<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ZuhaiBlog &#187; Terrorist</title>
	<atom:link href="http://zuhaiblog.com/tag/terrorist/feed/" rel="self" type="application/rss+xml" />
	<link>http://zuhaiblog.com</link>
	<description>A blog about Zuhaib.. What you never heard of me?</description>
	<lastBuildDate>Mon, 02 Jan 2012 22:21:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Osama Bin Laden&#8217;s SUV</title>
		<link>http://zuhaiblog.com/2009/07/07/osama-bin-ladens-suv/</link>
		<comments>http://zuhaiblog.com/2009/07/07/osama-bin-ladens-suv/#comments</comments>
		<pubDate>Tue, 07 Jul 2009 20:56:37 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Political]]></category>
		<category><![CDATA[car]]></category>
		<category><![CDATA[final gear]]></category>
		<category><![CDATA[Osama]]></category>
		<category><![CDATA[SUV]]></category>
		<category><![CDATA[Terrorist]]></category>
		<category><![CDATA[top gear]]></category>
		<category><![CDATA[Toyota]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/?p=112</guid>
		<description><![CDATA[If you are one of the worlds #1 terrorist what vehicle would you chose to roll in..]]></description>
			<content:encoded><![CDATA[<p>Well according to<a href="http://www.flightglobal.com/blogs/the-dewline/2009/07/osama-bin-ladens-sun-roof.html"> The DEW Line</a> before the heat started to get on him it was an SUV of some kind with an sun roof</p>
<blockquote><p>
&#8220;[Osama] Bin Laden, before he got smart, he had the only white SUV that had a sun roof in Afghanistan &#8230; but he figured that out pretty fast,&#8221; Schulte said.</p></blockquote>
<p>Does not give away too much but I going to guess it was a Toyota Land Cruiser.  You might ask why, well when I visited the area in 2003 the hot new thing in the area for the rich was Land Cruisers, so much so that many held it in higher regard then a Merc or BMW.  This is not too odd as Toyota trucks have been popular with terrorist/3rd world nations for a long time as they are nearly indestructible as proved by Top Gear.</p>
<p><p><a href="http://zuhaiblog.com/2009/07/07/osama-bin-ladens-suv/"><em>Click here to view the embedded video.</em></a></p><br />
and<br />
<p><a href="http://zuhaiblog.com/2009/07/07/osama-bin-ladens-suv/"><em>Click here to view the embedded video.</em></a></p></p>
<p>makes you wonder if we should just not track every Toyota imported to the region</p><fb:like href='http://zuhaiblog.com/2009/07/07/osama-bin-ladens-suv/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton112" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2009%2F07%2F07%2Fosama-bin-ladens-suv%2F&amp;via=zuhaib&amp;text=Osama%20Bin%20Laden%26%238217%3Bs%20SUV&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2009%2F07%2F07%2Fosama-bin-ladens-suv%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2009/07/07/osama-bin-ladens-suv/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Phone Phreaker almost started WWIII? Part 2 of 2</title>
		<link>http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/</link>
		<comments>http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/#comments</comments>
		<pubDate>Sat, 13 Dec 2008 00:32:35 +0000</pubDate>
		<dc:creator>zuhaib</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Bombay]]></category>
		<category><![CDATA[Defense]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Hoax]]></category>
		<category><![CDATA[Indian]]></category>
		<category><![CDATA[Kevin Mitnick]]></category>
		<category><![CDATA[Mumbai]]></category>
		<category><![CDATA[NewTech]]></category>
		<category><![CDATA[Pakistan]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[Terrorist]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2</guid>
		<description><![CDATA[*This is part two, the final part, in a short series about the attack in Bombay/Mumbai Part one [here](http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2)* We looked at the story of the possibility that someone tried fooling the Pakistani president with a fake phone call tht almost started a hot war between Pakistan and Indian. In this post we explore some [...]]]></description>
			<content:encoded><![CDATA[<p>*This is part two, the final part, in a short series about the attack in Bombay/Mumbai Part one [here](http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2)*</p>
<p>We looked at the story of the possibility that someone tried fooling the Pakistani president with a fake phone call tht almost started a hot war between Pakistan and Indian.  In this post we explore some technical aspect of how a hoax could go down and fool some basic protection system.</p>
<p>Click Read More see the details</p>
<p><span id="more-87"></span><br />
**Possible hack**</p>
<p>Lets say someone wanted to fool a government in to believing a phone call is coming from somewhere else.  How can it be done?  Its easier then it seems.<br />
The Pakistan Goverment claims one of the ways they where able to verify the phone call was using CLI (caller&#8217;s line identification) which you might know by its more common name in the US, [Caller ID](http://en.wikipedia.org/wiki/Caller_ID).</p>
<p>>&#8221;It is not possible for any call to come through to the president without multiple caller identity verifications,&#8221; Information Minister Sherry Rehman said in a statement.</p>
