Connect with us

Technology

Meet the team breaking into top-secret HQ’s

Published

on

Meet the team breaking into top-secret HQ's
Getty Images Perimeter sign at Dover Air Force BaseGetty Images

Red Teams try to break into high security facilities

A crack team assembles and breaks into a top secret military base or corporate headquarters – you’ve probably seen it in a film or on TV a dozen times.

But such teams exist in the real world and can be hired to test the tightest security.

Plenty of firms offer to test computer systems by attempting to remotely hack into them. That’s called White Hat Hacking.

But the skills involved in breaching physical security, known as Red Teaming, are rare.

Advertisement

Companies that offer the Red Team service have to assemble staff with very particular skills.

Often using former military and intelligence personnel, Red Teams are asked one question.

“How can you break into this top-secret project?”

Leonardo, the giant defence company, offers such a service.

Advertisement

It says hostile states seeking disruption and chaos are a real threat and sells its Red Team capability to government, critical infrastructure, and defence sector clients.

Its Red Team agreed to speak to the BBC under pseudonyms.

Greg, the team leader, served in the engineering and intelligence arms of the British Army, studying the digital capabilities of potential enemies.

“I spent a decade learning how to exploit enemy communications,” he says of his background.

Advertisement

Now he co-ordinates the five-strong team.

The attack is about gaining access. The objective might be to stop a process from working, such as the core of a nuclear power plant.

The first step for Greg and his team is called passive reconnaissance.

Using an anonymous device, perhaps a smartphone only identifiable by its sim card, the team build a picture of the target.

Advertisement

“We must avoid raising suspicions, so the target doesn’t know we’re looking at them,” Greg says.

Any technology they employ is not linked to a business by its internet address and is bought with cash.

Getty Images The back of a security gaurdGetty Images

Red Teams will look for demotivated security gaurds

Charlie spent 12 years in military intelligence, his techniques include studying commercial satellite imagery of a site, and scanning job ads to work out what type of people work there.

“We start from the edges of the target, staying away. Then we start to move into the target area, even looking at how people who work there dress.”

Advertisement

This is known as hostile reconnaissance. They are getting close to the site, but keeping their exposure low, wearing different clothes every time they show up, and swapping out team members, so security people don’t spot the same person walking past the gates.

Technology is devised by people and the human factor is the weakest point in any security set-up. This is where Emma, who served in the RAF, comes in.

With a background in psychology Emma happily calls herself “a bit of a nosy people watcher”.

“People take shortcuts past security protocols. So, we look for disgruntled people at the site.”

Advertisement

She listens in to conversations at adjacent cafes and pubs to hear where dissatisfaction with an employer surfaces.

“Every organisation has its quirks. We see what the likelihood of people falling for a suspicious email due to workload and fatigue is.”

An unhappy security guard may get lazy at work. “We’re looking at access, slipping in with a delivery for instance.”

A high turnover rate evidenced by frequently advertised vacancies also flags up dissatisfaction and a lack of engagement with security responsibilities. Tailgating, spotting people who are likely to hold an access door open for a follower, is another technique.

Advertisement

Using that intelligence, plus a little subterfuge, security passes can be copied, and the Red Team can enter the premises posing as an employee.

Katsuhiko TOKUNAGA Eurofighter Typhoon aircraft under constructionKatsuhiko TOKUNAGA

Leonardo is best known for its work on big defence projects like the Eurofighter

Once inside the site Dan knows how to open doors, filing cabinets and desk drawers. He’s armed with lock pick keys known as jigglers, with multiple contours that can spring a lock open.

He’s searching for passwords written down, or will use a plug-in smart USB adaptor to simulate a computer keyboard, breaking into a network.

The final step in the so-called kill chain, is in the hands of Stanley.

Advertisement

A cyber security expert, Stanley knows how to penetrate the most secure computer systems, working on the reconnaissance report from his colleagues.

“In the movies it takes a hacker seconds to break into a system, but the reality is different.”

He prefers his own “escalatory approach”, working through a system via an administrator’s access and searching for a “confluence”, a collection of information shared in one place, such as a workplace intranet.

He can roam through files and data using the administrator’s access. One way a kill chain concludes is when Stanley sends an email impersonating the chief executive of the business via the internal, hence trusted, network.

Advertisement

Even though they operate with the approval of the target customer they are breaking into a site as complete strangers. How does this feel?

“If you’ve gained access to a server room that is quite nerve-wracking,” says Dan, “but it gets easier the more times you do it.”

There is someone at the target site who knows what’s going on. “We stay in touch with them, so they can issue an instruction ‘don’t shoot these people,’” Charlie adds.

More Technology of Business

Source link

Advertisement
Continue Reading
Advertisement
Click to comment

You must be logged in to post a comment Login

Leave a Reply

Servers computers

Troca de Rack 12U x 16U – PARTE 1 #cabeamentoestruturado

Published

on

Troca de Rack 12U x 16U - PARTE 1  #cabeamentoestruturado

source

Continue Reading

Technology

Scrub down Shrek’s world in PowerWash Simulator

Published

on

Menu

There are a ton of Shrek movies but not one of them have ever answered this question: Who cleans up the mess when the ogre and his various fairytale villains are done fighting? Square Enix’s PowerWash Simulator finally has an answer.

