<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ZuhaiBlog &#187; News</title>
	<atom:link href="http://zuhaiblog.com/tag/news/feed/" rel="self" type="application/rss+xml" />
	<link>http://zuhaiblog.com</link>
	<description>A blog about Zuhaib.. What you never heard of me?</description>
	<lastBuildDate>Mon, 02 Jan 2012 22:21:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>CNN and other mainstream media need to grow up</title>
		<link>http://zuhaiblog.com/2010/10/19/cnn-and-other-mainstream-media-need-to-grow-up/</link>
		<comments>http://zuhaiblog.com/2010/10/19/cnn-and-other-mainstream-media-need-to-grow-up/#comments</comments>
		<pubDate>Wed, 20 Oct 2010 06:03:20 +0000</pubDate>
		<dc:creator>zuhaib</dc:creator>
				<category><![CDATA[post]]></category>
		<category><![CDATA[CNN]]></category>
		<category><![CDATA[Fleet Week]]></category>
		<category><![CDATA[Media]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[San Francisco]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/2010/10/19/cnn-and-other-mainstream-media-need-to-grow-up/</guid>
		<description><![CDATA[So tonight on the IRC Chan #gear a fellow bay area guy asked me had I heard about the news surrounding fleet week. I thought it was the typical SF-Hippies hating Air Shows but it turned out no, it was CNN and other media freaking out about the United plane they had during the airshow [...]]]></description>
			<content:encoded><![CDATA[<p>So tonight on the IRC Chan #gear a fellow bay area guy asked me had I heard about the news surrounding fleet week.  I thought it was the typical SF-Hippies hating Air Shows but it turned out no, it was CNN and other media freaking out about the United plane they had during the airshow and that it looked like it was close to the Golden Gate Bridge.  You can see the video yourself at CNN: <a href="http://news.blogs.cnn.com/2010/10/19/nothing-wrong-with-jets-air-show-maneuver-faa-says/" rel="nofollow">http://news.blogs.cnn.com/2010/10/19/nothing-wrong-with-jets-air-show-maneuver-faa-says/</a><br />
The way they talk about it makes you think its a regular plane flying that low, its only in passing they mention its part of fleet week!  United actually has a open house during this week to show off its plane and they have in the past had planes do the same thing, but suddenly everyone is scared of planes so close.  Maybe they should not see the following photos I took at fleet week as well<br />
<a href="http://www.flickr.com/photos/zuhaib/5085321727/" title="IMG_0185 by Zuhaib, on Flickr"><img src="http://farm5.static.flickr.com/4131/5085321727_c85f3567d6_z.jpg" width="640" height="396" alt="IMG_0185" /></a><br />
<a href="http://www.flickr.com/photos/zuhaib/5085316149/" title="IMG_0175 by Zuhaib, on Flickr"><img src="http://farm5.static.flickr.com/4084/5085316149_c89a5e08f4_z.jpg" width="640" height="480" alt="IMG_0175" /></a></p><fb:like href='http://zuhaiblog.com/2010/10/19/cnn-and-other-mainstream-media-need-to-grow-up/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton7024" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2010%2F10%2F19%2Fcnn-and-other-mainstream-media-need-to-grow-up%2F&amp;via=zuhaib&amp;text=CNN%20and%20other%20mainstream%20media%20need%20to%20grow%20up&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2010%2F10%2F19%2Fcnn-and-other-mainstream-media-need-to-grow-up%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2010/10/19/cnn-and-other-mainstream-media-need-to-grow-up/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Phone Phreaker almost started WWIII? Part 2 of 2</title>
		<link>http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/</link>
		<comments>http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/#comments</comments>
		<pubDate>Sat, 13 Dec 2008 00:32:35 +0000</pubDate>
		<dc:creator>zuhaib</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Bombay]]></category>
		<category><![CDATA[Defense]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Hoax]]></category>
		<category><![CDATA[Indian]]></category>
		<category><![CDATA[Kevin Mitnick]]></category>
		<category><![CDATA[Mumbai]]></category>
		<category><![CDATA[NewTech]]></category>
		<category><![CDATA[Pakistan]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[Terrorist]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2</guid>
		<description><![CDATA[*This is part two, the final part, in a short series about the attack in Bombay/Mumbai Part one [here](http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2)* We looked at the story of the possibility that someone tried fooling the Pakistani president with a fake phone call tht almost started a hot war between Pakistan and Indian. In this post we explore some [...]]]></description>
			<content:encoded><![CDATA[<p>*This is part two, the final part, in a short series about the attack in Bombay/Mumbai Part one [here](http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2)*</p>
<p>We looked at the story of the possibility that someone tried fooling the Pakistani president with a fake phone call tht almost started a hot war between Pakistan and Indian.  In this post we explore some technical aspect of how a hoax could go down and fool some basic protection system.</p>
<p>Click Read More see the details</p>
<p><span id="more-87"></span><br />
**Possible hack**</p>
<p>Lets say someone wanted to fool a government in to believing a phone call is coming from somewhere else.  How can it be done?  Its easier then it seems.<br />
The Pakistan Goverment claims one of the ways they where able to verify the phone call was using CLI (caller&#8217;s line identification) which you might know by its more common name in the US, [Caller ID](http://en.wikipedia.org/wiki/Caller_ID).</p>
<p>>&#8221;It is not possible for any call to come through to the president without multiple caller identity verifications,&#8221; Information Minister Sherry Rehman said in a statement.</p>
<p>>&#8221;In fact the identity of this particular call, as evident from the CLI (caller&#8217;s line identification) device, showed that the call was placed from a verified official Phone Number of the Indian Ministry of External Affairs.&#8221;</p>
<p>Source: [Reuters via Yahoo UK](http://uk.news.yahoo.com/22/20081206/tpl-uk-india-mumbai-pakistan-sb-81f3b62.html)</p>
<p>Yet Caller ID is very easily hack and has been for a long time.  The first time I heard about this was almost 6 years ago by [Kevin Mitnick](http://en.wikipedia.org/wiki/Kevin_Mitnick) talking about using a PBX to fake caller ID and make his calls seem like he is calling from the White House, and he mentions this in his book *<a href="http://www.amazon.com/gp/product/076454280X?ie=UTF8&#038;tag=zuha-20&#038;linkCode=as2&#038;camp=1789&#038;creative=9325&#038;creativeASIN=076454280X">The Art of Deception: Controlling the Human Element of Security</a><img src="http://www.assoc-amazon.com/e/ir?t=zuha-20&#038;l=as2&#038;o=1&#038;a=076454280X" width="1" height="1" border="0" alt="" style="border:none !important; margin:0px !important;" />*.  Today its easier using VOIP and [Asterisk](http://www.asterisk.org/), an open source PBX.</p>
<p>This has not stopped others from putting trust in the very weak Caller ID system.  For the longest time your cell phone company might have been using caller ID as the ONLY thing protecting your voice mails.  For a while some phone providers would allow you to check your voice mail without any pin code as they would check if your caller ID was the one that belonged to your voice mail account.  Well if you could fake a caller ID, you could almost take control of anyones voice mail.  I have in the past written an post on a forum about this,[http://www.dslreports.com/forum/remark,14661279](http://www.dslreports.com/forum/remark,14661279).  You can read mover over at wiki page on [Caller ID spoofing](http://en.wikipedia.org/wiki/Caller_ID_spoofing)</p>
<p>While Pakistan government has claimed they have used other systems to verify the phone call, the repeating theme is they heavily relied on Caller ID and not on the other standards of verifying phone calls.  According again to the Reuters article the same caller may have tried to call Sec of State Rice of the United States and the call was rebuffed due to the fact it failed the required security checks.<br />
This indicated more then likely the Pakistani were negligent at lest in checking the phone call was authentic or not.  And this comes down to a more important aspect about any type of security, the human factor.  If rules and protocols where kept in place, maybe this story would not have happen.  If you read any of Mitnick&#8217;s books you would know the Humans tend to be the worst thing for security and sometimes all it takes is some [social engineering](http://en.wikipedia.org/wiki/Social_engineering_(security)) to convince a person in to believing what you want them to believe.  No Jedi mind tricks, just basic talking.</p>
<p>A good example of Social Engineering is an old &#8220;TheBroken&#8221; ep on how to trick a pizza joint in to giving you a free pizza<br />
<embed src="http://bitcast-a.bitgravity.com/revision3/swf/player/Player.swf" quality="high" pluginspage="http://www.macromedia.com/go/getflashplayer" play="true" loop="true" scale="showall" wmode="window" devicefont="false" bgcolor="#000000" name="Player" menu="true" allowfullscreen="true" allowscriptaccess="always" type="application/x-shockwave-flash" align="middle" height="312" width="555" flashvars="videoId=144&#038;quality=high" /></p>
<p>**Prevention**</p>
