<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>RedTeam@MTU Meeting Minutes</title><link>https://www.redteam.mtu.edu/minutes/</link><description>Recent content in Meeting Minutes on RedTeam@MTU</description><generator>Source Themes academia (https://sourcethemes.com/academic/)</generator><language>en-us</language><lastBuildDate>Thu, 29 Jan 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://www.redteam.mtu.edu/minutes/index.xml" rel="self" type="application/rss+xml"/><item><title>Introduction to Radio Snooping</title><link>https://www.redteam.mtu.edu/minutes/2026-01-29/</link><pubDate>Thu, 29 Jan 2026 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2026-01-29/</guid><description>&lt;h2 id="talk"&gt;Talk&lt;/h2&gt;
&lt;h1 id="todays-meeting--introduction-to-radio-snooping"&gt;TODAYS MEETING … Introduction to Radio Snooping&lt;/h1&gt;
&lt;h2 id="speaker-tim-peters-w3tlp"&gt;&lt;strong&gt;Speaker: Tim Peters (W3TLP)&lt;/strong&gt;&lt;/h2&gt;
&lt;h2 id="speaker-background"&gt;Speaker Background&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;5th year, Extra Class amateur radio operator (highest license level)&lt;/li&gt;
&lt;li&gt;Primary board operator at Houghton Community Radio&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="radio-snooping"&gt;Radio Snooping…&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Radio waves do not stop at borders or property lines&lt;/li&gt;
&lt;li&gt;In the United States, it is generally legal to listen to radio transmissions
&lt;ul&gt;
&lt;li&gt;Exception: cellular telephone communications&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="radio-frequencies-and-bands"&gt;Radio Frequencies and Bands&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Radio frequencies are divided into &lt;strong&gt;bands&lt;/strong&gt; within the electromagnetic spectrum&lt;/li&gt;
&lt;li&gt;Bands are typically defined by ITU, IEEE&lt;/li&gt;
&lt;li&gt;Commonly used bands:
&lt;ul&gt;
&lt;li&gt;LF, MF, HF, VHF, UHF, SHF&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="scanner-radios"&gt;Scanner Radios&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;A scanner radio is a receiver that rapidly scans through preprogrammed frequencies&lt;/li&gt;
&lt;li&gt;When activity is detected:
&lt;ul&gt;
&lt;li&gt;The scanner stops on that frequency&lt;/li&gt;
&lt;li&gt;Remains there while the transmission is active&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Scanner radios are inexpensive and widely available&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="fcc-and-spectrum-use"&gt;FCC and Spectrum Use&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;The FCC (Federal Communications Commission) regulates radio spectrum use in the U.S.&lt;/li&gt;
&lt;li&gt;Specific frequency ranges are allocated to specific services&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="common-radio-services"&gt;Common Radio Services&lt;/h2&gt;
&lt;h3 id="amateur-ham-radio"&gt;Amateur (Ham) Radio&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Used by licensed amateur operators worldwide&lt;/li&gt;
&lt;li&gt;Common bands range from 6m through 23cm&lt;/li&gt;
&lt;li&gt;Typically easy to monitor with analog receivers
&lt;strong&gt;Modes&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;AM (Amplitude Modulation)&lt;/li&gt;
&lt;li&gt;FM (Frequency Modulation)&lt;/li&gt;
&lt;li&gt;FM is the most common&lt;/li&gt;
&lt;li&gt;Digital modes also exist
&lt;strong&gt;Typical traffic&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Casual conversation&lt;/li&gt;
&lt;li&gt;Emergency response&lt;/li&gt;
&lt;li&gt;Event coordination&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="vhf-high-band"&gt;VHF High Band&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Used by:
&lt;ul&gt;
&lt;li&gt;Fire departments&lt;/li&gt;
&lt;li&gt;EMS&lt;/li&gt;
&lt;li&gt;Business and dispatch radios&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Primarily FM, with some digital systems&lt;/li&gt;
&lt;li&gt;Includes paging for emergency and business users&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="vhf-low-band"&gt;VHF Low Band&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Largely obsolete&lt;/li&gt;
&lt;li&gt;Still used in some wildfire applications&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="airband"&gt;Airband&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Used by aircraft and air traffic control&lt;/li&gt;
&lt;li&gt;Uses AM instead of FM&lt;/li&gt;
&lt;li&gt;Common traffic includes flight arrivals, departures, and coordination&lt;/li&gt;
&lt;li&gt;AM is used to reduce interference issues in aviation&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="marine-vhf"&gt;Marine VHF&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Uses FM&lt;/li&gt;
&lt;li&gt;Focused on safety and navigation&lt;/li&gt;
&lt;li&gt;Includes bridge coordination and distress calls&lt;/li&gt;
&lt;li&gt;FM is more resistant to environmental interference&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="frs--gmrs"&gt;FRS / GMRS&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Consumer walkie-talkie services&lt;/li&gt;
&lt;li&gt;GMRS requires a license but uses the same frequencies as FRS&lt;/li&gt;
&lt;li&gt;Limited to 22 channels&lt;/li&gt;
&lt;li&gt;Easy to monitor with scanners
&lt;strong&gt;Common traffic&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Recreational users&lt;/li&gt;
&lt;li&gt;Outdoor activities&lt;/li&gt;
&lt;li&gt;Retail and local communications&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="murs"&gt;MURS&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Multi-Use Radio Service&lt;/li&gt;
&lt;li&gt;Low power (2 watts)&lt;/li&gt;
&lt;li&gt;Operates in VHF&lt;/li&gt;
&lt;li&gt;Used by some wildfire and utility services&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="uhf-business-bands"&gt;UHF Business Bands&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Used primarily by commercial and business radios&lt;/li&gt;
&lt;li&gt;Generally unremarkable traffic&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="49-mhz-band"&gt;49 MHz Band&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Older cordless phones&lt;/li&gt;
&lt;li&gt;Baby monitors&lt;/li&gt;
&lt;li&gt;Legacy consumer devices&lt;/li&gt;
&lt;li&gt;Typically unencrypted and insecure&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="900-mhz-ism-band"&gt;900 MHz ISM Band&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Industrial, Scientific, and Medical devices&lt;/li&gt;
&lt;li&gt;Shorter range&lt;/li&gt;
&lt;li&gt;Good building penetration&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="radio-trunking-systems"&gt;Radio Trunking Systems&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Conventional radio assigns a fixed frequency per user&lt;/li&gt;
&lt;li&gt;Large systems require many users to share limited spectrum&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="how-trunking-works"&gt;How Trunking Works&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Uses a &lt;strong&gt;control channel&lt;/strong&gt; and multiple &lt;strong&gt;working channels&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;When a user transmits:
&lt;ul&gt;
&lt;li&gt;A controller assigns an available working channel&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;When transmission ends:
&lt;ul&gt;
&lt;li&gt;The radio returns to the control channel&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Allows many users to share the same infrastructure without interference&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="michigan-public-safety-communications-system-mpscs"&gt;Michigan Public Safety Communications System (MPSCS)&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Statewide trunked radio system&lt;/li&gt;
&lt;li&gt;Used by most police and public safety agencies in Michigan&lt;/li&gt;
&lt;li&gt;Fully digital&lt;/li&gt;
&lt;li&gt;Cannot be monitored with analog scanners&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="trunking-scanners"&gt;Trunking Scanners&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Consumer-available scanners exist for trunked systems&lt;/li&gt;
&lt;li&gt;Significantly more expensive than basic scanners&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="police-communications"&gt;Police Communications&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Most police radio traffic is encrypted (AES-256)&lt;/li&gt;
&lt;li&gt;Encrypted traffic cannot be monitored by non-authorized listeners&lt;/li&gt;
&lt;li&gt;Many other unencrypted services remain available to monitor&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="notes"&gt;Notes&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Additional radio services exist beyond those listed&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="post-meeting"&gt;Post-meeting&lt;/h2&gt;
&lt;p&gt;FILL THIS FORM OUT FOR CYPHERCON!!!
&lt;a href="https://forms.gle/V2du3GUooHvoHVwa7"&gt;FORM&lt;/a&gt;&lt;/p&gt;</description></item><item><title>Hotel Lock Hacking</title><link>https://www.redteam.mtu.edu/minutes/2026-01-08/</link><pubDate>Thu, 08 Jan 2026 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2026-01-08/</guid><description>&lt;h2 id="talk"&gt;Talk&lt;/h2&gt;
&lt;h1 id="todays-topic"&gt;TODAYS TOPIC&lt;/h1&gt;
&lt;h2 id="what-is-saflok"&gt;What is Saflok?&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Saflok&lt;/strong&gt; = hotel lock system made by &lt;strong&gt;Dormakaba&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt;SPOILER ALERT: not very safe, kinda poorly designed.&lt;/li&gt;
&lt;li&gt;It’s a &lt;strong&gt;PACS&lt;/strong&gt; (Physical Access Control System), just like what we use at Tech, but implemented very differently.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="pacs-basics-high-level"&gt;PACS basics (high-level)&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;PACS usually stores two values:
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Facility code&lt;/strong&gt; (e.g., “this is an MTU card”)&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Card number&lt;/strong&gt; (unique per person, defines access)&lt;/li&gt;
&lt;li&gt;Tap card → reader → door controller → network controller → server&lt;/li&gt;
&lt;li&gt;Server cross-references values → decides if door opens&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;At Tech: centralized + online (industry standard).
&lt;ul&gt;
&lt;li&gt;You can view your own logs at cardservices.mtu.edu (real-time audits &amp;amp; alerts).&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="wiegand-stuff-the-value-on-your-card"&gt;Wiegand stuff (the value on your card)&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Wiegand comes from the wiegend effect from physics&lt;/li&gt;
&lt;li&gt;Old-school cards used dedicated 0/1 wires (now mostly emulated).&lt;/li&gt;
&lt;li&gt;Format is usually hexadecimal.&lt;/li&gt;
&lt;li&gt;Easy to decode by hand.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="where-saflok-fits-in"&gt;Where Saflok fits in&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Dormakaba makes Saflok ( just one PACS product among many).&lt;/li&gt;
&lt;li&gt;Common in hotels and apartments&lt;/li&gt;
&lt;li&gt;Rough estimate: ~30% of NFC hotel properties use Saflok.&lt;/li&gt;
&lt;li&gt;System has evolved over time but:
&lt;ul&gt;
&lt;li&gt;Same core design&lt;/li&gt;
&lt;li&gt;Uses RFID / MIFARE Classic&lt;/li&gt;
&lt;li&gt;Stores basically the same data as decades ago&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="offline-pacs-is-not-great"&gt;Offline pacs is… not great&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Saflok is fully offline (sometimes semi-offline).&lt;/li&gt;
&lt;li&gt;All auth happens locally on the lock.&lt;/li&gt;
&lt;li&gt;Downsides:
&lt;ul&gt;
&lt;li&gt;No central monitoring&lt;/li&gt;
&lt;li&gt;Brute forcing card values is possible without alerts&lt;/li&gt;
&lt;li&gt;Privilege escalation is easier (flip a few bits → higher access)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;There exists an &lt;strong&gt;emergency key&lt;/strong&gt; (super master key).
&lt;ul&gt;
&lt;li&gt;Overrides everything&lt;/li&gt;
&lt;li&gt;Used in emergencies&lt;/li&gt;
&lt;li&gt;Yes it’s terrifying&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="system-6000--why-this-got-bad"&gt;System 6000 &amp;amp; why this got bad&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Older Saflok installs use &lt;strong&gt;System 6000&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Previously you needed expensive hotel hardware to mess with it.&lt;/li&gt;
&lt;li&gt;Now:
&lt;ul&gt;
&lt;li&gt;You can interact with the backend database (System 6000 Firebird)&lt;/li&gt;
&lt;li&gt;Mint cards for other properties&lt;/li&gt;
&lt;li&gt;Edit card permissions across facilities&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Property ID validation is not great&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="card-internals-high-level"&gt;Card internals (high-level)&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Data is “encrypted” (really obfuscated).&lt;/li&gt;
&lt;li&gt;Once the obfuscation is understood, the whole system falls apart.&lt;/li&gt;
&lt;li&gt;Card levels:
&lt;ul&gt;
&lt;li&gt;Guest key (level 0/1)&lt;/li&gt;
&lt;li&gt;Higher privilege levels&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Emergency key&lt;/strong&gt; = bit 12 (stored as level 13)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Flipping fields manually causes weird edge cases because the system was &lt;em&gt;never&lt;/em&gt; meant to be used this way.&lt;/li&gt;
&lt;li&gt;Emergency key can bypass deadbolts if software-controlled (not good).&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="sequencing-important-concept"&gt;Sequencing (important concept)&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Keys have &lt;strong&gt;sequence numbers&lt;/strong&gt; to invalidate old cards.&lt;/li&gt;
&lt;li&gt;Treat sequence + combination as a password.&lt;/li&gt;
&lt;li&gt;You can &lt;strong&gt;resequencing keys&lt;/strong&gt;:
&lt;ul&gt;
&lt;li&gt;Guest resequencing key&lt;/li&gt;
&lt;li&gt;Emergency resequencing key&lt;/li&gt;
&lt;li&gt;Etc.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;This mechanism is supposed to improve security but is easily abused.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="patching-problems"&gt;Patching problems&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Fixing Saflok is &lt;strong&gt;expensive&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt;Many hotels didn’t want to pay.&lt;/li&gt;
&lt;li&gt;Dormakaba offered two “enhanced security” options:
&lt;ol&gt;
&lt;li&gt;Disable MIFARE Classic (cheap, bad, doesn’t really fix it)&lt;/li&gt;
&lt;li&gt;Actually fix the system (expensive)&lt;/li&gt;
&lt;/ol&gt;
&lt;/li&gt;
&lt;li&gt;Marketing was confusing, so many properties chose the cheap option.&lt;/li&gt;
&lt;li&gt;Result: problem not actually solved.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="ultralight-c-is-safe-well-not-really"&gt;“Ultralight C is safe”. well not really&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Initial impression was that:
&lt;ul&gt;
&lt;li&gt;Only System 6000 is affected&lt;/li&gt;
&lt;li&gt;Ultralight C is safe&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;But the reality is…:
&lt;ul&gt;
&lt;li&gt;Newer apartments use different software + locks&lt;/li&gt;
&lt;li&gt;Same underlying system&lt;/li&gt;
&lt;li&gt;Same weaknesses, just rebranded&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="patents--accidental-info-leak"&gt;Patents = accidental info leak&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Dormakaba patents describe:
&lt;ul&gt;
&lt;li&gt;Internal lock logic&lt;/li&gt;
&lt;li&gt;Key structure&lt;/li&gt;
&lt;li&gt;Algorithms&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Basically hands attackers a roadmap.&lt;/li&gt;
&lt;li&gt;Algorithms are shared across deployments (no per-site keys).&lt;/li&gt;
&lt;li&gt;Enhanced security &lt;em&gt;does&lt;/em&gt; fix this by introducing per-property keys.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="tooling"&gt;Tooling&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Custom tools exist for &lt;strong&gt;Flipper Zero&lt;/strong&gt; and &lt;strong&gt;Proxmark&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt;Noah’s version is more generic — doesn’t fully automate things.&lt;/li&gt;
&lt;li&gt;Many similar tools exist from other researchers.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="final-plea"&gt;Final plea&lt;/h2&gt;
&lt;p&gt;Please stop installing cheap, half-fixed security systems.&lt;br&gt;
Please no more MIFARE Classic credentials. Please&lt;/p&gt;
&lt;h2 id="workshop"&gt;Workshop&lt;/h2&gt;
&lt;h2 id="post-meeting"&gt;Post-meeting&lt;/h2&gt;</description></item><item><title>NCL Followup</title><link>https://www.redteam.mtu.edu/minutes/2025-11-04/</link><pubDate>Tue, 04 Nov 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-11-04/</guid><description>&lt;h1 id="ncl-followup"&gt;NCL Followup&lt;/h1&gt;
&lt;h2 id="overall-results"&gt;Overall Results&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Scores were top-heavy; overall strong effort&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Combined individual + game score&lt;/strong&gt; was the highest in organization history&lt;/li&gt;
&lt;li&gt;Fall competitions typically perform better due to higher effort
&lt;ul&gt;
&lt;li&gt;Individual game runs over Carnival / spring&lt;/li&gt;
&lt;li&gt;Team game overlaps with finals&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="scoring-breakdown"&gt;Scoring Breakdown&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Combined accuracy and completion:&lt;/strong&gt; 41.5&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Accuracy:&lt;/strong&gt; 68.5&lt;/li&gt;
&lt;li&gt;Many participants completed only the minimum&lt;/li&gt;
&lt;li&gt;Challenges this year were relatively forgiving&lt;/li&gt;
&lt;li&gt;Structured challenges were significantly better than last year&lt;/li&gt;
&lt;li&gt;Less guessing required
&lt;ul&gt;
&lt;li&gt;Accuracy was much higher than previous years (previously ~30%)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="tylers-section"&gt;Tyler’s Section&lt;/h2&gt;
&lt;p&gt;Focus on problems that generated the most interest:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;OSINT Medium&lt;/li&gt;
&lt;li&gt;OSINT Hard&lt;/li&gt;
&lt;li&gt;Password Hard&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="osint-medium-flamed"&gt;OSINT Medium (Flamed)&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Four sets of GPS coordinates with timestamps&lt;/li&gt;
&lt;li&gt;Coordinates pointed to restaurants&lt;/li&gt;
&lt;li&gt;Goal was to find correlations between locations&lt;/li&gt;
&lt;li&gt;All restaurants were featured on &lt;em&gt;Gordon Ramsay’s Kitchen Nightmares&lt;/em&gt;&lt;/li&gt;
&lt;li&gt;A map of all featured restaurants was used&lt;/li&gt;
&lt;li&gt;Required additional OSINT to determine which locations were still open
&lt;ul&gt;
&lt;li&gt;Some map entries were outdated or incorrect&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Observed pattern:
&lt;ul&gt;
&lt;li&gt;Locations progressed east → west and south → north&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Luigi was identified as a newer location&lt;/li&gt;
&lt;li&gt;Lido Di and Ventura Greek (at the harbor) were identified&lt;/li&gt;
&lt;li&gt;Final step:
&lt;ul&gt;
&lt;li&gt;Zooming west-to-north to find a still-open location&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Answer:&lt;/strong&gt; Spin A Yarn Steakhouse&lt;/li&gt;
