@trufae si, a desfaig el .tgz desde java com un cristal, estic fent retocs cosmetics... en breus et passo una versió per q provis... IRC?
@trufae això ha funcionat com un cristal :-)
@trufae ja ho vaig veure, pero jo faig un chmod +x als bins un cop instalats :P
@trufae guay, mirare a vore si ho puc aprofitar, aixo ens traura la dependencia de busybox, mola! :D
@matalaz mirate el pen que tiene htc para la jetstream... a mi no me gusta, pero igual es lo que buscas
RT @DEVOPS_BORAT: Law of entropy for documentation: after 60 day, each piece of documentation is either invalid or can not able be found.
RT @trufae: Android MIPS NDK -- http://t.co/l4Ev1A5R
@trufae uff el hardware chino :P la Galaxy Nexus no te boto de reset (i no el necessita) :p
4.0.4 factory images are live - http://t.co/6GNRqE0B for yakju (GSM Galaxy Nexus) and soju (GSM Nexus S) tnx again @jbqueru
@trufae es un build compilat de AOSP, firmat amb les claus de test (q son publiques)... segurament el fastboot estara igual, totally open
@trufae engineering build, amb test keys :)
@trufae mira't això per baixar-te els APKs directament - http://t.co/8Kf9m4CU
@trufae és bastant actual donçs, es raro q vingui rootejat d serie, mira al "about tablet" si es un eng o un userdebug build...
@trufae jaja trobes q hi haurà algo? pots flashejar un build teu de AOSP? quina versió d'android porta?
@trufae si m'ho ha comentat la iolanda abans :) i he vist la foto de la tablet en un tuit teu... que tal va?
@trufae boh... no se't pot trollejar :P
@trufae deixa't estar de teories conspiranoiques contra els operadors, lo chungo es el teu iPhone... compra't un telèfon de veritat :P
Android Memory Usage Overview: http://t.co/B1Rz0UHS (procrank, smem) & Debugging native memory use: http://t.co/ubU92yRn
@GreekMikey u need to flash cwmod recovery after first boot, then chmod 000 install-recovery.sh prevents the recovery from being overwritten
after flashing the 4.0.4 OTA, if you use @clockworkmod recovery, remember to remount rw and 'chmod 000 /system/etc/install-recovery.sh'
RT @rapid7: Rapid7 Sponsors Androguard and Cuckoo Sandbox in the First Round of the Magnificent7 Program: http://t.co/ehpyjKup
RT @carlosacastillo: [PDF] Malware en Smartphones (II) http://t.co/JnfMGMGa // Seguridad en plataformas móviles, vectores de propagación y medidas de seguridad
Finally!! Oficial Galaxy Nexus GSM OTA 4.0.4 (yakju-IMM76D-from-ICL53F) - http://t.co/WkEHbMw9
@NunoTreez gave up on bruteforce, i've setup a google alert monitoring the filename, when it's posted on the internet i'll get an email :P
Android file dialog library to select files or directories (BSD license) - http://t.co/dwXwLhjT
Android's Secret on Google Play: dumps all device classes and methods, useful to get undocumented APIs - http://t.co/Z013EhEx
that's "only" 2.814749767*10^14 possibilities... better wait for someone with the OTA to grab the url from logcat :)
bruteforce this: hxxp://android.clients.google.com/packages/data/ota/google_maguro/xxxxxxxxyyyy.signed-yakju-IMM76D-from-ICL53F.xxxxxxxx.zip
RT @AndroidPolice: Partake In Some Self-Reflection With Google's New Account Activity Feature, Track Your Own Data For A Change http://t.co/RgTuNbsM
Android 4.0.4 in AOSP - http://t.co/w5ZIZd4U thanks @jbqueru :D
RT @gcluley: Meet Steve, 24 years old. He earns $1000 a day, spamming Pinterest http://t.co/uPHK18AD
@deese GNex ftw!
RT @MarioVilas: Script for creating SSH reverse proxies in the Amazon EC2 cloud and then using those as SOCKS proxies https://t.co/2BYz14FB
@whatsbcn good luck! :)
Motorola #xoom wingray OTA IMM76 from IML77 (4.0.3 -> 4.0.4) - http://t.co/9OCC0aR4
wow now this is what I call an AWESOME GAME written in BASH!!!! - http://t.co/r1esLK54 (via @MarioVilas)
RT @xanda: Chrome addons hacking: Bye Bye AdBlock filters! http://t.co/tEtK65wX
@dsixda i did close to nothing, just patching the bootloader to remove signature verification, and jumpspl which was 99% reused from haret
@dsixda haha xip porting wasn't that easy :) in android at least you have the OS source...
