<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hak5 - Technolust since 2005 &#187; mubix</title>
	<atom:link href="http://Hak5.org/tag/mubix/feed" rel="self" type="application/rss+xml" />
	<link>http://Hak5.org</link>
	<description>Trust Your Technolust</description>
	<lastBuildDate>Thu, 17 May 2012 20:49:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Hak5 1009 &#8211; Rel1k with SET, Mubix with Metasplot and a Fire Breathing Pony</title>
		<link>http://Hak5.org/episodes/hak5-1009</link>
		<comments>http://Hak5.org/episodes/hak5-1009#comments</comments>
		<pubDate>Wed, 19 Oct 2011 17:18:26 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 10]]></category>
		<category><![CDATA[dave kennedy]]></category>
		<category><![CDATA[derbycon]]></category>
		<category><![CDATA[derbycon 2011]]></category>
		<category><![CDATA[fire breathing pony]]></category>
		<category><![CDATA[hackerspace]]></category>
		<category><![CDATA[lvl1]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[rapid7]]></category>
		<category><![CDATA[rel1k]]></category>
		<category><![CDATA[SET]]></category>
		<category><![CDATA[social engineering toolkit]]></category>

		<guid isPermaLink="false">http://Hak5.org/?p=4185</guid>
		<description><![CDATA[<iframe width="640" height="360" src="http://www.youtube-nocookie.com/embed/videoseries?list=PLF4772023E84C4846&#38;hl=en_US&#38;hd=1&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;autohide=1&#038;showinfo=0&#038;rel=0&#038;showsearch=0" frameborder="0" allowfullscreen></iframe>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fhak5-1009"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fhak5-1009&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This time on the show, we talk to Rel1k, AKA Dave Kennedy, founder of Derbycon and the Social Engineering Toolkit. Mubix is back in the house with all things Metasploit. And Jon from the LVL1 hackerspace shares with us a very special animatronic pony. That breathes fire. Yeah. All that and more this time on Hak5!</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://videos.revision3.com/revision3/web/hak5/1009/hak5--1009--returnofthederbycon--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://videos.revision3.com/revision3/web/hak5/1009/hak5--1009--returnofthederbycon--large.h264.mp4">Download MP4</a></p>
<p><span id="more-4185"></span></p>
<div align="center">
<iframe width="640" height="360" src="http://www.youtube-nocookie.com/embed/videoseries?list=PLF4772023E84C4846&amp;hl=en_US&amp;hd=1&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;autohide=1&#038;showinfo=0&#038;rel=0&#038;showsearch=0" frameborder="0" allowfullscreen></iframe>
</div>
<p>If you&#8217;re into Hak5 you&#8217;ll love our new show by hosts Darren Kitchen and Shannon Morse. Check out <a href="http://www.revision3.com/haktip">HakTip</a>!</p>
<p>Whether you&#8217;re a beginner or a pro, <a href="http://www.revision3.com/haktip">HakTip</a> is essential viewing for current and aspiring hackers, computer enthusiasts, and IT professionals. With a how-to approach to all things Information Technology, HakTip breaks down the core concepts, tools, and techniques of Linux, Wireless Networks, Systems Administration, and more</p>
<p>And let&#8217;s not forget to mention that you can follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> and <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>, <a href="http://revision3.com/hak5/subscribe" target="_blank">Subscribe</a> to the show and get all your Hak5 goodies, including the infamous <a href="http://hakshop.com/collections/frontpage/products/wifi-pineapple" target="_blank">WiFi Pineapple</a> over at <a href="http://hakshop.com/" target="_blank">HakShop.com</a>. If you have any questions or suggestions please feel free to contact us at <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>.</p>
<p>No matter what your project is <a href="http://www.domain.com" target="_blank">Domain.com</a> has what you need to register, host and promote your next big idea&#8230;even if it&#8217;s ffffggggggggggggggghjk.com. Domain.com is owning the competition with cheap domain names and hassle-free service. Their easy checkout process and domain discovery system makes it easy to select the domain that&#8217;s right for you and setup your website without hassle. <a href="http://www.domain.com" target="_blank">Domain.com</a> will even transfer your domain from another registrar and hook you up with another year of service for under $6.50 when you use coupon code <b>HAK5</b> at checkout. That&#8217;s right, our code <b>HAK5</b> will score you 15% off. Don&#8217;t forget, when you think domain names, think <a href="http://www.domain.com" target="_blank">Domain.com</a></p>
<p>There are two things IT professionals and their clients have in common – They want the job done right and they want it done fast! That’s why I highly recommend GoToAssist Express, by Citrix to anyone in IT. It’s the fastest, most reliable support tool. GoToAssist Express puts clients at ease with its simple, secure remote support&#8230; And it puts you in a position to do what YOU do best &#8211; Access, diagnose and  resolve the problem!  With the fastest support experience and ability to service multiple clients at once you&#8217;ll be increasing revenue while actually improving your customer service reputation! Take care of clients while they&#8217;re away with the unattended support feature and get unlimited use for one flat fee. When it comes to remote support tools, I think GoToAssist Express is the best &#8211; so fast and reliable! Don’t wait &#8211; start using GoToAssist Express today! Hak5 viewers can try it FREE for 30 Days Visit  <a href="http://www.GoToAssist.com/hak5" target="_blank">GoToAssist.com/hak5</a></p>
<p>For only $19.99 per month get the 4G Mobile HotSpot and connect up to 5 devices (iPad® , iPod touch ® , cameras, laptops, portable gaming devices and more) to America’s Largest 4G Network, ™ overage free. <a href="http://www.tmobile.com" target="_blank">T-Mobile</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/hak5-1009/feed</wfw:commentRss>
		<slash:comments>5</slash:comments>
<enclosure url="http://videos.revision3.com/revision3/web/hak5/1009/hak5--1009--returnofthederbycon--hd720p30.h264.mp4" length="508398131" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/1009/hak5--1009--returnofthederbycon--large.h264.mp4" length="280254399" type="video/mp4" />
		</item>
		<item>
		<title>Hak5 915 – Extracting browser passwords, EXIF data tools, Maker Faire and more</title>
		<link>http://Hak5.org/episodes/episode-915</link>
		<comments>http://Hak5.org/episodes/episode-915#comments</comments>
		<pubDate>Wed, 01 Jun 2011 21:42:56 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 9]]></category>
		<category><![CDATA[a320]]></category>
		<category><![CDATA[a330]]></category>
		<category><![CDATA[beginner]]></category>
		<category><![CDATA[beginning]]></category>
		<category><![CDATA[dingo]]></category>
		<category><![CDATA[dingo digital]]></category>
		<category><![CDATA[dingux]]></category>
		<category><![CDATA[Doom]]></category>
		<category><![CDATA[gameboy]]></category>
		<category><![CDATA[gaming]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[homebrew]]></category>
		<category><![CDATA[learning]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[metaspoit framework]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[nbns]]></category>
		<category><![CDATA[netbios]]></category>
		<category><![CDATA[netbios name service]]></category>
		<category><![CDATA[newbie]]></category>
		<category><![CDATA[noob]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[prboom]]></category>
		<category><![CDATA[starting]]></category>
		<category><![CDATA[where to begin]]></category>

		<guid isPermaLink="false">http://Hak5.org/?p=3616</guid>
		<description><![CDATA[<object width="555" height="342"><param name="movie" value="http://www.youtube.com/v/J0A49CdBcLY?version=3&#38;hl=en_US&#38;fs=1&#38;hd=1&#38;showinfo=0&#38;rel=0&#38;showsearch=0" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="342" src="http://www.youtube.com/v/J0A49CdBcLY?version=3&#38;hl=en_US&#38;fs=1&#38;hd=1&#38;showinfo=0&#38;rel=0&#38;showsearch=0" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-915"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-915&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This time on the show, we&#8217;re cracking the code: EXIF Data tools, Windows login hash cracking, Extracting passwords from Firefox and other browsers, what&#8217;s in that P-CAP file and special report form Maker Faire 2011. All that and more, this time on Hak5.</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0915/hak5--0915--0-o--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0915/hak5--0915--0-o--large.h264.mp4">Download MP4</a> <a class="wmv" href="http://videos.revision3.com/revision3/web/hak5/0915/hak5--0915--0-o--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-3616"></span></p>
<p><object width="555" height="342"><param name="movie" value="http://www.youtube.com/v/J0A49CdBcLY?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="342" src="http://www.youtube.com/v/J0A49CdBcLY?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object></p>
<p><b>FirePassword</b></p>
<p>You know how you can store and save all you login credentials in Firefox, Chrome, as well as other browsers? Well, maybe that&#8217;s not such a great idea. There are several portable (yes, portable!) tools that can instantly recover login credentials stored by Firefox, Chrome and others. Broswers store your username and password for every website you visit as long as you give them consent in the settings. The credentials are saved by Firefox, Chrome and others in a sign-on database that is securely encrypted. Today I&#8217;m focusing on Firefox.</p>
<p><a href="http://securityxploded.com/firepassword.php" target="_blank">FirePassword</a>, the tool in question today, can instantly decrypt and recover the data even if there&#8217;s a master password protecting it.<br />
Not only this, but FirePassword can even recover sign-on passwords for other profiles (on the same system) and info from other OS&#8217;s like Linux and Mac. This can obviously be used for malicious intent, or can be used for the greater good of forensic investigators who need to transmit data from the target PC to another machine without disrupting the original target machine.</p>
<p>FirePassword portable works from XP-7, and loads DLLs from the firefox executable location automatically. DLLs aren&#8217;t packaged with the tool, and the newest version presents an easy to use color based display so you can clearly view password details.</p>
<p>Lets get started on cracking my Firefox passwords!</p>
<p>To install, follow the on screen instructions from securityxploded.com. They have nice detailed instructions on how to use the program so you shouldn&#8217;t have a problem. </p>
<p>Once installed, open your command prompt and change directory to your FirePassword.exe folder, probably in your program files.<br />
Mine is c:\ Program Files (x86)\SecurityXploded\FirePassword\. Once there, type in FirePassword.exe and hit enter. You should see a screen kind of like the one on my monitor.</p>
<p>It will list every website, username, and password you have saved into FireFox.<br />
It&#8217;ll also show you any OLD passwords that you never deleted out of the FireFox settings.</p>
<p>If you have a master password set on FireFox, you will need that password to be able to see your other passwords. For example, I will go into the FireFox options, choose Master Password and set it.</p>
<p>Over in my CMD, I&#8217;ll type FirePassword.exe -m kerby and click enter. Now it&#8217;ll give me my other passwords. If you do this wrong, you&#8217;ll get this error code.</p>
<p>You can also copy the Firefox profile files from different operating system such as Linux or Mac to the Windows system locally and then specify that path with FirePassword to recover data from the offline profiles.</p>
<p>It&#8217;s pretty surprising how easy this really is for anyone to discover. To protect yourself, do what I do and DON&#8217;T save your passwords in FireFox! Make your machine log off every time you close it or leave it idle for more than a minute. Anything, but really, just don&#8217;t save your passwords.</p>
<p>It&#8217;s also worth mentioning the <a href="http://www.nirsoft.net/utils/web_browser_password.html" target="_blank">WebBrowserPassView</a> tool from NirSoft. It&#8217;s a password recovery tool for Internet Explorer, Firefox, Chrome and Opera.</p>
<p>Now, if you&#8217;ve got another tool for me to check out, email <a href="mailto:feedback@hak5.org">feedback@hak5.org</a></p>
<p>If you&#8217;re into Hak5 you&#8217;ll love our new show by hosts Darren Kitchen and Shannon Morse. Check out <a href="http://www.revision3.com/haktip">HakTip</a>!</p>