&lt;li&gt;Coordinates obtained via Google Maps&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="osint-hard"&gt;OSINT Hard&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Five-part question with mixed difficulty&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="other-questions"&gt;Other Questions&lt;/h3&gt;
&lt;p&gt;&lt;strong&gt;ICS Vulnerabilities&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Question: How many ICS vulnerabilities?&lt;/li&gt;
&lt;li&gt;Used the ICS Advisory Project website&lt;/li&gt;
&lt;li&gt;Other methods were possible but more difficult
&lt;strong&gt;Red Willow Substation&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Question: How many nodes does the Red Willow substation have?&lt;/li&gt;
&lt;li&gt;Used OpenStreetMap&lt;/li&gt;
&lt;li&gt;Node count was misleading (listed as 10) but was still the correct answer&lt;/li&gt;
&lt;li&gt;Alternate approach:
&lt;ul&gt;
&lt;li&gt;Manually counting nodes using satellite imagery on Google Maps&lt;/li&gt;
&lt;li&gt;Required research into what qualifies as a node&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="osint-takeaways"&gt;OSINT Takeaways&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Counting-based questions are error-prone
&lt;ul&gt;
&lt;li&gt;Easy to lose accuracy through recounting or re-guessing&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Recommended:
&lt;ul&gt;
&lt;li&gt;Track questions and answers in a shared Google Sheet&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;For flag-based challenges:
&lt;ul&gt;
&lt;li&gt;Answer scope is usually fixed&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;For numeric answers:
&lt;ul&gt;
&lt;li&gt;Acceptable answer range may be broader&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="password-hard"&gt;Password Hard&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Based on ~1000 &lt;em&gt;Star Trek&lt;/em&gt; episode names&lt;/li&gt;
&lt;li&gt;Not superr hardware-intensive&lt;/li&gt;
&lt;li&gt;Password structure:
&lt;ul&gt;
&lt;li&gt;Episode name&lt;/li&gt;
&lt;li&gt;Two consecutive digits somewhere&lt;/li&gt;
&lt;li&gt;One or two special characters, usually at the end or beginning&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="strategy"&gt;Strategy&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Mask attacks combined with wordlists&lt;/li&gt;
&lt;li&gt;Nine different mask variations used&lt;/li&gt;
&lt;li&gt;Mixed wordlists and masks to cover digit placement&lt;/li&gt;
&lt;li&gt;Hashcat limitation:
&lt;ul&gt;
&lt;li&gt;Masks can only be applied to one end by default&lt;/li&gt;
&lt;li&gt;Required workarounds for internal digit placement&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Total keyspace was relatively small&lt;/li&gt;
&lt;li&gt;Emphasis was strategic rule use, not ridiculously large rule files&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="wordlist-details"&gt;Wordlist Details&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Episode name variations included:
&lt;ul&gt;
&lt;li&gt;All lowercase&lt;/li&gt;
&lt;li&gt;Standard capitalization&lt;/li&gt;
&lt;li&gt;Dashes instead of spaces&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Total episode count ~1000&lt;/li&gt;
&lt;li&gt;Collapsing variations resulted in a wordlist of ~2000 entries&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="upcoming-meeting"&gt;Upcoming Meeting&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Master Key privilege escalation&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Hands-on session&lt;/li&gt;
&lt;li&gt;Scheduled for next meeting&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>NCL and CTFs</title><link>https://www.redteam.mtu.edu/minutes/2025-10-23/</link><pubDate>Thu, 23 Oct 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-10-23/</guid><description>&lt;h2 id="what-is-ncl"&gt;What is NCL?&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL is a CTF we compete in! (hopefully you know this by now)&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Opens tomorrow (Friday) at 1 PM and runs until Sunday at 9 PM&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Minimum point threshold: 300 points for us.&lt;/li&gt;
&lt;/ul&gt;
&lt;blockquote&gt;
&lt;p&gt;What’s a CTF?&lt;/p&gt;
&lt;/blockquote&gt;
&lt;ul&gt;
&lt;li&gt;CTFs are capture the flag competitions!&lt;/li&gt;
&lt;li&gt;You’re trying to capture flags by solving challenges.&lt;/li&gt;
&lt;li&gt;Flags have a format with numbers and letters, similar to the ICC Vehicle Hackathon format (flag&amp;ndash;nums&amp;ndash;letters).&lt;/li&gt;
&lt;li&gt;When you solve a challenge, you get the flag.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="about-the-competition"&gt;About the Competition&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Intended for introductory audiences, mainly students / people in education .&lt;/li&gt;
&lt;li&gt;There are 3 different tiers (based on years of experience).&lt;/li&gt;
&lt;li&gt;Doesn’t change the challenge itself — you’re just placed in a different pool.&lt;/li&gt;
&lt;li&gt;Most of us will participate in the Undergrad section .
Big thing: Try to get the most out of the competition, and figure out what you don&amp;rsquo;t know yet&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="difficulty-and-rules"&gt;Difficulty and Rules&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Accommodates different skill levels through “ramp up” challenges (easy, medium, hard).&lt;/li&gt;
&lt;li&gt;Easy ones are &lt;em&gt;really&lt;/em&gt; easy&lt;/li&gt;
&lt;li&gt;ChatGPT is allowed for this competition!&lt;/li&gt;
&lt;li&gt;NOT allowed to work with other people!!!&lt;/li&gt;
&lt;li&gt;That’s the only rule really. Everything else is open-book.&lt;/li&gt;
&lt;/ul&gt;
&lt;blockquote&gt;
&lt;p&gt;The “difficulty” label doesn’t always match how easy/hard it actually is — it varies.
Don’t get discouraged!&lt;/p&gt;
&lt;/blockquote&gt;
&lt;h2 id="ncl-categories"&gt;NCL Categories&lt;/h2&gt;
&lt;h3 id="osint"&gt;OSINT&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Usually the easiest (includes question rules too).&lt;/li&gt;
&lt;li&gt;Basically professional Googling .&lt;/li&gt;
&lt;li&gt;MY PRESENTATION!! check the slides if you need a refresher :)&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="cryptography"&gt;Cryptography&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Easier questions deal with base number systems (just Google number decoders).&lt;/li&gt;
&lt;li&gt;Harder ones get really hard , like crypto primitives (steep drop-off).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="password-cracking"&gt;Password Cracking&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Hashcat!&lt;/li&gt;
&lt;li&gt;Harder questions require a ruleset .&lt;/li&gt;
&lt;li&gt;Check Tyler’s pres!&lt;/li&gt;
&lt;li&gt;Start cracking early! It takes time (run it in the background).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="forensics"&gt;Forensics&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;A little more approachable with Linux experience .&lt;/li&gt;
&lt;li&gt;Steganography, file recovery, etc.&lt;/li&gt;
&lt;li&gt;Hardest questions usually use Volatility — install that.&lt;/li&gt;
&lt;li&gt;Just have the correct tools ready!&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="log-analysis"&gt;Log Analysis&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;The grep category (shout out Noah).&lt;/li&gt;
&lt;li&gt;Sort and sort list.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="network-traffic-analysis"&gt;Network Traffic Analysis&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Wireshark!!!&lt;/li&gt;
&lt;li&gt;Viewing network traffic via packet capture files (&lt;code&gt;.pcap&lt;/code&gt;).&lt;/li&gt;
&lt;li&gt;Harder challenges use Scapy (a lot of outdated docs out there).
&lt;ul&gt;
&lt;li&gt;Can usually solve with TShark + small shell script .&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="scanning--reconnaissance"&gt;Scanning &amp;amp; Reconnaissance&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Nmap my beloved&lt;/li&gt;
&lt;li&gt;Usually gives you a VM to connect to in the web interface.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="web-app-exploitation"&gt;Web App Exploitation&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Tons of tools: Burp Suite, Gobuster, cURL , etc.&lt;/li&gt;
&lt;li&gt;Sometimes you’re allowed to use automated tools (they’ll let you know).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="enumeration--exploitation"&gt;Enumeration &amp;amp; Exploitation&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;The hardest category&lt;/li&gt;
&lt;li&gt;Even the “easy” challenges are tough.&lt;/li&gt;
&lt;li&gt;Examples:
&lt;ul&gt;
&lt;li&gt;Obfuscated shell scripts (PowerShell, Python) – easy&lt;/li&gt;
&lt;li&gt;Rust – hardest&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;You really gotta know what you’re doing for this one. Not easy to learn on the fly.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="other-notes"&gt;Other Notes&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Accuracy doesn’t really matter unless you’re trying to place&lt;/li&gt;
&lt;li&gt;You get many attempts.&lt;/li&gt;
&lt;li&gt;Any online, non-password-protected resources are fair game.&lt;/li&gt;
&lt;li&gt;You can use our past meeting slides!&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="importance-of-ncl"&gt;Importance of NCL&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Justifies our purpose and mission as an org.&lt;/li&gt;
&lt;li&gt;Helps us get recognition too.&lt;/li&gt;
&lt;li&gt;Board of Trustees namedropped us.&lt;/li&gt;
&lt;li&gt;Governor of Michigan sent us a letter congratulating us!&lt;/li&gt;
&lt;li&gt;As students, it gives us knowledge, helps us see where we’re lacking skills.
&lt;ul&gt;
&lt;li&gt;Curriculum doesn’t always cover what we want to know, so this fills in the gaps.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>RedTeam IDs</title><link>https://www.redteam.mtu.edu/minutes/2025-09-25/</link><pubDate>Thu, 25 Sep 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-09-25/</guid><description>&lt;h2 id="todays-topic---red-team-ids--mifare-polyglot-cards-"&gt;TODAY&amp;rsquo;S TOPIC — Red Team IDs / MIFARE Polyglot Cards !&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;To request: send name + image; if you sent it in time, printed IDs are ready for pickup.&lt;/li&gt;
&lt;li&gt;Last year: printed on inkjet labels before we had a card printer.. improvements made!&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="background-info"&gt;Background Info&amp;hellip;&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;For the RedTeam IDs → using proxmark for writing data to cards.&lt;/li&gt;
&lt;li&gt;Two main chip vendors: HID and NXP (high-freq vs low-freq).&lt;/li&gt;
&lt;li&gt;Our Husky cards use NFC / MIFARE Classic&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="security-stuff"&gt;Security Stuff&amp;hellip;&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;MIFARE Classic is insecure. VERY Poor encryption.
&lt;ul&gt;
&lt;li&gt;Uses the proprietary Crypto1 cypher (widely analyzed/pwned since ~2008). Very bad.&lt;/li&gt;
&lt;li&gt;Still commonly used in access control despite vulnerabilities.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Each card has a factory UID/serial number; this is readable and supposed to be changed.. but they don&amp;rsquo;t&lt;/li&gt;
&lt;li&gt;Cards use &lt;em&gt;sectors&lt;/em&gt; and &lt;em&gt;keys&lt;/em&gt; (Key A / Key B) and contain access bits and manufacturer data.&lt;/li&gt;
&lt;li&gt;Readers often convert UID to an upstream value (e.g., a Wiegand code) that the door controller uses to grant access.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="important-to-note"&gt;IMPORTANT TO NOTE&amp;hellip;&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;We disclosed findings to IT; they were not concerned, but do not hand out cards or impersonate others.&lt;/li&gt;
&lt;li&gt;Stay within Tech/IT policy boundaries and avoid actions that would get the club in trouble. (Covering our asses.)&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="polyglot--multi-format-cards"&gt;Polyglot / Multi-format Cards&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;A polyglot (2-in-1) card can present multiple formats (e.g., our Husky format + another).&lt;/li&gt;
&lt;li&gt;Some readers (e.g., Schlage/Allegion) support multi-card types — nice for the organization - also nice for us&amp;hellip; we can do a downgrade attack (we don&amp;rsquo;t need to, we already have the worst type).&lt;/li&gt;
&lt;li&gt;readers try sector 15 as well, not sure why&lt;/li&gt;
&lt;li&gt;move sector 1 to sector 15→ tada!&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="tools"&gt;Tools&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Mentioned tools: MIFARE Classic Tool (Android), Proxmark3, Flipper Zero, ChameleonUltra.&lt;/li&gt;
&lt;li&gt;Buy the proxmark3 off of alibaba.&lt;/li&gt;
&lt;li&gt;Equipment is available to check out through RedTeam (return like library items).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="audience-time"&gt;Audience Time!!&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Take out your husky cards and flip it! (back numbers → facility code &amp;amp; card number are printed/readable).&lt;/li&gt;
&lt;li&gt;Our card numbers are straight up printed , if you read someones&amp;rsquo; card number you could hypothetically make a copy of their card (don&amp;rsquo;t do this)&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="other-topics--events"&gt;Other Topics / Events&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Car Hackathon (Yu Cai):&lt;/strong&gt; embedded car hackathon using Raspberry Pis → ~2 days, team auto-balancing, $500/$400/$300 rewards for 1st/2nd/3rd places! sign-up using the QR in presentation.&lt;/li&gt;
&lt;li&gt;More info &lt;a href="https://ctf.cs.mtu.edu/"&gt;here&lt;/a&gt;, and you can sign up &lt;a href="https://forms.gle/1uLSk4VJLXnAmWRBA"&gt;here&lt;/a&gt;!&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Password Cracking</title><link>https://www.redteam.mtu.edu/minutes/2025-09-18/</link><pubDate>Thu, 18 Sep 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-09-18/</guid><description>&lt;h2 id="todays-topic--password-cracking"&gt;TODAY&amp;rsquo;S TOPIC — PASSWORD CRACKING!&lt;/h2&gt;
&lt;h3 id="what-is-a-hash"&gt;What is a hash?&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Deterministic function: same input → same output every time.&lt;/li&gt;
&lt;li&gt;One-way: designed to make inversion computationally difficult (but not impossible for weak hashes or weak passwords).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="what-is-a-salt"&gt;What is a salt?&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Random data unique to each password, combined with the password before hashing.&lt;/li&gt;
&lt;li&gt;Prevents attackers from using precomputed lookup tables or quickly identifying repeated passwords across accounts.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="common-hash-types-mentioned"&gt;Common hash types mentioned&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;MD5, SHA-1, NTLM&lt;/strong&gt; — older, faster, easier to brute force; useful for learning/CTFs but not recommended in other contexts.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="rulefiles"&gt;Rulefiles&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Rulefiles define transformations applied to dictionary candidates (e.g., append numbers, replace letters).&lt;/li&gt;
&lt;li&gt;You usually want to find a happy medium between a large wordlist + small rulefile (and the inverse)&lt;/li&gt;
&lt;li&gt;Performance: applying rules multiplies the number of candidates to test (linear scaling with rule count).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="wordlists"&gt;Wordlists&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Collections of candidate passwords aggregated from leaks/breaches (e.g., &lt;code&gt;rockyou.txt&lt;/code&gt;). Useful for detecting weak or commonly-used passwords.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="piping--streaming"&gt;Piping / streaming&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Advanced workflows use stdin/stdout piping to stream candidates into Hashcat&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="attack-modes-hashcat"&gt;Attack modes (Hashcat)&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;-a&lt;/code&gt; flag selects attack mode (dictionary, combinator, mask, hybrid, etc.).&lt;/li&gt;
&lt;li&gt;Most common: &lt;strong&gt;dictionary attack&lt;/strong&gt; + rulefile applied.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="performance--exhaustion"&gt;Performance / Exhaustion&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Time ≈ wordlist_size × rule_count × cost_of_hash_algorithm&lt;/strong&gt; (very simplified).&lt;/li&gt;
&lt;li&gt;&lt;code&gt;Status: exhausted&lt;/code&gt; in Hashcat indicates the entire space defined by the wordlist + rulefile has been tested.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="4-demo-notes"&gt;4) Demo (notes)&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Wordlist used:&lt;/strong&gt; &lt;code&gt;rockyou.txt&lt;/code&gt; (common demonstration dataset).&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Rulefile used:&lt;/strong&gt; &lt;code&gt;best64&lt;/code&gt; (simple, commonly-used rulefile).&lt;/li&gt;
&lt;li&gt;Approach shown: dictionary (&lt;code&gt;rockyou&lt;/code&gt;) + &lt;code&gt;best64&lt;/code&gt; rules — tradeoffs: very large wordlist + small rulefile vs small wordlist + large rulefile. Aim for a middle ground based on target.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="tldr"&gt;tldr&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Hashes&lt;/strong&gt; are deterministic cryptographic functions that map an input (password) to a fixed-size output. They don&amp;rsquo;t store plaintext, hashes are designed to be one-way.&lt;/li&gt;
&lt;li&gt;Good cryptographic hash functions have very low probability of collisions (two different inputs producing the same output).&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Salt&lt;/strong&gt; = a per-password random value appended or prepended to the password before hashing. Salts prevent effective use of precomputed tables (rainbow tables) and make identical passwords produce different hashes.&lt;/li&gt;
&lt;li&gt;old hash algorithms (e.g., MD5, SHA-1, NTLM) are faster to crack and are commonly used in CTFs or legacy contexts.&lt;/li&gt;
&lt;li&gt;Modern password hashing schemes are just better&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Hashcat basics:&lt;/strong&gt; use &lt;code&gt;-a&lt;/code&gt; to set attack mode &amp;ndash; dictionary + rulefile combinations. Performance scales with wordlist sizexrule countxhash complexity.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Intro to RedTeam &amp; OSINT</title><link>https://www.redteam.mtu.edu/minutes/2025-09-11/</link><pubDate>Thu, 11 Sep 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-09-11/</guid><description>&lt;p&gt;For kdayers – those who are new&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;We are redteam duh&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;We do meetings 😛
Competitions - NCL&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Even host our own..????&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Conferences :3&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Defcon&lt;/li&gt;
&lt;li&gt;Cyphercon&lt;/li&gt;
&lt;li&gt;POINT BASED SYSTEM!