Detecting Repackaged Smartphone Applications in Third-Party Android Marketplaces - [PDF] http://t.co/M0AYeWI5
Android.Stiniter / TGLoader malware sample: http://t.co/OO5M76xu and analysis: http://t.co/Bw9dCW0X
Marvin Owlet: red flag analysis of Android APKs for malware detection and classification - http://t.co/4uATl0gs
@tripledes el pillo tiene una rule en prerouting que te captura todo el trafico DNS y te lo hace pasar por él, supongo lo tuyo es parecido
@tripledes a mi eso me pasaba con el huawei EchoLife HG553, para solucionarlo ejecuta esto en el router 'iptables -t nat -D PREROUTING_IN 1'
RT @jduck1337: Keeping bash history in sync between multiple terminals (via @newsycombinator via @briancarper) - http://t.co/PmjIAK19
linux privileged chdir() vulnerability in mount.cifs, discovered by @sha0coder (still unpatched) - http://t.co/NZht5MkN
haha +1 :) RT @AndroidPolice: Walked right into that one, didn't you, Google Play? http://t.co/Rdcva0qD
RT @retomeier: Every data transfer session can cause the wireless radio to draw energy for almost 20 seconds. News to you? Read this: http://t.co/3sxGiyiz
VimTouch: #Vim Android port with full vim syntax & finger touch gestures. Makes Vim more usable on touchscreens - http://t.co/JXB4TJe7
RT @sergiohernando: Security of mobile TAN on smartphones. Nice master thesis from @LaurensKoot http://t.co/pm6fVs1l
@r0sk conio.h! felicidades :-)
RT @djrbliss: Just bypassed kernel module code-signing enforcement on the Logitech Revue (Google TV), allows running unsigned kernel code. :-)
@jrleonr @dblanco_es @MrZarD http://t.co/qQeuvToY esta bastante bien, sino digicert o thawte
RT @TeamAndIRC: Gordita Root released ! https://t.co/SGZtZFpW for VirginMobile Optimus V, may work on other phones
RT @thekix: Fyodor, as usual :-) http://t.co/PmwiK8yr #IPv6
RT @thomas_cannon: Video to come later when they upload it, but here is our post about the contactless card stealing demo on Ch4 News: https://t.co/b4ZZ94j8
awesomesauce! RT @vierito5 Find Waldo with Mathematica http://t.co/wZMA1HPH
@toomanysecrets yo tb le tengo mucha tirria al air, pero como el tweetdeck v0.38.1-air no hay ningun cliente :(
10:09am March 23rd 2012 via TweetDeck in reply to toomanysecrets
@MrPerKarlsson it lets you see which commands execute other apps (root or non-root), so if an app looks suspicious you can inspect it..
10:08am March 23rd 2012 via TweetDeck in reply to MrPerKarlsson
Free version of 'Root Logger' released on Google Play - http://t.co/bOAe4KjK (this is a must have for rooted phones) #Android #security
@toomanysecrets en desktop no he encontrado nada mejor q el viejo tweetdeck con adobe air, y sigo usando éste...
9:43am March 23rd 2012 via TweetDeck in reply to toomanysecrets
@toomanysecrets en android uso TweakDeck (versión "tuneada" de tweetdeck) y le tengo el ojo puesto a Boid, que esta verde xo promete mucho
9:42am March 23rd 2012 via TweetDeck in reply to toomanysecrets
@toomanysecrets sigue siendo una mierda... todavía no hay nada comparable al tweetdeck viejo con adobe air en desktop.
9:36am March 23rd 2012 via TweetDeck in reply to toomanysecrets
RT @timstrazz: Ops, did I publish that in the AOSP? - http://t.co/uUQgGycz
Either "pure google experience" or "without htc sense" :-) RT @htc: In three words, describe your ideal phone.
