Social Network Special Ops: Extending data visualization tools for faster Pwnage

BSidesLV 2010

Presented by: Chris Sumner (TheSuggmeister)
Date: Thursday July 29, 2010
Time: 11:00 - 12:00
Location: Track 2
Track: AFK

If you’re ever in a position when you need to pwn criminals via social networks or see where Tony Hawk likes to hide skateboards around the world, this talk is for you. The talk is delivered in two parts, both of which are intended to shine a fun light on visual social network analysis. The first part introduces how you can extend the powerful data visualization tool, Maltego to speed up and automate the data mining and analysis of social networks. I’ll show how I analyzed skateboard legend, Tony Hawk’s twitter hunt and highlight how you could use the same techniques to set up your very own backyard miniature ECHELON. I focus specifically on Twitter and Facebook, demonstrating how you can map and analyze social relationships using the Twitter API's, publicly available Facebook profiles, screen scraping and some clunky regex. The second part chronicles my adventures in using these techniques to enumerate a 419 scam, exposing deeper more sinister links to organized crime resulting in the scammers making an offer to payback some money.

Chris Sumner

Chris has been directly involved in Corporate Information Security since 1999 and has maintained a passion for security since seeing Wargames when it first came out. After a lengthy stint as a Pivot Chart creating, PowerPoint wielding, Security Manager for a business division that alone would make the Fortune100, he has turned his attention to a more geeky pursuit and is currently focused on Security in the Development Lifecycle. Outside the corporate world, Chris is a data mining, analysis and visualization geek at heart and also enjoys hiding skateboards in the UK for Tony Hawk.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats