Archive for January 9th, 2008

Twitter Updates for 2008-01-09

  • ahh finally.. waffles… #
  • 風林火山 【ふうりんかざん】 (exp) as fast as the wind, as quiet as the forest, as daring as fire, and immovable as the mountain #

port knocking and honeypotting..

This is a pretty interesting project, shimmer

shimmer is a pair of small programs (a client and a server) that provide an alternative to port knocking program such as tumbler and are used to hide a valuable port (such as a hidden web server or SSH) on a public IP address.

shimmer works by cryptographically changing a set of 16 ports (one of which forwards to the real service, and 15 others that lead to a trap to blacklist attackers). The 16 ports change every minute frustrating an attacker, but a legimitate user with access to a secret shared between the client and server can determine the real port, avoid blacklisting, and get a connection.