<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3924558721647627441</id><updated>2011-04-22T02:52:41.122+08:00</updated><title type='text'>Egunge</title><subtitle type='html'>The disgusting detritus that falls out when you tip your computer keyboard upside down.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>19</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-6432159307327023147</id><published>2008-04-12T10:16:00.000+08:00</published><updated>2008-04-12T10:17:54.368+08:00</updated><title type='text'>Quick security checklist for webmasters</title><content type='html'>&lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt; Check your server configuration.&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; Apache has some &lt;a href="http://httpd.apache.org/docs/1.3/misc/security_tips.html" title="Apache security configuration tips"&gt;security configuration tips&lt;/a&gt; on their site and Microsoft has some   &lt;a href="http://technet2.microsoft.com/windowsserver/en/library/354f4539-982a-418c-bfe7-4d5155b83f4a1033.mspx?mfr=true" title="tech center resources for IIS"&gt;tech center resources for IIS&lt;/a&gt; on theirs. Some of these tips include information on directory permissions, server side includes, authentication and encryption.&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Stay up-to-date with the latest software updates and patches.&lt;/b&gt;&lt;/span&gt;    &lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; A common pitfall for many webmasters is to install a forum or blog on their website and then forget about it. Much like taking your car in for a tune-up, it's important to make sure you have all the latest updates for any software program you have installed. Need some tips? Blogger Mark Blair has a few &lt;a href="http://www.mblair.net/no-sweat-website-security/" title="good ones"&gt;good   ones&lt;/a&gt;, including making a list of all the software and plug-ins used for your website and keeping track of the version numbers and updates. He also suggests taking advantage of any feeds their websites may provide.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Regularly keep an eye on your log files.&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt;   Making this a habit has many great benefits, one of which is added security.   You might be surprised with what you find.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Check your site for common vulnerabilities.&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; Avoid having directories with open permissions. This is almost like leaving the front door to your home wide open, with a door mat that reads "Come on in and help yourself!" Also check for any &lt;a href="http://www.owasp.org/index.php/Cross_Site_Scripting" title="XSS"&gt;XSS&lt;/a&gt;   (cross-site scripting) and   &lt;a href="http://www.owasp.org/index.php/SQL_injection" title="SQL injection"&gt;SQL   injection&lt;/a&gt;   vulnerabilities.   Finally, choose good passwords. The Gmail support center has some good   &lt;a href="http://mail.google.com/support/bin/answer.py?answer=29409&amp;amp;topic=8266" title="guidelines"&gt;guidelines&lt;/a&gt;   to follow, which can be helpful for choosing passwords in general.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Be wary of third-party content providers.&lt;/b&gt;&lt;/span&gt;   &lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; If you're considering installing an application provided by a third party, such as a widget, counter, ad network, or webstat service, be sure to exercise due diligence. While there are lots of great third-party content on the web, it's also possible for providers to use these applications to push exploits, such as dangerous scripts, towards your visitors. Make sure the application is created by a reputable source. Do they have a legitimate website with support and contact information? Have other webmasters used the service?&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Try a Google site: search to see what's indexed.&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; This may seem a bit obvious, but it's commonly overlooked. It's always a good idea to do a sanity check and make sure things look normal. If you're not already familiar with the site: search operator, it's a way for you to restrict your search to a specific site. For example, the search &lt;a href="http://www.google.com/search?q=site%3Agoogleblog.blogspot.com" id="s4_1" title="site:googleblog.blogspot.com"&gt;site:googleblog.blogspot.com&lt;/a&gt; will   only return results from the Official Google Blog.&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Use Google's     &lt;/b&gt;&lt;a href="http://www.google.com/webmasters/" title="Webmaster console"&gt;Webmaster     Tools&lt;/a&gt;&lt;b&gt;.&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; They're free, and include all kinds of good stuff like a site status wizard and tools for managing how Googlebot crawls your site. Another nice feature is that if Google believes your site has been hacked to host malware, our &lt;a href="http://googlewebmastercentral.blogspot.com/2007/08/malware-reviews-via-webmaster-tools.html" id="jaoe" title="webmaster console will show more detailed information"&gt;webmaster   console will show more detailed   information&lt;/a&gt;, such as a sample of harmful URLs. Once you think the malware is removed, you then can request a reevaluation through Webmaster Tools. &lt;/span&gt;&lt;/div&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Use secure protocols.&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;   &lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; SSH and SFTP should be used for data transfer, rather than plain text protocols such as telnet or FTP. SSH and SFTP use encryption and are much safer. For this and many other useful tips, check out StopBadware.org's &lt;a href="http://www.stopbadware.org/home/security" id="eq0u" title="Tips for Cleaning and Securing Your Website"&gt;Tips   for Cleaning and Securing Your Website&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Read the     &lt;/b&gt;&lt;a href="http://googleonlinesecurity.blogspot.com/" id="f0oy" title="Google Online Security Blog"&gt;&lt;b&gt;Google     Online Security Blog&lt;/b&gt;&lt;/a&gt;&lt;b&gt;.&lt;/b&gt;&lt;/span&gt;   &lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; Here's some great content about online security and safety with pointers to lots of useful resources. It's a good one to add to your Google Reader feeds. :)&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul style="font-family: verdana;"&gt;&lt;li&gt;     &lt;span style="font-size:85%;"&gt;&lt;b&gt;Contact your hosting company for support.&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt; &lt;div style="margin-left: 40px; font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt; Most hosting companies have helpful and responsive support groups. If you think something may be wrong, or you simply want to make sure you're in the know, visit their website or give 'em a call. &lt;/span&gt;&lt;/div&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;We hope you find these tips helpful. If you have some of your own tips you'd like to share, feel free to leave a comment below or start a discussion in the &lt;/span&gt;&lt;a style="font-family: verdana;" href="http://groups.google.com/group/Google_Webmaster_Help" id="bgx4" title="Google Webmaster Help"&gt;Google Webmaster Help&lt;/a&gt;&lt;span style="font-family: verdana;"&gt; group. Practice safe webmastering!&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;http://googlewebmastercentral.blogspot.com/2007/09/quick-security-checklist-for-webmasters.html&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-6432159307327023147?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/6432159307327023147/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=6432159307327023147' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/6432159307327023147'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/6432159307327023147'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2008/04/quick-security-checklist-for-webmasters.html' title='Quick security checklist for webmasters'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-8956477254621993205</id><published>2008-04-09T00:42:00.000+08:00</published><updated>2008-04-09T00:44:47.315+08:00</updated><title type='text'>My site's been hacked - now what?</title><content type='html'>&lt;span style="font-family: verdana;font-size:85%;" &gt;All right, you got hacked. It happens to many webmasters, even despite the hard work you devote to prevent this type of thing from happening. Prevention tips include keeping your site updated with the latest software and patches, creating an account with &lt;a href="https://www.google.com/webmasters/tools/" id="drui" title="Google Webmaster Tools"&gt;Google Webmaster Tools&lt;/a&gt;&lt;a href="http://googlewebmastercentral.blogspot.com/2007/09/quick-security-checklist-for-webmasters.html" id="rctb" title="Quick Security Checklist"&gt;Quick Security Checklist&lt;/a&gt; we posted last year.)&lt;br /&gt;&lt;br /&gt;Remember that you're not alone—hacked sites are becoming increasingly common. Getting hacked can result in your site being infected with badware (more specifically malware, one type of badware). Take a look at &lt;a href="http://www.stopbadware.org/" id="lbjp" title="StopBadware"&gt;StopBadware&lt;/a&gt;'s recently released report on &lt;a href="http://www.stopbadware.org/pdfs/trends_in_badware_2007.pdf" id="im6r" title="Trends in Badware 2007"&gt;Trends in Badware 2007&lt;/a&gt;&lt;a href="http://googleonlinesecurity.blogspot.com/2008/02/all-your-iframe-are-point-to-us.html" id="y4la" title="all your iframe are belong to us"&gt;this post&lt;/a&gt;&lt;a href="http://googleonlinesecurity.blogspot.com/" id="s:ol" title="Google Online Security Blog"&gt;Google Online Security Blog&lt;/a&gt; which highlights the increasing number of search results containing a URL labeled as harmful. For even more in-depth technical reports on the analysis of web-based malware, see &lt;a href="http://www.usenix.org/events/hotbots07/tech/full_papers/provos/provos.pdf" id="h4j1" title="The Ghost in the Browser"&gt;The Ghost in the Browser&lt;/a&gt; (pdf) and this &lt;a href="http://research.google.com/archive/provos-2008a.pdf" id="y9.d" title="technical report"&gt;technical report&lt;/a&gt; (pdf) on drive-by downloads. Read these, and you'll have a much better understanding of the scope of the problem. They also include some real examples for different types of malware.&lt;br /&gt;&lt;br /&gt;The first step in any case should be to contact your hosting provider, if you have one. Often times they can handle most of the technical heavy lifting for you. Lots of webmasters use shared hosting, which can make it difficult to do some of the things listed below. Certain tips labeled with an asterisk (*) are cases in which webmasters using shared hosting will most likely require assistance from their hosting provider. In the case that you do have full control over your server, we recommend covering these four bases:&lt;br /&gt;&lt;br /&gt;&lt;b id="e-nh"&gt;Getting your site off-line&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt; to see what's being indexed, keeping tabs on your log files to make sure nothing fishy's going on, etc. (There's more information in the  for a comprehensive analysis of threats and trends over the previous year.  Check out  on the &lt;/span&gt; &lt;ul id="v7yt" style="background-color: rgb(255, 255, 255); font-family: verdana;"&gt;&lt;li id="o1.."&gt;&lt;span style="font-size:85%;"&gt;     Take your site off-line temporarily, at least until you know you've fixed things.*   &lt;/span&gt;&lt;/li&gt;&lt;li id="lo1y"&gt;&lt;span style="font-size:85%;"&gt;     If you can't take it off-line, return a &lt;a href="http://www.google.com/support/webmasters/bin/answer.py?answer=83040" id="s.a3" title="503 status code"&gt;503 status code&lt;/a&gt; to prevent it from being crawled.    &lt;/span&gt;&lt;/li&gt;&lt;li id="anw1"&gt;&lt;span style="font-size:85%;"&gt;     In the Webmaster Tools, use the &lt;a href="http://www.google.com/support/webmasters/bin/answer.py?answer=61062&amp;amp;topic=8459" id="zqat" title="URL removal tool"&gt;URL removal tool&lt;/a&gt; to remove any hacked pages or URLs from search results that may have been added. This will prevent the hacked pages from being served to users.&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt;&lt;br /&gt;&lt;b id="f3vr"&gt;Damage Assessment&lt;/b&gt;&lt;b id="hmzo"&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt; &lt;ul id="nxke" style="background-color: rgb(255, 255, 255); font-family: verdana;"&gt;&lt;li id="cvo4"&gt;&lt;span style="font-size:85%;"&gt;     It's a good idea to figure out exactly what the hacker was after.   &lt;/span&gt;&lt;/li&gt;&lt;ul id="q9du"&gt;&lt;li id="g5-e"&gt;&lt;span style="font-size:85%;"&gt;       Were they looking for sensitive information?&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="ulpf"&gt;&lt;span style="font-size:85%;"&gt;       Did they want to gain control of your site for other purposes?&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;li id="j_db"&gt;&lt;span style="font-size:85%;"&gt;     Look for any modified or uploaded files on your web server.   &lt;/span&gt;&lt;/li&gt;&lt;li id="ui6g"&gt;&lt;span style="font-size:85%;"&gt; Check your server logs for any suspicious activity, such as failed login attempts, command history (especially as root), unknown user accounts, etc.&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="gxfi"&gt;&lt;span style="font-size:85%;"&gt;     Determine the scope of the problem—do you have other sites that may be affected?&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt;&lt;br /&gt;&lt;b id="j37c"&gt;Recovery&lt;/b&gt;&lt;br /&gt;&lt;/span&gt;&lt;ul id="nso5" style="background-color: rgb(255, 255, 255); font-family: verdana;"&gt;&lt;li id="m.qz"&gt;&lt;span style="font-size:85%;"&gt; The absolute best thing to do here is a complete reinstall of the OS from a trusted source. It's the only way to be completely sure you've removed everything the hacker may have done.*&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="afx8"&gt;&lt;span style="font-size:85%;"&gt; After a fresh re-installation, use the latest backup you have to restore your site. Don't forget to make sure the backup is clean and free of hacked content too.*&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="aoc-"&gt;&lt;span style="font-size:85%;"&gt; Patch any software packages to the latest version. This includes things such as weblog platforms, content management systems, or any other type of third-party software installed.&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="q:ut"&gt;&lt;span style="font-size:85%;"&gt;     Change your passwords - &lt;a id="s0b6" href="https://www.google.com/accounts/PasswordHelp" target="_blank"&gt;https://www.google.com/account&lt;wbr id="l4cp"&gt;s/PasswordHelp&lt;/a&gt;&lt;/span&gt;   &lt;/li&gt;&lt;/ul&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt;&lt;br /&gt;&lt;b id="xv14"&gt;Restoring your online presence&lt;br /&gt;&lt;/b&gt;&lt;/span&gt; &lt;ul id="d7j_" style="background-color: rgb(255, 255, 255); font-family: verdana;"&gt;&lt;li id="m7yf"&gt;&lt;span style="font-size:85%;"&gt;     Get your system back online.&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="oenp"&gt;&lt;span style="font-size:85%;"&gt;     If you're a Webmaster Tools user, sign in to your account&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;ul id="h9xj"&gt;&lt;li id="wba4"&gt;&lt;span style="font-size:85%;"&gt;       If your site was flagged as having malware, request a review to determine whether your site is clean     &lt;/span&gt;&lt;/li&gt;&lt;li id="euut"&gt;&lt;span style="font-size:85%;"&gt; If you used the URL removal tool on URLs which you do want in the index, request that Webmaster Tools re-include your content by revoking the removal.&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;li id="b2tf"&gt;&lt;span style="font-size:85%;"&gt;     Keep an eye on things, as the hacker may try to return.   &lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt;&lt;br /&gt;Answers to other questions you may be asking:&lt;br /&gt;&lt;br /&gt;Q: Is it better to take my site off-line or use robots.txt to prevent it from being crawled?&lt;br /&gt;A: Taking it off-line is a better way to go; this prevents any malware or badware from being served to users, and prevents hackers from further abusing the system.&lt;br /&gt;&lt;br /&gt;Q: Once I've fixed my site, what's the fastest way to get re-crawled?&lt;br /&gt;A: The best way, regardless of whether or not your site got hacked, is to follow the &lt;a href="http://www.google.com/support/webmasters/bin/answer.py?answer=34397" id="k743" title="Webmaster Help Center guidelines"&gt;Webmaster Help Center guidelines&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Q: I've cleaned it up, but will Google penalize me if the hacker linked to any bad neighborhoods?&lt;br /&gt;A: We'll try not to. We're pretty good at making sure good sites don't get penalized by actions of hackers and spammers. To be safe, completely remove any links the hackers may have added.&lt;br /&gt;&lt;br /&gt;Q: What if this happened on my home machine?&lt;br /&gt;A: All of the above still applies. You'll want to take extra care to clean it up; if you don't, it's likely the same thing will happen again. A complete re-install of the OS is ideal.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt;Additional resources you may find helpful:&lt;br /&gt;&lt;/span&gt;&lt;ul style="font-family: verdana;" id="en7v"&gt;&lt;li id="weg4"&gt;&lt;span style="font-size:85%;"&gt;     If your site's been flagged by Google as serving malware, we'll &lt;a href="http://googlewebmastercentral.blogspot.com/2006/11/badware-alerts-for-your-sites.html" id="c2x8" title="alert you"&gt;alert you&lt;/a&gt; when you visit &lt;a href="https://www.google.com/webmasters/tools/" id="r8xu" title="Webmaster Tools"&gt;Webmaster Tools&lt;/a&gt;.&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="lw.k"&gt;&lt;span style="font-size:85%;"&gt;     Don't forget about the &lt;a href="http://groups.google.com/group/Google_Webmaster_Help" id="k0xy" title="Google Webmaster Help group"&gt;Google Webmaster Help Group&lt;/a&gt;; it's full of extremely knowledgeable users, and Googlers as well. For a nice, on-topic example, check out &lt;a href="http://groups.google.com/group/Google_Webmaster_Help-Indexing/browse_thread/thread/98cd67810dc69942/72809bf28e8e039a" id="h90n" title="this thread"&gt;this thread&lt;/a&gt;. There's also a &lt;a href="http://groups.google.com/group/stopbadware" id="uf4k" title="Stop Badware group"&gt;Stop Badware group&lt;/a&gt;.&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;li id="d8yr"&gt;&lt;span style="font-size:85%;"&gt;     Matt Cutts recently posted &lt;a href="http://www.mattcutts.com/blog/three-tips-to-protect-your-wordpress-installation/" id="hhue" title="three tips to protect your WordPress installation"&gt;Three tips to protect your WordPress installation&lt;/a&gt; on his blog, and there are lots of great comments below the post as well.&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-family: verdana;font-size:85%;" &gt;&lt;br /&gt;Feel free to leave additional tips you have in the comments.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://googlewebmastercentral.blogspot.com/2008/04/my-sites-been-hacked-now-what.html&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-8956477254621993205?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/8956477254621993205/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=8956477254621993205' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/8956477254621993205'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/8956477254621993205'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2008/04/my-sites-been-hacked-now-what.html' title='My site&apos;s been hacked - now what?'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-1294671644597962686</id><published>2007-11-08T11:38:00.000+08:00</published><updated>2007-11-08T11:40:43.140+08:00</updated><title type='text'>Google's Android</title><content type='html'>&lt;span style="font-family: trebuchet ms;font-size:85%;" &gt;&lt;b&gt;Google has launched an open operating system for mobile phones, called Android. It has also formed an Open Handset Alliance with 33 partners, promising "better, cheaper" mobile phones.&lt;/b&gt; &lt;/span&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;What is Android?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Android is a series of software tools built by Google designed to power a next generation of mobile phone handsets. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;The tools are based on Linux - and so are open source and free to use. It means any one can develop software for the platform and that Android itself can be tailored for individual phones, networks and potentially users. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;What is the Open Handset Alliance?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Thirty four companies, including Google, have formed an alliance to promote Android and to develop features and handsets to take advantage of the platform. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Companies include handset manufacturers such as LG, HTC, Motorola and Samsung, chip firms such as Qualcomm and mobile networks like T-Mobile and China Mobile. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;What is different about Android?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Google is stressing the open nature of the platform. Operating systems on current phones - such as Windows Mobile, RIM, Symbian and Palm - are proprietorial and have to be licensed for use. Google believes it will be easier and quicker to develop new applications for Android than the other systems. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;What kinds of features and phones will we see?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;That is the big question. Google and its partners believe that the new phones will make the internet experience on a mobile "better than on a PC". &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;But they have given little details about how this will be achieved, except to say Android includes an advanced web browser.  &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Most mobile web experiences are hampered by the limitations of the browser and screen resolution of the handset. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;But devices such as the Apple iPhone and Nokia N800 - which are not powered by Android - are already showing the potential for a PC-like experience on a mobile device. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Google and partners have said the new phones will be able to make web experiences, such as video, sharing content and social networking, much easier on a handset. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;The first phones are not due until the second half of 2008 but developers will be able to get a look at the Android tools from next week. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;Will my current phone work with Android?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;No. You will have to buy a new phone that is running the Android platform. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;Does that mean current phones are obsolete?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Not at all. Rival platform systems, such as Symbian, Palm, Windows Mobile and Blackberry, will continue to exist on an ever expanding array of devices. The companies behind all these platforms say they are also working on more accessible web experiences on future devices. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;What has the reaction been to Google's big jump into mobiles?