&lt;ul&gt;
&lt;li&gt;Depending on how u participate with the org u will get points&lt;/li&gt;
&lt;li&gt;Use the points for merch ,priority list for conferences if ur active w / the org&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;IF U MET US AT KDAY WE SAID .. ALL THIGNS SECURITY!
What is security???&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;We cover cybersec topics from major
&lt;ul&gt;
&lt;li&gt;Network security&lt;/li&gt;
&lt;li&gt;Progrm security&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;And this that follow outside of this
&lt;ul&gt;
&lt;li&gt;Osint, social engineering, physical security,, password cracking, wireless security (radio frequencies not just wifi– talk from last week) EVERYTHING COVERED IN NCL&lt;/li&gt;
&lt;li&gt;Eboard will teach u this stuf :3&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Onto OSINT by Anika!&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;OSINT = Open Source INTelligence
&lt;ul&gt;
&lt;li&gt;Basically professional Googling/stalking&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Some useful OSINT resources
&lt;ul&gt;
&lt;li&gt;Google dorking&lt;/li&gt;
&lt;li&gt;&lt;a href="https://osintframework.com/"&gt;OSINT framework&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Check Instagram follows/likes&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Now, use your OSINT skills and try to find info about Anika!
&lt;ul&gt;
&lt;li&gt;Middle name&lt;/li&gt;
&lt;li&gt;Where she lives&lt;/li&gt;
&lt;li&gt;Usernames&lt;/li&gt;
&lt;li&gt;Etc&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Get RedTeam stickers as a reward!&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Wrapping up&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;NCL registration is open!
&lt;ul&gt;
&lt;li&gt;I highly recommend signing up!&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;What do you want the next meeting to be about?
&lt;ul&gt;
&lt;li&gt;Password Cracking&lt;/li&gt;
&lt;li&gt;Web Application Exploitation&lt;/li&gt;
&lt;li&gt;Network Security&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLSecuJSeM0iPX3LG88jxiU5IsLIfUoLm7p5PJPfOShfTajjzzw/viewform"&gt;Register for NCL and vote for the next meeting here!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Hacking Wireless Microphones</title><link>https://www.redteam.mtu.edu/minutes/2025-09-04/</link><pubDate>Thu, 04 Sep 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-09-04/</guid><description>&lt;h2 id="noah-starts-off-meeting"&gt;Noah starts off meeting&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Introduction on Alex
&lt;ul&gt;
&lt;li&gt;Will give a talk on hacking wireless mic packs&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;RedTeam will be at K-Day!&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="hacking-wireless-microphones-by-alex-and-dane"&gt;Hacking Wireless Microphones by Alex and Dane!&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Goal for talk
&lt;ul&gt;
&lt;li&gt;FCC regulations&lt;/li&gt;
&lt;li&gt;FM&lt;/li&gt;
&lt;li&gt;Squelch&lt;/li&gt;
&lt;li&gt;Roadblocks along the way&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Who we are
&lt;ul&gt;
&lt;li&gt;Alex
&lt;ul&gt;
&lt;li&gt;CpE&lt;/li&gt;
&lt;li&gt;WMTU&lt;/li&gt;
&lt;li&gt;SLS&lt;/li&gt;
&lt;li&gt;HARC (Husky Amateur Ham Radio Club)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Dane
&lt;ul&gt;
&lt;li&gt;MET&lt;/li&gt;
&lt;li&gt;Involved in most of the same things as Alex&lt;/li&gt;
&lt;li&gt;“Shower connoisseur&amp;quot;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;FCC fines are not cheap, know what you would be getting into before breaking any&lt;/li&gt;
&lt;li&gt;GNU Radio files from demo will be available after the talk
&lt;ul&gt;
&lt;li&gt;If you are concerned about legality of using any of them, feel free to ask Alex/Dane&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;SDR vs Standard Radio
&lt;ul&gt;
&lt;li&gt;SDR
&lt;ul&gt;
&lt;li&gt;&amp;ldquo;Best thing since sliced bread&amp;rdquo;&lt;/li&gt;
&lt;li&gt;Less efficient than standard radios&lt;/li&gt;
&lt;li&gt;Usually SDR&amp;rsquo;s only recieve, but they have a variant that can also transmit (the HackRF One)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Standard Radio
&lt;ul&gt;
&lt;li&gt;Typically tuned for range of frequencies&lt;/li&gt;
&lt;li&gt;Less features than SDRs&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;GNU Radio is a program to make flow diagrams to transmit/receive on SDR radios&lt;/li&gt;
&lt;li&gt;Use it to pipe raw received signal through filters to get usable audio
&lt;ul&gt;
&lt;li&gt;Basic demo listening to WMTU (91.9 FM, the campus radio station) with the HackRF and GNURadio&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Purpose of FM vs AM and how they work
&lt;ul&gt;
&lt;li&gt;AM is like talking louder/quieter for different frequencies&lt;/li&gt;
&lt;li&gt;FM is &amp;ldquo;like a guitar string vibrating&amp;rdquo; faster/slower for different frequencies&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;More advanced modulation demo
&lt;ul&gt;
&lt;li&gt;Computer audio to wireless microphone receiver
&lt;ul&gt;
&lt;li&gt;Played quick audio from Spotify song&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Methods for radio to know when to stay off
&lt;ul&gt;
&lt;li&gt;Tone Squelch&lt;/li&gt;
&lt;li&gt;Digital (think binary) methods&lt;/li&gt;
&lt;li&gt;Other methods&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Tone squelch works well for receivers to prevent noise
&lt;ul&gt;
&lt;li&gt;Need to know senders squelch frequency if going both ways&lt;/li&gt;
&lt;li&gt;Usually at a set range (commonly 67Hz and a few others)
&lt;ul&gt;
&lt;li&gt;HARC uses 100hz for their repeater&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Prevents noise from being transmitted out the radio&amp;rsquo;s speakers&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;CTCSS is squelch standard
&lt;ul&gt;
&lt;li&gt;Unfortunately demo broken at the moment (GNURadio moment)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;SLX beltpacks in classrooms are being swapped to digital mic packs with &amp;ldquo;security-through-obscurity&amp;rdquo; protections&lt;/li&gt;
&lt;li&gt;Easiest way to find the frequencies they come in on is just scan with SDR&lt;/li&gt;
&lt;li&gt;How to emulate these microphones (OSINT!)
&lt;ul&gt;
&lt;li&gt;FCC database search
&lt;ul&gt;
&lt;li&gt;All wireless devices sold in the U.S. have a FCC ID printed on them somewhere&lt;/li&gt;
&lt;li&gt;Pleeeease check FCC frequencies and legality of transmitting on certain frequencies&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Roadblock 2: FM deviation, essentially volume, Crunchy audio coming through
&lt;ul&gt;
&lt;li&gt;Nyquist–Shannon sampling theorem
&lt;ul&gt;
&lt;li&gt;Sounds scary&lt;/li&gt;
&lt;li&gt;Actually just means sample rate of audio must be at least double the bandwidth of the signal to avoid &amp;ldquo;aliasing&amp;rdquo;
&lt;ul&gt;
&lt;li&gt;Quick demo of what audio aliasing sounds like&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Cloning Noah&amp;rsquo;s voice :D
&lt;ul&gt;
&lt;li&gt;Recorded samples of Noah&amp;rsquo;s voice from the mic pack in last week&amp;rsquo;s meeting on Hacker Culture&lt;/li&gt;
&lt;li&gt;Ran through AI voice model&lt;/li&gt;
&lt;li&gt;Can now speak and have the output audio sound just like Noah&amp;rsquo;s voice&lt;/li&gt;
&lt;li&gt;Can now re-inject this deepfaked-audio back into the audio system by pretending to be one of the mic packs&lt;/li&gt;
&lt;li&gt;Now everyone can hear the audio from this fake &amp;ldquo;Noah&amp;rdquo; on the speakers!&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Closing
&lt;ul&gt;
&lt;li&gt;That&amp;rsquo;s all we have for today!&lt;/li&gt;
&lt;li&gt;RedTeam has the HackRF One that was used in this demo in the RedTeam Toolbox!
&lt;ul&gt;
&lt;li&gt;You can check it out from the Toolbox, and use Alex/Dane&amp;rsquo;s GNURadio scripts to mess around with the technology yourself&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Come see our booth at K-Day!&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Hacker Culture</title><link>https://www.redteam.mtu.edu/minutes/2025-08-28/</link><pubDate>Thu, 28 Aug 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-08-28/</guid><description>&lt;h3 id="about-us"&gt;About Us&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;First 2 meetings = intro; then shift into structured cybersecurity topics.&lt;/li&gt;
&lt;li&gt;Activities:
&lt;ul&gt;
&lt;li&gt;Competitions (CTFs, NCL)&lt;/li&gt;
&lt;li&gt;Mini challenges (file recovery, exploits)&lt;/li&gt;
&lt;li&gt;Workshops &amp;amp; hands-on labs (e.g., Weigand systems, lockpicking)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Possible goal: &lt;strong&gt;host our own competition&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt;Attendance = higher priority for trips/events.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="leadership"&gt;Leadership&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Noah&lt;/strong&gt; – President&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Ethan&lt;/strong&gt; – Vice President&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Dane&lt;/strong&gt; – Treasurer&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Anika&lt;/strong&gt; – Secretary&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Tyler&lt;/strong&gt; – CTF Chair&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="todays-topic--hacker-culture"&gt;TODAY&amp;rsquo;S TOPIC &amp;ndash; Hacker Culture&lt;/h2&gt;
&lt;h3 id="definition"&gt;Definition&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Original:&lt;/strong&gt; Making unrelated things work together.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Modern:&lt;/strong&gt; Breaking ciphers, bypassing security.&lt;/li&gt;
&lt;li&gt;Information wants to be free mentality&lt;/li&gt;
&lt;li&gt;Debate: “hacker” vs. “cracker.”&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="history"&gt;History&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Roots in MIT Tech Model Railroad Club (1940s–60s).&lt;/li&gt;
&lt;li&gt;Grew into computer tinkering, lockpicking, puzzle-solving.&lt;/li&gt;
&lt;li&gt;MIT AI Lab → CSAIL was a major hub.&lt;/li&gt;
&lt;li&gt;Tools/resources: &lt;em&gt;Jargon File&lt;/em&gt;, MIT Lockpicking Guide.&lt;/li&gt;
&lt;li&gt;Parallels: Urbex explorers, ham radio enthusiasts.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="decline"&gt;Decline&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Institutional crackdowns (CFAA, CCTV, stronger security).&lt;/li&gt;
&lt;li&gt;Media portrayal = hackers as “villains.”&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="revival--today"&gt;Revival &amp;amp; Today&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Internet (BBS, IRC, textfiles.com) rekindled culture.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;DEF CON&lt;/strong&gt; (since 1993) → major hub (attendance limited, costly).&lt;/li&gt;
&lt;li&gt;Modern groups: niche forums, Urbex, tinkering communities.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="upcoming-events"&gt;Upcoming Events&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Next Meeting:&lt;/strong&gt; Alex presenting exploit on tech wireless mics.
&lt;ul&gt;
&lt;li&gt;Live demo + downloadable scripts/tools.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Resources:&lt;/strong&gt;
&lt;ul&gt;
&lt;li&gt;Slides &amp;amp; meeting minutes uploaded regularly.&lt;/li&gt;
&lt;li&gt;Workshop materials also shared for practice.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Web App Exploitation</title><link>https://www.redteam.mtu.edu/minutes/2025-04-03/</link><pubDate>Thu, 03 Apr 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-04-03/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;none&lt;/p&gt;
&lt;h2 id="talk-web-app-exploitation-by-izzy"&gt;Talk: Web App Exploitation by Izzy&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;p&gt;None&lt;/p&gt;</description></item><item><title>Physical Village Demo (eBoard Elections!)</title><link>https://www.redteam.mtu.edu/minutes/2025-03-27/</link><pubDate>Thu, 27 Mar 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-03-27/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;None&lt;/p&gt;
&lt;h2 id="talk-physical-village-demo-no-presentation"&gt;Talk: Physical Village Demo! (no presentation)&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Elections today!&lt;/li&gt;
&lt;li&gt;Congrats to the new E-board:
&lt;ul&gt;
&lt;li&gt;President: Noah H.&lt;/li&gt;
&lt;li&gt;Vice Pres: Ethan N.&lt;/li&gt;
&lt;li&gt;Secretary: Anika A.&lt;/li&gt;
&lt;li&gt;Treasurer: Dane C.&lt;/li&gt;
&lt;li&gt;CTF Chair: Tyler O.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Creating RedTeam IDs</title><link>https://www.redteam.mtu.edu/minutes/2025-03-13/</link><pubDate>Thu, 13 Mar 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-03-13/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;none&lt;/p&gt;
&lt;h2 id="talk-creating-redteam-ids-by-noah-holland"&gt;Talk: Creating RedTeam IDs by Noah Holland&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Attendance is in full effect!&lt;/li&gt;
&lt;li&gt;Other announcement!
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://forms.gle/z8StNLvCkQiwyUbN6"&gt;&lt;strong&gt;Eboard nominations are open!&lt;/strong&gt;&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Please nominate anyone you would like for any eboard position.&lt;/li&gt;
&lt;li&gt;Eboard roles are for a year long position, so if you are graduating in the Fall we request you do not run.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Elections will now be week 11&lt;/strong&gt;, we changed the consitiution bc week 13 left very little turnover time for new eboard members&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Jeopardy OSINT</title><link>https://www.redteam.mtu.edu/minutes/2025-02-20/</link><pubDate>Thu, 20 Feb 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-02-20/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://blogs.mtu.edu/computing/2025/02/14/mtu-redteam-earns-more-accolades-students-excel-in-national-cyber-league-competition/"&gt;RedTeam mentioned!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.dailydot.com/debug/lexipol-data-leak-puppygirl-hacker-polycule/"&gt;Puppygirl Polycule did what?&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-jeopardy-osint"&gt;Talk: Jeopardy OSINT!&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;New attendance policy!
&lt;ul&gt;
&lt;li&gt;Starts week 8&lt;/li&gt;
&lt;li&gt;Will be a factor for future trips&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Master Key Systems</title><link>https://www.redteam.mtu.edu/minutes/2025-02-13/</link><pubDate>Thu, 13 Feb 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-02-13/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;none&lt;/p&gt;
&lt;h2 id="talk-master-keys-by-noah-holland"&gt;Talk: Master Keys by Noah Holland&lt;/h2&gt;
&lt;p&gt;Only 5 attendees showed up (to our 4 volunteers) ;( -NH&lt;/p&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;p&gt;none&lt;/p&gt;</description></item><item><title>Social Engineering</title><link>https://www.redteam.mtu.edu/minutes/2025-01-09/</link><pubDate>Thu, 09 Jan 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2025-01-09/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;None&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-social-engineering-by-izzy-gatti"&gt;Talk: Social Engineering by Izzy Gatti&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Welcome back!&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Artificial Intelligence</title><link>https://www.redteam.mtu.edu/minutes/2024-11-14/</link><pubDate>Thu, 14 Nov 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-11-14/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/hpe-warns-of-critical-rce-flaws-in-aruba-networking-access-points/"&gt;Aruba RCE Flaw&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://nypost.com/2024/10/30/world-news/russia-fines-google-20-5-decillion-more-than-the-entire-worlds-gdp/"&gt;20 Decillion?!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-artificial-intelligence"&gt;Talk: Artificial Intelligence&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;small meeting next week
&lt;ul&gt;
&lt;li&gt;Likely hacker jeopardy or a movie&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Intro to Linux</title><link>https://www.redteam.mtu.edu/minutes/2024-11-07/</link><pubDate>Thu, 07 Nov 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-11-07/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;None&lt;/p&gt;
&lt;h2 id="talk-intro-to-linux-by-noah-holland"&gt;Talk: Intro to Linux by Noah Holland&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Sign up for Team game by 11:59 tonight!
