<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Hack a Day &#187; p0f</title>
	<atom:link href="http://hackaday.com/tag/p0f/feed/" rel="self" type="application/rss+xml" />
	<link>http://hackaday.com</link>
	<description>Fresh hacks every day</description>
	<lastBuildDate>Fri, 10 Feb 2012 10:01:11 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='hackaday.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://1.gravatar.com/blavatar/5560f98f805877b0e332f191cb9e0af3?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Hack a Day &#187; p0f</title>
		<link>http://hackaday.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://hackaday.com/osd.xml" title="Hack a Day" />
	<atom:link rel='hub' href='http://hackaday.com/?pushpress=hub'/>
		<item>
		<title>Network packet sniffing with Linux</title>
		<link>http://hackaday.com/2011/01/29/network-packet-sniffing-with-linux/</link>
		<comments>http://hackaday.com/2011/01/29/network-packet-sniffing-with-linux/#comments</comments>
		<pubDate>Sat, 29 Jan 2011 20:00:24 +0000</pubDate>
		<dc:creator>Mike Szczys</dc:creator>
				<category><![CDATA[linux hacks]]></category>
		<category><![CDATA[security hacks]]></category>
		<category><![CDATA[dsniff]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[p0f]]></category>
		<category><![CDATA[packet sniffing]]></category>
		<category><![CDATA[tcpdump]]></category>
		<category><![CDATA[traffic]]></category>

		<guid isPermaLink="false">http://hackaday.com/?p=33694</guid>
		<description><![CDATA[Here&#8217;s a chance to learn a little bit about network security. This article walks us through some of the core concepts of network manipulation and packet sniffing using Linux tools. [Joey Bernard] discusses the uses for packages like tcpdump, p0f, and dsniff. They are capable of recording all network traffic coming through your computer&#8217;s connection, seeking out machines installed [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackaday.com&amp;blog=4779443&amp;post=33694&amp;subd=hackadaycom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignnone size-full wp-image-33695" title="linux-network-sniffing" src="http://hackadaycom.files.wordpress.com/2011/01/linux-network-sniffing.jpg" alt="" width="470" height="76" /></p>
<p>Here&#8217;s a chance to learn a little bit about network security. This article walks us through some of <a href="http://www.linuxjournal.com/content/hacking-old-school">the core concepts of network manipulation and packet sniffing</a> using Linux tools. [Joey Bernard] discusses the uses for packages like tcpdump, p0f, and dsniff. They are capable of recording all network traffic coming through your computer&#8217;s connection, seeking out machines installed on the network, and listening to traffic for a specific machine. This isn&#8217;t going to give you a step-by-step for cracking modern networks. It will provide some insight on what is going on with your network and you should be able to purpose these tools to check that you&#8217;ve got adequate security measures in place.</p>
<br />Filed under: <a href='http://hackaday.com/category/linux-hacks/'>linux hacks</a>, <a href='http://hackaday.com/category/security-hacks/'>security hacks</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/hackadaycom.wordpress.com/33694/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/hackadaycom.wordpress.com/33694/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/hackadaycom.wordpress.com/33694/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/hackadaycom.wordpress.com/33694/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/hackadaycom.wordpress.com/33694/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/hackadaycom.wordpress.com/33694/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/hackadaycom.wordpress.com/33694/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/hackadaycom.wordpress.com/33694/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackaday.com&amp;blog=4779443&amp;post=33694&amp;subd=hackadaycom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackaday.com/2011/01/29/network-packet-sniffing-with-linux/feed/</wfw:commentRss>
		<slash:comments>22</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">Mike Szczys</media:title>
		</media:content>

