Author: gpanther

  • Hack the Gibson #169

    Read the reason for these posts. Read Steve Gibson’s response. Steve Gibson says that MSRT runs when restarting the computer: … And then it runs the next time you restart your machine This is not true, not only because MS says so (The version of the tool delivered by Microsoft Update and Windows Update runs…

  • Disabling accessibility features on the Welcome Screen for Windows XP

    As I said before, one of the first thing I do when I install WinXP is to disable the accessibility features. However this is a per user setting and I would like to disable it on the welcome screen also. This is especially useful for the default setup I do: an administrative user and a…

  • Mixed links

    From splibrain.org: Graph Gear, a very nice flash based open source (!) graphing solution. Very nice if you want to display graphs online. Interesting to know: why is Italy excluded from all online contests? From devnet’s bookmarks: SS64 – command references for Windows, Linux (bash), Powershell and Oracle. This site is a good resource which…

  • Loading the Meterpreter in a DLL

    After ranting about Metasploit I played around a little bit and tried out a little and here a part of what I found: Some times it may be useful to load the Meterpreter (or any payload in fact) as a DLL. Two scenarios I can think of: Software Restriction Policies (and many other whitelisting products)…

  • Two new podcasts

    Just wanted to announce two new podcasts I’ve started listening to, and maybe they would be of interest to people interested in security: The IT Security Pubcast – a South African podcast with security professionals who have real, hands-on experience with the physical aspects of security. Being a more electronic-only guy, this is a very…

  • A quick personal todo

    Check out the Sony PS-LX300USB turntable. I’ve known about the one ThinkGeek offers, but this review sounds very good. Also, Amazon seems to offer some nice accessories for music archiving (like the record cleaner brushes / solutions).

  • On the topic of contests…

    The latest packetlife challenge is over and here is the solution. Very cool. And here is a challenge I almost forgot about (since this too is very network oriented and I currently don’t have the time to dig up all the information needed): NMAP Trivia: Mastering Network Mapping and Scanning. If you want to take…

  • Two more involved contests

    The first is the First Annual SIGMOD Programming Contest (via nconway’s blog). You need to create data structures to index a generated data stream (in fact streams, because multiple streams are presented to you in parallel) and perform operations on them (insert, update, query). The second one is the Cisco Developer Contest (link from Ubergeek.ro).…

  • grcsucks.com revival – #1

    After starting a one-man movement 🙂 to clarify the muddy waters created by Steve Gibson, I was relieved to find that I’m not alone in my opinion. The central site gathering all the information was grcsucks.com, the domain registration of which expired somewhere around June 2007, and since than you can only find a domain…

  • Hack the Gibson #168

    Read the reason for these posts. Read Steve Gibson’s response. Steve Gibson gets the description of the attack wrong (backwards): It’s possible to have something hiding below the surface, literally on, like, a layered page, where the user clicks on what they see, but what they’re actually clicking on is content on the page behind.…