Dreamworks and Square Enix have teamed up to create the for PowerWash Simulator available now on all consoles and PC. The new pack adds a bunch of scenarios from the iconic animated films and some new armor and tools to help you scrub down the many layers of crud that have accumulated over Shrek’s world.

The new DLC pack comes with 5 new locations that need a good power washing. They include Shrek’s home swamp, the town of Duloc complete with that adorable wind-up information booth, the Fairy Godmother’s potion factory, the dragon’s lair and Hansel’s delectable Honeymoon Hideaway with the Shreks’ onion wedding carriage.

The Shrek Special Pack also offers a new campaign mode that takes you through the new scenes and grants you a new set of knight themed power washing armor and hoses. You’ll also receive messages from “some familiar faces,” maybe even the Muffin Man. (The Muffin Man!) Yes, the Muffin Man! (Actually, you probably won’t. He’s not really an ancillary character in the Shrek universe outside of the nursery rhyme reference from the first movie.)

Advertisement

One of the great things about PowerWash Simulator is just how crazy they’ve gone with the DLC packs. Square Enix has also developed special cleaning scenarios based on , and . The developers have been working on so many things to clean up that they’ve accidentally lost track of one and .

Source link

Continue Reading

Servers computers

HP DL380 Rack Server

Published

on

HP DL380 Rack Server

source

Continue Reading

Technology

Movement Labs unveils finalists for Web3 hackathon with $2M in prizes

Published

on

Movement Labs unveils finalists for Web3 hackathon with $2M in prizes

Movement Labs, the builder of a new blockchain that uses the Move smart contract language, announced 85 finalists for its hackathon.

More than $2 million is at stake in the “Battle of Olympus” hackathon. The two-month event attracted 2,100 project submissions from Web3 developers worldwide. Movement Labs said this response underscores the growing interest in Move-based blockchain technology and its potential to reshape the future of decentralized applications.

Movement Labs recently announced that its Web3 projects have deployed on its testnet with $160 million in total value locked (TVL) committed to its Mainnet.

It basically means that projects with a lot of financial backing have begun testing on Movement Labs’ blockchain and are working toward its official launch of its Mainnet. The $160 million is a reference to the amount of capital at risk in projects that are committed to the ecosystem. Movement Labs itself has raised $41.4 million across two rounds.

Advertisement

The Battle of Olympus hackathon produced ten standout projects across six critical categories, each demonstrating innovative applications of Move-based technology:

Titan

StakedMove: Premier liquid staking token for Movement, enhancing network security and user yield opportunities.

DeFi

Gasyard: Cross-network gas optimization protocol, streamlining DeFi transactions and improving user experience.
PicWe: Omni-chain liquidity infrastructure, facilitating seamless asset transfers across the Movement ecosystem.

AI

RNDM: AI-driven modular liquidity solution, potentially revolutionizing automated market-making in DeFi.

Advertisement

SocialFi

Podium: Web3 social audio platform enabling community-moderated discussions, bridging social media and blockchain.
Movewiffrens (MWFs): Decentralized social media platform, reimagining online interactions with blockchain-based identity and content ownership.

NFTs/GameFi

Seekers Alliance: Skill-based trading card game with innovative NFT mechanics, showcasing advanced smart contract capabilities on Movement.
Simemes: Meme-powered social gaming platform, blending viral internet culture with blockchain gaming.

Infrastructure

Movide: Advanced online IDE for Move, accelerating development on the Movement network.
Scaffold Move: Comprehensive toolkit for building dapps, lowering barriers to entry for developers in the Movement ecosystem.

Movement Labs cofounders Cooper Scanlon (left) and Rushi Manche.
Movement Labs cofounders Cooper Scanlon (left) and Rushi Manche.

The Battle of Olympus winners will receive substantial support, reflecting Movement Labs’ dedication to fostering blockchain innovation. They will get grants of up to $100,000 from the Movement Foundation; exclusive access to the newly launched Move Collective accelerator program; introductions to Movement’s network of top-tier venture capital firms; ongoing technical support, resources, and expert mentorship; Eligibility for the MoveDrop program; and a sponsored trip to Devcon 2024 in Thailand, covering flights and accommodation, courtesy of 280 Capital, an investor in Movement Labs.

“I’m truly amazed by the caliber and talent of developers from around the world who competed in The Battle of Olympus,” said Ali Shiekh, lead strategist, Movement Labs, in a statement. “This event is just a glimpse of the Movement we’re building, and I’m incredibly proud of all the builders who took part.”

Advertisement

The company said the Battle of Olympus hackathon signals a significant growing developer interest in Move-based blockchains. As Movement Labs progresses towards its mainnet launch, these projects will play a role in strengthening its ecosystem and demonstrating the versatility of Movement’s modular architecture.


