Stop blaming us

Occasionally, I see articles like this.

Hackers don’t, as a rule, need to go to such lengths to crack passwords. That’s because most of us fail to follow good security habits. A recent article on PhysOrg cites a study that found people are the weak link in computer security.

This is silly. People don’t need to “follow good security habits” unless they have “security” somewhere in their title. Security is a means to an end, and not the target. The target is to get the job done (or surf the web, or read your emails).

Saying this is not just silly - it’s also dangerous. When experts say “people are the weakest link in computer security”, they remove all responsibility from the security industry to make security better, and easier, for users. Why work on preventing brute-force attacks on passwords? Instead lets force our users to choose a 10 character password including at least 1 number and 1 letter of each case. Oh, and lets prevent those walking security hazards from saving the password in the browser on their malware infested machines. Yeah, that’ll teach them. The article over at discovery.com suggests I use e$4WruX7 as a password - a most helpful advice if I ever saw one. Here’s a better suggestion for you Jonathan: have the system lock out for 24 hours after 3 failed tries.That will make guessing a simple 6 digit-only PIN take more than 450 years.

Enough with this.  Users are not the weakest link any more than drivers are the weakest link in driving accidents. Sure, if we remove users (or drivers) from the equation, that solves all our problems. But since we can’t do that, lets focus on making seat belts, and airbags, and warning systems. Or easier (not harder!) password systems, better protected servers and better user interface.

DiggRedditSlashdotTwitThisSphinnStumbleUpondel.icio.usFacebookGoogleTechnoratiE-mail this story to a friend!

How to analyze timeline of 9/11 attacks - read pager traffic from N.Y. and Washington

Wikileaks has released hundreds of thousands pager messages from 11th September, 2001.

Link: 911.wikileaks.org/

Listings say that the messages are sent in networks of Arch Wireless, Metrocall, and SkyTel.

DiggRedditSlashdotTwitThisSphinnStumbleUpondel.icio.usFacebookGoogleTechnoratiE-mail this story to a friend!

Heathrow calling

Here’s a weird spam I got last night:

Hello

The route taken through Customs is mainly determined by your point of departure and whether you are bringing into the country more duty payable goods than your free allowance. For those passengers who have flown in from outside the European Community (EC), their baggage will have a white tag and they must pass through either the Red or Green channel according to the amount of duty free goods they have. Those passengers arriving from countries within the EC should use the Blue channel, and their baggage will have green-edged tag.

As part of our routine check and based on the above, we have a consignment in your name; you are advised to come to the office address below

Customs office
Terminal 3
Heathrow Airport

You are required to come with the following:
1. Your ID
2. Diplomatic Tag either white or green-edge tag.
3. Non Inspection document

Your appointment time is 10am GMT, failure to comply; we will have over the matter to Metropolitan and the FBI. I am the officer in charge of your matter.

Thomas Smith
UK Customs
Heathrow Airport

It’s weird, because it contains no advertisement, and no links. There’s nothing “encoded” in it -  it seems to be an old version of this notice.

So why would a spammer waste valuable botnet cycles on sending me the email? The only explanation I could come up with is “a boy who cried wolf” attack. You send this email a few times, and the Baysian filtering systems train themselves that this is a good email (i.e. “ham”). Most Baysian spam filtering systems have a loopback mechanism where spam email is used to train the system further, and ham email is used to teach the system what “good” email is. If this email is seen a few times and considered ham, spam filters will accept something similar to it that contains a link. That link, can be the spam or phishing attack.

Another guess is that it’s simply used to verify email addresses - you read that a scary Customs agent from Heathrow wants you in his office first thing tomorrow morning, and you quickly reply to ask what it’s about; the spammer (whose reply-to address is different than the “From”) gets a confirmation that your email address is valid, maybe with some more details like your phone number. This is a plausible explanation but it seems like too much hard work just to get some valid email addresses.
Any other guesses?

DiggRedditSlashdotTwitThisSphinnStumbleUpondel.icio.usFacebookGoogleTechnoratiE-mail this story to a friend!

