SlideShare a Scribd company logo
1 of 14
Download to read offline
Introduction
  Roelof Temmingh ..blah blah..
  Google if you are really interested.
  Sometimes I wish people could cut the BS
from their talks and get straight to the point
  So...let’s try
  3 talks
  45 minutes
  ZaCon exclusive...;)
Talk 1 – things I wanted Andrew
to do in his free time, which he
did not*
  Ideas I had that *might* have merit, but that
needs more thinkering and tinkering.
  The hope is to inspire and encourage.
  Explore on your own!
* ...because he built a webcam with his Arduino board
Talk 1.1 – Automated social
engineering  Mail thread injection
From: Pieter Parnas (pieterp@absa.co.za) <pieterp@absa.co.za>
To: Oubaas Pretorius (oubaasp@absa.co.za) <oubaasp@absa.co.za>
CC: Benny Bruckwurm (bennyb@absa.co.za)<bennieb@absa.co.za>, Karel Kroukamp
(karelk@absa.co.za) <karelk@absa.co.za>, Danie Dempsey (danied@absa.co.za)
<danied@bsa.co.za>, Teuns Toerien (teunst@absa.co.za) <teunst@absa.co.za>
Subject: Re: Performance reviews sheets
  Please make sure that you email your quarterly
  performance reviews to me before the end of this
  week.
Oubaas – Adele is just calculating the bonuses and then mine will be ready.
Regards,
Pieter
  Many mail clients don’t show <>s
  Most peolpe don’t see tehm aywnay
  Wait and catch the replies..
  Trick is timing and providing context
Talk 1.1 – Automated social
engineering
  Check out Derren Brown’s NLP techniques
  Hacking the mind really
  Apply it online...
  Test your online personal security website
  Complete our survey and we will mail you a report!
  How many different ATMs do you use in a month?
  Which of the following social networks do you use?
  Do you use I.M.?
  Do you have a credit card?
  Test your password strength here
○  Timing considerations...
Talk 1.2 – Scan the entire
Internet
  For every IP on the Internet determine:
  Open ports
  Services
○  If web, WebTech
  Traceroute to it
  Reverse DNS
  Whois per network
  Optimize, optimize (this is the fun stuff)
  Is it real? (unicast, multicast / private)
  Is it routed?
  Blocking together (AS, routed etc.)
  Portscan - async
  Traceroute – async, with hop count in the body
Talk 1.2 – Scan the Internet
  But why is this interesting at all?
  Better geo location tracking
  Consider traceroute:
○  Japan Japan Japan Japan US – I don’t think so
  Triangulation anyone?
○  Eish... it aint easy
  Instant list of vulnerable servers
  Read open ports, reverse DNS, services from
dB
  Profit!
  Reverse whois on netblocks
  It was done before – in 1999. Caused kak...
Talk 1.3 – Storing data in a
pipe  Super secret stuff ... we all have it...
  Don’t want to store on file, or physical print
  Even encrypted
  Store it INSIDE the inter tubes
  Difference between latency and bandwidth
  Latency: length of the pipe
  Bandwidth: Thickness of the pipe
  We want – high bandwidth, high latency
  Like a satellite link
  300 ms delay
  0.33s x 4Mbit/s = 1.32Mbit of space inside the pipe...
Talk 1.3 – Storing data in a
pipe
  Think of ICMP ping
  Just in one way
  ... Gets sent to another agent
  ... Somewhere – to another agent
  Agent discovery etc..
  Retrieving the message
  ‘client’ sends retrieval message for message ID
  Probably not time critical
  Needs some more thought!
Talk 1.4 – Start your own
business
  Resolving social network membership
  Scraping means maintaining
  Mechanize and Soup and friends
  Need some balls – against TOU
  Gap in the market
  Real time
  Friends
  Clients! Profit!
  $1K – $7.5K per month
Talk 2 – things Andrew actually
did at work
  Made really good tea..
  Andrew makes a wicked cup of tea
  Worked on shit hot stuff:
  Facebook + NER + other Maltego magic = win!
  TDS – allowing everyone else to write funky
transforms
Facebook + NER + Maltego
CMS detection etc + TDS +
Maltego
TDS – Transform Distribution Server
Look at website, right hand side:
“Your data, your Maltego”
  Yeah right...I suspect I’ll be out of
time...
  Speak to me outside/coffee/lunch
Questions?

More Related Content

Viewers also liked

2010 za con_daniel_cuthbert
2010 za con_daniel_cuthbert2010 za con_daniel_cuthbert
2010 za con_daniel_cuthbertJohan Klerk
 
4 pliego reclamo 2015
4 pliego reclamo 20154 pliego reclamo 2015
4 pliego reclamo 2015Paola Aliaga
 
Anexo a demanda impugnacion laudo sunat comprimido
Anexo a demanda impugnacion laudo sunat   comprimidoAnexo a demanda impugnacion laudo sunat   comprimido
Anexo a demanda impugnacion laudo sunat comprimidoPaola Aliaga
 
2010 za con_jameel_haffejee
2010 za con_jameel_haffejee2010 za con_jameel_haffejee
2010 za con_jameel_haffejeeJohan Klerk
 
2010 za con_ivan_burke
2010 za con_ivan_burke2010 za con_ivan_burke
2010 za con_ivan_burkeJohan Klerk
 
2010 za con_barry_irwin
2010 za con_barry_irwin2010 za con_barry_irwin
2010 za con_barry_irwinJohan Klerk
 
2010 za con_stephen_kreusch
2010 za con_stephen_kreusch2010 za con_stephen_kreusch
2010 za con_stephen_kreuschJohan Klerk
 
Training management
Training managementTraining management
Training managementMezbah Uddin
 

Viewers also liked (8)

2010 za con_daniel_cuthbert
2010 za con_daniel_cuthbert2010 za con_daniel_cuthbert
2010 za con_daniel_cuthbert
 
4 pliego reclamo 2015
4 pliego reclamo 20154 pliego reclamo 2015
4 pliego reclamo 2015
 
Anexo a demanda impugnacion laudo sunat comprimido
Anexo a demanda impugnacion laudo sunat   comprimidoAnexo a demanda impugnacion laudo sunat   comprimido
Anexo a demanda impugnacion laudo sunat comprimido
 
2010 za con_jameel_haffejee
2010 za con_jameel_haffejee2010 za con_jameel_haffejee
2010 za con_jameel_haffejee
 
2010 za con_ivan_burke
2010 za con_ivan_burke2010 za con_ivan_burke
2010 za con_ivan_burke
 
2010 za con_barry_irwin
2010 za con_barry_irwin2010 za con_barry_irwin
2010 za con_barry_irwin
 
2010 za con_stephen_kreusch
2010 za con_stephen_kreusch2010 za con_stephen_kreusch
2010 za con_stephen_kreusch
 
Training management
Training managementTraining management
Training management
 

Similar to 2010 za con_roelof_temmingh

I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...
I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...
I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...John Fink
 
Fuzz Testing-Atul Khot
Fuzz Testing-Atul KhotFuzz Testing-Atul Khot
Fuzz Testing-Atul Khotbhumika2108
 
Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...
Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...
Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...Loadzen
 
The Internet Gets Real
The Internet Gets RealThe Internet Gets Real
The Internet Gets RealSteve Winton
 
Workshop 1 coic 101 moc 2021
Workshop 1 coic 101 moc 2021Workshop 1 coic 101 moc 2021
Workshop 1 coic 101 moc 2021Marisabel Neuman
 
Roelof Temmingh FIRST07 slides
Roelof Temmingh FIRST07 slidesRoelof Temmingh FIRST07 slides
Roelof Temmingh FIRST07 slidesLeon Kuunders
 