Source link
Continue Reading

Technology

Students and Recent Grads – Student Pass discount at Disrupt 2024

Published

on

TechCrunch Disrupt 2024 networking student

TechCrunch Disrupt 2024 is only two weeks away, and we want to ensure that students and recent grads don’t miss out on the full Attendee Pass experience — now available at a discounted rate with a Student Pass.

We get that finances can be tight for students and recent grads, but we don’t want you to miss the chance to connect with 10,000 tech experts, startup founders, and VCs at Disrupt 2024, taking place from October 28-30 at Moscone West in San Francisco.

Grab your Student Pass here before prices go up.

What’s included in a Student Pass

Full access to the Expo Hall

At the bustling Expo Hall, Disrupt attendees come together to explore cutting-edge startup innovations. It’s the perfect place to connect with key players who can help launch your career and watch the startup pitch-off to get a firsthand look at what it takes to succeed in the startup world.

Advertisement

Access to all six industry stages

Learn from top innovators and thought leaders spanning various industries, including AI, SaaS, fintech, startups, VCs, space, and more.

Witness the intense startup battle

Experience the thrill of Startup Battlefield 200, one of Disrupt’s highlight events. Handpicked pre-Series A startups will pitch their bold ideas on the Disrupt Stage to a panel of top VCs, competing for a $100,000 equity-free prize and the highly sought-after Disrupt Cup.

With a panel of top VC experts, the judges will provide essential feedback as they evaluate each startup’s success potential. Don’t miss this opportunity to benefit from their sharp analysis and industry knowledge at Disrupt 2024.

Hands-on discussions

Your Student Pass gives you access to over 250 deep-dive sessions. Join a 30-minute Roundtable with a small group, guided by an industry expert, to spark meaningful conversations about the tech and startup landscape. Or head to a 50-minute Breakout Session, where panels answer your questions — just be sure to secure your seat early, as these are first-come, first-served.

Join session topics that include:

Advertisement

  • Harnessing the Power of Gen Z: Online Community Strategies for Startups
  • Shoppertainment 2024: The Future of Consumer and Commerce
  • Successfully Raising Your Seed or Series A in 2024
  • Check out all the sessions

Braindate networking 

Boost your networking game with the Braindate app. Share your discussion topics, explore ideas from others, and spark meaningful conversations. Set up in-person 1:1 or small group meetings with Disrupt attendees to collaborate, brainstorm, and solve problems alongside peers who share your interests.

Before and after-hours events

Keep the Disrupt excitement going by attending company-hosted Side Events throughout “Disrupt Week,” from October 26 to November 1. Whether it’s meetups, workshops, happy hours, or comedy shows, these events provide extra opportunities to connect with startup and VC leaders. See the full list of Side Events here.

Get your Student Pass now before prices go up

Kickstart your career by attending Disrupt 2024 with a Student Pass, giving you full access at a discounted rate. You’ll enjoy all the perks of an Attendee Pass but for less. Don’t wait — prices increase at the door, so lock in your Student Pass today.

TechCrunch Disrupt 2024

Source link

Continue Reading

Servers computers

Unboxing a IBM System x3650 M4 rack Server – 029

Published

on

Unboxing a IBM System x3650 M4 rack Server - 029



I absolutely love IBM servers and System X 3650 is my favorite server.

[Affiliate Links]
This model starts at about $1.600 at Amazon check up on price http://amzn.to/1NVI1Az
Link – System x3650 M4 7915 – https://amzn.to/2YJRMih
Link – x3650 M4 Drive Caddy – https://amzn.to/2YEFsQr

This model starts at about $1.600 at Amazon check up on price http://amzn.to/1NVI1Az

I even have the first three generations of the server in my datacenter. x3650, x3650 M2 and x3650 M3. But the latest x3650 M4, I have not yet gotten my hands on. But we have it at work, and it’s just amazing.

Hardware summary
Dual-socket 2U rack server for expandability and high performance

Up to two Intel Xeon Processor E5-2600 v2 product family processors

Up to 768 GB memory and up to 1866 MHz memory speed

Integrated quad-port Gigabit Ethernet and optional embedded dual-port 10 GbE

Up to six PCIe 3.0 expansion slots; up to four optional PCI-X slots available

Up to 16 TB of 1.8-inch hot-swap SSDs or 25.6 TB of 2.5-inch hot-swap SAS/SATA/SSDs or 24 TB of 3.5-inch hot-swap or simple-swap SAS/SATA HDDs

Embedded 6 Gbps hardware RAID-0, -1, -10 and optional RAID-5, -50 or -6, -60. Optional support for new 12 Gbps RAID controller.

Hot-swap disk/fan/power supply, two fan zones with N+1 fans design, light path diagnostics and Predictive Failure Analysis, better thermal design, balanced efficiency, uptime and serviceability.
_______________________________________________________
My PlayHouse is a channel where i will show, what i am working on. I have this house, it is 168 Square Meters / 1808.3ft² and it is full, of half-finished projects.

I love working with heating, insulation, green power, alternative energy, solar, wind and more. It all costs, but I’m trying to get the most out of my money, and my time. .

source

Continue Reading

Trending

Copyright © 2024 WordupNews.com