3; 2.6.2; 2.6.1; 2.6.0
- Linux Kernel 2.4.28; 2.4.27; 2.4.26; 2.4.25; 2.4.24; 2.4.23; 2.4.22
- Microsoft Windows XP SP2
- NetBSD 2.0; 1.6.2
- OpenBSD 3.6; 3.5; 3.4
- Sun Solaris 10

Plus port scanning! And bugfixes!

5 years, 1 month ago

Commenting on my posts…

Just a quick note to anyone who is reading this via my LiveJournal dspisak or my MySpace account doctorwho. My real location of my blog where I write all of these posts is this blog here and as such I would rather people put comments on the main blog and not on LJ or MySpace since I only have my blogging software cross-post to those places for the meantime while I train people to start coming to my new permanent blog addresss. Thanks folks!

5 years, 1 month ago

New NMAP version….

Fydor released a new version of the popular Nmap security scanner software today at DEFCON 13. Look for his updated presentation and new codebase to come online later today at http://www.insecure.org/presentations/Defcon13/. This new version adds ARP scanning capabilities along while a whole other host of new useful capabilities. Worth checking out!

5 years, 1 month ago

Note to self….

Get photo releases from people at DEFCON or blur out peoples faces before posting online. Silly 4th Amendment!

5 years, 1 month ago

Cisco censorship at Black Hat

As seen at Tom’s Hardware

Yesterday, Michael Lynn, a computer security expert, demonstrated an attack against Cisco routers to a packed audience at the annual Black Hat conference in Las Vegas. Today we learned that Cisco and Lynn’s former employer, Internet Security Solutions, have responded by filing a restraining order and removing his presentation material from the conference CD.
With the news of the Cisco IOS vulnerability hitting the Internet, attendees at Black Hat were able to pick up a CD with PDFs of all the talks. Cisco employees Mike Caudill and Richard Aceves handed out the CDs. Every presentation was on the disc except for one: Michael Lynn’s.

Attendees immediately saw that these CDs were different from the traditional attendee CDs. In previous years, the CD was colored black and red. In sharp contrast, as you can see from the photo, these CDs look much different and appear to be recently burned.

Looking through the CD, we saw all the updated talks listed in alphabetical order, but Michael Lynn’s talk was missing. According to sources, the original CD with Lynn’s presentation will be published on the Internet.

Rumors continued to spread about an escalating battle bewtween Lynn, ISS and Cisco. However, we were not able to confirm these speculations, which included potential plans of Cisco to file additional legal action hitting Lynn with a copyright violation suit for reverse engineering of the Cisco operating system.

————–

Dan here…so from what I am hearing from people at DEFCON here today not all the cds with the original presentation and notes were confiscated and some may be showing up in places online shortly. More information as I get it.

5 years, 1 month ago

Find cellphone towers with Google Maps

The guys over at Mobiledia have this awesome Google Maps hack that will show cellphone towers overlaid on Google Maps data. Very slick, plus they also have a comments database tied to the search so you can see what people are saying in your area about service quality with what carrier and phone you have. Check it out!

5 years, 1 month ago

Apple rolls out updated iBook & Mini

Apple today released updates to the iBook and Mac Mini Lines. Basically in a nutshell:

12.1″ iBook
1.33GHz G4
512MB DDR SDRAM
40GB HD
Combo CD-Rom/CD-RW/DVD-ROM
32MB Radeon 9550 Video
$999

14″ iBook
1.42GHz G4
512MB DDR SDRAM
60GB HD
SuperDrive
32MB Radeon 9550 Video
$1299

Mac Mini
1.25GHz PowerPC G4
512MB DDR333 SDRAM
ATI Radeon 9200 32MB DDR video memory
40GB Ultra ATA hard drive
Combo drive (DVD/CD-RW)
Optional AirPort Extreme and Bluetooth
Built-in 56k Internal Modem
$499

1.42GHz PowerPC G4
512MB DDR333 SDRAM
ATI Radeon 9200
32MB DDR video memory
80GB Ultra ATA hard drive
Combo drive (DVD/CD-RW)
DVI or VGA video output
Built-in AirPort Extreme and Bluetooth
Optional 56k Internal Modem
$599

1.42GHz PowerPC G4
512MB DDR333 SDRAM
ATI Radeon 9200
32MB DDR video memory
80GB Ultra ATA hard drive
SuperDrive (DVD±RW/CD-RW)
DVI or VGA video output
Built-in AirPort Extreme and Bluetooth
Optional 56k Internal Modem
$699

So in a nutshell a somewhat better videocard for the iBooks along with bumped up processor speeds slightly and a reduction in cost of the high end iBook. The Mac mini basically becomes slightly cheaper and a better deal at the mid-range point.

Now if we can just get a PowerBook update between now and MWSF I think we will see something actually exciting then.

5 years, 1 month ago

Om Malik’s Broadband Blog » Apple will do a video iPod

So over at Om Malik’s blog Om Malik’s Broadband Blog » Apple will do a video iPod we have been discussing the likelyhood of a video iPod and what that means. Of course the post was recently discovered by Slashdot and has nearly tripled in size but I wanted to address some of the concerns Paul Sloan of Business 2.0 brought up along with some of the other Slashdot commenters.

First of all, yes it points to Apple doing something that they are in talks with Iger. But as I pointed out, just having rights from say Disney and its owned partners is but only a slice of the total video content pie worth getting users access too.