&lt;ul&gt;
&lt;li&gt;Let an officer know if you do not have a team&lt;/li&gt;
&lt;li&gt;Have fun in the team game!&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Physical Security Demo</title><link>https://www.redteam.mtu.edu/minutes/2024-10-24/</link><pubDate>Thu, 24 Oct 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-10-24/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;None&lt;/p&gt;
&lt;h2 id="talk-physical-security-demo-no-presentation"&gt;Talk: Physical Security Demo, no presentation&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL Individual game opens tomorrow
&lt;ul&gt;
&lt;li&gt;Have fun!&lt;/li&gt;
&lt;li&gt;Make sure to submit at least 1 flag&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Digital Forensics</title><link>https://www.redteam.mtu.edu/minutes/2024-10-10/</link><pubDate>Thu, 10 Oct 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-10-10/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://news.ycombinator.com/item?id=41792500"&gt;Internet Archive was hacked!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-digital-forensics-by-mason-staedt"&gt;Talk: Digital Forensics by Mason Staedt&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;US Cyber Challenge&lt;/li&gt;
&lt;li&gt;DOD Smart Scholarship
&lt;ul&gt;
&lt;li&gt;Full ride + stipend&lt;/li&gt;
&lt;li&gt;Apply before Dec. 1st&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>NCL Prep</title><link>https://www.redteam.mtu.edu/minutes/2024-10-03/</link><pubDate>Thu, 03 Oct 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-10-03/</guid><description>&lt;p&gt;Articles Discussed:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://thehackernews.com/2024/09/new-rambo-attack-uses-ram-radio-signals.html"&gt;Air gap isn’t secure!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.theregister.com/AMP/2024/09/26/victims_lose_70k_to_play/"&gt;Google play scam&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-ncl-prep-by-ethan-norush"&gt;Talk: NCL Prep by Ethan Norush&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Sign up for NCL
&lt;ul&gt;
&lt;li&gt;Closes 10/11&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Join EPT&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Network Segmentation through SIMS</title><link>https://www.redteam.mtu.edu/minutes/2024-09-26/</link><pubDate>Thu, 26 Sep 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-09-26/</guid><description>&lt;p&gt;Definitely did not forget to do this….&lt;/p&gt;
&lt;h2 id="talk-network-segmentation-through-sims-by-ed-jankowski"&gt;Talk: Network Segmentation through SIMS by Ed Jankowski&lt;/h2&gt;
&lt;h2 id="articles"&gt;Articles:&lt;/h2&gt;
&lt;p&gt;No articles discussed&lt;/p&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Register for NCL&lt;/li&gt;
&lt;li&gt;Up Cybersecurity summit next week!&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Resume Overview</title><link>https://www.redteam.mtu.edu/minutes/2024-09-19/</link><pubDate>Thu, 19 Sep 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-09-19/</guid><description>&lt;p&gt;Go to Career Fair!&lt;/p&gt;
&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://apnews.com/article/lebanon-israel-hezbollah-pager-explosion-e9493409a0648b846fdcadffdb02d71e"&gt;Sinister attack with pagers and walkie-talkies&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://cnet.com/tech/mobile/t-mobiles-new-ai-service-could-soon-run-support-and-make-changes-for-your-account"&gt;T-Mobile AI, bad idea?&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.govtech.com/security/sea-tac-not-paying-100-bitcoin-ransom-in-august-cyber-attack"&gt;Don’t pay those crooks&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-resume-overview"&gt;Talk: Resume Overview&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Consider Senior Design Project eCTF
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://forms.gle/1NfKwynyn6pqWUxs7"&gt;form here&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;NCL interest form, closes &lt;strong&gt;Sunday&lt;/strong&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://forms.gle/1NfKwynyn6pqWUxs7"&gt;NCL Form&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>OSINT</title><link>https://www.redteam.mtu.edu/minutes/2024-09-12/</link><pubDate>Thu, 12 Sep 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-09-12/</guid><description>&lt;p&gt;On this episode of Bottom Gear we: found funny memes, doxxed a good friend, and won t-shirts!&lt;/p&gt;
&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://labs.watchtowr.com/we-spent-20-to-achieve-rce-and-accidentally-became-the-admins-of-mobi/"&gt;Always renew your domain, folks&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/researcher-sued-for-sharing-data-stolen-by-ransomware-with-media/"&gt;You can get a restraining order on data?&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-osint-by-izzy-gatti"&gt;Talk: OSINT by Izzy Gatti&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Guest speaker next week!
&lt;ul&gt;
&lt;li&gt;Network Segmentation and Automation by Ed Jankowski&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;eCTF - 2 Senior Design credits
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://forms.gle/1NfKwynyn6pqWUxs7"&gt;Fill out this form if you’re interested&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Inventory Overview &amp; Demos</title><link>https://www.redteam.mtu.edu/minutes/2024-09-05/</link><pubDate>Thu, 05 Sep 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-09-05/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://ian.sh/tsa"&gt;Become an airline pilot for free!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-inventory-overview-by-izzy-gatti"&gt;Talk: Inventory Overview by Izzy Gatti&lt;/h2&gt;
&lt;h2 id="summary"&gt;Summary:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Josh has a cool internship opportunity!
&lt;ul&gt;
&lt;li&gt;Cybersecurity intern out of L&amp;rsquo;Anse&lt;/li&gt;
&lt;li&gt;Email &lt;a href="mailto:jomsteve@mtu.edu"&gt;jomsteve@mtu.edu&lt;/a&gt; with your resume to set up a short screening interview.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Inventory! We have it, you want it!
&lt;ul&gt;
&lt;li&gt;Check out procedure&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/spreadsheets/d/1NMx1eXTdCcRDrk0v3kHiu1i1l8D7a8W4JTW7QcQOVbE/edit?gid=0#gid=0"&gt;Link to our inventory&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="demos"&gt;Demos:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;HackRF by Dane
&lt;ul&gt;
&lt;li&gt;used the HackRF to speak through the computer system&amp;rsquo;s speakers&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;WiFi Pineapple by Carter
&lt;ul&gt;
&lt;li&gt;Set up a rogue access point and redirected connected devices to a webpage&lt;/li&gt;
&lt;li&gt;&lt;a href="https://drive.google.com/drive/u/1/folders/11x8o7Qy6BcajMB12DNki4kZrK-aQwsIc"&gt;Technical Documentation for the WiFi Pineapple&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Introduction to RedTeam</title><link>https://www.redteam.mtu.edu/minutes/2024-08-29/</link><pubDate>Thu, 29 Aug 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-08-29/</guid><description>&lt;p&gt;Welcome (back) to RedTeam!&lt;/p&gt;
&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;p&gt;None&lt;/p&gt;
&lt;h2 id="talk-introduction-by-izzy-gatti"&gt;Talk: Introduction by Izzy Gatti&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;We need a bank account, and we are RedTeam at Michigan Tech Uni.&lt;/li&gt;
&lt;li&gt;New Expectations
&lt;ul&gt;
&lt;li&gt;Things like: new slides, more social aspects, and all skill accessibility&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;CRAM
&lt;ul&gt;
&lt;li&gt;Yu Cai sent this Navy challenge&lt;/li&gt;
&lt;li&gt;$125,000 prize pool!&lt;/li&gt;
&lt;li&gt;Submissions due Sept 8, 2024&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;MTU CTF
&lt;ul&gt;
&lt;li&gt;Please join if you’re interested (contact &lt;code&gt;@Ethan N&lt;/code&gt; or myself)&lt;/li&gt;
&lt;li&gt;Date TBD&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Village Demo (No Talk)</title><link>https://www.redteam.mtu.edu/minutes/2024-03-28/</link><pubDate>Thu, 28 Mar 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-03-28/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/hackers-poison-source-code--from-largest-discord-bot-platform/"&gt;Discord bots goin rouge&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.cybersecuritydive.com/news/hot-topic-12-breaches-credential-stuffing/689718/"&gt;Hop topic has bad password&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/google/googles-new-ai-search-results-promotes-sites-pushing-malware-scams/#:~:text=Google%27s%20new%20AI%2dPowered%20search,subscriptions%2C%20and%20tech%20support%20scams."&gt;Google ai wants ppl to get malware?&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-no-talk-tested-the-village-our-team-made-for-cypercon-"&gt;Talk: No talk tested the village our team made for CyperCon &amp;gt;:)&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;No meeting next due to CypherCon 💔&lt;/li&gt;
&lt;li&gt;Let the officers know if you want to run for eboard&lt;/li&gt;
&lt;li&gt;NCL individual game next weekend &amp;gt;:)&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Capture The Flag Competitions</title><link>https://www.redteam.mtu.edu/minutes/2024-03-21/</link><pubDate>Thu, 21 Mar 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-03-21/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.wired.com/story/saflok-hotel-lock-unsaflok-hack-technique/"&gt;Hmm this might be problematic&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://thehackernews.com/2024/03/russia-hackers-using-tinyturla-ng-to.html"&gt;Russia will be russia&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://securityintelligence.com/news/cisa-hackers-key-systems-offline/"&gt;Lol you don’t even have to guess who anymore&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-capture-the-flag-competitions-ryan-klemm"&gt;Talk: Capture The Flag Competitions Ryan Klemm&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Register your key for ncl or you will have to pay for your keys next semester&lt;/li&gt;
&lt;li&gt;NCL practice game starts Monday at 1pm&lt;/li&gt;
&lt;li&gt;If you want to run for any of the positions message one of the officers&lt;/li&gt;
&lt;li&gt;No meeting April 4th for CyperCon&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Incident Response Stuffs</title><link>https://www.redteam.mtu.edu/minutes/2024-03-14/</link><pubDate>Thu, 14 Mar 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-03-14/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.theverge.com/2024/3/12/24098398/roku-hackers-breach-credit-card-info"&gt;Rokukuk got hacakakkakakka&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.cnn.com/2024/03/08/politics/top-us-cybersecurity-agency-cisa-hacked/index.html"&gt;Hmm I wonder who got hacked&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-incident-response-stuffs-by-gina-adragna"&gt;Talk: Incident Response Stuffs by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL Keys have been release, please register :)))&lt;/li&gt;
&lt;li&gt;CyperCon roster has been released&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Threat Analysis &amp; Risk Assessments</title><link>https://www.redteam.mtu.edu/minutes/2024-03-07/</link><pubDate>Thu, 07 Mar 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-03-07/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.securityweek.com/hhs-aiding-organizations-hit-by-change-healthcare-cyberattack/"&gt;Hacking a healthcare provider?&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.whitehouse.gov/oncd/briefing-room/2024/02/26/memory-safety-fact-sheet/"&gt;No more C! Only rust &amp;gt;:)&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-threat-analysis--risk-assessments-by-gina-adragna"&gt;Talk: Threat Analysis &amp;amp; Risk Assessments by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Watch email for NCL keys&lt;/li&gt;
&lt;li&gt;CTF Workshop on Sunday! 2-4pm every Sunday in Rekhi G06&lt;/li&gt;
&lt;li&gt;&lt;a href="https://forms.gle/iNsTEgDwAz1fAa2f8"&gt;Fill out Cypher con interest form!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Look out for cyber seed capture the flag on March 23rd&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Movie (Cancelled)</title><link>https://www.redteam.mtu.edu/minutes/2024-02-22/</link><pubDate>Thu, 22 Feb 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-02-22/</guid><description>&lt;p&gt;Only four people showed up so no movie but don&amp;rsquo;t forget to fill out &lt;a href="https://forms.gle/6SrCBJtHva56y1YZ7"&gt;the ncl form!&lt;/a&gt;&lt;/p&gt;</description></item><item><title>Operating System Security</title><link>https://www.redteam.mtu.edu/minutes/2024-02-15/</link><pubDate>Thu, 15 Feb 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-02-15/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://nationalpost.com/news/flipper-zero-banned-canada"&gt;Flipper zero banned in Canada??&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://arstechnica.com/gadgets/2024/02/mozilla-lays-off-60-people-wants-to-build-ai-into-firefox/"&gt;Mozilla replacing positions with AI&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://thehackernews.com/2024/02/chinese-hackers-operate-undetected-in.html"&gt;Microsoft found presence of a chinese hacker group going as far as 2021 :0&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-operating-system-security-by-ryan-klemm"&gt;Talk: Operating System Security by Ryan Klemm&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLSfrKW0hHryFEmhgFb_dF8yD2Y-X7A78OPy0WvmV18ib9Cy9aQ/viewform"&gt;Fill out this form to sign up for NCL for free so you can access the gym!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Go to Ctf workshop!! It’s this Sunday 2-4pm in Rekhi G05&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Career Advice</title><link>https://www.redteam.mtu.edu/minutes/2024-02-01/</link><pubDate>Thu, 01 Feb 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-02-01/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://cybernews.com/security/billions-passwords-credentials-leaked-mother-of-all-breaches/"&gt;Big Ole Data Leak&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/new-linux-glibc-flaw-lets-attackers-get-root-on-major-distros/"&gt;Good job Linux&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.wyden.senate.gov/news/press-releases/wyden-releases-documents-confirming-the-nsa-buys-americans-internet-browsing-records-calls-on-intelligence-community-to-stop-buying-us-data-obtained-unlawfully-from-data-brokers-violating-recent-ftc-order"&gt;Big surprise from NSA&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-career-advice-by-gina-adragna"&gt;Talk: Career Advice by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScwVsus4HwJyVy8caPwdrgm8pi0u1sOoG-4R0kuwdPYKx3QlQ/viewform?usp=sf_link"&gt;Fill out this survey to help officers make club decisions!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Go to Ctf workshop!! It’s this Sunday 2-4pm in Rekhi G05&lt;/li&gt;
&lt;li&gt;Apply for SFS, only 1 month left&lt;/li&gt;
&lt;li&gt;No meeting next week due to Carni&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>GPS and AIS Spoofing</title><link>https://www.redteam.mtu.edu/minutes/2024-01-25/</link><pubDate>Thu, 25 Jan 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-01-25/</guid><description>&lt;p&gt;Articles Discussed:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/tesla-hacked-again-24-more-zero-days-exploited-at-pwn2own-tokyo/"&gt;Lol Tesla autopilot had a zero day :)))&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-gps-and-ais-spoofing-by-gina-adragna"&gt;Talk: GPS and AIS Spoofing by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScwVsus4HwJyVy8caPwdrgm8pi0u1sOoG-4R0kuwdPYKx3QlQ/viewform?usp=sf_link"&gt;Fill out this survey to help officers make club decisions!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Go to Ctf workshop!! It’s this Sunday 2-4pm in Rekhi G05&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Penetration Testing</title><link>https://www.redteam.mtu.edu/minutes/2024-01-18/</link><pubDate>Thu, 18 Jan 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-01-18/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/hacker-hijacks-orange-spain-ripe-account-to-cause-bgp-havoc/"&gt;BGP havoc!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-penetration-testing-by-ryan-jaklic"&gt;Talk: Penetration Testing by Ryan Jaklic&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScwVsus4HwJyVy8caPwdrgm8pi0u1sOoG-4R0kuwdPYKx3QlQ/viewform?usp=sf_link"&gt;Fill out this survey to help officers make club decisions!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Ctf workshop this Sunday 2-4pm in Rekhi G05&lt;/li&gt;
&lt;li&gt;Ectf starting up talk to Ryan if you need more information&lt;/li&gt;
&lt;li&gt;Look out for NCSA pent test email from Gina&lt;/li&gt;
&lt;li&gt;NCL gym opens at the end of this month&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Offensive Security in Production Enviornments</title><link>https://www.redteam.mtu.edu/minutes/2024-01-11/</link><pubDate>Thu, 11 Jan 2024 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2024-01-11/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.wired.com/story/china-redfly-power-grid-cyberattack-asia/"&gt;Yet another article about insecure power grids&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://arstechnica.com/gadgets/2024/01/ai-comes-for-your-pcs-keyboard-as-microsoft-adds-dedicated-copilot-key/"&gt;New AI stuff???&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-offensive-security-in-a-production-environment-by-gina-adragna"&gt;Talk: Offensive Security (in a Production Environment) by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Ctf workshops this semester! &lt;a href="https://forms.gle/YVjwvMZ5pWAPENK3A"&gt;Fill out form to suggest what time the workshops will be&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLSd0UjDykwyEYzGnRXOYgkN89Raf_wp2c4Yc7ed7zNb6DM2QFw/viewform?usp=sf_link"&gt;Fill out NCSA form if you want to do some pen testing!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Let Ryan know if you want to do the ectf&lt;/li&gt;
