>From - Sat Mar 02 00:57:28 2024
Received: by 10.210.96.28 with SMTP id t28mr1320886ebb.28.1253122515189;
Wed, 16 Sep 2009 10:35:15 -0700 (PDT)
Received: by 10.210.96.28 with SMTP id t28mr1320885ebb.28.1253122515128;
Wed, 16 Sep 2009 10:35:15 -0700 (PDT)
Return-Path: <fernand..._at_kanguru.pt>
Received: from mailrly02.isp.novis.pt (mailrly02.isp.novis.pt [195.23.133.212])
by gmr-mx.google.com with ESMTP id 14si1790838ewy.5.2009.09.16.10.35.14;
Wed, 16 Sep 2009 10:35:15 -0700 (PDT)
Received-SPF: neutral (google.com: 195.23.133.212 is neither permitted nor denied by best guess record for domain of fernand..._at_kanguru.pt) client-ip=195.23.133.212;
Authentication-Results: gmr-mx.google.com; spf=neutral (google.com: 195.23.133.212 is neither permitted nor denied by best guess record for domain of fernand..._at_kanguru.pt) smtp.mail=fernand..._at_kanguru.pt
Received: (qmail 22941 invoked from network); 16 Sep 2009 17:35:10 -0000
Received: from unknown (HELO mailfrt05.isp.novis.pt) ([195.23.133.197])
(envelope-sender <fernand..._at_kanguru.pt>)
by mailrly02.isp.novis.pt with compressed SMTP; 16 Sep 2009 17:35:10 -0000
Received: (qmail 1189 invoked from network); 16 Sep 2009 17:35:09 -0000
Received: from unknown (HELO toshibal500) ([195.23.85.94])
(envelope-sender <fernand..._at_kanguru.pt>)
by mailfrt05.isp.novis.pt with SMTP; 16 Sep 2009 17:35:09 -0000
From: "Fernando Martins" <fernand..._at_kanguru.pt>
To: <tscm-..._at_googlegroups.com>
References: <003b01ca36f0$4e24b580$6501a8c0_at_oem>
In-Reply-To: <003b01ca36f0$4e24b580$6501a8c0_at_oem>
Subject: RE: [TSCM-L] {4246} US IT execs advised to weigh laptops & discard phones after China travel
Date: Wed, 16 Sep 2009 18:34:55 +0100
Message-ID: <!&!AAAAAAAAAAAYAAAAAAAAAFmZQow0OHxKrkvYoktTfirCgAAAEAAAAGBWm9C1SZBKpVGzPqjEIqUBAAAAAA==_at_kanguru.pt>
Mime-Version: 1.0
Content-Type: multipart/alternative;
boundary="----=_NextPart_000_0009_01CA36FC.6A6CE3A0"
X-Mailer: Microsoft Office Outlook 12.0
thread-index: Aco27+PLUs4zgx07Ti2Q1qF2+HL8sAAA4c8A
Content-Language: pt
Disposition-Notification-To: "Fernando Martins" <fernand..._at_kanguru.pt>
------=_NextPart_000_0009_01CA36FC.6A6CE3A0
Content-Type: text/plain
What about use, at least, the laptop as a honeypot to learn more about the
possible intruders?
It seems also that there is some FUD mixed, unless one can't guaranty the
physical security of his equipment.
FM
From: tscm-..._at_googlegroups.com [mailto:tscm-..._at_googlegroups.com] On
Behalf Of TSCM/SO Group
Sent: quarta-feira, 16 de Setembro de 2009 18:08
To: TSCM-..._at_googlegroups.com
Subject: [TSCM-L] {4246} US IT execs advised to weigh laptops & discard
phones after China travel
I have advised clients to bring throwaway laptops when travelling to
"certain" areas for the past 10 years
Throwaway meaning a craptop with bare applications only, where the laptop
wouldn't even return to the US
Exploitation of consumer devices is a business all to its own
Same protocol goes for smart phones and GSM devices
The same protocol should be followed for any electronic device in
questionable or area known for exploitive tactics
Bregman is a smart man...
Mitch Davis
TSCM/Special Operations Group
20 Music Square West,Suite 208
Nashville,TN 37203 USA
615 251 0441
Fax 615 523 0300
mit..._at_tscmusa.com
www.tscmusa.com
"maintaining a higher degree of excellence"
******************************
Tools for investigators at <
http://www.covertworx.com> www.covertworx.com
CONFIDENTIALITY NOTICE: This communication may contain privileged or other
confidential information, protected from disclosure under applicable law. If
you are not the intended recipient, or the employee or agent responsible for
delivering the message to the intended recipient, or if you believe that you
have received this communication in error, please do not print, copy,
retransmit, disseminate, or otherwise use the information contained herein.
Also, please indicate to TSCM Group via phone or fax that you have received
this e-mail in
error, and delete the copy you have received. Thank you.