With regards to the size/form factor of the device I realize a few have brought up the docking concept could apply here quite well. However, why even bother with making it an ultra-portable device when instead you could say make it the size of a Mac Mini and make it stackable! Certainly a CE version of a video iPod done this way would be much easier to come up with a cheaper to manufacture device with far greater options for high capacity storage. Everyone I think has sort of forgotten that the reason the iPod works so well is a combination of factors:

1. Audio in MP3 and other compressed formats only requires few to multi megabytes per song or album. This is a number that lends itself to being able to load all or most of a single track into memory do the iPod HD can spin down. This translates directly into increased power savings.

2. Video is not simple like audio is. In audio you’ve got MP3, WMA, AAC, MP3 Pro, Real Audio, and Ogg codecs. With video you have far more codecs to worry about supporting if you want to be viewed as progressive. You’ve got DivX (which version?), Xvid, MPEG-4, WMV9, WMV10, WMV8, Sorenson, MPEG-1, MPEG-2, AVI, MOV, etc. Plus the issue that some of these formats are merely virtualised container standards that could be any variety of video codec. This is a support nightmare for putting into firmware, not to mention issues of licensing rights to use certain codecs.

3. Playing back video requires real CPU power depending on the format or how you are going to play the video back. Think about it this way. If the video iPod is going to be a portable device that hooks into a dock for playback on a real TV set, etc then you are going to want to store video on it encoded for a resolution meant for playback on your TV set. However this now creates a playback problem while on the go because it means you have to scale on the fly your resolution down to your tiny screen. So do you encode your videos for your video iPods resolution or do you do it for your TVs intended resolution? What about HDTV?

4. Video playback requires a constant stream of data to be processed and if video clips are of any length longer such that they don’t fit into a RAM buffer you are going to have significantly decreased battery life as well as hard drive liftetime due to more time spent spinning to playback the video thus translating into more care needing to be taken cared of because the hard drive is spinning more often while the device might be in motion in your hand or body thus presenting more shock trauma potentially.

Hopefully this clears up some of the statements I made in my comment there.

5 years, 1 month ago

Hello technology!

With this post I should now be able to post journal entires now on LiveJournal as well as MySpace through my new blog running on WordPress 1.5.1.3. Check it out the software at http://wordpress.org/ This now also posts to my MySpace account as well after some debugging but its not exactly 100% working yet as deleteing my two test posts accidentally deleted the last two blog entries on my MySpace. No big loss there however.

5 years, 1 month ago

For my friends going to or at Comic Con this week

Surge of Power plays at Comic-Con International Film Festival

July 15, 2005, Friday at 7:45PM
ROOM 26AB

(new portion of the Convention Center, on the top floor, above HALL H, at the SOUTH END of the building)

Surge of Power cast, crew and the superhero, Surge, himself, will be appearing July 14-17, 2005 at Comic-Con. Come join us at our Exhibitor Table at the end of Aisle 1000 in front of Concession Stand “B”!

Executive Producer, Writer, Star and Costume Designer, Vincent J. Roth will speak on the panel at the “GAYS IN COMICS: INFINITE PRIDE” seminar at Comic-Con on Saturday, July 16, 2005, from 5:30-7:00pm in Room 6A (Mixer to follow from 7-8pm). See you there!

—————————————

Now WHY is Dan bringing this up you ask?

Because I worked on this film as the 2nd Assistant Director, and it was a fun movie to make and it has like 972364792364 cameos from actors many of you geeks and whatnot will recognize. So go see the silly movie I helped make! And, no, no heterosexuals were harmed in the making of this movie.

Oh, if you are curious the site for the movie lives here:

http://www.surgeofpower.org/

5 years, 1 month ago

This is some funny stuff….

Check it out…from:

http://alienlovespredator.com/index.php?id=114

ALP Strip

5 years, 2 months ago

Hey, look at what I did for the 4th!

So I promised some associates I’d help out videotaping their massive 800 round fireworks show up in Ventura. From what they told me 12 inch mortars where the big ones and 8 inch mortars were the “small” mortars. It was all launched off of a barge about 2000 feet off the coast at Faria Beach on PCH (3209 W. PCH, Ventura, CA if you want to look it up). Here are some highlights from the show and a rough cut of the video we took encoded in Windows Media 9:

Faria Beach 2005 July 4th Fireworks Show (80MB WMV9 video)




About the Author

Daniel Spisak

Daniel Spisak was born from the fiery depths of fusion and now roams the pale blue dot known as Earth. I obtained my bachelors degree in Computer Science from UC Irvine at the end of 2007.

I am also involved in technology & security consulting firms as well as being a freelance technology writer. I also contribute to Jerry Pournelle's website and Chaos Manor Reviews. Additionally I am also a freelance photographer as well and you can find my photos either on my own personal gallery or up at my Flickr account or on Zivity.

This blog is one of the main locations where I do my writing, which is then automatically sent to my LiveJournal, VOX, and MySpace accounts. I can also be found on a variety of social networking and microblogging sites like Pownce, Twitter, Brightkite, Facebook, and LinkedIn.

If your viewing this site with Internet Explorer it may not look correct because IE is horrible about following W3C web standards properly or consistently. I suggest you try browsing the Internet with Firefox. It is much better and not as vulnerable to security flaws as IE can be.

My Current Qik Video

Daniel Spisak's Flickr