&lt;li&gt;Pick up your merch! Next week is the last week to pick them up&lt;/li&gt;
&lt;li&gt;Conference trip is in the works!&lt;/li&gt;
&lt;li&gt;Apply for cybercorps scholarship!!!&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Hacker Jeopardy</title><link>https://www.redteam.mtu.edu/minutes/2023-12-07/</link><pubDate>Thu, 07 Dec 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-12-07/</guid><description>&lt;p&gt;The Detroit Loins won Hacker Jeopardy 😦&lt;/p&gt;
&lt;p&gt;Also fill out Ryan&amp;rsquo;s forms about ctfs!!!&lt;/p&gt;
&lt;p&gt;Good luck on finals!!!&lt;/p&gt;</description></item><item><title>Hijacking Wireless Microphones (and Cloning Voices)</title><link>https://www.redteam.mtu.edu/minutes/2023-11-30/</link><pubDate>Thu, 30 Nov 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-11-30/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bankinfosecurity.com/security-firm-coo-hacked-hospitals-to-drum-up-business-a-23631"&gt;Is business in your cybersecurity company low? Well read this article to get good business ideas :))))&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-radio-project-by-alex-and-dane"&gt;Talk: Radio Project by Alex and Dane&lt;/h2&gt;
&lt;p&gt;(Link has not been posted yet)&lt;/p&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Inventory Check-Out: if you want to check out some of RedTeam’s tools, talk to a RedTeam Officer&lt;/li&gt;
&lt;li&gt;Take SAT4997 to get a tech elective credit for participating in RedTeam and NCL&lt;/li&gt;
&lt;li&gt;Ectf registration opens soon so look out for a google form on the discord soon. Probably will need to meet once a week next semester.&lt;/li&gt;
&lt;li&gt;Look out for a google from on discord about workshops for CTF skills&lt;/li&gt;
&lt;li&gt;Next meeting we will finish the movie!&lt;/li&gt;
&lt;li&gt;Let leadership know if you want to be apart of a RedTeam committee&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Registering for SAT4997</title><link>https://www.redteam.mtu.edu/minutes/2023-11-16/</link><pubDate>Thu, 16 Nov 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-11-16/</guid><description>&lt;h2 id="instructions-if-youd-like-to-register-for-sat4997"&gt;Instructions if you&amp;rsquo;d like to register for SAT4997&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Let an officer know if you get registered&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Wireless Security</title><link>https://www.redteam.mtu.edu/minutes/2023-11-09/</link><pubDate>Thu, 09 Nov 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-11-09/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.forbes.com/sites/tylerroush/2023/10/30/russian-hackers-breached-632000-doj-and-pentagon-email-addresses-in-massive-moveit-cyberattack-report-says/"&gt;Time to start phishing pentagon emails 🙂&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/discord-will-switch-to-temporary-file-links-to-block-malware-delivery/"&gt;Is discord advertising a shortage of server space as a security measure?&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://thehackernews.com/2023/11/stripedfly-malware-operated-unnoticed.html?m=1"&gt;Mailware disguised as crypto miner and wasn’t caught for five years&amp;hellip;&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-wireless-security-by-gina-adragna"&gt;Talk: Wireless Security by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Let Gina know if you are not on the Mailing list!&lt;/li&gt;
&lt;li&gt;Next week will be hacker jeopardy or 90s Hackers movie. &lt;a href="https://forms.gle/67mgiJ4X3HsaRNgD8"&gt;Click this link to vote!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Linux Fundamentals</title><link>https://www.redteam.mtu.edu/minutes/2023-10-26/</link><pubDate>Thu, 26 Oct 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-10-26/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/flipper-zero-can-now-spam-android-windows-users-with-bluetooth-alerts/"&gt;Flipper zero DDOS?&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-linux-fundamentals-by-ava-gullitti"&gt;Talk: Linux Fundamentals by Ava Gullitti&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Check the ncl team spreadsheet to see what ncl team you are on! Submit a flag for the team game or you will get banned!&lt;/li&gt;
&lt;li&gt;Secretcon is next week! No weekly meeting!&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScyPzXe68zwoM_8XKSx-etTAiRnkapqFR19FJpQctfZJ1Q2GA/viewform"&gt;Merch order! Will stay open till about week 9 to 10!&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>How to Think About (Modern) Cryptography</title><link>https://www.redteam.mtu.edu/minutes/2023-10-12/</link><pubDate>Thu, 12 Oct 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-10-12/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.wired.com/story/23andme-credential-stuffing-data-stolen/"&gt;23 and me got attacked&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.techradar.com/pro/hackers-steal-millions-after-cracking-revolut-payment-systems"&gt;They lost 20 million dollars and they have not publicly commented on the situation&amp;hellip;&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-how-to-think-about-modern-cryptography-by-ryan-klemm"&gt;Talk: How to Think About (Modern) Cryptography by Ryan Klemm&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://youtu.be/FPmQ0rnJjNc?si=toDcq1Yg2HhXBxAk"&gt;Funny video that came up during the talk&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;No meeting next week 😦&lt;/li&gt;
&lt;li&gt;Secretcon people need to buy their ticket, the air bnb has been booked!&lt;/li&gt;
&lt;li&gt;Submit a flag for NCL practice game and regular game or else you will get banned!&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScyPzXe68zwoM_8XKSx-etTAiRnkapqFR19FJpQctfZJ1Q2GA/viewform"&gt;Merch order! Will stay open till about week 9 to 10.&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>NCL Prep</title><link>https://www.redteam.mtu.edu/minutes/2023-10-05/</link><pubDate>Thu, 05 Oct 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-10-05/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/born-ontario-child-registry-data-breach-affects-34-million-people/#google_vignette"&gt;What’s the end goal to all of this hacking? Is it Russia?&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://blog.isosceles.com/the-webp-0day/"&gt;Update chrome ( * - * ;)&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-ncl-prep-by-ryan-klemm"&gt;Talk: NCL Prep by Ryan Klemm&lt;/h2&gt;
&lt;p&gt;&lt;a href="https://drive.google.com/file/d/1_vwVBAYudcM4_nWBzsgsS3f6ba5SrJ7b/view?usp=drive_link"&gt;https://drive.google.com/file/d/1_vwVBAYudcM4_nWBzsgsS3f6ba5SrJ7b/view?usp=drive_link&lt;/a&gt;&lt;/p&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/spreadsheets/d/1wgbPCQCxNLyiCfFxWWAIRVXGPvU6p4hc88SpQd5jrjI/edit?usp=sharing"&gt;Sign up for NCL and put your leader board name in the spreadsheet&lt;/a&gt; by tomorrow or you are going to get banned! :0&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScyPzXe68zwoM_8XKSx-etTAiRnkapqFR19FJpQctfZJ1Q2GA/viewform"&gt;Merch order! Plz buy stuff because the prices will go down. &amp;lt;///&amp;gt;&amp;lt;&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;If you want to be a mentor or mentee let leadership know 🙂&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Social Engineering</title><link>https://www.redteam.mtu.edu/minutes/2023-09-28/</link><pubDate>Thu, 28 Sep 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-09-28/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/national-student-clearinghouse-data-breach-impacts-890-schools/"&gt;National Student Clearing house got hack -&amp;gt; MTU got hack lol&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://retool.com/blog/mfa-isnt-mfa/"&gt;Hmm is Google&amp;rsquo;s MFA truly MFA anymore?&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-social-engineering-by-ryan-jacklic"&gt;Talk: Social Engineering by Ryan Jacklic&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLSetpxW2XHrbQGdEGLSjTyXTu0FpHJ8uGax35ZbPbB0imHulmQ/viewform"&gt;Sign up for NCL if you want a free ticket! Form closes this week 😦&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLScyPzXe68zwoM_8XKSx-etTAiRnkapqFR19FJpQctfZJ1Q2GA/viewform"&gt;Merch order!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;If you want to be a mentor or mentee let leadership know!&lt;/li&gt;
&lt;li&gt;Look out for Ectf sign up soon ( - _ - )&lt;/li&gt;
&lt;li&gt;Look out for this semester&amp;rsquo;s conference sign up. It will be released either tonight or tomorrow. The conference will be in Week 10 in St. Paul, Minnesota. The form will close next Friday and will be release on discord first \(0o0)/&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>CFAA &amp; Other Stuff</title><link>https://www.redteam.mtu.edu/minutes/2023-09-21/</link><pubDate>Thu, 21 Sep 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-09-21/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.abc.net.au/news/2023-09-20/pizza-hut-customers-affected-by-cyber-hack/102881804"&gt;pIzZa HuT gOt HaCkEd!&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.nationalreview.com/news/casino-giant-caesars-pays-15-million-ransom-to-cyber-hackers-after-breach/#:~:text=Caesars%20Entertainment%20leaders%20negotiated%20and,it%20can%20incentivize%20more%20attacks."&gt;Caesars entertainment pays 15 million on ransom&amp;hellip; and still gets hacked.&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-cfaa--other-stuff-by-gina-adragna"&gt;Talk: CFAA &amp;amp; Other Stuff by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.google.com/forms/d/e/1FAIpQLSetpxW2XHrbQGdEGLSjTyXTu0FpHJ8uGax35ZbPbB0imHulmQ/viewform"&gt;Sign up for NCL if you want a free ticket! Form closes soon 😦&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;This weekend a group is planning on working on vsCTF this Saturday. Meet in Rekhi 101 and keep your eye on capture-the-flag channel if you are interested :3)&lt;/li&gt;
&lt;li&gt;Look out for Ectf sign up soon&lt;/li&gt;
&lt;li&gt;Look out for this semester&amp;rsquo;s travel conference info next week (0o0)/&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Cybersecurity Career Advice and Resume talk</title><link>https://www.redteam.mtu.edu/minutes/2023-09-14/</link><pubDate>Thu, 14 Sep 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-09-14/</guid><description>&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.cbsnews.com/detroit/news/what-caused-the-internet-outage-at-university-of-michigan-this-week/"&gt;UofM wifi outage&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.bleepingcomputer.com/news/security/apple-zero-click-imessage-exploit-used-to-infect-iphones-with-spyware/"&gt;Apple zero-click iMessage&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-cybersecurity-career-advice-and-resume-talk-by-gina-adragna"&gt;Talk: Cybersecurity Career Advice and Resume talk by Gina Adragna&lt;/h2&gt;
&lt;h2 id="announcements"&gt;Announcements:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;GRRCON CANCELED! Leadership is working on a different conference later in the year.&lt;/li&gt;
&lt;li&gt;Career fair this Tuesday good luck!&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Cybersecurity in the Workforce</title><link>https://www.redteam.mtu.edu/minutes/2023-09-07/</link><pubDate>Thu, 07 Sep 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-09-07/</guid><description>&lt;h2 id="talk-cybersecurity-in-the-workforce-by-gina-adragna"&gt;Talk: Cybersecurity in the Workforce by Gina Adragna&lt;/h2&gt;
&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://thehackernews.com/2023/09/alert-apache-superset-vulnerabilities.html"&gt;Apache Superset Vulnerabilities Expose Servers to Remote Code Execution Attacks&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Career Fair meeting next week!&lt;/li&gt;
&lt;li&gt;Fill out Grrcon (closes next Friday) and NCL (closes end of the month) forms&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Welcome to Redteam</title><link>https://www.redteam.mtu.edu/minutes/2023-08-31/</link><pubDate>Thu, 31 Aug 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-08-31/</guid><description>&lt;h2 id="talk-welcome-to-redteam-by-gina-adragna"&gt;Talk: Welcome to Redteam by Gina Adragna&lt;/h2&gt;
&lt;h2 id="articles-discussed"&gt;Articles Discussed:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;University of Michigan security issues&lt;/li&gt;
&lt;li&gt;Conninutcut hospital hacked&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Meetings every Thursday 6-7pm in Rekhi G05&lt;/li&gt;
&lt;li&gt;Join discord, involvement link, and mailing list for current info and to send articles/chat&lt;/li&gt;
&lt;li&gt;Let Ryan (CTF coordinator) know if you are interested in the ectf (&lt;a href="https://ectf.mitre.org/"&gt;https://ectf.mitre.org/&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Hacker Jeopardy</title><link>https://www.redteam.mtu.edu/minutes/2023-04-20/</link><pubDate>Thu, 20 Apr 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-04-20/</guid><description>&lt;h2 id="we-revised-the-constutition"&gt;We revised the constutition!&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;The new copy can be found in the RedTeam drive, in the Documentation folder (&lt;a href="https://docs.google.com/document/d/15Ca5SyrwL6VLAGGn4BcyVg_x_7zb3qCE/edit?usp=sharing&amp;amp;ouid=113794027745459900632&amp;amp;rtpof=true&amp;amp;sd=true%29"&gt;https://docs.google.com/document/d/15Ca5SyrwL6VLAGGn4BcyVg_x_7zb3qCE/edit?usp=sharing&amp;ouid=113794027745459900632&amp;rtpof=true&amp;sd=true)&lt;/a&gt;.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Discord ChatGPT bot&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="hacker-jeopardy"&gt;Hacker Jeopardy&lt;/h2&gt;</description></item><item><title>Securing Large Language Models (+eBoard Elections!)</title><link>https://www.redteam.mtu.edu/minutes/2023-04-13/</link><pubDate>Thu, 13 Apr 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-04-13/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Join your NCL Team tonight!! Don&amp;rsquo;t ignore DMs, look at the Google Sheet if you&amp;rsquo;re confused.&lt;/li&gt;
&lt;li&gt;CyberTruck applications are open (&lt;a href="http://www.cybertruckchallenge.org/"&gt;http://www.cybertruckchallenge.org/&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Classified documents leaked over Discord&lt;/li&gt;
&lt;li&gt;RCE vulnerability over radio module&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-securing-large-language-models-sophia-kraus"&gt;Talk: Securing Large Language Models (Sophia Kraus)&lt;/h2&gt;
&lt;h2 id="new-e-board"&gt;New E-Board:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;CTF Chair: Ryan Klemm&lt;/li&gt;
&lt;li&gt;Secretary : Ava Gullitti&lt;/li&gt;
&lt;li&gt;Treasurer : Giovanni Bommarito&lt;/li&gt;
&lt;li&gt;Vice President: Ryan Jaklic&lt;/li&gt;
&lt;li&gt;President: Gina Adragna&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Wireless Security</title><link>https://www.redteam.mtu.edu/minutes/2023-04-06/</link><pubDate>Thu, 06 Apr 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-04-06/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL Team Game is April 14-16th. Check the sheet to make sure all your info is in, and let me know what type of team you prefer to be on (&lt;a href="https://docs.google.com/spreadsheets/d/1nhFSGfnwp_cjhNZBtSbexE8qkmpxfeEt2CzZldBCEfI/edit#gid=0"&gt;https://docs.google.com/spreadsheets/d/1nhFSGfnwp_cjhNZBtSbexE8qkmpxfeEt2CzZldBCEfI/edit#gid=0&lt;/a&gt;)&lt;/li&gt;
&lt;li&gt;E-Board elections next week. Let an officer know if you&amp;rsquo;d like to run&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Drug manufacturer ransomware&lt;/li&gt;
&lt;li&gt;Ford car auto-repossession patent&lt;/li&gt;
&lt;li&gt;ChatGPT deepfake fear&lt;/li&gt;
&lt;li&gt;RESTRICT Act (TikTok ban bill)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-wireless-security-gina-adragna"&gt;Talk: Wireless Security (Gina Adragna)&lt;/h2&gt;</description></item><item><title>Power Grid Security</title><link>https://www.redteam.mtu.edu/minutes/2023-03-23/</link><pubDate>Thu, 23 Mar 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-03-23/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL Practice game open until Sunday, 9pm&lt;/li&gt;
&lt;li&gt;If you&amp;rsquo;re going to CypherCon, check the driving sheet and make sure you&amp;rsquo;re in contact with your driver&lt;/li&gt;
&lt;li&gt;E-Board elections soon, let an officer know if you&amp;rsquo;re interested in running&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;aCropalypse - Google Pixel &amp;amp; Windows Snipping Tool have same truncation bug&lt;/li&gt;
&lt;li&gt;Russia-affiliated data breach against members of US Congress&lt;/li&gt;
&lt;li&gt;Youtube channels hacked (including LinusTechTips)&lt;/li&gt;
&lt;li&gt;Bitcoin ATM 0-day ($1.5 million)&lt;/li&gt;
