DISQUS

DISQUS Hello!  The comments on this profile are unclaimed and thus are unverified.

Do they belong to you? Claim these comments.

Marcin's picture

Unregistered

Feeds

aliases

  • Marcin
  • Marcin
  • Marcin
  • Marcin
  • Marcin
  • Marcin

Marcin

11 months ago

in Regarding The Post On Chargen Earlier Today on Matasano Chargen
I'd like to thank ecopeland for leaking the details and confirming Halvar's hypothesis. I'd like to thank Halvar even more for his perseverance and not letting anyone stop him from speculating as to what the vulnerability could possibly be.

Halvar, you rock. Matasano, thanks for delivering.

11 months ago

in NYSec tomorrow, 6/17 on Matasano Chargen
Dave, Jeremy: Anyone up for an impromptu NYSec given that HOPE is tomorrow??

11 months ago

in Patch Your (non-DJBDNS) Server Now. Dan Was Right. I Was Wrong. on Matasano Chargen
After this all blows over, I'd be interested to see the numbers for how many have already applied the patch versus how many haven't, and again after Dan's talk at Black Hat.

Asking people to accept Dan's (and Tom and Dino's) words on blind faith is asking a lot. I think the position a lot of people are taking is "details first, patch later" as opposed to the "patch first, ask questions later" cowboy mentality.

12 months ago

in Hello! A self introduction by Chris Rohlf on Matasano Chargen
See you at the next NYSec?

1 year ago

in In Which I Resolve A Titanic Semantic Conflict on Matasano Chargen
Bits that parse humans... sometimes do it badly ;)

1 year ago

in In Which I Resolve A Titanic Semantic Conflict on Matasano Chargen
@Dan, I beg to differ. Software can and does kill people. Just read Geekonomics by David Rice. Anton did, and it changed his life!

1 year ago

in The Web Pest Poet on Matasano Chargen
Me me me! Now time to add me... subtlety to mr mogull. :)

1 year ago

in In Which I Resolve A Titanic Semantic Conflict on Matasano Chargen
* Building secure systems is an engineering discipline.

1 year ago

in NYSec tomorrow, 6/17 on Matasano Chargen
This was my frist NYSec, and definitely won't be my last. Already looking forward to the next one!

1 year ago

in Retsaot is Toaster, Reversed: Quick ‘n Dirty Firmware Reversing on Matasano Chargen
Why yes, I just noticed your post! Very cool.

1 year ago

in Retsaot is Toaster, Reversed: Quick ‘n Dirty Firmware Reversing on Matasano Chargen
Btw, I ran into compilation problems on Linux before:

tsec.c: In function ‘main’:
tsec.c:44: error: too few arguments to function ‘setpgid’
tsec.c:44: error: too many arguments to function ‘setpgrp’
make: *** [tsec.o] Error 1



So in tsec.c, you'll want to change line 44:

if(setpgrp(0, setpgid()) == -1) {

to:

if (setpgid(getpid(),0)) {

1 year ago

in Retsaot is Toaster, Reversed: Quick ‘n Dirty Firmware Reversing on Matasano Chargen
The latest version of blackbag I have is at http://www.sockpuppet.org/blackbag-0.9.tgz

Eric, are you suggesting a 1.0 release?

1 year ago

in Dumping Intense Debate on danielmiessler.com | grep understanding

Finally dude... loading another script from another website isn't good, especially when it's your entire comment functionality. pfft.

1 year ago

in Dumping Intense Debate on dmiessler.com | grep understanding

Finally dude... loading another script from another website isn't good, especially when it's your entire comment functionality. pfft.

1 year ago

in The Insidious Insider Threat on Matasano Chargen
I agree with your statement, "I think one reason why we focus (maybe overfocus) in the external threat is that it can’t be controlled. When an employee does something bad, it doesn’t have to become a major media event. You can handle things civilly. And by that I mean civil law."

I believe the only companies that should take the insider threat issue more seriously and actively are those in the defense industry. This doesn't mean only those companies should think about it, because economic espionage is a real thing and it does happen... but not to the extent and criticality to those attacks launched against defense companies. Their products are able to kill people, and the insider threat is not something I want to leave to be decided in civil courts.

1 year ago

in Thoughts on Ten Years of qmail Security on Matasano Chargen
I love qmail. Now if only my web host would let me use it. Guess that I'm gonna have to get my own box sooner rather than later...

Funny how qmail used the concept of developing on a secure platform/framework then. Now, everyone recommends doing so for the same reasons. Why reinvent the wheel and at the same, reintroduce problems that allow developers to make the same mistakes over and over again.

1 year ago

in What Does OS X Say When You Ask it to Pronounce Itself? [Video] on danielmiessler.com | grep understanding

Things kinda slow for you these past couple days Daniel? :P

1 year ago

in What Does OS X Say When You Ask it to Pronounce Itself? [Video] on dmiessler.com | grep understanding

Things kinda slow for you these past couple days Daniel? :P

1 year ago

in This is How You Pronounce Ubuntu on danielmiessler.com | grep understanding

I give up on Digg. I don't know how this made it to the front page...

1 year ago

in This is How You Pronounce Ubuntu on dmiessler.com | grep understanding

I give up on Digg. I don't know how this made it to the front page...

1 year ago

in Penetration Testing is Easy — Too Easy on danielmiessler.com | grep understanding

I'm with kuza on this, what's your point? If what you're saying is 99% of the security community is not as l33t as they say they are, okay... but it's like that all over, in every industry.


We're all just a bunch of button pushers and keypad mashers in the end.

1 year ago

in Penetration Testing is Easy — Too Easy on dmiessler.com | grep understanding

I'm with kuza on this, what's your point? If what you're saying is 99% of the security community is not as l33t as they say they are, okay... but it's like that all over, in every industry.


We're all just a bunch of button pushers and keypad mashers in the end.

1 year ago

in Someone Just Ganked My Lsof Article on dmiessler.com | grep understanding
I know how you feel man.. My blog (and many others I've noticed) is constantly being ripped of content and hosted on other sites.

Wish there was some way to stop it. :shrug:

1 year ago

in Someone Just Ganked My Lsof Article on danielmiessler.com | grep understanding
I know how you feel man.. My blog (and many others I've noticed) is constantly being ripped of content and hosted on other sites.

Wish there was some way to stop it. :shrug:

1 year ago

in Web Design: The Most Important Usability Change You Haven’t Made Yet on danielmiessler.com | grep understanding
yeah, you're right.. it's 12 not 10. I was in the wrong units
Returning? Login