Fuzzing anything that moves

<meta content="OpenOffice.org 3.0 (Linux)" name="GENERATOR" /> <style type="text/css"> <!-- @page { margin: 0.79in } P { margin-bottom: 0.08in } A:link { so-language: zxx } --></style></p> <p style="margin-bottom: 0in">I’m in New Delhi, for the local <a href="(http://www.owasp.org/index.php/SecurityByte_and_OWASP_Asia_AppSec_Conference_2009">OWASP Conference</a>. There’s a <a href="http://www.owasp.org/index.php/SecurityByte_and_OWASP_Asia_AppSec_Conference_2009#tab=Conference">really nice lineup</a> and if you’re in the New Delhi area I highly recommend attending.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">I’ll be speaking twice. On Tuesday about blackbox testing. The abstract can be paraphrased from the immortal words of the great fuzzing master Ice-T:</p> <blockquote> <p style="margin-bottom: 0in">If you’re from Mars, and you have inputs, we will fuzz you.</p> </blockquote> <p style="margin-bottom: 0in">(Look up the <a href="http://www.rhapsody.com/body-count/body-count/kkk-bitch/lyrics.html">original text</a>, I guarantee it’s worth it)</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">On Wednesday I’ll be talking a bit about breaking JSON applications, relying on the great research done by Amit Klein, Blueinfy, Jeremiah Grossman, Fortify, and many others.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">If you spot any errors in either of my presentations let me know and I will buy you a beer. This offer does not include anything stupid I say while on a discussion panel…</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in"> <div><a href="http://digg.com/submit?phase=2&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&title=Fuzzing+anything+that+moves"rel="nofollow" title="Digg"><img src="http://blogs.securiteam.com/wp-content/socializer-images/digg.png" title="Digg" alt="Digg" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://reddit.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&title=Fuzzing+anything+that+moves"rel="nofollow" title="Reddit"><img src="http://blogs.securiteam.com/wp-content/socializer-images/reddit.png" title="Reddit" alt="Reddit" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://slashdot.org/bookmark.pl?title=Fuzzing+anything+that+moves&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332"rel="nofollow" title="Slashdot"><img src="http://blogs.securiteam.com/wp-content/socializer-images/slashdot.png" title="Slashdot" alt="Slashdot" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://twitthis.com/twit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332"rel="nofollow" title="TwitThis"><img src="http://blogs.securiteam.com/wp-content/socializer-images/twitter.png" title="TwitThis" alt="TwitThis" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://sphinn.com/submit.php?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&title=Fuzzing+anything+that+moves"rel="nofollow" title="Sphinn"><img src="http://blogs.securiteam.com/wp-content/socializer-images/sphinn.png" title="Sphinn" alt="Sphinn" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&title=Fuzzing+anything+that+moves"rel="nofollow" title="StumbleUpon"><img src="http://blogs.securiteam.com/wp-content/socializer-images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://del.icio.us/post?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&title=Fuzzing+anything+that+moves"rel="nofollow" title="del.icio.us"><img src="http://blogs.securiteam.com/wp-content/socializer-images/delicious.png" title="del.icio.us" alt="del.icio.us" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.facebook.com/sharer.php?u=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&t=Fuzzing+anything+that+moves"rel="nofollow" title="Facebook"><img src="http://blogs.securiteam.com/wp-content/socializer-images/facebook.png" title="Facebook" alt="Facebook" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.google.com/bookmarks/mark?op=edit&bkmk=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332&title=Fuzzing+anything+that+moves"rel="nofollow" title="Google"><img src="http://blogs.securiteam.com/wp-content/socializer-images/googlebookmark.png" title="Google" alt="Google" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://technorati.com/faves?add=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332"rel="nofollow" title="Technorati"><img src="http://blogs.securiteam.com/wp-content/socializer-images/technorati.png" title="Technorati" alt="Technorati" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="mailto:?subject=Fuzzing+anything+that+moves&body=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1332" title="E-mail this story to a friend!"><img src="http://blogs.securiteam.com/wp-content/socializer-images/email_link.png"rel="nofollow" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a></div> <!