New User, Welcome!     Login

police department

Latest round of web hacking incidents for 2007 & Project news

involves information theft at an Ohio court web site, which is actively used
for identity theft. At least one known identity theft case resulted in
$40,000 loss to the victim.


WHID 2007-70: Tucson, Arizona police web site defaced using SQL injection
=========================================================================
Reported: 20 December 2007, Occurred: 20 December 2007

Classifications:


RE: Latest round of web hacking incidents for 2007 & Project news

involves information theft at an Ohio court web site, which is actively used
for identity theft. At least one known identity theft case resulted in
$40,000 loss to the victim.


WHID 2007-70: Tucson, Arizona police web site defaced using SQL injection
=========================================================================
Reported: 20 December 2007, Occurred: 20 December 2007

Classifications:


RE: Latest round of web hacking incidents for 2007 & Project news

involves information theft at an Ohio court web site, which is actively used
for identity theft. At least one known identity theft case resulted in
$40,000 loss to the victim.


WHID 2007-70: Tucson, Arizona police web site defaced using SQL injection
=========================================================================
Reported: 20 December 2007, Occurred: 20 December 2007

Classifications:


Re: Latest round of web hacking incidents for 2007 & Project news

> involves information theft at an Ohio court web site, which is actively used
> for identity theft. At least one known identity theft case resulted in
> $40,000 loss to the victim.
>
>
> WHID 2007-70: Tucson, Arizona police web site defaced using SQL injection
> =========================================================================
> Reported: 20 December 2007, Occurred: 20 December 2007
>
> Classifications:
>

Cisco Security Advisory: Cisco IOS Software Network Time Protocol Packet Vulnerability

    
    
    access-list 150 permit udp any any eq 123
    
    
    !--- Permit (Police or Drop)/Deny (Allow) all other Layer3 and 
    !--- Layer4 traffic in accordance with existing security policies
    !--- and configurations for traffic that is authorized to be sent
    !--- to infrastructure devices
    !--- Create a Class-Map for traffic to be policed by
    !--- the CoPP feature

Cisco Security Advisory: Cisco 10000, uBR10012, uBR7200 Series Devices IPC Vulnerability

Note: CoPP is not supported on uBR10012 series devices.


    !-- Permit all UDP/1975 traffic so that it
    !-- will be policed and dropped by the CoPP feature

    !
    access-list 111 permit udp any any eq 1975
    access-list 111 permit ip any 127.0.0.0 0.255.255.255
    access-list 111 permit ip 127.0.0.0 0.255.255.255 any

Cisco Security Advisory: Cisco IOS Software Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability

        !--- Deny all trusted source L2TP UDP traffic sent to all IP addresses
        !--- configured on all interfaces of the affected device so that it
        !--- will not be policed by the CoPP feature.

        !--- NOTE: This does not prevent spoofed attacks.
        !---           To be a full mitigation, no trusted source
        !---           addresses should be listed.
        !---           Omit this line if using an L2TPv3 over IP implementation only.

Cisco Security Advisory: SNMP Version 3 Authentication Vulnerabilities

    access-list 111 deny udp host 192.168.100.1 any eq 161
    
    
    !--- Permit all other SNMP UDP traffic sent to all IP addresses
    !--- configured on all interfaces of the affected device so that it
    !--- will be policed and dropped by the CoPP feature
    
    
    access-list 111 permit udp any any eq 161
    
    

Cisco Security Advisory: Multiple DLSw Denial of Service Vulnerabilities in Cisco IOS

    access-list 111 deny udp host 192.168.100.1 any eq 2067
    access-list 111 deny 91 host 192.168.100.1 any
    
    !--- Permit all other DLSw traffic sent to all IP addresses
    !--- configured on all interfaces of the affected device so that it
    !--- will be policed and dropped by the CoPP feature
    
    access-list 111 permit udp any any eq 2067
    access-list 111 permit 91 any any 
    
    !--- Permit (Police or Drop)/Deny (Allow) all other Layer 3 and Layer 4

Cisco Security Advisory: Cisco IOS Software Multiple Features Crafted TCP Sequence Vulnerability

    access-list 150 deny tcp TRUSTED_HOSTS WILDCARD any eq 10000

    !---
    !--- Permit ALPS traffic sent to all IP addresses
    !--- configured on all interfaces of the affected device so
    !--- that it will be policed and dropped by the CoPP feature
    !---

    access-list 150 permit tcp any any eq 350
    access-list 150 permit tcp any any eq 10000


