<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Praetorian Prefect &#187; google</title>
	<atom:link href="http://praetorianprefect.com/archives/tag/google/feed/" rel="self" type="application/rss+xml" />
	<link>http://praetorianprefect.com</link>
	<description>Information security, a little slower...a little deeper</description>
	<lastBuildDate>Thu, 29 Jul 2010 16:38:31 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Happy 30th Birthday Pac-Man, Google Style</title>
		<link>http://praetorianprefect.com/archives/2010/05/happy-30th-birthday-pac-man-google-style/</link>
		<comments>http://praetorianprefect.com/archives/2010/05/happy-30th-birthday-pac-man-google-style/#comments</comments>
		<pubDate>Fri, 21 May 2010 17:59:25 +0000</pubDate>
		<dc:creator>Prefect</dc:creator>
				<category><![CDATA[funny]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[video games]]></category>

		<guid isPermaLink="false">http://praetorianprefect.com/?p=3829</guid>
		<description><![CDATA[Hat's off to Google for unveiling perhaps the greatest tribute today to the 30th anniversary of the iconic video game Pac-Man.]]></description>
			<content:encoded><![CDATA[<p><a href="http://praetorianprefect.com/wp-content/uploads/2010/05/pacman.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2010/05/pacman.jpg" alt="" title="pacman" width="75" height="75" class="alignleft size-full wp-image-3830" /></a>
<br /></p>

<p>Hat&#8217;s off <a href="http://googleblog.blogspot.com/2010/05/celebrating-pac-mans-30th-birthday.html">to Google</a> for unveiling perhaps the greatest tribute today to the 30th anniversary of the iconic video game Pac-Man. Google revealed its first &#8220;doodle&#8221; or temporary logo change back in 1998, with the first animated logo appearing on Newton&#8217;s birthday earlier this year. At this rate of increasing complexity, the Google logo should be sentient by 2012.</p>

<p>For the birthdays of one of the most successful video games of all time, Google reveals perhaps its most complex logo of all time, a full featured playable version of the game for the next 48 hours:</p>

<div id="attachment_3835" class="wp-caption alignnone" style="width: 564px"><a href="http://praetorianprefect.com/wp-content/uploads/2010/05/pacman10-hp.png"><img src="http://praetorianprefect.com/wp-content/uploads/2010/05/pacman10-hp.png" alt="Go to google.com, and click the logo or the Insert Coin button." title="pacman10-hp" width="554" height="186" class="size-full wp-image-3835" /></a><p class="wp-caption-text">Go to google.com, and click the logo or the Insert Coin button.</p></div>
<br /></p>

<p>Hit &#8220;Insert Coin&#8221; twice and Mrs. Pac-Man will show up too.</p>

<h3>Pac-Man</h3>

<p><div id="attachment_3832" class="wp-caption alignright" style="width: 250px"><a href="http://praetorianprefect.com/wp-content/uploads/2010/05/amd_pacman.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2010/05/amd_pacman.jpg" alt="The original 1980 Pac-Man." title="Krazy! Exhibition" width="240" height="338" class="size-full wp-image-3832" /></a><p class="wp-caption-text">The original 1980 version of Pac-Man.</p></div>
<br /></p>

<p>Pac-Man was first released on May 22nd, 1980, thirty years ago today, by Namco in Japan. According to Guinness, Pac-Man is the most successful coin-operated video game of all time. It sold more than 100,000 units in 1980 and kids pumped more than $1 billion dollars in quarters into the arcade game in its first fifteen months. It was played more then 10 billion times in the first twenty years from its release.</p>

<h3>End Game</h3>

<p><div id="attachment_3833" class="wp-caption alignleft" style="width: 234px"><a href="http://praetorianprefect.com/wp-content/uploads/2010/05/Split_Screen_in_Pac_Man.gif"><img src="http://praetorianprefect.com/wp-content/uploads/2010/05/Split_Screen_in_Pac_Man.gif" alt="At level 256, things get messy." title="Split_Screen_in_Pac_Man" width="224" height="288" class="size-full wp-image-3833" /></a><p class="wp-caption-text">At level 256, things get messy.</p></div>
<br /></p>

