iTnews

Network intel tool outs tweeting spooks

By Darren Pauli, SC Magazine on Oct 18, 2012 2:38PM
Network intel tool outs tweeting spooks

Maltego showcased at Breakpoint.

It doesn't take a large company to design popular security tools. 

Such is the case for the popular network intelligence kit Maltego which was designed by a team of five operating out of a refurbished barn yard in South Africa

The company, without need of sales staff and vice presidents, crafted a tool to make social engineers salivate. It can map a huge number of network forms, be they social or computer-based. 

In a demonstration at the Breakpoint security conference in Melbourne yesterday, founder Roelof Temmingh used the tool to pull up a ream of personal details on a random US military official who, it revealed, had tweeted from the NSA's parking lot.

The process was entirely legal, and used nothing more than publicly-available information. It was both a demonstration of the power of the tool and the ease at which fraudsters could steal identities.

It correlated geographic metadata to physical locations – proving that for instance the official was in an area at a given time – crawled online directories and social networks.

 At the end of the five minute investigation, the target's family details, favourite pastimes, make and model of the phone used, date of birth and phone and address numbers were revealed.

Temmingh however was a master of the program. Other users he said would experience a “steep” entry point into the program.

Among the pointers he offered to attending security pros was that scans of IT infrastructure should be included in any social network deep-dive.

“Don't knock infrastructure if you're looking at people, because they link together on things like Whois data,” Temmingh said.

Maltego, a phrase which has no definition in any language, could be used for constructing a visual analysis on any form of network.

Temmingh had even created a casefile to understand the character relationships in the HBO hit Game of Thrones.

The community edition for the latest version of Maltego, dubbed Radium, will be released in weeks. You can hear Temmingh describe how Radium strings together transforms on Risky.biz.

Got a news tip for our journalists? Share it with us anonymously here.

Copyright © SC Magazine, Australia

Tags:
breakpoint maltego networks paterva ruxcon security

Partner Content

MSI shows first laptops with Wi-Fi 6E, Nvidia RTX 30 graphics
Partner Content MSI shows first laptops with Wi-Fi 6E, Nvidia RTX 30 graphics
MSI launches innovative new laptops
Partner Content MSI launches innovative new laptops
Improving returns from SD-WAN spending
Sponsored Content Improving returns from SD-WAN spending
NCS expands into Australia in partnership with Optus Enterprise
Sponsored Content NCS expands into Australia in partnership with Optus Enterprise

Sponsored Whitepapers

The risky business of open source
The risky business of open source
Ensure your e-signatures are legally binding
Ensure your e-signatures are legally binding
Mitigating open source risk in your organisation
Mitigating open source risk in your organisation
How to choose a WAF that's right for you
How to choose a WAF that's right for you
The global telco 5G cloud gaming opportunity
The global telco 5G cloud gaming opportunity

Events

  • On-Demand Webinar: How Poly and Microsoft are Embracing Future Work Environments
By Darren Pauli, SC Magazine
Oct 18 2012
2:38PM
0 Comments

Related Articles

  • Geolocation threats rise following demonstration of router hacking that can pinpoint a person's home
  • UNSW restarts search for new CISO
  • Reserve Bank of NZ governor apologises for 'serious' data breach
  • Google unravels state-of-art Android and Windows exploit chains
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Telstra blasts plan to 'set aside' mobile spectrum for Optus and TPG, but not it

Telstra blasts plan to 'set aside' mobile spectrum for Optus and TPG, but not it

Accellion hack behind Reserve Bank of NZ data breach

Accellion hack behind Reserve Bank of NZ data breach

Google unravels state-of-art Android and Windows exploit chains

Google unravels state-of-art Android and Windows exploit chains

Tyro halts trading following week-long outage

Tyro halts trading following week-long outage

You must be a registered member of iTnews to post a comment.
Log In | Register
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.