-- <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/"> <rdf:Description rdf:about="http://blogs.securiteam.com/index.php/archives/1332" dc:identifier="http://blogs.securiteam.com/index.php/archives/1332" dc:title="Fuzzing anything that moves" trackback:ping="http://blogs.securiteam.com/index.php/archives/1332/trackback/" /> </rdf:RDF> --> </div> </div> <div class="post" id="post-1331"> <h2><a href="http://blogs.securiteam.com/index.php/archives/1331" rel="bookmark" title="Is this the laziest 419 of all time?">Is this the laziest 419 of all time?</a></h2> <p class="postinfo"> Posted on November 14th, 2009 by <a href="http://blogs.securiteam.com/index.php/archives/author/davidh/" title="Posts by David Harley">David Harley</a><br /> Filed under: <a href="http://blogs.securiteam.com/index.php/archives/category/commentary/" title="View all posts in Commentary" rel="category tag">Commentary</a> | <a href="http://blogs.securiteam.com/index.php/archives/1331#comments" title="Comment on Is this the laziest 419 of all time?">1 Comment »</a> </p> <div class="entry"> <p>Subject: the sum of 1,000,000.00 Pounds<br /> From: British Tobacco Promo</p> <p>[<em>Most of the address fields spoofed a US educational institution, though the reply-to was an address in China.</em>]</p> <p>Message Body:</p> <p>You have won 1,000,000.00 Reply us with  your  details<br /> Name:Occupation:Country:Sex</p> <p>[<em>This message is actually several weeks old, but I just spotted it while cleaning up one of my mailboxes. Could any potential victim honestly be that naive?</em>]</p> <p>David Harley FBCS CITP CISSP<br /> Director of Malware Intelligence, ESET</p> <p>Also blogging at:<br /> <a href="http://dharley.wordpress.com/"> http://dharley.wordpress.com/</a><br /> <a href="http://www.eset.com/threat-center/blog"> http://www.eset.com/threat-center/blog</a><br /> <a href="http://avien.net/blog"> http://avien.net/blog</a><br /> <a href="http://blog.isc2.org/"> http://blog.isc2.org/</a> <div><a href="http://digg.com/submit?phase=2&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&title=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="Digg"><img src="http://blogs.securiteam.com/wp-content/socializer-images/digg.png" title="Digg" alt="Digg" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://reddit.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&title=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="Reddit"><img src="http://blogs.securiteam.com/wp-content/socializer-images/reddit.png" title="Reddit" alt="Reddit" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://slashdot.org/bookmark.pl?title=Is+this+the+laziest+419+of+all+time%3F&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331"rel="nofollow" title="Slashdot"><img src="http://blogs.securiteam.com/wp-content/socializer-images/slashdot.png" title="Slashdot" alt="Slashdot" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://twitthis.com/twit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331"rel="nofollow" title="TwitThis"><img src="http://blogs.securiteam.com/wp-content/socializer-images/twitter.png" title="TwitThis" alt="TwitThis" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://sphinn.com/submit.php?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&title=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="Sphinn"><img src="http://blogs.securiteam.com/wp-content/socializer-images/sphinn.png" title="Sphinn" alt="Sphinn" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&title=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="StumbleUpon"><img src="http://blogs.securiteam.com/wp-content/socializer-images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://del.icio.us/post?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&title=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="del.icio.us"><img src="http://blogs.securiteam.com/wp-content/socializer-images/delicious.png" title="del.icio.us" alt="del.icio.us" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.facebook.com/sharer.php?u=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&t=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="Facebook"><img src="http://blogs.securiteam.com/wp-content/socializer-images/facebook.png" title="Facebook" alt="Facebook" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.google.com/bookmarks/mark?op=edit&bkmk=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331&title=Is+this+the+laziest+419+of+all+time%3F"rel="nofollow" title="Google"><img src="http://blogs.securiteam.com/wp-content/socializer-images/googlebookmark.png" title="Google" alt="Google" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://technorati.com/faves?add=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331"rel="nofollow" title="Technorati"><img src="http://blogs.securiteam.com/wp-content/socializer-images/technorati.png" title="Technorati" alt="Technorati" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="mailto:?subject=Is+this+the+laziest+419+of+all+time%3F&body=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1331" title="E-mail this story to a friend!"