<p>Whether you&#8217;re a beginner or a pro, <a href="http://www.revision3.com/haktip">HakTip</a> is essential viewing for current and aspiring hackers, computer enthusiasts, and IT professionals. With a how-to approach to all things Information Technology, HakTip breaks down the core concepts, tools, and techniques of Linux, Wireless Networks, Systems Administration, and more</p>
<p>And let&#8217;s not forget to mention that you can follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> and <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>, <a href="http://revision3.com/hak5/subscribe" target="_blank">Subscribe</a> to the show and get all your Hak5 goodies, including the infamous <a href="http://hakshop.com/collections/frontpage/products/wifi-pineapple" target="_blank">WiFi Pineapple</a> over at <a href="http://hakshop.com/" target="_blank">HakShop.com</a>. If you have any questions or suggestions please feel free to contact us at <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-915/feed</wfw:commentRss>
		<slash:comments>8</slash:comments>
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0915/hak5--0915--0-o--hd720p30.h264.mp4" length="583619530" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0915/hak5--0915--0-o--large.h264.mp4" length="265867056" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0915/hak5--0915--0-o--large.wmv9.wmv" length="394102095" type="video/asf" />
		</item>
		<item>
		<title>Hak5 914 &#8211; Doom on the Dingoo and Mubix spoofs NetBIOS with Metasploit</title>
		<link>http://Hak5.org/episodes/episode-914</link>
		<comments>http://Hak5.org/episodes/episode-914#comments</comments>
		<pubDate>Wed, 25 May 2011 16:00:47 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 9]]></category>
		<category><![CDATA[a320]]></category>
		<category><![CDATA[a330]]></category>
		<category><![CDATA[beginner]]></category>
		<category><![CDATA[beginning]]></category>
		<category><![CDATA[dingo]]></category>
		<category><![CDATA[dingo digital]]></category>
		<category><![CDATA[dingux]]></category>
		<category><![CDATA[Doom]]></category>
		<category><![CDATA[gameboy]]></category>
		<category><![CDATA[gaming]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[homebrew]]></category>
		<category><![CDATA[learning]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[metaspoit framework]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[nbns]]></category>
		<category><![CDATA[netbios]]></category>
		<category><![CDATA[netbios name service]]></category>
		<category><![CDATA[newbie]]></category>
		<category><![CDATA[noob]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[prboom]]></category>
		<category><![CDATA[starting]]></category>
		<category><![CDATA[where to begin]]></category>

		<guid isPermaLink="false">http://Hak5.org/?p=3550</guid>
		<description><![CDATA[<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/M04klMfJR54?version=3&#38;hl=en_US&#38;fs=1&#38;hd=1&#38;showinfo=0&#38;rel=0&#38;showsearch=0" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="312" src="http://www.youtube.com/v/M04klMfJR54?version=3&#38;hl=en_US&#38;fs=1&#38;hd=1&#38;showinfo=0&#38;rel=0&#38;showsearch=0" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-914"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-914&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This time on the show, NetBIOS Name Service spoofing in Metasplot with our friend Mubix, Playing Doom on a Dingoo Digital with the Dingux Linux distro and an alternative disc space reporter.<br />
All that and more, this time on Hak5.</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0914/hak5--0914--notsureyet--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0914/hak5--0914--notsureyet--large.h264.mp4">Download MP4</a> <a class="wmv" href="http://videos.revision3.com/revision3/web/hak5/0914/hak5--0914--notsureyet--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-3550"></span></p>
<p><object width="555" height="342"><param name="movie" value="http://www.youtube.com/v/M04klMfJR54?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="342" src="http://www.youtube.com/v/M04klMfJR54?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object></p>
<p><strong>Hacker Headlines</strong></p>
<p>I was going to report on how Android devices prior to version 2.3.4 were vulnerable to a sidejacking attack due to the fact that they authenticated via HTTP instead of HTTPS. Similar to a cookie, the AuthToken of the Calendar and Contacts syncing service is good for up to two weeks and is device agnostic. But just a day after security researchers broke the story <a href="http://news.cnet.com/8301-27080_3-20064011-245.html" target="_blank">Google plugged the  hole</a>. A Google spokeman said in a statement &#8220;This fix requires no action from users and will roll out globally over the next few days.&#8221; Poor unencrypted HTTP &#8212; the protocol isn&#8217;t getting as much love since Firesheep&#8230;</p>
<p>There&#8217;s been a bit of <a href="http://www.msnbc.msn.com/id/43032487/ns/technology_and_science-security/" target="_blank">trouble brewing in the Android marketplace</a>. 11 apps that were in the Android marketplace were embedded with some malicious code that triggered a text message to be sent to three premium-rate numbers in China. Those text messages sign up the mobile user for a paid subscription service without their knowledge or approval. Google has since taken down those apps but there could be more. Malware like this has been growing on the Android platform, 400% since last summer, and this is just another hiccup in the security of Android Apps.</p>
<p>Poor Sony, they&#8217;ve consistently topped out hacker headlines and while I&#8217;m happy to report that they&#8217;ve reopened the PlayStation Network it hasn&#8217;t been without setbacks. Just two days after the service reopened <a href="http://www.mcvuk.com/news/44380/Sony-suffers-frech-hack" target="_blank">attackers went after the password reset function</a>, which supposedly only required email and date of birth. While far from a full blown remote exploit the bug has caused Sony to disable the function on PlayStation.com and Qriocity.com. In the meantime you can still sign into the PSN via your PSP or PlayStation 3 devices.</p>
<p>In awesome sauce news, a twitter vigilante found a guy&#8217;s stolen laptop using a program we had discussed many episodes back called Prey. Sean Power&#8217;s laptop was stolen and after just a few days, he was able to score a webcam photo of the thief using the free tool. Cops wouldn&#8217;t help him, so he went to Twitter. A follower of Sean&#8217;s, and also a stranger, went to the bar where the laptop was last seen and confronted the thief. He got the laptop back and now all is good. Hooray for social networking and free programs!</p>
<p>This video just started making its round and I&#8217;m going to take the liberty of directly quoting <a href="http://www.teravolt.org/capboom.htm" target="_blank">Teravolt.org</a>:</p>
<blockquote>
<p>Electrolytic capacitors are constructed using an electrolyte-soaked piece of paper between two strips of aluminum foil. One piece of foil is oxidized and this ultra-thin coating of aluminum oxide becomes the capacitor&#8217;s dielectric. Because this layer is so thin and has a high dielectric constant a large amount of capacitance can be squeezed inside of a small space, even more so when the foil is rolled up tightly.</p>
<p>Electrolytics have one flaw though; they are polarized. When a reverse voltage greater than 1.5V hits the capacitor the aluminum oxide starts to reduce and its insulating properties are lost. This destroys the capacitive effect of the device and essentially the capacitor short circuits which allows a lot of current to flow. A lot of heat is generated, heat which boils the electrolyte and causes pressure to build inside the capacitor.</p>
<p>Then it goes boom!
</p></blockquote>
<p><strong>Kerby&#8217;s Internet Protocol Star Trek Captain of the Week</strong><br />
Picard, duh</p>
<p><strong>HakTip: JDiskReport</strong></p>
<p>As an alternative to WinDerStat which I explained a few weeks ago, you can try out JDiskReport. This freeware tool enables you to understand what files on your drive take up what amount of space. This tool can help you figure out what files or folders are just sitting on your hard drive taking up space. JDiskReport features a Size Perspective pie chart for easy viewing, a size distribution tool, modified size distribution view, file extension type size distrubution, and a top 100 list of your largest files.</p>
<p>To use, go to jgoodies.com and download the tool. Java must be installed for this to work and it will run on Windows or Mac. Open JDiskReport and choose &#8216;Scan A File Tree&#8217;. This will scan all the files inside a chosen drive. After a few moments, JDiskReport will display an easy to navigate pie chart, showing you which files take up so much room on your computer. You can right click to open explorer and browse to those files to edit or delete them. You can also choose things such as excluding a directory for the scan under the preferences menu on the filter tab.</p>
<p>For more info on JDiskReport check out jgoodies.com, and tell me what you think!</p>
<p>Got an idea for a tip? Share them with us at tips@hak5.org. And now for our sponsor.</p>
<p>NetBIOS Name Service spoofing in Metasploit<br />
Segment Descirption (HTML): </p>
<p>This week our friend <a href="http://www.room362.com" target="_blank">Mubix</a> returns to demonstrate an awesome <a href="http://www.metasploit.com/modules/auxiliary/spoof/nbns/nbns_response" target="_blank">Metaspoit module for spoofing NetBIOS Name Service</a>.</p>
<p><strong>Trivia!</strong></p>
<p>Last weeks trivia: This popular project was a light installation in Berlin that transformed a building front into a giant low-resolution monochrome computer screen. What&#8217;s the projects name?</p>
<p>The Answer was: Project Blinkenlights</p>
<p>This week&#8217;s question is: Including icons for snow men, octopuses and alien faces, this specification is the Japanese term for emoticons.<br />
Answer at <a href="http://www.hak5.org/trivia" target="_blank">hak5.org/trivia</a> to win some sweet swag. And now a word from our sponsor.</p>
<p><strong>Doom on the Dingo</strong></p>
<p>Last week I showed you how to install Dingux, a version of Linux, onto your Dingoo Digital. Today, I&#8217;m digging a bit deeper into the world of the Dingoo by setting up a game and an emulator. Lets get started!</p>
<p>First, check out nongnu.org/freedom and download the Complete Iwad from the download page. Extract the file to your PC. Copy the doom2.wad file to your mini SD card that has Dingux on it. You&#8217;ll need to copy it to the local\games\prboom\ folder and make sure it is called Doom2.wad. Once copied, you can plug the SD card into your Dingoo Digital. Make sure it&#8217;s turned off any time you remove or put the SD card in the slot because it&#8217;ll freeze if you take it out while cut on.</p>
<p>If you don&#8217;t want the freedoom version of Doom, you can also try original Doom. To do so, go to doomarchive.com and download the Doom1.wad. Extract this zip file anywhere on your PC. Now, copy the doom1.wad to the local\games\prboom\ folder. Rename doom2.wad from the freedoom.com website. If you decide not to rename doom2.wad, when you boot up Doom on Dingux, it&#8217;ll default to the freedoom doom2.wad instead of doom1.wad.</p>
<p>Now that you have your two versions of doom installed and have chosen which one you want to boot, put the SD card into your Dingoo Digital and hold down select while pressing up on the power button. When Dingux boots, choose Doom. This will be the topmost game under the games icon.</p>
<p>Ok, now after defeating one of the best games of all time, shut off your Dingoo and take the SD card out to install an emulator.</p>
<p>I&#8217;ve chosen Super Mario World&#8230; because it&#8217;s awesomely epic.</p>
<p>Get a super mario world ROM from anywhere online. It should be called SuperMarioWorld.smc. Copy this file to the local\emulators\snes\9x folder. Now, plug the SD card back in the Dingoo Digital and boot up Dingux again, this time choose the Emulators Icon, scroll down to SNES, and choose Super Mario World. Tada! You now have Awesome games at your fingertips to play on your next subway ride.</p>
<p>For questions or comments, email me at <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>. </p>
<p><strong>Emails</strong></p>
<p>Conner writes:</p>
<blockquote><p>
Hey Hak5,<br />
I know you get a lot of emails so i will keep this to the point. I am new to the computer / technology world and find it hard to follow parts of your show. I&#8217;m not asking you to change the script, but I&#8217;m simply asking where are the best resources or really the best way to break into this and get caught up. I have an interest in technology and I know that it might take some work but really any general direction would be much appreciated.<br />
Thank you in advance.
