The team over at the FireEye threat intelligence published a special report(pdf) detailing an long running (and still on-going) cyber-espionage operation that has targeted multiple entities in ASEAN countries, including Malaysia. The program was reported to be running for more than a decade, and the sustained period coupled with the list of targets the program had, led FireEye to believe it to be...
Worked Example: iPhone PIN Hack
Last month, a company called MDSec released a video detailing how they manage to brute force hack an iPhone PIN lock. Pretty sweet piece of work, but I thought this would be a good example to understand how hacks work, and how hackers think. What is a hacker First off, we need to define what a hacker is, it’s a convulated term, but my favorite definition is : A hacker is someone who makes...
MDeC Private Meeting with ODI
Earlier this week I attended a MDeC organized private meeting with Richard Stirling from the Open Data Institute (ODI).The ODI is an institution that hopes to promote the ‘open data’ culture, and founded by a giant of the Tech world, Sir Tim Berners-Lee, which you might remember for inventing a small little thing we call the world wide web. The meeting was attended by just a handful...
The Snowden Revelations
It’s now almost two years on, since that fateful day at the Mira Hotel in Hong Kong when Edward Snowden divulged secret NSA documents detailing unlawful and on-going spying programs carried out in the name of security. Sure we knew the government had ‘a’ spying program, and we’ve all seen Hollywood movies with fictional technology that allowed governments to carry out un...
Secure Apache configuration for WordPress & SSL
Recently I moved the hosting for keithRozario.com from a regular hosted platform called WPWebhost to my own Virtual machine on digitalOcean. The results have been great, but the migration process was a bit tedious and took some effort. I thought I’d share my Apache configurations, so that if you’re thinking of hosting your own WordPress site on an SSL server, you’ll at least...
The new and improved keithRozario.com
Welcome!! keithRozario.com has a new look, and I can hardly contain my excitement. The blog still retains all its previous content and more glorious content will be on its way, for now take a moment to savour the brand new theme which hopefully is cleaner and easier on the eyes than my previous blogs design. Also enjoy my complementary TLS connection (notice the httpS connection instead of just...
Why you must ALWAYS question government
Today I read that our beloved Education Minister is ‘SHOCKED’ that Malaysian students are not on par with their foreign counterparts.
Shocked? Really?
Just 2 years ago, the good Minister was proudly proclaiming that “The Malaysian education system is on track to becoming among the world’s best“, and this was backed up by a Government Transformation Project (GTP) report.
The WhiteHouse Petition, and what it means
The US Government host a really cool website called “We the People”, that let’s users petition the US Government for various things. It’s a cool website, because you get really cool request on it. For instance, in 2013, more than 34,000 people petitioned the US government to “Secure resources and funding, and begin construction of a Death Star by 2016″, which triggered a...
The day they censored me
Last week was a pretty exciting week for me–it was my first time on TV. A TV show called VBuzz that was hosted on a Astro Channel 231 called me to be a guest to talk about Cyber Security, obviously I make it point to try new things and let’s be honest….how many of you would turn down a chance to be on TV? I mean this is Television, if you’re on it you must be good right...
Jho Low uses Gmail? Why emails can’t be considered evidence
As the 1MDB fiasco begins to simmer over the political stove, I wanted to inject some technical information into this discussion, specifically around emails and how they’re almost useless pieces of evidence. Just to make sure everyone’s on the same page, here’s some context. In early March 2015, sarawakreport.org, a website run by investigative journalist Clare Rewcastle-Brown...