Archive for 2010/07/03

112 to be exact. By Google and Microsoft

http://blog.sunlightfoundation.com/2010/07/01/key-net-neutrality-supporters-hire-former-government-officials-to-lobby/

http://www.washingtonpost.com/wp-dyn/content/article/2010/07/02/AR2010070202277.html

Source: http://www.digitalsociety.org/files/gou/DPI-Final-10-23-09.pdf

In recent debates on the issues of privacy and the Internet, Deep Packet Inspection (DPI) has been grossly oversimplified as a technology that is primarily harmful to consumers. Much of the commentary has been based on a poor understanding of what DPI is and how DPI works. All too often the debate over DPI is focused on unrelated issues such as free speech and censorship, which are largely political and not technological issues, and all too often is DPI usage described as a violation of consumer privacy when the reality is far more complex and nuanced. What has been missing is a broader discussion on the full nature and application of DPI technology; DPI enables a wide range of applications most of which are not only positive but also essential to the survival of the Internet. This paper will explain how DPI technology works and explore potential dangers and benefits of DPI technology to consumers and the internet.

Introduction to Deep Packet Inspection (DPI)……………………………………………………………………..3
DPI as the immune system of the Internet……………………………………………………………………………………..5
Networkbased DPI can identify Denial of Service attacks and Worms………………………………………………….5
DPI in law enforcement and national security…………………………………………………………………………………7
DPI and targeted advertising……………………………………………………………………………………………………….7

Debunking Myths About DPI…………………………………………………………………………………………………7
Myth: DPI is the same as a postal worker peaking inside letters while en route………………………………………7
Myth: DPI violates inviolate Internet protocols……………………………………………………………………………….8
Myth: DPI violates privacy…………………………………………………………………………………………………………..8
Myth: DPI will start a costly encryption arms race……………………………………………………………………………8

Conclusion: DPI is Simply a Tool……………………………………………………………………………………………9

http://gizmodo.com/5578966/the-making-of-iron-man-2s-incredible-interfaces

Stealing more than $1m from charity bank accounts

http://www.theregister.co.uk/2010/07/02/bank_insider_data_theft/

Hacker Raoul Chiesa wanted to present at the Hack in the Box security conference in Amsterdam. He wanted to demonstrate how one could misuse security flaws in ATM machines to access large quantities of money.
Banks threatened to have him arrested should he walk up the stage.

Source (Dutch language): http://tweakers.net/nieuws/68346/hacker-zegt-presentatie-af-om-bedreiging-door-banken.html

Other presentations by Raoul Chiesa:

Profiling Hackers: http://www.virusbtn.com/pdf/conference_slides/2009/Chiesa-VB2009.pdf
Hacking Mobile Operators: http://www.slideshare.net/null0x00/raoul-nullcon2010-day1

Previously security researcher Laurent Oudot explained that the WiFi network of the Thalys could be easily compromised and misused.

Source (Dutch language): http://security.nl/artikel/33760/1/Internet_in_Thalys_kwetsbaar_voor_hackers.html

Hack in the box website: http://www.hackinthebox.org/

Conference material: http://conference.hitb.org/hitbsecconf2010ams/materials/

After the Dutch team had beaten Brazil during the soccer World Cup in South Africa, Dutch telco KPN processed 800,000 text messages per 5 minutes. Vodafone had to process so many calls and text messages that parts of its mobile infrastructure clogged up.

Also, never before did people exchange so many text messages between The Netherlands and South Africa as was the case today.

Source (Dutch laguage): http://www.spitsnieuws.nl/archives/tech/2010/07/smsrecord_na_wedstrijd.html