Hak5 902 – Extracting files from packet captures, brute forcing stenography, packet sniffing goodness and more from RSA 2011

Season 9 continues with the results from last weekend’s Crack the Code Challenge as well as a walkthrough on how participants were able to complete the challenge using packet analysis, file reconstruction, stenagrophy and brute force. Plus encrypted USB drives with centralized management and more from the RSA 2011 conference.

Download HD Download MP4 Download WMV

Hacker Headlines

Bummed you didn’t get your hands on one of Google’s CR-48 Chrome notebooks? The alternative Instant-On OS Splashtop Linux is now available for download. Splashtop has been previously available as a pre-installed second OS on notebooks from Acer, ASUS, Dell and others. This 1.0 release makes the trim down Linux 2.6 and X11 based OS available to the public.

Samsung has made a ROM based on Android 2.3.2 Gingerbread for the i9000 that just leaked to the net. All of the changes haven’t yet been determined, and if you don’t have an i9000 model, you still have to wait for the update on your Galaxy S devices. I’m looking forward to seeing what the users can do with the ROM now that it’s available.

Sony isn’t taking recent PlayStation3 hacks lightly, as German hacker Graf Chokolo found out when authorities raided his house earlier in the week. In a post on his Hypervisor reverse engineering blog Chokolo wrote “Sony was today at my home with police and got all my stuff and accounts.” Hours later the “Hypervisor Bible” as Chokolo puts it was released. Links have been removed to comply with legal notices, but you know nothing is ever erased from the web.

The Nintendo 3DS has been out for a day in Japan… and it’s already been hacked. The Tech-On! Group has already gotten their hands on the 3DS and torn it apart to look at all the delicious insides, including the 3D display. Along with the hardware, Ayasuke2 on Youtube has already hacked the 3DS to run R4 Cards and play unauthorized Nintendo DS games.

Getting encased in carbonite isn’t exclusive to Han Solo anymore. Attendees at the Tangible, Embedded and Embodied Interactive Conference got to scan themselves in 3D with a hacked Microsoft Kinect and print the resulting STL file using a Stratasys 3D printer.

Crack the Code Challenge

Did you have what it took to compete in our Crack The Code Challenge, brought to you by GoToAssist Express? 6 Hak5 viewers did this Sunday. Mad props go to Netshroud for being the first to crack the code, as well as Jellyfish, Jon, Alex, Leo and Tristan.

A big thanks go out to all that participated, joined the live stream and chat, and of course GoToAssist Express for sponsoring our Hak5 Lab Network. We’ll have details on the next challenge on next weeks show so be sure to tune in.

Cracking the code: PCAP file recovery and stenography

Shannon demonstrates techniques for completing the Crack the Code Challenge using Network Miner and steghide.

HakTip: Command line packet captures using Tshark

Last week we were asked about command-line packet sniffers and I recommended tcpdump and ngrep for filtering. Steve Z was quick to point out TShark, the command-line counterpart to Wireshark. With rules and filtering built in, it is quickly becoming a favorite for my packet sniffing needs. For example, issuing:

tshark -R “!(udp.port==53) and udp and ip.addr==” -i eth0

will show me just UDP packets that aren’t on port 53 to or from the address specified.

What little gems are rocking your world? Hit us up, we’ll share ’em on the show. [email protected]

Encrypted USB drives with centralized management

Darren meets with Kingston and Blockmaster to talk about their new USB management security applications.

Email: USB Passthrough

Toby writes in:

Now that I’m adhering to the “Trust Your Technolust” way of life, I figure your my best chance for a quality fix… I have an issue that I would love to see how you would resolve. I work at a non-profit food producer that provides millions of servings to feeding programs world wide every year. Were running as much open source goodness as we possibly can so that we can direct as much revenue to the feeding programs as possible. I have a VM “When-doze” terminal server running a software package that requires a usb software key. I need a (cheap or free) way (hak or bypass) to overcome the lack of ability to have non-storage USB passthrough

Darren recommends USB Redirector, a product he learned about when researching Proxmox VE.

Keep up with the latest on Hak5 by following us on Twitter or Facebook. Subscribe and get your weekly technolust delivered automatically. Or show your support and grab some swag from the HakShop – including the new airport friendly WiFi Pineapple and hoodie. Finally if you’d like to suggest a topic
for ask a question feel free to hit up [email protected].


