Month: October 2017

  • Become a witness of new generation of financial age. But be careful of hack.

    Preface: Bitcoin mining make the world crazy. Java base coin mining tools provides flexibility. A lightweight, small footprint let you involved to mining industry. What is the actual reason to lure the people starting the mining work? Reminder: Bitcoin mining like a games. Different types of crypto currencies will have different mining rewards policy. It…

  • SS7 flaw make two factor authentication insecure – Reveal the veil

    Preface: Two factor authentications claimed itself that it is a prefect security solution. No matter online banking transaction, Bitcoin wallet, e-trading business system and application system which concern the data privacy are willing to apply two factors authentication. The overall comments for two factor authentication on the market Let’s take a review in below cyber…

  • New trend – Botnet infection technique empowered Ransomware infection

    Preface: We known that botneck infection technique popular last few year. The objective of the botneck infection more on DDOS attack. But the status now has been change. Below sample of code on how botnet operation. using System.Threading.Tasks; using log4net; using Loki.Bot; using Loki.Common; using Loki.Game;   namespace MapBuddy.Tasks {     public class MapExplorationCompleteTask…

  • Tax heaven is also a hacker playground – Bermuda

    Perhaps the legal firm Mossack Fonseca data breaches incident is a history. However headline news reveal another similar case which was happened on November last year.I was shock that Mossack Fonseca encountered data breach which astonish the world since Tycoon and famous people like President of Russia Putin virama was included in their customer list. …

  • Existing encryption scheme looks have space to enhance – X.931security breach

    The implementation of existing encryption scheme looks have space to enhance. Another bug has been found on X.931. It looks that the vulnerability found on encryption machanism last few months reveal the bottleneck in IT environment. Can you still remember that our Hero Edward Snowden alert. He was told that cyber espionage or government will…

  • RTOS(real-time operating system) is under attack. Do you think it is the 2nd round of test?

    The terms IoT (Internet of things) looks a messed transformation of specifics definition. The suitable criteria to define a IoT component is that for a device demand data be processed without buffering delays. If you have habits read technology post daily. We known that IT security vendor (checkpoint) alert the world that a new IoT…

  • INFINEON chip design flaw – not vulnerable in ECC, flaw only encountered on RSA

    Bitcoin technology looks luck this round since INFINEON chip design flaw – not vulnerable in ECC (Elliptic Curve Cryptography), flaw only encountered on RSA. Vulnerability The flaw resides in the Infineon-developed RSA Library version v1.02.013. A design weakness has been found. A vulnerability in an implementation of RSA Key Generation could allow private encryption key disclosure.…

  • WPA2 vulnerability found. But online Banking system customer do not shock.

      WPA2 vulnerability found. But online Banking system customer do not shock. Take it easy. The WPA2 wireless encryption scheme looks secure before specifics vulnerability occurred. Security expert found that hacker is able to relies on 3rd handshake doing injection which causes man-in-the-middle of attack. As a result your wireless network data traffic will be…

  • How will be effect to cyber world – a scandal from Microsoft

    Reuters interviews with Microsoft former employees. A scandal given by former employees was that Microsoft responded quietly after detecting secret database hack in 2013. It looks that this is official commercial tactics. I have no surprise that hackers relies on known bug on vendor bug track database to formula new generation of virus. Believe it or not, we…

  • Potential risk of CVE-2017-15265

    CVE-2017-15265 found on Linux causes privileges escalation. Cisco expert found that it the vulnerability is due to a use-after-free memory error in the ALSA .The ALSA Framework design for audio function. However Android and IoT devices are deployed the ALSA framework on demand. Since Cisco do not have sound on their router, network switch, IDS…