<p>Due to a programming glitch the game ends at level 256, although that&#8217;s not much of an issue because few in history have ever gotten a perfect score. Billy Mitchell played the first verified perfect game in 1999. In 2009 David Race became the sixth and currently last person known to achieve a perfect score.</p>

<p>Notice we said &#8216;verified perfect game&#8217;? That&#8217;s because in 1982 an 8 year old named Jeffrey Yee allegedly received a congratulatory letter from then President Ronald Reagan congratulating him for the record score of 6,131,940 points. There&#8217;s a problem though, that score would only be possible by passing level 256, the famous impassable split-screen bug shown at left.</p>

<h3>Pizza &amp; Puck-Man</h3>

<p>Toru Iwatani was the primary developer of the game in 1979, and has related the apocryphal story that the main character was designed after looking at a pizza that was missing a slice. In reality the character is a rounding and simplification of the Japanese character for kuchi, or mouth. The original name, pronounced pakku-man, is a take off of the Japanese phrase paku-paku taberu where the words paku-paku describe the sound of a mouth eating.</p>

<p>The game was released under the name Puck-Man, but modified for the game&#8217;s North American release to Pac-Man as it was feared that arcade machines would be vandalized by modifying the &#8216;P&#8217; to an &#8216;F&#8217;.</p>

<h3>Those Ghosts</h3>

<p><i>&#8220;Google doodler Ryan Germick and I made sure to include Pac-Man&#8217;s original game logic, graphics and sounds, bring back ghosts&#8217; individual personalities, and even recreate original bugs from this 1980&#8217;s masterpiece,&#8221;</i> <br />- Marcin Wichary, Usability, Google</p>

<p><div id="attachment_3856" class="wp-caption alignleft" style="width: 234px"><a href="http://praetorianprefect.com/wp-content/uploads/2010/05/Pacman_origghosts.png"><img src="http://praetorianprefect.com/wp-content/uploads/2010/05/Pacman_origghosts.png" alt="" title="Pacman_origghosts" width="224" height="288" class="size-full wp-image-3856" /></a><p class="wp-caption-text">Original Monster Names.</p></div>

<p>Blinky, Pinky, Inky, and Clyde are the four ghost monsters, the antagonists of the game. Each has its own personality derived from movement patterns, as derivable from both past efforts to reverse engineer the game as well as the Japanese translations of their original names:</p>

<table>
<thead>
<tr>
  <th>Name:</th>
  <th>Color:</th>
  <th>Translation:</th>
</tr>
</thead>
<tbody>
<tr>
  <td>Blinky</td>
  <td>Red</td>
  <td>Chaser</td>
</tr>
<tr>
  <td>Pinky</td>
  <td>Pink</td>
  <td>Ambusher</td>
</tr>
<tr>
  <td>Inky</td>
  <td>Cyan</td>
  <td>Fickle</td>
</tr>
<tr>
  <td>Clyde</td>
  <td>Orange</td>
  <td>Stupid</td>
</tr>
</tbody>
</table>

<h3>Finally</h3>

<p>You can go play Pac-Man a few blocks from Praetorian&#8217;s main office down at the Chinatown Fair Video Arcade on Mott Street.</p>

<p>With that we leave you with the 80&#8217;s tribute song <a href="http://www.youtube.com/watch?v=0-MONIvP6kI">Pac-Man Fever</a> by Buckner and Garcia in honor of the day. Enjoy.</p>