&lt;li&gt;Minneapolis school district ransomware, data breach published&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-power-grid-security-sophia-kraus"&gt;Talk: Power Grid Security (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Andy Brush from DTMB Cyber</title><link>https://www.redteam.mtu.edu/minutes/2023-03-16/</link><pubDate>Thu, 16 Mar 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-03-16/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Register with your NCL keys by tomorrow night!&lt;/li&gt;
&lt;li&gt;If you got the CypherCon email and didn&amp;rsquo;t come to the meeting, please contact an officer&lt;/li&gt;
&lt;li&gt;If you are willing to / planning to drive to CypherCon, let us know so we can setup carpools&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-guest-speaker---andy-brush-from-dtmb-cyber-"&gt;Talk: Guest Speaker - Andy Brush from DTMB Cyber (&lt;a href="mailto:BrushA1@michigan.gov"&gt;BrushA1@michigan.gov&lt;/a&gt;)&lt;/h2&gt;</description></item><item><title>Steganography</title><link>https://www.redteam.mtu.edu/minutes/2023-02-23/</link><pubDate>Thu, 23 Feb 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-02-23/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;CyberSEED/NCL Form (March 1st)&lt;/li&gt;
&lt;li&gt;CypherCon From (March 3rd)&lt;/li&gt;
&lt;li&gt;Check #announcements for form links&lt;/li&gt;
&lt;li&gt;If you&amp;rsquo;re interested in SFS, application deadline is March 1st (&lt;a href="https://mtu.edu/sfs/"&gt;https://mtu.edu/sfs/&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;EU TikTok&lt;/li&gt;
&lt;li&gt;NSA Home Network Guidelines&lt;/li&gt;
&lt;li&gt;Apple Vulnerabilities&lt;/li&gt;
&lt;li&gt;Meta &amp;amp; Twitter locking security features behind paywalls&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-steganography-ryan-klemm"&gt;Talk: Steganography (Ryan Klemm)&lt;/h2&gt;</description></item><item><title>Cybersecurity Worker Shortage</title><link>https://www.redteam.mtu.edu/minutes/2023-02-02/</link><pubDate>Thu, 02 Feb 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-02-02/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;No meeting next week!&lt;/li&gt;
&lt;li&gt;If you&amp;rsquo;re interested in SFS, application deadline is March 1st (&lt;a href="https://mtu.edu/sfs/"&gt;https://mtu.edu/sfs/&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Malicious npm &amp;amp; PyPi packages&lt;/li&gt;
&lt;li&gt;GoodRx leaking customer PHI to Google &amp;amp; Facebook&lt;/li&gt;
&lt;li&gt;Power grid vulnerable to malicious EV charging systems&lt;/li&gt;
&lt;li&gt;ChatGPT acting as an interviewer&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-cybersecurity-worker-shortage-gina-adragna"&gt;Talk: Cybersecurity Worker Shortage (Gina Adragna)&lt;/h2&gt;</description></item><item><title>AI &amp; Cybersecurity</title><link>https://www.redteam.mtu.edu/minutes/2023-01-26/</link><pubDate>Thu, 26 Jan 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-01-26/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Intro to Web App Security presentation next Thursday 4-5:30pm (&lt;a href="https://events.mtu.edu/event/intro_to_web_app_security"&gt;https://events.mtu.edu/event/intro_to_web_app_security&lt;/a&gt;)&lt;/li&gt;
&lt;li&gt;Pick up T-Shirts if you haven&amp;rsquo;t&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;TSA No-Fly List leaked&lt;/li&gt;
&lt;li&gt;Adobe AI art copyright issues&lt;/li&gt;
&lt;li&gt;LastPass leak updates&lt;/li&gt;
&lt;li&gt;Hive ransomware gang infrastructure seized by DoJ&lt;/li&gt;
&lt;li&gt;T-Mobile data breach&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-ai--cybersecurity-ryan-klemm"&gt;Talk: AI &amp;amp; Cybersecurity (Ryan Klemm)&lt;/h2&gt;</description></item><item><title>CFAA &amp; Other Legal Stuff</title><link>https://www.redteam.mtu.edu/minutes/2023-01-19/</link><pubDate>Thu, 19 Jan 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-01-19/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;t-shirts are in&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;GitHub code spaces RCE vuln&lt;/li&gt;
&lt;li&gt;Twitter data breach(es)&lt;/li&gt;
&lt;li&gt;Mailchimp data breach&lt;/li&gt;
&lt;li&gt;Microsoft Azure RCE vuln&lt;/li&gt;
&lt;li&gt;War Thunder forum F-16 leaks&lt;/li&gt;
&lt;li&gt;TP-Link router buffer overflow vuln&lt;/li&gt;
&lt;li&gt;University of Texas blocking TikTok on campus wifi&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-cfaa--other-legal-stuff-sophia-kraus"&gt;Talk: CFAA &amp;amp; Other Legal Stuff (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Incident Response</title><link>https://www.redteam.mtu.edu/minutes/2023-01-12/</link><pubDate>Thu, 12 Jan 2023 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2023-01-12/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;t-shirts are in&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;ChatGPT aid in Phishing Campaigns&lt;/li&gt;
&lt;li&gt;Cyber attacks against Ukraine considered war crimes&lt;/li&gt;
&lt;li&gt;Siemens PLC Vulnerbility&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-incident-response-sophia-kraus"&gt;Talk: Incident Response (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Hacker Jeopardy</title><link>https://www.redteam.mtu.edu/minutes/2022-12-08/</link><pubDate>Thu, 08 Dec 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-12-08/</guid><description>&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Remote Car Start Exploit&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-hacker-jeopardy"&gt;Talk: Hacker Jeopardy&lt;/h2&gt;</description></item><item><title>Threat Analysis and Risk Assessments</title><link>https://www.redteam.mtu.edu/minutes/2022-12-01/</link><pubDate>Thu, 01 Dec 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-12-01/</guid><description>&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;MTU Forestry building theft&lt;/li&gt;
&lt;li&gt;US Defense Contractors not meeting cybersecurity requirements&lt;/li&gt;
&lt;li&gt;Australian govt fining companies for data breaches&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-threat-analysis-and-risk-assessments-sophia-kraus"&gt;Talk: Threat Analysis and Risk Assessments (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Cyber Warfare v. Cyber Crime</title><link>https://www.redteam.mtu.edu/minutes/2022-11-10/</link><pubDate>Thu, 10 Nov 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-11-10/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;SUBMIT GRRCON FORMS BY TOMORROW&lt;/li&gt;
&lt;li&gt;Fill out updated merch form (&lt;a href="https://forms.gle/unBBh6p2nG8tDFUE6"&gt;https://forms.gle/unBBh6p2nG8tDFUE6&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Oil &amp;amp; Gas Infrastructure Exploit&lt;/li&gt;
&lt;li&gt;Possible cyber attack on NY county voting system&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-cyber-warfare-v-cyber-crime-ryan-jaklic"&gt;Talk: Cyber Warfare v. Cyber Crime (Ryan Jaklic)&lt;/h2&gt;</description></item><item><title>Cybersecurity Awareness Training</title><link>https://www.redteam.mtu.edu/minutes/2022-11-03/</link><pubDate>Thu, 03 Nov 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-11-03/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;GRRCON REIMBURSEMENT&lt;/li&gt;
&lt;li&gt;Don&amp;rsquo;t forget to check your NCL teams (BY MIDNIGHT TONIGHT) &lt;a href="https://docs.google.com/spreadsheets/d/1V89HqnwkDDGKuPBPI_qZo8iUHkgvQ7ZkM0IJoX3es48/edit#gid=0"&gt;https://docs.google.com/spreadsheets/d/1V89HqnwkDDGKuPBPI_qZo8iUHkgvQ7ZkM0IJoX3es48/edit#gid=0&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Merch form (again, even if you already filled it out) &lt;a href="https://forms.gle/unBBh6p2nG8tDFUE6"&gt;https://forms.gle/unBBh6p2nG8tDFUE6&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;DM an officer if you are interested in CTF development&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;OpenSSL vulnerability&lt;/li&gt;
&lt;li&gt;Federal cyber validation for elections&lt;/li&gt;
&lt;li&gt;Vehicle cybersecurity demostration from Army GVSC, GRIMM, MI state police&lt;/li&gt;
&lt;li&gt;Japanese hospital ransomware attack&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-cybersecurity-awareness-training-sophia-kraus"&gt;Talk: Cybersecurity Awareness Training (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Hardware Reverse Engineering</title><link>https://www.redteam.mtu.edu/minutes/2022-10-27/</link><pubDate>Thu, 27 Oct 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-10-27/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Put NCL score in sheet (&lt;a href="https://docs.google.com/spreadsheets/d/1V89HqnwkDDGKuPBPI_qZo8iUHkgvQ7ZkM0IJoX3es48/edit#gid=0"&gt;https://docs.google.com/spreadsheets/d/1V89HqnwkDDGKuPBPI_qZo8iUHkgvQ7ZkM0IJoX3es48/edit#gid=0&lt;/a&gt;)&lt;/li&gt;
&lt;li&gt;GrrCon reimbursement&lt;/li&gt;
&lt;li&gt;Can sign up for CS4090 Cybersecurity Competitions (Do NCL for 1 free technical elective)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;SQLite Buffer Overflow&lt;/li&gt;
&lt;li&gt;Healthcare data on dark web&lt;/li&gt;
&lt;li&gt;US Cybersecurity Goals&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-hardware-reverse-engineering-sophia-kraus"&gt;Talk: Hardware Reverse Engineering (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Preventative Security</title><link>https://www.redteam.mtu.edu/minutes/2022-10-20/</link><pubDate>Thu, 20 Oct 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-10-20/</guid><description>&lt;h2 id="reminders"&gt;Reminders&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;tshirts have been ordered&lt;/li&gt;
&lt;li&gt;NCL individual games this weekend&lt;/li&gt;
&lt;li&gt;For those who attended GrrCon turn in the reimbursement form to Tom as soon as possible&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-preventative-security-gina-adragna"&gt;Talk: Preventative Security (Gina Adragna)&lt;/h2&gt;</description></item><item><title>NCL Prep</title><link>https://www.redteam.mtu.edu/minutes/2022-10-06/</link><pubDate>Thu, 06 Oct 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-10-06/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Activate your NCL keys by Sunday!! (#ncl-fall-2022)&lt;/li&gt;
&lt;li&gt;If you&amp;rsquo;re going to GrrCon, check which car you have been assigned to on the driving sheet&lt;/li&gt;
&lt;li&gt;Flare-On is ongoing if you like reverse engineering&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;LA school district ransomware, 500gb data leaked&lt;/li&gt;
&lt;li&gt;Overwatch 2 DDOS&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-ncl-prep-ryan-klemm"&gt;Talk: NCL Prep (Ryan Klemm)&lt;/h2&gt;
&lt;p&gt;&lt;a href="https://docs.google.com/presentation/d/1TNRudFeshkYQ3J0etSw3XKCGy1NJBstb/edit#slide=id.p1"&gt;https://docs.google.com/presentation/d/1TNRudFeshkYQ3J0etSw3XKCGy1NJBstb/edit#slide=id.p1&lt;/a&gt;&lt;/p&gt;</description></item><item><title>Secure Coding</title><link>https://www.redteam.mtu.edu/minutes/2022-09-29/</link><pubDate>Thu, 29 Sep 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-09-29/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Fill out GrrCon leave time sheet and request a Dean of Students absence, if you are going&lt;/li&gt;
&lt;li&gt;Activate your NCL keys by Oct. 9th (#ncl-fall-2022)&lt;/li&gt;
&lt;li&gt;SekaiCTF this weekend if you&amp;rsquo;re interested - no team size limit (#capture-the-flag)&lt;/li&gt;
&lt;li&gt;Flare-On Reverse Engineering challenge opens tomorrow - individual competiton, should be open for a few weeks&lt;/li&gt;
&lt;li&gt;Bring a laptop to the next meeting to install NCL tools! If you already know how to install a VM/WSL, getting Kali running in some form is a good start.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Large data breach in Australia (Optus)&lt;/li&gt;
&lt;li&gt;Microsoft suspending sales in Russia&lt;/li&gt;
&lt;li&gt;PowerPoint vulnerability to spread malware&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-secure-coding-ryan-klemm"&gt;Talk: Secure Coding (Ryan Klemm)&lt;/h2&gt;</description></item><item><title>CAN Bus</title><link>https://www.redteam.mtu.edu/minutes/2022-09-22/</link><pubDate>Thu, 22 Sep 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-09-22/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Activate your NCL keys (#ncl-fall-2022)&lt;/li&gt;
&lt;li&gt;DownUnder CTF starts tomorrow! (5:30am, ends 5:30am Sunday). Post in #capture-the-flag if you want to compete&lt;/li&gt;
&lt;li&gt;Fill out the merch form by Friday (&lt;a href="https://forms.gle/1wW5w1tmMMh4ByBm9"&gt;https://forms.gle/1wW5w1tmMMh4ByBm9&lt;/a&gt;)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news"&gt;News:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Rockstar attacked, GTA6 video leaked, source code allegedly acquired&lt;/li&gt;
&lt;li&gt;Hyundai uses default encryption keys for firmware&lt;/li&gt;
&lt;li&gt;Uber hacked (social engineering)&lt;/li&gt;
&lt;li&gt;Record-breaking DDOS attack&lt;/li&gt;
&lt;li&gt;More schools cyber-attacked&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-can-bus-sophia-kraus"&gt;Talk: CAN Bus (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>Social Engineering</title><link>https://www.redteam.mtu.edu/minutes/2022-09-15/</link><pubDate>Thu, 15 Sep 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-09-15/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Fill out the NCL / GrrCon interest form: &lt;a href="https://forms.gle/BuwR3X5kict6Sc5Q8"&gt;https://forms.gle/BuwR3X5kict6Sc5Q8&lt;/a&gt; (CLOSING 12am 9/19)&lt;/li&gt;
&lt;li&gt;DownUnder CTF in 1 week. Let me know if you are interested (#capture-the-flag). Low stakes, no cost or team size limit.&lt;/li&gt;
&lt;li&gt;Merch form coming soon&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="guest-speakers-jacob-hawley--isaac-from-stellantis"&gt;Guest Speakers: Jacob Hawley &amp;amp; Isaac from Stellantis&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;They hire MTU interns for CNSA/Cybersec&lt;/li&gt;
&lt;li&gt;They will be on campus from tomorrow through Career Fair next week&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-social-engineering-ryan-jaklic"&gt;Talk: Social Engineering (Ryan Jaklic)&lt;/h2&gt;</description></item><item><title>Hacking Mindset + Security Careers</title><link>https://www.redteam.mtu.edu/minutes/2022-09-08/</link><pubDate>Thu, 08 Sep 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-09-08/</guid><description>&lt;h2 id="reminders"&gt;Reminders:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Fill out the NCL / GrrCon interest form: &lt;a href="https://forms.gle/BuwR3X5kict6Sc5Q8"&gt;https://forms.gle/BuwR3X5kict6Sc5Q8&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;DownUnder CTF in 2 weekends. Let me know if you are interested (#capture-the-flag). Low stakes, no cost or team size limit.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news--articles"&gt;News &amp;amp; Articles:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;New(ish) Linux Malware&lt;/li&gt;
&lt;li&gt;School Ransomware&lt;/li&gt;
&lt;li&gt;The Queen is dead&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="talk-hacking-mindset-and-types-of-security-careers-sophia-kraus"&gt;Talk: &amp;lsquo;Hacking Mindset&amp;rsquo; and types of security careers (Sophia Kraus)&lt;/h2&gt;</description></item><item><title>General Introductions</title><link>https://www.redteam.mtu.edu/minutes/2022-09-01/</link><pubDate>Thu, 01 Sep 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-09-01/</guid><description>&lt;h2 id="introductions"&gt;Introductions&lt;/h2&gt;
&lt;h2 id="general-housekeeping"&gt;General Housekeeping:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Let Soph know if you want to do a talk&lt;/li&gt;
&lt;li&gt;NCL / GrrCon interest forms coming soon
&lt;ul&gt;
&lt;li&gt;NCL practice game Oct. 10 - 17&lt;/li&gt;
&lt;li&gt;NCL individual game Oct. 21 - 23&lt;/li&gt;
&lt;li&gt;NCL team game Nov. 4 - 6&lt;/li&gt;
&lt;li&gt;GrrCon Oct. 13 &amp;amp; 14&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="articles"&gt;Articles:&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Plex hacked&lt;/li&gt;
&lt;li&gt;Google open source bug bounty&lt;/li&gt;
&lt;li&gt;Michigan has a shortage of cybersecurity workers (&amp;lsquo;hotspot&amp;rsquo; of cybersecurity)&lt;/li&gt;
&lt;li&gt;&amp;lsquo;Kia Boys&amp;rsquo; stealing cars with a USB cord&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Security at Scale (+eBoard elections!)</title><link>https://www.redteam.mtu.edu/minutes/2022-04-14/</link><pubDate>Thu, 14 Apr 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-04-14/</guid><description>&lt;h2 id="eboard-elections"&gt;EBoard Elections&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;President: Sophie&lt;/li&gt;
&lt;li&gt;Vice-President: Gina&lt;/li&gt;
&lt;li&gt;Secretary: Ryan K.&lt;/li&gt;
&lt;li&gt;Treasurer: Ryan J.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="security-at-scale-by-john-preuth"&gt;Security at Scale by John Preuth&lt;/h2&gt;</description></item><item><title>IoMT Wearable Security</title><link>https://www.redteam.mtu.edu/minutes/2022-04-07/</link><pubDate>Thu, 07 Apr 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-04-07/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Hackers breach MailChimp’s internal tools to target crypto customers&lt;/li&gt;
&lt;li&gt;Authorities Fully Behead Hydra Dark Marketplace&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="iomt-wearable-security-by-stu-kernstock"&gt;IoMT Wearable Security by Stu Kernstock&lt;/h2&gt;</description></item><item><title>CyberAuto, CyberTruck, and CyberBoat Challenges</title><link>https://www.redteam.mtu.edu/minutes/2022-03-24/</link><pubDate>Thu, 24 Mar 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-03-24/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Arrests related to Lapsus$&lt;/li&gt;
&lt;li&gt;CVE-2022-23121&lt;/li&gt;