Cisco Security Advisory: Cisco IOS Software Session Initiation Protocol Denial of Service Vulnerabilities

    access-list 100 deny tcp host 172.16.1.1 any eq 5061
    access-list 100 permit udp any any eq 5060
    access-list 100 permit tcp any any eq 5060
    access-list 100 permit tcp any any eq 5061
    
    !-- Permit (Police or Drop)/Deny (Allow) all other Layer3 and Layer4
    !-- traffic in accordance with existing security policies and
    !-- configurations for traffic that is authorized to be sent
    !-- to infrastructure devices.
    !-- Create a Class-Map for traffic to be policed by
    !-- the CoPP feature.

Microsot DID DISCLOSE potential Backdoor

on its botnet buster - the company said that even revealing its name could give cyber 
criminals a clue on how to thwart it", what? This is perhaps the biggest gaffe I've read 
thus far on potential government collusion with Microsoft.

We then have the following wording: "Microsoft had not previously talked about its 
botnet tool, but it turns out that it was used by police in Canada to make a high-profile 
bust earlier this year." So again, thinking logically at what has been said so far by 
Microsoft; "We have a tool called Malicious Software Removal tool...", "we can't tell 
you the name of this tool since it would undermine our snooping...", "it's been used by 
law enforcement already to make a high-profile bust earlier this year."


RE: Microsot DID DISCLOSE potential Backdoor

> biggest gaffe I've read
> thus far on potential government collusion with Microsoft.
>
> We then have the following wording: "Microsoft had not previously
> talked about its
> botnet tool, but it turns out that it was used by police in Canada to
> make a high-profile
> bust earlier this year." So again, thinking logically at what has been
> said so far by
> Microsoft; "We have a tool called Malicious Software Removal tool...",
> "we can't tell

RE: Microsot DID DISCLOSE potential Backdoor

>
> /QUOTED:
> In February, the Sret du Qubec used Microsoft's botnet-buster to
> break up a network that had infected nearly 500,000 computers in 110
> countries, according to Captain Frederick Gaudreau, who heads up the
> provincial police force's cybercrime unit.
> / END QUOTE
>
> Missing the part? Its black and white. If MS wasn't using information
> (flawed
> since it's relying on IP) then how did they correlate IP information

Confirmed Program for SyScan'08 Hong Kong

Cyber Crime: Follow the Money - Pedro Bueno (McAfee)
The Powerful Evil on Mobile Phone - Nanik (COSEINC)
Securing Your Web Application Codes - Kurt Grutzmacher (Pacific Gas)
Hacking RFiD Devices: Octopus Card?? - Adam Laurie (RFIDI0T.org)
Attacking Anti-Virus - Sowhat (Nevis Lab)
Anti-Forensic: Leaving the Police No Trails (the Grugq)
Media Security in VOiP Systems - Shao Weidong (Secure Minded Consulting)
Rambling on the Private Data Security: No more Eason Chan - Sun Bing

Look out for SyScan'08 Singapore and SyScan'08 Taiwan.


[UPRSN] Ubuntu Privacy Remix 9.04r2 fixes security issues

###########################################################

Ubuntu Privacy Remix (UPR), based on Ubuntu 9.04, is a live,
read-only CD that seals off your private data from the outside world to
offer protection against spying measures such as the german
„Bundestrojaner“, with which the German government and federal police
tries to spy on its citizens.
UPR does this using encryption and isolation methods. This method of
booting off a read-only CD provides a isolated and unmodifiable system
that is exceedingly difficult to compromise by spyware.
The following security issues affect the "Ubuntu Privacy Remix" releases

RE: Cryptome: NSA has real-time access to Hushmail servers

You can not be made to lie. Legally, there are no Government privileges that obligates perjury.

