May 22 2008

Querying MOM

Tag: Systems — Joaquim Anguas @ 6:40 pm

diving

When you monitor a set of servers using MOM, the Operator Console focus you on doing: having the alerts solved and the cattle happy and healthy.

But one day comes when you want to know more that do.

Do not you try to extract knowledge from the Operator Console as it hopefully only keeps some days of data, normally too few to extract relevant conclusions.

Then there’s the Reporting Console. You’d better match your need to know with the predefined reports, because it does not have a report creation tool as some may expect.

You can, of course, create a Reporting Solution on Visual Studio 2005/2008 and then integrate it into the Reporting Console (see here for a good example).

But once you have to dive into the MOM database, don’t you want to take a deep breath and get to the bottom of it?

Don’t you want to query MOM?

This may help the hero in you.

Continue reading «Querying MOM»


May 20 2008

Unerasable iPhone

Tag: (i)realidad,Informática Legal — Joaquim Anguas @ 11:17 pm

But it’s cool if take you it to Apple, because if your brokeass iPhone does become a refurb for some discount-seeking soul, Apple scrubs it to the bone, right? Nope. Using a standard forensic toolkit (or probably just some decent quasi-hacking), your personal data can be recovered from a refurb»

iphone

via gizmodo, from zdziarski.


Abr 29 2008

Víctimas de compra y venta

Tag: (i)realidad — Joaquim Anguas @ 11:26 pm

Salvajes

via uninformaticoenelladodelmal.


Abr 28 2008

EULAs para malware.

Tag: (i)realidad — Joaquim Anguas @ 10:56 pm

No, no hablo de Adobe.

EULAs en el malware:

In cases of violations of the agreement and being detected, the client loses any technical support. Moreover, the binary code of your bot will be immediately sent to antivirus companies.»


Abr 17 2008

Whaling

Tag: (i)realidad — Joaquim Anguas @ 10:07 am

whaling

The term is a play on phishing, an approach that usually involves tricking e-mail users — in this case the big fish — into divulging personal information like credit card numbers.»

From nytimes.


Abr 16 2008

…spam egg spam spam bacon and spam…

Tag: (i)realidad — Joaquim Anguas @ 1:55 pm

CAPTCHA exposed?

CAPTCHA

Ready your spam filters…


Mar 30 2008

Dejando huella

Tag: (i)realidad,Informática Legal — Joaquim Anguas @ 10:43 pm

FINGERPRINT

Leo en theregister sobre un artículo del ccc en el que explican haber conseguido una reproducción de la huella del índice derecho del ministro del interior alemán, Wolfgang Schauble, reproducción que puede ser usada para identificación en un lector de huellas.

The whole research has always been inspired by showing how insecure biometrics are, especially a biometric that you leave all over the place,» said Karsten Nohl, a colleague of an amateur researcher going by the moniker Starbug, who engineered the hack. «It’s basically like leaving the password to your computer everywhere you go without you being able to control it anymore.» 

El método no es nuevo. Haber conseguido la huella de un personaje tan relevante (si es cierto), si.

Y si, el tal Starbug es el mismo del post anterior.


Mar 12 2008

Popular smartcard cracked

Tag: (i)realidad,Informática Legal — Joaquim Anguas @ 4:06 pm

The research team was able to obtain the card’s proprietary encryption scheme by physically dissecting its chip and examining it under a microscope. They then photographed various levels of its circuitry and used optical recognition software to produce a 3D representation of the entire chip. By examining the logic gates in great detail, they were able to deduce the proprietary algorithm, which NXP dubs Crypto1.

From theregister.


Mar 05 2008

«Guardarse la jerga»

Tag: Informática Legal,La Profesión — Joaquim Anguas @ 5:39 pm

Hace un tiempo, comentando un informe pericial (mío), mi interlocutor me decía:

  • Veo que pones mucho detalle técnico…
  • Bueno en mis informes hago siempre un resumen ejecutivo al principio, una justificación somera después y todos los detalles técnicos que permiten pasar de la observación a las conclusiones en la parte final. Luego en los apéndices los datos capturados, etc.
  • Claro, pero todo lo que aparece en el informe te expone a crítica. Yo prefiero guardarme la jerga para el juicio…

Eso de «guardarse la jerga» desde mi humilde punto de vista atenta contra el derecho de contradicción, ya que omitiendo en sus informes detalles sobre el origen de sus conclusiones, obstaculiza que estas puedan ser criticadas adecuadamente. Y en caso de ser cuestionado durante el juicio, le será fácil usar la jerga para salir airoso.

Como consejo, haced que alguien cualificado os revise los informes técnicos que os presenten y evalúe cualquier posible «olvido» en la secuencia lógica entre hechos y conclusiones, realizando un dictamen al respecto señalando, a falta de otra justificación, aquellas posibles alternativas que podrían llevar a conclusiones distintas.


Feb 23 2008

Cold Boot Attacks on Encryption Keys

Tag: Informática Legal — Joaquim Anguas @ 12:11 am

Read more here.


« Página anterior — Página siguiente »