><img src="http://blogs.securiteam.com/wp-content/socializer-images/email_link.png"rel="nofollow" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a></div> <!-- <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/"> <rdf:Description rdf:about="http://blogs.securiteam.com/index.php/archives/1331" dc:identifier="http://blogs.securiteam.com/index.php/archives/1331" dc:title="Is this the laziest 419 of all time?" trackback:ping="http://blogs.securiteam.com/index.php/archives/1331/trackback/" /> </rdf:RDF> --> </div> </div> <div class="post" id="post-1330"> <h2><a href="http://blogs.securiteam.com/index.php/archives/1330" rel="bookmark" title="HP buys 3COM: how will that impact ZDI?">HP buys 3COM: how will that impact ZDI?</a></h2> <p class="postinfo"> Posted on November 12th, 2009 by <a href="http://blogs.securiteam.com/index.php/archives/author/aviram/" title="Posts by Aviram">Aviram</a><br /> Filed under: <a href="http://blogs.securiteam.com/index.php/archives/category/commentary/" title="View all posts in Commentary" rel="category tag">Commentary</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/full-disclosure/" title="View all posts in Full Disclosure" rel="category tag">Full Disclosure</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/culture/" title="View all posts in Culture" rel="category tag">Culture</a> | <a href="http://blogs.securiteam.com/index.php/archives/1330#comments" title="Comment on HP buys 3COM: how will that impact ZDI?">2 Comments »</a> </p> <div class="entry"> <p>What happens if your job is to sell to customers information about embarrassing vendor vulnerabilities, and then your company gets bought by one of the vendors you are reporting about?</p> <p>Going back to cheesy analogies this is the age old question, can god create a stone so heavy that he cannot lift?</p> <p>The case in question is HP buying 3COM (which owns the Zero Day initiative), and as HD Moore correctly <a href="http://twitter.com/hdmoore/status/5629710613">pointed out</a> there’s bound to be some conflict there.<br /> This will be an interesting match to watch. First, the stone is very heavy. Knowing the ZDI team (*) they have been very successful at staying independent inside the huge 3com corporate, and my money would be on them succeeding to do it again.</p> <p>But when we ask if HP can lift this proverbial stone, lets remember that HP was the only large vendor to pull out the nuclear weapon of <a href="http://news.cnet.com/2100-1023-947325.html?tag=mncol;txt">threatening to sue a security researcher</a> for making their flaws public. Now it’s a group within their own organization, selling information about <a href="http://www.zerodayinitiative.com/advisories/upcoming/">unfixed HP flaws</a> to paying customers, and paying the same researchers HP wanted to sue 7 years ago.</p> <p>(*) Full Disclosure: We run <a href="http://www.beyondsecurity.com/ssd.html">an alternative service to ZDI</a> called SecuriTeam Secure Disclosure. That doesn’t take anything from my respect to the ZDI guys and what they’ve been doing. <div><a href="http://digg.com/submit?phase=2&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="Digg"><img src="http://blogs.securiteam.com/wp-content/socializer-images/digg.png" title="Digg" alt="Digg" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://reddit.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="Reddit"><img src="http://blogs.securiteam.com/wp-content/socializer-images/reddit.png" title="Reddit" alt="Reddit" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://slashdot.org/bookmark.pl?title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330"rel="nofollow" title="Slashdot"><img src="http://blogs.securiteam.com/wp-content/socializer-images/slashdot.png" title="Slashdot" alt="Slashdot" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://twitthis.com/twit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330"rel="nofollow" title="TwitThis"><img src="http://blogs.securiteam.com/wp-content/socializer-images/twitter.png" title="TwitThis" alt="TwitThis" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://sphinn.com/submit.php?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="Sphinn"><img src="http://blogs.securiteam.com/wp-content/socializer-images/sphinn.png" title="Sphinn" alt="Sphinn" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="StumbleUpon"><img src="http://blogs.securiteam.com/wp-content/socializer-images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://del.icio.us/post?