</p></blockquote>
<p>Darren recommends picking up a programming language. He isn&#8217;t going to get into a religious debate about which is best but learning any moden language will give you a fundamental understanding of how programs operate. There is a fantastic forum thread at <a href="http://forums.hak5.org/index.php?showtopic=913" target="_blank">forums.hak5.org called Hacking: Where to begin</a> which is a great resource for those new to hacking.</p>
<p>Aaron writes:</p>
<blockquote><p>
Dear Hak5<br />
What is the best, free, open source, virtualization system for Linux?<br />
Love Hak5!<br />
Thanks
</p></blockquote>
<p>Darren&#8217;s current squeeze for servers is <a href="http://pve.proxmox.com/wiki/Main_Page" target="_blank">Proxmox VE</a>, which is a wonderful open source implementation of <a href="http://wiki.openvz.org/Main_Page" target="_blank">OpenVZ</a> and <a href="http://www.linux-kvm.org/page/Main_Page" target="_blank">KVM</a> &#8212; two of the most popular virtualization technologies on Linux. He also still loves <a href="http://www.virtualbox.org/" target="_blank">VirtualBox</a> for desktop virtualization.</p>
<p>If you&#8217;re into Hak5 you&#8217;ll love our new show by hosts Darren Kitchen and Shannon Morse. Check out <a href="http://www.revision3.com/haktip">HakTip</a>!</p>
<p>Whether you&#8217;re a beginner or a pro, <a href="http://www.revision3.com/haktip">HakTip</a> is essential viewing for current and aspiring hackers, computer enthusiasts, and IT professionals. With a how-to approach to all things Information Technology, HakTip breaks down the core concepts, tools, and techniques of Linux, Wireless Networks, Systems Administration, and more</p>
<p>And let&#8217;s not forget to mention that you can follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> and <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>, <a href="http://revision3.com/hak5/subscribe" target="_blank">Subscribe</a> to the show and get all your Hak5 goodies, including the infamous <a href="http://hakshop.com/collections/frontpage/products/wifi-pineapple" target="_blank">WiFi Pineapple</a> over at <a href="http://hakshop.com/" target="_blank">HakShop.com</a>. If you have any questions or suggestions please feel free to contact us at <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-914/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0914/hak5--0914--notsureyet--hd720p30.h264.mp4" length="763354517" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0914/hak5--0914--notsureyet--large.h264.mp4" length="351569349" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0914/hak5--0914--notsureyet--large.wmv9.wmv" length="522851987" type="video/asf" />
		</item>
		<item>
		<title>Hak5 912 &#8211; Stealing Windows passwords. Shannon&#8217;s hacking with the Katana USB boot key, automated file renamers, Firefox security extensions &amp; more</title>
		<link>http://Hak5.org/episodes/episode-912</link>
		<comments>http://Hak5.org/episodes/episode-912#comments</comments>
		<pubDate>Wed, 11 May 2011 19:00:00 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 9]]></category>
		<category><![CDATA[access point]]></category>
		<category><![CDATA[automated]]></category>
		<category><![CDATA[automated file renamers]]></category>
		<category><![CDATA[automatic]]></category>
		<category><![CDATA[automation]]></category>
		<category><![CDATA[bandwidth]]></category>
		<category><![CDATA[boot kit]]></category>
		<category><![CDATA[bulk]]></category>
		<category><![CDATA[extension]]></category>
		<category><![CDATA[file renamer]]></category>
		<category><![CDATA[file renaming]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[Firefox security extensions & more]]></category>
		<category><![CDATA[hack from a cave]]></category>
		<category><![CDATA[Hak.5]]></category>
		<category><![CDATA[Katana]]></category>
		<category><![CDATA[Keylogger]]></category>
		<category><![CDATA[m0n0wall]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[Monowall]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[PFsense]]></category>
		<category><![CDATA[plugin]]></category>
		<category><![CDATA[rename]]></category>
		<category><![CDATA[room362]]></category>
		<category><![CDATA[Router]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security suite]]></category>
		<category><![CDATA[Smoothwall]]></category>
		<category><![CDATA[Stealing Windows passwords. Shannon's hacking with the Katana USB boot key]]></category>
		<category><![CDATA[untangle]]></category>
		<category><![CDATA[USB]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://Hak5.org/?p=3484</guid>
		<description><![CDATA[<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/vC6wmmgp20M?version=3&#38;hl=en_US&#38;fs=1&#38;hd=1&#38;showinfo=0&#38;rel=0&#38;showsearch=0" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="312" src="http://www.youtube.com/v/vC6wmmgp20M?version=3&#38;hl=en_US&#38;fs=1&#38;hd=1&#38;showinfo=0&#38;rel=0&#38;showsearch=0" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-912"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-912&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This time <a href="http://www.hak5.org/" target="_blank">Hak5</a>, <a href="http://room362.com/" target="_blank">Mubix</a> joins us for more mischevious <a href="http://www.rapid7.com/" target="_blank">Metasploit</a> fun. We&#8217;re stealing Windows logins with a crafty keylogger. Shannon&#8217;s hacking from a cave with the <a href="http://www.hackfromacave.com/katana.html" target="_blank">Katana USB security suite</a>. Plus, automating file renaming in Windows, Firefox security extensions and so much more.</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0912/hak5--0912--imonahorse--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0912/hak5--0912--imonahorse--large.h264.mp4">Download MP4</a> <a class="wmv" href="http://videos.revision3.com/revision3/web/hak5/0912/hak5--0912--imonahorse--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-3484"></span></p>
<p><object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/vC6wmmgp20M?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="312" src="http://www.youtube.com/v/vC6wmmgp20M?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object></p>
<p><span style="font-weight: bold;">Hacker Headlines</span></p>
<p>Our favorite framework just got a major update. <a href="http://blog.metasploit.com/2011/05/metasploit-framework-370-released.html" target="_blank">Metasploit 3.7.0 has been released</a> and with it comes a major backend overhaul. You should notice a significant performance increase in handling multiple sessions as well as a nice little update to the SMB stack that&#8217;ll all you to perform pass-the-hash attacks against Windows Server 2008. Find out more about this and the 35-some new remote exploits at Rapid7.</p>
<p><a href="http://www.engadget.com/2011/04/29/square-to-add-encryption-to-mobile-card-reader-skimmers-put-on/" target="_blank">Square has opted for encryption</a> on their mobile credit card readers! Square, a successful company that enables just about anyone to be able to take payments through their iPhone, went through a bit of a tiff with Verifone, who recently said Square was basically sending out card skimmers to whoever wanted them. It sounds like Square deemed it necessary to update their hardware, and decided to make a new line of the Square credit card readers. It sounds like Square is becoming a real competitor to Verifone, and a legit one at that.</p>
<p><a href="http://support.apple.com/kb/DL1358" target="_blank">iOS 4.3.3 has arrived</a> bringing changes to the way the controversial crowd sourced database cache, or &#8220;consolidated.db&#8221; file works. The update reduces size of the cache, no longer backs up the cache to iTunes, and deletes it when ios location services are turned off. Apple acknowledges that iPhones had been storing as much as a years worth of data even if location services were off, which they claimed as a bug. The database is still unencrypted.</p>
<p>This is some nice news to hear! Jeff Moss, the founder of the infamous hacker conference, Defcon in Las Vegas, <a href="http://news.cnet.com/8301-27080_3-20058434-245.html?tag=mncol;title" target="_blank">has been named as ICANN (Internet Corporation for Assigned Names and Numbers)&#8217;s chief security officer</a>. Rod Beckstrom, ICANN&#8217;s president and chief executive officer, said &#8220;I can think of no one with a greater understanding of the security threats facing Internet users and how best to defend against them than Jeff Moss. He has the in-depth insider&#8217;s knowledge that can only come from fighting in the trenches of the ongoing war against cyber-threats.&#8221;</p>
<p>With the <a href="http://news.cnet.com/8301-27080_3-20059737-245.html?tag=mncol;txt" target="_blank">PlayStation Network is still down</a> following a massive data breach, Sony has claimed before the U.S. House Committee on Energy and Commerce that a file named &#8216;Anonymous&#8217; was found during the investigation. The file contained the words &#8220;we are legion&#8221;, Kazuo Hirai, chairman of the board of directors of Sony Computer Entertainment America explained. Anonymous, who had previously conducted a large-scale distributed denial of service attack on Sony during the GeoHot case, has denied involvement.</p>
<p><span style="font-weight: bold;">Kerby&#8217;s JPop Group of the week</span></p>
<p><a href="http://www.youtube.com/watch?v=i-jdqZ2D5M0" target="_blank">SCANDAL &#8211; Haruka</p>
<p></a><span style="font-weight: bold;">HakTip: Bulk file renaming</span></p>
<p>We got an email from Chris G, aka Macrohard in the Hak5 forums, who said:</p>
<blockquote><p>This was the free bulk naming software I was going to try out. I have a vendor that likes to send me a large assortment of files with a lousy .extension name, and I need to work on getting them to process for a document retention system.</p>
<p>Bulk Rename Utility is available at <a href="http://www.bulkrenameutility.co.uk/" target="_blank">bulkrenameutility.co.uk</a> and it lets you rename several files with a click of your mouse. This free software comes in 32 or 64 bit for Windows.</p>
<p>After downloading and installing, choose a folder or a group of files that you want to change.</p>
<p>After highlighting your files, choose what you want to change. I chose to change the file name (Box 2), and change the case (Box 4) to upper case. Then, I added numbering to the end of each photo (Box 10). All of your changes can be seen under New Name in the file box at the top. Once finished, click Rename. You will get a warning telling you the files are about to be changed. Click ok after double checking and tada! All of your selected files have been fixed in seconds.</p>
<p>If you chose to do this during the install, you can also have a Windows Explorer Extension included when you right click a series of files.</p></blockquote>
<p>This saves me TONS of time renaming all those photos from CES. Got a tip? We&#8217;ll share it! Tips@hak5.org.</p>
<p><span style="font-weight: bold;">Keylogging Windows logins with Mubix</span></p>