RT @MalwareResearch: @pof @cryptax Sure. It is AndBug in navi action. Its really a great framework by @swdunlop. I use it inspect state of an object at runtime
RT @MarioVilas: Unofficial Google Advanced Search http://t.co/jNSEkers
Introduction to Android Mobile Device Management (MDM) - http://t.co/fbRyDCBL
@timstrazz @lostinsecurity @cryptax doesn't seem to be bokken either (a GUI for radare) - http://t.co/ga2oWQtP
@timstrazz @lostinsecurity @cryptax well, radare has ruby as supported API language, but it's written in plain C + Vala bindings
.@MalwareResearch can you answer @cryptax question here? http://t.co/UH727PnC I'm curious too :) thanks!
RT @cryptax: what's the tool used at fig 2 and 3? #android #reverse #malware http://t.co/U9RbXRn6
HOWTO: Get ADB to recognize Android phones in PC Software Mode on Linux (newer LG Android devices) - http://t.co/YdYN1ko3
meh.. emulator on new Android SDK r17 natively supports x86, but *not* on Linux... http://t.co/BgdsC049 #fail :(
@poltarrago fes una baixadeta al matterhorn per mi! :D #enveja++
RT @cmwdotme: Had some time on the weekend so i ported qemu's arm decoding and dynamic block translation to java script. https://t.co/nhDDMRIt
RT @roman_soft: Rooted Arena 2012 - Complete (*Spanish*) write-up by #int3pids: http://t.co/PHQoJB6L #rooted2012 #ctf
RT @carlosacastillo: Address spoofing vulnerability in iOS's Safari http://t.co/ZLdsFu7E // New phishing attacks targeting iOS on the way?
RT @cryptax: InsomniDroid challenge "official" write-up #insomnihack: http://t.co/aP1MYQ6w
@MarioVilas @ErneX @trufae si, pero la gente no lee, ve el popup y le da a OK sin leerlo y luego pasa lo que pasa... :)
RT @MarioVilas: I know it's wrong to laugh at people who don't understand technology, but I can't help it xD http://t.co/eIpPpZPS
I've just purchased Humble Bundle for Android #2! Pay what you want for 5 games Android/Windows/Mac/Linux http://t.co/xFmVRHjl via @humble
RT @adesnos: Faketoken or Opfake ? http://t.co/aF5QAz5e
@trufae normalment posen resolució chunga i marques d'aigua per q no ho fassis...
Android 2.x factory data reset ("wipe") feature can leave data, technical details - http://t.co/rGRJDiMd
Contents of Android malware distribution site exposed by @unixfreaxjp - samples: http://t.co/rR8YCeMo pastebin: http://t.co/ZstRtJ8H
Android merged back to the Linux 3.3 repositories - http://t.co/7j7nUoVI via @AndroidDev
RT @PayPal: :)
RT @chpwn: Python script to (try, badly, to) turn the output of the Hex-Rays decompiler into a usable Objective-C decompliation: https://t.co/KVLNbqOm
RT @0xb3nn: To get yr GWallet emu card UID, select MifareApplt [00A4040007A000000476303000] then ask [80A2000000]. Mine: ede47e4f. Nxt step, change it.
CyanogenMod-7.2.0-RC1 is out - http://t.co/k0EDYdHV
I lol'd -> RT @bugslap Microsoft MAPP: the new business (#ms12-020) - http://t.co/19jjh1D2
RDP bug MS12-020 explained by Super Mario - http://t.co/OACRB5fo #epic comic via @lawwait
RT @Dinosn: A free framework for bug hunters to find vulnerabilities, write proof-of-concept exploits and play in Android. http://t.co/l7qDkYY4
A Closer Look At Brute Force Attacks Against #WordPress Sites - http://t.co/a7vAr4Sg
New Android Malware Samples on Contagio - Opfake aka FakeSMSInstaller: http://t.co/7ahbC2Nl & FakeToken: http://t.co/GHnjZcmn
@nwhusted yep, totally agree!