<p><strong>Related Posts:</strong></p>
<ul>
<li><a href="http://praetorianprefect.com/archives/2010/05/for-access-call-or-walk-right-in/">For Access Call, or Walk Right In</a></li>
<li><a href="http://praetorianprefect.com/archives/2010/05/best-information-security-commercial-evah/">Best Information Security Commercial Evah&#8230;</a></li>
<li><a href="http://praetorianprefect.com/archives/2010/04/bo-dietl-lost-his-guns/">Bo Dietl Lost His Guns</a></li>
</ul><br />
]]></content:encoded>
			<wfw:commentRss>http://praetorianprefect.com/archives/2010/05/happy-30th-birthday-pac-man-google-style/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>The &#8220;Aurora&#8221; IE Exploit Used Against Google in Action</title>
		<link>http://praetorianprefect.com/archives/2010/01/the-aurora-ie-exploit-in-action/</link>
		<comments>http://praetorianprefect.com/archives/2010/01/the-aurora-ie-exploit-in-action/#comments</comments>
		<pubDate>Sat, 16 Jan 2010 00:42:41 +0000</pubDate>
		<dc:creator>Prefect</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Remote Exploit]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://praetorianprefect.com/?p=3065</guid>
		<description><![CDATA[The <a href="http://www.computerworld.com/s/article/9144844/Hackers_used_IE_zero_day_not_PDF_in_China_Google_attacks?source=toc">big news</a> hit earlier this week, the attack vector that allowed bad actors presumably from China into the networks of Google, Juniper, Adobe, and some 30 other firms was an Internet Explorer zero day, a use after free vulnerability on an invalid pointer reference affecting IE 6, 7, and 8 but only used in IE 6 according to Microsoft. Per Microsoft's <a href="http://www.microsoft.com/technet/security/advisory/979352.mspx">Advisory 979352</a>: <i>"In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution.</i>. Earlier today this entry from yesterday <a href="http://wepawet.iseclab.org/view.php?hash=1aea206aa64ebeabb07237f1e2230d0f&#38;type=js">at Wepawet</a> (an online analysis engine for malware) was pointed out to H.D. Moore, and <a href="http://blog.metasploit.com/2010/01/reproducing-aurora-ie-exploit.html">within hours Metasploit</a> has an exploit of the vulnerability integrated. McAfee has confirmed that the <a href="http://siblog.mcafee.com/cto/%E2%80%9Caurora%E2%80%9D-exploit-in-google-attack-now-public/">exploit is out and the same one</a> they saw during the investigation. The video below demonstrates how crackers gained access to the corporate networks of Google, et al. using this zero day attack.]]></description>
			<content:encoded><![CDATA[<p><a href="http://praetorianprefect.com/wp-content/uploads/2010/01/google_borealis.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2010/01/google_borealis.jpg" alt="google_borealis" title="google_borealis" width="190" height="117" class="alignleft size-full wp-image-3069" /></a></p>

<p>The <a href="http://www.computerworld.com/s/article/9144844/Hackers_used_IE_zero_day_not_PDF_in_China_Google_attacks?source=toc">big news</a> hit earlier this week that the attack vector that allowed bad actors presumably from China into the networks of Google, Juniper, Adobe, and some 29 other firms was an Internet Explorer zero day, a use after free vulnerability on an invalid pointer reference affecting IE 6, 7, and 8 but only used by attackers on IE 6 according to Microsoft. Per Microsoft&#8217;s <a href="http://www.microsoft.com/technet/security/advisory/979352.mspx">Advisory 979352</a>: <i>&#8220;In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution</i>. Earlier today this entry from yesterday <a href="http://wepawet.iseclab.org/view.php?hash=1aea206aa64ebeabb07237f1e2230d0f&amp;type=js">at Wepawet</a> (an online analysis engine for malware) was pointed out to H.D. Moore, and <a href="http://www.metasploit.com/redmine/projects/framework/repository/revisions/8136/entry/modules/exploits/windows/browser/ie_aurora.rb">within hours Metasploit</a> has an exploit of the vulnerability integrated. McAfee has confirmed that the <a href="http://siblog.mcafee.com/cto/%E2%80%9Caurora%E2%80%9D-exploit-in-google-attack-now-public/">exploit is out and the same one</a> they saw during the investigation. The video below demonstrates how crackers initially gained access to the corporate networks of Google, et al. using this zero day attack.</p>

<h3>Here It Is</h3>

<p>The video below demonstrates how Google and the rest have been, according to most news reports, exploited via the &#8220;Aurora&#8221; vulnerability in Internet Explorer, and had their &#8220;intellectual property&#8221; taken.</p>

