SUMMER IS OVER, WE'RE NOT! post black hat, defcon, ccc camp, cryptoparty!


Details
http://photos4.meetupstatic.com/photos/event/2/c/a/1/600_441131425.jpeg
a very special guest will be joining us, Stephen A Ridley (@s7ephan (http://twitter.com/@s7ephan)) of XIPITER SECURITY (http://www.xipiter.com) , security researcher, trainer, who has authored & cowritten many books , including ANDROID HACKERS HANDBOOK (http://www.wiley.com/WileyCDA/WileyTitle/productCd-111860864X.html) . will be joining us, more info and details coming soon. not only will we have a special guest , we will talk about some of the issues of the day. from the ashleymadison.com hack to the recent security conferences ( defcon (https://defcon.org)/ , blackhat (https://www.blackhat.com/) , ccc camp (https://events.ccc.de/camp/2015/wiki/Main_Page) , usenix woot (https://www.usenix.org/conference/woot15), etc. ) and hacks ( jeeps, guns, skateboaWrds, etc.). learn how to protect your anonymity and privacy online. welcome back to our co organizers who have been attending conferencing, & doing security training outside of the city.
more about Stephen: https://about.me/s7ephen
you are under surveillance right now! - data & goliath (https://www.schneier.com/books/data_and_goliath/Data_and_Goliath_Introduction.pdf)
"SUMMER'S OVER BUT WE'RE NOT: so much to talk about..."
presented by CRYPTOPARTY HARLEM
Tuesday August 25th,2015 · 5:45 PM*
@ Creative Workspace (inside Harlem Business Alliance)
275 Malcom X Blvd. (aka Lenox Avenue )
NY, NY 10027
- we have a lot to cover so we will start promptly.
@cryptoharlem (http://www.twitter.com/@cryptoharlem) @cryptopartynyc @cryptoparty
OPEN TO ALL! NO PREVIOUS UNDERSTANDING OR KNOWLEDGE NEEDED &
THANKS FOR TAKING THE TIME TO READ THIS!
Save the date! Bring your questions & thoughts. This month we will do our best to cover some of the security issues and hacker news of the day. We also will have a special guest (who will talk about their work).
#harlemcryptoparty
# I AM A PRO & WANT TO SPEAK, PRESENT, HELP OUT
security pros interested in helping out? volunteering? contact:
geminiimatt[at}protonmail.com via secure email &/or otr
pgp signature: 381A B2F0 0378 2939 B00C 467F 0B87 70AA 0704 6231
pgp pubkey: http://pgp.mit.edu/pks/lookup?op=get&search=0x0B8770AA07046231
jabber otr: geminiimatt@jabber.chaotic.de
# WHAT'S A CRYPTOPARTY ## ## ## ##
Cryptoparty Harlem:
Sorry no chips, dip, awesome music or drinks. Just food for your mind. Ever wonder how to stay private, safe, & secure in today's digital age? What is a cryptoparty anyway? A CryptoParty is free, public and fun. People bring their computers, mobile devices, and a willingness to learn! In the time of the event people will learn and teach how to use basic cryptography tools. Cryptoparties (http://cryptoparty.in) are decentralized global events that are organized to answer questions and instruct people on technology & privacy. Cryptoparties are always free to attend, public, commercially and politically non-aligned and absolutely against sexual harassment and discrimination.
There are no dumb questions, you do not need to know anything about this subject, nor do you even need to bring a computer or phone. However that will help you get the most of it. For more information see the global cryptoparty website:
# WHERE ## ## ## ##
Creative Workspace @ HBA
@CreativeWrkspce
The #Harlem co-working space located at
275 Lenox Avenue (also known as Malcom X Blvd)
NY,NY
10027
"Power to the Creatives!"
- always free $
closest train 2/3 to 125th Street Station
short wallk from A/B/C/D/ 125th Street Station
ok walk from 4/5/6 125th Street Station
# WHEN ## ## ## ##
Tuesday, August 25th, 2015 @ 5:45pm (-9pm)
# WHY ## ## ## ##
This Summer there has been a large media focus on all these hacks and the capabilities of foreign hackers. Often this media coverage is without the context of the "full story" that most of the hacks were proof of concepts for conference talks at things like blackhat, defcon, USENIX WOOT, etc.
