Skip to content

SUMMER IS OVER, WE'RE NOT! post black hat, defcon, ccc camp, cryptoparty!

Photo of matt
Hosted By
matt
SUMMER IS OVER, WE'RE NOT! post black hat, defcon, ccc camp, cryptoparty!

Details

http://photos4.meetupstatic.com/photos/event/2/c/a/1/600_441131425.jpeg

a very special guest will be joining us, Stephen A Ridley (@s7ephan (http://twitter.com/@s7ephan)) of XIPITER SECURITY (http://www.xipiter.com) , security researcher, trainer, who has authored & cowritten many books , including ANDROID HACKERS HANDBOOK (http://www.wiley.com/WileyCDA/WileyTitle/productCd-111860864X.html) . will be joining us, more info and details coming soon. not only will we have a special guest , we will talk about some of the issues of the day. from the ashleymadison.com hack to the recent security conferences ( defcon (https://defcon.org)/ , blackhat (https://www.blackhat.com/) , ccc camp (https://events.ccc.de/camp/2015/wiki/Main_Page) , usenix woot (https://www.usenix.org/conference/woot15), etc. ) and hacks ( jeeps, guns, skateboaWrds, etc.). learn how to protect your anonymity and privacy online. welcome back to our co organizers who have been attending conferencing, & doing security training outside of the city.

more about Stephen: https://about.me/s7ephen

you are under surveillance right now! - data & goliath (https://www.schneier.com/books/data_and_goliath/Data_and_Goliath_Introduction.pdf)

"SUMMER'S OVER BUT WE'RE NOT: so much to talk about..."
presented by CRYPTOPARTY HARLEM

Tuesday August 25th,2015 · 5:45 PM*
@ Creative Workspace (inside Harlem Business Alliance)
275 Malcom X Blvd. (aka Lenox Avenue )
NY, NY 10027

  • we have a lot to cover so we will start promptly.

@cryptoharlem (http://www.twitter.com/@cryptoharlem) @cryptopartynyc @cryptoparty

OPEN TO ALL! NO PREVIOUS UNDERSTANDING OR KNOWLEDGE NEEDED &

THANKS FOR TAKING THE TIME TO READ THIS!

Save the date! Bring your questions & thoughts. This month we will do our best to cover some of the security issues and hacker news of the day. We also will have a special guest (who will talk about their work).

#harlemcryptoparty

# I AM A PRO & WANT TO SPEAK, PRESENT, HELP OUT

security pros interested in helping out? volunteering? contact:
geminiimatt[at}protonmail.com via secure email &/or otr
pgp signature: 381A B2F0 0378 2939 B00C 467F 0B87 70AA 0704 6231
pgp pubkey: http://pgp.mit.edu/pks/lookup?op=get&search=0x0B8770AA07046231
jabber otr: geminiimatt@jabber.chaotic.de

# WHAT'S A CRYPTOPARTY ## ## ## ##
Cryptoparty Harlem:

Sorry no chips, dip, awesome music or drinks. Just food for your mind. Ever wonder how to stay private, safe, & secure in today's digital age? What is a cryptoparty anyway? A CryptoParty is free, public and fun. People bring their computers, mobile devices, and a willingness to learn! In the time of the event people will learn and teach how to use basic cryptography tools. Cryptoparties (http://cryptoparty.in) are decentralized global events that are organized to answer questions and instruct people on technology & privacy. Cryptoparties are always free to attend, public, commercially and politically non-aligned and absolutely against sexual harassment and discrimination.

There are no dumb questions, you do not need to know anything about this subject, nor do you even need to bring a computer or phone. However that will help you get the most of it. For more information see the global cryptoparty website:

http://www.cryptoparty.in/

# WHERE ## ## ## ##

Creative Workspace @ HBA
@CreativeWrkspce
The #Harlem co-working space located at
275 Lenox Avenue (also known as Malcom X Blvd)
NY,NY
10027

"Power to the Creatives!"

  • always free $

closest train 2/3 to 125th Street Station

short wallk from A/B/C/D/ 125th Street Station

ok walk from 4/5/6 125th Street Station

# WHEN ## ## ## ##

Tuesday, August 25th, 2015 @ 5:45pm (-9pm)

# WHY ## ## ## ##

This Summer there has been a large media focus on all these hacks and the capabilities of foreign hackers. Often this media coverage is without the context of the "full story" that most of the hacks were proof of concepts for conference talks at things like blackhat, defcon, USENIX WOOT, etc.