<p>In the video you will see Metasploit set up a listening session, set up a web site that serves up the malicious code, and watch as an unsuspecting user visits the web site, triggers the attack that uses the IE vulnerability, and unknowingly opens a connection to a computer owned by the attacker. The attacker then lists the user&#8217;s processes, and elects to kill Notepad where the user was working on an important document. IE 6.0 is used, as this is the version Microsoft references as having been used in the &#8220;targeted attacks&#8221; on some 30+ U.S. companies.</p>

<p>A silly example for demonstration to be sure, but once the backdoor is open to the user&#8217;s PC the attacker can use it as a pivot point for other attacks against the internal network, escalate his or her privileges, take information off the PC, basically do anything the user can do.</p>

<p><object width="750" height="333"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="movie" value="http://vimeo.com/moogaloop.swf?clip_id=8771582&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1" /><embed src="http://vimeo.com/moogaloop.swf?clip_id=8771582&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1" type="application/x-shockwave-flash" allowfullscreen="true" allowscriptaccess="always" width="750" height="333"></embed></object>
<br /></p>

<h3>The Vector</h3>

<p>The attack scenario is that users were pointed to a web site (probably through a targeted Spam e-mail, an attack called spear phishing) containing a JavaScript that references this invalid pointer and injects the included shell code. The code below was released publicly yesterday.</p>

<p><a href="http://praetorianprefect.com/wp-content/uploads/2010/01/aurora_vuln.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2010/01/aurora_vuln.jpg" alt="aurora_vuln" title="aurora_vuln" width="752" height="1120" class="alignleft size-full wp-image-3419" /></a>
<br /></p>

<h3>Update</h3>

<ul>
<li>Ahmed Obied has published a clean python version of the exploit (opens your Windows Calculator) for testing also: <a href='http://praetorianprefect.com/wp-content/uploads/2010/01/ie_aurora.py_.txt'>ie_aurora.py</a>.</li>
<li><a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0249">CVE-2010-0249</a> has been opened for this issue.</li>
</ul>

<h3>Finally</h3>

<p><i>&#8220;At this time, we are aware of limited, active attacks attempting to use this vulnerability against Internet Explorer 6. We have not seen attacks against other affected versions of Internet Explorer.&#8221;</i> &#8211; Microsoft.</p>

<p>This situation has the potential to change rapidly now that it appears the exploit has been found. Microsoft last patched a vulnerability off cycle in July of 2009, they could elect to pursue the same response here.</p>

<p>Or as McAfee <a href="http://www.avertlabs.com/research/blog/index.php/2010/01/15/operation-aurora-leading-to-other-threats/">correctly opines</a>: <i>&#8220;What started out as a sophisticated targeted attack is likely to lead to large-scale attacks on vulnerable Microsoft Internet Explorer users.&#8221;</i></p>

<p><strong>Related Posts:</strong></p>
<ul>
<li><a href="http://praetorianprefect.com/archives/2010/03/iepeers-a-new-internet-explorer-zero-day-vulnerability/">IEPeers &#8211; A New Internet Explorer Zero Day Vulnerability</a></li>
<li><a href="http://praetorianprefect.com/archives/2010/03/press-f1-for-help-pwned/">Press F1 for Help, pwned.</a></li>
<li><a href="http://praetorianprefect.com/archives/2010/01/scareware-purveyors-spammers-and-crooks-take-advantage-of-haiti-earthquake/">Scareware Purveyors, Spammers, and Crooks Take Advantage of Haiti Earthquake</a></li>
<li><a href="http://praetorianprefect.com/archives/2010/01/windows-smb-crash-video/">Windows 7 SMB Kernel Crash Video</a></li>
<li><a href="http://praetorianprefect.com/archives/2010/01/baidu-com-the-latest-victim-of-iranian-cyberarmy/">Baidu.com the Latest Victim of Iranian CyberArmy</a></li>
</ul><br />
]]></content:encoded>
			<wfw:commentRss>http://praetorianprefect.com/archives/2010/01/the-aurora-ie-exploit-in-action/feed/</wfw:commentRss>
		<slash:comments>66</slash:comments>
		</item>
		<item>
		<title>Google&#8217;s New Year&#8217;s Eve Tricks</title>
		<link>http://praetorianprefect.com/archives/2009/12/googles-new-years-eve-tricks/</link>
		<comments>http://praetorianprefect.com/archives/2009/12/googles-new-years-eve-tricks/#comments</comments>
		<pubDate>Thu, 31 Dec 2009 22:21:00 +0000</pubDate>
		<dc:creator>Prefect</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[easter eggs]]></category>
		<category><![CDATA[google]]></category>