Power of the internet PART 3
Power of the internet PART 3Power of the internet PART 3
Power of the internet PART 3ianpoblete13
 
IoT Printer (2012)
IoT Printer (2012)IoT Printer (2012)
IoT Printer (2012)lazyatom
 
FFMEET: running a non-profit conference system
FFMEET: running a non-profit conference systemFFMEET: running a non-profit conference system
FFMEET: running a non-profit conference systemAnnika Wickert
 
Dmk blackops2006 ccc
Dmk blackops2006 cccDmk blackops2006 ccc
Dmk blackops2006 cccDan Kaminsky
 
Embedded Systems PPt.pptx
Embedded Systems PPt.pptxEmbedded Systems PPt.pptx
Embedded Systems PPt.pptxTabrezahmed39
 
Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...
Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...
Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...Alessandro Confetti
 
Jingle: Cutting Edge VoIP
Jingle: Cutting Edge VoIPJingle: Cutting Edge VoIP
Jingle: Cutting Edge VoIPmattjive
 

Similar to 2010 za con_roelof_temmingh (20)

Dmk blackops2006
Dmk blackops2006Dmk blackops2006
Dmk blackops2006
 
I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...
I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...
I'm Not Here I'm There -- Using a Local Instant Messaging Service in Your Lib...
 
Fuzz Testing-Atul Khot
Fuzz Testing-Atul KhotFuzz Testing-Atul Khot
Fuzz Testing-Atul Khot
 
Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...
Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...
Load testing, Lessons learnt and Loadzen - Martin Buhr at DevTank - 31st Janu...
 
The Internet Gets Real
The Internet Gets RealThe Internet Gets Real
The Internet Gets Real
 
Workshop 1 coic 101 moc 2021
Workshop 1 coic 101 moc 2021Workshop 1 coic 101 moc 2021
Workshop 1 coic 101 moc 2021
 
Roelof Temmingh FIRST07 slides
Roelof Temmingh FIRST07 slidesRoelof Temmingh FIRST07 slides
Roelof Temmingh FIRST07 slides
 
Lecture01.ppt
Lecture01.pptLecture01.ppt
Lecture01.ppt
 
Power of the internet PART 3
Power of the internet PART 3Power of the internet PART 3
Power of the internet PART 3
 
Tcpdump hunter
Tcpdump hunterTcpdump hunter
Tcpdump hunter
 
14 turing wics
14 turing wics14 turing wics
14 turing wics
 
IoT Printer (2012)
IoT Printer (2012)IoT Printer (2012)
IoT Printer (2012)
 
FFMEET: running a non-profit conference system
FFMEET: running a non-profit conference systemFFMEET: running a non-profit conference system
FFMEET: running a non-profit conference system
 
Dmk blackops2006 ccc
Dmk blackops2006 cccDmk blackops2006 ccc
Dmk blackops2006 ccc
 
SRECon Coherent Performance
SRECon Coherent PerformanceSRECon Coherent Performance
SRECon Coherent Performance
 
Dec2018 istanbul-2
Dec2018 istanbul-2Dec2018 istanbul-2
Dec2018 istanbul-2
 
Embedded Systems PPt.pptx
Embedded Systems PPt.pptxEmbedded Systems PPt.pptx
Embedded Systems PPt.pptx
 
Systems Administrator As A Career
Systems Administrator As A CareerSystems Administrator As A Career
Systems Administrator As A Career
 
Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...
Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...
Scuttlebutt or how to exit facebook and start coding your first web 3.0 socia...
 