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="del.icio.us"><img src="http://blogs.securiteam.com/wp-content/socializer-images/delicious.png" title="del.icio.us" alt="del.icio.us" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.facebook.com/sharer.php?u=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&t=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="Facebook"><img src="http://blogs.securiteam.com/wp-content/socializer-images/facebook.png" title="Facebook" alt="Facebook" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.google.com/bookmarks/mark?op=edit&bkmk=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330&title=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F"rel="nofollow" title="Google"><img src="http://blogs.securiteam.com/wp-content/socializer-images/googlebookmark.png" title="Google" alt="Google" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://technorati.com/faves?add=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330"rel="nofollow" title="Technorati"><img src="http://blogs.securiteam.com/wp-content/socializer-images/technorati.png" title="Technorati" alt="Technorati" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="mailto:?subject=HP+buys+3COM%3A+how+will+that+impact+ZDI%3F&body=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1330" title="E-mail this story to a friend!"><img src="http://blogs.securiteam.com/wp-content/socializer-images/email_link.png"rel="nofollow" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a></div> <!-- <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/"> <rdf:Description rdf:about="http://blogs.securiteam.com/index.php/archives/1330" dc:identifier="http://blogs.securiteam.com/index.php/archives/1330" dc:title="HP buys 3COM: how will that impact ZDI?" trackback:ping="http://blogs.securiteam.com/index.php/archives/1330/trackback/" /> </rdf:RDF> --> </div> </div> <div class="post" id="post-1328"> <h2><a href="http://blogs.securiteam.com/index.php/archives/1328" rel="bookmark" title="Is it phish, or is it Amex?">Is it phish, or is it Amex?</a></h2> <p class="postinfo"> Posted on November 4th, 2009 by <a href="http://blogs.securiteam.com/index.php/archives/author/p1/" title="Posts by p1">p1</a><br /> Filed under: <a href="http://blogs.securiteam.com/index.php/archives/category/commentary/" title="View all posts in Commentary" rel="category tag">Commentary</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/privacy/" title="View all posts in Privacy" rel="category tag">Privacy</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/spam/" title="View all posts in Spam" rel="category tag">Spam</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/culture/" title="View all posts in Culture" rel="category tag">Culture</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/phishing/" title="View all posts in Phishing" rel="category tag">Phishing</a>, <a href="http://blogs.securiteam.com/index.php/archives/category/corporate-security/" title="View all posts in Corporate Security" rel="category tag">Corporate Security</a> | <a href="http://blogs.securiteam.com/index.php/archives/1328#comments" title="Comment on Is it phish, or is it Amex?">2 Comments »</a> </p> <div class="entry"> <p>I am a bit freaked.</p> <p>Last month I received an email message from American Express.  I very nearly deleted it unread: it was obviously phish, right?  (I was teaching in Toronto that week, so I had even more reason to turf it unread rather than look at it.)</p> <p>However, since I do have an Amex card, I decided to at least have a look at it, and possibly try and find some way to send it to them.  So I looked at it.</p> <p>And promptly freaked out.</p> <p>The phishers had my card number.  (Or, at least, the last five digits of it.)  They knew the due date of my statement.  The knew the balance amount of my last statement.</p> <p>(The fact that this was all happening while I am aware from home wasn’t making me feel any more comfortable with it …)</p> <p>So I had a look at the headers.  And couldn’t find a single thing indicating that this wasn’t from American Express.</p> <p>(I had paid my bill before I left.  Or, at least, I *thought* I had.  So I checked my bank.  Sure enough, that balance had been paid a couple of days before.  However, I guess banks never actually transfer money on the weekend or something …)</p> <p>A couple of days later I got another message: Amex was telling me that my payment was received.  That’s nice of them.  They were once again sending, in an unencrypted email message, the last five digits of my card number, and the last balance paid on my account.