  1. Someone on twitter referenced this very nice beginners' guide to creating shellcode: http://paraschetal.in/writing-your-own-shellcode/
  3. There's a metric shit-ton worth of videos out there. Made at cons, made by people at home... It's too much to list. Maybe you should rephrase your question to be slightly more specific?
  4. Today someone mentioned to me this free malware analysis course up on github. You'll likely need to get a book to really come to grips with it all, but on the whole this looks pretty awesome.
  10. If you wrap python, an interpreted language, into php, also an interpreted language, the processor will likely spend more time interpreting than actually doing something useful.
  11. OAuth uses a bearer token. If you have the token you can do the thing until it gets revoked. I recorded a talk by Jim Manico on the subject of OAuth. It's a cool concept.
  12. The new one is equally capable but optimized to be a tad more efficient. It doesn't run as hot, isn't as bulky, can connect to your controlling system over USB rather than ethernet (so less cable clutter, and it can power itself over USB when you use it like that so another cable gone). They've been putting work into the UI which I didn't get into yet so donno. From a technical capability standpoint they're interchangeable. Sure, the nano uses different parts, but those parts do exactly what the original parts were meant to do. If you have the one I'd say you have little incentive to get the new one. If you don't you can't get the old one new and unless you get an exceptional deal you really should go for the new one because of the support - the nano will be where the bulk of the dev time will be poured into.
  13. What I can say about my thus far brief encounters with the Nano (it's christmas and I'm going mental trying to get everything ready so I can go and record BSidesHH) is that, relative to the Mark V, it runs considerably less hot. Whatever they did to achieve this, it's very much paying off. Didn't find an easy way to open up the device, though...
