ROOTCON 5 REGISTRATION IS CLOSED
We are pleased to announce the 5th ROOTCON Hacker / Security
Conference is now sold out. Our maximum capacity is 125 only. So we
got to make sure we have room for our guests.
Thank you to those who registered to join us! For those still wishing
to join as an exhibitor or as a sponsor, please email us at
info[at]rootcon[dot]org.
If you are unable to attend this year’s conference, we really hope to
see you at ROOTCON 2012 (September 2012) conference hosted by your
very own ROOTCON committee.
Stay up to date with next year’s event developments by signing up for
the following:
Twitter: @_rootcon_
Facebook: http://www.facebook.com/
Google Groups: http://groups.google.com/
Subscribe: rootcon@googlegroups.com
For any other inquiries, please contact us at info /at/ rootcon dot
org.
See you at the CON and let the hacking begin.
All The Best,
ROOTCON Crew
Meet the Need for Information Security Awareness

How can you protect your network and your business operations from the unexpected? The continuing reports of new exploits, insider attacks, website defacements, phishing, identity theft on credit cards and security breaches on banks amplify the need for in-depth understanding across all disciples of information security. Where can you find insights needed to combat these threats?
“ROOTCON: 5th Hacker Conference and Information Security Gathering”, the eagerly anticipated information security event will commence on September 9 – 10, 2011 at Parklane International Hotel, Cebu City. This is the best way to meet and discuss issues pertaining to security of your corporate network and personal computers. Expand your knowledge of topics including Evilution of Telephony, IPv6 Security: Foiling the Hackers, Man in the Middle Attack on SSL with BackDoored After Effect, PenTesting Web Applications, Quantifying Patch Management, Reversing Android Application, Spotting Web Vulnerability, Virtualization: A New Risk and Zeus The God of all Cyber Theft.
Expected participants are underground hackers, crackers, NBI, PNP, IT Managers, Security Analysts, SysAds, Network Engineers, academe, students and other corporate organizations.
Register now and grab the early bird discount until June 30, 2011. Corporate sponsors are welcome to participate. Email info@rootcon.org and visit the official site at www.rootcon.org.
Learn how you can identify your network’s true vulnerabilities; safeguard your data and private information. Plus join our live Q&A sessions, public hacking contests, where our IT experts are available to answer your toughest questions.
Lure Your Boss. Let Him Know That RootCon 5 is For YOU!
Our logistics personnel and public relations officer are giving out their efforts to bring ROOTCON near you.
This template has all the information you will need. Print this out and fill your information, or use it as a guideline for your approval letter.
Join us at ROOTCON 5 on September 9 – 10, 2011 in Cebu Parklane International Hotel, Cebu City and avail our early bird discount starting May 1 – June 30, 2011!
For more info about the registration click here.
See you at the CON!
Cyber Terrorism and Philippines’ Readiness For It

Osama Bin Laden is dead. However, terrorism is still alive and kicking. As older groups are defeated or exhausted, more radical and more violent successors often take their place. Terrorism continually reinvents itself in new and more dangerous forms – including cyber terrorism.
Cyber terrorism is defined as a terrorist act that disrupts information systems: the use of techniques that disrupt or damage computer-based information systems to cause fear, injury, or economic loss.
Check out the Track List
Rootcon 5 Gets Interesting: New Talks Submitted
New sets of talks went in our submission box. To add to our list:
1. MITM Attack on SSL with BackDoored After Effect
You think SSL is secure? This talk will demo out Man In The Middle Attack on SSL with BackDoored After Effect, on this talk the speaker will be using BackTrack 4 as a primary hacking tool to achieve the goal of the attack vector.
2. PenTesting Web Applications
Pentesters use different approaches in pentesting web applications, some rely heavily on automated scanners, others on checklists and a few more on combined automated and manual testing. This presentation will present an approach on how to conduct web application penetration tests that allows the tester to align the tests and results to the clients goals and expectations. This approach provides a more organized way when testing web applications
IPv6 Toolbox and Workshop
IPv4 is running out real fast, ROOTCON together with InfoWeapons we will be bringing an IPv6 Toolbox and Workshop during ROOTCON 5. The workshop will be available to all con-goers and will be having a slot on the tracks. Details on the IPv6 Toolbox and Workshop will be posted soon.
Our current state on IPv4
RIPE Regional registry IPv4 address exhaustion in… 274 Days, 12 Hours, 27 Minutes, 35 Seconds.
APNIC IPv4 RIR: All Gone! 15th April 2011 IANA Central IPv4 Registry: All Gone! 1st February 2011
Grab some seats now for ROOTCON 5 —- Register
ROOT Me If You Can (by InfoWeapons)
You think you can handle it? Well guess what..
“ROOT Me If You Can” Mechanics
Its pretty straight forward, there will be a SolidDNS during the CON, care of from our friends at InfoWeapons, all you do is put it down, gain root, hack it, exploit it.

Only exception, no physical cohersion on the machines. Thats it!!!
- 1st place would be for getting root on the box.
- 2nd place would be for being able to log in as box admin.
- 3rd place would involve getting it to return a bogus address for a nodename, when we have DNSSEC enabled.
- 4th place would involve getting it to return a bogus address for a nodename, on a domain without DNSSEC.
Prizes:
To Be Announced by InfoWeapons
Foiling the Hackers, Virtualization Risks and Other Talks
We managed to pull it, our second round of talks on the table.