We will look at these and have a security researcher available to talk about the work they do and their take on the summer and the blackhat conference. Also are co-organizers are coming back from defcon (@huertanix, @tommycollison) , ccc camp (@huertanix, @corcra), & working with black lives matter activist (@geminiimatt)

and of course we will be available to answer, discuss, teach, and learn about secure mobile use, secure browsing (using tor), secure email (using gpg), and secure chat (using otr).

# BUT WHY HARLEM?! ## ## ##

https://www.youtube.com/watch?v=EDq-OzMWQwg

A lot of people don't know that back in December of 2013 NYC lauched The Harlem WiFi network (http://harlemfreewifi.com/) rolled out by Sky-Packets ( http://www.sky-packets.com/muni-wifi/ ) it extends 95 city blocks, from 110th to 138th Streets between Frederick Douglass Boulevard and Madison Avenue making it at the time the largest continuous free outdoor public wireless network in the nation. The internet is literally all around us and free in Harlem! So what better place to learn about using it safely.

@geminiimatt has lived in harlem for over a decade and has seen it change for the good & bad. However one thing that has stayed the same is the high level of surveillance & scrutiny faced by residents. ONLINE: Please read Ben Popper's examination of the fallout from NYPD's Operation Crew Cut , "How the NYPD is using social media to put Harlem teens behind bars" (http://www.theverge.com/2014/12/10/7341077/nypd-harlem-crews-social-media-rikers-prison) , ON THE CORNER: Via official nypd cctv surveillance cameras & private owned cameras & FROM UP ABOVE: via SkyWatch tactical platform units and shotspotter (https://www.aclu.org/blog/free-future/shotspotter-ceo-answers-questions-gunshot-detectors-cities), gunshot detection devices.

WHO:

a random assortment of decentralized volunteers and organizers.

latest list of technologist/instructors at the workshop:

@cryptoharlem (https://www.twitter.com/cryptoharlem)

@geminiimatt (https://www.twitter.com/geminiimatt)

@huertanix (https://twitter.com/huertanix)

@corcra (https://twitter.com/corcra)

& guest

In association with

@Cryptoparty (https://www.twitter.com/cryptoparty)

@CryptoPartyNYC (https://www.twitter.com/cryptopartynyc)

*COST:

$0.00 <- cryptoparty pricing!* always free $

*ITINERARY:

  • 5:45pm - 6:00pm
    get settled in / network
  • 6:00pm - 6:15pm:

Current events and surveillance in the community & everyday risk we all face.

  • 7pm: Talk with @S7ephen of @XipiterSec

---------------------------------------------------

*6pm to 9pm (throughout the entire event)

question and answers.

secure email using gpg

secure browsing with tor

secure computing with TailsOS

mobile security: best apps for privacy

# EXTRA CREDIT ## ## ## ##
OR

# IF YOU CAN"T MAKE IT, YOU CAN CHECK THESE OUT ######

  1. bring an open mind

  2. follow us / our technologist on twitter!

  3. RSVP to this event (or just show up... SPACE WILL BE LIMITED! )

  4. Bring your laptop or mobile phone

  5. bring a 4GB or higher sized usb stick or media card so you can leave with TAILS ( https://tails.boum.org/) installed. [ the usb drive will be erased during this process>

  6. READ... THIS WELL WRITTEN "PLAIN ENGLISH" ARTICLE on secure communication. https://firstlook.org/theintercept/2015/07/14/communicating-secret-watched/

  7. FOLLOW... Check out these blogs & twitter accounts:

Matt Braga
@mattbraga (https://twitter.com/mattbraga)
http://tinyletter.com/dotdigest
.digest by matthew braga

Graham Cluley
@gcluley (https://twitter.com/gcluley)
https://grahamcluley.com

Shane Harris
@shaneharris (https://twitter.com/shaneharris)

Matthew Green
@matthew_d_green (https://twitter.com/matthew_d_green)

Brian Krebs
@briankrebs (https://twitter.com/briankrebs)
https://krebsonsecurity.com/

krebs on security by brian krebs @briankrebs

Bruce Schnier
@Bruce_Schneier (http://www.twitter.com/bruce_schneier)
https://www.schneier.com

/ schnier on security by bruce schnier

  1. VISIT... THESE SITES, EVEN IF YOU CAN"T MAKE IT.
  • EFF's recent secure messaging scorecard

https://www.eff.org/secure-messaging-scorecard

  • EFF's updated surveilance self defense

https://ssd.eff.org

  1. WATCH...
  • short videos +

"How important is data privacy to you?"

what your apps know about you (and shares with others).