<p>We have the pleasure of being joined by <a href="http://www.room362.com/" target="_blank">Mubix</a>, aka Rob Fuller, to demonstrate a crafty Metasploit script for keylogging Winlogon.exe.</p>
<p><span style="font-weight: bold;"><br />
Trivia!</span></p>
<p>Last weeks trivia: The UK version of this device represents 10 Pence with a 1000 Hz tone. What is the device? The Answer was: Red Box</p>
<p>This week&#8217;s question is: Serving the Pacific Northwest, Midwest and Rocky Mountains, this Regional Bell Operating Center has merged with neither Verizon or AT&amp;T.</p>
<p>Answer at <a href="http://www.hak5.org/trivia" target="_blank">hak5.org/trivia</a> to win some sweet swag.</p>
<p><span style="font-weight: bold;"><br />
The Katana USB Security Suite</span></p>
<p>Last week I demo&#8217;d the easy way to install Konboot and way back in Season 8 I had showed you Katana. Katana is a portable multi-boot security suite with all sorts of penetration testing and security applications built into one single flash drive. It has been updated a ton since way back when, so I wanted to do a quick follow up on this lovely piece of awesomesauce version 2.0.</p>
<p>First close down your anti virus software. It&#8217;ll freak out when you download Katana due to the tools available through the program. Download the torrent of Katana at hackfromacave.com. It&#8217;s a hefty 4 gigs big so have tons of room and an 8 gig flash drive for the install.</p>
<p>Extract the .rar to the root of your USB stick. Open the root of your flash drive, open the boot folder, and right click the ./bootinst.bat batch file and choose &#8220;&#8221;run as an Administrator&#8221;".</p>
<p>Now you have two things you can do. First, check out the Katana Toolkit on your windows machine. This application can run various tools such as KeePass and Unstopable Copier.</p>
<p>Second, you can boot up the Katana boot disc. Unplug your drive, and power down your computer. Plug the flash drive back in and boot from it.</p>
<p>If it works, and it should, you&#8217;ll see the screen I see here. Use your arrow keys to navigate up and down through the various tools. For my example, I&#8217;m going to boot into Ophcrack, a good tool for your forgetful sibling when they lost their Window&#8217;s password. It has built in rainbow tables and can figure out the password in a few seconds. So mine was &#8216;game&#8217;, which you just lost. Ophcrack was able to figure out my simple password with no problem, letting me back into my computer. You&#8217;ll notice in Katana you still will have the problem with 64 bit machines running Kon-Boot. If this is the case, first open the boot directory in the root of the Katana drive, then copy the files &#8216;vesamenu.c32&#8242; and &#8216;chain.c32&#8242; from this directory into the syslinux/kon-boot directory.</p>
<p>You&#8217;ll have to go through a process of choosing Kon-Boot, then boot 2nd HDD, then going back to the Katana main menu. Go back into Kon-Boot and select the next boot from HDD choice. This will enable Kon-Boot to finally work hopefully, but I was having issues with it not working correctly.</p>
<p>This is the general idea of how to get Kon-Boot to work as well on Iron Geek&#8217;s blog that I mentioned last week, so maybe you&#8217;ll have better luck on your machine!</p>
<p>I got an email from the creator, Ronin, giving me some recent tips and tricks with Katana such as:</p>
<ul>
<li>Using the Katana Tool Kit from a locked down Windows system</li>
<li>Write blocking the Katana drive for cheap using an SD Card</li>
<li>Using a live CD to avoid needing to access Password blocked BIOSs to modify the Boot Order for USB to Boot.</li>
</ul>
<p>&nbsp;</p>
<p>Katana is a very handy tool for anyone interested in learning more about security and penetration testing. It&#8217;s also a great application to have in case you ever need any of the tools available in the ToolKit. Several tools have been added since the initial release of Katana, so I definitely suggest you check out version 2.0. Check out more from Ronin at hackfromacave.com and Email me at feedback@hak5.org with your favorite security tools or bootkits.</p>
<p><span style="font-weight: bold;">Emails</span></p>
<p>Ben writes:</p>
<blockquote><p>Hey Hak5 guys! Regularly at work I use Firebug and HTTPFox FireFox add-ons; do you guys recommend any other &#8220;&#8221;must-have&#8221;" security testing Firefox addons? Loving the show; keep up the great work! <img src='http://Hak5.org/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p></blockquote>
<p>Darren recommends <a href="https://addons.mozilla.org/en-US/firefox/addon/noscript/" target="_blank">NoScript</a>, as well as <a href="https://addons.mozilla.org/en-us/firefox/addon/badpass/" target="_blank">BadPass</a>, <a href="https://addons.mozilla.org/en-US/firefox/addon/lastpass-password-manager/" target="_blank">LastPass</a>, <a href="http://keepass.info/plugins.html" target="_blank">Keepass</a>, <a href="https://addons.mozilla.org/en-US/firefox/addon/foxyproxy-standard/" target="_blank">FoxyProxy</a> and <a href="https://addons.mozilla.org/en-us/firefox/addon/foxtor/" target="_blank">FoxTor</a></p>
<p>JasonT writes:</p>
<blockquote><p>Hi Darren and Shannon, Kerby, the lovable cat and mascot and backbone of Hak5 is a bit of a mystery to the Hak5 viewers ( at least I think ), If you could spare a couple of Hak5 minutes, could we get Kerby&#8217;s story, Whom is Kerby&#8217;s master, his likes/dislikes etc.</p></blockquote>
<p>Thanks. Kerby is short for Kerberos &#8212; the authentication protocol. If you go back to <a href="http://hak5.org/category/episodes/season_1" target="_blank">season 1</a> you&#8217;ll see a bunch of cute Kerby moments. Thanks for writing in.</p>
<p>Francisco writes:</p>
<blockquote><p>Hi Hak5, I&#8217;ve been meaning to ask this question before but it goes, what kind of upload speeds do you guys get in the Hak5 Studio? And to achieve them, what kind of hardware (eg, modem, load balancer) do you have? I run several virtual servers in my house and the maximum upload speed I can get is around 100 to 150KBps. What I can do to increase the upload speeds? Thank you in advance.</p></blockquote>
<p>In the *current* studio we&#8217;re getting about 6-7 Mbps up. 20-25 down. A lot of that is attributed to the bangin&#8217; router we have. Darren&#8217;s a big fan of both <a href="http://www.smoothwall.org/" target="_blank">Smoothwall</a> and <a href="http://www.untangle.com/" target="_blank">Untangle</a>. Paul likes <a href="http://www.m0n0.ch/" target="_blank">M0n0wall</a> and <a href="http://www.pfsense.org/" target="_blank">pfsense</a>.</p>
<p>Keep up with the latest on Hak5 by follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> or <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>. <a href="http://revision3.com/hak5/subscribe" target="_blank">Subscribe</a> and get your weekly technolust delivered automatically. Or show your support and grab some swag from the <a href="http://hak5.org/store" target="_blank">HakShop</a> &#8211; including the new airport friendly <a href="http://www.hak5.org/store/wifi-pineapple-version-2" target="_blank">WiFi Pineapple</a> and<a href="http://www.hak5.org/store/hak5-hoodie" target="_blank">hoodie</a>. Finally if you&#8217;d like to suggest a topic for ask a question feel free to hit up <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-912/feed</wfw:commentRss>
		<slash:comments>9</slash:comments>
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0912/hak5--0912--imonahorse--hd720p30.h264.mp4" length="562748054" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0912/hak5--0912--imonahorse--large.h264.mp4" length="335958456" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0912/hak5--0912--imonahorse--large.wmv9.wmv" length="465145480" type="video/asf" />
		</item>
		<item>
		<title>Episode 822 – Penetration Testing with Armitage for Metasploit</title>
		<link>http://Hak5.org/episodes/episode-822</link>
		<comments>http://Hak5.org/episodes/episode-822#comments</comments>
		<pubDate>Thu, 20 Jan 2011 20:36:33 +0000</pubDate>
		<dc:creator>Darren Kitchen</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 8]]></category>
		<category><![CDATA[armitage]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[back track]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[box]]></category>
		<category><![CDATA[bt]]></category>
		<category><![CDATA[client side attack]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[easy]]></category>
		<category><![CDATA[fast]]></category>
		<category><![CDATA[free]]></category>
		<category><![CDATA[front end]]></category>
		<category><![CDATA[gui]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[identify]]></category>
		<category><![CDATA[interface]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[lookup]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[own]]></category>
		<category><![CDATA[pass the hash]]></category>
		<category><![CDATA[pivoting]]></category>
		<category><![CDATA[pop]]></category>
		<category><![CDATA[probe]]></category>
		<category><![CDATA[pwn]]></category>
		<category><![CDATA[query]]></category>
		<category><![CDATA[raphael mudge]]></category>
		<category><![CDATA[rapid7]]></category>
		<category><![CDATA[remote exploit]]></category>
		<category><![CDATA[Rob Fuller]]></category>
		<category><![CDATA[room362]]></category>
		<category><![CDATA[scanning]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.Hak5.org/?p=2715</guid>
		<description><![CDATA[<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/Z0x_O75tRAU?version=3&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;showinfo=0&#038;rel=0&#038;showsearch=0"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/Z0x_O75tRAU?version=3&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;showinfo=0&#038;rel=0&#038;showsearch=0" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-822"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-822&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Raphael Mudge of <a href="http://www.fastandeasyhacking.com" target="_blank">FastAndEasyHacking.com</a> joins Rob Fuller, aka <a href="http://www.room362.com" target="_blank">Mubix</a>, to talk about his project Armitage; a cross-platform GUI front-end for Rapid7&#8242;s Metasploit. Mudge demonstrate setting up the software, scanning for targets, attacking hosts with client side attacks or remote exploits, and finally pivoting throughout the network using pass-the-hash techniques. Time to grab some paper, pencil and an unsuspecting virtual machine!</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0822/hak5--0822--armitage--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://videos.revision3.com/revision3/web/hak5/0822/hak5--0822--armitage--large.h264.mp4">Download MP4</a> <a class="wmv" href="http://videos.revision3.com/revision3/web/hak5/0822/hak5--0822--armitage--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-2715"></span></p>
<p><object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/Z0x_O75tRAU?version=3&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;showinfo=0&#038;rel=0&#038;showsearch=0"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/Z0x_O75tRAU?version=3&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;showinfo=0&#038;rel=0&#038;showsearch=0" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object></p>