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Mixed. Analysts are emphasising the impressive partners Google has secured. But it is clear that none of the handset partners in the alliance are ditching deals with existing platforms in favour of Android. Google's system will be part of the mix. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Forrester analyst Charlie Golvin wrote: "Paradoxically, Android will increase complexity for developers initially since it represents yet another platform to support." &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt;  &lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt;  &lt;span style="font-size:85%;"&gt;Technology writer Om Malik has described the move as a "massive PR move, with nothing to show for it right now". &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;He added: "The partners - with the exception of HTC and T-Mobile - are companies who are, in cricketing parlance, on the backfoot. Motorola, for instance is not exactly a bastion of handset excellence."&lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt; What are the business implications of the Google deal?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;It is clear that Linux - the open source operating system - is going to be a big player in the mobile space. Android is based on Linux and there are other Linux-based mobile OSes in existence, such as OpenMoko, LiMo and Qtopia. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;ABI Research predicts that Mobile Linux will be the fastest growing smartphone operating system over the next five years. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Linux-based smartphones will account for about 31% of such devices by 2012, the analysts have reported. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;&lt;b&gt;Why is Google doing this?&lt;/b&gt; &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;There are more people with mobile phones with access to the net right now than there are PCs with online connections. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;This is a massive potential market for Google - and every other online firm - that is yet to be tapped and developed. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;Improving the mobile web for all is a rising tide that will float all boats, including the Google battleship. &lt;/span&gt;&lt;/p&gt;&lt;p style="font-family: trebuchet ms;"&gt; &lt;span style="font-size:85%;"&gt;More people online means more people using Google's services, which means more advertising revenue for the firm.&lt;/span&gt;&lt;/p&gt;&lt;span style="font-size:85%;"&gt;&lt;a href="http://news.bbc.co.uk/1/hi/technology/7080758.stm"&gt;http://news.bbc.co.uk/1/hi/technology/7080758.stm&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-1294671644597962686?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/1294671644597962686/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=1294671644597962686' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/1294671644597962686'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/1294671644597962686'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/11/googles-android.html' title='Google&apos;s Android'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-8620799071095764031</id><published>2007-10-21T20:07:00.000+08:00</published><updated>2007-10-21T20:08:20.734+08:00</updated><title type='text'>Windows Seven: Think 2010</title><content type='html'>&lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;Windows Seven now has an official ship target — 2010.&lt;/span&gt;&lt;/p&gt; &lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;At  &lt;a href="http://micromiel.com/2007/07/20/bye-bye-bill-gates/"&gt;Microsoft’s Global Exchange (MGX) annual sales conference in Orlando&lt;/a&gt; this week, Microsoft shared a bit more — albeit at a high level — on Windows Seven, according to a copy of a slide deck I saw that was distributed to the field sales force during the conference. Among the information shared was that Microsoft is anticipating it will take at least three years from now to get the next version of Windows client out the door.&lt;/span&gt;&lt;/p&gt; &lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;Last time anyone got Microsoft to talk dates about Windows Seven, the next big Windows client release, &lt;a href="http://blogs.zdnet.com/microsoft/?p=253"&gt;a Windows exec slipped up and said something about 2009&lt;/a&gt;.&lt;/span&gt;&lt;/p&gt; &lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;Microsoft officials told MGX attendees that the company is currently internally planning Windows Seven. So far, the company has determined Windows Seven will come in both 32- and 64-bit flavors. No word on how many SKUs or any kind of guidance on features was provided, but Microsoft did say it would address both consumer and business segments with Windows Seven. Microsoft is mulling the concept of how to extend Windows Seven with subscription-based services, according to the deck — more like Microsoft Desktop Optimization Pack (MDOP), which Microsoft currently offers to its Software Assurance customers, than Windows Live, however.&lt;/span&gt;&lt;/p&gt; &lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;(MDOP builds on top of the Windows Vista Enterprise Centralized Desktop SKU — also only available to Software Assurance volume licensees. It includes: asset inventory, SoftGrid application virtualization, diagnostics and recovery toolset, advanced group-policy management and desktop error-monitoring capabilities.)&lt;/span&gt;&lt;/p&gt; &lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;Maybe this talk of extending Windows with certain Software Assurance-only subscription services is what spurred the &lt;a href="http://www.computerweekly.com/Articles/2007/07/20/225664/gartner-ms-subscription-licence-may-become-mandatory.htm"&gt;Gartner Group to predict this week that Microsoft plans to make Software Assurance mandatory&lt;/a&gt;? Not sure….&lt;/span&gt;&lt;/p&gt; &lt;p style="font-family: trebuchet ms;"&gt;&lt;span style="font-size:85%;"&gt;Before Microsoft delivers Windows Seven, it plans to roll out an update to its current MDOP offering, Vista Service Pack 1 and then another MDOP update, according to the deck. Microsoft made no dates — tentative or otherwise — available for these planned releases via the deck.&lt;/span&gt;&lt;/p&gt; &lt;span style="font-size:85%;"&gt;&lt;span style="font-family: trebuchet ms;"&gt;Microsoft officials confirmed the veracity of this Windows Seven information.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://blogs.zdnet.com/microsoft/?p=592&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-8620799071095764031?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/8620799071095764031/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=8620799071095764031' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/8620799071095764031'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/8620799071095764031'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/10/windows-seven-think-2010.html' title='Windows Seven: Think 2010'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-505679784973644550</id><published>2007-09-18T15:19:00.000+08:00</published><updated>2007-09-18T15:21:13.889+08:00</updated><title type='text'>China emerges as leader in cyberwarfare</title><content type='html'>&lt;blockquote style="font-family: verdana;font-family:verdana;" &gt;&lt;span style="font-size:85%;"&gt;Paris; and Oakland, Calif. - When suspected Chinese hackers penetrated the Pentagon this summer, reports downplayed the cyberattack. The hackers hit a secure Pentagon system known as NIPRNet – but it only carries unclassified information and general e-mail, Department of Defense officials said.&lt;br /&gt;&lt;br /&gt;Yet a central aim of the Chinese hackers may not have been top secrets, but a probe of the Pentagon network structure itself, some analysts argue. The NIPRNet (Non-classified Internet Protocol Router Network) is crucial in the quick deployment of US forces should China attack Taiwan. By crippling a Pentagon Net used to call US forces, China gains crucial hours and minutes in a lightning attack designed to force a Taiwan surrender, experts say.&lt;br /&gt;&lt;br /&gt;China's presumed infiltration underscores an ever bolder and more advanced capability by its cybershock troops. Today, of an estimated 120 countries working on cyberwarfare, China, seeking great power status, has emerged as a leader.&lt;br /&gt;&lt;br /&gt;"The Chinese are the first to use cyberattacks for political and military goals," says James Mulvenon, an expert on Chin's military and director of the Center for Intelligence and Research in Washington. "Whether it is battlefield preparation or hacking networks connected to the German chancellor, they are the first state actor to jump feet first into 21st-century cyberwarfare technology. This is clearly becoming a more serious and open problem."&lt;br /&gt;&lt;br /&gt;China is hardly the only state conducting cyberespionage. "Everybody is hacking everybody," says Johannes Ullrich, an expert with the SANS Technology Institute, pointing to Israeli hacks against the US, and French hacks against European Union partners. But aspects of the Chinese approach worry him. "The part I am most afraid of is … staging probes inside key industries. It's almost like sleeper cells, having ways to [disrupt] systems when you need to if it ever came to war."&lt;br /&gt;&lt;br /&gt;In recent weeks, China stands accused not only of the Pentagon attack, but also of daily striking German federal ministries and British government offices, including Parliament. After an investigation in May, officials at Germany's Office of the Protection of the Constitution told Der Speigel that 60 percent of all cyberattacks on German systems come from China. Most originate in the cities of Lanzhou and Beijing, and in Guangdong Province, centers of high-tech military operations.&lt;br /&gt;&lt;br /&gt;German Chancellor Angela Merkel publicly raised the issue with Chinese Premier Wen Jiabao in Beijing last month. Mr. Wen did not deny China's activity, but said it should stop. President George Bush, prior to his meeting with Chinese President Hu Jintao in Sydney, Australia, at the APEC summit last week, stated that respect of computer "systems" is "what we expect from people with whom we trade."&lt;br /&gt;&lt;br /&gt;The accusations, hard to prove conclusively, still illumine an emerging theater of low-level attacks among nations. This spring, presumed Russian hackers made headlines with a one-off cyberblitz of Estonia, shutting down one of the most wired countries in Europe for a week – blunt payback for removal of a Soviet war memorial.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:85%;"&gt;source: &lt;a href="http://www.csmonitor.com/2007/0914/p01s01-woap.html"&gt;http://www.csmonitor.com/2007/0914/p01s01-woap.html&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-505679784973644550?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/505679784973644550/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=505679784973644550' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/505679784973644550'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/505679784973644550'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/09/china-emerges-as-leader-in-cyberwarfare.html' title='China emerges as leader in cyberwarfare'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-3847636286313403824</id><published>2007-09-18T15:17:00.000+08:00</published><updated>2007-09-18T15:19:18.528+08:00</updated><title type='text'>'Hacker-proof' system? You be the judge</title><content type='html'>&lt;blockquote style="font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;Aerospace giant European Aeronautic Defence and Space has introduced a "hacker-proof" encryption technology that it claims will revolutionize Internet security and bring "cryptography into the 21st century."