41i3n is back online!

Greetings Earthlings!

After a period of inactivity and blog maintenance I am happy to announce that my posts from my old blog have imported correctly with the help of the Happiness Engineers Team (thank you Jenia). 41i3n’s blog is back, alive and kicking, in all its WordPress power!

For once more I welcome you!

P.S.1 – Task remaining: file old posts under correct categories. I am afraid this will take time (~ 200 posts) but at least search and tags are working perfectly
P.S.2 – If you are not sure what this blog is all about please have a look at the page appropriately named… “About

H3ll0 w0rld!

Greetings Earthlings!

I am tired of waiting the import from Posterous to finish. I have contacted support numerous times with no answer. I guess I have to upgrade to Pro to get one. In any case I have decided to start posting new interesting stuff again.

If you have no idea what this blog is for check the About page.

Welcome!

AthCon 2011: A not-of-this-earth look!

I just came back from my first AthCon! Last year due to personal reasons I didn’t make it, so this year I was determined to participate. It was two days of pure fun and great presentations! I met great people, gearheads from the online communities plus interesting “geeks” and “freaks”! The whole vibe was cool and friendly despite the tiredness from the long travel and the not-so-easy accessibility of the venue. I’ll try to break the AthCon 2011 experience down for the people that couldn’t make it.

The conference organization
Kyprianos and Christian along with the whole AthCon team did a great job keeping the event on schedule, avoiding any kind of nagging. Nice venue, minimum to none technical problems, great food, smiling faces and friendliness made the admission worthwhile. Neat, simple details and minimum sponsor interference were the key points. On the downside the venue was not easily accessible with public transportation and rather far, but a great place nevertheless!

The presentations
Great talks from infosec professionals and people that seemed to know what they are talking about. I really enjoyed the presentations of Rodrigo Marcos about the potentials of Metasploit, Thanasis Diogos’ presentation about bots and botnets, the anti-reversing exploitation presentation by Kyriakos Economou, the Ncrack development talk by Fotis Hantzis and Mike Kemp’s presentation about cyberterrorism. My favorite ones were Ian Iftach Amit’s presentation on “Pushing in, dropping a load and pulling out quietly”, Dimitris Vassilopoulos talk about using already existing weapons in network security and last but not least the Peter Van Eeckhoutte’s presentation where he announced the “death” of pvefindaddr and the “birth” of mona.py! On another downside moment I would like to pinpoint that not all presentation were of equal value not for the subject itself but mostly for the ability of the presenters plus the cancellation of the Stuxnet presentation due to some visa clearance problems of the presenter Amr Thabet.

black01white
The highlight of the event was the exclusive presentation of the much anticipated black01white, a documentary about Greek hackers, their abilities and the fine line between non-legit and legit actions, hence black-white! My honest opinion? Impressive on first look but not the right audience to present it. It was mostly directed to document the Greek scene but to the eyes of unrelated people, which at least was stated before the presentation. Great effort, nice production, but I’m sure the AthCon audience was expecting something more.

Capture the flag
This year’s CTF challenge took place both days. Many people teamed up, creating groups, trying to win the trophy, a brand new iPad 2! The challenge proved to be more than expected with teams really fighting their way to the flag! Flying fingers on keyboards, eyes watching closely laptop screens, whispers between the groups, anything for the win! Finally the trophy went to Rodrigo Marcos’ team (sorry guys, I didn’t keep the other team member names) which came closer to the the solution. Kudos!

The future?
Seeing the satisfaction in the eyes of the people behind this conference, despite their much understandable fatigue, I can only have the best of hopes for AthCon 2012. From what I heard the 2011 admissions were double than 2010 and I can’t see why not to be even more in 2012. In fact, if I may suggest, an easier reachable venue and maybe a different event date, so that young people can attend without worrying about their exams, would make it an even bigger success!

Athcon2011_4Athcon2011_0Athcon2011_1Athcon2011_2Athcon2011_3Athcon2011_5Athcon2011_6Athcon2011_7Athcon2011_8Athcon2011_9Athcon2011_10Athcon2011_11Athcon2011_12Athcon2011_13Athcon2011_14

Thanx again! See you all in AthCon 2012!

P.S.: The event photos is a contribution of my friend Nikolaos Sifakis! Thanx mate! Also a huge thanx to my friend Fr33 F1ght3r for his hospitality and his overall support!

Wishes for a Happy New Year!

    May 2011 fulfill everyone’s personal goals! May it be a year full of love, joy, happiness, prosperity and good health for everybody! This alien wishes you all the best and especially to the Infosec community a year with less incidents! To all mankind I wish peace, hope and unity!

Greetings and a Happy New Year fellow Earthlings!

.:4li3n:.

P.S.: A gift for all developers that want to strengthen their application security skills -> http://SpotTheVuln.com/

100 posts and counting…

    When I started this news and links sharing blog about two months ago I had a fear that one day I would be out of material to post. At the moment I was considering the infosec community a closed “cult-like” entity where it would be difficult to find and pass free the knowledge. Being located in Greece I was feeling away from where “things happen”.

    It all started by sharing interesting links on my favorite magazine’s facebook fan page whenever I could and whenever I would find something interesting to share. Being busy all day I would only find time to post my links after midnight, hence the silly name “4li3n’s after midnight useless news and links”. It was back then I realised that finding interesting stuff to share is just a matter of looking in the right places! Gradually the positive comments on the effort were increasing, pushing me to the idea of creating this blog.

    Of course the positive feedback and the overall support never stopped. Both magazine and readers/fans were always welcoming every edition of “4li3n’s after midnight useless news and links” which led to keep the column on a daily basis (when possible). With many of those we have become friends and we communicate regularly. One thing led to another and on the latest issue (#39) of total XAKER magazine the “4li3n’s after midnight useless news and links” was mentioned in all its glory! That’s something I could never believe possible a couple a months ago! And it came right on time with the 100th post on the blog!

    So here we are! A hundred posts and counting! Many people started following the blog and my twitter account! The site views increase like crazy! I even used Google Analytics to figure out how much of this is real! The whole situation is so overwhelming and for sure much more than expected! Of course I never forget my promises so projects announced (like the review on “Social Engineering: The Art of Human Hacking” and an original article with an alien’s view on hackers breed) are still valid. No need to say that “4li3n’s after midnight useless news and links” will continue as usuall (except from today due to lack of time, irony?). What I would like to make sure is that I love doing this and I will keep doing it for as long as possible!

    Instead of an epilogue I would just like to thank some friends (I hope I don’t forget someone) for their exceptional support. I will mention them with their nicknames or initials because I didn’t bother to ask for their permission! So without further ado: SubZraw, cr0w, Eleutheros Maxitis, S.F., N.S., dr0pper, b10zgr, A.P., A.T., Alexander Flash, T.MS., J.T., Black White, G.X., S.D., Y.M., P.K., N.D., G.K., S.C., P.K., Alexandros Mtt, InFamous, P.S., F.P., A.Z., V.M., V.T., THANK YOU ALL!!!! A very special “thank you” to my other half T.M., without her patience and support non of these would be possible!!!!

    Oh by the way, I owe dr0pper a RT! Here it is buddy: aGFjayBYTUFTIHRvIGdhaW4gbW9yZSBwcmVzZW50cyBhbmQgbW9uZXk=

Greetings and keep enjoying sharing knowledge!!!

.:41i3n:.

At last #SEbook in my hands, thanx @humanhacker

At last, after been stuck so many days between Koeln and Paris due to Central Europe’s nasty weather conditions, the winner copy of “Social Engineering: The Art of Human Hacking” from SEORG’s RT contest, signed by the author himself, is finally in my hands!

CoverInlay

A perfect Christmas gift right on time! Thanx again Chris “l0gan” Hadnagy! I’ll get back to you on my review and maybe that podcast we talked about.

.:41i3n:.