<p>Keep up with the latest on Hak5 by follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> or <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>. <a href="http://revision3.com/hak5/subscribe" target="_blank">Subscribe</a> and get your weekly technolust delivered automatically. Or show your support and grab some swag from the <a href="http://hak5.org/store" target="_blank">HakShop</a> &#8211; including the new airport friendly <a href="http://www.hak5.org/store/wifi-pineapple-version-2" target="_blank">WiFi Pineapple</a> and <a href="http://www.hak5.org/store/hak5-hoodie" target="_blank">hoodie</a>. Finally if you&#8217;d like to suggest a topic<br />
for ask a question feel free to hit up <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-822/feed</wfw:commentRss>
		<slash:comments>14</slash:comments>
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0822/hak5--0822--armitage--large.wmv9.wmv" length="371183420" type="video/asf" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0822/hak5--0822--armitage--hd720p30.h264.mp4" length="610618356" type="video/mp4" />
<enclosure url="http://videos.revision3.com/revision3/web/hak5/0822/hak5--0822--armitage--large.h264.mp4" length="401116198" type="video/mp4" />
		</item>
		<item>
		<title>Episode 810 &#8211; Hacking persistence with IPv6, Metasploit, Microsoft and Mubix!</title>
		<link>http://Hak5.org/episodes/episode-810</link>
		<comments>http://Hak5.org/episodes/episode-810#comments</comments>
		<pubDate>Thu, 21 Oct 2010 03:07:32 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 8]]></category>
		<category><![CDATA[darren kitchen]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Hacking persistence]]></category>
		<category><![CDATA[IP]]></category>
		<category><![CDATA[ipb6]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[meterpreter]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[Nat]]></category>
		<category><![CDATA[persistence]]></category>

		<guid isPermaLink="false">http://www.hak5.org/?p=2408</guid>
		<description><![CDATA[<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/8Zj9ypEVL20&#038;hl=en_US&#038;fs=1&#038;hd=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/8Zj9ypEVL20&#038;hl=en_US&#038;fs=1&#038;hd=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-810"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-810&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This time on the show, Mubix joins us to add persistance to our penetration testing with a little Metasploit, Microsoft, and IP version 6</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--large.h264.mp4">Download MP4</a> <a class="xvid" href="http://www.podtrac.com/pts/redirect.avi/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--large.xvid.avi">Download XviD</a> <a class="wmv" href="http://www.podtrac.com/pts/redirect.wmv/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-2408"></span><br />
<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/8Zj9ypEVL20&#038;hl=en_US&#038;fs=1&#038;hd=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/8Zj9ypEVL20&#038;hl=en_US&#038;fs=1&#038;hd=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object></p>
<p>As Mubix, aka Rob Fuller explains: Bind shells went to the wayside with the dawn of firewalls and NAT, but IPv6 was nice enough to bring them back. With the help of some built in tools from good old Redmond and our trusty Meterpreter, we can now connect to our shell any time we please. Based on his <a href="http://vimeo.com/15243189" target="_blank">Revenge of the Bind Shell</a> presentation we dive into the tools and techniques required to traverse firewalls and maintain persistence.</p>
<p>Keep up with the latest on Hak5 by follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> or <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>. <a href="http://revision3.com/hak5/subscribe" target="_blank">Subscribe</a> and get your weekly technolust delivered automatically. Or show your support and grab some swag from the <a href="http://hak5.org/store" target="_blank">HakShop</a> &#8211; including the new airport friendly <a href="http://www.hak5.org/store/wifi-pineapple-version-2" target="_blank">WiFi Pineapple</a> and <a href="http://www.hak5.org/store/hak5-hoodie" target="_blank">hoodie</a>. Finally if you&#8217;d like to suggest a topic for ask a question feel free to hit up <a href="mailto:feedback@hak5.org">feedback@hak5.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-810/feed</wfw:commentRss>
		<slash:comments>16</slash:comments>
<enclosure url="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--hd720p30.h264.mp4" length="221" type="video/mp4" />
<enclosure url="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--large.h264.mp4" length="218" type="video/mp4" />
<enclosure url="http://www.podtrac.com/pts/redirect.avi/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--large.xvid.avi" length="218" type="video/avi" />
<enclosure url="http://www.podtrac.com/pts/redirect.wmv/videos.revision3.com/revision3/web/hak5/0810/hak5--0810--ipv6-mubix-metasploit--large.wmv9.wmv" length="218" type="video/asf" />
		</item>
		<item>
		<title>IPv6 from the Pentesters Perspective</title>
		<link>http://Hak5.org/hack/ipv6-from-the-pentesters-perspective</link>
		<comments>http://Hak5.org/hack/ipv6-from-the-pentesters-perspective#comments</comments>
		<pubDate>Thu, 21 Oct 2010 01:18:31 +0000</pubDate>
		<dc:creator>paul</dc:creator>
				<category><![CDATA[Hack]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[bind]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[ipv4]]></category>
		<category><![CDATA[ipv6]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[mac osx]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[Nat]]></category>
		<category><![CDATA[network address translation]]></category>
		<category><![CDATA[Rob Fuller]]></category>
		<category><![CDATA[root]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[tcp]]></category>
		<category><![CDATA[Vista]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[windows 7]]></category>
		<category><![CDATA[XP]]></category>

		<guid isPermaLink="false">http://www.Hak5.org/?p=3038</guid>
		<description><![CDATA[
			
				
			
		
This demonstration Mubix joins us to add persistance to our penetration testing with a little Metasploit, Microsoft, and IP version 6.



Bind shells went to the wayside with the dawn of firewalls and NAT, but IPv6 ...]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fhack%2Fipv6-from-the-pentesters-perspective"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fhack%2Fipv6-from-the-pentesters-perspective&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This demonstration Mubix joins us to add persistance to our penetration testing with a little Metasploit, Microsoft, and IP version 6.</p>
<div style="clear:both;"></div>
<p><span id="more-3038"></span></p>
<p><object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/8Zj9ypEVL20?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0&amp;start=804" /><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><embed type="application/x-shockwave-flash" width="555" height="312" src="http://www.youtube.com/v/8Zj9ypEVL20?version=3&amp;hl=en_US&amp;fs=1&amp;hd=1&amp;showinfo=0&amp;rel=0&amp;showsearch=0&amp;start=804" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"></embed></object></p>
<p>Bind shells went to the wayside with the dawn of firewalls and NAT, but IPv6 was nice enough to bring them back. With the help of some built in tools from good old Redmond and our trusty Meterpreter, we can now connect to our shell any time we please. Based on his <a href="http://vimeo.com/15243189">Revenge of the Bind Shell</a> presentation we dive into the tools and techniques required to traverse firewalls and maintain persistence.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/hack/ipv6-from-the-pentesters-perspective/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Episode 721 &#8211; Water Cooling, EXIF data mining and 25GB free cloud storage</title>
		<link>http://Hak5.org/episodes/episode-721</link>
		<comments>http://Hak5.org/episodes/episode-721#comments</comments>
		<pubDate>Wed, 07 Jul 2010 20:59:36 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 7]]></category>
		<category><![CDATA[cloud storage]]></category>
		<category><![CDATA[colleen kelly]]></category>
		<category><![CDATA[corsair 700d]]></category>
		<category><![CDATA[darren kitchen]]></category>
		<category><![CDATA[data mining]]></category>
		<category><![CDATA[digital kitty]]></category>
		<category><![CDATA[DSC]]></category>
		<category><![CDATA[exif]]></category>
		<category><![CDATA[geo location]]></category>
		<category><![CDATA[geolocation]]></category>
		<category><![CDATA[gps]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[mesh]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[Rob Fuller]]></category>
		<category><![CDATA[shannon morse]]></category>
		<category><![CDATA[Snubs]]></category>
		<category><![CDATA[twitpic]]></category>
		<category><![CDATA[water cooling]]></category>
		<category><![CDATA[windows live]]></category>

		<guid isPermaLink="false">http://www.hak5.org/?p=2204</guid>
		<description><![CDATA[<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/nrLkubifpSA&#038;hl=en_US&#038;fs=1&#038;hd=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/nrLkubifpSA&#038;hl=en_US&#038;fs=1&#038;hd=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-721"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-721&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This week Darren heads to the Department of Spontaneous Combustion to meet with PC guru Colleen Kelly and get learned up on the arts of water cooling. Then we&#8217;re joined by Mubix (aka Rob Fuller) for a discussion on EXIF data, geo location, and twitpic privacy. Plus, Shannon has the hookup on 25 gigs of free cloud storage!</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0721/hak5--0721--watercooling--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0721/hak5--0721--watercooling--large.h264.mp4">Download MP4</a> <a class="xvid" href="http://www.podtrac.com/pts/redirect.avi/videos.revision3.com/revision3/web/hak5/0721/hak5--0721--watercooling--large.xvid.avi">Download XviD</a> <a class="wmv" href="http://www.podtrac.com/pts/redirect.wmv/videos.revision3.com/revision3/web/hak5/0721/hak5--0721--watercooling--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-2204"></span></p>
<p><object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/nrLkubifpSA&#038;hl=en_US&#038;fs=1&#038;hd=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/nrLkubifpSA&#038;hl=en_US&#038;fs=1&#038;hd=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object></p>
<p><strong>Water Cooling</strong></p>
<p>Colleen Kelley (aka <a href="http://www.twitter.com/digitalkitty/" target="_blank">digitalkitty</a>) joins us to talk about water cooling pros and cons, costs, noise, and her approach to the arts of making hot stuff chill out.</p>
<p>&#8212;</p>
<p><strong>Domain.com</strong></p>
