Fight against spam

From today, commentfields are now disabled by default. So regular visitors are not threaten by a permanent ip-ban.At this point every 15 minutes a script runs to filter out all the comments and put the ip-address in to ban-list and removes all the…

ClieOp03 to pipe-seperated-values

I have often to deal with ClieOp-files. ClieOp-files are files which are used by telebankingsystems in the Netherlands to load transactions from an administration application into the telebanking application.Yesterday I wrote a tiny perl-script to…

Reading and converting a really big dataset!

At this moment I am connect to a brand new project, one of the goals of this project is to find out if their is any fraud. For this investigation I received a dump of a SAP-database, with the next data:Transactions payableAuthorisation levelsUsern…

2-factor authentication with SSL-certificates… defeated

Once up on a time somewhere in the Netherlands, there was a guy who gave me all his usernames and passwords to enter the systems he has access to. Their was an application accessable via the Internet, although you need a personal SSL-certificate b…

More visitors on my blog

In november I had a lot of visitors on my blog (and a lot of spammers, there are at this moment 3415 ip-address blocked).

VPN-Clients also know the trick :)

As I wrote before about the SSH-443 trick, I found out that the VPN-client I use often is also using port 443 to login into the network … check out the next sreenshot

About this weblog

WelcomeOn this weblog I wrote small articles about (in my opinion) interesting subjects.At this moment I am working for Snow BV in the Netherlands, via them I am working as Technical Security Consultant/Linux Engineer for Shell. Since I work for …

Backup-script

In the past I wrote a backup-script which makes .tar.bz2 files of the Maildirs and some other data… But after the server crash a few months ago I did not reactive the backup-script. This night the script did again his backup-job and find out tha…

Escape from HTTP monitor policies

Since I found out that it is possible to defeat the security of a firewall… it is also possible to go on the Internet totally secured… without beeing monitored You need:A SSH-server who listen to port 443;An account on the SSH-server which all…