Sunday, September 25, 2011
The Simple Mass WEP and WPA Cracker
About the Contributor:
Shipcode is a prolific blogger of ROOTCON and at the same time an InfoSec enthusiast from Cebu. He was inspired to join ROOTCON as part of the core team to share his knowledge in information security. He encourages other like minded individuals to come forward and share their knowledge through blogging right here at ROOTCON Blog section. Email your contributions to info[at]rootcon[dot]org.
ROOTCON is managed by like minded InfoSec professionals across the Philippines. All rights reserved. Designated trademarks, brands and articles are the property of their respective owners.
Tuesday, September 20, 2011
Demystifying a Backdoor Shell
Shipcode is a prolific blogger of ROOTCON and at the same time an InfoSec enthusiast from Cebu. He was inspired to join ROOTCON as part of the core team to share his knowledge in information security. He encourages other like minded individuals to come forward and share their knowledge through blogging right here at ROOTCON Blog section.
Sunday, September 04, 2011
ROOTCON 5 Full Page Ad Published in "The Freeman"
The image above paints a thousand words. This one (1) full page ad is published in "The Freeman" (Cebu newspaper) today, dated September 4, 2011 (Sunday).
Thanks to James Arthur Oliva for the photos and his models. Thanks also to Paul Villacorta for the graphic works.
Kudos to you guys for supporting ROOTCON!
About the Contributor:
A self-confessed blogger minus the coffee. He maximizes his skills in consultancy, project management, professional networking, social media campaigns and very active in conceptualizing things. To date he already conducted several IT / Information Security events as his passion since 2007. Currently he's working as a Technical Support Specialist in a local company.
All rights reserved. Designated trademarks, brands and articles are the property of their respective owners.
Saturday, September 03, 2011
[UPDATE] RC 5 Panelist
Day 1: InfoSec State In The Philippines
Oliver Cam - Development and General Manager InfoWeapons Inc.
Roland Dela Paz - Security and Threat Researcher at TrendMicro
Atty. Al Vitangcol - Lawyer specializing in e-Commerce law.
Jaime Licauco - Security Professional that holds CISSP and GSEC certification
Day 2: Cyber Terrorism What Is Our Stand
Paul Sabanal - Security Research at IBM Security Systems, speaker at BlackHat Briefings
Sven Herpig - Professor and a PhD student specilizing CyberWarfare
Chris Boyd - Senior Threat Researcher at GFI, holds a title of Microsoft MVP for Computer Security
Berman Enconado - Senior Software Engineer at GFI
More updates on the ROOTCON 5 Panel Discussion will be published soon.
Thursday, September 01, 2011
ROOTCON Panel Discussion
And as a replacement, we will be having a ROOTCON Panel Discussion both on Day 1 and Day 2. Panel Discussion is a very good alternative in finding speakers, as this will create an interaction and a healthy discussion between our selected panelist and con-goers.
Our Panel Topics for this years conference are the following:
InfoSec State in the Country (Philippines) - Day 1
Cyber Terrorism What Is Our Stand - Day 2
Selected Panelist will be debating / discussing this two high-end topics during the panel discussion and at the same time get inputs from the audience.
Our Panelist will be announced on Friday.
Stay Tuned for Updates.
Sunday, August 21, 2011
Reminiscing the Hacker’s Manifesto
Have you guys heard of the Hacker’s Manifesto?


The Hacker’s Manifesto
Shipcode is an InfoSec enthusiast from Cebu. During his high school days he was just an ordinary script kiddie. He loves to search for web exploits and other issues concerning network / wireless security.
ROOTCON is managed by like minded InfoSec professionals across the Philippines. All rights reserved. Designated trademarks, brands and articles are the property of their respective owners.
Friday, August 19, 2011
NodeZero supports ROOTCON 5
As a brief introduction, NodeZero is Ubuntu based linux designed as a complete system which can also be used for penetration testing. NodeZero uses Ubuntu repositories so your system will be always up to date.