<p>I like <a href="http://www.domain.com" target="_blank">Domain.com</a>’s Deluxe web hosting plan that’s only $8.75/mo. One click install of all the popular open source programs like WordPress, Joomla, and Drupal, and more! Unlimited traffic</p>
<p>Free website builder with unlimited pages, Easy and affordable to get your sites online with <a href="http://www.domain.com" target="_blank">Domain.com</a>. <a href="http://www.domain.com" target="_blank">Domain.com</a> offers blistering fast DNS and hosting infrastructure, the lowest prices on the web AND the highest quality. Thanks to Hak5 fans, <a href="http://www.domain.com" target="_blank">Domain.com</a> is one of the fastest growing domain and hosting companies in the world. Got a great idea? It all starts with a great domain.  <a href="http://www.domain.com" target="_blank">Domain.com</a>! Don’t forget to use coupon code HAK5 at checkout to get 15% off your order.</p>
<p>&#8212;</p>
<p><strong>Round Table: Goe Location Privacy</strong></p>
<p>Darren and Shannon are joined by Rob Fuller (aka <a href="http://www.room362.com/" target="_blank">Mubix</a>) to discuss concerns in iPhone photo privacy, EXIF data mining and geo-location XSS attacks via GoToMeeting.</p>
<p>&#8212;</p>
<p><strong>GoToMeeting</strong></p>
<p>You’ve probably heard about GoToMeeting, the easiest and most convenient way to host online meetings from your PC and Mac. I have exciting news &#8211; now you can even take it to go on the iPad tablet! GoToMeeting – brought to you by Citrix &#8211; has a FREE app built specifically for the iPad which makes online meetings more accessible than ever! With GoToMeeting on your iPad you can attend online meetings on the go – at a café, in a hotel, wherever you are … Just download the GoToMeeting app and join sessions on your iPad tablet in seconds! See the host’s computer screen on your iPad screen…Connect to audio through your iPad or over the phone…Try Go To Meeting FREE for 30 days! For this special offer, you must visit <a href="http://www.gotomeeting.com/" target="_blank">GoToMeeting.com</a>, click the try it free button and use promo code <strong>HAK</strong> for a free trial!</p>
<p>&#8212;</p>
<p><strong>Snubs Report: 25 Gigs of Free Cloud Storage</strong></p>
<p><strong></strong>I&#8217;m big about backups, specially online storage.  I&#8217;m sure you remember my Wuala Snubs Report from a few weeks ago, right? And Hak5 uses Dropbox for sharing our videos with each of the crew.</p>
<p>So I decided to check out the Windows version called <a href="http://windowslive.com/online/skydrive" target="_blank">Windows Live Skydrive</a>.</p>
<p>Features included are:</p>
<ul>
<li>25 GB online storage</li>
<li>Must sign up or already have a Windows Live account.</li>
<li>Password protected with ability to choose who sees what-Protected, Shared, and Public folders.<br />
Up to 30 folders.</li>
<li>accessible from any web enabled device or computer, any OS.</li>
<li>Drag and drop to upload to Skydrive.</li>
</ul>
<p>Folders have unique web addresses, so you can save the link as a favorite or copy-and-paste it into e-mail or other documents for direct access.  The nice thing is, if you already have a MSN login or a hotmail login, you can access Skydrive by using just that. There is no download needed and this is purely web-based.<br />
Go to Skydrive.live.com and login with your Windows Live login.  You can automatically access your folders and files.<br />
Each folder has a permission level- Either you only, some friends, all friends, your friends and their contacts, or everyone (public).</p>
<p>If you want to share with your friends, they have to have a Windows live account. This is the part that is lame- you can&#8217;t share with your facebook friends, etc. They have to have Windows Live.<br />
To add a file, go into a folder and choose &#8216;Add File&#8217;. From there you can drag and drop your files into Skydrive, they upload automatically, and then can be seen by whoever you have chosen.<br />
When you click on a file, you can view the information about it- like the camera that took the photo, date and time, and it also creates a direct link to the photo for easy linking and emailing.<br />
I don&#8217;t like Windows Live Skydrive as much as some others that I have tried specifically because you can only use it for Windows/Hotmail users and people in your Windows Live contact list.</p>
<p>This makes it a bad choice, in my opinion, for businesses or friends around the world&#8230; But perhaps it&#8217;s perfect for family members like Nana and Papa.<br />
Let me know what you think by emailing me at <a href="mailto:feedback@hak5.org" target="_blank">feedback@hak5.org</a>.</p>
<p>&#8212;</p>
<p><strong>Netflix</strong></p>
<p>Netflix delivers movies directly to your home saving you time, money and hassle.  As a Netflix unlimited member you get DVDs by mail in about 1 business day. Plus, you can instantly watch thousands of TV episodes and movies streamed directly to your PC, Mac or right to your TV via a Netflix ready device like the Xbox 360, PS3, and Nintendo Wii console. Watch as many movies as you want! Shipping is FREE and there are never any late fees or no due dates. Keep the movies as long as you like. DVDs by mail – Plus, instantly right to your TV.  Get unlimited movies 2 ways for only $8.99 a month. As a new member and a Hak5 viewer, you can get a FREE Trial membership. Go to www.netflix.com/Hak5 and sign up NOW! . .   Be sure to use this URL so that they know we sent you!</p>
<p>&#8212;</p>
<p>If you want to know the latest on Hak5 be sure to follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> or <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>.</p>
<p>Also, now is also a great time to grab some swag from the <a href="http://www.hak5.org/shop/" target="_blank">HakShop</a> &#8211; including the new airport friendly <a href="http://www.hak5.org/store/wifi-pineapple-version-2" target="_blank">WiFi Pineapple</a> with free world-wide shipping.</p>
<p>And finally if you&#8217;d like to suggest a topic for a future show feel free to hit up <a href="mailto:feedback@hak5.org">feedback@hak5.org</a></p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-721/feed</wfw:commentRss>
		<slash:comments>16</slash:comments>
		</item>
		<item>
		<title>Episode 714 – Pronobozo, Metasploit and Ninite</title>
		<link>http://Hak5.org/episodes/episode-714</link>
		<comments>http://Hak5.org/episodes/episode-714#comments</comments>
		<pubDate>Wed, 19 May 2010 13:26:11 +0000</pubDate>
		<dc:creator>Darren Kitchen</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 7]]></category>
		<category><![CDATA[apt]]></category>
		<category><![CDATA[back track]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[darren kitchen]]></category>
		<category><![CDATA[domain admin]]></category>
		<category><![CDATA[domain controller]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[hack across america]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Hash]]></category>
		<category><![CDATA[installer]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[ninite]]></category>
		<category><![CDATA[package manager]]></category>
		<category><![CDATA[pen test]]></category>
		<category><![CDATA[penetration test]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[pronobozo]]></category>
		<category><![CDATA[pronobozo interview]]></category>
		<category><![CDATA[Rob Fuller]]></category>
		<category><![CDATA[room362]]></category>
		<category><![CDATA[shannon morse]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[software repository]]></category>
		<category><![CDATA[sql injection]]></category>
		<category><![CDATA[sql ninja]]></category>
		<category><![CDATA[sqlninja]]></category>
		<category><![CDATA[token]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[yum]]></category>

		<guid isPermaLink="false">http://www.hak5.org/?p=1897</guid>
		<description><![CDATA[<embed class="rev3PlayerEmbed" type="application/x-shockwave-flash" src="http://revision3.com/player-v5051" allowFullScreen="true" quality="high" allowScriptAccess="always" width="555" height="312" wmode="transparent" />]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-714"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-714&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>The Hack Across America series continues in week 3 with a phenomenal episode featuring an exclusive interview with Pronobozo. Then mubix joins us for Metasploit 101 part 2, pwning a domain controller via SQL injection an token passing on a fully patched enterprise network. Plus Shannon has a tool that will save tons of time on your next PC build in this week&#8217;s Snubs Report. Get comfortable, you won&#8217;t wanna miss this.</p>
<p><a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0714/hak5--0714--pronobozo--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0714/hak5--0714--pronobozo--large.h264.mp4">Download MP4</a> <a class="xvid" href="http://www.podtrac.com/pts/redirect.avi/videos.revision3.com/revision3/web/hak5/0714/hak5--0714--pronobozo--large.xvid.avi">Download XviD</a> <a class="wmv" href="http://www.podtrac.com/pts/redirect.wmv/videos.revision3.com/revision3/web/hak5/0714/hak5--0714--pronobozo--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-1897"></span></p>
<p><embed class="rev3PlayerEmbed" type="application/x-shockwave-flash" src="http://revision3.com/player-v5051" allowFullScreen="true" quality="high" allowScriptAccess="always" width="555" height="312" wmode="transparent" /></p>
<p><b>Exclusive Pronobozo Interview</b></p>
<p>We&#8217;re excited to be the first to publish a video interview with the infamous <a href="http://www.pronobozo.com" target="_blank">Pronobozo</a></p>
<p><b>Trivia</b></p>
<p>Originally running on the PDP-11 and incorporating elements from BSD, this closed source version of Unix was licensed to manufacturers by Microsoft, *yes, Microsoft* in 1980.</p>
<p>Enter for your chance to win a super sweet new Hak5 sticker pack set by submitting your answer at <a href="http://www.hak5.org/trivia/">hak5.org/trivia</a></p>
<p><b>Domain.com</b><br />
<a href="http://www.domain.com" target="_blank">Domain.com</a> offers easy and affordable web hosting plans with a free website builder and unlimited pages.  Get a hosting account for only $5.75/month or opt for the Deluxe web hosting plan for $8.75/month that features <b>unlimited traffic</b>.  Also get one click installation of all the popular open source programs like WordPress, Joomla, Drupal, and more!  Thanks to Hak5 fans, <a href="http://www.domain.com" target="_blank">Domain.com</a> is one of the fastest growing domain and hosting companies in the world. Remember, don’t forget to use coupon code HAK5 at checkout to get 15% off your order. Got a great idea? It all starts with a great domain.  <a href="http://www.domain.com" target="_blank">Domain.com</a></p>
<p><b>Metasploit 101 part 2</b</p>
<p>This week <a href="http://www.room362.com" target="_blank">Rob Fuller</a>, aka Mubix brings us a follow-up to his Metasploit 101 series where he guides you through the process of pwning the domain administrator on a fully patched enterprise network.</p>
<p><b>Click It Or Ticket</b></p>