</p> <p>Well, I figured that it might have been an experiment, and that they’d probably realize the error of their ways, and I didn’t necessarily need to point this out.  Apparently I was wrong on all counts, since I got another reminder message today.</p> <p>Are these people completely unaware of the existence and risk of phishing?  Are they so totally ignorant of online security that they are encouraging their customers to be looking for legitimate email from a financial institution, thus increasing the risk of deception and fraud?</p> <p>Going to their Website, I notice that there is now an “Account Alerts” function.  It may have been there for a while: I don’t know, since I’ve never used it.  Since I’ve never used it, I assume it was populated by default when they created it.  It seems to, by default, send you a payment due notice a week before the deadline, a payment received notice when payment is received, and a notice when you approach your credit limit.  (Fortunately, someone had the good sense not to automatically populate the option that sends you your statement balance every week.)  These options may be useful to some people.  But they should be options: they shouldn’t be sending a bunch of information about everybody’s account, in the clear, by default.</p> <p>(There are, of course, “Terms and Conditions” applicable to this service, which basically say, as usual, that Amex isn’t responsible for much of anything, have warned you, and that you take all the risks arising from this function.  I find this heavily ironic, since I knew nothing of the service, don’t want it, and got it automatically.  I never even knew the “Terms and Conditions” existed, but in order to turn the service <strong>off</strong> I’ll have to read them.)</p> <p>(In trying to send a copy of this to Amex, I note that their Website only lists phone and snailmail as contact options, you aren’t supposed to be able to send them email.) <div><a href="http://digg.com/submit?phase=2&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&title=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="Digg"><img src="http://blogs.securiteam.com/wp-content/socializer-images/digg.png" title="Digg" alt="Digg" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://reddit.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&title=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="Reddit"><img src="http://blogs.securiteam.com/wp-content/socializer-images/reddit.png" title="Reddit" alt="Reddit" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://slashdot.org/bookmark.pl?title=Is+it+phish%2C+or+is+it+Amex%3F&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328"rel="nofollow" title="Slashdot"><img src="http://blogs.securiteam.com/wp-content/socializer-images/slashdot.png" title="Slashdot" alt="Slashdot" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://twitthis.com/twit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328"rel="nofollow" title="TwitThis"><img src="http://blogs.securiteam.com/wp-content/socializer-images/twitter.png" title="TwitThis" alt="TwitThis" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://sphinn.com/submit.php?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&title=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="Sphinn"><img src="http://blogs.securiteam.com/wp-content/socializer-images/sphinn.png" title="Sphinn" alt="Sphinn" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&title=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="StumbleUpon"><img src="http://blogs.securiteam.com/wp-content/socializer-images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://del.icio.us/post?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&title=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="del.icio.us"><img src="http://blogs.securiteam.com/wp-content/socializer-images/delicious.png" title="del.icio.us" alt="del.icio.us" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.facebook.com/sharer.php?u=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&t=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="Facebook"><img src="http://blogs.securiteam.com/wp-content/socializer-images/facebook.png" title="Facebook" alt="Facebook" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.google.com/bookmarks/mark?op=edit&bkmk=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328&title=Is+it+phish%2C+or+is+it+Amex%3F"rel="nofollow" title="Google"><img src="http://blogs.securiteam.com/wp-content/socializer-images/googlebookmark.png" title="Google" alt="Google" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://technorati.com/faves?add=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328"rel="nofollow" title="Technorati"><img src="http://blogs.securiteam.com/wp-content/socializer-images/technorati.png" title="Technorati" alt="Technorati" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="mailto:?subject=Is+it+phish%2C+or+is+it+Amex%3F&body=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1328" title="E-mail this story to a friend!"