61 research outputs found

    Uso de ingeniería inversa para hacer frente al malware

    Get PDF
    Este artículo es producto del proyecto de investigación “Cyber Security Architecture for Incident Management” desarrollado en la Escuela Colombiana de Ingeniería Julio Garavito en el año 2018.Introducción: La ingeniería inversa permite deconstruir y extraer conocimiento de objetos. El uso de la inge-niería inversa en el análisis de malware es extremadamente útil para comprender las funcionalidades y los propósitos de una muestra sospechosa.Métodos: Este artículo utiliza Radare, la cual es una de las herramientas de código abierto más populares para ingeniería inversa con el objetivo de hacer frente a las amenazas de malware.Resultados: Se presenta un caso de uso relacionado al análisis de malware anti-sandbox, de forma que sea posible analizar el comportamiento de la muestra utilizando una sandbox. Además, se presenta otro caso de uso en el que se desarrolla un análisis en profundidad de una aplicación maliciosa de Android dirigida a la audiencia de un evento popular (Copa Mundial de la FIFA 2018), que permite demostrar la relevancia de las técnicas de ingeniería inversa en las estrategias de protección al usuario final.Conclusiones: Este artículo muestra cómo los resultados de un proceso de ingeniería inversa se pueden inte-grar con reglas Yara, lo que permite detectar malware, y también muestra una alternativa para generar auto-máticamente reglas Yara a través del generador yarGen.Originalidad: El uso de soluciones de ingeniería inversa de código abierto por parte de las agencias de seguri-dad del estado no ha sido discutido anteriormente, lo que hace de este artículo un elemento notable de apoyo hacia la modernización de las fuerzas militares.Limitación: Se comparten diferentes enfoques y perspectivas sobre las limitaciones en el uso de ingeniería inversa por parte de las agencias de seguridad del estado.This paper is a product of the research Project “Cyber Security Architecture for Incident Management” develo-ped in the Colombian School of Engineering Julio Garavito in the year 2018.Introduction: Reverse engineering involves deconstructing and extracting knowledge about objects. The use of reverse engineering in malware analysis is extremely useful in understanding the functionalities and purposes of a suspicious sample.Methods: This paper makes use of Radare which is one of the most popular open source tools for reverse engineering, with the aim of dealing with malware. Results: A use case related to hacking of anti-sandbox malware is presented, in such a way that it is possible to analyze the behavior of the sample using a sandbox. Additionally, another use case is presented, where an in-depth analysis of a malicious Android application aimed to the audience of a popular event (FIFA World Cup 2018) is developed, making it possible to demonstrate the relevance of reverse engineering techniques in end-user protection strategies. Conclusions: This paper shows how the results of a reverse engineering process can be integrated with Yara rules, allowing for the detection of malware on the fly, and it also shows an alternative to automatically gene-rating Yara rules through the yarGen generator. Originality: Use of Open Source reversing solutions by Colombian Law Enforcement Agencies has not been discussed previously, making this paper a notable element toward the modernization of the military forces.Limitation: Different approaches and perspectives about the limitations in the use of reverse engineering by Law Enforcement Agencies are also shared.Este artigo é produto do projeto de pesquisa “Cyber Security Architecture for Incident Management” desenvol-vido na Escuela Colombiana de Ingeniería Julio Garavito em 2018.Introdução: a engenharia reversa permite desconstruir e extrair conhecimento de objetos. O uso da engenharia reversa na análise de malware é extremamente útil para compreender as funcionalidades e os propósitos de uma amostra suspeita.Métodos: para isso, utiliza-se Radare, que é uma das ferramentas de código aberto mais populares para en-genharia reversa com o objetivo de enfrentar as ameaças de malware.Resultados: apresenta-se um caso de uso relacionado à análise de malware anti-sandbox, de forma que seja possível analisar o comportamento da amostra utilizando uma sandbox. Além disso, apresenta-se outro caso de uso em que se desenvolve uma análise em profundidade de uma aplicação maliciosa de Android dirigida à audiência de um evento popular (Copa do Mundo da FIFA 2018), que permite demonstrar a relevância das técnicas de engenharia reversa nas estratégias de proteção do usuário final.Conclusões: este artigo mostra como os resultados de um processo de engenharia reversa podem ser integra-dos com regras Yara, o que permite detectar malware, e também mostra uma alternativa para gerar automati-camente regras Yara por meio do gerador yarGen.Originalidade: o uso de soluções de engenharia reversa de código aberto por parte das agências de segurança do Estado não tem sido discutido anteriormente, o que torna este estudo um elemento notável de apoio à modernização das forças militares.Limitação: compartilham-se diferentes abordagens e perspectivas sobre as limitações no uso de engenharia reversa por parte das agências de segurança do Estad

    Valores de referencia de gases arteriales y de electrolitos en caninos de la sabana de Bogotá