<p>Well this could get longer then it should be but I will try to keep it simple.  First is better diplomatic relationship between Pakistan and Indian would be a great step forward in cooling and preventing something like this happening.  On [NPR: Talk of the Nation from 12/11/2008](http://www.npr.org/templates/story/story.php?storyId=98138640), Richard Haass, president of the Council on Foreign Relations, described the Pakistan-Indian diplomatic ties as one of the most underdeveloped of two nations who are at odds with each other, more so then the USSR-USA during the Cold War.  A secure &#8220;hotline&#8221; be it a phone or some other forum of communications would be a great step.  Physical security is one that can provided the greatest amount of trust.</p>
<p>But their should be an open system for world leader to easily communicate with each other quickly and securely.  In the public security model we have [PKI](http://en.wikipedia.org/wiki/Public_key_infrastructure) as a way one can use to verify the true identify of someone.  But how would you apply this on a world model? Who would be the CA? The UN?<br />
Well thats for another post =P</p><fb:like href='http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton87" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F12%2Fphone-phreaker-almost-started-wwiii-part-2-of-2%2F&amp;via=zuhaib&amp;text=Phone%20Phreaker%20almost%20started%20WWIII%3F%20Part%202%20of%202&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F12%2Fphone-phreaker-almost-started-wwiii-part-2-of-2%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Phone Phreaker almost started WWIII? Part 1 of 2</title>
		<link>http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/</link>
		<comments>http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/#comments</comments>
		<pubDate>Sun, 07 Dec 2008 01:30:15 +0000</pubDate>
		<dc:creator>zuhaib</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Bombay]]></category>
		<category><![CDATA[Defense]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Indian]]></category>
		<category><![CDATA[Mumbai]]></category>
		<category><![CDATA[NewTech]]></category>
		<category><![CDATA[Pakistan]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Terrorist]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/2008/12/07/phone-phreaker-almost-started-wwiii</guid>
		<description><![CDATA[It what every world leader fears to hear, a phone call by a hostile nation warning you that soon you might be on the receiving end of an attack. You must act quick, get ready a defense, prepare for a counter attack and maybe be ready to pull the big guns and get ready the [...]]]></description>
			<content:encoded><![CDATA[<p>It what every world leader fears to hear, a phone call by a hostile nation warning you that soon you might be on the receiving end of an attack.  You must act quick, get ready a defense, prepare for a counter attack and maybe be ready to pull the big guns and get ready the WMDs.  But, what if that phone call never happen? What happen if it was a hoax? That is what happen (reported) between Pakistan and India just hours after the bombings in bombay.</p>
<p>Click Read More to read more of the story and how can it be done</p>
<p><span id="more-71"></span><br />
*The Story*</p>
<p>The TimesOnline UK [http://www.timesonline.co.uk/tol/news/world/asia/article5302549.ece](http://www.timesonline.co.uk/tol/news/world/asia/article5302549.ece) and AP via google [http://www.google.com/hostednews/ap/article/ALeqM5hz0C0SXcxgP0NxzlqGA_EI57FBkQD94TSPMG0](http://www.google.com/hostednews/ap/article/ALeqM5hz0C0SXcxgP0NxzlqGA_EI57FBkQD94TSPMG0) is reporting Pakistan received a phone call by a person claiming to be the India&#8217;s Foreign Minister stating that India is planing to take military action against Pakistan.</p>
<p>> &#8220;The hoax caller threatened to take military action against Pakistan in response to the then ongoing Mumbai attacks, which India has since blamed on the Pakistan-based militant group Lashkar-e-Taiba (LeT), they said.&#8221;</p>
<p>This set off a chain reaction by Pakistan president ordering the Air Force to go on &#8220;high alert&#8221;, which by some is interpreted as getting nuclear weapons ready.  This type of action could have easily had resulted in Indian misinterpreting pakistan movements can caused them to attack first or Pakistan trying a first strike in defense.  This plays out like a script out of a movie, where someone could influence the actions of two counties.</p>
<p>Pakistan claims that phone call did come from inside Indian and from the Indian Foreign office and that they did verify the authenticity of the phone call, while Indian claims stedfast that Pakistan was negligence in checking the phone call authenticity.</p>
<p>Looking over the finger pointing, how can the communication between two nuclear powers be in such a state of disarray that a confirmation needs to be done manually.</p>
<p>Without knowing what type of phone system/communication system is in place currently we see as early as 2004 the two countries try addressing the lack of communication by setting up a hot line</p>
