C3L Projects

Time to give this fella a short update.

In the C3L Wiki you now have again a clear structured Projects page on which you can follow what C3L members are working on and get a look into it. If you have some more ideas or want to join a project or give feedback, please don’t mind to contact us.

WarDriving is currently a beloved topic, even though it is already an “older” topic, but still there is always a way to bring it to a next, probably even more interesting step.

See you folks around!

Posted in C3L Wiki, Projects | Tagged , | Leave a comment

CCC Camp Live Streaming

Dear fellow CCC hackers,

if you couldn’t make it to the CCC Camp 2011 in Finowfurt near Berlin (Germany), you now have  the possibility to come to the syn2cat Hackerspace in Strassen (Luxembourg) and watch with us some live stream lectures or just discuss about technology and the world or  hack on a few things. Don’t fear to try out what you’ve just learned from a lecture or workshop, try it out on this weekend with us!

You are welcomed!
Open Community, Open Space, Free Knowledge.

Bringing CCC Camp ’11 to .lu

Posted in Events | Tagged , , | Leave a comment

Talk: Communication Security

Dear folks!

Communication Security is a term that can be defined by a few point of views, so trollchen & prometheus decided to give it their own definition for this Saturday evening talk and though to illustrate it with their own views, opinions and ideas, but always in consideration of the fact that not all topics can be covered because of the short time.

The focus lies on e-mail en/decryption as the signing and the Off-the-record messaging protocol to secure instant messaging conversations. Securing online communication by additional protocols are also part of the program as are social networks and a general discussion about privacy. In the there will also be some sort of workshop to show people – no matter what OS – how to enable these features.

It will be the first, but not the last time that this talk goes out there, because improving and reflecting is also an important part of the event.
Anyway, hope to see you on Saturday night @ 6 o’clock in syn2cat Hackerspace.

Posted in Events | Leave a comment

ADTrees in the forest

About Attack-Defense Trees – method to model attacks / defenses – Nick17 will give his attendees a half an hour presentation followed by a discussion tonight.
The event page can be found here.

Looking forward to see you tonight.

Posted in Events | Leave a comment

C3L Wiki – Reloading

Dears C3L blog readers and followers!

As you might have noticed the C3L Wiki has been reactivated, but most of its content is missing yet. The reason behind this enigma is pretty simple: restructuring. Lots of users haven’t had a clear sight anymore and it took a lot of time to get to the information which were seeked. To facilitate this process again, we decided on setting up a new wiki, with restructured and updated content.

As the old wiki contained some content it’ll take some time to import everything to the new wiki, so if you got some extra time you may consider helping us reestablishing the content and update it on the same jump.

Create a new account on http://c3l.lu/wiki and copy/import the content of the old wiki to the new one with the help of the MediaWiki integrated import/export functions, or just view the source of the article you want to work on and copy/paste it to the new wiki page. Please don’t forget to update essential information, links and so on.

If by accident you would run into any problems to hesitate to get back to C3L hackers on the ML or by private mail. Remember: if everyone is shifting a few bits and bytes we’ll be done in a short time.

Outdated wiki: http://c3l.lu/w_old/index.php

Hack on!

Posted in C3L Wiki, News | Tagged , , | Leave a comment

cgi h4acking

Folks!

gunstick from syn2cat wrote a script to use espeak over a web formula and coded on purposes some bugs in it, which can be exploited. Echoing the content of /etc/passwd inside the webbrowser is a cookie and executing commands on the borne (computer terminal within a box, with only a touchscreen) itself is a Club-Mate worth.

Give it a try if you got some time.

[Update]

Address: borne.lan
Wiki Page: Born2Life

Posted in Competitions | Tagged , , , , | Leave a comment

C3L General Assembly

Dear fellow C3L hackers!

The same procedure as every year Miss Sophie! as James would say

As stated in C3L statutes, an annually GA will take place. Out of
organizational reasons, the 23rd will not be a possible date, thus the
board decided to move the GA to the 21th May 2011, starting at 7 P.M. in
the lodges of syn2cat Hackerspace.

Order of the day:

  1. Welcome Speech
  2. Activity Review of 2010
  3. Financial Report of 2010
  4. Vision of C3Ls Future
  5. Statute Proposals
  6. Discussions
  7. Election of a board
  8. Election of a treasurer
  9. Election of a President and a Vice-President
  10. Talks / Presentations

Kabel will give an introduction into the USRP and show us some basic stuff what one is able to do with it.

Please note:

[1] If you are not able to attend, thus any reasons, consider representing
yourself by an adult person attending on the GA. Do to so, send in a
letter by sneakernet with traditional signatures or a gpg-signed Mail.

[2] If you want contribute alterings to the statutes, please consider that the delay is the 20th of May at 23:59:59.