<p>Guys, it’s a fact, men are less likely than women to buckle up. In 2008, 66 percent of male drivers and 74 percent of male passengers 18 to 34 killed in passenger vehicles were NOT wearing their seat belts.  Don’t become a statistic…wear a freaking seatbelt. </p>
<p>ESPECIALLY AT NIGHT!  Two thirds of people who die in accidents at night are not buckled up.  You may be a safe driver but you do not know who is out there….it’s not cool to not wear it. </p>
<p>The police will be out in force over Memorial weekend.  Hundreds of State and local law enforcement and highway safety officials across the Nation will participate in Click It or Ticket 2010 from May 24 to June 6.  They will be looking for you, day and night, and making sure that everyone is buckled up. </p>
<p><b>Snubs Report: Ninite</b></p>
<p>We&#8217;ve all been there. After building a Windows box and installing drivers it&#8217;s the ritual of downloading the latest versions of all your essential software and clicking next, next, I agree, finish for about an hour. Not anymore, Ninite will do it all in two clicks.</p>
<p>Ninite is a software download and installation automation tool that supports a plethora of popular software. Simply browse to <a href="http://www.ninite.com" target="_blank">ninite.com</a>, select which packages you want like Chrome, Skype, uTorrent, Teracopy, etc, and click Get Installer. Moments later you&#8217;ll be downloading a customer installation script that will automate the entire process. Double-click and it will automatically download the latest versions in 32 or 64 bit and install them to your machine without stopping for a single prompt.</p>
<p>It&#8217;s fast, simple, free and saves a bundle of time so we love it. While the Linux crowd has been enjoying yum and apt, it&#8217;s about time something came along for the Windows side.</p>
<p>There is a paid pro version that comes with a $20/mo subscription fee and includes advanced features like offline installers, caching and silent installation. We think it could be handy for IT pros handling large networks, however it&#8217;s not going to compete with pushing packages via group policies.</p>
<p>What do you think? Drop me a line at feedback@hak5.org</p>
<p><b>GoToAssist Express</b></p>
<p>Their computer. Your brain. How do you get the two together without wasting time and money traveling? Use Go To Assist Express to view and control your customer’s computer ONLINE so you can fix the problem on the spot! Save time and money on travel. Satisfy customer quickly and efficiently.  Then move on to other tasks! Try GoToAssist Express FREE for 30 days! For this special offer, you must visit <a href="http://www.gotoassist.com/hak5/" target="_blank">GoToAssist.com/Hak5</a> for a FREE trial. </p>
<p>If you want to know the latest on Hak5 be sure to follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> or <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>.</p>
<p>Also, now is also a great time to grab some swag from the <a href="http://www.hak5.org/shop/" target="_blank">HakShop</a> &#8211; including the new airport friendly <a href="http://www.hak5.org/store/wifi-pineapple-version-2" target="_blank">WiFi Pineapple</a> with free world-wide shipping.</p>
<p>Details on Darren&#8217;s journey across North America can be found at <a href="http://www.hackacrossamerica.com" target="_blank">HackAcrossAmerica.com</a>.</p>
<p>And finally if you&#8217;d like to suggest a topic for a future show feel free to hit up <a href="mailto:feedback@hak5.org">feedback@hak5.org</a></p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-714/feed</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>Episode 709 – USB Rubber Ducky Part 1</title>
		<link>http://Hak5.org/episodes/episode-709</link>
		<comments>http://Hak5.org/episodes/episode-709#comments</comments>
		<pubDate>Wed, 14 Apr 2010 18:26:38 +0000</pubDate>
		<dc:creator>Darren Kitchen</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 7]]></category>
		<category><![CDATA[darren kitchen]]></category>
		<category><![CDATA[Double Driver]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[HID Hack]]></category>
		<category><![CDATA[Human Interface Device]]></category>
		<category><![CDATA[Macro]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[Nano Note]]></category>
		<category><![CDATA[Nanonote]]></category>
		<category><![CDATA[pen test]]></category>
		<category><![CDATA[penetration test]]></category>
		<category><![CDATA[PJRC]]></category>
		<category><![CDATA[programmable HID]]></category>
		<category><![CDATA[Rob Fuller]]></category>
		<category><![CDATA[shannon morse]]></category>
		<category><![CDATA[Snubs]]></category>
		<category><![CDATA[teensy]]></category>
		<category><![CDATA[Teensy 2.0]]></category>
		<category><![CDATA[USB Hack]]></category>
		<category><![CDATA[USB Keyboard]]></category>
		<category><![CDATA[USB Rubber Ducky]]></category>

		<guid isPermaLink="false">http://www.hak5.org/?p=1817</guid>
		<description><![CDATA[<object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/aCc2fI7UG8g&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/aCc2fI7UG8g&#038;hl=en_US&#038;fs=1&#038;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-709"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-709&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This time on the show Shannon has a tool that&#8217;ll make that spring cleaning Windows reinstall a breeze in the Snubs Report. Then Mubix is unboxing the Nano Note, a pocket sized OpenWRT based bundle of Linux Lovin&#8217;. And finally Darren has the scoop on a new open source pen testing tool, the USB Rubber Ducky! Tune in and find out about special dev kits.</p>
<div style="clear:both;"></div>
<p><a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/bitcast-a.bitgravity.com/revision3/web/hak5/0709/hak5--0709--usbducky1--hd720p30.h264.mp4">Download HD</a> <a class="mov" href="http://www.podtrac.com/pts/redirect.mp4/bitcast-a.bitgravity.com/revision3/web/hak5/0709/hak5--0709--usbducky1--large.h264.mp4">Download MP4</a> <a class="xvid" href="http://www.podtrac.com/pts/redirect.avi/bitcast-a.bitgravity.com/revision3/web/hak5/0709/hak5--0709--usbducky1--large.xvid.avi">Download XviD</a> <a class="wmv" href="http://www.podtrac.com/pts/redirect.wmv/bitcast-a.bitgravity.com/revision3/web/hak5/0709/hak5--0709--usbducky1--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-1817"></span></p>
<p><object width="555" height="312"><param name="movie" value="http://www.youtube.com/v/aCc2fI7UG8g&#038;hl=en_US&#038;fs=1&#038;"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/aCc2fI7UG8g&#038;hl=en_US&#038;fs=1&#038;hd=1&#038;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="555" height="312" wmode="transparent"></embed></object></p>
<p><b>The iPads, Muvi Micro, and other random tech</b></p>
<p>Darren and Paul are talking gadgets. Our recent toys include the iPad and Muvi Micro by <a href="http://www.veho-uk.com/" target="_blank">Veho-UK</a>.</p>
<p><b>Snubs Report: Double Driver</b></p>
<p>When it comes to rebuilding a Windows box there&#8217;s nothing more annoying than rummaging through the CD stack only to realize you&#8217;ve lost a driver disc. Especially when it&#8217;s Ethernet drivers you need.</p>
<p>Our solution? <a href="http://www.boozet.org/dd.htm" target="_blank">Double Driver</a>.</p>
<p>This portable freeware Windows tool analyzes your system, listing installed drivers, and making it super easy to back them up. With just a few clicks you can back up your drivers into individual folders. It&#8217;ll even pop &#8216;em in a zip file with a copy of Double Driver, ready to restore after your next format.</p>
<p>So feel free to lose the driver disc &#038; give up on hunting through support sites with <a href="http://www.boozet.org/dd.htm" target="_blank">Double Driver</a>.</p>
<p><b>GoToAssist Express</b><br />
If you’re in technical support, you know how much time you waste just getting to a customer or colleague’s computer. Great news! The new Go To Assist Express remote support. brought to you by Citrix, lets you resolve issues faster. Reduce travel costs. And keep clients satisfied. So you can move to the next task more quickly. Without leaving your office. Try Go To Assist Express FREE for 30 days! For this special offer, you must visit <a href="http://www.gotoassist.com/hak5/" target="_blank">GoToAssist.com/Hak5</a> for a FREE trial. </p>
<p><b>USB Rubber Ducky</b></p>
<p>What looks like a duck, quacks like a duck, and infilrtates your computer system in ten seconds flat? The USB Rubber Ducky of course. And if you&#8217;re surprised by the housing you haven&#8217;t been watching Hak5 long enough.</p>
<p>This <a href="http://www.pjrc.com" target="_blank">Teensy powered</a> penetration tool takes physical security to the next level.</p>
<p>With the promise of replacing the <a href="http://www.hak5.org/usb-switchblade" target="_blank">USB Switchblade</a> as our favorite plug-n-pwn device we&#8217;re eager to see how far we can take this.</p>
<p>If you&#8217;re interested in developing with this tiny programmable Human Interface Device follow the link in the video to sign up for a dev-kit.</p>
<p>Of course we&#8217;ll have a more in-depth segment chock full of quack-attack code and mayhem coming up.</p>
<p><b>Domain.com</b><br />
<a href="http://www.domain.com" target="_blank">Domain.com</a> offers easy and affordable web hosting plans with a free website builder and unlimited pages.  Get a hosting account for only $5.75/month or opt for the Deluxe web hosting plan for $8.75/month that features unlimited traffic.  Also get one click installation of all the popular open source programs like WordPress, Joomla, Drupal, and more!  Thanks to Hak5 fans, Domain.com is one of the fastest growing domain and hosting companies in the world. Remember, don’t forget to use coupon code HAK5 at checkout to get 15% off your order. Got a great idea? It all starts with a great domain.  <a href="http://www.domain.com" target="_blank">Domain.com</a></p>
<p><b>Nano Note Unboxing</b></p>
<p>You asked for it! Shannon and Darren panned it, but Rob Fuller, aka Mubix from <a href="http://www.room362.com" target="_blank">Room362</a> has it! It&#8217;s the Nano Note and we&#8217;re unboxing this 336 MHz MIPS handheld Linux box.</p>
<p>Don&#8217;t forget you can subscribe to Hak5 on <a href="http://phobos.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=117137282" target="_blank">iTunes</a>, <a href="http://subscribe.getmiro.com/?url1=http://revision3.com/hak5/feed/quicktime-high-definition" target="_blank">Miro</a>, <a href="http://www3.tivo.com/tivo-tco/cds/info.do?categoryId=tivo:ca.ts.1000601&#038;mixId=tivo:mx.6235081" target="_blank">Tivo</a>, <a href="http://social.zune.net/podcasts/series.aspx?serid=4d8cff0e-bd8f-4c54-9389-3a337265adb3" target="_blank">Zune</a> and <a href="http://www.youtube.com/hak5/" target="_blank">YouTube</a>.</p>
<p>If you want to know the latest on Hak5 be sure to follow us on <a href="http://www.twitter.com/hak5/" target="_blank">Twitter</a> or <a href="http://www.facebook.com/technolust/" target="_blank">Facebook</a>.</p>