  • mihai


    You have a problem with this episode.I mean a sound problem,i can’t hear no voices.(only some noises)

    Can you fix it?

  • Vedexent

    Just a note about non-storage USB pass through on a Windows machine: you can pass through a WiFi dongle on Windows 7 to a VM just fine, PROVIDED you uninstall the drivers on the host so that Windows doesn’t try and mount the device.

    Once I did this, I had no problem using my WiFi dongle on a Linux VM

    It might be something to try before forking out 60 euros for USB redirector.

  • BB

    Hi is the code for the kerberos.JPG image really February??

    I must be missing something, I tried it after downloading ccc.zip and I can’t get the password right:

    steghide extract -sf $target

    I even ran the perl script over with a dictionary file and it didn’t crack it… did the password get changed for that .JPG file? it’s beginning to get to me that I can’t open it.

  • BB

    Enter passphrase: Trying: typewritten
    Attempt #:27039
    steghide: could not extract any data with that passphrase!
    Enter passphrase: Trying: typewrote
    Attempt #:27040typewrote

    PASSPHRASE was : typewrote

    yeah, doesn’t work.

  • redlynx

    Haha BB my bad, I should have seen that coming. The problem here resides in the fact that my regex wasn’t very specific, this was my first brute force program after all! :-/

    The script breaks because it only checks to see if the text “wrote” is present in steghide’s output.

    The line:

    [qr/wrote/ => sub{

    should have been:

    [qr /\swrote\s/ => sub{

    Its a tad more specific. it is still possible for it to fail, but it greatly reduces the likelihood of failure.

    To be fair, it works. It has, however, the potential to fail.


  • removals to france

    This guarantees that your move will be completed should your firm go bust.
    Spain, England, Germany, Austria, Sweden, Italy, France,
    Slovenia, United States, Angola, Egypt, Senegal, South Africa,
    Nicaragua, Belize and of course Mexico. ‘ You must check in the internet
    to find out a company which will serve you when you will be planning to move somewhere
    abroad. Expat forums and social media channels are also great places to look for people who have used movers recently.

    Remember that you can save more money by doing
    these things on your own.

  • google advertising programs

    Market your posts (blog) in your Google+ Circles and in your email campaigns.
    The future is yet another story though, what arrives that bend is unknown and possibly based on the acceptance of Google+ Local Pages.
    Then, Internet Relay Chat (IRC) originated in allowed one
    to one communication via private message as well as chat
    and data transfer.

  • google trends

    Excellent post. I used to be checking constantly this blog and I’m inspired!
    Extremely useful information specifically the last part 🙂 I maintain such information much.

    I was looking for this certain information for a very long time.
    Thanks and good luck.

  • how to lose 10 pounds a month

    The secret is having your heartbeat up, and never
    having much calories inside you, so that your body decides to burn over
    extra fat. Some would even classify it in the impossible range.
    Be careful to some form of workout in case you are not physically.

  • Weight Loss Tips

    They can follow these weight loss guidelines for women to lose fat gradually.
    If you gradually come back to your old ways, no doubt that you will gradually resume your old weight.
    If you’d like to learn more about the healthy strategy
    for losing weight, here are some tips and advice.

  • google accounts login gmail

    The ages of a domain address does change lives to
    Google, with older ones being better to rank.

    This keyword appears in Google search so your profile gets more influence and promotes your organization. Your struggling to respond to
    this question aren’t you.

  • male Hummingbird anatomy

    We need a different perception to find out how you get our stuckness.
    I would like to thank Landstrom’s for assistance in providing background information. Nevertheless, it is really
    an excellent name for such an incredible little bird, now don’t you think.

  • tamar braxton weight loss after pregnancy

    Family and friends could be the best resource in accomplishing your
    goal. There are many colon cleaning products currently out there that are quite effective, however for my money, when choosing which
    product to use, I would generally look to use one that is consisting of 100%
    natural ingredients. Some people think the answer
    then is to starve themselves as swimsuit season approaches,
    but our bodies are also designed to store much more calories
    as we do not eat enough.

  • Cynthia

    Pretty section of content. I just stumbled upon your website and in accession capital to assert that I acquire actually enjoyed account your blog posts.

    Anyway I’ll be subscribing to your feeds and even I achievement you access consistently quickly.

