All posts by Utkarsh

Solution designer with Firstsource solutions. A post grad in Networks and IT Infrastructure. Technology enthusiast, blogger, webdesigner, Network security aspirant and in love with electronics and gadgets. This blog is an attempt to share what I find interesting... almost anything @Mtaram on twitter and

How to export directory listing to text file

I did this a coupl of times and every time i had to look or the information on the web so this time i sortof thought to document it for reference and many others might find it usefull too.

It comes in handy when large list of files with their paths has to be created. As one can not type in the paths for say a directory containing 1000 or so images but to really need to do that for some data base or a gallary.

To do this we just need to type in a single lin in command promt and all s done…

1) Open the command line (cmd.exe in NT/2000/XP)
2) Navigate to the required directory using the cd command.
3) type dir /b>filelist.txt

A file called filelist.txt will be created with the directory contents. If you want to create the file list elsewhere, use a fully qualified file name or use the ..\ convention. Don’t forget that Windows uses \ not / as directory delimiters.

Can not hibernate – Insufficient System Resources Exist to Complete the API

I recently installed 2 more Gigs of RAM in my XPS 1210 making it 2.5 Gigs. Previously all was well  but now whenever i try to hibernate my laptop i get this error “Insufficient System Resources Exist to Complete the API”

What microsoft says about it.

           You use a computer that is running Microsoft Windows XP with Service Pack 2 (SP2), Microsoft Windows XP Tablet PC Edition 2005, or Microsoft Windows XP Media Center Edition 2005. When you try to put the computer in hibernation, the computer occasionally does not hibernate. When this problem occurs, you receive an error message that is similar to the following:

Insufficient System Resources Exist to Complete the API.

Then you experience this problem, the hibernate feature is not available on the computer until you restart the computer. This problem typically occurs when the computer uses 1 gigabyte (GB) or more of RAM.
A Microsoft Knowledge Base article makes it clear that this is a known bug, and offers a hotfix. After going through the simple procedure of getting the hotfix sent to me, it’s now even simpler, because the hotfix is available to anyone to download, without having to call Microsoft.]
Microsoft has released the hotfix to the public. If you have been needing the hotfix for a language other than English, you may now download it directly from Microsoft’s website.

NULL Event 2 @ SCIT Pune

Null second event which is a continuation of the first event at I2IT was at SCIT and was about Evading Firewalls: Tunneling and Application security:codeinjection.

Aseem Jakar and Murtuja Bharmal- the founders of the community talked to the students and pros present there and presented practicaly how to code inject an application by exploiting a buffer overflow and how to evadea filrewall by tunnelling where in you can use a covert channel to browse internet by using jsut icmp ping packets or log in to a shell using ssh bu encapsulating it in ICMP packet.

null

My Experience @ Ideacamp Pune 2

January 16, 2009… Attended the classes whole day long and then a meeting with ITELF [Information Technology Entrepreneurship and leadership Forum] till 0030 hrs and then had to goto POC lab to help out a friend as they had some issues with the setup. In tha lab was reminded that I had to be there at IdeaCamp at SICSR the next day and for that I had to leave by 0715 bus as I was one of the unorganizers. I thought that i might skip this time [my very first time] but left the decision to be taken in the morning. Left the lab at 0230 and still was not sure to go or not. Went to my hostel and slept the moment I fell on bed. Dont know how I woke up at 0700 and then got ready just in time to catch the 0715 bus and was at the venue after 30 minutes or so… had to waut there till 0930 for others to arrive. Then on it was just fun meeting with peeople and getting to know them and their ideas.
People came up with cool ideas as Idea Framework which talked about how to develop an Idea and then there was a presentation by PlanetAikon who provides a platform for the ideas to be developed into products. There were various ideas for the community benifit like Disaster management, Green bags, Green IT, Community Wireless Networks and Service on Mobiles. There was a unique idea by Navin Kabra [ a pune technologist ] about Pune blogs.
It was my first itme presenting a Idea. Mine was the Community wireless networks and i was taken very positively and the response was too good for a presenter like me. I had been thinking about it since long and the inspiration has been the socalfreenet.org, I camr to know about it when I was going throught the book called Wireless Hacking…
My overall experince at Ideacamp was very good. Being an organizer is a nice job and guess from now on I wud always be wanting to be a part of the organizing team. It allowed me to meet many different personalities who have immense experience in their doamin as well as life and it is these people who stand by students or newbies like us to guide our way when we are totally clueless what to do next.