<p>>&#8221;In fact the identity of this particular call, as evident from the CLI (caller&#8217;s line identification) device, showed that the call was placed from a verified official Phone Number of the Indian Ministry of External Affairs.&#8221;</p>
<p>Source: [Reuters via Yahoo UK](http://uk.news.yahoo.com/22/20081206/tpl-uk-india-mumbai-pakistan-sb-81f3b62.html)</p>
<p>Yet Caller ID is very easily hack and has been for a long time.  The first time I heard about this was almost 6 years ago by [Kevin Mitnick](http://en.wikipedia.org/wiki/Kevin_Mitnick) talking about using a PBX to fake caller ID and make his calls seem like he is calling from the White House, and he mentions this in his book *<a href="http://www.amazon.com/gp/product/076454280X?ie=UTF8&#038;tag=zuha-20&#038;linkCode=as2&#038;camp=1789&#038;creative=9325&#038;creativeASIN=076454280X">The Art of Deception: Controlling the Human Element of Security</a><img src="http://www.assoc-amazon.com/e/ir?t=zuha-20&#038;l=as2&#038;o=1&#038;a=076454280X" width="1" height="1" border="0" alt="" style="border:none !important; margin:0px !important;" />*.  Today its easier using VOIP and [Asterisk](http://www.asterisk.org/), an open source PBX.</p>
<p>This has not stopped others from putting trust in the very weak Caller ID system.  For the longest time your cell phone company might have been using caller ID as the ONLY thing protecting your voice mails.  For a while some phone providers would allow you to check your voice mail without any pin code as they would check if your caller ID was the one that belonged to your voice mail account.  Well if you could fake a caller ID, you could almost take control of anyones voice mail.  I have in the past written an post on a forum about this,[http://www.dslreports.com/forum/remark,14661279](http://www.dslreports.com/forum/remark,14661279).  You can read mover over at wiki page on [Caller ID spoofing](http://en.wikipedia.org/wiki/Caller_ID_spoofing)</p>
<p>While Pakistan government has claimed they have used other systems to verify the phone call, the repeating theme is they heavily relied on Caller ID and not on the other standards of verifying phone calls.  According again to the Reuters article the same caller may have tried to call Sec of State Rice of the United States and the call was rebuffed due to the fact it failed the required security checks.<br />
This indicated more then likely the Pakistani were negligent at lest in checking the phone call was authentic or not.  And this comes down to a more important aspect about any type of security, the human factor.  If rules and protocols where kept in place, maybe this story would not have happen.  If you read any of Mitnick&#8217;s books you would know the Humans tend to be the worst thing for security and sometimes all it takes is some [social engineering](http://en.wikipedia.org/wiki/Social_engineering_(security)) to convince a person in to believing what you want them to believe.  No Jedi mind tricks, just basic talking.</p>
<p>A good example of Social Engineering is an old &#8220;TheBroken&#8221; ep on how to trick a pizza joint in to giving you a free pizza<br />
<embed src="http://bitcast-a.bitgravity.com/revision3/swf/player/Player.swf" quality="high" pluginspage="http://www.macromedia.com/go/getflashplayer" play="true" loop="true" scale="showall" wmode="window" devicefont="false" bgcolor="#000000" name="Player" menu="true" allowfullscreen="true" allowscriptaccess="always" type="application/x-shockwave-flash" align="middle" height="312" width="555" flashvars="videoId=144&#038;quality=high" /></p>
<p>**Prevention**</p>
<p>Well this could get longer then it should be but I will try to keep it simple.  First is better diplomatic relationship between Pakistan and Indian would be a great step forward in cooling and preventing something like this happening.  On [NPR: Talk of the Nation from 12/11/2008](http://www.npr.org/templates/story/story.php?storyId=98138640), Richard Haass, president of the Council on Foreign Relations, described the Pakistan-Indian diplomatic ties as one of the most underdeveloped of two nations who are at odds with each other, more so then the USSR-USA during the Cold War.  A secure &#8220;hotline&#8221; be it a phone or some other forum of communications would be a great step.  Physical security is one that can provided the greatest amount of trust.</p>
<p>But their should be an open system for world leader to easily communicate with each other quickly and securely.  In the public security model we have [PKI](http://en.wikipedia.org/wiki/Public_key_infrastructure) as a way one can use to verify the true identify of someone.  But how would you apply this on a world model? Who would be the CA? The UN?<br />
Well thats for another post =P</p><fb:like href='http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton87" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F12%2Fphone-phreaker-almost-started-wwiii-part-2-of-2%2F&amp;via=zuhaib&amp;text=Phone%20Phreaker%20almost%20started%20WWIII%3F%20Part%202%20of%202&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F12%2Fphone-phreaker-almost-started-wwiii-part-2-of-2%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2008/12/12/phone-phreaker-almost-started-wwiii-part-2-of-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Phone Phreaker almost started WWIII? Part 1 of 2</title>