1. Keynote from Lawrence Hughes : IPv6 Security Foiling the Hackers
IPv4 is running out in due time, the next generation Internet Protocol IPv6 is on its way, with this, we need to consider the security side of IPv6. Mr Hughes will be giving a Keynote about IPv6 security ups and downs, “IPv6 Security Foiling The Hackers”.
2. Virtualization : A New Risk
Virtualization may very well be one of those revolutionary paradigms that could fundamentally change the way we think about and approach computing.
Benefits:
1. Lower number of physical servers – helps reduce hardware maintenance costs because of a lower number of physical servers.
2. By implementing a server consolidation strategy – helps increase the space utilization efficiency in data center
3. By having each application within its own “virtual server” – helps prevent one application from impacting another application when upgrades or changes are made.
4. Develop a standard virtual server build that can be easily duplicated which will speed up server deployment.
5. Deploy multiple operating system technologies on a single hardware platform (i.e. Windows Server 2003, Linux, Windows 2000, etc). With the advent of virtualization, we might ask whether our current security investments are still valid. Will proven strategies continue to work? If they do, are they just as effective? What about all the tools we have invested in? Perhaps the best way to answer these questions is to consider the changes that virtualization will bring and how it impacts the core of your information technology.
3. Transforming and Improving the Philippine Election Model Through a Wiki Backbone
As the very basis of our countries democratic system of governance, Philippine elections is strangely flawed and broken. In an ideal election model, voters should choose candidates based on their background and qualifications.
The problem with Philippine elections is that usually, voters do not know really know all of their candidates. Often, they only know candidates who get media coverage: usually the ones at Presidential, Vice Presidential and Senatorial levels. When going to the ballots, people often end up with a piece of paper containing a lot of names that have no meaning to them. Many, if not most candidates are ususally voted solely on the basis of name recall or party affiliation and not on their individual merits. Voters are won by media campaigns and road sorties – whoever has the most money to throw, jingles being blasted by roving vehicles, candidate posters and tri-media advertising wins. In fact, one of the COMELEC’s basis for determining if someone who files for candidacy is a nuisance candidate is “capability to wage a national campagin” – essentially money.
One problem with this is that a lot of the corruption in government happens at the gubernatorial, mayoral, and congressional levels. What’s even worse is that this system completely invalidates the entire system as voters are presented with a false choice.
If a voter does not know what his options are, it is not true choice. It is akin to rolling the dice, or choosing candidates on the basis of randomly throwing darts or picking raffle entries from a tambiolo – it’s like being presented with a multiple choice question where the answers are written in a foreign language that the voter does not understand.
This essentially makes the eternal adages “Vote Wisely” and “Vote Responsibly” complete jokes: how can one vote wisely and responsibly if one does not even know what their choices and what they represent are? In short, it all hinges upon voters being able to make an informed choice when going to the ballots.
Check out the complete Tracklist.
Hack This Discount! ROOTCON 5 Registration is now Open.
Don’t miss the Early Bird Registration – Register Now!
Dear Colleague,
We’re still putting the finishing touches on our fantastic list of
tracks / topics, but be sure to save the date and register early to
take advantage of your Early Bird Discount from May 1 – June 30,
2011!
Group discount is also available for a group of 5 and secure the
lowest rate to the 2 days “ROOTCON: 5th Hacker Conference and
Information Security Gathering”.
The event is set on September 9 – 10, 2011 in Parklane International
Hotel, Cebu City. For more info and other inquiries, email
info@rootcon.org now. You may call or text us at 0917-439-0039 (HOT
LINE)
Let’s get serious about your SECURITY! Shall we?
[*] Early Registration Rates
Will be open from May 01, 2011 to June 30, 2011
Professional = Php2800.00 (inclusive of 12% VAT)
Student = Php2240.00 (inclusive of 12% VAT)
Professional Group of 5 = Php2576.00 – (inclusive of 12% VAT)
Students Group of 5 = Php2016.00 – (inclusive of 12% VAT)
[*] Regular Registration Rates
Will be open from July 01, 2011 to August 01, 2011
Professional = Php3920.00 – (inclusive of 12% VAT)
Student = Php3360.00 – (inclusive of 12% VAT)
Professional Group of 5 = Php3696.00 – (inclusive of 12% VAT)
Students Group of 5 = Php3136.00 – (inclusive of 12% VAT)
For more info on registration rates and inclusions:
http://www.rootcon.org/xml/rootcon5/registration
Subject: I LOVE YOU – Virus-inspired Movie Trailer and World Premiere
“You have to tell her how you feel!”
It’s Subject: I Love You. And this is one awesome trailer! I think I am watching this when it’s out. Would you?
It certainly looks professionally done, and has some not entirely unfamiliar actors (Briana Evigan plays the female lead, ex-Superman Dean Cain has a role, and True Blood’s Kristin Bauer also features).
Want more information about the movie? Here’s the promotional puff:
This action-packed romantic drama is based on the destructive ‘I Love You’ computer virus. This virus spread around the globe at the turn of the millennium, shutting down computer systems at the Pentagon, Parliament and the CIA. For Victor he will do anything to reconnect with the only woman he’s ever loved – even if that means entangling himself in an international criminal investigation. Never have the words “I love you” almost ruined the world.
It sounds like your usual story of “Boy meets girl. Loses girl. Writes computer virus to infect millions of computers around the world to tell girl he loves her. Gets girl.” Nothing out the ordinary there then..
Inspired by true events? Hmm.. well, not with the greatest precision. The real Love Bug wasn’t written to impress a girl, but instead attempted to steal internet passwords. One wonders also if the film’s producers will engage in any err.. viral marketing to promote it.
I don’t want to come across as too much of a fuddy-duddy, but let’s hope the movie doesn’t glorify too much the creation of malware. Even in the days of the Love Bug it was a problem which could have a serious impact on businesses and home users.
If you’re able to get to the movie premiere and see “Subject: I Love You” why not leave a comment with your review of the film?
Source:
http://nakedsecurity.sophos.com/2011/04/26/i-love-you-virus-inspired-movie-trailer-and-world-premiere/