Residual Network Data Structures In Android Devices (ie: retrieve network metadata from NAND) #forensics - [PDF] http://t.co/SgMhxOwJ
CyanogenMod 9 changes disable root selectively (root usage will have to be explicitly enabled by the user) - http://t.co/xr3YG569
RT @Rogunix: Updated notes by @jduck1337 about MS12-020 http://t.co/VTgN8GOJ Still haven't EIP Control, still working in #ms12-020 at freenode
+android forensics tools (not open source): UFED Logical http://t.co/bFHn4YtA, Paraben http://t.co/NBGNFbvF, ViaExtract http://t.co/VwXwPZlC
AFLogical - Open Source Edition: forensics application to extract data from Android devices - http://t.co/azomqHcR
RT @ortegaalfredo: This month is remote pre-auth month (Asterisk stack buffer overflow) http://t.co/02OBf9tX
RT @luigi_auriemma: since my poc is out I have released also my original (16 May 2011) advisory and poc about ms12-020: http://t.co/xsvCSYC5
Is The MS12-020 RDP Exploit Out Yet? http://t.co/G3WK5PF4 via @caseyjohnellis
1020 bytes javascript speech synthesizer: http://t.co/Hsw8hMbr - awesome #js1k demo submission by @p01
RT @ortegaalfredo: ms12-020 .py works from localhost http://t.co/nysK5lnE #doingblue
Adventures in Porting GnuPG 2.1.x to Android! - http://t.co/eWSperyg
@timstrazz that was AOSP on a 13inc MacBookAir too... :)
@timstrazz lol, thats the other side effect of compilation, and not only my legs are hurt!
first time I am glad my laptop has a fan, so I know by the noise (stopping) when compilation has finished :P
Evidences of Google Wallet application coming to iOS through android app information leakage - http://t.co/UzFQ5Kv4
opened a netcat logger in my RDP port, to see if i can capture any interesting payload :P #MS12-020
@rhcp011235 that's a fake...
RT @i0n1c: Here are my slides from #CanSecWest http://t.co/0UOP9r5p
RT @NunoTreez: @jduck1337 notes on #MS12-020 - http://t.co/ShmvhBnW
RT @lostinsecurity: The RDP PoC was coded by Sabu together with the FBI :) MS12-020 PoC - http://t.co/YZpIuwWA
Android Malware Pairs Man-in-the-Middle With Remote-Controlled Banking Trojan, great article by @carlosacastillo - http://t.co/BtuGGBfI
RT @aramosf: WiFi Pineapple Mark IV: http://t.co/yK0l4iwi
RT @avtestorg: Update to the Android anti-malware test published (version 1.1, March 13th, 2012): http://t.co/24dtXgqe
RT @carlosacastillo: Projects/OWASP GoatDroid Project http://t.co/oHmc5rUo // Interesting project to learning about security issues for the Android platform
#Android Root Logger: log all shell commands sent to your phone (from root & non-root apps) - http://t.co/3Slne6Pr <- looks promising!
@anitapez surt el teu nom aqui http://t.co/7Oac2T4f
RT @ChrisJohnRiley: MS12-020 AKA The reason why your RDP ports should be filtered! I see this one being in pentest reports for a long while to come.
RT @carlosacastillo: [PDF] CrossTalk: Securing a Mobile World http://t.co/YBkEvQIt // iPhone Malware Paradigm, Mobile Applications Security and more...
@timstrazz is this script available somewhere?
RT @AndroidPolice: Mika Mobile's Decision To Stop Making Games For Android Raises Troubling Questions And Concerns About Apps On Android http://t.co/Ov7diXBp
Android Reversing paper (in spanish) presented at rootedlabs by Sebastián Guerrero @0xroot - [PDF] http://t.co/xlpHtW7u
RT @carlosacastillo: Android Malware adopts reflections http://t.co/YVYhl4ob // FakeInstaller using Class.ForName and Class.getMethod to invoke "sendTextMessage
Bugtraq: Android wireless accepts fake response (No interaction requires) (Vulnerability ?) - http://t.co/1ZjC8hjm
@Marccoga #noeresdeVinaròs si no has sentit mai al dels cupons dient 'compreu-me loteria que avui he ansomiat en merda'
RT @lostinsecurity: Open source Android forensics: An HTCIA student charter project http://t.co/V27waTHP
@fjserna congrats and stay close to them now! :-)
@boidapp Y U NO REMEMBER POSITION IN TIMELINE?!??
@zlowram si, acabo de sortir de casa, estic de camí
RT @jduck1337: Congratulations to @VUPEN @_snagg @_dvorak_ Sergey and Pinky Pie for their performance at #CanSecWest. You've made exploit writers proud.