&lt;br /&gt;&lt;br /&gt;The system, called "Ectocryp," was developed for military and business applications by researchers and engineers at EADS' Defence and Security Systems division in Newport, South Wales. The team relied on technology developed by the U.K.'s Government Communications Headquarters, sister agency to the NSA and formerly known as Government Code and Cypher School, of German Enigma fame.&lt;br /&gt;&lt;br /&gt;The system owes its success to the "lightning speed with which the 'keys' needed to enter the computer systems can be scrambled and reformatted," reports the Telegraph. "Just when a hacker thinks he or she has broken the code, the code changes." (See related video.) The system is the first "Top Secret, Eyes Only" High Assurance Internet Protocol Encryptor (PDF) device in the U.K., according to the company.&lt;br /&gt;&lt;br /&gt;How secure is it? Send your most excellent and sensitive Ectocryped data around the globe, and "all the computer technology in the world cannot break it," EADS sales manager Gordon Duncan boasted to the Telegraph.&lt;br /&gt;&lt;br /&gt;Note to hackers of the Peeps Liberation Army: The gauntlet is officially down.&lt;br /&gt;&lt;br /&gt;source: &lt;a href="http://crave.cnet.com/8301-1_105-9778661-1.html"&gt;http://crave.cnet.com/8301-1_105-9778661-1.html&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-3847636286313403824?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/3847636286313403824/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=3847636286313403824' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/3847636286313403824'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/3847636286313403824'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/09/hacker-proof-system-you-be-judge.html' title='&apos;Hacker-proof&apos; system? You be the judge'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-5050971636829739280</id><published>2007-09-13T06:02:00.000+08:00</published><updated>2007-09-13T06:14:21.290+08:00</updated><title type='text'>Major computer viruses over the last 25 years:</title><content type='html'>&lt;span style="font-family: verdana;font-family:trebuchet ms;font-size:85%;"  &gt;&lt;b&gt;Elk Cloner&lt;/b&gt;, 1982: Regarded as the first virus to hit personal computers worldwide, ''Elk Cloner'' spread through Apple II floppy disks and displayed a poem written by its author, a ninth-grade student who was designing a practical joke.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Brain&lt;/b&gt;, 1986: ''Brain'' is the first virus to hit computers running a Microsoft Corp. operating system – DOS. Written by two Pakistani brothers, the virus left the phone number of their computer repair shop.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Morris&lt;/b&gt;, 1988: Written by a Cornell University graduate student whose father was then a top government computer-security expert, the virus infected an estimated 6,000 university and military computers connected over the Internet. Although viruses had spread over the Internet before, until ''Morris'' none was widespread.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Melissa&lt;/b&gt;, 1999: ''Melissa'' was one of the first to spread over e-mail. When users opened an attachment, the virus sent copies of itself to the first 50 people in the user's address book, covering the globe within hours.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Love bug&lt;/b&gt;, 2000: Also spread via e-mail attachment, ''Love Bug'' exploited human nature and tricked recipients into opening it by disguising itself as a love letter.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Code Red&lt;/b&gt;, 2001: Exploiting a flaw in Microsoft software, ''Code Red'' was among the first ''network worms'' to spread rapidly because it required only a network connection, not a human opening an attachment. Although the flaw was known, many system operators had yet to install a software patch Microsoft made available a month earlier to fix it.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Blaster&lt;/b&gt;, 2003: ''Blaster'' also took advantage of a known flaw in Microsoft software and, along with the 2003 ''SoBig'' outbreak, prompted Microsoft to offer cash rewards to people who help authorities capture and prosecute the virus writers.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Sasser&lt;/b&gt;, 2004: ''Sasser'' exploited a Microsoft flaw as well and prompted some computers to continually crash and reboot, apparently the result of bad programming. Although ''Sasser'' is hardly the last malicious software, the ones since then have generally received less attention as networks install better defenses and profit-minded virus writers try to avoid detection and removal of their works.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-5050971636829739280?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/5050971636829739280/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=5050971636829739280' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5050971636829739280'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5050971636829739280'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/09/major-computer-viruses-over-last-25.html' title='Major computer viruses over the last 25 years:'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-7223940770183243404</id><published>2007-08-24T00:34:00.000+08:00</published><updated>2007-08-24T01:05:00.456+08:00</updated><title type='text'>Which superhero are you?</title><content type='html'>&lt;span style="font-size:78%;"&gt;&lt;span style="font-family:verdana;"&gt;I had to take the test. I cant help it. I was really curious on the outcome. hehehehehhehe. The Iron Man? hmmm.. not bad!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Your results:&lt;br /&gt;&lt;b&gt;You are &lt;span style="font-size:130%;"&gt;Iron Man&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;Inventor. Businessman. Genius.&lt;br /&gt;&lt;br /&gt;&lt;img src="http://www.thesuperheroquiz.com/pics/ironman.jpg" /&gt;&lt;br /&gt;&lt;a href="http://www.thesuperheroquiz.com/"&gt;&lt;br /&gt;Click here to take the Superhero Personality Test&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-7223940770183243404?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/7223940770183243404/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=7223940770183243404' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/7223940770183243404'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/7223940770183243404'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/08/which-superhero-are-you.html' title='Which superhero are you?'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-5611220315788496886</id><published>2007-08-08T19:53:00.000+08:00</published><updated>2007-08-08T20:06:41.235+08:00</updated><title type='text'>Google Hacking for Penetration Testers ebook</title><content type='html'>&lt;blockquote  style="font-family:verdana;"&gt;&lt;span style="font-size:78%;"&gt;Understanding the adversary mindset is an important element in designing and developing effective protective strategies."—Amit Yoran, Former Director of the National Cyber Security Division, Department of Homeland Security&lt;br /&gt;&lt;br /&gt;"...Google Hacking exposes those with their pants down, so the whole Internet can see their skivvies."—Adrian Lamo, Special Project Editor, The American River Current&lt;br /&gt;&lt;br /&gt;"This Book Rocks!"—Roelof Temmingh, Technical Director, SensePost (Creators of the Wikto Web Assessment Tool)&lt;br /&gt;&lt;br /&gt;"You can use Google for something other than hacking? I only use Google for finding vulnerable servers."—Tim Mullen, CIO, AnchorIS.com&lt;br /&gt;&lt;br /&gt;Explore the Dark Side of Googling&lt;br /&gt;&lt;br /&gt;* Morph Google from “Directory Assistance Please” into a Rig Mounted Pneumatic Rock Drill&lt;br /&gt;* See How Bad Guys Use Portscans, CGI Scans, and Web Server Fingerprinting to Stroll in the Back Door of Your Enterprise&lt;br /&gt;* Slam the Door on Malicious Google Hacks That Expose Your Organization’s Information Caches, Firewalls, IDS Logs, and Password Databases&lt;br /&gt;&lt;br /&gt;Can you guard against Google Hacking? Google’s advanced search capabilities are being used on an increasing basis by some to harvest information from the Web. Sensitive documents, stolen credit card information, even servers behind corporate firewalls can be found using Google searches.&lt;br /&gt;&lt;br /&gt;Are you the type of person who needs to know how to torque Google to detect SQL injection points and login portals, execute port scans and CGI scans, fingerprint web servers, locate incredible information caches such as firewall and IDS logs, password databases, SQL dumps and much more – all without sending a single packet to the target! Then Google Hacking for Penetration Testers is for you. By reverse engineering the techniques of malicious "Google hackers," this book shows security practitioners how to properly protect their servers from this often overlooked and dangerous form of information leakage.&lt;br /&gt;&lt;br /&gt;Contents of this Book&lt;br /&gt;&lt;br /&gt;Google Searching Basics&lt;br /&gt;&lt;br /&gt;Advanced Operators&lt;br /&gt;&lt;br /&gt;Google Hacking Basics&lt;br /&gt;&lt;br /&gt;Network Mapping&lt;br /&gt;&lt;br /&gt;Locating Exploits and Finding Targets&lt;br /&gt;&lt;br /&gt;Ten Simple Security Searches That Work&lt;br /&gt;&lt;br /&gt;Tracking Down Web Servers, Login Portals, and Network Hardware&lt;br /&gt;&lt;br /&gt;Usernames, Passwords, and Secret Stuff, Oh My!&lt;br /&gt;&lt;br /&gt;Document Grinding and Database Digging&lt;br /&gt;&lt;br /&gt;Protecting Yourself from Google Hackers&lt;br /&gt;&lt;br /&gt;Automating Google Searches&lt;br /&gt;&lt;br /&gt;Professional Security Testing&lt;br /&gt;&lt;br /&gt;An Introduction to Web Application Security&lt;br /&gt;&lt;br /&gt;Are You Safe? Learn the Queries that Hackers Use:&lt;br /&gt;&lt;br /&gt;filetype:lit lit (books|ebooks) Online unprotected e-books!&lt;br /&gt;&lt;br /&gt;inurl:root.asp?acs=anon Outlook Web Access Public Folders and the Exchange Address Books!&lt;br /&gt;&lt;br /&gt;intitle:"Live View / - AXIS" | inurl:view/view.sht Axis Netcams Live View!&lt;br /&gt;&lt;br /&gt;inurl:"ViewerFrame?Mode=" Live Panasonic Network Cameras!&lt;br /&gt;&lt;br /&gt;SNC-RZ30 HOME Live Sony NC RZ30 web cameras!&lt;br /&gt;&lt;br /&gt;intitle:"toshiba network camera - User Login" Live Toshiba network cameras!&lt;br /&gt;&lt;br /&gt;aboutprinter.shtml Xerox printers on the web!&lt;br /&gt;&lt;br /&gt;index.of.dcim Digital Camera Photo Dumps!&lt;br /&gt;&lt;br /&gt;and hundreds more!&lt;br /&gt;&lt;br /&gt;Johnny Long has spoken on network security and Google hacking at several computer security conferences around the world including SANS, Defcon, and the Black Hat Briefings. During his recent career with Computer Sciences Corporation (CSC), a leading global IT services company, he has performed active network and physical security assessments for hundreds of government and commercial clients. His website, currently the Internet's largest repository of Google hacking techniques, can be found at http://johnny.ihackstuff.com&lt;br /&gt;&lt;br /&gt;Source:  &lt;a style="color: rgb(51, 51, 255);" href="http://www.syngress.com/catalog/?pid=3150"&gt;http://www.syngress.com/catalog/?pid=3150&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;span style=";font-family:verdana;font-size:78%;"  &gt;I found this rapidshare link while surfing the net, I think the book is quite informative. Anyways, here is the  link:&lt;br /&gt;&lt;br /&gt;&lt;a style="color: rgb(51, 51, 255);" href="http://rapidshare.com/files/47026629/Google_Hacking_for_Penetration_Testers.exe"&gt; http://rapidshare.com/files/47026629/Google_Hacking_for_Penetration_Testers.exe&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Yep.  its ".exe" file and inside it is the ".pdf" file. NOD32 didnt detect anything. Probably this link will be dead in a few weeks or once detected for copyright issues or something.