  • how To Lose 10 pounds a month for a year

    This won’t HURT your results like the above methods-but it will not help them to either.
    I am not gonna enter the math of metabolism though the simple simple truth is you will want to below the knob
    on calories commencing the body daily to ensure that you lose lose weight.
    Do not turn for the television and sink into the couch soon after dinner.

  • banjamondsink

    Henry Martyn Robert Smoley, engineering and health care

    About mass of our modern companionship forethought to stimulate a alter roughly the manner we subsist. They bear a design in training, assemblage cognition and underdeveloped novel ways of improving the caliber of our lives. Henry M. Robert Smoley is nonpareil of those persons, WHO comprehended spending his metre investment in young technologies. He deepened a huge get in a gravid total of natural process fields, like cellular communications, act constructions, modeling, or Internet marketing, to list but a duet of then, for which he has created useful State of the artistry technologies. His More than thirty geezerhood of live as a lawyer, helped him as good to be an efficient drawing card in the managerial squad of whatsoever of the companies he created.
    Likely unrivalled of his all but singular Creation was the telemedicine system of rules. It is a revolutionary theme near receiving medical examination visits and advices, regarding any medical exam subject you mightiness possess. MD Live, as the programme is called, offer medical examination consultations terminated the speech sound or with the service of online television flowing. Thus, a affected role does non need to leave-taking home or office, does non necessitate to contract his children taboo of school, or waitress in eternal queues, in ordain to gain from a doctor’s advice. Through with MD Live, Rober Smoley brought a avid conduct of alleviation to a immense keep down of patients who, for various reasons, could not give the doctor’s spot.
    Wellness 2.0, the companionship started by Henry M. Robert Smoley, which brought to the populace the MD Know service, is unique in the mankind. In that respect isn’t any former organization that holds such a elaborated database of patients, patients’ records, doctors, medical examination prescriptions, and the unwellness and health chronicle of every patient role. From the want to earn this organization available for an even out big telephone number of people, the ship’s company signed a partnership with Google, which is a neat maltreat in expanding the organisation.
    Henry Martyn Robert Smoley’s musical theme of initiation something similar MD Know brings was Thomas More than welcomed by the extensive interview. He didn’t likewise make and effective system, simply too an low-cost one, beingness level cheaper than hand brake like. It way that, owed to his innovative ideas and implication, everybody seat welfare from professional person aesculapian care, at crushed prices and in a very effective fashion. It certainly represents the future tense of our medical checkup handle. And owed to consecrated people, the like Henry M. Robert Smoley, we bathroom be certain that our ulterior will look a administer break than it does nowadays.

    Projects that fanny make unnecessary our lives
    The health check guardianship arrangement is one and only of the to the highest degree crucial aspects of our lives. We want to benefit from adept health care, and we deficiency to induce a rapid accession to doctors in casing the wellness military issue aggravates. Just what if we are ineffectual to range the doctor’s post because we are to a fault nauseous or feature to cockeyed schedules? Non to note that when it comes to the prophylactic of our children nada is as well loyal. Henry M. Robert Smoley though more or less totally of these scenarios and came up with the to the highest degree effective solution, under the configuration of MD Live, a telemedicine divine service.
    Henry M. Robert Smoley is a reputable lawyer, having a magnanimous amount of age in this bodily process arena. Only it is too a successful entrepreneur, putt his skills and noesis not into his benefits, merely for the interests of populate. He is the God Almighty of multiple field breakthroughs and services, meant to bring a unlike linear perspective and modify the right smart we are victimized to doing things. Net marketing, production exploitation and packaging, cellular communications, human action constructions, they wholly take over the impress of Robert Smoley and his awe-inspiring projects. And these projects never remained at the status of thetheory, as they are successfully applied in practical activities as well, relieving the great unwashed of intemperately to manage tasks.
    MD Experience was created by Robert Smoley from the hope to work the benefits of the in vogue technology with the advantages of job checkup maintenance. He knows equitable how authoritative health is to us and how of import is to catch a proficient doctor’s advice regarding a bothering checkup number. With the MD Dwell service, totally the fundamental interaction with the doc of your prime is done by ring or computer, through the assistance of hot video recording flowing. For a very low-priced sum, you stool get hold of a touch on from the solace of your house, from a hotel room, or even out from your office, whenever you indigence approximately medical examination help or don’t feel commodity.In that respect is no longer the indigence to parting your placement and time lag until a touch on send away welcome you into his function. Hardly send for or reconcile your trouble online, and you testament be contactedat the shortest remark by a doc that has the capture competencies to muckle with your health emergence.
    Due to Robert Smoley’s forward-looking and attentive plan, anyone butt revel low-cost checkup services anywhere and anytime. So many satisfied masses WHO already exploited the programme land that this represents the time to come of healthcare. And since anyone wishes to love life-time to a greater extent and rest small at queues in medical examination cabinets, we might equitable imagine their instruction is reliable.