&lt;li&gt;Malicious npm packages target Azure developers&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="cyberauto-cybertruck-and-cyberboat-challenges-with-karl-heimer"&gt;CyberAuto, CyberTruck, and CyberBoat Challenges with Karl Heimer&lt;/h2&gt;</description></item><item><title>CAN Bus</title><link>https://www.redteam.mtu.edu/minutes/2022-03-17/</link><pubDate>Thu, 17 Mar 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-03-17/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;ACP UPS Zero Day&lt;/li&gt;
&lt;li&gt;Russian Certificate Authority&lt;/li&gt;
&lt;li&gt;Qnap nas vulnerability&lt;/li&gt;
&lt;li&gt;Nvidia data breach&lt;/li&gt;
&lt;li&gt;Kaspersky&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="can-bus-by-sophia-kraus"&gt;CAN Bus by Sophia Kraus&lt;/h2&gt;</description></item><item><title>Multi-Factor Authentication</title><link>https://www.redteam.mtu.edu/minutes/2022-02-24/</link><pubDate>Thu, 24 Feb 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-02-24/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Russia’s Sandworm Hackers Have Built a Botnet of Firewalls&lt;/li&gt;
&lt;li&gt;HermeticWIper&lt;/li&gt;
&lt;li&gt;Wordpress Backup Plugin Vulnerability&lt;/li&gt;
&lt;li&gt;IRS abandons plans to use third-party facial recognition&lt;/li&gt;
&lt;li&gt;Nfts stolen&lt;/li&gt;
&lt;li&gt;Ukraine cybersecurity situation&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="multi-factor-authentication-by-stu-kernstock"&gt;Multi-Factor Authentication by Stu Kernstock&lt;/h2&gt;</description></item><item><title>Linux Servers</title><link>https://www.redteam.mtu.edu/minutes/2022-02-17/</link><pubDate>Thu, 17 Feb 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-02-17/</guid><description>&lt;p&gt;NCL interest form&lt;/p&gt;
&lt;p&gt;Any interest in Def Con?&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Chrome 0 day&lt;/li&gt;
&lt;li&gt;Doj cyber security alert&lt;/li&gt;
&lt;li&gt;Russia hacked dod contractor&lt;/li&gt;
&lt;li&gt;Kraken botnet&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="linux-servers-by-steven-whitaker"&gt;Linux Servers by Steven Whitaker&lt;/h2&gt;</description></item><item><title>Business Email Compromise</title><link>https://www.redteam.mtu.edu/minutes/2022-02-03/</link><pubDate>Thu, 03 Feb 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-02-03/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;My2020 App&lt;/li&gt;
&lt;li&gt;What Happens When Russian Hackers Come for the Electrical Grid&lt;/li&gt;
&lt;li&gt;Log4j&lt;/li&gt;
&lt;li&gt;Tape Storage Breakthrough&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="business-email-compromise-by-jack-bergman"&gt;Business Email Compromise by Jack Bergman&lt;/h2&gt;</description></item><item><title>CFAA</title><link>https://www.redteam.mtu.edu/minutes/2022-01-27/</link><pubDate>Thu, 27 Jan 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-01-27/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Belarus Railway Hack&lt;/li&gt;
&lt;li&gt;Shipment Delivery Scams Spreading Malware&lt;/li&gt;
&lt;li&gt;Linux Pkxec PoC&lt;/li&gt;
&lt;li&gt;IRS Facial Recognition&lt;/li&gt;
&lt;li&gt;Children DDoSing School Districts&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="cfaa-by-stu-kernstock"&gt;CFAA by Stu Kernstock&lt;/h2&gt;</description></item><item><title>Cybersecurity Laws, Compliance, and Lobbying</title><link>https://www.redteam.mtu.edu/minutes/2022-01-20/</link><pubDate>Thu, 20 Jan 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-01-20/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Beijing Olympics app&lt;/li&gt;
&lt;li&gt;Ukraine cyber security alert&lt;/li&gt;
&lt;li&gt;Whitehouse expanding NSA role in cyber security&lt;/li&gt;
&lt;li&gt;Cybersecurity Maturity Model Certification&lt;/li&gt;
&lt;li&gt;Red Cross security breach&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Just a reminder that NCL is a thing but it’s pretty close to finals week. Also, anyone interested in doing some other CTFs?&lt;/p&gt;
&lt;h2 id="cybersecurity-laws-compliance-and-lobbying-by-gary-tropp"&gt;Cybersecurity Laws, Compliance, and Lobbying by Gary Tropp&lt;/h2&gt;</description></item><item><title>Incident Response</title><link>https://www.redteam.mtu.edu/minutes/2022-01-13/</link><pubDate>Thu, 13 Jan 2022 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2022-01-13/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Log4j&lt;/li&gt;
&lt;li&gt;Alexa give me a challenge&lt;/li&gt;
&lt;li&gt;Norton crypto&lt;/li&gt;
&lt;li&gt;Raspberry Pi and electromagnetic waves&lt;/li&gt;
&lt;li&gt;Colors and faker JavaScript libraries sabotaged&lt;/li&gt;
&lt;li&gt;German teen hacks Tesla cars remotely&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="incident-response-by-stu-kernstock"&gt;Incident Response by Stu Kernstock&lt;/h2&gt;</description></item><item><title>Certifications (OSCP + CEH)</title><link>https://www.redteam.mtu.edu/minutes/2021-12-02/</link><pubDate>Thu, 02 Dec 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-12-02/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Malware on Google app store&lt;/li&gt;
&lt;li&gt;Security requirements for trains&lt;/li&gt;
&lt;li&gt;China and Russia attacking satellites&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="certifications-by-stu-kernstock"&gt;Certifications by Stu Kernstock&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;How to fail your OSCP by Josh Stiebel&lt;/li&gt;
&lt;li&gt;Certified Ethical Hacker by San&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>MQTT &amp; Connected Devices</title><link>https://www.redteam.mtu.edu/minutes/2021-11-11/</link><pubDate>Thu, 11 Nov 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-11-11/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Robinhood Breach&lt;/li&gt;
&lt;li&gt;CMMC 2.0&lt;/li&gt;
&lt;li&gt;Hospitals&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="mqtt--connected-devices-by-sophia-kraus"&gt;MQTT &amp;amp; Connected Devices by Sophia Kraus&lt;/h2&gt;</description></item><item><title>Kali Linux</title><link>https://www.redteam.mtu.edu/minutes/2021-11-04/</link><pubDate>Thu, 04 Nov 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-11-04/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;US sanctions NSO and other groups for selling spyware&lt;/li&gt;
&lt;li&gt;Cybersecurity buzz words&lt;/li&gt;
&lt;li&gt;Facebook shutting down facial recognition system&lt;/li&gt;
&lt;li&gt;Squid game cryptocurrency&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="kali-linux-by-stu-kernstock"&gt;Kali Linux by Stu Kernstock&lt;/h2&gt;</description></item><item><title>C2 Infrastructure</title><link>https://www.redteam.mtu.edu/minutes/2021-10-28/</link><pubDate>Thu, 28 Oct 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-10-28/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NRA hacked&lt;/li&gt;
&lt;li&gt;TLS 1.3&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="ncl"&gt;NCL&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL Questions&lt;/li&gt;
&lt;li&gt;NCL Workshop tonight (webapp)&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="c2-infrastructure-by-matthew-chau"&gt;C2 Infrastructure by Matthew Chau&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;DNS over HTTPS&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Metasploit</title><link>https://www.redteam.mtu.edu/minutes/2021-10-21/</link><pubDate>Thu, 21 Oct 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-10-21/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Bitcoin News&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="ncl"&gt;NCL&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;NCL Preseason Recap&lt;/li&gt;
&lt;li&gt;NCL Workshops&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="metasploit-by-stu-kernstock"&gt;Metasploit by Stu Kernstock&lt;/h2&gt;</description></item><item><title>Discussing Jobs</title><link>https://www.redteam.mtu.edu/minutes/2021-10-14/</link><pubDate>Thu, 14 Oct 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-10-14/</guid><description>&lt;p&gt;Do your NCL preseason (at least one flag please)&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Lantenna Attack&lt;/li&gt;
&lt;li&gt;Missouri Gov. Mike Parson&lt;/li&gt;
&lt;li&gt;Nicolas Chaillian resigns&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Talking about jobs&lt;/p&gt;</description></item><item><title>GPS and AIS spoofing</title><link>https://www.redteam.mtu.edu/minutes/2021-10-07/</link><pubDate>Thu, 07 Oct 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-10-07/</guid><description>&lt;p&gt;NCL Keys are out, check Discord or email.&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Facebook Went Down&lt;/li&gt;
&lt;li&gt;Twitch Breached&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="gps-and-ais-spoofing-by-sophia-kraus"&gt;GPS and AIS spoofing by Sophia Kraus&lt;/h2&gt;</description></item><item><title>NMAP</title><link>https://www.redteam.mtu.edu/minutes/2021-09-23/</link><pubDate>Thu, 23 Sep 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-09-23/</guid><description>&lt;p&gt;Introductions&lt;/p&gt;
&lt;p&gt;Talked about NCL, CyberBoat, and Overflow2Fall&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;USB C in Europe&lt;/li&gt;
&lt;li&gt;Nagios vulnerability&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="nmap-talk-by-stu-kernstock"&gt;NMAP talk by Stu Kernstock&lt;/h2&gt;</description></item><item><title>NCL Discussion</title><link>https://www.redteam.mtu.edu/minutes/2021-09-02/</link><pubDate>Thu, 02 Sep 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-09-02/</guid><description>&lt;p&gt;Introductions&lt;/p&gt;
&lt;p&gt;GrrCon on the 16th and 17th&lt;/p&gt;
&lt;p&gt;Talked about NCL.&lt;/p&gt;
&lt;p&gt;Give us your talk ideas or even give a talk.&lt;/p&gt;
&lt;p&gt;Join us on involvement link at &lt;a href="https://www.involvement.mtu.edu/organization/RedTeam"&gt;https://www.involvement.mtu.edu/organization/RedTeam&lt;/a&gt;&lt;/p&gt;</description></item><item><title>History of Hacks</title><link>https://www.redteam.mtu.edu/minutes/2021-04-22/</link><pubDate>Thu, 22 Apr 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-04-22/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;China behind another hack as U.S. cybersecurity issues mount.&lt;/li&gt;
&lt;li&gt;Linux bans University of Minnesota for sending buggy patches.&lt;/li&gt;
&lt;li&gt;Russia’ Retro Lenin Museum still runs on Apple II Computers.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="eboard-elections"&gt;EBoard Elections&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Stu is president.&lt;/li&gt;
&lt;li&gt;Trevor is vice president.&lt;/li&gt;
&lt;li&gt;Matthew is secretary.&lt;/li&gt;
&lt;li&gt;Sophia is treasurer.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Join the CTF committee if you’re interested in creating challenges (dm Trevor)&lt;/p&gt;
&lt;h2 id="history-of-hacks-by-stu-kernstock-ask-for-title"&gt;History of Hacks by Stu Kernstock (ask for title)&lt;/h2&gt;</description></item><item><title>Multi-factor Authentication</title><link>https://www.redteam.mtu.edu/minutes/2021-04-15/</link><pubDate>Thu, 15 Apr 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-04-15/</guid><description>&lt;p&gt;RedTeam did very well in NCL and our advisors are very happy.&lt;/p&gt;
&lt;h2 id="great-lakes-security-conference-this-weekend"&gt;Great Lakes Security Conference this weekend.&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;There will be many high profile speakers.&lt;/li&gt;
&lt;li&gt;The associated CTF will have cash prices. $300 for 1st, $200 for 2nd, $100 for 3rd.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;FBI forcibly patching Microsoft Exchange servers.&lt;/li&gt;
&lt;li&gt;UofM CPU Security Research.&lt;/li&gt;
&lt;li&gt;EU closer to banning end to end encryption.&lt;/li&gt;
&lt;li&gt;FBI arrested man planning to blow AWS site.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="multi-factor-authentication-by-stu-kernstock"&gt;Multi-factor Authentication by Stu Kernstock&lt;/h2&gt;</description></item><item><title>NCL Team Game This Weekend</title><link>https://www.redteam.mtu.edu/minutes/2021-04-08/</link><pubDate>Thu, 08 Apr 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-04-08/</guid><description>&lt;p&gt;Great Lakes Security Conference next weekend&lt;/p&gt;
&lt;p&gt;NCL Team game this weekend&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Facebook&lt;/li&gt;
&lt;li&gt;Emissions Testing Company Breached&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>NCL Discussion</title><link>https://www.redteam.mtu.edu/minutes/2021-04-01/</link><pubDate>Thu, 01 Apr 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-04-01/</guid><description>&lt;p&gt;BlueTeam meeting (April 1st)&lt;/p&gt;
&lt;p&gt;NCL Discussion&lt;/p&gt;</description></item><item><title>Cyber Auditing</title><link>https://www.redteam.mtu.edu/minutes/2021-03-25/</link><pubDate>Thu, 25 Mar 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-03-25/</guid><description>&lt;p&gt;NCL Preseason discussion&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;ACER hit by ransomware&lt;/li&gt;
&lt;li&gt;US treasury advisory from October&lt;/li&gt;
&lt;li&gt;Flagstar data breach&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="cyber-auditing-by-guest-speaker-aaron-troschinetz"&gt;Cyber Auditing by guest speaker Aaron Troschinetz&lt;/h2&gt;</description></item><item><title>EV &amp; EVSE Security</title><link>https://www.redteam.mtu.edu/minutes/2021-03-18/</link><pubDate>Thu, 18 Mar 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-03-18/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Hiding files in Twitter images&lt;/li&gt;
&lt;li&gt;Twitter hacker pleads guilty and receives a 3 year sentence&lt;/li&gt;
&lt;li&gt;Tesla on autopilot crashes into police vehicle&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="ev--evse-security-by-sophia-kraus"&gt;EV &amp;amp; EVSE Security by Sophia Kraus&lt;/h2&gt;</description></item><item><title>Experience as an External Pentester</title><link>https://www.redteam.mtu.edu/minutes/2021-02-25/</link><pubDate>Thu, 25 Feb 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-02-25/</guid><description>&lt;p&gt;NCL signups are live. Please fill our the form within a week since we’re on a short time frame.&lt;/p&gt;
&lt;p&gt;&lt;a href="https://forms.gle/q2FZFecJNkJPpE9m9"&gt;https://forms.gle/q2FZFecJNkJPpE9m9&lt;/a&gt;&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Tax Seasons Ushers in Quickbooks Data-Theft Spike&lt;/li&gt;
&lt;li&gt;Health Website Leaks 8 Million COVID-19 Test Results&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="my-experience-as-an-external-pentester-by-sankalp-shastry"&gt;My Experience as an External Pentester by Sankalp Shastry&lt;/h2&gt;</description></item><item><title>Physical Security &amp; Access Controls</title><link>https://www.redteam.mtu.edu/minutes/2021-02-18/</link><pubDate>Thu, 18 Feb 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-02-18/</guid><description>&lt;p&gt;Dr. Cai announced the new CyberCorps Scholarship for Service program at MTU. See &lt;a href="https://www.mtu.edu/sfs/"&gt;https://www.mtu.edu/sfs/&lt;/a&gt; for more information. Benefits include full-time tuition and a $25,000 stipend per year for undergraduate students. Information sessions on March 22 and 30 by the way!&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Cybercriminal Enterprise ‘Ringleaders’ Stole $55M Via Covid-19 Themed Fraud.&lt;/li&gt;
&lt;li&gt;France identifies Russia-linked hackers in large cyber-attack.&lt;/li&gt;
&lt;li&gt;Cyber-attacks hit two French hospitals in one week.&lt;/li&gt;
&lt;li&gt;Mac Malware Targets Apple’s New M1 Processor.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="physical-security--access-controls-by-trevor-hornsby"&gt;Physical Security &amp;amp; Access Controls by Trevor Hornsby&lt;/h2&gt;
&lt;p&gt;We’re also proud to announce the “Great Lakes Security Conference” which will be hosted in partnership with NCSA and WolvSec. There will be many high-profile speakers, but if you can recommend anyone let us know. The original RedTeam@MTU and NCSA CTF will be moved to occur during the conference. The conference should be around April 16-18. More information to come.&lt;/p&gt;
&lt;p&gt;Winter WonderHack CTF is this weekend. There’ll be prizes for the top teams and possible extra credit for all participants in some classes.&lt;/p&gt;</description></item><item><title>Why Cyber Security People Get Paid</title><link>https://www.redteam.mtu.edu/minutes/2021-02-11/</link><pubDate>Thu, 11 Feb 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-02-11/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;COMB breach&lt;/li&gt;
&lt;li&gt;New malware from Chinese APT&lt;/li&gt;
&lt;li&gt;Michigan state police cannot use messaging app Signal.&lt;/li&gt;
&lt;li&gt;Emotet reverse engineering&lt;/li&gt;
&lt;li&gt;Water treatment plant hack&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Winter Wonder Hack next weekend. RedTeam will be hosting a CTF so please participate.&lt;/p&gt;
&lt;h2 id="why-cyber-security-people-get-paid-by-stu-kernstock-a-talk-about-compliance"&gt;Why Cyber Security People Get Paid by Stu Kernstock (a talk about compliance)&lt;/h2&gt;</description></item><item><title>Log Analysis</title><link>https://www.redteam.mtu.edu/minutes/2021-01-28/</link><pubDate>Thu, 28 Jan 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-01-28/</guid><description>&lt;p&gt;Stu gave some more details on Winter Wonder Hack (WWH) and the NCSA CTF. We’re taking name suggestions for the WWH CTF by the way.&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Emotet Offline after Base of Operations Raided&lt;/li&gt;
&lt;li&gt;Apple Warns of 3 IOS Zero Days&lt;/li&gt;