We will look at these and have a security researcher available to talk about the work they do and their take on the summer and the blackhat conference. Also are co-organizers are coming back from defcon (@huertanix, @tommycollison) , ccc camp (@huertanix, @corcra), & working with black lives matter activist (@geminiimatt)
and of course we will be available to answer, discuss, teach, and learn about secure mobile use, secure browsing (using tor), secure email (using gpg), and secure chat (using otr).
# BUT WHY HARLEM?! ## ## ##
https://www.youtube.com/watch?v=EDq-OzMWQwg
A lot of people don't know that back in December of 2013 NYC lauched The Harlem WiFi network (http://harlemfreewifi.com/) rolled out by Sky-Packets ( http://www.sky-packets.com/muni-wifi/ ) it extends 95 city blocks, from 110th to 138th Streets between Frederick Douglass Boulevard and Madison Avenue making it at the time the largest continuous free outdoor public wireless network in the nation. The internet is literally all around us and free in Harlem! So what better place to learn about using it safely.
@geminiimatt has lived in harlem for over a decade and has seen it change for the good & bad. However one thing that has stayed the same is the high level of surveillance & scrutiny faced by residents. ONLINE: Please read Ben Popper's examination of the fallout from NYPD's Operation Crew Cut , "How the NYPD is using social media to put Harlem teens behind bars" (http://www.theverge.com/2014/12/10/7341077/nypd-harlem-crews-social-media-rikers-prison) , ON THE CORNER: Via official nypd cctv surveillance cameras & private owned cameras & FROM UP ABOVE: via SkyWatch tactical platform units and shotspotter (https://www.aclu.org/blog/free-future/shotspotter-ceo-answers-questions-gunshot-detectors-cities), gunshot detection devices.
WHO:
a random assortment of decentralized volunteers and organizers.
latest list of technologist/instructors at the workshop:
@cryptoharlem (https://www.twitter.com/cryptoharlem)
@geminiimatt (https://www.twitter.com/geminiimatt)
@huertanix (https://twitter.com/huertanix)
@corcra (https://twitter.com/corcra)
& guest
In association with
@Cryptoparty (https://www.twitter.com/cryptoparty)
@CryptoPartyNYC (https://www.twitter.com/cryptopartynyc)
*COST:
$0.00 <- cryptoparty pricing!* always free $
*ITINERARY:
- 5:45pm - 6:00pm
get settled in / network
- 6:00pm - 6:15pm:
Current events and surveillance in the community & everyday risk we all face.
- 7pm: Talk with @S7ephen of @XipiterSec
---------------------------------------------------
*6pm to 9pm (throughout the entire event)
question and answers.
secure email using gpg
secure browsing with tor
secure computing with TailsOS
mobile security: best apps for privacy
# EXTRA CREDIT ## ## ## ##
OR
# IF YOU CAN"T MAKE IT, YOU CAN CHECK THESE OUT ######
-
bring an open mind
-
follow us / our technologist on twitter!
-
RSVP to this event (or just show up... SPACE WILL BE LIMITED! )
-
Bring your laptop or mobile phone
-
bring a 4GB or higher sized usb stick or media card so you can leave with TAILS ( https://tails.boum.org/) installed. [ the usb drive will be erased during this process>
-
READ... THIS WELL WRITTEN "PLAIN ENGLISH" ARTICLE on secure communication. https://firstlook.org/theintercept/2015/07/14/communicating-secret-watched/
-
FOLLOW... Check out these blogs & twitter accounts:
Matt Braga
@mattbraga (https://twitter.com/mattbraga)
http://tinyletter.com/dotdigest
.digest by matthew braga
Graham Cluley
@gcluley (https://twitter.com/gcluley)
https://grahamcluley.com
Shane Harris
@shaneharris (https://twitter.com/shaneharris)
Matthew Green
@matthew_d_green (https://twitter.com/matthew_d_green)
Brian Krebs
@briankrebs (https://twitter.com/briankrebs)
https://krebsonsecurity.com/
krebs on security by brian krebs @briankrebs
Bruce Schnier
@Bruce_Schneier (http://www.twitter.com/bruce_schneier)
https://www.schneier.com
/ schnier on security by bruce schnier
- VISIT... THESE SITES, EVEN IF YOU CAN"T MAKE IT.
