<?xml version="1.0" encoding="utf-8" ?>

<rss version="2.0" 
   xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
   xmlns:admin="http://webns.net/mvcb/"
   xmlns:dc="http://purl.org/dc/elements/1.1/"
   xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
   xmlns:wfw="http://wellformedweb.org/CommentAPI/"
   xmlns:content="http://purl.org/rss/1.0/modules/content/"
   >
<channel>
    
    <title>Thoughts of a Cyber-LOONATic - Hacking</title>
    <link>http://packet-broker.co.za/blog/</link>
    <description>Ramblings from The ZA Packet-Broker</description>
    <dc:language>en</dc:language>
    <generator>Serendipity 1.6 - http://www.s9y.org/</generator>
    <pubDate>Fri, 01 Jul 2011 20:42:37 GMT</pubDate>

    <image>
        <url>http://packet-broker.co.za/blog/templates/default/img/s9y_banner_small.png</url>
        <title>RSS: Thoughts of a Cyber-LOONATic - Hacking - Ramblings from The ZA Packet-Broker</title>
        <link>http://packet-broker.co.za/blog/</link>
        <width>100</width>
        <height>21</height>
    </image>

<item>
    <title>Bitcoins and Geek Security = ?</title>
    <link>http://packet-broker.co.za/blog/archives/16/Bitcoins-and-Geek-Security.html</link>
            <category>Bitcoin</category>
            <category>Hacking</category>
    
    <comments>http://packet-broker.co.za/blog/archives/16/Bitcoins-and-Geek-Security.html#comments</comments>
    <wfw:comment>http://packet-broker.co.za/blog/wfwcomment.php?cid=16</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://packet-broker.co.za/blog/rss.php?version=2.0&amp;type=comments&amp;cid=16</wfw:commentRss>
    

