<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3374239376307599155</id><updated>2012-02-28T09:32:07.160+05:00</updated><category term='digital forensics'/><title type='text'>Level: InfoSec - Information Security</title><subtitle type='html'>A blog focused on IT and Information Security by Tayyeb Moin Shaikh.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>18</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-1407951225351857982</id><published>2011-11-09T03:44:00.000+05:00</published><updated>2011-11-09T03:44:46.828+05:00</updated><title type='text'>Schools Kill Creativity</title><content type='html'>&lt;iframe allowfullscreen="" frameborder="0" height="315" src="http://www.youtube.com/embed/hkPvSCq5ZXk?rel=0" width="560"&gt;&lt;/iframe&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-1407951225351857982?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/1407951225351857982/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/11/schools-kill-creativity.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/1407951225351857982'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/1407951225351857982'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/11/schools-kill-creativity.html' title='Schools Kill Creativity'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://img.youtube.com/vi/hkPvSCq5ZXk/default.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-5405479892104338206</id><published>2011-07-20T14:23:00.000+05:00</published><updated>2011-07-20T14:23:26.599+05:00</updated><title type='text'>Fake login</title><content type='html'>&lt;div dir="ltr"&gt;Dear Reader Please be aware!!!&lt;br /&gt;Today i received a mail which is pasted below.... Dont click Secure Login it will redirect to fake page.&lt;br /&gt;------&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;div class="gmail_quote"&gt; &lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;div&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;&lt;b&gt;&lt;span style="color:#006600;"&gt;ALERT&lt;/span&gt;&lt;/b&gt; &amp;lt; noreply-&lt;/span&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;85949345d1&lt;/span&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;@&lt;a href="http://googlhelp.com/" target="_blank"&gt;googlhelp&lt;wbr&gt;.com&lt;/a&gt;&amp;gt;&lt;/span&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt; &lt;/span&gt;&lt;div&gt;               &lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;THIS IS A WARNING MESSAGE ONLY&lt;/span&gt;&lt;/div&gt;               &lt;div&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"&gt;Dear  gmail user&lt;/span&gt;&lt;/div&gt;               &lt;div&gt;&lt;span style="font-family:arial, sans-serif;"&gt;&lt;span style="border-collapse:collapse"&gt;We detected an unsuccessful login attempt from an unfamiliar location. For the security of your account Kindly re-login below  &lt;/span&gt;&lt;/span&gt;&lt;/div&gt;               &lt;div&gt;&lt;span style="font-family:arial, sans-serif;"&gt;&lt;span style="border-collapse:collapse"&gt;&lt;a href="http://fberror.comli.com/mail/mail.html" target="_blank"&gt;Secure Login:&lt;/a&gt;&lt;br /&gt;&lt;a href="http://fberror.comli.com/mail/mail.html" target="_blank"&gt;http://fberror.comli.com/mail/mail.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span style="font-family:arial, sans-serif;"&gt;&lt;span style="border-collapse:collapse"&gt;The Gooogle Team&lt;br /&gt;&lt;br /&gt;-----&lt;br /&gt;&lt;br /&gt;Regards&lt;br /&gt;&lt;br /&gt;Hassan Ijaz&lt;br /&gt;IS analyst&lt;br /&gt;Secure People&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/span&gt; &lt;/div&gt;&lt;/div&gt; &lt;/div&gt;&lt;/div&gt; &lt;/div&gt;&lt;/div&gt; &lt;/div&gt;&lt;/div&gt; &lt;/div&gt;&lt;/div&gt; &lt;/div&gt;&lt;/div&gt; &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-5405479892104338206?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://googleonlinesecurity.blogspot.com/2011/07/using-data-to-protect-people-from.html' title='Fake login'/><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/5405479892104338206/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/07/fake-login.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5405479892104338206'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5405479892104338206'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/07/fake-login.html' title='Fake login'/><author><name>Syed Hassan Ijaz</name><uri>http://www.blogger.com/profile/05658101452794066141</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://2.bp.blogspot.com/_9I8hcZE1CnY/Sp7BRAP1oWI/AAAAAAAAAAU/KqIN7V4UQ9E/S220/hassan_pic.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-6256132795212230399</id><published>2011-02-04T19:05:00.001+05:00</published><updated>2011-02-04T19:06:38.362+05:00</updated><title type='text'>Setup for Python development in Windows</title><content type='html'>&lt;span style="font-size: small;"&gt;Resources for compiling and executing .py files (listed in order of installation) :&lt;br /&gt;&lt;br /&gt;python setup: &lt;a href="http://www.python.org/download/" target="_blank"&gt;http://www.python.org/download/&lt;/a&gt;&lt;br /&gt;pyhook: &lt;a href="http://sourceforge.net/projects/pyhook/files/" target="_blank"&gt;http://sourceforge.net/projects/pyhook/files/&lt;/a&gt;&lt;br /&gt;pywin32: &lt;a href="http://sourceforge.net/projects/pywin32/" target="_blank"&gt;http://sourceforge.net/projects/pywin32/&lt;/a&gt;&lt;br /&gt;py2exe: &lt;a href="http://sourceforge.net/projects/py2exe/" target="_blank"&gt;http://sourceforge.net/projects/py2exe/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: small;"&gt;&lt;br /&gt;Python provides the quickest way to develop a key monitoring and logging utility for security applications. It should be kept in mind that in windows such a utility has some dependencies too which need to be installed first.