Jingle: Cutting Edge VoIP
Jingle: Cutting Edge VoIPJingle: Cutting Edge VoIP
Jingle: Cutting Edge VoIP
 

2010 za con_roelof_temmingh

  • 1.
  • 2. Introduction   Roelof Temmingh ..blah blah..   Google if you are really interested.   Sometimes I wish people could cut the BS from their talks and get straight to the point   So...let’s try   3 talks   45 minutes   ZaCon exclusive...;)
  • 3. Talk 1 – things I wanted Andrew to do in his free time, which he did not*   Ideas I had that *might* have merit, but that needs more thinkering and tinkering.   The hope is to inspire and encourage.   Explore on your own! * ...because he built a webcam with his Arduino board
  • 4. Talk 1.1 – Automated social engineering  Mail thread injection From: Pieter Parnas (pieterp@absa.co.za) <pieterp@absa.co.za> To: Oubaas Pretorius (oubaasp@absa.co.za) <oubaasp@absa.co.za> CC: Benny Bruckwurm (bennyb@absa.co.za)<bennieb@absa.co.za>, Karel Kroukamp (karelk@absa.co.za) <karelk@absa.co.za>, Danie Dempsey (danied@absa.co.za) <danied@bsa.co.za>, Teuns Toerien (teunst@absa.co.za) <teunst@absa.co.za> Subject: Re: Performance reviews sheets   Please make sure that you email your quarterly   performance reviews to me before the end of this   week. Oubaas – Adele is just calculating the bonuses and then mine will be ready. Regards, Pieter   Many mail clients don’t show <>s   Most peolpe don’t see tehm aywnay   Wait and catch the replies..   Trick is timing and providing context
  • 5. Talk 1.1 – Automated social engineering   Check out Derren Brown’s NLP techniques   Hacking the mind really   Apply it online...   Test your online personal security website   Complete our survey and we will mail you a report!   How many different ATMs do you use in a month?   Which of the following social networks do you use?   Do you use I.M.?   Do you have a credit card?   Test your password strength here ○  Timing considerations...
  • 6. Talk 1.2 – Scan the entire Internet   For every IP on the Internet determine:   Open ports   Services ○  If web, WebTech   Traceroute to it   Reverse DNS   Whois per network   Optimize, optimize (this is the fun stuff)   Is it real? (unicast, multicast / private)   Is it routed?   Blocking together (AS, routed etc.)   Portscan - async   Traceroute – async, with hop count in the body
  • 7. Talk 1.2 – Scan the Internet   But why is this interesting at all?   Better geo location tracking   Consider traceroute: ○  Japan Japan Japan Japan US – I don’t think so   Triangulation anyone? ○  Eish... it aint easy   Instant list of vulnerable servers   Read open ports, reverse DNS, services from dB   Profit!   Reverse whois on netblocks   It was done before – in 1999. Caused kak...
  • 8. Talk 1.3 – Storing data in a pipe  Super secret stuff ... we all have it...   Don’t want to store on file, or physical print   Even encrypted   Store it INSIDE the inter tubes   Difference between latency and bandwidth   Latency: length of the pipe   Bandwidth: Thickness of the pipe   We want – high bandwidth, high latency   Like a satellite link   300 ms delay   0.33s x 4Mbit/s = 1.32Mbit of space inside the pipe...
  • 9. Talk 1.3 – Storing data in a pipe   Think of ICMP ping   Just in one way   ... Gets sent to another agent   ... Somewhere – to another agent   Agent discovery etc..   Retrieving the message   ‘client’ sends retrieval message for message ID   Probably not time critical   Needs some more thought!
  • 10. Talk 1.4 – Start your own business   Resolving social network membership   Scraping means maintaining   Mechanize and Soup and friends   Need some balls – against TOU   Gap in the market   Real time   Friends   Clients! Profit!   $1K – $7.5K per month
  • 11. Talk 2 – things Andrew actually did at work   Made really good tea..   Andrew makes a wicked cup of tea   Worked on shit hot stuff:   Facebook + NER + other Maltego magic = win!   TDS – allowing everyone else to write funky transforms
  • 12. Facebook + NER + Maltego
  • 13. CMS detection etc + TDS + Maltego TDS – Transform Distribution Server Look at website, right hand side: “Your data, your Maltego”
  • 14.   Yeah right...I suspect I’ll be out of time...   Speak to me outside/coffee/lunch Questions?