There are quite a few posts on the internet about why Linux will never beat out Windows or OSX to be on every desktop. Honestly, I’ve never read any of those articles the full way through. Here at Thorson HQ, we have plenty of operating systems to choose from; Linux (Ubuntu, Fedora, Mint), Windows (XP, [...]
The under water internet
2012-03-22 China steals secrets/iPhone unlocation/Gmail and Spam/Audacity 2/Free Photoshop CS6/
Podcast: Play in new window | Download (Duration: 5:35 — 6.8MB) | Embed
- China is getting aggressive with their corporate espionage, here is a detailed example.
- Your iPhone is broadcasting where you AREN’T located
- Gmail now gives you clues as to why something went to spam
- Audacity gets a 2.0 version (has quite a few known bugs at release)
- Adobe Photoshop CS6 beta for free
- Kahn Academy for the iPhone and Android (another Android app)
- USA Science and Engineering Festival (Twitter account of the organizer)
2012-02-29 IPv6, New to RSA? / IPv6 from unknown to stellar support
Podcast: Play in new window | Download (Duration: 3:55 — 1.6MB) | Embed
- I attended a beginners talk about IPv6 security hosted by Bob Hinden (you’ll find his name on the RFC). Having such a great mind on the topic speak about it in such a basic level seems to me to be an under utilization of his talents. (Though, it seems to me, probably right for the RSA crowd). Someone needs to get him to submit a talk for ShmooCon!
- QOSMOS – They support IPv6, and can even unwrap tunnels… 16 deep!
2012-02-28 Google and SSL checking / Don’t Pen Test without Permission
Podcast: Play in new window | Download (Duration: 5:35 — 2.2MB) | Embed
- Google removes CRL and OCSP checking from Chrome (there are still alternatives that make this work – listen to this compute cycle!)
- BSides attendee sneaks into RSA – I’m not going to link to this story, as this is stupid, and I hope this story fizzles away.
2012-02-27 Recycled cloud IP attack / Investigate suspicious URLS / Security mistakes of others
Podcast: Play in new window | Download (Duration: 3:17 — 1.4MB) | Embed
2012-02-14 Chrome SSL certificate checking / Man in the browser / Reaver Pro WPS cracking / HTML5 Security
Podcast: Play in new window | Download (Duration: 8:36 — 10.7MB) | Embed
2012-02-05 Sat phone encryption cracked / Anonymous listens in / GPG not always encrypted / DNS Trojan Aftermath / Verisign Hacked / Vermont State Police
Podcast: Play in new window | Download (Duration: 6:09 — 5.6MB) | Embed
So I’ve got a cold, and I’m trying out some different equipment. We should sound better soon!
2012-01-24 Deep Dive – IPv6 Tunnels for Multiple Networks
Podcast: Play in new window | Download (170.7MB) | Embed
We are still getting the bugs worked out with regard to videos & this podcast, so if all else fails, here is the same video on YouTube. (Sending feedback if something is broken would REALLY be appreciated. Thanks! –Brett)
In this deep dive, we do some advanced IPv6 hacking with the gogoc client. The gogoc IPv6 tunnel broker isn’t setup to handle subnetting and multiple interfaces. In this ComputeCycle.com deep dive, we install gogoc, get an IPv6 tunnel, and then customize the internal gogoc scripts to handle our multiple interfaces with separate IPv6 subnets.
To sign up for your own IPv6 tunnel, head over to freenet6.
If all you want to do is run IPv6 on your home network, you can ignore changing the host type, the prefix length, and all of the modifications to linux.sh
2012-01-21 WDATM Follow Up – Upgrading Dell BIOS from a Live USB OS
I’m happy to report that all the servers for Shmoocon have had their BIOS updated using the procedures documented in our previous post. A couple of extra notes to post about this procedure. When you are booting up the OMSA live disk with CentOS on it, it is best to choose the boot option “Boot (No Dell Services)”. But before you hit enter, press tab to edit the command line.
Right after the word liveimg, put in the number 3. So it looks like this:
..... liveimg 3 noomsa .....
This will prevent the system from booting into the graphical mode (thus using more memory) and the “No Dell Services” will prevent it from downloading extra packages to run the OMSA utilities, which you don’t need for a BIOS upgrade.