[3] In case you want to get involved even more into C3L, please consider the possibility joining the board. A mail to board[@]c3l.lu is enough to candidate for the board. If you want to candidate for one of the presidential posts you need to send in a second mail with the note that you also want to run for this office. Please consider that a separate mail is not essential for the post of the treasurer, but it would help the organizers getting things run more smooth.

All replies go directly to prometheus or to board{@}c3l.lu.

Thanks a lot and hopefully see you all on the 21st!

[Update]
An update of the order of the day as for the reference [3] have been made.

Dear fellow C3L hackers!

The same procedure as every year Miss Sophie!

As stated in C3L statutes, an annually GA will take place. Out of

organizational reasons, the 23rd will not be a possible date, thus the

board decided to move the GA to the 21th May 2011, starting at 7 P.M. in

the lodges of syn2cat Hackerspace (http://www.hackerspace.lu/wiki/Location).

Order of the day:

1. Welcome Speech

2. Activity Review of 2010

3. Financial Report of 2010

4. Vision of C3Ls Future

5. Server

4. Election of a board

5. Election of a treasurer

6. Election of two presidents

(for the period of 2011/2012)

8. Talks / Presentations

Please note:

If you are not able to attend, thus any reasons, consider representing

yourself by an adult person attending on the GA. Do to so, send in a

letter by sneakernet with traditional signatures or a gpg-signed Mail.

All replies go directly to myself or to this mail.

Thanks a lot and hopefully see you all on the 21st!
Posted in Events | Tagged , , | Leave a comment

iOS and the story of the consolidated.db

Apple caused a lot of stir lately and not for the first time. Saving position data of their users without notifying them obviously about the fact isn’t the way to go, but hey, it’s Apple and many users don’t care anyway, because they have nothing to hide, they say.

But if we have a second look at this statement, we see that these people are giving up their fundamental rights and within it their privacy. It’s horrible to see, that consumers don’t inform themselves enough about products they’re going to buy from a company. Still there is left the question, if they would consider otherwise or still head on without carrying?!

Apple is probably getting away anyway without needing to explain a lot to their users and fans; the profits are going on and on either way. But the true image can and needs to be revealed to the users display and eyes and this is where people knowing about such facts need to stand up and raise their voices. We also need to regard the fact Apple isn’t the only bad boy in this story. There are other companies which do probably the same, but there haven’t been such leaks yet.

All above all, more on the entire matter you are able to listen in the “Dossier vum Daag” by 100 Komma 7 in an interview with C3L. (Direct link to the recording)

Posted in News | Tagged , , , , , , , | Leave a comment

Workshop: Easy & Secure Mail Transfer

As some of you may have noticed, on Friday is the long expected Ubuntu Release Party taking place in syn2cat Hackerspace in Strassen. C3L will also be represented with a workshop about how to regain your privacy in electronic mails.

An overview about the topic is given to the attendees as a workshop will be held shortly afterwards to inaugurate people into the matter in a practical way.

More information about the entire event and the presentation itself can be found on the belonging article in the syn2cat wiki: Ubuntu 11.04 Release Party

Posted in Events | Tagged , , , , , , , , | Leave a comment

Malware in focus

Penultimate Tuesday, Virii and I had an interview with RTL Radio from Kierchberg about Malware in general as the highlights of the last 40 years.

Malware is something that is not to underestimate, started from the Creeper, which had a very simple and proof of concept purpose, up to Conficker or Stuxnet which filled the headlines of newspapers over months.

The point which shouldn’t be cared less about are smart-phones. The more and more they gain attractiveness in the area of malware writers. The increase has of course a few reason and one of them is called: availability.

Not being available or online most of the time has become unusual to people being confronted with these new technologies in every day life. Reading newspapers online in the morning while waiting for the traffic jam being resolved, chatting with friends while hitting the streets to a meeting which has been reserved over the restaurants website and retrieving the timeline for public transportation to this location from an app and the last few meters getting guided by the internal GPS using a companies free available map and sharing ones position over social networks. Before joining the others on the table, 2 more bank transfers need to be done, at that a quick tweet about my good mood and dinner can start.  Simply put: carrying ones entire life in the pocket and this 24 hours a day.

For attackers an ideal target to focus on: personal & company information as login credentials, nearly no software preventing this from happening installed and an almost constant absent of security awareness in users minds. Hijacking phones and selling personaldata, but before using victims credit card details are few motivations intruders have.

Hopefully this short preview, raises your curiosity getting a deeper dive in the matter.

As there was a lot content recorded, the recordings have been split up to 3 to 5 parts and are going to be aired every Wednesday from the 6th of April on at around 7h10 PM on RTL Radio.

40th Anniversary of the Computer Virus (Part I)

40th Anniversary of the Computer Virus (Part II)

40th Anniversary of the Computer Virus (Part III)

40th Anniversary of the Computer Virus (Part IV)

Posted in News | Leave a comment