Tag Archives: infosec

RSAC 2017: Rob Graham on Mirai and IoT Botnets

UPDATED WITH SLIDES (03/15/17)

rob-graham

“Mirai and IoT Botnet Analysis” MP3 AUDIO FILE

RSAC2017-Mirai-OPENINGSLIDE

“Mirai and IoT Botnet Analysis” SLIDES – PDF FILE

At this year’s RSA security conference in San Francisco, researcher Rob Graham gave a presentation entitled “Mirai and IoT Botnet Analysis.” His talk examined the infamous “Mirai” Internet of Things botnet and shared details on how it operates. Graham also covered technical aspects of the cameras it infects and detailed his own experimentation with Mirai in the wild. He went on to discuss last year’s massive DDoS attacks on DNS provider Dyn, which involved variations of the Mirai IoT botnet.

No official AV video recording of this talk, but the audio and RSAC slides are all you need.

Enjoy!

Also, check out Rob’s blog!

-Vince

Follow me on Twitter!

Tagged , , , , , , , , , , ,

PODCAST: Twitter, Snowden and Privacy

pardon-snowden-screen-shot-1

This episode breaks down last week’s online Q & A between Twitter CEO Jack Dorsey and infamous NSA whistle blower Edward Snowden on Periscope. The event, promoted by the organizers of the campaign Pardon Snowden, featured a lengthy discussion on privacy and the role of social media in sharing user data with law enforcement and intelligence agencies.

jacob-young-twitter-avi-1

Jacob Young – who submitted a question to Snowden and had it answered, sorta.

The event also included questions from Twitter users. Jacob Young, a software engineer and privacy advocate, was one of the lucky users who submitted a question and had it answered by Snowden during the event. Jacob joins the podcast to give his reaction to Snowden’s answer to his question and also shares his thoughts on mass surveillance, privacy and more.

If you are curious about the Snowden Q&A in question and want to view the event in it’s entirety, here’s a link to the Periscope video: https://www.periscope.tv/w/1vOxwgnXeYLxB

subscribe to podcast on

1-logo-itunesstitcher-logo

PODCAST MP3 DIRECT DOWNLOAD

Tagged , , , , , , , , ,

RSA Security Thunderdome Debate

As the glory of 2016 rolls to an end, I plan to empty my archive of some unreleased recordings which never made it on to any podcasts over the past year.

rsa-2016

I’m starting with this recording from the RSA Conference earlier this year in San Francisco, CA. It features Jen Ellis of Rapid7 moderating a “Security Thunderdome” debate between Rob Graham (Errata Security) and Josh Corman (Atlantic Council). It’s basically a debate about debating. A very spirited breakdown of the anatomy of a debate with a focus on cyber security.

The audio quality isn’t the best, but good enough to follow along. If you listen closely you’ll hear me ask a question from the audience toward the end. Big thanks to RSA, Jen, Rob, and Josh for allowing me to record the session. I hope this “Thunderdome Debate” format will return next year to RSA and possibly expand to at least another hour. Enjoy!

DIRECT DOWNLOAD OF MP3

 

 

 

Tagged , , , , , , , , ,

PODCAST: Jon Nichols

WVUsoldier1

Jon Nichols

Jon aka “@wvualphasoldier” is a security researcher, consultant, policy advisor and former US military PSYOP soldier. He served on and off the battlefield in Iraq and Afghanistan. We discuss the recent Shadow Brokers auctioning of computer network exploits which are alleged to have been stolen from NSA linked security firm, Equation Group.

TOPICS INCLUDE: Shadow Brokers, Equation Group, NSA, PSYOP, atmospherics, military intelligence, deception operations, propaganda, patriot hackers, The Jester, ISIS, Junaid Hussain (aka TriCk), Edward Snowden, Zipa Dux, insider threat vs. outside attacker theories, attribution, @thegrugq, Takashi Shimura, Rashomon and more!