- EFF's recent secure messaging scorecard
https://www.eff.org/secure-messaging-scorecard
- EFF's updated surveilance self defense
- WATCH...
- short videos +
"How important is data privacy to you?"
what your apps know about you (and shares with others).
#PrivacyProject by Silent Circle
https://www.youtube.com/watch?v=ZcjtEKNP05c
The Databrokers feature on 60 Minutes Spring of 2014 (14:50 minutes)
https://www.youtube.com/watch?v=_Cty7ctycsI
FTC Chair Edith Ramirez on data brokers & the internet of things.
- what is cybersecurity? (in 8 minutes and 52 seconds).
10 facts, at least 1 of which might be new to you.
- longer movies +
https://www.youtube.com/watch?v=0p3787JiFgQ
-
THIS FIRST ONE IS A MUST WATCH! *
-
Untied States of Secrets: Part 1 on PBS Frontline
(1:54:11 hours)
http://video.pbs.org/video/2365245528/ <- free here
$2 to view below
https://www.youtube.com/watch?v=2lD6ZMfhylA
- follow up to that movie (53:41 hours)
Untied States of Secrets: Part 2 on PBS Frontline
http://video.pbs.org/video/2365251169/ <- free here
$2 to watch below
https://www.youtube.com/watch?v=4P9E97YbbKY
- Retroreport on COINTELPRO & the break in that changed history.
https://www.youtube.com/watch?v=KQk5cUMhI8k
- deeper info & more technical videos below +
====================================
Mobile Security for Freelancers: Rory Peck Trust & The Guardian Project
1 hour 26 minute conversation, 49 minute conversation, & ...
https://www.youtube.com/watch?v=KekYW8DhDkU
https://www.youtube.com/watch?v=gNsTcj-ejeY
https://www.youtube.com/watch?v=BJy7kYiM-4Q
- Bruce Schneier "Data and Goliath"
https://www.youtube.com/watch?v=GhWJTWUvc7E
- Bruce Schneier TED TALK (21:02 min)videohttp://www.ted.com/talks/bruce_schneier?awesm=on.ted.com_Schneier&utm_content=awesm-bookmarklet&utm_medium=on.ted.com-static&utm_source=direct-on.ted.com
https://www.youtube.com/watch?v=wQJC2MMB8nA
transcript http://dotsub.com/view/c722667e-7338-4b17-896b-4714e01129b1/viewTranscript/eng
- James Lyne: Cryptography and the power of randomness (05:21 min)
https://www.youtube.com/watch?v=SAAflrIp__E
- Del Harvey: Strangeness of scale at Twitter.com (9:19 min)
https://www.youtube.com/watch?v=mAvSoNUgMno
- re:publica 2014 - Morgan Marquis-Boire: Fear and Loathing on the Internet (58:19 min)
https://www.youtube.com/watch?v=bOK_KAXbTe8
- Chris Domas: The 1s and 0s behind cyberwarfare (16:45 min)
https://www.youtube.com/watch?v=cWpRxyqDgpM
- Mikko Hypponen: The Internet is on Fire (19:16)
https://www.youtube.com/watch?v=QKe-aO44R7k
# LOVE MATH? LOVE ACCENTS? LOVE SILLY SOUND EFFECTS?
This video explains how cryptography really works.
https://www.youtube.com/watch?v=56fa8Jz-FQQ
- quick walk through of TAILS live distribution
https://www.youtube.com/watch?v=3vcoEZQfSMw
- how TOR browser works
- What are Hardware tokens? like yubico's yubikey (u2f fido)
TWO FACTOR AUTHENTICATION:
https://twofactorauth.org/
the above link takes you to a list of sites that use 2-step verification. 2-step verification uses your name, password, but then another unknown to piece of info to log in. It can be provided by a hardware token, a texted code or via apps like Google Authenticator, Authy, etc. you can also use the site to help by requesting groups start using 2-step verification.
If you use facebook here is link to the event there (please like our page):
https://www.facebook.com/cryptoharlem/

SUMMER IS OVER, WE'RE NOT! post black hat, defcon, ccc camp, cryptoparty!