Will Tata’s Nano come out to play on Republic day?

Tata Nano has been the much awaited car since last year and the interest of the people in Nano has only increased. The word is in the air that Tata’s may be making the symbolic statement this Republic Day.

According to highly placed sources at top Tata Dealers “Yes we have inputs that clearly indicate that Nano will roll out on 26 January. We are preparing for that and people are optimistic about it. There is an unending customer list registered for Nano and whenever booking starts these customers will get top priority”.

“Tata will debut Nano in the first quarter of 2009 at any cost but there is no surety of the exact date. January 26 may be the best day for the roll out as it has national significance” said Adil Jal Daukhanwala, Editor in Chief, Times Zigwheel

Internal sources in the Automotive Research Association of India (ARAI) claim that Nano has cleared ARAI tests in October.

Another highly placed TATA source thinks January 26 too early for the roll out, however the call will definitely hit the market before March.

Roadblocks faced by TATA’s Nano

nano-road-blocks-copy

sourced from Pune Mirror issue dated Jan 3, 2009.

New year bash NITI’10

Welcoming this New Year was a blast. The craziest of the crazy NITI peeps went out to freak out to Builder’s farm to freak out. The party was organized by the ex CR and current PLC member Shreeji Doshi. Builder as a host was helped in logistics by Sumtya, the heartthrob of the class.

It was a dark night and we all had the best of intentions to light it up to welcome the new year. It took us a few days to plan the much awaited class (well not all of us) trip to some remote place (the place was not to remote but as all the cell phones stopped working except for chacha’s it was) to have fun. The effort done by the peeps to get the classes cancelled for the party, the booking of the bus, arrangement for the food and booze it was all great fun. The time in the bus was real fun and once we reached the place we never even in our dreams had thought that it would be such a beautiful place. The environment was awesome. The farm house on the top of a hill with trees and farms all around and the lit up sky above us was a mesmerizing experience for all of us.

The next thing was the food that we had to make for us to eat. The BBQ was awesome and well maintained by Mr. Doubtfire, Nandi, Chungfoo and Sir John. Well it took a lot of time and effort to light up the fire but the result was worth it. The DJ was Kinji Baby who played some good and some very horrible songs. By the time the clock had struck midnight, the beginning of the New Year, two of the warriors were down and the rest were in full swing. Then followed the round of hugs and wishes for the New Year were flowing in the air.

I was out for the later part of the morning and when I woke up there were a lot many new stories to hear and believe me they all were funny and crazy in themselves.

We drove around the area till the noon and had fun in a dam reservoir where chacha lost Kinji’s specks in the pool and thanks to the rescue team to look for it under water and get it back to the poor fellow.

Then followed the brunch and we all were back to the house to have fun…. Rest all was fun and the returning was the good time……

All was good and went well. All enjoyed a lot and had one helluva time except for Akka…. But she must have had some fun…

PS3 used to crack ssl

A team of security researchers and academics has broken a core piece of internet technology. They made their work public at the 25th Chaos Communication Congress in Berlin today. The team was able to create a rogue certificate authority and use it to issue valid SSL certificates for any site they want. The user would have no indication that their HTTPS connection was being monitored/modified.

This attack is possible because of a flaw in MD5. MD5 is a hashing algorithm; each unique file has a unique hash. In 2004, a team of Chinese researchers demonstrated creating two different files that had the same MD5 hash. In 2007, another team showed theoretical attacks that took advantage of these collisions. The team focused on SSL certificates signed with MD5 for their exploit.

The first step was doing some broad scans to see what certificate authorities (CA) were issuing MD5 signed certs. They collected 30K certs from Firefox trusted CAs. 9K of them were MD5 signed. 97% of those came from RapidSSL.