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-6256132795212230399?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/6256132795212230399/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/02/setup-for-python-development-in-windows.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6256132795212230399'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6256132795212230399'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/02/setup-for-python-development-in-windows.html' title='Setup for Python development in Windows'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-4328501462046664195</id><published>2011-02-02T01:31:00.002+05:00</published><updated>2011-02-02T01:32:21.197+05:00</updated><title type='text'>Android x86 1.6 and 2.2 on AMD K6-2 CPU</title><content type='html'>Just tried running the Android x86 ISO obtained from www.android-x86.org after putting it on a USB.&lt;br /&gt;&lt;br /&gt;It appears that the AMD K6-2 does not meet the requirements of the android kernel.&lt;br /&gt;&lt;br /&gt;On loading there is an error mentioning something like this: Obtain a kernel appropriate for your CPU :(&lt;br /&gt;&lt;br /&gt;On enabling the Debug option while loading it from the Live USB it further shows: cmov instruction unavailable.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-4328501462046664195?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/4328501462046664195/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/02/android-x86-16-and-22-on-amd-k6-2-cpu.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/4328501462046664195'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/4328501462046664195'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/02/android-x86-16-and-22-on-amd-k6-2-cpu.html' title='Android x86 1.6 and 2.2 on AMD K6-2 CPU'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-8883591440903440514</id><published>2011-01-26T01:26:00.007+05:00</published><updated>2011-02-08T23:17:42.452+05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='digital forensics'/><title type='text'>Basics of Digital Forensics for Popular chat clients (software)</title><content type='html'>&lt;b&gt;&lt;span style="font-size: large;"&gt;SKYPE&lt;/span&gt;&lt;br /&gt;User Contacts Storage Location:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;(Can be accessed without logging in)&lt;br /&gt;&lt;br /&gt;There is a config.xml file stored at the location X:\Documents and Settings\windows_user_name\Application Data\Skype\skype-login_name\&lt;br /&gt;&lt;br /&gt;I found my config.xml on Windows 7 in the following path:&lt;br /&gt;&lt;br /&gt;C:\Users\&amp;lt;user name&amp;gt;\AppData\Roaming\Skype\&amp;lt;skype ID&amp;gt;\&lt;br /&gt;&lt;br /&gt;There is an xml tag for each contact the user has and also a 4 byte ID is stored inside the tag.&lt;br /&gt;&lt;br /&gt;For example the data of 2 contacts abc and xyz will be stored like this:&lt;br /&gt;&lt;br /&gt;&amp;lt;CentralStorage&amp;gt;&lt;br /&gt;&amp;lt;SyncSet&amp;gt;&lt;br /&gt;&amp;lt;u&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;abc&amp;gt;ab1122aa:2&amp;lt;/abc&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;xyz&amp;gt;aabb1122:2&amp;lt;/xyz&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/u&amp;gt;&lt;br /&gt;&amp;lt;/SyncSet&amp;gt;&lt;br /&gt;&amp;lt;/CentralStorage&amp;gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;In newer versions of Skype the contact list is also stored on a central server.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="font-size: large;"&gt;GOOGLE TALK&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;User Contacts and History Storage Location:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;(Can be accessed without logging in)&lt;br /&gt;&lt;br /&gt;On Windows 7 the contacts can be easily found in the file called “vcards” located here:&lt;br /&gt;&lt;br /&gt;C:\Users\AppData\Local\Google\Google Talk&lt;br /&gt;&lt;br /&gt;Along with emails this file also contains their nick names and id of their selected avatars along with information when it was last updated.&lt;br /&gt;&lt;br /&gt;All this is stored in vcard compatible format.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The chat logs can be found here:&lt;br /&gt;&lt;br /&gt;C:\Users\AppData\Local\Google\Google Talk\chat logs&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;&lt;br /&gt;YAHOO MESSENGER&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Chat History Message Archive Storage Path:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;If the user has enabled this feature in options then it can be found here:&lt;br /&gt;&lt;br /&gt;C:\Program Files \ Yahoo \ Messenger \ Profiles \log&lt;br /&gt;&lt;br /&gt;On default it is the following option:&lt;br /&gt;&lt;br /&gt;Yes, save all of my messages, but clear them each time I sign out (this is the Default Setting)&lt;br /&gt;&lt;br /&gt;But these are in a encoded format (.dat file). Users can see the names of contacts who chatted but the actual contents are not properly visible.