post avatar

The State of WiFi security

One of the fundamental rules, which you wont read about in any security book and you can learn only through experience is that everything is in symbiosis. This means that the security models of the individual components in a system are co-dependent. For example, the security of a server is dependent on the security of [...]

» more | » comments rss | posted by pdp
post avatar

GNUCITIZEN on PaulDotCom

We were honored to be guests to Paul and Larry on PaulDotCom Security Weekly - the best security podcast on the Web.

The show was rather long, about 2 hours, but we’ve discussed many interesting things. Please mind the quality on Adrian’s and especially mine side of the audio stream. I used a very crappy headset, [...]

» more | » comments rss | posted by pdp
post avatar

Upcoming

We are not dead just yet. Actually, we’ve been quite busy working on new projects, developing new ideas and in general innovating things to the edge of extreme.

If you haven’t noticed yet, SecUrls.com is back online but this time better, faster and a lot stronger. Keep an eye on this one as you will see [...]

» more | » comments rss | posted by pdp
post avatar

Extreme Search Engine Hacking

If you are a n00b Google Hacker then I would recommend to have a look at the Google Hacking for Penetration Testers Second Edition book or check the cDc’s GoolagScanner. If you want to learn some new tricks follow me:

We know what Google Hacking is but have we explored the edges of the craft? I [...]

» more | » comments rss | posted by pdp
post avatar

WiFi Infestations - Viral Wardriving

WiFi networks are the necessary evil. In this post I would like to briefly highlight some ideas on the potential damages that can be introduced when attackers combine automated viral-like attacks with human power. This post is largely related to the wifi worms topic that was quite present among all media outlets at the beginning [...]

» more | » comments rss | posted by pdp
post avatar

Reconsidering the Side-jacking Attack

Not that long time ago, I’ve made some comments on Robet Graham’s side-jacking attack. Clearly, my reasoning was based upon the his PowerPoint slides but not his BlackHat presentation, where he is more then clear about the motivation behind his work. I’ve become part of the senseless bashing masses, which are currently haunting the hacker [...]

» more | » comments rss | posted by pdp

Author of the XSS Book

It is probably about time to announce that I am one of the authors of the XSS Book, RSnake talked about a month ago on his blog. The complete list of authors is: Seth Fogie, Jeremiah Grossman, Robert Hansen, Anton Rager and Petko Petkov (a.k.a me).
The book is going quite well and I hope that [...]

» more | » comments rss | posted by pdp