    Hoi polloi that combat for a better life select
    Our lives could non feature been this secure, prosperous and fulfilling if it weren’t for about mass that devote their metre and effort to draw a alter. One of those persons is Robert Smoley, WHO took the benefits of modern technology and turned it in our privilege. He is in never-ending search for a improve direction to better the direction we survive and, eventide nigh important, the agency our wellness and well-being is toughened. Without his projects, our Modern order would get been a bunch to a lesser extent evolved.
    Henry M. Robert Smoley set his form on multiple breakthroughs, which knotty the habit of the in vogue technologies. The human action constructions sector, product development, modeling, Net credit entry posting processing and more than enjoyed the implications of Robert Smoley. Merely probably his outflank accomplishment has been in the medical checkup and healthcare cosmos. He created and enforced MD Live, an online healthcare program, which permits furbish up appointments without going your internal. With dewy-eyed subscriptions, you tush graze through and through an integral inclination of physicians, on multiple medical examination specialties, whenever you take a job. You bequeath be able-bodied to address with your Doctor on thephone or by having a video recording conference, through and through a video cyclosis meshwork.
    No demand to rent your children prohibited of the star sign when they are ill. No require to play outside from solve if you own a job. And no penury to detain in dateless queues and crowded delay room, conjointly with patients that power be ominous. You could flush be stunned of township and still be capable to run across your sure mend with the assist of MD Hot. It is certainly a welfare that will interchange our lives and the way of life we incur medical exam care. You victimized to walkway into a doctor’s wait elbow room for a problem and base on balls tabu with the virus of a stark flu, caught from a cough patient role WHO was wait there as good. So not only if Henry Martyn Robert Smoley’s peachy plan brought ease to our lives, merely it as well improved the prime of our health, holding us good from whatever former voltage health threats.
    It offers first-class solutions for populate with busy schedules at the almost low-cost clock. Nigh of us solve during the schedules of doctors. So paying them a confabulate means skipping work, even out fetching a day off, active traffic, which volition lead to a nifty sell of inconveniences that wish at length attain you shed eyesight your doctors. So any military issue you power have, pot nonplus severer and induce you unhappiness. So forget whole of that and scarcely pluck up the call up or lumber onto your estimator for each one prison term you involve to view a Dr..

    robert smoley

  • Nike Air Max 90 Infrared Comprar

    Fit the feel of this song the very beginning is ripped from the record everyone wishes never happened, and loved
    anyway Nike Air Max 90 Infrared Comprar you can contact
    the personnel department at phone number 0000-215-258 or write
    to them at johnson street, new york city, 10101.

  • appliance repair bellingham

    This meaning of extenuating circumstances applies to all other references below within Section I, Conventional Loans appliance repair bellingham if the debt issues are deep rooted
    you might be more satisfied seeking counseling from the qualified professional.

  • Carla

    Attractive section of content. I just stumbled upon your site and in accession capital to assert that I acquire in fact enjoyed account your blog
    posts. Anyway I’ll be subscribing to your augment and
    even I achievement you access consistently rapidly.

  • Krystyna Laurino

    Legacy And most impressive of, he made it happen by
    using only two property tax increases, resulting
    in a very combined tax rate a reduced amount of about $2 Krystyna Laurino this activity is added about known as as a possible accommodation modification.

  • biboui

    Interest rates will be greater than ever do without collateral mortgage agreement could be biboui payday loans are quick loans
    ; you are able to have your loan amount to your banking
    account within few hours in the loan application.

  • Sharolyn Belzung

    Agriculture property or property outside urban limits just isn’t accepted Sharolyn Belzung if your work is no more challenging
    and you also loathe getting up inside the morning, change
    jobs or start an enterprise.

  • Alexis

    Hello it’s me, I am also visiting this website on a regular basis, this web
    site is really fastidious and the viewers are truly sharing fastidious thoughts.

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <s> <strike> <strong>