&lt;li&gt;Campaign Against the Infosec Community&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="log-analysis-and-stuff-by-stu-kernstock"&gt;Log Analysis and Stuff by Stu Kernstock&lt;/h2&gt;</description></item><item><title>Winter Wonder Hack &amp; NCSA CTFs</title><link>https://www.redteam.mtu.edu/minutes/2021-01-21/</link><pubDate>Thu, 21 Jan 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-01-21/</guid><description>&lt;p&gt;Stu went over the Winter Wonder Hack CTF and NCSA CTF which RedTeam will be hosting (in partnership with NCSA for the latter).&lt;/p&gt;
&lt;p&gt;Soph is also looking for budget suggestions. So message her if you have any ideas for cool things RedTeam could acquire, although the budget is basically done by the time I published this.&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Biden’s Peloton Exercise Bike&lt;/li&gt;
&lt;li&gt;Malwarebytes Hack&lt;/li&gt;
&lt;li&gt;Raindrop Malware&lt;/li&gt;
&lt;li&gt;Michigan Tech lore about Sauna John and the Pikachu hats&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="machine-learning-and-cool-things-you-can-do-with-it-by-steven-whitaker"&gt;Machine Learning and cool things you can do with it by Steven Whitaker&lt;/h2&gt;</description></item><item><title>Talk from NCSA</title><link>https://www.redteam.mtu.edu/minutes/2021-01-14/</link><pubDate>Thu, 14 Jan 2021 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2021-01-14/</guid><description>&lt;p&gt;Charlez from Networking Computing Student Association (NCSA) stopped by to talk about his organization. They have meetings on Tuesdays at 7:00pm.&lt;/p&gt;
&lt;h2 id="upcoming-events"&gt;Upcoming Events&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;BambooFox CTF&lt;/li&gt;
&lt;li&gt;Winter Wonder Hack CTF&lt;/li&gt;
&lt;li&gt;RedTeam + NCSA CTF&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;If you want to be on a CTF committee contact Stu directly. The committee may be involved with designing challenges for the WHH or RedTeam + CNSA CTF), developing infrastructure, or other tasks.&lt;/p&gt;
&lt;p&gt;You should check out CS 4090 if you plan on participating in National Cyber League (NCL).&lt;/p&gt;
&lt;p&gt;Make sure to contact Trevor if you have not gotten your mask yet.&lt;/p&gt;
&lt;h2 id="news-and-discussions"&gt;News and Discussions&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Solarwinds Attack&lt;/li&gt;
&lt;li&gt;FireEye&lt;/li&gt;
&lt;li&gt;Parler Web Scraping&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Business Email Breach Response</title><link>https://www.redteam.mtu.edu/minutes/2020-12-10/</link><pubDate>Thu, 10 Dec 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-12-10/</guid><description>&lt;p&gt;Today the alumni: Jack, John, and Trevor, were also present which is of note due to Jack giving a talk today.&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Shane H. got phished through Steam&lt;/li&gt;
&lt;li&gt;Google Drive Worm of 2017&lt;/li&gt;
&lt;li&gt;FireEye Cybersecurity Firm Breached&lt;/li&gt;
&lt;li&gt;Account Hacking Site OGUsers Hacked Again&lt;/li&gt;
&lt;li&gt;How FBI tracked Twitter hackers&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="business-email-breach-response-by-jack-bergman"&gt;Business Email Breach Response By Jack Bergman&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Breach Overview&lt;/li&gt;
&lt;li&gt;Mergers and Acquisition Leading to Compromise&lt;/li&gt;
&lt;li&gt;Misconfigurations and Pitfalls&lt;/li&gt;
&lt;li&gt;Business Email Compromise&lt;/li&gt;
&lt;li&gt;A Twist and Uncharted Territory&lt;/li&gt;
&lt;li&gt;Explaining the Operation and Guilty Conscience&lt;/li&gt;
&lt;li&gt;Lessons Learned&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Ghidra Tools and Functionalities</title><link>https://www.redteam.mtu.edu/minutes/2020-12-03/</link><pubDate>Thu, 03 Dec 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-12-03/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Massachusetts on the verge of banning police use of facial recognition&lt;/li&gt;
&lt;li&gt;ACLU suing DHS, CBP, and ICE&lt;/li&gt;
&lt;li&gt;Cyber Law and Policy.&lt;/li&gt;
&lt;li&gt;US military buying location data harvested from popular Muslim apps&lt;/li&gt;
&lt;li&gt;Balitmore Public School District hit by Ransomware&lt;/li&gt;
&lt;li&gt;New Tesla Car Bluetooth Attack&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="introduction-to-the-ghidra-sre-suite-of-tools-and-its-functionalities-by-dakoda-patterson"&gt;Introduction to the Ghidra SRE Suite of Tools and its Functionalities By Dakoda Patterson&lt;/h2&gt;
&lt;p&gt;New RedTeam Discord bot by the way&lt;/p&gt;</description></item><item><title>Kahoot</title><link>https://www.redteam.mtu.edu/minutes/2020-11-19/</link><pubDate>Thu, 19 Nov 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-11-19/</guid><description>&lt;p&gt;Advisors are happy with our performance in NCL&lt;/p&gt;
&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Platypus attack on Intel CPUs&lt;/li&gt;
&lt;li&gt;San posts a lot of articles&lt;/li&gt;
&lt;li&gt;Blue is the color of security&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;To the Kahoot game!&lt;/p&gt;</description></item><item><title>Guest Speaker from CISA</title><link>https://www.redteam.mtu.edu/minutes/2020-11-12/</link><pubDate>Thu, 12 Nov 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-11-12/</guid><description>&lt;h2 id="special-guest-kelley-goldblatt"&gt;Special guest Kelley Goldblatt&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Cybersecurity advisor for Michigan and Ohio with the Cybersecurity Infrastructure Security Agency (CISA)&lt;/li&gt;
&lt;li&gt;spoke and took questions at today’s meeting.&lt;/li&gt;
&lt;li&gt;See &lt;a href="https://www.cisa.gov/protect2020"&gt;https://www.cisa.gov/protect2020&lt;/a&gt; or #protect2020 for more information&lt;/li&gt;
&lt;li&gt;Got more questions? Ask &lt;a href="mailto:Kelley.Goldblatt@hq.DHS.gov"&gt;Kelley.Goldblatt@hq.DHS.gov&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Social Engineering</title><link>https://www.redteam.mtu.edu/minutes/2020-11-05/</link><pubDate>Thu, 05 Nov 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-11-05/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Disclosure of Chase Rewards Points exploit&lt;/li&gt;
&lt;li&gt;Criminals using Google Drive to infect hospitals with ransomware&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="social-engineering-by-sophia-kraus"&gt;Social Engineering by Sophia Kraus&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;What is it?&lt;/li&gt;
&lt;li&gt;Stages of Attack&lt;/li&gt;
&lt;li&gt;Many different techniques&lt;/li&gt;
&lt;li&gt;Protection Methods&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="ncl-team-game-this-weekend"&gt;NCL team game this weekend&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Starts 1pm on Friday&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Hashes and Password Cracking</title><link>https://www.redteam.mtu.edu/minutes/2020-10-29/</link><pubDate>Thu, 29 Oct 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-10-29/</guid><description>&lt;h2 id="news-and-discussion"&gt;News and Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Windows will remove Adobe Flash in a future update&lt;/li&gt;
&lt;li&gt;Among Us Hacking Campaign&lt;/li&gt;
&lt;li&gt;Russian Ransomware Campaign on U.S. Healthcare Sector&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="hashes-and-password-cracking-by-stu-kernstock"&gt;Hashes and Password Cracking by Stu Kernstock&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;What’s a hash?&lt;/li&gt;
&lt;li&gt;Different hashes&lt;/li&gt;
&lt;li&gt;The different tools&lt;/li&gt;
&lt;li&gt;Crackstation&lt;/li&gt;
&lt;li&gt;Hashcat&lt;/li&gt;
&lt;li&gt;John the Ripper&lt;/li&gt;
&lt;li&gt;Ophcrack&lt;/li&gt;
&lt;li&gt;Aircrack-ng&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="ncl-team-game"&gt;NCL Team Game&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Team game is upcoming&lt;/li&gt;
&lt;li&gt;Direct message Stoo if you are interested in a Team Captain role or a more competitive/educational team.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>NCL Discussion</title><link>https://www.redteam.mtu.edu/minutes/2020-10-22/</link><pubDate>Thu, 22 Oct 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-10-22/</guid><description>&lt;p&gt;Meeting minutes are pretty short due to discussion being open ended.&lt;/p&gt;
&lt;h2 id="news"&gt;News&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;The President’s Twitter account was reportedly compromised&lt;/li&gt;
&lt;li&gt;NSA’s publishes list of top 25 vulnerabilities currently targeted by Chinese hackers&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="ncl-discussion"&gt;NCL Discussion&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Cryptography&lt;/li&gt;
&lt;li&gt;OSCINT&lt;/li&gt;
&lt;li&gt;Network Analysis&lt;/li&gt;
&lt;li&gt;Etcetera.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>Hardware Reverse Engineering</title><link>https://www.redteam.mtu.edu/minutes/2020-10-08/</link><pubDate>Thu, 08 Oct 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-10-08/</guid><description>&lt;p&gt;Fill out the mask design form if you are planning to buy one.&lt;/p&gt;
&lt;h2 id="news-and-discussions"&gt;News and discussions&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Hacker Uploads Own Fingerprints to Crime Scene&lt;/li&gt;
&lt;li&gt;Mercenary Hackers in the Middle East&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="hardware-reverse-engineering-by-sophia-kraus"&gt;Hardware Reverse Engineering by Sophia Kraus&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Hardware hacking procedure&lt;/li&gt;
&lt;li&gt;Applications in forensics&lt;/li&gt;
&lt;li&gt;Using X-Rays for PCB analysis&lt;/li&gt;
&lt;li&gt;Acupuncture&lt;/li&gt;
&lt;li&gt;Basic tools&lt;/li&gt;
&lt;li&gt;Questions?&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;NCL Questions?&lt;/p&gt;</description></item><item><title>Intro to Enumeration &amp; Exploitation</title><link>https://www.redteam.mtu.edu/minutes/2020-10-01/</link><pubDate>Thu, 01 Oct 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-10-01/</guid><description>&lt;p&gt;NCL codes are out, please redeem them. We will also have a NCL informal workshop on Saturday starting at noon for a few hours. We’ll go over methods for gym challenges.&lt;/p&gt;
&lt;h2 id="news"&gt;News&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;InterPlanetary Storm Botnet&lt;/li&gt;
&lt;li&gt;Emotet Stikes Thousands of DNC Volunteers&lt;/li&gt;
&lt;li&gt;NFL and NBA players hacked&lt;/li&gt;
&lt;li&gt;Universal Health services hit by cyberattack leading to 4 deaths&lt;/li&gt;
&lt;li&gt;Detecting Deep Fakes with a Heartbeat&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="introduction-to-enumeration--exploitation-by-dakoda-patterson"&gt;Introduction to Enumeration &amp;amp; Exploitation by Dakoda Patterson&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Python and C Environments&lt;/li&gt;
&lt;li&gt;Pycharm&lt;/li&gt;
&lt;li&gt;Gcc on Linux&lt;/li&gt;
&lt;li&gt;Uncompiled Python&lt;/li&gt;
&lt;li&gt;Decompiling Python&lt;/li&gt;
&lt;li&gt;GDB, the GNU Debugger&lt;/li&gt;
&lt;li&gt;Assembly x86&lt;/li&gt;
&lt;li&gt;Objdump&lt;/li&gt;
&lt;li&gt;Ghidra&lt;/li&gt;
&lt;li&gt;Live demo&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news-and-random-discussion"&gt;News and Random Discussion&lt;/h2&gt;</description></item><item><title>Wireless Security</title><link>https://www.redteam.mtu.edu/minutes/2020-09-24/</link><pubDate>Thu, 24 Sep 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-09-24/</guid><description>&lt;p&gt;The initial purchase of NCL keys is being finalized as we met with our advisors tonight. Keys after the initial purchase are not guaranteed to arrive quickly.&lt;/p&gt;
&lt;h2 id="news"&gt;News&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Flaw in millions of IoT devices&lt;/li&gt;
&lt;li&gt;Net logon vulnerability is still out there&lt;/li&gt;
&lt;li&gt;APT41 Operative Indicted&lt;/li&gt;
&lt;li&gt;Fileless malware&lt;/li&gt;
&lt;li&gt;Gaming industry and cyberattacks&lt;/li&gt;
&lt;li&gt;Alien Android Banking Trojan&lt;/li&gt;
&lt;li&gt;Medical institutions lack security&lt;/li&gt;
&lt;li&gt;Government compliances and audits&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="wireless-security-by-matthew-chau"&gt;Wireless Security by Matthew Chau&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;WEP History&lt;/li&gt;
&lt;li&gt;Attacking WEP&lt;/li&gt;
&lt;li&gt;WPA History&lt;/li&gt;
&lt;li&gt;Attacking WPA&lt;/li&gt;
&lt;li&gt;Other wireless attacks&lt;/li&gt;
&lt;li&gt;Protected management frames&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Meeting ends at 6:45pm&lt;/p&gt;</description></item><item><title>Wireshark</title><link>https://www.redteam.mtu.edu/minutes/2020-09-17/</link><pubDate>Thu, 17 Sep 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-09-17/</guid><description>&lt;p&gt;Fill out the form on NCL and masks (&lt;a href="https://forms.gle/BEeR4csgQcB1Gu5q6"&gt;https://forms.gle/BEeR4csgQcB1Gu5q6&lt;/a&gt;)&lt;/p&gt;
&lt;p&gt;To prepare for NCL you can check CTF resources, ask questions, or look through past CTFs. In addition, once NCL keys are bought and distributed, you will will have access to the NCL gym.&lt;/p&gt;
&lt;h2 id="news"&gt;News&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Domain Controller zero day&lt;/li&gt;
&lt;li&gt;CISA advisory for Chinese threat actors recently exploiting old (now patched) vulnerabilities in F5 BIG-IP, Citrix, Pulse Secure, and Microsoft Exchange.&lt;/li&gt;
&lt;li&gt;Ransomware hitting grade schools in California.&lt;/li&gt;
&lt;li&gt;IOS 3D Pixar arbitrary code execution.&lt;/li&gt;
&lt;li&gt;Hospital gets hit by ransomware and a patient dies.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="wireshark-talk-by-stu-kernstock"&gt;WireShark talk by Stu Kernstock&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Installing Wireshark.&lt;/li&gt;
&lt;li&gt;Capturing and opening packets.&lt;/li&gt;
&lt;li&gt;Packet filtering cheat sheet.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="fiat-chrysler-automobiles-opportunities"&gt;Fiat Chrysler Automobiles Opportunities&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;@isaachermannstellantis8099 and @releasedtoast from FCA are here.&lt;/li&gt;
&lt;li&gt;FCA is recruiting for security roles at career fair.&lt;/li&gt;
&lt;li&gt;Their emails are pinned in #general if you have questions.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Meeting ends at 7:10pm&lt;/p&gt;</description></item><item><title>Network Reconnaissance Tools</title><link>https://www.redteam.mtu.edu/minutes/2020-09-10/</link><pubDate>Thu, 10 Sep 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-09-10/</guid><description>&lt;p&gt;This is the second meeting of the year and Stu starts with discussing the National Cyber League (NCL), CS 4090, and how it helps you.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;NCL costs the university money, so please utilize this resource if you commit.&lt;/li&gt;
&lt;li&gt;People skipping a semester at tech should be able to still compete in NCL.&lt;/li&gt;
&lt;li&gt;CS 4090 is a 1 credit course, repeatable 3 times. To join the class, check the resources channel.&lt;/li&gt;
&lt;li&gt;10/23/20 is the individual game. 11/6/20 is the team game.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="trevor-then-goes-over-csaw-its-history-and-how-to-join"&gt;Trevor then goes over CSAW, its history, and how to join.&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;CSAW will be taking this weekend from 9/11/20 – 9/13/20.&lt;/li&gt;
&lt;li&gt;There is no experience required.&lt;/li&gt;
&lt;li&gt;Please see the CTF or CSAWS Discord channels for more information.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="basic-network-reconnaissance-tools-by-stu-kernstock"&gt;Basic Network Reconnaissance Tools by Stu Kernstock&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Basic Networking&lt;/li&gt;
&lt;li&gt;Nmap and Zenmap&lt;/li&gt;
&lt;li&gt;Masscan&lt;/li&gt;
&lt;li&gt;Shodan&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Please remember that accessing systems from Shodan is legal grey area, and interacting with these systems is ethically wrong. Systems may include critical infrastructure or sensitive data. There are consequences.&lt;/p&gt;
&lt;p&gt;K-Day is tomorrow, feel free to hang out and meet new people!&lt;/p&gt;
&lt;p&gt;Meeting ends at 7:05pm&lt;/p&gt;</description></item><item><title>First Meeting on Discord</title><link>https://www.redteam.mtu.edu/minutes/2020-09-03/</link><pubDate>Thu, 03 Sep 2020 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/minutes/2020-09-03/</guid><description>&lt;p&gt;This is the first meeting of the year and first official meeting on Discord.&lt;/p&gt;
&lt;p&gt;Meeting began with introductions and ice breakers.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Shark boy and Lava girl: 7&lt;/li&gt;
&lt;li&gt;Spy Kids: 11&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="news-and-articles-time"&gt;News and articles time&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Ex-Cisco Administrator terminated and retaliated against Cisco&lt;/li&gt;
&lt;li&gt;Online Learning Systems DDOS’d&lt;/li&gt;
&lt;li&gt;Michigan cyber dogs&lt;/li&gt;
&lt;li&gt;NSA surveillance exposed by Snowden was illegal, U.S court rules&lt;/li&gt;
&lt;li&gt;Sankalp gives a short talk on a digital forensics paper about cooling computer components to recover data.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Meeting ends at 7:00pm&lt;/p&gt;</description></item></channel></rss>