    Get PDF
    Debido a la ausencia de valores de gasometría arterial que se ajusten a nuestras condiciones ambientales y a la amplia variedad de datos no actualizados en la literatura y utilizados en la práctica diaria, obtenidos con alturas, razas y equipos diferentes a los disponibles en nuestro medio, es necesario generar conocimiento propio ajustado a nuestra realidad. Se realizó una medición sistemática al azar de sangre arterial y venosa en 100 caninos sanos a la altura de la sabana de Bogotá (Chía: 2652 msnm; Cajicá: 2558 msnm; Sopó: 2650 msnm; La Calera: 2718 msnm y Bogotá: 2630 msnm), utilizando el analizador I-STAT® con cartucho EG7+. Se encontraron valores de referencia de gasometría, electrolitos, bases efectivas y pH. Los valores fueron comparados entre cuatro grupos por peso. Para cada parámetro se realizó estadística descriptiva basada en promedio, desviación estándar, error estándar, y se hallaron los límites de confianza (95 %) y los intervalos con desviación estándar (una y dos desviaciones). Se evidenció disminución de PCO2, PO2, SO2, bicarbonato, BE. El pH se encontró levemente aumentado, similar a lo reportado por autores a grandes alturas y diferentes (no corroborado estadísticamente) a reportes en literatura, en los que la altura no fue una variable. Aun así son usados frecuentemente como referencia en la práctica de pequeños animales; solo la PO2 presentó diferencias estadísticas por grupos de peso. Como conclusión, se evidenció una regulación del pH sanguíneo eficaz a 2600 msnm, con diferentes valores de bicarbonato, PCO2, PO2, BE, que indican la necesidad de obtener y utilizar valores de referencia acordes con condiciones locales

    Ruling Frameworks and Fire Use‐Conflicts in Tropical Forests of Chiapas, Mexico: A Discourse Analysis

    Get PDF
    The use of fire within tropical forests to settle agriculture and livestock systems has long been causing a bottle-neck for governmental and environmental development agencies, especially in natural forested areas with local population. An international strategy followed since many years ago is the decree of special territories with vast forests as natural protected areas (NPA). In Mexico, environmental laws can run contrary to customs and practices of natural resource-dependent communities which still use fire to farm their lands as unique livelihood activity. The chapter examines two conflicting frameworks of resource management (forest and soil) and governance in a forest village’s efforts to comply with federal policies against fires in a NPA of Chiapas, Mexico. Forest and soil management is a key locus in California village, where governance structures come into conflict with hierarchical State power. Participatory workshops and semi-structured interviews were primary research instruments for data collection and discovery of community front and backstage. Ethnography and discourse analysis were used as main tools for the analysis of information. While the State leads the conservation efforts and limits cultural activities and local actions through coercive laws, the land use and resource-dependent communities defend their access rights, and they also determine how to individual or collectively manage fires in daily activities. Finding collective solutions with horizontal-dialogue strategies represent an important issue and a pending task for the development and preservation agencies focused on forested areas. Backstage dialogue is a tool for village self-preservation when livelihood strategies are at odds with protectionist conservation efforts

    Biomass Accumulation and Carbon Storage in Pinus maximinoi, Quercus robur, Quercus rugosa, and Pinus patula from Village- Forests of Chiapas, Mexico

    Get PDF
    The Frailesca region (Chiapas, Mexico) presents a lack of forest studies and its environmental contribution. This chapter displays a first case study with preliminary research information regarding the identification of main forest trees and rural villages with best potential for biomass production and carbon storage management. Twenty two plots of 500 m2 were selected in 11 villages of the region, in order to identify the main and dominant forest trees species and then to estimate the biomass production and carbon storage in pine (Pinus maximinoi), oak (Quercus robur), holm oak (Quercus rugosa) and Mexican weeping pine (Pinus patula) species. This study shows that the largest accumulation of both biomass and carbon occurred in the pine forests and the lowest in the oak forests. Pine trees showed carbon storage of 516.75 Mg ha−1, followed by holm oaks, with 297.21 Mg ha−1; the species with the lowest value was oak, with 75.02 Mg ha−1. The forests of the 24 de Febrero villages had the highest potential for carbon storage. Deep studies are being conducted in relation to the aboveground biomass, carbon contents in trees stem, branches and leaves, and the relation to biomass dynamics and carbon stocks and other ecological aspects of village-forests