DIRECT MP3 DOWNLOAD

SUBSCRIBE ON iTUNES

Tagged , , , , , , , , , , , , , , , , , , , , , ,

PODCAST: Reuben Paul & Mano Paul

vitb_podcast_yeti_logo1

iTunes_black1<VITB Podcast – Episode Four – Reuben Paul and Mano Paul (on iTunes)/>iTunes_black1

soundcloud1<ALSO AVAILABLE ON SOUNDCLOUD/>soundcloud1

Guests: Reuben Paul and Mano Paul

Reuben_Mano_Paul_edit

Mano ‘dash4rk’ Paul is a security researcher and author. He is co-founder of Hackformers, a non-profit Christian hacker collective based in Austin, TX. His son Reuben ‘RAPst4r’ Paul attends the Harmony School of Science, in Austin. Reuben was once voted America’s most beautiful baby and he is also the youngest person to achieve a black belt in Shaolin-Do Kung Fu, at the age of 7 years old. Reuben is also the CEO of Prudent Games and co-founder, with his dad, of the non-profit educational platform Cyber Shaolin. Cyber Shaolin aims to promote and improve the awareness and education of cyber security and technology to kids and adults.

Below is a “Hashing” video by Reuben Paul, one of several educational videos offered for free on the Cyber Shaolin “Lessons” page.

NOTE: This interview was conducted prior to Reuben’s speaking appearance at the GroundZero Summit in India. Here is a recording of the talk he references on the podcast:

Also, here’s a video of Mano conducting an interview with Hector Xavier Monsegur (past VITB podcast guest) at the GroundZero Summit.

Tagged , , , , ,

PODCAST: Hector Xavier Monsegur

VITB_Podcast_yeti_logo1_ep2_hxm

iTunes_black1<VITB Podcast – Episode Two:  Hector Xavier Monsegur (on iTunes)/>iTunes_black1

soundcloud1<ALSO AVAILABLE ON SOUNDCLOUD/>soundcloud1

Guest: Hector Xavier Monsegur

Hector_AVI

Four years ago HECTOR XAVIER MONSEGUR, an Anonymous computer hacker better know by the online pseudonym “Sabu”, pleaded guilty in a U.S. District Court to 12-counts of computer hacking and other crimes. A conviction that was kept secret from the public.

At the time, many activists, supporters and participants involved with Anonymous were unaware that months prior Mr. Monsegur had agreed to cooperate with the FBI who were investigating the criminal activity of hackers operating within the Anonymous collective.

Mr. Monsegur became public enemy number one by Anonymous once it was revealed he had cooperated with law enforcement as they located and arrested Anonymous hackers. Most notably, the arrest of a hacker known online as “Anarchaos” and later unmasked as Mr. Jeremy Hammond.

Tagged , , , , , , , ,

PODCAST: DEF CON 23 RECAP

VITB_Podcast_yeti_logo_EP1

iTunes_black1<VITB Podcast – Episode One: DefCon 23 Recap (on iTunes)/>iTunes_black1

soundcloud1<ALSO AVAILABLE ON SOUNDCLOUD/>soundcloud1

Guests: Rob Graham, Dennis Maldonado, Flanvel, Mike Ryan and Richo Healey.

dc-23-header

DEF CON 23 badges were playable vinyl records.

DC23_badge

Rubbed elbows and ate burgers with hackers at the Toxic BBQ.

DC23_toxic_bbq

Whiskey Pirate Party: booze, belly dancers, 30 year old computers, and booze.

DC23_WhiskeyPirateParty

One of the old machines drunk hackers were playing with at the Whiskey Pirate Party.

DC23_OldMachine_pirateparty1

Past DefCon posters and a working PacBell pay phone at a party.

20150807_010018

Key cards printed with DefCon’s noir theme were part of the Badge Challenge.

20150807_010759

party rock’n on the 26th floor at Bally’s.

DC23_YTcracker

“Licensed To Pwn” panel discussion on . Dave Aitel gave a great presentation!

DC23_Wassanar_panel

& ‘s “Remote Exploitation Of Unaltered Passenger Vehicle.”

DC23_charlie_car_talk

talk “New Attacks And Tools To Wirelessly Steal Cars.” Check out his slides!

DC23_Samy_talks

“Ham Sammich” talk with  & presenting.

DC23_Rob_talks

For funzies, I picked up the new LAN Turtle from the booth.

DC23_LAN_turtle

Had the pleasure of meeting at . Ultra nice dude.

DC23_VITB_Krebs

The infamous at DEF CON 23.

WATCH DENNIS MALDONADO‘S DEFCON 23 TALK

Tagged , , , ,
%d bloggers like this: