Donkey On A Waffle
The New Workplace
Wed, 04 Aug 2010 10:18

Taken from Gartner Says the World of Work Will Witness 10 Changes During the Next 10 Years. Very true and very interesting read.. ...snip...

"The workplace is becoming more and more virtual, with meetings occurring across time zones and organizations and with participants who barely know each other, working on swarms attacking rapidly emerging problems. But the employee will still have a "place" where they work. Many will have neither a company-provided physical office nor a desk, and their work will increasingly happen 24 hours a day, seven days a week. In this work environment, the lines between personal, professional, social and family matters, along with organization subjects, will disappear. Individuals, of course, need to manage the complexity created by overlapping demands, whether from the new world of work or from external (non-work-related) phenomena. Those that cannot manage the underlying "expectation and interrupt overloads" will suffer performance deficits as these overloads force individuals to operate in an over-stimulated (information-overload) state."

Home | Tags: | Category: /generic | Link

Hacker's Poker Invitational
Tue, 22 Jun 2010 14:11

Hacker's Poker Invitational

Fear Uncertainty and Doubt

Exploiting Chips for Fun and Profit

ENOCHIPS

There are many good poker players in the world of information security. However some are better than others...

If you think your poker face is worth a crap, come play with the best of the best in our field. No corporate mumbo jumbo, no boring shwag, just real, true green, cash money! We won't take your information to sell you junk, nor do we even care who you are. If you buyin and win, the cash is YOURS!

The event is to be hosted at the Caesar's Palace Poker Room on July 28, 2010 at 6PM. You can buy in any time prior to the event by visiting the poker room and checking in at the registration desk. Buyin for the event is $200 USD payable at the time of registration. Game of choice for the event will be Texas Hold'em. This is the same game played on TV and at other major poker events. 100% of the entry fee goes to the prize pool with a small portion kept by Caesar's for hosting.

Start time is 6:00 PM by the poker room clock.

If you think you've got what it takes come take a shot with the rest of the wanna be poker players in the information security field. Determine which player gets the trophy, the bragging rights, and most importantly.. THE CASH!

RSVP not required, but preferred to ensure enough space.. so please RSVP

Home | Tags: | Category: /poker | Link

P/Invoke and CreateRemoteThread
Thu, 10 Jun 2010 17:17

More P/Invoke fun... creating a remote thread in a target process from C# using P/Invoke of Windows API calls.

Home | Tags: | Category: /programming | Link

Comments Gone
Tue, 08 Jun 2010 10:52

Comments on this blog are now disabled. They are nothing but annoying thanks to comment spammers and abusive people. I'm tired of it so they are toast. If you have a comment, email it to me (txs@donkeyonawaffle.org) and I'll respond/post as appropriate.

Home | Tags: | Category: /generic | Link

Openssl.NET Basics
Wed, 26 May 2010 15:03

Openssl wrappers for .NET are available at Sourceforge OpenSSL.NET. Very poorly documented but turns out to be very easy to use. Simply add the ManagedOpenSsl.dll reference to your c# code and have at it. Sample code:

Home | Tags: | Category: /programming | Link

P/Invoke CryptoAPI from C#
Tue, 25 May 2010 12:45

I had to do some basic P/Invoke calling from C# today and am sharing the code just for giggles. P/Invoke is essentially calling functions that reside in an unmanaged DLL from managed code. It's fairly straight forward to do with the hardest part being parsing the MSDN to get the proper signatures for the functions you wish to DLLImport. There is a great resource at pinvoke.net that contains user submitted signatures for cut and paste reuse. I highly recommend this resource. Last but not least here is my code that demonstrates encrypting and decrypting static blobs with hardcoded constant key values. Not real world, but a reasonable demonstration none the less.

Home | Tags: | Category: /programming | Link

Books Update
Wed, 12 May 2010 13:30

For those that don't know, I keep an updated list of books (novels mostly) read and my reviews of them at this link. Have fun and let me know what you think.

Home | Tags: | Category: /generic | Link

More Talks
Mon, 03 May 2010 12:37

I'll be giving a talk at the IT Hot Topics Conference on Thursday May 6th and 7th. Come on out for an interesting Mobile Spyware discussion and some great time in the sun!

Home | Tags: | Category: /infosec | Link

Source Boston 2010
Mon, 26 Apr 2010 16:34

I just returned from Source Boston 2010 conference and had a fantastic time. I presented a slightly modified version of my Shmoocon talk on Blackberry Mobile Spyware. Once again, the people were awesome and the talks were phenomenal. I highly recommend getting to this conference in 2011.

Link to all of my papers and presentations

Home | Tags: | Category: /infosec | Link

Malicious Mobile Code Meets Exploit Selling
Thu, 25 Mar 2010 15:58

Sorry I don't post much here anymore. I do most of my posting on twitter as @txs_ and on my employers blog Zero In A Bit. Keep an eye on those two places for the latest and greatest. I'll try to mirror a link here when I remember.

New post entitled Malicious Mobile Code Meets Exploit Selling just went up at This Link!

Home | Tags: | Category: /infosec | Link


Page 1 of 15  [Next]