&lt;br /&gt;&lt;br /&gt;Different free decoders and recovery software are available that can help in viewing the file details without logging in to yahoo messenger.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;EKIGA&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Local Contact Storage:&lt;/b&gt;&lt;br /&gt;(Available without logging in)&lt;br /&gt;&lt;br /&gt;On windows 7 I found “ekiga.conf” stored at the following path:&lt;br /&gt;&lt;br /&gt;C:\Users\AppData\Roaming&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Specifically here:&lt;br /&gt;&lt;br /&gt;&amp;lt;schema&amp;gt;&lt;br /&gt;&amp;lt;applyto&amp;gt;/apps/ekiga/protocols/accounts_list&amp;lt;/applyto&amp;gt;&lt;br /&gt;&amp;lt;type&amp;gt;list&amp;lt;/type&amp;gt;&lt;br /&gt;&amp;lt;default&amp;gt;(I found my account name and password here in clear text without logging in)&lt;br /&gt;&amp;lt;/schema&amp;gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;WINDOWS LIVE MESSENGER&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Contact List and User data Storage:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;(Can be viewed without signing in but contacts are encrypted)&lt;br /&gt;&lt;br /&gt;A complete Communication events log was found here, although communication content was not present:&lt;br /&gt;&lt;br /&gt;C:\Users\AppData\Local\Microsoft\Messenger\ContactsLog.txt (On Windows 7)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Contacts Storage Path:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;By default on windows 7 Live messenger contacts are stored in encrypted format “contacts.edb” at this path:&lt;br /&gt;&lt;br /&gt;C:\Users\&amp;lt;user name&amp;gt;\AppData\Local\Microsoft\Windows Live Contacts\{aaaaa…..some long number….}\DBStore&lt;br /&gt;&lt;br /&gt;AES 128 bit encryption is used is used on these contacts&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-8883591440903440514?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/8883591440903440514/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/01/basics-of-digital-forensics-for-popular.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/8883591440903440514'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/8883591440903440514'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/01/basics-of-digital-forensics-for-popular.html' title='Basics of Digital Forensics for Popular chat clients (software)'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-4113579104867675775</id><published>2011-01-04T00:45:00.001+05:00</published><updated>2011-01-04T00:46:51.260+05:00</updated><title type='text'>3D CAPTCHA - The Future of CAPTCHA</title><content type='html'>I was searching for CAPTCHA that is very hard to break. While searching I came across the following sites which shows a very nice way to evade attacks:&lt;br /&gt;One of those was the one by OCR Research Team&lt;br /&gt;Link: &lt;a href="http://ocr-research.org.ua/teabag.html"&gt;http://ocr-research.org.ua/teabag.html&lt;/a&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_g2lRPnir61A/TSIklIvZorI/AAAAAAAAAno/IPUT8zYB5o0/s1600/gtk3dcap1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/_g2lRPnir61A/TSIklIvZorI/AAAAAAAAAno/IPUT8zYB5o0/s1600/gtk3dcap1.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;I also found an open source project on google code that still seems to be in initial development though its first version is available for download at: &lt;a href="http://code.google.com/p/3dcaptcha/"&gt;http://code.google.com/p/3dcaptcha/&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_g2lRPnir61A/TSImMnudWVI/AAAAAAAAAnw/BOwbfQXWsvg/s1600/3dcaptcha.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/_g2lRPnir61A/TSImMnudWVI/AAAAAAAAAnw/BOwbfQXWsvg/s1600/3dcaptcha.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;Another very different technique was also found. It is claimed that this technique is very resistant to automatic decryption.&lt;br /&gt;Link: &lt;a href="http://spamfizzle.com/CAPTCHA.aspx"&gt;http://spamfizzle.com/CAPTCHA.aspx&lt;/a&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;span id="goog_1850015239"&gt;&lt;/span&gt;&lt;span id="goog_1850015240"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-4113579104867675775?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/4113579104867675775/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/01/3d-captcha-future-of-captcha.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/4113579104867675775'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/4113579104867675775'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/01/3d-captcha-future-of-captcha.html' title='3D CAPTCHA - The Future of CAPTCHA'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_g2lRPnir61A/TSIklIvZorI/AAAAAAAAAno/IPUT8zYB5o0/s72-c/gtk3dcap1.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-5874490436405128424</id><published>2011-01-01T14:30:00.004+05:00</published><updated>2011-01-01T14:35:13.375+05:00</updated><title type='text'>A Guide to Understanding Flowcharts</title><content type='html'>&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_g2lRPnir61A/TR70joki72I/AAAAAAAAAnk/M42nIFwI9wQ/s1600/flow_charts.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="459" src="http://2.bp.blogspot.com/_g2lRPnir61A/TR70joki72I/AAAAAAAAAnk/M42nIFwI9wQ/s640/flow_charts.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://imgs.xkcd.com/comics/flow_charts.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://blog.infocaris.net/"&gt;(Source: InfoCaris)&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-5874490436405128424?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/5874490436405128424/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2011/01/source-infocaris.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5874490436405128424'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5874490436405128424'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2011/01/source-infocaris.html' title='A Guide to Understanding Flowcharts'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_g2lRPnir61A/TR70joki72I/AAAAAAAAAnk/M42nIFwI9wQ/s72-c/flow_charts.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-5837788925848826198</id><published>2010-07-31T01:32:00.000+05:00</published><updated>2010-07-31T01:32:16.551+05:00</updated><title type='text'>Information Security by Artificial Intelligence (AI)</title><content type='html'>Some thoughts about Information Security through Artificial Intelligence.&lt;br /&gt;&lt;ul&gt;&lt;li&gt;The system should be capable of making a wise decision even if directly coded instructions are not available pertaining to the situation at hand.&lt;/li&gt;&lt;li&gt;The Artificially Intelligent system must have some means to actually enforce the decision.&lt;/li&gt;&lt;li&gt;Its decisions should take into account time constraints and disturbances in its environment.&lt;/li&gt;&lt;li&gt;Should be capable of applying all possible prevention, detection and recovery mechanisms.&lt;/li&gt;&lt;li&gt;One higher level objective should be hard coded other than protecting data such as, giving human safety the highest priority.&lt;/li&gt;&lt;li&gt;There should be a hidden and distributed way to override its decision in case of malfunctioning.&lt;/li&gt;&lt;/ul&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_g2lRPnir61A/TFM2rDSxPuI/AAAAAAAAAWo/gMSW-bospVE/s1600/Artificial-Intelligence.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="361" src="http://3.bp.blogspot.com/_g2lRPnir61A/TFM2rDSxPuI/AAAAAAAAAWo/gMSW-bospVE/s400/Artificial-Intelligence.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-5837788925848826198?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/5837788925848826198/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/information-security-by-artificial.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5837788925848826198'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5837788925848826198'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/information-security-by-artificial.html' title='Information Security by Artificial Intelligence (AI)'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_g2lRPnir61A/TFM2rDSxPuI/AAAAAAAAAWo/gMSW-bospVE/s72-c/Artificial-Intelligence.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-4286832453734514797</id><published>2010-07-21T21:59:00.002+05:00</published><updated>2010-07-30T23:53:54.894+05:00</updated><title type='text'>Skyfire 2.0 only for Android for now, where to get it for windows mobile and symbian?</title><content type='html'>&lt;blockquote&gt;&lt;u style="font-family: &amp;quot;Courier New&amp;quot;,Courier,monospace;"&gt;Important Note:&lt;/u&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;,Courier,monospace;"&gt; Even though you will be able to download and install Skyfire in any region but to make it work you need to have an IP of a region where it is still supported on your mobile device. For this you can use a proxy service or setup a VPN on your Internet/WiFi Access Point which may be a computer. &lt;/span&gt;&lt;/blockquote&gt;Skyfire, my favorite and in my opinion the best mobile/PDA browser is now at its version 2.0 but sadly this new version is only available for Android users.&lt;br /&gt;&lt;br /&gt;Windows Mobile and Symbian users have the option to download Skyfire 1.5&lt;br /&gt;&lt;br /&gt;If you are at a place outside America and Western Europe then you may have noticed the following note being shown instead of the download link for Symbian and Windows Mobile:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;Skyfire 1.x is not available in your country&lt;/blockquote&gt;&lt;br /&gt;&amp;nbsp;This is because &lt;b&gt;Skyfire 1.X is no longer supported outside of North America  and Western Europe effective July 1st, 2010.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;So if you want to download Skyfire for your Symbian and Windows Mobile from a location outside then here is the link to Softpedia page containing direct links to the installer files:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.blogger.com/goog_581758232"&gt;&lt;b&gt; &lt;/b&gt;&lt;/a&gt;&lt;br /&gt;&lt;b&gt;&lt;a href="http://handheld.softpedia.com/progDownload/Skyfire-Download-71164.html"&gt;http://handheld.softpedia.com/progDownload/Skyfire-Download-71164.html&lt;/a&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_g2lRPnir61A/TEcnPWWPF7I/AAAAAAAAAWg/pMs9W3HvvkY/s1600/Skyfire_1.5.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/_g2lRPnir61A/TEcnPWWPF7I/AAAAAAAAAWg/pMs9W3HvvkY/s320/Skyfire_1.5.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-4286832453734514797?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/4286832453734514797/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/skyfire-20-only-for-android-for-now.