    A deletion at Adamts9-magi1 Locus is associated with psoriatic arthritis risk

    Get PDF
    Objective: Copy number variants (CNVs) have been associated with the risk to develop multiple autoimmune diseases. Our objective was to identify CNVs associated with the risk to develop psoriatic arthritis (PsA) using a genome-wide analysis approach. Methods: A total of 835 patients with PsA and 1498 healthy controls were genotyped for CNVs using the Illumina HumanHap610 BeadChip genotyping platform. Genomic CNVs were characterised using CNstream analysis software and analysed for association using the χ2 test. The most significant genomic CNV associations with PsA risk were independently tested in a validation sample of 1133 patients with PsA and 1831 healthy controls. In order to test for the specificity of the variants with PsA aetiology, we also analysed the association to a cohort of 822 patients with purely cutaneous psoriasis (PsC). Results: A total of 165 common CNVs were identified in the genome-wide analysis. We found a highly significant association of an intergenic deletion between ADAMTS9 and MAGI1 genes on chromosome 3p14.1 (p=0.00014). Using the independent patient and control cohort, we validated the association between ADAMTS9-MAGI1 deletion and PsA risk (p=0.032). Using next-generation sequencing, we characterised the 26 kb associated deletion. Finally, analysing the PsC cohort we found a lower frequency of the deletion compared with the PsA cohort (p=0.0088) and a similar frequency to that of healthy controls (p>0.3). Conclusions: The present genome-wide scan for CNVs associated with PsA risk has identified a new deletion associated with disease risk and which is also differential from PsC risk

    Compromising between European and US allergen immunotherapy schools: Discussions from GUIMIT, the Mexican immunotherapy guidelines

    Get PDF
    Background: Allergen immunotherapy (AIT) has a longstanding history and still remains the only disease-changing treatment for allergic rhinitis and asthma. Over the years 2 different schools have developed their strategies: the United States (US) and the European. Allergen extracts available in these regions are adapted to local practice. In other parts of the world, extracts from both regions and local ones are commercialized, as in Mexico. Here, local experts developed a national AIT guideline (GUIMIT 2019) searching for compromises between both schools. Methods: Using ADAPTE methodology for transculturizing guidelines and AGREE-II for evaluating guideline quality, GUIMIT selected 3 high-quality Main Reference Guidelines (MRGs): the European Academy of Allergy, Asthma and Immunology (EAACI) guideines, the S2k guideline of various German-speaking medical societies (2014), and the US Practice Parameters on Allergen Immunotherapy 2011. We formulated clinical questions and based responses on the fused evidence available in the MRGs, combined with local possibilities, patient's preference, and costs. We came across several issues on which the MRGs disagreed. These are presented here along with arguments of GUIMIT members to resolve them. GUIMIT (for a complete English version, see Supplementary data) concluded the following: Results: Related to the diagnosis of IgE-mediated respiratory allergy, apart from skin prick testing complementary tests (challenges, in vitro testing and molecular such as species-specific allergens) might be useful in selected cases to inform AIT composition. AIT is indicated in allergic rhinitis and suggested in allergic asthma (once controlled) and IgE-mediated atopic dermatitis. Concerning the correct subcutaneous AIT dose for compounding vials according to the US school: dosing tables and formula are given; up to 4 non-related allergens can be mixed, refraining from mixing high with low protease extracts. When using European extracts: the manufacturer's indications should be followed; in multi-allergic patients 2 simultaneous injections can be given (100% consensus); mixing is discouraged. In Mexico only allergoid tablets are available; based on doses used in all sublingual immunotherapy (SLIT) publications referenced in MRGs, GUIMIT suggests a probable effective dose related to subcutaneous immunotherapy (SCIT) might be: 50–200% of the monthly SCIT dose given daily, maximum mixing 4 allergens. Also, a table with practical suggestions on non-evidence-existing issues, developed with a simplified Delphi method, is added. Finally, dissemination and implementation of guidelines is briefly discussed, explaining how we used online tools for this in Mexico. Conclusions: Countries where European and American AIT extracts are available should adjust AIT according to which school is followed

    Levantamiento del velo corporativo. Panorama y perspectivas. El caso colombiano

    Get PDF
    Son múltiples y constantes los debates que se han dado en la comunidad jurídica nacional sobre permitir que los socios o accionistas de una sociedad respondan directamente con su patrimonio por las acreencias de la persona jurídica a través de la utilización de la "teoría del levantamiento del velo corporativo". Dada la importancia de este tema, expertos colombianos de primer nivel se reúnen en esta obra para exponer sus puntos de vista sobre la aplicación de esta institución en Colombia. Adicionalmente, este libro incluye el informe de ejecución del proyecto de investigación , adelantado por la línea de investigación en Derecho Comercial del Grupo de Derecho Privado de la Facultad de Jurisprudencia, el cual fue financiado por el Centro de Investigaciones, Estudios y Consultoría (CIEC) de la Universidad del Rosario.Dada la importancia de este tema, expertos colombianos de primer nivel se reúnen en esta obra para exponer sus puntos de vista sobre la aplicación de esta institución en Colombia

    GUIMIT 2019, Guía mexicana de inmunoterapia. Guía de diagnóstico de alergia mediada por IgE e inmunoterapia aplicando el método ADAPTE

    Get PDF
    corecore