calderonpale.com

network ninja
  • Home
  • About
  • Contact

Taller de busqueda de vulnerabilidades en aplicaciones Android en BugCON 2013

by calderpwn on Sat, Feb 09 2013 17:15:00

Aquí les comparto el temario y requisitos de mi próximo taller en Bugcon sobre búsqueda de vulnerabilidades en aplicaciones Android:

Temario

  • Introducción a la arquitectura Android
  • Formato APK
  • Vulnerabilidades en aplicaciones Android
  • Análisis estático
  • Análisis dinámico

Prácticas

  • Extraer información importante de apks
  • Decompilar una aplicación
  • Análisis de código fuente
  • Detectar vulnerabilidades en almacenamiento inseguro
  • Hijacking de intents
  • Encontrar proveedores de contenido sin permisos de lectura o escritura
  • Abusando de proveedores de contenido
  • Análisis del tráfico de la aplicación
  • Análisis de tráfico SSL
  • Detectar vulnerabilidades en un proveedor de contenido
  • Explotar vulnerabilidades de inyección SQL

Requisitos:

  • Cable de datos
  • VirtualBox

Por favor asegurense que su laptop tenga los drivers para detectar su dispositivo Android.

Posted in Announcements | Leave a comment

Nmap 6: Network Exploration and Security Auditing Cookbook: Updates

by calderpwn on Mon, Jan 28 2013 05:07:00

Updates

 

Changelog

Leave a comment

Mac2wepkey HHG5XX version 10 is out

by calderpwn on Wed, Jan 16 2013 18:48:00

CHANGELOG

  • Adds support for Android 4.2.
  • Fixes auto-connect feature.

DOWNLOAD

Here or from the official Google Play market here.

Posted in Announcements | Leave a comment

year=2012; year++;

by calderpwn on Sun, Dec 30 2012 07:13:00

I wanted to post one last time before 2012 is over and use this opportunity to thank everyone for their guidance, support and above all... good times. 2012 was very exciting for me as it brought many interesting opportunities to my personal life and career. 

Unfortunately I don't have enought time ( And I think I will bore you ) to go through all the events of my year but here is a quick recap:

  • Our startup Websec that offers penetration testing services has positioned itself strongly in the mexican market.
  • Mac2wepkey HHG5XX got very popular ( Although I wrote it in 2011 ) and passed the +2 million downloads mark
  • Attended a lot more CONs and met a lot of very smart and awesome people. ( I even spoke/gave workshops in some of them! )
  • My first book "Nmap 6: Network Exploration and Security Auditing Cookbook" got published! 

Once again, I feel honoured that people find my work useful and I thank everyone that has supported me or my work throughout the year.

Bring it on 2013!

Posted in Announcements | Leave a comment

Mi libro ya esta disponible en Mexico

by calderpwn on Sun, Dec 16 2012 16:55:00

Finalmente ya se puede adquirir mi libro enviado desde la ciudad de México!

http://websec.mx/compra-nmap-6-cookbook

Adicionalmente recuerden que si estan en otro país existen otras formas de compra:

Leave a comment
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9

My online accounts

  • LinkedIN profile
  • My Github profile
  • Follow me on twitter

My mobile applications

  • HHG5XX default WEP key scanner
  • Mac2wepkey HHG5XX (HHG5XX default WEP key scanner FREE)
  • BCBus - BCTransit schedules for android
  • Routerpwn port
  • IP2Hosts
  • LectorBunsen

Nmap 6: Network Exploration and Security Auditing Cookbook

Advertise your product in my applications

  • Anunciate en HHG5XX

Free security audits for open source projects

  • Websec Mexico
  • Websec Canada

@calderpwn

Tweets by @calderpwn

Recent Posts

  • Taller de GuadalajaraCON 2013: Desarrollando para el Nmap Scripting Engine
  • Taller "Búsqueda de vulnerabilidades en aplicaciones Android"
  • (IN)seguridad en infraestructura tecnológica - FLISOL Querétaro
  • mac2wepkey hhg5xx version 11
  • Mis talleres en GuadalajaraCON 2013
  • Taller de busqueda de vulnerabilidades en aplicaciones Android en BugCON 2013
  • Mac2wepkey HHG5XX version 10 is out
  • year=2012; year++;
  • Mi libro ya esta disponible en Mexico
  • Nmap 6: Network Exploration and Security Auditing Cookbook has been published!
  • Discount code for "Nmap 6: Network Exploration and Security Auditing Cookbook"
  • The evolution of Nmap
  • Websec en el Hacker Halted USA 2012
  • Websec en el Security Zone 2012
  • Nueva versión de mac2wepkey HHG5XX para Android

Tags

  • Web security
  • Advisories
  • Code
  • Tutorials
  • Computer Science
  • Android
  • Metasploit
  • BCBus
  • Nmap
  • CakePHP

Links

  • Websec Mexico
  • Websec Canada
  • Hakim.ws
  • Security Dojo
  • ip2hosts.com
  • Tr3w's Blog
  • Brain Overflow
  • Chatsubo Labs
  • Alt3kx's Blog
  • Blog de Alevsk
  • WebAdictos
  • Arduino Projects FIUADY
  • Bugcon
  • Blog de Antonio Toriz
  • Cozumel Jeep Rentals
  • Resrever.net (Read backwards)
  • Bonsaiviking's Blog
  • GuadalajaraCON
  • Flisol Queretaro
  • Comunidad Underground de Mexico

Meta

  • Site Admin
  • Entries (RSS)
  • Comments (RSS)
Powered by Croogo.