------=_NextPart_000_0009_01CA36FC.6A6CE3A0
Content-Type: text/html
Content-Transfer-Encoding: quoted-printable
<html xmlns:v=3D"urn:schemas-microsoft-com:vml" xmlns:o=3D"urn:schemas-micr=
osoft-com:office:office" xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"
http://schemas.microsoft.com/office/2004/12/omml" xmlns=3D"http:=
//www.w3.org/TR/REC-html40">
<head>
<meta http-equiv=3DContent-Type content=3D"text/html; charset=3Dus-ascii">
<meta name=3DGenerator content=3D"Microsoft Word 12 (filtered medium)">
<style>
<!--
/* Font Definitions */
_at_font-face
=09{font-family:"Cambria Math";
=09panose-1:2 4 5 3 5 4 6 3 2 4;}
_at_font-face
=09{font-family:Calibri;
=09panose-1:2 15 5 2 2 2 4 3 2 4;}
_at_font-face
=09{font-family:Tahoma;
=09panose-1:2 11 6 4 3 5 4 4 2 4;}
_at_font-face
=09{font-family:ta;
=09panose-1:0 0 0 0 0 0 0 0 0 0;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
=09{margin:0cm;
=09margin-bottom:.0001pt;
=09font-size:12.0pt;
=09font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
=09{color:blue;
=09text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
=09{color:purple;
=09text-decoration:underline;}
p
=09{mso-margin-top-alt:auto;
=09margin-right:0cm;
=09mso-margin-bottom-alt:auto;
=09margin-left:0cm;
=09font-size:12.0pt;
=09font-family:"Times New Roman","serif";}
span.EmailStyle17
=09{mso-style-type:personal;
=09font-family:"Arial","sans-serif";
=09color:windowtext;}
span.EmailStyle19
=09{mso-style-type:personal-reply;
=09font-family:"Calibri","sans-serif";
=09color:#1F497D;}
.MsoChpDefault
=09{mso-style-type:export-only;
=09font-size:10.0pt;}
_at_page Section1
=09{size:612.0pt 792.0pt;
=09margin:72.0pt 90.0pt 72.0pt 90.0pt;}
div.Section1
=09{page:Section1;}
-->
</style>
<!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang=3DPT link=3Dblue vlink=3Dpurple>
<div class=3DSection1>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:11.0pt;font-fami=
ly:"Calibri","sans-serif";
color:#1F497D'>What about use, at least, the laptop as a honeypot to learn =
more
about the possible intruders?<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:11.0pt;font-fami=
ly:"Calibri","sans-serif";
color:#1F497D'>It seems also that there is some FUD mixed, unless one can&#=
8217;t
guaranty the physical security of his equipment.<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:11.0pt;font-fami=
ly:"Calibri","sans-serif";
color:#1F497D'>FM <o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:11.0pt;font-fami=
ly:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<div>
<div style=3D'border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0cm =
0cm 0cm'>
<p class=3DMsoNormal><b><span lang=3DEN-US style=3D'font-size:10.0pt;font-f=
amily:
"Tahoma","sans-serif"'>From:</span></b><span lang=3DEN-US style=3D'font-siz=
e:10.0pt;
font-family:"Tahoma","sans-serif"'> tscm-..._at_googlegroups.com
[mailto:tscm-..._at_googlegroups.com] <b>On Behalf Of </b>TSCM/SO Group<br>
<b>Sent:</b> quarta-feira, 16 de Setembro de 2009 18:08<br>
<b>To:</b> TSCM-..._at_googlegroups.com<br>
<b>Subject:</b> [TSCM-L] {4246} US IT execs advised to weigh laptops &
discard phones after China travel<o:p></o:p></span></p>
</div>
</div>
<p class=3DMsoNormal><o:p> </o:p></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'>I
have advised clients to bring throwaway laptops when travelling to
“certain” areas for the past 10 years<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'>Throwaway
meaning a craptop with bare applications only, where the laptop wouldn̵=
7;t
even return to the US<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'>Exploitation
of consumer devices is a business all to its own<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'>Same
protocol goes for smart phones and GSM devices<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'>The
same protocol should be followed for any electronic device in questionable =
or
area known for exploitive tactics<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'>Bregman
is a smart man………<o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"Arial","sans-serif"'><o:p> </o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-family:"Tahoma","sans=
-serif"'>Mitch
Davis<br>
TSCM/Special Operations Group<br>
20 Music Square West,Suite 208<br>
Nashville,TN 37203 USA<br>
615 251 0441<br>
Fax 615 523 0300<br>
mit..._at_tscmusa.com<br>
<a href=3D"
http://www.tscmusa.com">www.tscmusa.com</a></span><span lang=3DE=
N-US><o:p></o:p></span></p>
<p class=3DMsoNormal><i><span lang=3DEN-US style=3D'font-size:10.0pt;font-f=
amily:
"Tahoma","sans-serif"'>"</span></i><i><span lang=3DEN-US style=3D'font=
-size:
7.5pt;font-family:"Tahoma","sans-serif"'>maintaining a higher degree of
excellence"</span></i><i><span lang=3DEN-US style=3D'font-size:10.0pt;
font-family:"Tahoma","sans-serif"'><br>
</span></i><span lang=3DEN-US style=3D'font-family:"Tahoma","sans-serif"'>*=
*****************************<br>
Tools for investigators at </span><span lang=3DEN-US><a
href=3D"
http://www.covertworx.com"><span style=3D'font-family:"Tahoma","san=
s-serif"'>www.covertworx.com</span></a><o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US style=3D'font-size:10.0pt;font-fami=
ly:"ta","serif"'>CONFIDENTIALITY
NOTICE: This communication may contain privileged or other<br>
confidential information, protected from disclosure under applicable law. I=
f<br>
you are not the intended recipient, or the employee or agent responsible fo=
r<br>
delivering the message to the intended recipient, or if you believe that yo=
u<br>
have received this communication in error, please do not print, copy,<br>
retransmit, disseminate, or otherwise use the information contained herein.=
<br>
Also, please indicate to TSCM Group via phone or fax that you have received
this e-mail in<br>
error, and delete the copy you have received. Thank you.<br>
</span><span lang=3DEN-US style=3D'font-family:"Tahoma","sans-serif"'> =
;</span><span
lang=3DEN-US><o:p></o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US><o:p> </o:p></span></p>
<p class=3DMsoNormal><span lang=3DEN-US><br>
<p class=3DMsoNormal><o:p> </o:p></p>
</div>
</body>
</html>
------=_NextPart_000_0009_01CA36FC.6A6CE3A0--
Received on Sat Mar 02 2024 - 00:57:28 CST