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/4286832453734514797'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/4286832453734514797'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/skyfire-20-only-for-android-for-now.html' title='Skyfire 2.0 only for Android for now, where to get it for windows mobile and symbian?'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_g2lRPnir61A/TEcnPWWPF7I/AAAAAAAAAWg/pMs9W3HvvkY/s72-c/Skyfire_1.5.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-3286747026218539778</id><published>2010-07-20T02:56:00.000+05:00</published><updated>2010-07-20T02:56:00.482+05:00</updated><title type='text'>Open Security Architecture (OSA)</title><content type='html'>Have you heard of OSA?&lt;br /&gt;Its the Open Source alternative to architectures that lead you to developing secure systems.&lt;br /&gt;&lt;br /&gt;The architecture proves its value by providing all in one control catalog,&amp;nbsp; visual patterns to be used in combination with control catalog and best of all its open source.&lt;br /&gt;&lt;br /&gt;All of these resources can easily be found at &lt;a href="http://www.opensecurityarchitecture.org/"&gt;http://www.opensecurityarchitecture.org &lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_g2lRPnir61A/TETJ1ZmtTbI/AAAAAAAAAWY/1r1suHBWb-M/s1600/osa.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="267" src="http://1.bp.blogspot.com/_g2lRPnir61A/TETJ1ZmtTbI/AAAAAAAAAWY/1r1suHBWb-M/s320/osa.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-3286747026218539778?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/3286747026218539778/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/open-security-architecture-osa.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/3286747026218539778'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/3286747026218539778'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/open-security-architecture-osa.html' title='Open Security Architecture (OSA)'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_g2lRPnir61A/TETJ1ZmtTbI/AAAAAAAAAWY/1r1suHBWb-M/s72-c/osa.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-6184409719194050126</id><published>2010-07-17T19:31:00.005+05:00</published><updated>2010-07-17T19:39:42.656+05:00</updated><title type='text'>How To Access Internet in BackTrack 4 OR How To Setup Network in Backtrack 4</title><content type='html'>Having problem accessing the internet from backtrack? Well, its not that difficult. Here I mention some easy ways:&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Access Internet Using WiFi:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;Just after you enter the command&amp;nbsp;&lt;b&gt; &lt;/b&gt;&lt;i&gt;startx&lt;/i&gt; you should start the terminal and enter &lt;i&gt;/etc/init.d wicd start&lt;/i&gt; to start the Wicd daemon.&lt;br /&gt;Now you can just access Wicd Manager from BackTrack&amp;gt; Internet menu. This manager is an easy to use GUI so I suppose you will figure out what to do next.&lt;br /&gt;&lt;br /&gt;You may also try the command &lt;i&gt;dhclient &lt;/i&gt;to auto assign names and addresses using DHCP&lt;br /&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;Using Ethernet:&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;First of all try to enter this &lt;i&gt;/etc/init.d networking start&lt;/i&gt; in terminal&lt;br /&gt;&lt;br /&gt;After that if you have a DHCP server running then you can just enter &lt;i&gt;dhclient&lt;/i&gt; and all will be done.&lt;br /&gt;&lt;br /&gt;Otherwise if you want to setup ethernet (I assume eth0) manually you may follow this:&lt;br /&gt;&lt;br /&gt;&lt;i&gt;ifconfig eth0 up&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;i&gt;ifconfig eth0 up&lt;/i&gt; ( to see its current address status)&lt;br /&gt;&lt;br /&gt;&lt;i&gt;ifconfig eth0 &lt;your here="" ip=""&gt; [your ip] netmask [subnet mask] &lt;subnetmask here=""&gt;&lt;/subnetmask&gt;&lt;/your&gt;&lt;/i&gt; ( to set your IP and subnet mask manually For example,&amp;nbsp; &lt;i&gt;ifconfig eth0 192.168.1.10 netmask 255.255.255.0&lt;/i&gt;)&lt;br /&gt;&lt;br /&gt;&lt;i&gt;route add default gw &lt;your gateway="" here=""&gt; [gateway ip address] eth0&lt;/your&gt;&lt;/i&gt;&amp;nbsp; (to manually configure default gateway. For example, &lt;i&gt;route add default gw 192.168.0.1 eth0&lt;/i&gt;)&lt;br /&gt;&lt;br /&gt;&lt;i&gt;echo nameserver [DNS server IP address] &lt;your dns="" ip="" server=""&gt;&lt;/your&gt;&lt;/i&gt; &amp;nbsp;&amp;nbsp; (to manually adding DNS server. For example, &lt;i&gt;echo nameserver 192.168.0.1&lt;/i&gt;)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Congratulations on completing the first step because accessing internet is just the start in BackTrack :)&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/_g2lRPnir61A/TEG-rERMWdI/AAAAAAAAAVk/sf-iGQvv-Jg/s1600/cuda.JPG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="250" src="http://4.bp.blogspot.com/_g2lRPnir61A/TEG-rERMWdI/AAAAAAAAAVk/sf-iGQvv-Jg/s400/cuda.JPG" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;b&gt; &lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-6184409719194050126?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/6184409719194050126/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/how-to-access-internet-in-backtrack-4.