Wednesday, January 10, 2018

2017 Highlights, a great year and even greater things to come!

As we enter a new year Telspace would like to look back on 2017 and thank everyone who made 2017 one of our greatest yet. We have had the pleasure of attending a number of conferences where we were able to present, train and share ideas with like-minded individuals. 2017 saw a growth in the Telspace Team, in particular in our Research and Development space (more to come!). This blog post provides an overview of some of the highlights this year, if we have missed anything let us know in the comments below! We kicked the year off by joining up with Carte Blanche to provide comment on mobile privacy and the tools used to spy on people.


Left to right: Stieler (Standard Bank), Bongani Bingwa (Carte Blanche), Simphiwe (PIC), Dino Covotsos (Telspace Systems)

Telspace has always been very close to the local infosec community and we believe in giving back. As part of this, Telspace got heavily involved in ITWeb’s first Hackathon where we provided our time to train, mentor and judge the participants. The inaugural Hackathon brought young professionals with an interest in developing their skills in Information Security together. The overall theme, “Innovation in Security”, challenged disruptive innovators to build the most secure systems possible, as well as to explore new innovative mechanisms for the industry.

The Hackaton was a great event / initiative as it made the participants aware of the importance of information security. Telspace also took on board one of the participants from the Hackathon that demonstrated the most passion, as we always like to say, we can teach you skills but we can’t teach you passion!

Left to right: Manny Corregedor (COO of Telspace Systems), Nithen Naidoo (CEO of Snode) at the Hackathon Ideathon

For more information on the Hackathon go to:
In addition to supporting the ITWeb Hackathon we also sponsored, provided training (ethical and wireless hacking) and spoke at the ITWeb Security Summit. We also got the opportunity to catchup with some old friends such as Jayson Street, an international speaker, that gave a keynote at the conference. We also made a donation to CANSA for every Telspace shirt that was given away to attendees that visited our stand.

Left to right: Eric Lundberg, Manny Corregedor and Jayson Street


Manny Corregedor giving a talk on ‘A false sense of information security’ at the ITWeb Security Summit.

The conference was well attended and had great international speakers such Jayson Street and Mati Aharoni who gave keynotes.

Telspace also attended the first local Johannesburg 0xCon conference where our COO Manny Corregedor presented his talk “Breaking AVs for fun and the greater good”. A great day was had by everyone and it was great seeing the community come together for this local conference.

Left to right (front): Manny, Mariska (No longer with Telspace), Sibusiso, Mark, Richard. Back: Eric.

Throughout the year we also participated in other local and international conferences, round table events and provided comments on news stories in the media.

In addition to supporting local events, we also attended Blackhat, Defcon 25 and Bsides in Las Vegas. Our analyst Richard Hocking gave a presentation on Hacking Stock Markets at BSides Las Vegas titled ‘(In)Outsider Trading - Hacking stocks using public information and influence.’

In Vegas many bonds were made and many beers were enjoyed. We look forward to attending again in 2018. We also donated to the fantastic Hackers for Charity, which is an amazing initiative which we fully support (Thanks Johnny!). More information on this great initiative can be found by going to: http://www.hackersforcharity.org/ .

Telspace also sponsored and presented at Bsides Cape Town 2017, where we were proud to run a “selfies for charity” fundraiser for the South African Depression and Anxiety Group (@TheSADAG). Our analyst Frank Allenby also presented his talk titled ‘Breach huffing; a culinary exploration of data breaches’.

Frank Allenby speaking at Bsides Cape Town

Our analyst Charlie Smith, also won the capture the flag competition at BSides Cape Town, the prize was a Google Home device, sponsored by NClose Security.

Charlie Smith receiving his prize for winning the CTF at BSides Cape Town


Some “selfies for charity” at BSides Cape Town 2017

For a complete write up on our experience at BSides Cape Town visit:

http://blog.telspace.co.za/2017/12/flux-capacitors-charged-and-back-to.html

This year we officially kicked off our security advisory service, Telspace Security Advisories (TSA), where we responsibly disclosed a number of unknown vulnerabilities (0day) to vendors. In 2018 we plan to continue our research in not only finding unknown vulnerabilities but also releasing research that would be valuable to our clients and more importantly the community as a whole - stay tuned :) Lastly, we would like to thank everyone who made our 2017 year so amazing, a huge thank you to our staff, clients, friends and most importantly the local Information Security community. We wish you all the best and a prosperous year for 2018.

Tuesday, December 5, 2017

Flux capacitors charged and back to the future Telspace goes. BSides Cape Town 2017

This past weekend (2 December 2017) a few of our Telspace team members traveled to the annual BSides Cape Town conference.  This year the con was inspired by the classic movie “Back to the Future”.  Kicking off the con was the pre-party Friday evening at the Cape Town Science Centre. 

This was the perfect venue not only to compliment the theme but to also tickle the fancy of all us geeks and nerds attending.  After welcome drinks and exploring the Science Centre with all of its fantastic scientific illustrations it was time for a movie. You guessed it, we watched “Back to the Future”.  And so, we ended off Friday evening.  


Finally!!!  D-day, the con starts.  Up early Saturday morning we headed off to Observatory.  Full of excitement we got our SWAG-on and headed off to the talks but first, coffee.  This was clearly a mutual feeling as everyone was standing in line to get their cuppa for the morning.  

The con was packed with great talks, loads of challenges such as the CTF, lock picking and a bunch more.  Frank from our team did a great talk on Data Huffing and ways in which we can use data breaches to aid with pentests and information security in general. 


The CTF from Nclose was also great fun with Charlie and Frank being the only 2 participants (out of about 15) to successfully capture the flag.  Charlie was the overall winner because, through his years of experience breaking Web Apps, he generated the least number of alerts. He actually found a path that not even the CTF creators knew about, he truly hacked the CTF!


As Telspace regularly does we once again chose a charity to contribute to.  This time around we chose the South African Depression and Anxiety Group (@TheSADAG).  They do fantastic and much-needed work and we are proud to be associated with them.   To spread awareness, we asked delegates to track down our team members, take a selfie with them and post it to Twitter.  As a thanks to the participants, we gave them a special limited edition 15 Year Anniversary Telspace shirt.  Selfies can be found on Twitter by searching for @telspacesystems or #BSidesCPT17. 

In conclusion, BSides Cape Town 2017 was a huge success and it is great to see how the information security community within South Africa is growing not only in numbers but with the quality of research as well. 

To summarise, the highlights were:
  • Awesome talks
  • CTF Victors 
  • Selfies for charity
  • Great Conference

Wednesday, October 11, 2017

Telspace Systems Security Advisory (TSA-2017-005)

Telspace Systems Security Advisory

TSA-2017-005: Internet Explorer Information Disclosure Vulnerability

CVE number
CVE-2017-11790

Summary
An information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory. An attacker who successfully exploits the vulnerability could obtain information to further compromise the user’s system 

Vendor
Microsoft

Product
Internet Explorer

Version
11.0.15063.540

Vendor URL

Details and crash information
iertutil!CreateUriPriv+0x43:
00007ff8`001be203 66391479 cmp word ptr [rcx+rdi*2],dx ds:0000012f`76037000=????


Vendor response
The vendor has patched the vulnerability and released a new version 

Disclosure Timeline
02-08-2017 – Initial Discovery
14-09-2017 – Vendor Notification
10-10-2017 – Vendor Patch
11-10-2017 – Public Disclosure


Credit
This vulnerability was discovered by Dmitri Kaslov of Telspace Systems