A little over 2 weeks ago Microsoft announced operation B71. It was being brought as the biggest blow to ZeuS botnets in history, and was picked up in the media globally. A released movie showed Microsoft personnel executing a preliminary injunction in a civil case and seizing a server in Scranton, PA. In their words: … Continue reading Critical analysis of Microsoft Operation B71
Post mortem report on the sinowal/nu.nl incident
March 14th 2012, another normal day in the office, I looked at my massive to-do list and had planned quite some work for the day. And like every normal day my planning of the day is rudely interrupted by another incident. Our network analysts at the Security Operations Center looked very busy, and they were … Continue reading Post mortem report on the sinowal/nu.nl incident
RSA-512 Certificates abused in the wild
During recent weeks we have observed several interesting publications which have a direct relation to an investigation we worked on recently. On one hand there was a Certificate Authority being revoked by Mozilla, Microsoft and Google (Chrome), on the other hand there was the disclosure of a malware attack by Mikko Hypponen (FSecure) using a … Continue reading RSA-512 Certificates abused in the wild
Onze visie op de eigen slagkracht van de overheid
Na operatie Black Tulip (Diginotar) en Lektober staat ICT beveiliging volop in de aandacht. Het is inmiddels algemeen bekend hoezeer onze maatschappij van ICT afhankelijk is geworden en hoe relatief kwetsbaar we zijn voor cyberbedreigingen. De rol van de Nederlandse overheid is hierbij een onderwerp van discussie. De vraag is of zij voldoende in … Continue reading Onze visie op de eigen slagkracht van de overheid
Presentatie Fox-IT op Infosecurity NL 2011
Op 2 en 3 November 2011 heeft Eward Driehuis een seminar gegeven op de Infosecurity beurs. Onderwerp van het seminar is “Spotten van fraude in online bankieren via analyse netwerkverkeer”. Hieronder vind je de videoregistratie en de slides:
Over het CDA en het bestraffen van gebruik van crypto
Nieuwe opsporingsmethoden hard nodig, maar dan wel de goede. Blijf van crypto af! Gisteren voerde de tweede kamer een debat met minister Opstelten over Cyber Security in Nederland. Aanleiding was de in februari gepubliceerde Nationale Cyber Security Strategie. Die strategie moet Nederland helpen om digitaal veilig te worden. Over de strategie zelf heb ik al … Continue reading Over het CDA en het bestraffen van gebruik van crypto
DPI: Laten we het doen zoals in Chili!
De discussie moet gaan over netneutraliteit en niet over privacy DPI, Deep Packet Inspection, komt de laatste tijd veel in het nieuws. Het begon met de SP en kinderporno, toen in verband met censuur in het Midden-Oosten en nu weer KPN die kijkt wat hun klanten op het netwerk aan het doen zijn. DPI klinkt heel … Continue reading DPI: Laten we het doen zoals in Chili!
Forbes: Bert Hubert explains the DNS issue with China
Sucked Into China's Internet It began with a jovial "Hi there!" on a fairly obscure listserv for discussing DNS operational issues. DNS denotes Domain Name System, a process that converts typed Web addresses into a series of phone-number like IP numbers which, in turn, enable you to "call up" a Web site from any of … Continue reading Forbes: Bert Hubert explains the DNS issue with China