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6184409719194050126'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6184409719194050126'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/how-to-access-internet-in-backtrack-4.html' title='How To Access Internet in BackTrack 4 OR How To Setup Network in Backtrack 4'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_g2lRPnir61A/TEG-rERMWdI/AAAAAAAAAVk/sf-iGQvv-Jg/s72-c/cuda.JPG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-350661675876819488</id><published>2010-07-17T18:17:00.001+05:00</published><updated>2010-07-17T19:41:53.844+05:00</updated><title type='text'>Start Learning Pentesting and Ethical Hacking</title><content type='html'>Hi,&lt;br /&gt;If someone wants to educate him or herself in the field of Pentesting and Ethical Hacking then I suggest the book, "Hacking Exposed: Network Security Secrets &amp;amp; Solutions" as a good starting point to get the technical know-how and idea of evolution of these techniques.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;I myself also used its 5th edition to research and prepare presentation on Remote Connectivity and VOIP Hacking as a part of my studies in the subject of Network Security&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/_g2lRPnir61A/TEGtT7eZYuI/AAAAAAAAAVc/kNUtC6_lpGE/s1600/hacking+exposed.JPG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/_g2lRPnir61A/TEGtT7eZYuI/AAAAAAAAAVc/kNUtC6_lpGE/s320/hacking+exposed.JPG" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Hacking Exposed: Network Security Secrets &amp;amp; Solutions 6th Edition: &lt;a href="http://amzn.com/0071613749"&gt;http://amzn.com/0071613749&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-350661675876819488?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/350661675876819488/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/start-learning-pentesting-and-ethical.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/350661675876819488'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/350661675876819488'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/07/start-learning-pentesting-and-ethical.html' title='Start Learning Pentesting and Ethical Hacking'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_g2lRPnir61A/TEGtT7eZYuI/AAAAAAAAAVc/kNUtC6_lpGE/s72-c/hacking+exposed.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-3955913757378321481</id><published>2010-06-30T15:41:00.000+05:00</published><updated>2010-06-30T15:41:44.871+05:00</updated><title type='text'>RSA Animate - Drive: The surprising truth about what motivates us</title><content type='html'>&lt;object style="background-image: url(&amp;quot;http://i2.ytimg.com/vi/u6XAPnuFjJc/hqdefault.jpg&amp;quot;);" width="480" height="295"&gt;&lt;param name="movie" value="http://www.youtube.com/v/u6XAPnuFjJc&amp;amp;hl=en_US&amp;amp;fs=1"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;embed src="http://www.youtube.com/v/u6XAPnuFjJc&amp;amp;hl=en_US&amp;amp;fs=1" allowscriptaccess="never" allowfullscreen="true" wmode="transparent" type="application/x-shockwave-flash" width="480" height="295"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;A very nice video clip on youtube shared with me by my friend.&lt;br /&gt;&lt;br /&gt;This video really takes us through an investigative but fruitful journey about what actually motivates us to achieve us either in a routine job or a contest or any other event in our life.&lt;br /&gt;&lt;br /&gt;It also illustrates the force behind OpenSource development&lt;br /&gt;&lt;br /&gt;It also demonstrates giving a free hand occasionally generates big creative ideas and employees should not be worried in any way about getting paid to be most productive.&lt;br /&gt;&lt;br /&gt;Feel free to comment out your thoughts :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-3955913757378321481?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/3955913757378321481/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/06/rsa-animate-drive-surprising-truth.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/3955913757378321481'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/3955913757378321481'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/06/rsa-animate-drive-surprising-truth.html' title='RSA Animate - Drive: The surprising truth about what motivates us'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-6674689073985760660</id><published>2010-06-26T18:30:00.000+05:00</published><updated>2010-06-26T18:30:36.538+05:00</updated><title type='text'>Google PowerMeter</title><content type='html'>&lt;object style="background-image: url(&amp;quot;http://i3.ytimg.com/vi/6Dx38hzRWDQ/hqdefault.jpg&amp;quot;);" width="480" height="295"&gt;&lt;param name="movie" value="http://www.youtube.com/v/6Dx38hzRWDQ&amp;amp;hl=en_US&amp;amp;fs=1"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;embed src="http://www.youtube.com/v/6Dx38hzRWDQ&amp;amp;hl=en_US&amp;amp;fs=1" allowscriptaccess="never" allowfullscreen="true" wmode="transparent" type="application/x-shockwave-flash" width="480" height="295"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Google PowerMeter uses AuthSub tokens to handle uploading data from a  device to Google. It is expected that there is a 1:1 relationship  between a device and its AuthSub token. A device with multiple variables  of data would still have a single AuthSub token.