Security Related

Guy Mizrahi about Security and Technology.

Archive for November, 2009

mitm for smartphones

November 18, 2009 By: Guy Mizrahi Category: Uncategorized No Comments →

I have read this article about Man-in-the-middle attacks demoed on 4 smartphones.

Lets see… are they really saying this?

Can you really hack and manipulate clients of a non secured wifi lan?

It has been discussed a lot of times and demo of this attack is everywhere, so what is new here?

A free public tool (SSLstrip), an unsecured wifi access point and some technical skills can give you the power to hack any client near you.

but what is new  here that deserve an article?

the fact that they attacked a smartphone?

I see no news here.

Smartphones are small computers. you can hack them as easy as you can attack a pc.

(well, maybe it is easyer on the iPhone because you already knows that the root password is alpine 🙂 ).

What need to be said is that:

The knowledge and the way of think of a hacker is not limited to computers, phones or even electornics.

The hacker charm will work on everything: a person will be manipulated using Social Engineering and your credential will be stolen wherever you keep them.

The attack of a hacker is not because of the technology can allow it. It is happening because you allow this.

So? you want to surf without being hacked?

click here to download this and youll be safe (Just kidding! 🙂 ).

E-crime by the Mafia in israel

November 02, 2009 By: Guy Mizrahi Category: Uncategorized No Comments →

I read the other day a great story that involves Mafia and computer crimes.

The story begins with a manager of IT services in the computers department of the Israeli gambling commission  that criminals tried to push him to install their pre made dedicated software.

This software was supposed to give the criminals the names and details of  the winning “TOTO” prize. The details was supposed to be sent to the criminals as soon as the winners declared and then they can obtain the winning tickets and collect the prizes.

The story does not end there.

A year later they tried a different approach. The criminals built a web site for the same comity that could sent a winning “TOTO Winner” (daily toto gambling game) a half an hour after the end of the gabling time.

This time the Israeli police was informed and started an investigation that led to the Zeev Rosenshtein organization (a big mafia head that is currently serving time in the US jail).

The police wanted to open a new task force of 100 officers to fight this kind of things but the all idea didn’t succeed.

Well.. I thinks that the regualr police can not fight this kind of crime. they need a better researchers to do this kind of investigations.

Bad Behavior has blocked 40 access attempts in the last 7 days.

FireStats icon Powered by FireStats