><img src="http://blogs.securiteam.com/wp-content/socializer-images/email_link.png"rel="nofollow" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a></div> <!-- <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/"> <rdf:Description rdf:about="http://blogs.securiteam.com/index.php/archives/1328" dc:identifier="http://blogs.securiteam.com/index.php/archives/1328" dc:title="Is it phish, or is it Amex?" trackback:ping="http://blogs.securiteam.com/index.php/archives/1328/trackback/" /> </rdf:RDF> --> </div> </div> <div class="post" id="post-1327"> <h2><a href="http://blogs.securiteam.com/index.php/archives/1327" rel="bookmark" title="st0rke">st0rke</a></h2> <p class="postinfo"> Posted on November 4th, 2009 by <a href="http://blogs.securiteam.com/index.php/archives/author/noam/" title="Posts by noam">noam</a><br /> Filed under: <a href="http://blogs.securiteam.com/index.php/archives/category/commentary/" title="View all posts in Commentary" rel="category tag">Commentary</a> | <a href="http://blogs.securiteam.com/index.php/archives/1327#comments" title="Comment on st0rke">3 Comments »</a> </p> <div class="entry"> <p>I just read the sad news that <a rel="nofollow" href="http://bl4cksecurity.blogspot.com/2009/11/str0ke-milworms-funeral-is-this-friday.html">st0rke</a>, also known as the maintainer and founder of milw0rm has passed away, the problem with this news item is that it very difficult to judge whether or not it is true, as the source is not “the official news media” you would normally trust.</p> <p>This of course will not hit CNN, FOX, or any other news agency, and will be posted on, usually, underground mailing list or blog which might or not have a hidden agenda in respect to giving out such news items.</p> <p>This if of course not the first time someone was claimed to have died, with only rumours circulating and then finally after some time, it was determined to be true, as their site was no longer being updated, and emails sent to him never got a reply.</p> <p>If it is in fact true, the story about str0ke, I am sadden to hear it, and I send my condolences to his family, wife and 4 kids. <div><a href="http://digg.com/submit?phase=2&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&title=st0rke"rel="nofollow" title="Digg"><img src="http://blogs.securiteam.com/wp-content/socializer-images/digg.png" title="Digg" alt="Digg" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://reddit.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&title=st0rke"rel="nofollow" title="Reddit"><img src="http://blogs.securiteam.com/wp-content/socializer-images/reddit.png" title="Reddit" alt="Reddit" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://slashdot.org/bookmark.pl?title=st0rke&url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327"rel="nofollow" title="Slashdot"><img src="http://blogs.securiteam.com/wp-content/socializer-images/slashdot.png" title="Slashdot" alt="Slashdot" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://twitthis.com/twit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327"rel="nofollow" title="TwitThis"><img src="http://blogs.securiteam.com/wp-content/socializer-images/twitter.png" title="TwitThis" alt="TwitThis" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://sphinn.com/submit.php?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&title=st0rke"rel="nofollow" title="Sphinn"><img src="http://blogs.securiteam.com/wp-content/socializer-images/sphinn.png" title="Sphinn" alt="Sphinn" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&title=st0rke"rel="nofollow" title="StumbleUpon"><img src="http://blogs.securiteam.com/wp-content/socializer-images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://del.icio.us/post?url=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&title=st0rke"rel="nofollow" title="del.icio.us"><img src="http://blogs.securiteam.com/wp-content/socializer-images/delicious.png" title="del.icio.us" alt="del.icio.us" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.facebook.com/sharer.php?u=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&t=st0rke"rel="nofollow" title="Facebook"><img src="http://blogs.securiteam.com/wp-content/socializer-images/facebook.png" title="Facebook" alt="Facebook" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://www.google.com/bookmarks/mark?op=edit&bkmk=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327&title=st0rke"rel="nofollow" title="Google"><img src="http://blogs.securiteam.com/wp-content/socializer-images/googlebookmark.png" title="Google" alt="Google" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="http://technorati.com/faves?add=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327"rel="nofollow" title="Technorati"><img src="http://blogs.securiteam.com/wp-content/socializer-images/technorati.png" title="Technorati" alt="Technorati" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a><a href="mailto:?subject=st0rke&body=http%3A%2F%2Fblogs.securiteam.com%2Findex.php%2Farchives%2F1327" title="E-mail this story to a friend!"