		<link>http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/</link>
		<comments>http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/#comments</comments>
		<pubDate>Sun, 07 Dec 2008 01:30:15 +0000</pubDate>
		<dc:creator>zuhaib</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Bombay]]></category>
		<category><![CDATA[Defense]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Indian]]></category>
		<category><![CDATA[Mumbai]]></category>
		<category><![CDATA[NewTech]]></category>
		<category><![CDATA[Pakistan]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Terrorist]]></category>

		<guid isPermaLink="false">http://zuhaiblog.com/2008/12/07/phone-phreaker-almost-started-wwiii</guid>
		<description><![CDATA[It what every world leader fears to hear, a phone call by a hostile nation warning you that soon you might be on the receiving end of an attack. You must act quick, get ready a defense, prepare for a counter attack and maybe be ready to pull the big guns and get ready the [...]]]></description>
			<content:encoded><![CDATA[<p>It what every world leader fears to hear, a phone call by a hostile nation warning you that soon you might be on the receiving end of an attack.  You must act quick, get ready a defense, prepare for a counter attack and maybe be ready to pull the big guns and get ready the WMDs.  But, what if that phone call never happen? What happen if it was a hoax? That is what happen (reported) between Pakistan and India just hours after the bombings in bombay.</p>
<p>Click Read More to read more of the story and how can it be done</p>
<p><span id="more-71"></span><br />
*The Story*</p>
<p>The TimesOnline UK [http://www.timesonline.co.uk/tol/news/world/asia/article5302549.ece](http://www.timesonline.co.uk/tol/news/world/asia/article5302549.ece) and AP via google [http://www.google.com/hostednews/ap/article/ALeqM5hz0C0SXcxgP0NxzlqGA_EI57FBkQD94TSPMG0](http://www.google.com/hostednews/ap/article/ALeqM5hz0C0SXcxgP0NxzlqGA_EI57FBkQD94TSPMG0) is reporting Pakistan received a phone call by a person claiming to be the India&#8217;s Foreign Minister stating that India is planing to take military action against Pakistan.</p>
<p>> &#8220;The hoax caller threatened to take military action against Pakistan in response to the then ongoing Mumbai attacks, which India has since blamed on the Pakistan-based militant group Lashkar-e-Taiba (LeT), they said.&#8221;</p>
<p>This set off a chain reaction by Pakistan president ordering the Air Force to go on &#8220;high alert&#8221;, which by some is interpreted as getting nuclear weapons ready.  This type of action could have easily had resulted in Indian misinterpreting pakistan movements can caused them to attack first or Pakistan trying a first strike in defense.  This plays out like a script out of a movie, where someone could influence the actions of two counties.</p>
<p>Pakistan claims that phone call did come from inside Indian and from the Indian Foreign office and that they did verify the authenticity of the phone call, while Indian claims stedfast that Pakistan was negligence in checking the phone call authenticity.</p>
<p>Looking over the finger pointing, how can the communication between two nuclear powers be in such a state of disarray that a confirmation needs to be done manually.</p>
<p>Without knowing what type of phone system/communication system is in place currently we see as early as 2004 the two countries try addressing the lack of communication by setting up a hot line</p>
<p>> &#8220;The two countries agreed as early as 2004 to establish a hotline between their foreign ministers in case of an accidental nuclear launch, but neither side could clarify today whether the link was up and running.&#8221;</p>
<p>So there is no confirmation if the hot line is up and running and we know in the past the lack of such system can cause much headache.  A good example was the cuban missile crises where both the US and USSR where reduced to communicating over radio.  This pushed the US and the USSR to setup a hotline which was not really a phone but a type system.</p>
<p>So how would someone fool a phone call? More to come in the next post&#8230;</p><fb:like href='http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/' send='false' layout='button_count' show_faces='true' width='450' height='65' action='like' colorscheme='light' font='lucida+grande'></fb:like><div id="tweetbutton71" class="tw_button" style="float:left;margin-right:10px;"><a href="http://twitter.com/share?url=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F06%2Fphone-phreaker-almost-started-wwiii-part-1-of-2%2F&amp;via=zuhaib&amp;text=Phone%20Phreaker%20almost%20started%20WWIII%3F%20Part%201%20of%202&amp;related=zuhaib&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fzuhaiblog.com%2F2008%2F12%2F06%2Fphone-phreaker-almost-started-wwiii-part-1-of-2%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://zuhaiblog.com/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;">Tweet</a></div>]]></content:encoded>
			<wfw:commentRss>http://zuhaiblog.com/2008/12/06/phone-phreaker-almost-started-wwiii-part-1-of-2/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