<p>Also, now is also a great time to grab some swag from the <a href="http://www.hak5.org/shop/" target="_blank">HakShop</a> &#8211; including the new airport friendly <a href="http://www.hak5.org/store/wifi-pineapple-version-2" target="_blank">WiFi Pineapple</a> with free world-wide shipping.</p>
<p>Details on Darren&#8217;s journey across North America can be found at <a href="http://www.hackacrossamerica.com" target="_blank">HackAcrossAmerica.com</a>.</p>
<p>And finally if you&#8217;d like to suggest a topic for a future show feel free to hit up <a href="mailto:feedback@hak5.org">feedback@hak5.org</a></p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-709/feed</wfw:commentRss>
		<slash:comments>29</slash:comments>
		</item>
		<item>
		<title>Episode 621 – MiTM Javascript Keylogger, Social Engineering Toolkit and more</title>
		<link>http://Hak5.org/episodes/episode-621</link>
		<comments>http://Hak5.org/episodes/episode-621#comments</comments>
		<pubDate>Tue, 05 Jan 2010 15:24:41 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Episodes]]></category>
		<category><![CDATA[Season 6]]></category>
		<category><![CDATA[address spoofing]]></category>
		<category><![CDATA[android]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[backtrack4]]></category>
		<category><![CDATA[bt3]]></category>
		<category><![CDATA[bt4]]></category>
		<category><![CDATA[cross platform]]></category>
		<category><![CDATA[cryptsetup]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[finland]]></category>
		<category><![CDATA[inguardians]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[Irongeek]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[javascript keylogger]]></category>
		<category><![CDATA[jay beale]]></category>
		<category><![CDATA[Keylogger]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[linux encryption]]></category>
		<category><![CDATA[mac address]]></category>
		<category><![CDATA[mac address spoofing]]></category>
		<category><![CDATA[mac changer]]></category>
		<category><![CDATA[mac spoofing]]></category>
		<category><![CDATA[macchanger]]></category>
		<category><![CDATA[mad macs]]></category>
		<category><![CDATA[madmacs]]></category>
		<category><![CDATA[man in the middle]]></category>
		<category><![CDATA[middler]]></category>
		<category><![CDATA[mitm]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[Nokia]]></category>
		<category><![CDATA[phish]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[proxy]]></category>
		<category><![CDATA[remote]]></category>
		<category><![CDATA[remote exploit]]></category>
		<category><![CDATA[Rob Fuller]]></category>
		<category><![CDATA[room362]]></category>
		<category><![CDATA[samurai]]></category>
		<category><![CDATA[samurai-wtf]]></category>
		<category><![CDATA[SET]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[social engineering toolkit]]></category>
		<category><![CDATA[spoofing]]></category>
		<category><![CDATA[spotify]]></category>
		<category><![CDATA[SSH]]></category>
		<category><![CDATA[the middler]]></category>
		<category><![CDATA[trucrypt]]></category>
		<category><![CDATA[truecrypt]]></category>
		<category><![CDATA[tunnel]]></category>
		<category><![CDATA[ubuntu encryption]]></category>
		<category><![CDATA[virtual appliance]]></category>
		<category><![CDATA[virtual box]]></category>
		<category><![CDATA[virtualbox]]></category>
		<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[vpn]]></category>
		<category><![CDATA[wtf]]></category>

		<guid isPermaLink="false">http://www.hak5.org/?p=1922</guid>
		<description><![CDATA[<object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="555" height="312" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube-nocookie.com/v/NtcKH9yRyJM&#38;hl=en_US&#38;fs=1&#38;rel=0&#38;hd=1" /><param name="wmode" value="transparent" /><param name="allowfullscreen" value="true" /><embed type="application/x-shockwave-flash" width="555" height="312" src="http://www.youtube-nocookie.com/v/NtcKH9yRyJM&#38;hl=en_US&#38;fs=1&#38;rel=0&#38;hd=1" wmode="transparent" allowscriptaccess="always" allowfullscreen="true"></embed></object>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-621"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2FHak5.org%2Fepisodes%2Fepisode-621&amp;source=Hak5&amp;style=normal&amp;service=bit.ly&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>This week Darren is joined by <a href="http://www.room362.com" target="_blank">Rob Ruller</a>, aka <a href="http://www.room362.com" target="_blank">Mubix</a> for a little fun with Man-in-the-middle javascript keylogger using <a href="http://code.google.com/p/middler/" target="_blank">the Middler</a>, and pwning with the <a href="http://www.social-engineer.org/framework/Computer_Based_Social_Engineering_Tools:_Social_Engineer_Toolkit_(SET)" target="_blank">Social Engineering Toolkit</a>. Plus using <a href="http://www.spotify.com" target="_blank">Spotify</a> in the US without a <a href="http://www.hak5.org/hack/bypass-filters-with-your-own-web-proxy" target="_blank">proxy</a>, Mac Address spoofing in <a href="http://www.alobbs.com/macchanger/" target="_blank">Linux</a> or <a href="http://www.irongeek.com/i.php?page=security/madmacs-mac-spoofer" target="_blank">Windows</a>, <a href="http://virtualboximages.com" target="_blank">Virtual Appliances</a> for <a href="http://www.virtualbox.org/" target="_blank">VirtualBox</a>, and much more! Take an hour lunch and prepare to feed your technolust!</p>
<div style="clear:both;"></div>
<p><a href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0621/hak5--0621--setoolkit--hd720p30.h264.mp4">Download HD</a> <a href="http://www.podtrac.com/pts/redirect.mp4/videos.revision3.com/revision3/web/hak5/0621/hak5--0621--setoolkit--large.h264.mp4">Download MP4</a> <a href="http://www.podtrac.com/pts/redirect.avi/videos.revision3.com/revision3/web/hak5/0621/hak5--0621--setoolkit--large.xvid.avi">Download XviD</a> <a href="http://www.podtrac.com/pts/redirect.wmv/videos.revision3.com/revision3/web/hak5/0621/hak5--0621--setoolkit--large.wmv9.wmv">Download WMV</a></p>
<p><span id="more-1922"></span><br />
<object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="555" height="312" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube-nocookie.com/v/NtcKH9yRyJM&amp;hl=en_US&amp;fs=1&amp;rel=0&amp;hd=1" /><param name="wmode" value="transparent" /><param name="allowfullscreen" value="true" /><embed type="application/x-shockwave-flash" width="555" height="312" src="http://www.youtube-nocookie.com/v/NtcKH9yRyJM&amp;hl=en_US&amp;fs=1&amp;rel=0&amp;hd=1" wmode="transparent" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
<p><strong>Cross Platform Encryption</strong></p>
<p>Mahmoud, as well as many others, wrote in to ask about the cross-platform compatability of the encryption set setup on <a href="http://www.hak5.org/episodes/episode-620" target="_blank">Hak5 episode 620</a> using cryptsetup.</p>
<p>The short answer is, no, it&#8217;s just for Linux. If you&#8217;re looking for something both open source and cross platform look no further than <a href="http://www.truecrypt.org/" target="_blank">Truecrypt</a></p>
<p><strong>Spotify in the United States without a proxy</strong></p>
<p><strong> </strong>Following up on last week&#8217;s question about IP spoofing so users in the US can try out <a href="http://www.spotify.com" target="_blank">Spotify</a>, we&#8217;ve got just the trick without a proxy. Ok, well sorta. If you happen to have a beta invite and a friend, perhapse on <a href="http://hak5.org/forums/index.php?showtopic=14847" target="_blank">IRC</a>, in an allowed country it&#8217;s just a matter of having them sign up for you. The only limitation is that you&#8217;ll need to have your account signed into from your &#8220;home country&#8221; every 14 days. On the other hand if you decide to spring for the €9,99/mo premium account you, supposedly, don&#8217;t have such limitations. Thanks to Jouni in Finland for hooking me up. I&#8217;ll be sad when its game over in two weeks. Or will it?</p>
<p><strong>Virtual Appliances for VirtualBox</strong></p>
<p>If you&#8217;re a fan of <a href="http://www.virtualbox.org" target="_blank">VirtualBox</a> then you&#8217;ll love <a href="http://virtualboximages.com/" target="_blank">VirtualBoxImages.com</a>. They&#8217;ve got pre-packaged VirtualBox VDI&#8217;s ready for your enjoyment.</p>
<p><strong>Javascript Keylogger via Man-in-the-Middle Attack</strong></p>
<p>When it comes to man-in-the-middle attacks just about anything is possible. In this segment Darren explores <a href="http://www.inguardians.com/" target="_blank">InGuardians</a> tool <a href="http://code.google.com/p/middler/" target="_blank">the Middler</a>. Using a plugin architecture for manipulating (among others) http traffic, we attempt to get the infamous javascript onKeyPress keylogger going. Without much success in that department Darren goes on to demonstrate iframe injection and ponders ways to make the <a href="http://code.google.com/p/middler/source/browse/tags/0.95r1/middlerlib/plugins/plugin-keylogger-INGUARDIANS-ONLY.py" target="_blank">borked plugin</a> behave.</p>
<p><strong>Social Engineering Toolkit</strong></p>
<p>Hacking isn&#8217;t just about remote code execution. Well, I mean, that&#8217;s fun and all but rather than exploiting the server, how about exploiting the Human OS. In this segment <a href="http://www.room362.com" target="_blank">Mubix</a> demonstrates David Kennedy (aka <a href="http://twitter.com/dave_rel1k" target="_blank">Rel1k</a>)&#8217;s tool, <a href="http://www.social-engineer.org/framework/Computer_Based_Social_Engineering_Tools:_Social_Engineer_Toolkit_(SET)" target="_blank">The Social Engineering Toolkit</a>. Despite some challenges with clients that werent setup with Java, Mubix successfully demonstrates meterpreter in conjunction with a cloned site.</p>
<p><strong>Mac Address Spoofing</strong></p>
<p><a href="http://www.twitter.com/Bluesmanchukk" target="_blank">@Bluesmanchukk</a> writes in to ask about Mac Address Spoofing. Darren and Rob discuss their favorite tools for the job: <a href="http://en.wikipedia.org/wiki/MAC_spoofing" target="_blank">ifconfig</a> (Linux), <a href="http://www.alobbs.com/macchanger/" target="_blank">GNU MAC Changer</a> (Linux), <a href="http://www.irongeek.com/i.php?page=security/madmacs-mac-spoofer" target="_blank">MadMACs</a> (Windows), <a href="http://wiki.hak5.org/wiki//MAC_Randomizer" target="_blank">Mac Randomizer</a> (Linux).</p>
<p><strong>Multi-Player Notepad</strong></p>
<p>Stoned33 wrote in to ask for our picks for simple online collaboration. Aside from the obvious Google Wave, Rob recommends the recently Google-Acquired yet still operating <a href="http://etherpad.com/" target="_blank">Etherpad</a>. This real-time document editor is like multi-player notepad on crack. Give it a shot.</p>
]]></content:encoded>
			<wfw:commentRss>http://Hak5.org/episodes/episode-621/feed</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>
<!-- This Quick Cache file was built for (  hak5.org/tag/mubix/feed ) in 1.28621 seconds, on May 23rd, 2012 at 9:59 pm UTC. -->
<!-- This Quick Cache file will automatically expire ( and be re-built automatically ) on May 23rd, 2012 at 10:59 pm UTC -->