&lt;br /&gt;&lt;p&gt;An AuthSub token allows the holder of the token to impersonate a  specific user but only for specific operations on specific URI paths (or  path prefixes) which are defined at the time the token is created. For  PowerMeter, the token will be based on the PowerMeter id of the user who  is signing up for the service and the URI path prefix for access will  be based on the parameters passed to google during device activation.&lt;/p&gt;  &lt;p&gt;For example, the URI that google creates could be something along the  lines of:&lt;/p&gt;  &lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;https&lt;/span&gt;&lt;span class="pun"&gt;:&lt;/span&gt;&lt;span class="com"&gt;//www.google.com/path/to/variable/stuff.suffix&lt;/span&gt;&lt;/pre&gt;  &lt;p&gt;where:&lt;/p&gt; &lt;ul&gt;&lt;li&gt;&lt;code&gt;https://www.google.com/path/to/variable/stuff&lt;/code&gt; is the  URI prefix for storing the user's data for this device&lt;/li&gt;&lt;li&gt;&lt;code&gt;.suffix&lt;/code&gt; is unique for each variable that was created  for the device. All devices must have at least one variable and the name  corresponds to the type of the variable requested, e.g. "c1" for the  first cumulative variable.&lt;/li&gt;&lt;/ul&gt;  &lt;p&gt;The AuthSub token validates the URI up to (but not including) the &lt;code&gt;.suffix&lt;/code&gt;  portion, which is why every device must have its own token and why a  single device can have multiple variables.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-6674689073985760660?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/6674689073985760660/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/06/google-powermeter.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6674689073985760660'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6674689073985760660'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/06/google-powermeter.html' title='Google PowerMeter'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-524017547149670936</id><published>2010-06-09T18:40:00.000+05:00</published><updated>2010-06-09T18:40:58.314+05:00</updated><title type='text'>Pranav Mistry: The thrilling potential of SixthSense technology</title><content type='html'>Pranav Mistry: The thrilling potential of SixthSense technology&lt;br /&gt;&lt;br /&gt;&lt;object width="446" height="326"&gt;&lt;param name="movie" value="http://video.ted.com/assets/player/swf/EmbedPlayer.swf"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true" /&gt;&lt;param name="allowScriptAccess" value="always"/&gt;&lt;param name="wmode" value="transparent"&gt;&lt;/param&gt;&lt;param name="bgColor" value="#ffffff"&gt;&lt;/param&gt;&lt;param name="flashvars" value="vu=http://video.ted.com/talks/dynamic/PranavMistry_2009I-medium.flv&amp;su=http://images.ted.com/images/ted/tedindex/embed-posters/PranavMistry-2009I.embed_thumbnail.jpg&amp;vw=432&amp;vh=240&amp;ap=0&amp;ti=685&amp;introDuration=15330&amp;adDuration=4000&amp;postAdDuration=830&amp;adKeys=talk=pranav_mistry_the_thrilling_potential_of_sixthsense_tec;year=2009;theme=a_taste_of_tedindia;theme=tales_of_invention;theme=design_like_you_give_a_damn;theme=what_s_next_in_tech;theme=ted_under_30;theme=the_creative_spark;event=TEDIndia+2009;&amp;preAdTag=tconf.ted/embed;tile=1;sz=512x288;" /&gt;&lt;embed src="http://video.ted.com/assets/player/swf/EmbedPlayer.swf" pluginspace="http://www.macromedia.com/go/getflashplayer" type="application/x-shockwave-flash" wmode="transparent" bgColor="#ffffff" width="446" height="326" allowFullScreen="true" allowScriptAccess="always" flashvars="vu=http://video.ted.com/talks/dynamic/PranavMistry_2009I-medium.flv&amp;su=http://images.ted.com/images/ted/tedindex/embed-posters/PranavMistry-2009I.embed_thumbnail.jpg&amp;vw=432&amp;vh=240&amp;ap=0&amp;ti=685&amp;introDuration=15330&amp;adDuration=4000&amp;postAdDuration=830&amp;adKeys=talk=pranav_mistry_the_thrilling_potential_of_sixthsense_tec;year=2009;theme=a_taste_of_tedindia;theme=tales_of_invention;theme=design_like_you_give_a_damn;theme=what_s_next_in_tech;theme=ted_under_30;theme=the_creative_spark;event=TEDIndia+2009;"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-524017547149670936?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/524017547149670936/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/06/pranav-mistry-thrilling-potential-of.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/524017547149670936'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/524017547149670936'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/06/pranav-mistry-thrilling-potential-of.html' title='Pranav Mistry: The thrilling potential of SixthSense technology'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-2426597041122672005</id><published>2010-02-03T01:52:00.001+05:00</published><updated>2010-02-03T01:58:45.125+05:00</updated><title type='text'>Physical Security presentation from SlideShare</title><content type='html'>Found this on Slideshare and wanted to share.