&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-5611220315788496886?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/5611220315788496886/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=5611220315788496886' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5611220315788496886'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5611220315788496886'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/08/google-hacking-for-penetration-testers.html' title='Google Hacking for Penetration Testers ebook'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-4664218484043831634</id><published>2007-08-08T19:47:00.000+08:00</published><updated>2007-08-08T19:51:00.855+08:00</updated><title type='text'>PuTTY for Symbian OS</title><content type='html'>&lt;span style="font-size:78%;"&gt;&lt;span style="font-family:verdana;"&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-family:verdana;"&gt; PuTTY is a free SSH client developed by Simon   Tatham and others. This page contains a port to the Symbian OS, with   support for S60, Series 80 Communicators, and Nokia 7710. All Nokia   devices based on Symbian OS and all S60 devices by all manufacturers   are supported. Separate UIQs are available from &lt;/span&gt;&lt;a style="font-family: verdana;" href="http://matrix.tmit.bme.hu/putty/"&gt;Robert Horvath&lt;/a&gt;&lt;span style="font-family:verdana;"&gt; and &lt;/span&gt;&lt;a style="font-family: verdana;" href="http://www.mobileyes.com/index.php?option=com_content&amp;task=view&amp;amp;id=23&amp;Itemid=51"&gt;MobilEyes   AB&lt;/a&gt;&lt;span style="font-family:verdana;"&gt; for UIQ 1 and 2, and from &lt;/span&gt;&lt;a style="font-family: verdana;" href="http://coredump.fi/putty"&gt;Taneli   Leppä&lt;/a&gt;&lt;span style="font-family:verdana;"&gt; for UIQ 3.&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-family:verdana;"&gt;More info at: &lt;/span&gt;&lt;a style="font-family: verdana; color: rgb(51, 51, 255);" href="http://s2putty.sourceforge.net/"&gt;http://s2putty.sourceforge.net/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:verdana;"&gt;I  think this is one of coolest mobile application available for free in the internet. &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-4664218484043831634?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/4664218484043831634/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=4664218484043831634' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/4664218484043831634'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/4664218484043831634'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/08/putty-for-symbian-os.html' title='PuTTY for Symbian OS'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-5851047995862145119</id><published>2007-08-08T19:23:00.000+08:00</published><updated>2007-08-08T19:39:52.630+08:00</updated><title type='text'>Trinux - Under active Development again</title><content type='html'>&lt;span style=";font-family:verdana;font-size:78%;"  &gt;&lt;span style="font-weight: bold;"&gt;What is Trinux?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;Trinux was a ramdisk-based Linux distribution that boots from a single floppy or CD-ROM, loads it packages from an HTTP/FTP server, a FAT/NTFS/ISO filesystem, or additional floppies. Trinux contains the latest versions of popular Open Source network security tools for port scanning, packet sniffing, vulnerability scanning, sniffer detection, packet construction, active/passive OS fingerprinting, network monitoring, session-hijacking, backup/recovery, computer forensics, intrusion detection, and more. Trinux also provides support for Perl, PHP, and Python scripting languages. Remote Trinux boxes can be managed securely with OpenSSH.&lt;br /&gt;&lt;br /&gt;Trinux gives you the power of Linux security tools without requiring a full-blown Linux install or the need to download, compile, install, and update a complete suite of security tools that are typically not found in mainstream distributions.&lt;/blockquote&gt;More info at: &lt;a style="color: rgb(51, 51, 255);" href="http://trinux.sourceforge.net/legacy/"&gt;http://trinux.sourceforge.net/legacy/&lt;/a&gt;&lt;br /&gt;&lt;blockquote&gt;This project is now under active development again! See ubuntutrinux page over on Google Code for more information. Development snapshots (meaning 10MB .iso's built on Linux 2.6.20.7 and Busybox 1.4.2) are also available at &lt;a style="color: rgb(51, 51, 255);" href="http://www.threatmind.net/ubuntutrinux"&gt;http://www.threatmind.net/ubuntutrinux&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Trinux: A Linux Security Toolkit was a ramdisk-based Linux distribution that was under active development from 1998-2003. This new project (i.e. ubuntutrinux) seeks to integrate elements (and code, where appropriate) of Trinux with the Debian/Ubuntu mkinitramfs infrastructure to allow easy development and packaging Ubuntu binary (and ultimately package and repository) compatible ramdisk distributions using recent 2.6.x kernels. As before, the most common use is network security monitoring and analysis. See this blog entry for more on philosophy and design principles.&lt;br /&gt;&lt;br /&gt;Although there might be some overlap in the tools available, this project does not seek to provide a pen-testing distro along the lines of Backtrack or Knoppix-STD . If you are looking for a platform to run Nessus or Metasploit I encourage you to look elsewhere.&lt;/blockquote&gt;More info at:&lt;span style="font-weight: bold; color: rgb(51, 102, 255);"&gt; &lt;/span&gt;&lt;a style="color: rgb(51, 51, 255);" href="http://code.google.com/p/ubuntutrinux/"&gt;http://code.google.com/p/ubuntutrinux/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I'v been waiting for this for a while and finally its on active development again..talk about portable old school command line pentesting.. ^_^&lt;br /&gt;&lt;br /&gt;For a list of included tools&lt;span style="color: rgb(51, 51, 255);"&gt;, &lt;/span&gt;&lt;a style="color: rgb(51, 51, 255);" href="http://www.threatmind.net/secwiki/UbuntuTrinux/CoreTools"&gt;http://www.threatmind.net/secwiki/UbuntuTrinux/CoreTools&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-5851047995862145119?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/5851047995862145119/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=5851047995862145119' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5851047995862145119'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5851047995862145119'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/08/trinux-under-active-development-again.html' title='Trinux - Under active Development again'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-6407562930999701031</id><published>2007-06-02T12:22:00.000+08:00</published><updated>2007-06-02T12:24:56.979+08:00</updated><title type='text'>A search engine for open source code</title><content type='html'>&lt;span style="font-size:78%;"&gt;&lt;span style="font-family: verdana;"&gt;A search engine for open source code&lt;/span&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Krugle aims to help open source developers find needed pre-existing code and has partnered with sites such as SourceForge and CollabNet &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Krugle aspires to be the Google of software code search, even referring to itself as a verb. And recently, Krugle has started to become the go-to search site for open source developers, partnering with key Web sites, including SourceForge.net, the leading repository for open source software projects, to embed Krugle search. Krugle also announced a similar partnership with CollabNet, a community of 1 million developers.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Co-founder and CTO Ken Krugler says Krugle soothes a pain point for developers: They spend 25 percent or more of their time searching for lines of code to perform certain functions that may already exist. There's no sense in writing code that's already been written, says Krugler.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;How does Krugle simplify code search on SourceForge? Developers typically visit SourceForge to find a project similar to the one they're doing. But they end up having to download the whole project. Krugle lets them search through the project to see if it fits the bill without downloading it entirely.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Krugle gives software developers one thing they need most: time, says John Andrews, CEO of Evans Data, a research firm.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;"If you could shave 10 percent of that [search] time off, that is a huge productivity improvement either in cost savings, revenue generation, or just spare time," Andrews says.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Google is still the first stop for many open source developers, but as the volume of open source code grows, as companies use more open source for development internally, and as more software companies open their previously proprietary code, Google may not be able to keep up, says Andrews.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Krugle's next venture will be search for open source development within enterprises. An enterprise product currently in beta is slated for general release in the second half of 2007. &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;http://www.infoworld.com/article/07/06/01/A-search-engine-for-open-source-code_1.html&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a style="font-family: verdana;" href="http://www.krugle.com/"&gt;krugle -&gt;&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-6407562930999701031?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/6407562930999701031/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=6407562930999701031' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/6407562930999701031'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/6407562930999701031'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/06/search-engine-for-open-source-code.html' title='A search engine for open source code'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-2715374252476193781</id><published>2007-05-03T16:01:00.000+08:00</published><updated>2007-05-03T16:03:54.565+08:00</updated><title type='text'>Watch a video that documents Google AdWords attack</title><content type='html'>&lt;span style="font-family: verdana;font-size:78%;" &gt;Watch a video that documents Google AdWords attack  &lt;a href="http://explabs.com/" target="_blank"&gt;&lt;u&gt;Exploit Prevention Labs&lt;/u&gt;&lt;/a&gt; released a video documenting how attackers are using Google's popular AdWords advertising system to infect unsuspecting users with malware.&lt;br /&gt;&lt;br /&gt;As the video shows, cyber criminals ran Google ads for legitimate, trusted organizations like The Better Business Bureau. When users clicked on the ads, they were redirected to a malicious web site that attempted to exploit a common security vulnerability in Internet Explorer. Users who hadn't installed Microsoft's latest security patches were infected with a so-called postlogger - malware that's designed to steal confidential account access information, in this case from customers of 100 different banks.&lt;br /&gt;&lt;br /&gt;http://www.net-security.org/secworld.php?id=5089&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div style="text-align: center; font-family: verdana;"&gt;&lt;span style="font-size:78%;"&gt;&lt;object height="324" width="394"&gt;&lt;param name="movie" value="http://www.youtube.com/v/iD0wdzQb8XY"&gt;&lt;param name="wmode" value="transparent"&gt;&lt;embed src="http://www.youtube.com/v/iD0wdzQb8XY" type="application/x-shockwave-flash" wmode="transparent" height="324" width="394"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-2715374252476193781?