		<media:content url="http://hackadaycom.files.wordpress.com/2011/01/linux-network-sniffing.jpg" medium="image">
			<media:title type="html">linux-network-sniffing</media:title>
		</media:content>
	</item>
		<item>
		<title>Avoiding OS fingerprinting in Windows</title>
		<link>http://hackaday.com/2008/10/04/avoiding-os-fingerprinting-in-windows/</link>
		<comments>http://hackaday.com/2008/10/04/avoiding-os-fingerprinting-in-windows/#comments</comments>
		<pubDate>Sun, 05 Oct 2008 00:00:26 +0000</pubDate>
		<dc:creator>Eliot</dc:creator>
				<category><![CDATA[downloads hacks]]></category>
		<category><![CDATA[security hacks]]></category>
		<category><![CDATA[ettercap]]></category>
		<category><![CDATA[fingerprint]]></category>
		<category><![CDATA[fingerprinting]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[obscurity]]></category>
		<category><![CDATA[os]]></category>
		<category><![CDATA[os fingerprinting]]></category>
		<category><![CDATA[p0f]]></category>
		<category><![CDATA[satori]]></category>
		<category><![CDATA[security cloak]]></category>
		<category><![CDATA[security through obscurity]]></category>
		<category><![CDATA[TCP]]></category>
		<category><![CDATA[tcpip]]></category>

		<guid isPermaLink="false">http://hackadaycom.wordpress.com/?p=4299</guid>
		<description><![CDATA[[Irongeek] has been working on changing the OS fingerprint of his Windows box. Common network tools like Nmap, P0f, Ettercap, and NetworkMiner can determine what operating system is being run by the behavior of the TCP/IP stack. By changing this behavior, you can make your system appear to be another OS. [Irongeek] started writing his [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackaday.com&amp;blog=4779443&amp;post=4299&amp;subd=hackadaycom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignnone size-full wp-image-4300" title="fingerprint" src="http://hackadaycom.files.wordpress.com/2008/10/fingerprint.jpg" alt="" width="450" height="96" /></p>
<p>[Irongeek] has been working on <a href="http://www.irongeek.com/i.php?page=security/osfuscate-change-your-windows-os-tcp-ip-fingerprint-to-confuse-p0f-networkminer-ettercap-nmap-and-other-os-detection-tools">changing the OS fingerprint of his Windows box</a>. Common network tools like <a href="http://nmap.org/">Nmap</a>, <a href="http://lcamtuf.coredump.cx/p0f.shtml">P0f</a>, <a href="http://ettercap.sourceforge.net/">Ettercap</a>, and <a href="http://networkminer.wiki.sourceforge.net/NetworkMiner">NetworkMiner</a> can determine what operating system is being run by the behavior of the TCP/IP stack. By changing this behavior, you can make your system appear to be another OS. [Irongeek] started writing his own tool by checking the source of <a href="http://www.securiteam.com/tools/5MP052KI0A.html">Security Cloak</a> to find out what registry keys needed to be changed. His OSfuscate tool lets you define your own .os fingerprint file. You can pretend to be any number of different systems from IRIX to Dreamcast. Unfortunately this only works for TCP/IP. Other methods, like <a href="http://myweb.cableone.net/xnih/mortalx.htm">Satori</a>&#8216;s DHCP based fingerprinting, still work and need to be bypassed by other means. Yes, this is just &#8220;security through obscurity&#8221;, but it is something fun to play with.</p>
<br />Posted in downloads hacks, security hacks  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/hackadaycom.wordpress.com/4299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/hackadaycom.wordpress.com/4299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/hackadaycom.wordpress.com/4299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/hackadaycom.wordpress.com/4299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/hackadaycom.wordpress.com/4299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/hackadaycom.wordpress.com/4299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/hackadaycom.wordpress.com/4299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/hackadaycom.wordpress.com/4299/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackaday.com&amp;blog=4779443&amp;post=4299&amp;subd=hackadaycom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackaday.com/2008/10/04/avoiding-os-fingerprinting-in-windows/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">RobotSkirts</media:title>
		</media:content>

		<media:content url="http://hackadaycom.files.wordpress.com/2008/10/fingerprint.jpg" medium="image">
			<media:title type="html">fingerprint</media:title>
		</media:content>
	</item>
	</channel>
</rss>
