<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: unmask.py &#8211; Statistical E-mail &amp; Blog Profiling</title>
	<atom:link href="http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 14 Feb 2012 00:17:07 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Sir Henry</title>
		<link>http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-83590</link>
		<dc:creator>Sir Henry</dc:creator>
		<pubDate>Fri, 14 Dec 2007 19:34:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-83590</guid>
		<description>Darknet, have you tried this tool yet?  What are your thoughts on it?  It would be interesting to see any results from a test.</description>
		<content:encoded><![CDATA[<p>Darknet, have you tried this tool yet?  What are your thoughts on it?  It would be interesting to see any results from a test.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dre</title>
		<link>http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-69334</link>
		<dc:creator>dre</dc:creator>
		<pubDate>Thu, 25 Oct 2007 23:07:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/2007/10/unmaskpy-statistical-e-mail-blog-profiling/#comment-69334</guid>
		<description>watch as &lt;a href=&quot;http://the-mathclub.net&quot; rel=&quot;nofollow&quot;&gt;christopher abad&lt;/a&gt; explains how &lt;a href=&quot;http://the-mathclub.net/site/survey/4.html&quot; rel=&quot;nofollow&quot;&gt;behaviorial analysis can be applied to user fingerprinting&lt;/a&gt; in his &lt;a href=&quot;http://the-mathclub.net/index.php/A_Survey_of_Novel_Approaches_to_Network_Security&quot; rel=&quot;nofollow&quot;&gt;slides from Toorcon 2004&lt;/a&gt;.  the &lt;a href=&quot;http://the-mathclub.net/site/survey/4-2.html&quot; rel=&quot;nofollow&quot;&gt;winner&lt;/a&gt; of a selected set of words can be predicted based on their use of the command line (bash shell in this case).

i just saw chris abad speak again at toorcon 9 this past weekend.  he is an excellent speaker, and usually &quot;you have to be there&quot; to understand - his work can&#039; really be explained.

i imagine that with abad&#039;s techniques (and dave aitel&#039;s techniques in umask.py) - along with hdm&#039;s &lt;a href=&quot;http://www.metasploit.com/research/misc/decloak/&quot; rel=&quot;nofollow&quot;&gt;decloak&lt;/a&gt;... and a little Google Analytics &lt;a href=&quot;http://www.tssci-security.com/archives/2007/09/12/using-google-analytics-to-subvert-privacy/&quot; rel=&quot;nofollow&quot;&gt;cookie saving&lt;/a&gt; and &lt;a href=&quot;http://www.tssci-security.com/archives/2007/10/17/more-on-google-analytics-now-with-stolen-search-queries/&quot; rel=&quot;nofollow&quot;&gt;search query stealing&lt;/a&gt; - you can gather tons of information on random bloggers or other website users.</description>
		<content:encoded><![CDATA[<p>watch as <a href="http://the-mathclub.net" rel="nofollow">christopher abad</a> explains how <a href="http://the-mathclub.net/site/survey/4.html" rel="nofollow">behaviorial analysis can be applied to user fingerprinting</a> in his <a href="http://the-mathclub.net/index.php/A_Survey_of_Novel_Approaches_to_Network_Security" rel="nofollow">slides from Toorcon 2004</a>.  the <a href="http://the-mathclub.net/site/survey/4-2.html" rel="nofollow">winner</a> of a selected set of words can be predicted based on their use of the command line (bash shell in this case).</p>
<p>i just saw chris abad speak again at toorcon 9 this past weekend.  he is an excellent speaker, and usually &#8220;you have to be there&#8221; to understand &#8211; his work can&#8217; really be explained.</p>
<p>i imagine that with abad&#8217;s techniques (and dave aitel&#8217;s techniques in umask.py) &#8211; along with hdm&#8217;s <a href="http://www.metasploit.com/research/misc/decloak/" rel="nofollow">decloak</a>&#8230; and a little Google Analytics <a href="http://www.tssci-security.com/archives/2007/09/12/using-google-analytics-to-subvert-privacy/" rel="nofollow">cookie saving</a> and <a href="http://www.tssci-security.com/archives/2007/10/17/more-on-google-analytics-now-with-stolen-search-queries/" rel="nofollow">search query stealing</a> &#8211; you can gather tons of information on random bloggers or other website users.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