<p>> &#8220;The two countries agreed as early as 2004 to establish a hotline between their foreign ministers in case of an accidental nuclear launch, but neither side could clarify today whether the link was up and running.&#8221;</p>
<p>So there is no confirmation if the hot line is up and running and we know in the past the lack of such system can cause much headache.  A good example was the cuban missile crises where both the US and USSR where reduced to communicating over radio.  This pushed the US and the USSR to setup a hotline which was not really a phone but a type system.</p>
<p>So how would someone fool a phone call? More to come in the next post&#8230;</p><fb:like href='http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton71" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F06%2Fphone-phreaker-almost-started-wwiii-part-1-of-2%2F&amp;via=zuhaib&amp;text=Phone%20Phreaker%20almost%20started%20WWIII%3F%20Part%201%20of%202&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F06%2Fphone-phreaker-almost-started-wwiii-part-1-of-2%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Local News STILL behind the times</title>
		<link>http://zuhaiblog.com/2008/11/13/local-news-still-behind-the-times/</link>
		<comments>http://zuhaiblog.com/2008/11/13/local-news-still-behind-the-times/#comments</comments>
		<pubDate>Thu, 13 Nov 2008 07:36:10 +0000</pubDate>
		<dc:creator>zuhaib</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[meta]]></category>
		<category><![CDATA[San Francisco]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/2008/11/13/local-news-still-behind-the-times</guid>
		<description><![CDATA[News rooms all over Americans have been sweeting bullets about how online blogging are going to kill them because of their fast reporting and today I can see why. Around 4:40pm today right in front of my office was a crazy scene you would see in a action move set. Tens of cops, uncovers, motorcycle [...]]]></description>
			<content:encoded><![CDATA[<p>News rooms all over Americans have been sweeting bullets about how online blogging are going to kill them because of their fast reporting and today I can see why.  Around 4:40pm today right in front of my office was a crazy scene you would see in a action move set.  Tens of cops, uncovers, motorcycle and etc on a high speed chase of who knows why.  What i caught was a man trying to car jack people as he tried to ran away from the cops which I have never seen in my whole life.<br />
So after all the rumors on the street, it was a murder, bank robbery, who knows.  But I thought I would wait till it hits the local news.  Well I turn on the 5:30 news.. Nothing.  6:00 news? Nothing as well.  Head over the [sfgate](http://www.sfgate.com) and nothing really local.  The only local news is about Bad Air and the tiger lawsuit.  Really? Is this local to me?  Your telling me a high speed chase is not local news?  I am sorry, but that is pretty important to me as I live here (ok i live a few blocks away, but my building is there).  I can see why sites like [sfist](http://www.sfist.com) are so popular with locals and the -ist sites are.  They are what locals really care about.  We all know San Francisco is a big city and maybe we do care about bigger issues but losing on reporting local news is pretty bad.<br />
I saw a camera man there, but, could not tell what channel he was from so he could have been a freelancer.  But this lack of reporting of crime is a bit scary because if I was not there I would never know about it.</p>
<p>Pictures of the even after the break</p>
<p><span id="more-69"></span><br />
<a href="http://flickr.com/photos/zuhaib/3026527198/" title="Police #1 (by Zuhaib)"><img src="http://zuhaiblog.com/wp-content/uploads/2008/11/3026527198_858c0ac978.jpg" title="Police #1 (by Zuhaib)" alt="Police #1 (by Zuhaib)" width="375" height="500" /></a></p>
<p><a href="http://flickr.com/photos/zuhaib/3025695239/" title="photo.jpg (by Zuhaib)"><img src="http://zuhaiblog.com/wp-content/uploads/2008/11/3025695239_4c3bc99875.jpg" title="photo.jpg (by Zuhaib)" alt="photo.jpg (by Zuhaib)" width="374" height="500" /></a></p>
<p><a href="http://flickr.com/photos/zuhaib/3025696467/" title="Photo #3 (by Zuhaib)"><img src="http://zuhaiblog.com/wp-content/uploads/2008/11/3025696467_004e8b945d.jpg" title="Photo #3 (by Zuhaib)" alt="Photo #3 (by Zuhaib)" width="500" height="375" /></a></p><fb:like href='http://zuhaiblog.com/2008/11/13/local-news-still-behind-the-times/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton69" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2008%2F11%2F13%2Flocal-news-still-behind-the-times%2F&amp;via=zuhaib&amp;text=Local%20News%20STILL%20behind%20the%20times&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2008%2F11%2F13%2Flocal-news-still-behind-the-times%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2008/11/13/local-news-still-behind-the-times/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