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/2715374252476193781/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=2715374252476193781' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/2715374252476193781'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/2715374252476193781'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/05/watch-video-that-documents-google.html' title='Watch a video that documents Google AdWords attack'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-1682193867620066328</id><published>2007-04-22T09:15:00.000+08:00</published><updated>2007-04-22T09:17:36.341+08:00</updated><title type='text'>Notes on Vista forensics</title><content type='html'>&lt;span style="font-size:78%;"&gt;&lt;span style="font-family: verdana;"&gt;In part one of this series we looked at the different editions of Vista available and discussed the various encryption and backup features which might be of interest to forensic examiners.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;In this article we will look at the user and system features of Vista which may (or may not) present new challenges for investigators and discuss the use of Vista itself as a platform for forensic analysis.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;User files and applications&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;One of the first things to note about users' data files is that they're not where they used to be! Instead of the familiar "Documents and Settings" folder we must instead look to a new folder called "Users". Other folders which typically fall under the scope of an examination have also moved so examiners running scripts which expect certain files or folders to be in specific locations may need to do some editing. Another interesting change is that Vista is configured by default to not update the last access time on files, a decision made to increase file system performance.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;At the application level, much forensic work consists of reconstructing web browsing and email activity, so let's take a look at the relevant programs provided by Vista.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Vista ships with Windows Internet Explorer 7 for web browsing and, although forensic examiners will certainly encounter other browsers during Vista's lifetime, it seems reasonable to assume that IE7 and its Microsoft successors will represent the vast majority of browsers whose use comes under investigation. Familiarity with IE's usage of files and directories, together with experience using appropriate tools for recreating browsing activity (using the browser history, cache, cookies, favorites, etc), will continue to be essential components of every investigator's arsenal and most people currently working in the field will already be familiar with IE7 since its release last year. The version of IE7 included with Vista does include a number of additional features, however, which examiners should at least be aware of (such as Protected Mode, Parental Controls, and enhanced Network Diagnostics).&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Windows Mail is the standard, standalone email client included with Vista. Functionally, if not aesthetically, similar to Outlook Express, Windows Mail is likely to be the focus of many investigations.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;In terms of architecture, however, it should be noted that Windows Mail uses a JET database and messages, including newsgroup posts, are now stored in individual files (mail files have a .eml extension and newsgroup posts .nws).&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;These files have two "streams" - for mail messages the first stream consists of RFC compliant MIME data and the second stream holds XML metadata. Another change is that account information which used to be stored in the Registry is now also held in XML format within the Windows Mail folder of a user's profile.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;However, Windows Mail is not the only email option likely to be available to Vista users at some stage in the future. Windows Live Mail Desktop, somewhat unfortunately abbreviated to "WLMd", is an email solution currently in beta which Microsoft describes as "an email client that can be downloaded onto Windows XP or Windows Vista...a rough super-set of Windows Mail in Windows Vista".&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;While the exact set of features is still being worked out, in broad terms this is an email client which will integrate with Windows Live Hotmail (previously known as Windows Live Mail), Microsoft's Web 2.0 mail client, and include a number of other features above and beyond those available in Windows Mail. Investigators already familiar with cases involving Hotmail usage will probably be well prepared for the challenges arising from WLMd but it will be interesting to see exactly what those challenges are once this client is released - those wishing to get a head start may wish to check out the beta.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;In fact, situations where a user's data may no longer be stored on the local machine should come as no surprise to forensic examiners. Over the past few years most practitioners have come to realize that the hard disk is not the only source of potential evidence and have been forced to take a more holistic view of a suspect's computing environment whether that means a focus on the nearby, such as RAM or backup storage, or further afield, such as network devices or remote servers.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;One last point which involves RAM, application usage and a new feature in Vista. As most computer users will know, there often comes a time when our machines slow to a crawl due to too many applications making demands on available memory. The most straightforward solution to this problem (other than running fewer programs at the same time, of course) is to add extra RAM but this can still be a daunting task for those with little technical knowledge.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Vista offers a solution to this problem in the shape of ReadyBoost, a new feature which allows attached flash memory devices to be used as extra memory. However, examiners should be aware of two important points.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;irst, although strictly speaking ReadyBoost does provide extra memory the data held on the flash device is actually also present in the host machine's RAM - the intended benefit of the feature is that it provides faster access to this data for certain types of operations.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Second, the data on the device is AES-128 encrypted. It's too early to say how often examiners are likely to encounter ReadyBoost in practice (reports on its effectiveness appear mixed so its popularity may be limited) but with our attention being more and more focused on evidence sources beyond the hard drive it is at least something to be aware of.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;System files and metadata&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Log files are often a useful source of information and changes to the Event Viewer in Vista mean that log files are now created in an XML compliant .elf format (rather than as .evt files seen previously). Any scripts which are used to locate and parse log files may need to be updated.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;The hidden file "thumbs.db" introduced in previous Windows versions which has been of such interest to investigators over the past few years has also undergone a significant change. In fact this file has been replaced by a number of "thumbcache_xxx.db" files which are now located within a user's profile at&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;\Users\&lt;user&gt;\AppData\Local\Microsoft\Windows\Explorer&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Another change to be aware of is that the Disk Cleanup Wizard included with Vista may be used to delete these thumbnails. (Note: in some cases Microsoft now refers to thumbnails as "icons" or "live icons".)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Metadata can be described as data about data. In the world of computer forensics, metadata is usually discussed in terms of information held about a file, a well known example of which is the information associated with a Word document which can include various details such as the author's name, comments and revision history (in fact, this particular example is so well known that Microsoft was forced to create a tool to help users remove the data in question!) Metadata on Windows systems becomes even more interesting when you examine multiple file streams, a concept first introduced in NT 3.51, which allow you to associate extra information with a file on an NTFS filesystem.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Although the information held in these streams may appear invisible to the typical user, it can be a rich source of information to the examiner. This potential repository for data could also be used to hide information and so it has become an essential area to cover during an investigation.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Although NTFS is the recommended file system for Vista Microsoft no longer believes that alternate data streams (ADS) are the best method for associating metadata with a file, primarily due to the fact that this extra information is not included when the file is transferred under certain circumstances (e.g. to a non-NTFS volume or when sent as an attachment).&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Instead, Vista developers are being encouraged to include metadata within files themselves and this is another area where useful information may be uncovered by the examiner. It should be noted, however, that ADS functionality is still present within Vista so it should not be ignored during an investigation.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Returning to the user experience once again, another important develoment as far as metadata is concerned is that Microsoft is now encouraging users to add such data to their own files though the use of "tags" or "metatags". Primarily seen as a way to help users rate, organize and search through their content, user-generated tags may prove to be a useful source of information during certain types of investigation. However, the flip side of this potential benefit is that Vista also makes it relatively easy (through a file's Properties tab) for users to remove metadata.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Vista as an examination platform&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Vista's much touted Aero interface may give the impression that "Minority Report" style crime-busting is just around the corner but, sadly, we're not quite there yet.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Perhaps unsurprisingly given the changes to some aspects of Vista of interest to forensic examiners (e.g. file structure, the Registry, the Recycle Bin, etc.) a number of issues with existing forensic software packages have already been identified and vendors continue to work on new releases in response.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Although many of the issues identified are directly related to the analysis of Vista on a suspect drive a number of other problems have been reported by those running Vista as the platform upon which the forensic package itself is running (it should be noted that in some cases Vista is not yet officially supported by the developer in these cases).&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;The problems are not only related to forensic software, however, and while some may be addressed with a simple driver update others may be considered even more fundamental as Scott A Moulton of Forensic Strategy Services, LLC. explains: "I still have major problems mounting large drives under Vista. I use many 1 terabyte or 2 terabyte drives and Vista is absolutely worthless on these drives - I'm lucky if Vista does not actually mess the drive up. Deleting files is a nightmare and sometimes takes days. Just simply copying files is so slow it is unbearable.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;"I received quite a few responses from people who have had similar issues and it seems that DRM [Digital Rights Management] may be the most probable cause. They've found that Vista tries to check each file to see if there is a protection flag on it or not before even deleting the file."&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Despite these issues, Vista retains much of previous versions of Windows and some third party tools are expected to function largely as before. Where changes do need to be made in some tools they may be minor. For example, most of the Sysinternals tools commonly used in many Windows live response scenarios are expected to work under Vista without modification. One exception is Process Explorer, a minor modification to which in order to enable full functionality is expected within the next few months.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Conclusions&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Computer forensic examination does not only involve searching an individual's computer for evidence of their own wrongdoing but also includes situations where the system itself has been attacked, commonly resulting in data loss, alteration or a denial of service. In addition to the deliberate targeting of individual systems over a network the threats posed by malware downloaded through web browsing or email use are well documented.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;One of Microsoft's goals with Vista is to significantly improve the security of the operating system and although the act of investigation is necessarily one which takes place after an incident has occurred, the effect of hardening the system against common attacks in the first place is one which may impact the number of incidents of this type which require investigation.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;So, where does this leave us? I think the first thing to keep in mind is that the playing field hasn't changed overnight just because Vista has been released to the public.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;In fact, there are a number of reasons to believe that the uptake of Vista amongst existing users might be relatively slow so whatever impact it does have may be fairly gradual (even Steve Ballmer, Microsoft's chief executive, has admitted that earlier sales forecasts may have been "overly aggressive").&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;Secondly, the changes in Vista most likely to affect forensic examiners are probably most accurately described as evolutionary rather than revolutionary. There really isn't much which we haven't seen before in some shape or other and already developed strategies to deal with. Undoubtedly there will be cases where new features do present difficulties but investigators will adapt their approach accordingly, perhaps moving towards a greater emphasis on live analysis or network-based evidence collection where appropriate.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;And finally, taking a broader view, if Microsoft delivers on its promise to improve the security of our increasingly connected world then we all benefit. For the time being though, the fight between those with something to hide and those tasked with uncovering electronic evidence continues.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: verdana;"&gt;This article originally appeared in &lt;/span&gt;&lt;a style="font-family: verdana;" href="http://www.securityfocus.com/infocus/1890"&gt;Security Focus&lt;/a&gt;&lt;span style="font-family: verdana;"&gt;.&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-1682193867620066328?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/1682193867620066328/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=1682193867620066328' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/1682193867620066328'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/1682193867620066328'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/04/notes-on-vista-forensics.html' title='Notes on Vista forensics'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-5112771141017213654</id><published>2007-04-08T13:21:00.000+08:00</published><updated>2007-04-08T13:26:12.728+08:00</updated><title type='text'>Eight Faces of a Hacker</title><content type='html'>&lt;span style=";font-family:trebuchet ms;font-size:85%;"  &gt;You fight against them every day: hackers, attackers, insiders. You know what they do, but not who they are. They are often nameless, usually faceless. You'd like to be able to guess their next move, but that can be pretty difficult when you don't even know what motivates them or why they're attacking you.&lt;br /&gt;&lt;br /&gt;Is there a way to "profile" a hacker, the way the police might profile an arsonist or a serial killer? Not exactly. But quietly, a collection of university researchers and law enforcement agencies has been developing a taxonomy of the hacker community, much as an entomologist studies and classifies insects. And police and security experts hope that taxonomy will eventually help them identify and root out the vermin.&lt;br /&gt;&lt;br /&gt;"To address the problems created by hackers, it is apparent that we need more than just technical controls," says Marc Rogers, a professor at Purdue University and author of the industry's most widely-used taxonomy of the hacker community. "We also need to start understanding the individuals behind the attacks."&lt;br /&gt;&lt;br /&gt;The effort to understand the psychology of hackers and attackers is nothing new. Psychological studies of "phone phreaks" can be found as far back as the early 1980s, and MessageLabs is publishing a study on internal "company devils" today. The idea behind most of the studies is the same: to break the stereotype of the hacker as a socially-inept male teenager sitting behind a PC in his parents' basement.&lt;br /&gt;&lt;br /&gt;There is no single profile of a hacker, inside or outside the company, Rogers says in the most recent update of his taxonomy paper. In fact, the idea of lumping all hackers into a single group is "analagous to attempting to understand criminal activity by lumping the entire spectrum of traditional criminals (i.e., shoplifters to homicidal psychopaths) into one generic group," he says. "The idea seems ludicrous, yet this is what we are currently doing with the criminal domain of computer crimes."&lt;br /&gt;&lt;br /&gt;There has been a "huge shift" in hacker profiles in the last few years, as motives shift from curiosity to financial gain, says Rogers, who has worked with law enforcement agencies on hacker profiling and computer forensics. But security managers should also be wary of oversimplifying the new threats as well, he advised.&lt;br /&gt;&lt;br /&gt;"For years, vendors treated the 'cyber-punk' as the boogeyman, and they built at least some of their business on the fear that some brilliant teen would launch a virus," Rogers says. "Now some of them are painting organized crime as the boogeyman, spreading this notion that the Russian mafia is out to get every business."&lt;br /&gt;&lt;br /&gt;In reality, there are lots of different types of attackers, Rogers states. His taxonomy breaks them up into eight different categories, each with different characteristics and motivations. The taxonomy is frequently used by law enforcement agencies and other researchers as a starting point for profiling computing attackers. "It's a long way from perfect, but I wanted to give people something to shoot at."&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;1. The Novice&lt;/span&gt;&lt;br /&gt;Sometimes called "script kiddies," this group is typically young, with limited skills, whose primary motivation is thrill seeking and ego stroking. In order to prove their worth, they attempt to "rack up" trophies, often using pre-written software.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;2. The Cyber Punk&lt;/span&gt;&lt;br /&gt;This group comes closest to fitting the traditional view of the hacker -- young males with some skills and programming capabilities with a desire for attention and, sometimes, monetary gain. They typically choose high-profile targets, and they often choose vandalism over outright data theft.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;3. The Internal&lt;/span&gt;&lt;br /&gt;These are the insiders -- those who use their internal system privileges to gain access to unauthorized data. They generally fall into two subcategories: disgruntled employees seeking revenge and those who are looking to use the data for financial gain.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;4. The Petty Thief&lt;/span&gt;&lt;br /&gt;Traditional criminals who learn how to hack in order to expand their field of targets. They usually are not skilled at first, but they sometimes become skilled over time. Their sole motivation is money.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;5. The Old Guard&lt;/span&gt;&lt;br /&gt;Motivated by curiosity and the need for an intellectual challenge, these highly skilled individuals are capable of writing code and scripts. Espousing the ideology of the first-generation hackers, they usually have no criminal intent but will readily post the scripts and code they develop.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;6. The Virus Writer&lt;/span&gt;&lt;br /&gt;This group is still being defined, Rogers says. It is made up mostly of young males, who tend to age out of the group once they hit their mid to late twenties. This group differs from the Cyber Punks in that its motivation is more along the lines of revenge or curiosity than notoriety.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;7. The Professional Criminal&lt;/span&gt;&lt;br /&gt;Highly-trained IT experts who use their skills for financial gain. They tend never to be caught or even come to the attention of the authorities, Rogers says. These are the "hired guns" employed by organized criminal groups.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;8. The Information Warrior&lt;/span&gt;&lt;br /&gt;Motivated by patriotism, these individuals use their skills to disrupt the command and control of a rival nation. They are typically highly trained and highly skilled.&lt;br /&gt;&lt;br /&gt;These categories have remained fairly stable since Rogers developed the taxonomy in 1999, but many subcategories are evolving all the time, Rogers says. "I expect this to develop like an ornithology, where people take the basic structure and develop taxonomies for the subgroups."&lt;br /&gt;&lt;br /&gt;One category that has gotten a good deal of attention from researchers is the Internal group, which has been difficult to study because of companies' reluctance to share information about insider threats and break-ins. Several researchers have published studies on the topic in the last two years.&lt;br /&gt;&lt;br /&gt;The Secret Service and Carnegie Mellon University in 2005 released a paper that says there are no common demographics among insiders who damage or steal customer data, but there are indicators of risk.&lt;br /&gt;&lt;br /&gt;Thirty-three percent of subjects were perceived by management as 'difficult,' and 19 percent were viewed as disgruntled by other employees. Twenty-seven percent had come to the attention of a supervisor or a co-worker for behavior concerns, and another 27 percent had prior arrests, the study says. While 42 percent of those motivated by greed were female, only 4 percent of those motivated by disgruntlement were female.&lt;br /&gt;&lt;br /&gt;In a study published last year, Eric Shaw, a professor at George Washington University, reported that most of the insiders they studied displayed four basic traits: a history of negative social and personal experience; a lack of social skills; a sense of entitlement; and ethical flexibility. These traits, combined with a right stress factors and opportunities, can lead to a higher incidence of insider attacks, he said.