&lt;img border="0" height="0" src="http://counters.gigya.com/wildfire/IMP/CXNID=2000002.0NXC/bT*xJmx*PTEyNjUxNDM*MTQ3NTAmcHQ9MTI2NTE*MzQyNDMyOCZwPTEwMTkxJmQ9Jmc9MiZvPTg5MmIyY2Q5ZjdmNTQxY2Q4Yjky/YjA3YTJiYzkzMTNlJm9mPTA=.gif" style="height: 0px; visibility: hidden; width: 0px;" width="0" /&gt;&lt;br /&gt;&lt;div id="__ss_11974" style="text-align: left; width: 425px;"&gt;&lt;a href="http://www.slideshare.net/amiable_indian/physical-security-domain" style="display: block; font-family: Helvetica,Arial,Sans-serif; font-size-adjust: none; font-size: 14px; font-stretch: normal; font-style: normal; font-variant: normal; font-weight: normal; line-height: normal; margin: 12px 0pt 3px; text-decoration: underline;" title="Physical Security Domain"&gt;&amp;nbsp;&lt;/a&gt;&lt;a href="http://www.slideshare.net/amiable_indian/physical-security-domain" style="display: block; font-family: Helvetica,Arial,Sans-serif; font-size-adjust: none; font-size: 14px; font-stretch: normal; font-style: normal; font-variant: normal; font-weight: normal; line-height: normal; margin: 12px 0pt 3px; text-decoration: underline;" title="Physical Security Domain"&gt;Physical Security Domain&lt;/a&gt;&lt;object height="355" style="margin: 0px;" width="425"&gt;&lt;param name="movie" value="http://static.slidesharecdn.com/swf/ssplayer2.swf?doc=physical-security-domain-21543&amp;stripped_title=physical-security-domain" /&gt;&lt;param name="allowFullScreen" value="true"/&gt;&lt;param name="allowScriptAccess" value="always"/&gt;&lt;embed src="http://static.slidesharecdn.com/swf/ssplayer2.swf?doc=physical-security-domain-21543&amp;stripped_title=physical-security-domain" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="355"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;div style="font-family: tahoma,arial; font-size: 11px; height: 26px; padding-top: 2px;"&gt;View more &lt;a href="http://www.slideshare.net/" style="text-decoration: underline;"&gt;presentations&lt;/a&gt; from &lt;a href="http://www.slideshare.net/amiable_indian" style="text-decoration: underline;"&gt;amiable_indian&lt;/a&gt;.&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-2426597041122672005?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/2426597041122672005/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2010/02/physical-security-domain-view-more.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/2426597041122672005'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/2426597041122672005'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2010/02/physical-security-domain-view-more.html' title='Physical Security presentation from SlideShare'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-5681928878089123083</id><published>2009-10-28T00:36:00.001+06:00</published><updated>2009-10-28T00:38:15.752+06:00</updated><title type='text'>MIND MAPS</title><content type='html'>&lt;a href="http://4.bp.blogspot.com/_g2lRPnir61A/Suc9PiuwwLI/AAAAAAAAATg/i_M1Z6vqY4E/s1600-h/mindmap.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/_g2lRPnir61A/Suc9PiuwwLI/AAAAAAAAATg/i_M1Z6vqY4E/s320/mindmap.jpg" /&gt;&lt;/a&gt;Browsing through CCCURE's website a few days back, expecting to find some new questions for quiz I came across this very interesting Mind Mapping website: &lt;br /&gt;&lt;a href="http://www.mindcert.com/" rel="nofollow" target="_blank"&gt;http://www.mindcert.com&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;This website has mind maps for ISC2, Cisco, Ethical Hacking and many other mind maps for certifications. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Mind maps for many domains of CISSP are accessible via this page: &lt;br /&gt;&lt;a href="http://www.mindcert.com/category/mind-maps/cissp/" rel="nofollow" target="_blank"&gt;http://www.mindcert.com/category/mind-maps/cissp/&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;These may help you organize what you have learned so far. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;What is a Mind Map? &lt;br /&gt;A mind map is a diagram used to represent words, ideas, tasks or other items linked to and arranged radially around a central key word or idea. It is used to generate, visualize, structure and classify ideas, and as an aid in study, organization, problem solving, and decision making.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-5681928878089123083?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/5681928878089123083/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2009/10/mind-maps.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5681928878089123083'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/5681928878089123083'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2009/10/mind-maps.html' title='MIND MAPS'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_g2lRPnir61A/Suc9PiuwwLI/AAAAAAAAATg/i_M1Z6vqY4E/s72-c/mindmap.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3374239376307599155.post-6452688024139993644</id><published>2009-10-24T14:05:00.000+06:00</published><updated>2009-10-24T14:05:40.807+06:00</updated><title type='text'>Welcome</title><content type='html'>Welcome to my new Information Security blog.&lt;br /&gt;Enjoy!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3374239376307599155-6452688024139993644?l=levelinfosec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://levelinfosec.blogspot.com/feeds/6452688024139993644/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://levelinfosec.blogspot.com/2009/10/welcome.html#comment-form' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6452688024139993644'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3374239376307599155/posts/default/6452688024139993644'/><link rel='alternate' type='text/html' href='http://levelinfosec.blogspot.com/2009/10/welcome.html' title='Welcome'/><author><name>Tayyeb Moin</name><uri>http://www.blogger.com/profile/14118473371110434037</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://4.bp.blogspot.com/_g2lRPnir61A/SuQ1OW1g6zI/AAAAAAAAAS8/V6W1solXx3M/S220/DSC07811edit.JPG'/></author><thr:total>3</thr:total></entry></feed>
