Dailydave mailing list archives

Printers


From: Dave Aitel <dave () immunityinc com>
Date: Thu, 14 Feb 2008 09:25:31 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://www.eweek.com/c/a/Printers/Multifunction-Printers-The-Forgotten-Security-Risk/1/

I found this article quite interesting since Bas just finished a
penetration test where he managed to break in through a large printer
that was exposed to the Internet. There are real business reasons for
having your printers exposed and the risks are somewhat vague,
especially to most network security staff. I like seeing some of the
theoretical stuff actually happen though. :>

Sinan Eren is giving a neat talk in a few days at BlackHat Federal -
IO Immunity Style. It starts off with a case study of what happens
when someone real goes up against a hard target and isn't doing a
penetration test. After that you get to see a demo of PINK, which is
an essentially undetectable-on-the-wire remote beaconing trojan he
wrote.  Then at the end you get to ask questions of one of the finest
information security minds in the industry.

I'll be at the first day of BH Federal as well, and helping with the
defend the flag. So hopefully I'll see a lot of the people on this
list there!

- -d
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHtE9ZB8JNm+PA+iURAgjnAJ4scFakSWYK20N1II57vJEnhWIJaQCgsO6c
EhMsBLYveYQYPqp3qZIiV6s=
=gFxK
-----END PGP SIGNATURE-----

_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://lists.immunitysec.com/mailman/listinfo/dailydave


Current thread: