I want to start by saying that this document is not new. It’s floated around the internet for awhile, but it’s still very, very relevant. It discusses various different wireless threats (802.11, Bluetooth, et. al) and some easily executed exploits to attack these protocols. I think anyone who reads my blog is already very, very [...]
Archive for the ‘social engineering’ Category
Wireless Threats and Practical Exploits
Posted: 11th August 2010 by Matt in hacks, security, social engineeringTags: attack, Bluetooth, car, device, exploit, Garmin, GPS, headset, home, Nuvi, penetration, phone, pin, range, social engineering, threat, wireless
Windows ‘LNK’ Exploit Demonstration
Posted: 20th July 2010 by Matt in hacks, news, security, social engineeringTags: automated, browser, Command, exploit, LNK, metasploit, Microsoft, msf, msfconsole, network security audit, payload, remote, shell, Stuxnet, Temphid, URIPATH, victim, VirusBlokAda, vulnerable, W32.Stuxnet, W32.Temphid, Windows, wireless
Ok, so with all the hype surrounding this vulnerability, I figured that I would do a write up and give an example of how it works. Metasploit, as usual, makes it really simple. I really consider this to be a social engineering attack, because you need the victim to access a share. Yes, in the [...]
Top 10 Ways To Protect Yourself Online
Posted: 1st July 2010 by Matt in hacks, security, social engineeringTags: address phone number, AntiVirus, exploits, facebook, firefox, firewall, hackers, human nature, identity theft, infection, linkedin, Linux, myspace, privacy settings, risk, security, social engineering, social networking, spyware, spyware malware, SSID, virus, virus software, vulnerability, webcam, WEP, Windows, Women, wpa
Never thought I’d be writing a “Top 10″ list, but I get asked this question often enough that I figured I’d just list off a few ways that people can better protect themselves from hackers, identity theft, and the random mayhem that takes place on the internet. I’m going to try to order it according [...]
Social Security Number Format
Posted: 29th June 2010 by Matt in hacks, security, social engineeringTags: Area, birth, cross reference, first three digits, mississippi, new hampshire, north dakota, order, region, rhode island, social security number, south carolina, south dakota, SSA, SSN, state, vermont, west virginia, wyoming
I’m doing more research than writing today, but I wanted to share this as it seems most people don’t really understand how a social security number works or what you can identify by knowing someones number and I haven’t come across much that discusses this topic, so! First, for those of you who live under [...]
Convincing End Users That Black is White
Posted: 23rd June 2010 by Matt in hacks, security, social engineeringTags: 0day, Changer, computer code, convincing, example, exe, file, icon, malicious computer, malware, mp3, packer, sexual exploitation, shell, software, song, spyware, stubs, trojan
If you read my post “Spyware, Hacking, & Sexual Exploitation and read the story about Luis Mijangos, you probably read over the part in the article at the OC Register where it says: …where Mijangos used peer-to-peer networks to infect computers around the world with malicious computer code. Mijangos induced victims to download the malware [...]
Life of a Computer Hacker Revealed. A Blast From the Past.
Posted: 23rd June 2010 by Matt in hacks, news, security, social engineeringTags: adrian lamo, bomb, chase, computer hacker, conference, fbi, feds, fugitive game, jonathan littman, kevin mitnick, Markoff, phone, phreak, phreaking, takedown, the well, tsutomu shimomura, war
I realize these are somewhat old, but I just came across them again and thought that they’d be worth sharing. It’s a series of YouTube videos of Kevin Mitnick doing a speech at a conference. If you don’t know who Kevin Mitnick is (really??), he was arguably the person who put hacking on the map. [...]
Spyware, Hacking, & Sexual Exploitation
Posted: 23rd June 2010 by Matt in hacks, news, security, social engineeringTags: bill gates, boyfriend, extortion, facebook, felony offense, harvesting, humiliate, humiliation, identity, identity theft cases, invasion of privacy, malware, mijangos, money, myspace, personal, power, predator, private, security, sex, spyware, stalking, steal, theft, toy, video voyeurism, virus
A Santa Ana man was arrested Tuesday after authorities say he hacked into dozens of computers and demanded sexually explicit videos from female victims in exchange for keeping their personal information private. Luis Mijangos, 31, was arrested without incident at his home by special agents with the Federal Bureau of Investigation. He is charged with [...]
Reduce your bills through the use of Social Engineering.
Posted: 21st June 2010 by Matt in hacks, social engineeringTags: cable services, digital cable, economy plan, employees, engineering, exploit, hack, hacking, money, monopoly, nickled and dimed, owned, personal, save, save money, social
Notice that I didn’t say “free” in the title. Very rarely can you get free services from, say, your cable provider, your internet provider, etc. But, you can get them greatly reduced using some really simple techniques that I will talk about here. Also, I would love to hear from you on some techniques, tricks, [...]