You can be asked to keep quiet and in fact, discussing an ongoing case is risky in any event (NSA or local police).

Regards,
Dr Craig Wright (GSE-Compliance)



Craig Wright

KIWICON ]|[ - 2009 Call For Papers

The Crue is aware that location is everything, so once again we will be
invading the Pipitea Campus which is surrounded by prestigious Wellington
buildings such as Parliament house, the (partly renovated and badly secured)
High Court, Ministry of Defence and various telecommunication hubs. All
services are handy to the venue as well (train station, taxi rank, burger
caravan, police cells / court etc). 

Caffeination will be provided by the lovely folks at Sweet Fanny-Anne's. 

     _
  _-(")-

Cisco Security Advisory: Multiple Cisco IOS Session Initiation Protocol Denial of Service Vulnerabilities

    access-list 100 permit udp any any eq 5060
    access-list 100 permit tcp any any eq 5060
    access-list 100 permit tcp any any eq 5061


    !-- Permit (Police or Drop)/Deny (Allow) all other Layer3 and Layer4
    !-- traffic in accordance with existing security policies and
    !-- configurations for traffic that is authorized to be sent
    !-- to infrastructure devices.



[UPRSN] Ubuntu Privacy Remix 8.04r3 fixes security issues

###########################################################

Ubuntu Privacy Remix (UPR), based on Ubuntu 8.04 (LTS), is a live,
read-only CD that seals off your private data from the outside world to
offer protection against spying measures such as the german
„Bundestrojaner“, with which the German government and federal police
tries to spy on its citizens.
UPR does this using encryption and isolation methods. This method of
booting off a read-only CD provides a isolated and unmodifiable system
that is exceedingly difficult to compromise by spyware.
The following security issues affect the "Ubuntu Privacy Remix" releases

Cisco Security Advisory: Vulnerability in Cisco IOS While Processing SSL Packet

    !-- Include deny statements up front for any protocols/ports/IP addresses that 
    !-- should not be impacted by CoPP
    !-- Include permit statements for the protocols/ports that will be 
    !-- governed by CoPPaccess-list 100 permit tcp any any eq 443
    !-- Permit (Police or Drop)/Deny (Allow) all other Layer3 and Layer4
    !-- traffic in accordance with existing security policies and
    !-- configurations for traffic that is authorized to be sent
    !-- to infrastructure devices.
    !
    !-- Create a Class-Map for traffic to be policed by

Re: Microsot DID DISCLOSE potential Backdoor

So you argue... "Reporting is optional..." It sure is, but what do
you think the response would be from MS users if MS stated "We will
send your information to Law Enforcement agents anywhere..."

/QUOTED:
In February, the Sret du Qubec used Microsoft's botnet-buster to break up a network that had infected nearly 500,000 computers in 110 countries, according to Captain Frederick Gaudreau, who heads up the provincial police force's cybercrime unit.
/ END QUOTE

Missing the part? Its black and white. If MS wasn't using information (flawed
since it's relying on IP) then how did they correlate IP information
back to law enforcement... OUTSIDE the United States...

cryptsetup can't destroy last key of a LUKS partition under Ubuntu/Debian

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=513596
and to ubuntu (tested on hardy):
https://bugs.launchpad.net/cryptsetup/+bug/324871

It's not a major security problem, but people who were planning to run 
'cryptsetup luksDelKey /dev/sda1 0' on their installation when the police 
comes to wake them up should be adviced that it won't work out of the box.

Cheers,



Cisco Security Advisory: Cisco IOS Software Session Initiation Protocol Denial of Service Vulnerability

    access-list 100 permit udp any any eq 5060
    access-list 100 permit tcp any any eq 5060
    access-list 100 permit tcp any any eq 5061
    
    
    !-- Permit (Police or Drop)/Deny (Allow) all other Layer3 and Layer4
    !-- traffic in accordance with existing security policies and
    !-- configurations for traffic that is authorized to be sent
    !-- to infrastructure devices.
    !-- Create a Class-Map for traffic to be policed by
    !-- the CoPP feature.



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!