22
FEB
2013

Siri Controlled Sky+ HD using Siriproxy and RaspberryPi

Posted By :
Comments : 0
I bought myself a type B after some inspiration from DarkTher4pys Garage Door project and his video showing sky box control over UPnP. After receiving my Pi today and the nightmare of setting up wlan I was surprised how easy this was! My implementation differs to...
Read More
04
FEB
2013

iMessage denial of service attack

Posted By :
Comments : Off
The Next Web broke news that users of Mac OSX Mountain Lion could crash any app by typing File:/// into any text field. The same issue doesn’t plague the iPhone or iPad. With that in mind i tried sending an iMessage containing File:/// to my Apple ID. Sure enough the...
Read More
25
OCT
2012

Top 10 Unfortunate email addresses

Posted By :
Comments : Off
When automation goes wrong We live in an increasingly automated world. Anybody who is anybody, and much more besides have email addresses, Twitter account and Facebook profiles. Twitter and Facebook have hit the headlines often, with professionals being scarred by careless...
Read More
10
SEP
2012

5 Months of Posts to the wrong server

Posted By :
Comments : Off
I had an email today with a question about my blog. I get lots of emails about my site, asking for help or due to page rank the usual flood of spam, but this one stood out because it was a question about a post I’d promised to make and recall doing months ago. Checking on...
Read More
24
APR
2012

SD Tabletwear iPad 2 / iPad 3 LuxFolio Case [REVIEW]

The moment I received my new iPad I was in awe. This is the device I’ve dreamed about since seeing the handheld tablets on Start Trek:TNG when I was a kid. As beautiful as the naked iPad is, having upgraded from the iPad 1 I’m very aware of how easy it is to scrape,...
Read More
14
APR
2012

1 and 1 iOS Apps sloppy coding allows domain theft and email hijacking

In many ways this is much worse than the LinkedIn and Facebook Plist vulnerability exposed last week. Both social apps exposed plain text OAuth Tokens which enable a large amount of personal information to be snaffled from accounts, and in the case of Facebook, access any website...
Read More
13
APR
2012

Using iOS Keychain for Data Protection and Migration

Given the number of requests I’m currently recieving re using the keychain following my post regarding the use of plain text credientials in plists I’ve decided to reprint an excellent series of articles from Use Your Loaf which helped me get to grips with Keychain...
Read More
10
APR
2012

AgileBits 1Password Updated OAuth Tokens Moved to Keychain

1Password, a cross platform passwords management solution  by Agile Bits snatched the crown for the first app developers to publicly test their own iOS app, own up to having, and subsequently fix the plist vulnerability discussed on my April 3rd Post Re Facebook Credential Theft...
Read More
07
APR
2012

LinkedIn also Vulnerable to Plist Theft

[UPDATED] LinkedIn update on 26-4-2012 appears to resolve this vulnerability, though no statement or reference to the vulnerability has been made by LinkedIn. Still, they have fixed it, which is a heck of a lot more than Facebook has done! Further testing on popular social apps...
Read More