    <author>nospam@example.com (Junaid Loonat)</author>
    <content:encoded>
    &lt;em&gt;Many tech-savvy geeks &lt;a href=&quot;http://packet-broker.co.za/blog/uploads/funny/Software_Development_Lifecycle.jpg&quot; title=&quot;Software Development Lifecycle&quot;&gt;over-engineer&lt;/a&gt; the simplest of solutions, solely for extensibility.&lt;br /&gt;
Moreover, security-minded geeks tend to be unusually &lt;a href=&quot;http://xkcd.com/538/&quot; title=&quot;A Crypto-nerd&#039;s Imagination&quot;&gt;paranoid&lt;/a&gt; and enforce (sometimes complex) security practices accordingly.&lt;br /&gt;
Neither of these should be seen as faults, but rather as unique traits that us (as geeks) often share.&lt;/em&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;a href=&quot;http://www.bitcoin.org/&quot; title=&quot;Bitcoin&quot;&gt;Bitcoin&lt;/a&gt;, the first P2P crypto-currency, has gained much popularity in recent months with its value reaching a peak of over $30 on one of its supporting money exchanges.&lt;br /&gt;
Being supported mostly by geeks, it&#039;s not surprising that a number of e-businesses and services have been established to support the virtual currency.&lt;br /&gt;
As expected, there have already been a number of breaches by malicious users seeking some Bitcoin booty.&lt;br /&gt;
Although the &lt;a href=&quot;http://www.bitcoin.org/bitcoin.pdf&quot; title=&quot;Bitcoin: A Peer-to-Peer Electronic Cash System&quot;&gt;cryptography&lt;/a&gt; behind Bitcoin is interesting, I find the behavior of the &lt;a href=&quot;http://forum.bitcoin.org/&quot; title=&quot;Bitcoin Forums&quot;&gt;Bitcoin community&lt;/a&gt; more fascinating.&lt;br /&gt;
This is especially concerning security and privacy matters.&lt;br /&gt;
&lt;br /&gt;
As a penetration tester, I regularly assess applications/infrastructure with direct contact to real-life currency e.g. online personal/business banking solutions.&lt;br /&gt;
Furthermore, having also worked on (fraud) forensic investigations, I have a good understanding of the average banking client.&lt;br /&gt;
With this in mind and after comparing the attitudes of my other non-security-aware geek friends, I find it truly inspiring the manner in which most Bitcoin community members have a burning desire to ensure that their (Bitcoin) wallets are kept safe from theft.&lt;br /&gt;
&lt;br /&gt;
The forums showcase some of the proposed ideas that, while not always practical or effective, illustrate how far a member would go to ensure that earnings are not stolen. Below are a few threads, in no particular order, that I found interesting:&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://forum.bitcoin.org/index.php?topic=20377.0&quot; title=&quot;Bitcoin Stock Exchange Security Standards&quot;&gt;Bitcoin Stock Exchange Security Standards&lt;/a&gt; (... it&#039;s like the start of a Bitcoin PCI-type standard)&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://forum.bitcoin.org/index.php?topic=24497.0&quot; title=&quot;Swapping Wallets for Increased Anonymity&quot;&gt;Swapping Wallets for Increased Anonymity&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://forum.bitcoin.org/index.php?topic=25002.0&quot; title=&quot;Secret keys could be memorizable&quot;&gt;Secret keys could be memorizable&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://forum.bitcoin.org/index.php?topic=15068&quot; title=&quot;How I manage and protect my wallets&quot;&gt;How I manage and protect my wallets&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://forum.bitcoin.org/index.php?topic=24546.0&quot; title=&quot;HOWTO: have a safe BTC storage w/o - encryption, backups, or a clean computer!&quot;&gt;HOWTO: have a safe BTC storage w/o - encryption, backups, or a clean computer!&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://forum.bitcoin.org/index.php?topic=17470.0&quot; title=&quot;Idea for a hardware-based Bitcoin savings account&quot;&gt;Idea for a hardware-based Bitcoin savings account&lt;/a&gt; (... my favourite)&lt;/li&gt;&lt;/ul&gt;Whether (or not) Bitcoin will succeed in the long run is questionable.&lt;br /&gt;
But in a world where the top 10 hacks resemble the previous year&#039;s list, I have found a sparkle of hope to believe that the next generation of internet users &lt;strong&gt;&lt;em&gt;just might&lt;/em&gt;&lt;/strong&gt; be smart (or determined) enough to eradicate the age-old vulnerabilities that plague applications/infrastructure today.&lt;br /&gt;
&lt;br /&gt;
[side note: The hacker/cracker arms race will never end as new vulnerabilities will always be discovered, but I can at least hope that some of the older vulnerabilities will eventually become extinct.]&lt;br /&gt;
&lt;br /&gt;
 
    </content:encoded>

    <pubDate>Fri, 01 Jul 2011 21:47:00 +0200</pubDate>
    <guid isPermaLink="false">http://packet-broker.co.za/blog/archives/16/guid.html</guid>
    
</item>
<item>
    <title>HP Printer Bloatware &amp; Wifi Security</title>
    <link>http://packet-broker.co.za/blog/archives/12/HP-Printer-Bloatware-Wifi-Security.html</link>
            <category>Hacking</category>
    
    <comments>http://packet-broker.co.za/blog/archives/12/HP-Printer-Bloatware-Wifi-Security.html#comments</comments>
    <wfw:comment>http://packet-broker.co.za/blog/wfwcomment.php?cid=12</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://packet-broker.co.za/blog/rss.php?version=2.0&amp;type=comments&amp;cid=12</wfw:commentRss>
    

    <author>nospam@example.com (Junaid Loonat)</author>
    <content:encoded>
    After experiencing each of the major printer brands, I quite like HP for their quality and reliability.&lt;br /&gt;
A short while back, I was on the prowl for a new printer and happened to come across a couple of wireless printers.&lt;br /&gt;
Being a geek, I immediately knew this was some tech that I definitely needed in my life...&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;&lt;a href=&quot;http://packet-broker.co.za/blog/archives/12/HP-Printer-Bloatware-Wifi-Security.html#extended&quot;&gt;Continue reading &quot;HP Printer Bloatware &amp;amp; Wifi Security&quot;&lt;/a&gt;
    </content:encoded>

    <pubDate>Sun, 13 Feb 2011 07:50:00 +0200</pubDate>
    <guid isPermaLink="false">http://packet-broker.co.za/blog/archives/12/guid.html</guid>
    
</item>

</channel>
</rss>