Having selected their target, the team needed to generate their rogue certificate to transfer the signature to. They employed the processing power of 200 Playstation 3s to get the job done. For this task, it’s the equivalent of 8000 standard CPU cores or $20K of Amazon EC2 time. The task takes ~1-2 days to calculate. The tricky part was knowing the content of the certificate that would be issued by RapidSSL. They needed to predict two variables: the serial number and the timestamp. RapidSSL’s serial numbers were all sequential. From testing, they knew that RapidSSL would always sign six seconds after the order was acknowledged. Knowing these two facts they were able to generate a certificate in advance and then purchase the exact certificate they wanted. They’d purchase certificates to advance the serial number and then buy on the exact time they calculated.

The cert was issued to their particular domain, but since they controlled the content, they changed the flags to make themselves an intermediate certificate authority. That gave them authority to issue any certificate they wanted. All of these ‘valid’ certs were signed using SHA-1.

If you set your clock back to before August 2004, you can try out their live demo site. This time is just a security measure for the example and this would work identically with a certificate that hasn’t expired. There’s a project site and a much more detailed writeup than this.

To fix this vulnerability, all CAs are now using SHA-1 for signing and Microsoft and Firefox will be blacklisting the team’s rogue CA in their browser products.

source

HAPPY NEW YEAR 2oo9

GO GO 2008

COME COME 2009

A happy New Year! Grant that I May bring no tear to any eye When this New Year in time shall end Let it be said I’ve played the friend, Have lived and loved and labored here, And made of it a happy year.

Ring out the old, ring in the new, Ring, happy bells, across the snow: The year is going, let him go; Ring out the false, ring in the true

We will open the book.  Its pages are blank.  We are going to put words on them ourselves.  The book is called Opportunity and its first chapter is New Year’s Day.

HAPPY NEW YEAR 09

IdeaCampPune2 January 17, 09

IdeaCampPune2

When: January 17, 2009

Where: To be identified

 

About IdeaCampPune2

We are gearing up for the second edition of IdeaCampPune. This is a self-organized gathering to share ideas and see them shape by applying divergent thinking. The objective of the camp is to get people from different roles like designers, entrepreneurs, financers, creative minds, technology evangelists, product managers and marketers together to bandy ideas from everyone’s viewpoint. Ideally by end of the gathering we should have ‘proof of potential’ for our ideas.

 

Links

 

Sponsors

If IdeaCampPune makes business sense to your organization, please come forward to make this event run smooth.

 

Potential Ideas

There is no restriction to what ideas you come up with except that it should make business sense and is useful to at least a group of people. You can share with the community how your idea solves an identified problem or serve any observed need.

You can queue the ideas continually on this page and in case we get more ideas flooding, then the participants will decide which ones to discuss.

Residential Program vs non residential programs.

Currently there has been a trend in colleges to have classes around the clock. The classes are scheduled any time throughout the day and there are at times a gap of many hours in between. Consider for example my college. I am a student at Symbiosis Centre for Information technology which only has a residential program, which means that hostel  is compulsory for all students whether you like it or not.  This was my first time staying in a hostel and believe me I enjoyed a lot. Made so many friends and now it all seems like one big family.

It’s not that there are no issues at all between room mates but still one also has altercation in home with brothers and sisters too. Our day begins at 7 am and can go up to 12 in the night. The longest day which we had till now was from 9 in the morning to 12 midnight. Still it is good. We have a lot of time in between classes and people even go to watch movies if there is sufficient time between classes.

Comparing this with my previous experience from my previous college, I was in an Engineering college in Lucknow doing my Computer Engineering. The timing was 9 to 5 and it all felt like normal office. Mostly classes were back to back with one hour of break for lunch but something was missing. There was no feeling of this kind of bonding between the students like we have over here at SCIT.

The residential program teaches a lot. The sense of responsibility due to living on own and the fact that the roommates and the friends are the only people around when something happens creates an unknown sense of bonding among the students. In non residential program its difficult for the students to be together for a very long period to work on something while this not a restriction when you live in a hostel with all your friends.

One more thing I would like to mention over here is that mostly now days instead of professors industry people come to take classes and with a residential program where the students are there 24×7 the visiting faculty can schedule the lecture at any time along with their work.