#PrivacyProject by Silent Circle

https://www.youtube.com/watch?v=ZcjtEKNP05c

The Databrokers feature on 60 Minutes Spring of 2014 (14:50 minutes)

https://www.youtube.com/watch?v=_Cty7ctycsI

FTC Chair Edith Ramirez on data brokers & the internet of things.

http://arstechnica.com/tech-policy/2015/01/one-on-one-with-ftc-chairwoman-edith-ramirez-about-the-internet-of-things/

  • what is cybersecurity? (in 8 minutes and 52 seconds).

10 facts, at least 1 of which might be new to you.

  • longer movies +

https://www.youtube.com/watch?v=0p3787JiFgQ

  • THIS FIRST ONE IS A MUST WATCH! *

  • Untied States of Secrets: Part 1 on PBS Frontline
    (1:54:11 hours)

http://video.pbs.org/video/2365245528/ <- free here
$2 to view below

https://www.youtube.com/watch?v=2lD6ZMfhylA

  • follow up to that movie (53:41 hours)

Untied States of Secrets: Part 2 on PBS Frontline

http://video.pbs.org/video/2365251169/ <- free here
$2 to watch below

https://www.youtube.com/watch?v=4P9E97YbbKY

  • Retroreport on COINTELPRO & the break in that changed history.

https://www.youtube.com/watch?v=KQk5cUMhI8k

  • deeper info & more technical videos below +

====================================

Mobile Security for Freelancers: Rory Peck Trust & The Guardian Project
1 hour 26 minute conversation, 49 minute conversation, & ...

https://www.youtube.com/watch?v=KekYW8DhDkU

https://www.youtube.com/watch?v=gNsTcj-ejeY

https://www.youtube.com/watch?v=BJy7kYiM-4Q

  • Bruce Schneier "Data and Goliath"

https://www.youtube.com/watch?v=GhWJTWUvc7E

https://www.youtube.com/watch?v=wQJC2MMB8nA

transcript http://dotsub.com/view/c722667e-7338-4b17-896b-4714e01129b1/viewTranscript/eng

  • James Lyne: Cryptography and the power of randomness (05:21 min)

https://www.youtube.com/watch?v=SAAflrIp__E

  • Del Harvey: Strangeness of scale at Twitter.com (9:19 min)

https://www.youtube.com/watch?v=mAvSoNUgMno

  • re:publica 2014 - Morgan Marquis-Boire: Fear and Loathing on the Internet (58:19 min)

https://www.youtube.com/watch?v=bOK_KAXbTe8

  • Chris Domas: The 1s and 0s behind cyberwarfare (16:45 min)

https://www.youtube.com/watch?v=cWpRxyqDgpM

  • Mikko Hypponen: The Internet is on Fire (19:16)

https://www.youtube.com/watch?v=QKe-aO44R7k

# LOVE MATH? LOVE ACCENTS? LOVE SILLY SOUND EFFECTS?

This video explains how cryptography really works.

https://www.youtube.com/watch?v=56fa8Jz-FQQ

  • quick walk through of TAILS live distribution

https://www.youtube.com/watch?v=3vcoEZQfSMw

  • how TOR browser works

https://youtu.be/JWII85UlzKw

  • What are Hardware tokens? like yubico's yubikey (u2f fido)

https://vimeo.com/96179893

https://vimeo.com/109486153

TWO FACTOR AUTHENTICATION:
https://twofactorauth.org/
the above link takes you to a list of sites that use 2-step verification. 2-step verification uses your name, password, but then another unknown to piece of info to log in. It can be provided by a hardware token, a texted code or via apps like Google Authenticator, Authy, etc. you can also use the site to help by requesting groups start using 2-step verification.

If you use facebook here is link to the event there (please like our page):
https://www.facebook.com/cryptoharlem/

Photo of New York CryptoParty Network group
New York CryptoParty Network
See more events
Creative Workspace
275 Lenox Avenue · New York, NY