RT @iamnion: mobile security is so depressing, thx @th3j35t3r for proving it another time http://t.co/QeT6FkvG #wearealldoomed
RT @mozdeco: Run your own fuzzers on Firefox Mobile for Android using the ADBFuzz automation harness: http://t.co/ZpkJ4UdM
#noeresdeVinaròs si no sas lo que és 'lo ses', i ademés te fa gràcia :P
#noeresdeVinaròs si no sas diferencià entre un golut i un llepol
Covert Channel Over ICMP whitepaper (for tcp tunneling) - http://t.co/rOBwX2oX
RT @vierito5: Help a great project! RT @radareorg: We are accepting donations again. https://t.co/U29xccdI
w00t!! RT @ChainfireXDA SuperSU v0.70 released ! http://t.co/t7ybV92O
Mobile Threats Report, presented in a nice Infographic - http://t.co/58t9NhrY
@guiskiguiski 1. entra aqui http://t.co/JzUau8Ss y elimina todo lo que no uses, 2. cambiate el password de twitter http://t.co/2Aw1eib2
10:33am March 9th 2012 via TweetDeck in reply to guiskiguiski
The Window of Opportunity for Android Malware paper from @cryptax and @timstrazz at #EICAR looks very promising! - http://t.co/CHMzZv1w
RT @KismetWireless: http://t.co/esE2mwjB ... Framer is doing some cool stuff w/ excessive amounts of wifi cards plugged into Kismet.
RT @timstrazz: Absolutely love http://t.co/uxBc0qND - such an awesome tools and very fast site :D Best thing for finding stuff in #AOSP
RT @radareorg: UI page updated http://t.co/YhSczhSP
@guiskiguiski unfollow hasta que dejes de twittear cosas como estas: http://t.co/LadguMmF http://t.co/xnnq5aLg http://t.co/b86O0Xkh
AppSec: Vulnerability reports on Android applications - http://t.co/pYVixTOv
RT @Pwn2Own_Contest: The official #Pwn2Own contest page has been updated to reflect the current status: http://t.co/pMWmbu4N
RT @KevinSMcArthur: Presenting: #PeerJacking - SSL Ecosystem Attacks Against Online Commerce. http://t.co/pVVZiKU8
RT @scarybeasts: Pwnium issue patched -- already!! <24hrs http://t.co/XJfWTOc1 Ch-ch-ch-ch-ching! #pwnium
I liked a @YouTube video http://t.co/4o6Z8Av2 Angry Birds Space: NASA announcement
@Aballano me gusta mas LBE que droidwall, mas que nada porque no sólo bloquea internet sino que también bloquea permisos....
RT @PaulOBrien: By request: Superboot root utility for the HTC One X - http://t.co/kOP2NlVv
RT @xdadevelopers: Android: Enjoy your Favorite Anti-Root Apps Without Losing Root Completely http://t.co/iolciXNV
@malditogeek no tengo nada q ver :P
@lostinsecurity @YJesus la mayoría van por firmas y tienen poca o ninguna heuristica, lo mejor es usar algo como http://t.co/4o5Og0rO
12:54pm March 8th 2012 via TweetDeck in reply to lostinsecurity
RT @timstrazz: Just finished tweaking my solution for the #Android "insomnidroid" challenge from #insomnihack http://t.co/atXgMgQ2
RT @scarybeasts: RT!!! LOOKS LIKE A $60K'ER from community member Sergey Glazunov by proxy! So excited. Live demo 2pm Google booth #Pwnium
RT @htcdev: Another oldie but goodie...unlock bootloader support for the HTC Dream is now here! Check it out: http://t.co/1YbTuUwj
RT @coolbho3k: SetCPU 2.3.0 (with an all-new ICS interface!) released: http://t.co/4NnrUaRC
RT @Luis_Corrons: This is going to be a funny night #lulztojail :)
RT @anonraged: http://t.co/DiJa19fs hacked & defaced mirrored here: http://t.co/n1d0j8Ev and http://t.co/3hMOfrCO #LULZ #Anonymous #Antisec #Pandalabs
RT @wikileaks: Pandalabs hacked by lulzsec in comeback following FBI raids http://t.co/AQhzVXqK #lulzsec #anonymous
@rhcp011235 didn't see any gnex specific howto, but wiki instruct. should work for any AOSP device. Specific details on SElinux mailing list
@rhcp011235 i don't think a SEAndroid build in binary form would be suitable for security paranoids, unless it comes form an official source
@rhcp011235 also if u want to build SEAndroid for GNex, watch these (complete) threads: http://t.co/7oYpNIx5 and http://t.co/Hx8ZjSpL
@MikeTracking usa una VPN o sino SIP+TLS + SRTP
4:52pm March 6th 2012 via TweetDeck in reply to MikeTracking
@rhcp011235 i don't think there's any, they just released guidelines for implementation. You might want to try http://t.co/HZuSyiOI
NSA builds Android phone for top secret calls - http://t.co/NP9YGJN4 +info on NSA Mobility Program: http://t.co/v68x9J7o
Android Forensics: PIN and Password Locks http://t.co/LsXTm8H6 | Pattern Lock http://t.co/9KWi8lgh | Face Recognition http://t.co/OSzyXMSN
AV-TEST report: 41 Android virus scanner products tested against 618 types of malware - [PDF] http://t.co/6Gtkq4Z9
RT @romainguy: Write #Android apps from your #Android device with AIDE (Android Java IDE) https://t.co/nUgrZ9eD #androiddev
RT @esizkur: IDA Pro loader module for IFX (Infineon/Intel) iPhone baseband firnwares: https://t.co/OBVPJHUY
RT @ChainfireXDA: AndroidPIT telling it like it is - http://t.co/CTdeUW4o
InsomniHack'12 slides: Android Reverse Engineering Tools, From an anti-virus analyst's perspective - [PDF] http://t.co/vr6cErk5
@prodrigestivill @trufae generalment tindras problemes amb superuser.apk, chrome for android, busybox, etc... q tenen coses arm-specific
8:34am March 5th 2012 via TweetDeck in reply to prodrigestivill
testing @boidapp new twitter client for ICS :)
RT @xdadevelopers: Android: Discover Undisclosed APIs with Android's Secret http://t.co/3Efnii1z
@trufae novo7.. mips... pillat algo amb arm, si no la mitad de coses no t'aniran :P (casi tot lo q es fa amb ndk, esta compilat per arm)
@trufae si, lo q dius ho fa molt be tweetcomb - http://t.co/Z9KWoMcs mira els screenshots, pero no m'agrada com a client de tw.
@trufae si, aqui tens un screenshot http://t.co/ASqqmcOM
@trufae si, es ICS only... de moment encara es alpha, pero pinta molt be :)
RT @xanda: RT @curphey: Best explanation of public key encryption I've seen: http://t.co/jCia6gBc via @mf - brilliant!
RT @TeamAndIRC: Google wallet's root user check, http://t.co/SXaBvmpp root without patching the apk tomorrow, if i have time
RT @boidapp: Here it is guys, the #ALPHA version of #Boid! https://t.co/KL5STvoL
RT @UberFacts: If Apple's iPads were made by US workers, they would retail for $14,970. http://t.co/xxQfBB6G
RT @carlosacastillo: [McAfee Labs Blog] Google Code Projects Host Android Malware http://t.co/ad9APYvD
radare2 installer app for Android has been updated on Android Market - http://t.co/nTiVX2Dp
RT @neuroflip: The new amiga twitter client ❤ http://t.co/JYWHjXbe
RT @kyrah404: Interesting hack: detect if visitors are logged into Twitter, Facebook or Google+ http://t.co/wENrxuaE Try it here: http://t.co/MA09Y9xt
Android x86 4.0 RC1 released, based on Android 4.0.3 (Ice Cream Sandwich) - http://t.co/nWpjZNcz
Got my aeroshot pure energy caffeine dose - http://t.co/S7XFCS7a thanks @tizt
RT @trompi: for all privacy fans (should be everyone), take a look to Collusion http://t.co/j9u6ubtf and see how much tracking we get when browsing
F-Secure Mobile Threat Report, Q4 2011 [PDF] - http://t.co/BBZXSZPM
RT @Kleissner: Virus developers of the world! Take it, use it, the UAC bypass: http://t.co/zOhWRAHH
RT @cBekrar: HP / ZDI response to Google about #pwn2own http://t.co/NxKFyaJk <- I recommend reading this very interesting blog. I agree at 100% with ZDI