NodeZero is packaged with around 300 tools for penetration testing and set of basic services which are needed in penetration testing.
This is a good tool you ought not to miss!
Proof of their support for ROOTCON 5:
Follow our friend at http://netinfinity.org/
Grab a copy on September 9 and 10, 2011 at Parklane International Hotel, Cebu City, Philippines.
About the Contributor:
A self-confessed blogger minus the coffee. He maximizes his skills in consultancy, project management, professional networking, social media campaigns and very active in conceptualizing things. To date he already conducted several IT / Information Security events as his passion since 2007. Currently he's working as a Technical Support Specialist in a local company.
ROOTCON is managed by like minded InfoSec professionals across the Philippines.
All rights reserved. Designated trademarks, brands and articles are the property of their respective owners.
Thursday, August 18, 2011
Cool Ubuntu Shell Account

But there are some flaws in their project because they allow too much background which could possibly be used for illegal activities. We could not deny the fact that some users may tend to abuse their privileges as a user like using it for udpflooding, tcpflooding, hosting botnets, scanning SSH, etc. because of allowing too much background processes. Maybe next time they should put some limit to prevent abuses in their server.
About the Contributor:
Shipcode is an InfoSec enthusiast from Cebu. During his high school days he was just an ordinary script kiddie. He loves to search for web exploits and other issues concerning network / wireless security.
ROOTCON is managed by like minded InfoSec professionals across the Philippines. All rights reserved.Designated trademarks, brands and articles are the property of their respective owners.
Tuesday, August 16, 2011
Thoughts on the Operation Shady Rat
Let it be known that the year 2011 is best described as the Year of the Hackers. And I know, one way or another you will agree or disagree with me. But hey! The media publicized these sophisticated security attacks targeting CIA, US Senate, Sony, PBS, Philippine Congress and the list continues. All of these attacks are attributed to hacker groups such as AntiSec, Anonymous and LulzSec.
I have been quiet for a couple of days because of constant research of this unprecedented cyber-espionage campaign which was discovered in the year 2006 because of the logs which was discovered by McAfee. In fact, some people blame China and Russia behind this espionage but it should be noted that McAfee disclaimed that China or Russia is responsible for this and that they also declined to reveal the source where the “Shady RAT” came from.
I’m not really sure who suggested that China should be blamed for this but I think they blamed some of the Chinese hackers because of the recent information gathering they made. It is said that in the past years, they have stolen highly confidential information that is kept secret in supercomputers in the US. But the Chinese government denied its involvement of the said campaign.
Some people may also say that it’s the Russian government because of the unforgotten Cold War between the US but then again it is really unfair to point our fingers to Russia and China because of insufficient evidence against them. All countries are innocent until proven guilty.
I guess McAfee has unleashed a new media storm because of their discovery since 2006. Their rival company, Symantec also posted its own analysis of the campaign and was skeptical of its impact. "Is the attack described in Operation Shady RAT a truly advanced persistent threat? I would contend that it isn’t, especially when you consider the errors made in configuring the servers and the relatively non-sophisticated malware and techniques used in this case," Symantec's Hon Lau wrote in a blog post.
"Sure the people behind it are persistent but no more than the myriad of other malware groups out there such as Zeus, Tidserv, and others like them," said Lau.
Although, it is highly controversial and questionable why McAfee discovered this campaign before any antivirus company or government agency; but could it be possibly an excuse to put blame on China? That I’m not sure of and I lay my hands off regarding this case.
To our valuable readers, I’ll give you a room for your opinions and views regarding this campaign. If you ask me, I have 60% trusts on this revelation. Whether this is true or not, there are questions that will cloud up our minds. So are we ready for this cyber espionage and cyber terrorism?
ROOTCON is managed by like minded InfoSec professionals across the Philippines. All rights reserved.Designated trademarks, brands and articles are the property of their respective owners.