&lt;br /&gt;&lt;br /&gt;But such studies may overlook the more frequent instance of accidental security exposure from inside the company. In a study being published today, MessageLabs found that the "devils" in most companies are not those that intentionally steal or damage company data, but who expose it to outsiders by breaking company security protocols.&lt;br /&gt;&lt;br /&gt;According to MessageLabs, the danger comes from young, tech-savvy junior-level sales types who are under pressure to meet their quotas.&lt;br /&gt;&lt;br /&gt;"The problem is that the more you lock down your systems, the less usable they become," notes Paul Wood, senior analyst at MessageLabs. "These people are under pressure to meet their objectives -- they are moving quickly and they don't have time for systems that aren't usable. So they'll use their technical skills to find a way around the policy."&lt;br /&gt;&lt;br /&gt;These company "devils" are natural multi-taskers who will use any means necessary to get their jobs done -- including IM, wireless, VOIP, and email -- from any access point, and without regard for security policy, Wood explained. Their intent is not malicious, but they may create avenues for security breach without knowing it, he says.&lt;br /&gt;&lt;br /&gt;— Tim Wilson, Site Editor, &lt;a href="http://www.darkreading.com"&gt;Dark Reading&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-5112771141017213654?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/5112771141017213654/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=5112771141017213654' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5112771141017213654'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5112771141017213654'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/04/eight-faces-of-hacker.html' title='Eight Faces of a Hacker'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-420527459529813527</id><published>2007-02-20T00:57:00.000+08:00</published><updated>2007-02-24T01:35:41.596+08:00</updated><title type='text'>Google: Advance Search</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;Here's one of those videos on how to use google, pretty much basic but informative. Download video &lt;a href="http://www.pldsecurity.de/sec.videos/gvideo/public%20recon1.swf"&gt;here&lt;/a&gt;.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;&lt;blockquote&gt;The term "googledork" was coined by the author and originally meant "An inept or foolish person as revealed by Google." After a great deal of media attention, the term came to describe those who "troll the Internet for confidential goods." Either description is fine, really. What matters is that the term googledork conveys the concept that sensitive stuff is on the web, and Google can help you find it.&lt;/blockquote&gt;&lt;/span&gt;&lt;span style="font-family:verdana;"&gt;more information on &lt;a style="font-weight: bold;" href="http://johnny.ihackstuff.com/"&gt;googledorks&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-420527459529813527?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/420527459529813527/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=420527459529813527' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/420527459529813527'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/420527459529813527'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/02/google-data-mining.html' title='Google: Advance Search'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-5717678614798465114</id><published>2007-02-15T23:43:00.000+08:00</published><updated>2007-02-15T23:55:03.399+08:00</updated><title type='text'>www.auction.ph</title><content type='html'>&lt;span style="font-weight: bold;font-family:verdana;font-size:85%;"  &gt;check em out:&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=";font-family:verdana;font-size:85%;"  &gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style=";font-family:verdana;font-size:85%;"  &gt;Auction.ph is giving away Php 30 Million worth of e-money to its members, making it the biggest online promo in the Philippines&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;...&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:verdana;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=";font-family:verdana;font-size:85%;"  &gt;...Everyday, thirty (30) members shall win Php 3,000 worth of e-money. In the last seven (7) days, one thousand (1,000) winners shall be drawn daily. To start-off, ninety (90) lucky e-coupons will be drawn on August 28&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;few days back,my girlfriend &lt;/span&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-family:verdana;font-size:85%;"  &gt;just won  Php 3,000 worth of e-money&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;. ^_^&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a style="font-family: verdana;" href="http://www.auction.ph/"&gt;http://www.auction.ph&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-5717678614798465114?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/5717678614798465114/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=5717678614798465114' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5717678614798465114'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/5717678614798465114'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/02/wwwauctionph.html' title='www.auction.ph'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-2097032345296179069</id><published>2007-02-09T16:40:00.000+08:00</published><updated>2007-02-09T18:54:14.677+08:00</updated><title type='text'>SMART's MyISP</title><content type='html'>&lt;p class="MsoNormal"  style="font-family:verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;st1:place style="font-weight: bold;" st="on"&gt;&lt;st1:country-region st="on"&gt;PHILIPPINES&lt;/st1:country-region&gt;&lt;/st1:place&gt;, probably you guys have already heard about SMART's MyISP promo.&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal"  style="font-family:verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;blockquote&gt;MyISPLoad is an internet SMS prepaid load system, wherein the user will no longer need to go to a retailer to buy internet credits. The user will just have to key in the keyword “Myisp” and send to “483″ for the service to be availed of by the customer; the corresponding username and password to be provided will be sent to the designated destination mobile number. The mobile subscriber SIM card of the one who sent the message will be debited the corresponding amount.&lt;/blockquote&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal"  style="font-family:verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style=""&gt;&lt;/span&gt;I believe that the promo is long dead already and only a few people know about this, but guess what; although not advertised anymore, it is still up and it is still vulnerable to shall I say fraud request for ISP accounts.&lt;br /&gt;&lt;br /&gt;Summary, you key in myisp and send to 483 and after which you will receive the account information. It will then deduct PHP20 from your load and PHP1 for the sending out the request.  The account will expire in 5 days unused and 24 hours once used. &lt;/span&gt; &lt;/p&gt;  &lt;ul  type="disc" style="font-family:verdana;"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-size:85%;"&gt;For Dial-up Numbers text      Myisp dialup to 483&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-size:85%;"&gt;For Contact Numbers text      Myisp contact to 483&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-size:85%;"&gt;For Myisp keywords text Myisp      help to 483&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;    &lt;p class="MsoNormal"  style="font-family:verdana;"&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-weight: bold;"&gt;Good as FREE ISP? &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;I know this will sound ridiculous but sending the request multiple times and fast enough will trick the server and will give you as many accounts as you can send. In some case, the server is even tricked in sending out as many as 30 plus accounts (my record).  This works best in phones having a "send to many option".  The faster you can send, the more accounts you will get.&lt;br /&gt;&lt;br /&gt;PHP20 more or so and you get a week's internet connection, you spend around less than a hundred for a month’s internet? Talk about savings. &lt;span style=""&gt; &lt;/span&gt;Back then (college years) I average around 8 accounts per request, thats more than enough for a week, I give out the extra  accounts to friends.&lt;br /&gt;&lt;br /&gt;Although broadband internet connections are getting cheaper today, dial up connections are till quiet useful for those who can’t afford. &lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-2097032345296179069?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/2097032345296179069/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=2097032345296179069' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/2097032345296179069'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/2097032345296179069'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/02/smarts-myisp.html' title='SMART&apos;s MyISP'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3924558721647627441.post-8533692625262407128</id><published>2007-02-09T12:01:00.000+08:00</published><updated>2007-02-09T22:03:58.437+08:00</updated><title type='text'>FAQs on Egunge</title><content type='html'>&lt;div style="text-align: left;"&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;&lt;span style="font-weight: bold;"&gt;What is Egunge?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;According to &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;www.slangsite.com, Egunge is &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;the disgusting detritus that falls out when you tip your computer keyboard upside down.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Why call the blog Egunge?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;I think its a cool name.  ('c',)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;What is the blog all about?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Basically, anything under IT and whatever I can think of ^_^ , views, opinions, some tips, this and that on stuff in relation to information technology and of course, as much as possible keep it LEGAL. I dont want to get "account suspended" and start all over again!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Are your contents or posts worth reading?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;I dont claim professional ideologies or comments on whatever I posts. Contents mentioned or posted in here are property and copyright of their respective owners,  provided for educational or for entertainment purposes only.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Who are you?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Hmmm...so far, a jobless IT undergrad who has all the time in the world to blog.&lt;br /&gt;&lt;br /&gt; &lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3924558721647627441-8533692625262407128?l=egunge.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://egunge.blogspot.com/feeds/8533692625262407128/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3924558721647627441&amp;postID=8533692625262407128' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/8533692625262407128'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3924558721647627441/posts/default/8533692625262407128'/><link rel='alternate' type='text/html' href='http://egunge.blogspot.com/2007/02/under-maintenance.html' title='FAQs on Egunge'/><author><name>('c',)</name><uri>http://www.blogger.com/profile/11758331773634669817</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