		<guid isPermaLink="false">http://praetorianprefect.com/?p=2769</guid>
		<description><![CDATA[Google <a href="http://praetorianprefect.com/archives/2009/10/halloween-jokes-twitter-google/">likes to have fun</a> with the holidays, and it appears that New Year's Eve will be no exception. People who have been hitting the "I'm Feeling Lucky" button lately with a blank search have been presented with a timer counting down the seconds to New Year's Eve. The timer is based on the PC clock.]]></description>
			<content:encoded><![CDATA[<p>Google <a href="http://praetorianprefect.com/archives/2009/10/halloween-jokes-twitter-google/">likes to have fun</a> with the holidays, and it appears that New Year&#8217;s Eve will be no exception. People who have been hitting the &#8220;I&#8217;m Feeling Lucky&#8221; button lately with a blank search have been presented with a timer counting down the seconds to New Year&#8217;s Eve. The timer is based on the PC clock.</p>

<p><div id="attachment_2770" class="wp-caption alignnone" style="width: 310px"><a href="http://praetorianprefect.com/wp-content/uploads/2009/12/google_newyear1.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2009/12/google_newyear1-300x222.jpg" alt="Click &#039;I&#039;m Feeling Lucky&#039; with a blank search." title="google_newyear1" width="300" height="222" class="size-medium wp-image-2770" /></a><p class="wp-caption-text">Click 'I'm Feeling Lucky' with a blank search.</p></div>
<br /></p>

<p>To see what Google is planning when the clock strikes zero (as I&#8217;ll be drinking champagne at midnight not watching google.com), make a quick change to our PC time by double clicking the clock on your PC, and modifying the time to 11:59pm:</p>

<p><div id="attachment_2771" class="wp-caption alignnone" style="width: 310px"><a href="http://praetorianprefect.com/wp-content/uploads/2009/12/windows-time4.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2009/12/windows-time4-300x259.jpg" alt="Change your Windows time to 11:59pm." title="windows-time4" width="300" height="259" class="size-medium wp-image-2771" /></a><p class="wp-caption-text">Change your Windows time to 11:59pm.</p></div>
<br /></p>

<p>Once the timer hits zero on Google, text based fireworks and a &#8216;Happy New Year&#8217; message are revealed:</p>

<p><div id="attachment_2772" class="wp-caption alignnone" style="width: 310px"><a href="http://praetorianprefect.com/wp-content/uploads/2009/12/google_newyear.jpg"><img src="http://praetorianprefect.com/wp-content/uploads/2009/12/google_newyear-300x127.jpg" alt="Fireworks, Google style." title="google_newyear" width="300" height="127" class="size-medium wp-image-2772" /></a><p class="wp-caption-text">Fireworks, Google style.</p></div>
<br /></p>

<p>Happy New Year from all of us at Praetorian Security Group, LLC.</p>

<p><strong>Related Posts:</strong></p>
<ul>
<li><a href="http://praetorianprefect.com/archives/2010/02/a-brief-reminder-passwords-have-been-around-forever/">A Brief Reminder, Passwords Have Been Around Forever</a></li>
<li><a href="http://praetorianprefect.com/archives/2009/10/halloween-jokes-twitter-google/">Halloween Jokes, Twitter &#038; Google</a></li>
</ul><br />
]]></content:encoded>
			<wfw:commentRss>http://praetorianprefect.com/archives/2009/12/googles-new-years-eve-tricks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
