<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: unmask.py - Statistical E-mail &#038; Blog Profiling</title>
	<atom:link href="http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<pubDate>Thu, 04 Dec 2008 17:24:30 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
		<item>
		<title>By: Sir Henry</title>
		<link>http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-83590</link>
		<dc:creator>Sir Henry</dc:creator>
		<pubDate>Fri, 14 Dec 2007 19:34:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-83590</guid>
		<description>Darknet, have you tried this tool yet?  What are your thoughts on it?  It would be interesting to see any results from a test.</description>
		<content:encoded><![CDATA[<p>Darknet, have you tried this tool yet?  What are your thoughts on it?  It would be interesting to see any results from a test.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dre</title>
		<link>http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-69334</link>
		<dc:creator>dre</dc:creator>
		<pubDate>Thu, 25 Oct 2007 23:07:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-69334</guid>
		<description>watch as &lt;a href="http://the-mathclub.net" rel="nofollow"&gt;christopher abad&lt;/a&gt; explains how &lt;a href="http://the-mathclub.net/site/survey/4.html" rel="nofollow"&gt;behaviorial analysis can be applied to user fingerprinting&lt;/a&gt; in his &lt;a href="http://the-mathclub.net/index.php/A_Survey_of_Novel_Approaches_to_Network_Security" rel="nofollow"&gt;slides from Toorcon 2004&lt;/a&gt;.  the &lt;a href="http://the-mathclub.net/site/survey/4-2.html" rel="nofollow"&gt;winner&lt;/a&gt; of a selected set of words can be predicted based on their use of the command line (bash shell in this case).

i just saw chris abad speak again at toorcon 9 this past weekend.  he is an excellent speaker, and usually "you have to be there" to understand - his work can' really be explained.

i imagine that with abad's techniques (and dave aitel's techniques in umask.py) - along with hdm's &lt;a href="http://www.metasploit.com/research/misc/decloak/" rel="nofollow"&gt;decloak&lt;/a&gt;... and a little Google Analytics &lt;a href="http://www.tssci-security.com/archives/2007/09/12/using-google-analytics-to-subvert-privacy/" rel="nofollow"&gt;cookie saving&lt;/a&gt; and &lt;a href="http://www.tssci-security.com/archives/2007/10/17/more-on-google-analytics-now-with-stolen-search-queries/" rel="nofollow"&gt;search query stealing&lt;/a&gt; - you can gather tons of information on random bloggers or other website users.</description>
		<content:encoded><![CDATA[<p>watch as <a href="http://the-mathclub.net" rel="nofollow">christopher abad</a> explains how <a href="http://the-mathclub.net/site/survey/4.html" rel="nofollow">behaviorial analysis can be applied to user fingerprinting</a> in his <a href="http://the-mathclub.net/index.php/A_Survey_of_Novel_Approaches_to_Network_Security" rel="nofollow">slides from Toorcon 2004</a>.  the <a href="http://the-mathclub.net/site/survey/4-2.html" rel="nofollow">winner</a> of a selected set of words can be predicted based on their use of the command line (bash shell in this case).</p>
<p>i just saw chris abad speak again at toorcon 9 this past weekend.  he is an excellent speaker, and usually &#8220;you have to be there&#8221; to understand - his work can&#8217; really be explained.</p>
<p>i imagine that with abad&#8217;s techniques (and dave aitel&#8217;s techniques in umask.py) - along with hdm&#8217;s <a href="http://www.metasploit.com/research/misc/decloak/" rel="nofollow">decloak</a>&#8230; and a little Google Analytics <a href="http://www.tssci-security.com/archives/2007/09/12/using-google-analytics-to-subvert-privacy/" rel="nofollow">cookie saving</a> and <a href="http://www.tssci-security.com/archives/2007/10/17/more-on-google-analytics-now-with-stolen-search-queries/" rel="nofollow">search query stealing</a> - you can gather tons of information on random bloggers or other website users.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