><img src="http://blogs.securiteam.com/wp-content/socializer-images/email_link.png"rel="nofollow" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" style="margin:5px; border:0px; opacity: .4; -moz-opacity: .4; filter: alpha(opacity=40);" /></a></div> <!-- <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/"> <rdf:Description rdf:about="http://blogs.securiteam.com/index.php/archives/1327" dc:identifier="http://blogs.securiteam.com/index.php/archives/1327" dc:title="st0rke" trackback:ping="http://blogs.securiteam.com/index.php/archives/1327/trackback/" /> </rdf:RDF> --> </div> </div> <div class="browse"></div> <div class="clear"></div> </div> <div class="sidebar sidebar2"> <ul> <li><h3>More <span>SecuriTeam...</span></h3> <!-- inlineRSS - beginning of securiteam feed --> <ul><li><a href="http://www.securiteam.com/securitynews/5PP3D200UG.html">SugarCRM Online Document Cross-Site Scripting (XSS) Vulnerability</a></li><li><a href="http://www.securiteam.com/securitynews/5OP3C200UE.html">Skype URI Processing Arbitrary XML File Deletion Vulnerability</a></li><li><a href="http://www.securiteam.com/securitynews/5NP3B200UC.html">Skype Protocol Handler Datapath Argument Injection Credential Disclosure Vulnerability</a></li><li><a href="http://www.securiteam.com/securitynews/5EP3H1P0AU.html">LedgerSMB Multiple Vulnerabilities</a></li><li><a href="http://www.securiteam.com/securitynews/5RP2W150AC.html">Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability</a></li><li><a href="http://www.securiteam.com/tools/5QP0B0KQUE.html">Netifera - Modular Open Source Platform for Security Tools</a></li><li><a href="http://www.securiteam.com/tools/5RP012KQKA.html">WarVOX - Tools for Exploring, Classifying, and Auditing Telephone Systems</a></li><li><a href="http://www.securiteam.com/tools/5QP0L0UQAI.html">Webshag - Web Server Audit Tool</a></li><li><a href="http://www.securiteam.com/tools/5OP0L00Q0Y.html">Browser Fuzzer</a></li><li><a href="http://www.securiteam.com/tools/6D00V0ANFY.html">FSpy - Linux Filesystem Activity Monitoring</a></li><li><a href="http://www.securiteam.com/unixfocus/5EP39200UK.html">Apple Webkit Blink Event Dangling Pointer Remote Code Execution Vulnerability</a></li><li><a href="http://www.securiteam.com/unixfocus/5CP37200UG.html">Microsoft Virtual PC Hypervisor Memory Protection Vulnerability</a></li><li><a href="http://www.securiteam.com/unixfocus/5BP36200UE.html">Apple WebKit HTML Element Use After Free Vulnerability</a></li><li><a href="http://www.securiteam.com/unixfocus/5MP3A200UA.html">Apple WebKit CSS Run-in Attribute Rendering Vulnerability</a></li><li><a href="http://www.securiteam.com/unixfocus/5FP3I1P0AO.html">Publique! CMS and SQL Injection Vulnerabilities</a></li><li><a href="http://www.securiteam.com/windowsntfocus/5DP38200UI.html">SAP MaxDB Malformed Handshake Request Remote Code Execution Vulnerability</a></li><li><a href="http://www.securiteam.com/windowsntfocus/5QP3E200UI.html">Dojo Toolkit SDK Multiple DOM-Based XSS Vulnerabilities</a></li><li><a href="http://www.securiteam.com/windowsntfocus/6S00D00QAW.html">Microsoft Indeo Codec Memory Corruption Vulnerability</a></li><li><a href="http://www.securiteam.com/windowsntfocus/6T00C2AQ0Y.html">HP DDMI Execution of Arbitrary Code</a></li><li><a href="http://www.securiteam.com/windowsntfocus/6M00D0UQ0W.html">Microsoft Windows License Logging Service Heap Corruption Vulnerability</a></li><li><a href="http://www.securiteam.com/exploits/5LP2V0K0AG.html">Trango Broadband Wireless Rogue SU Authentication Bug</a></li><li><a href="http://www.securiteam.com/exploits/5CP2W0A0AU.html">Exposing HMS HICP Protocol and Intellicom NetBiterConfig.exe Remote Buffer Overflow</a></li><li><a href="http://www.securiteam.com/exploits/6U00D20QAQ.html">Family Connections Multiple Remote Vulnerabilities</a></li><li><a href="http://www.securiteam.com/exploits/6T00C20QAY.html">VideoCache vccleaner Root Vulnerability</a></li><li><a href="http://www.securiteam.com/exploits/6S00B20QAQ.html">QuickHeal Antivirus 2010 Local Privilege Escalation</a></li><li><a href="http://www.securiteam.com/securityreviews/5NP0E00R5A.html">Why Silent Updates Boost Security</a></li><li><a href="http://www.securiteam.com/securityreviews/5MP0D00R5G.html">PDF Silent HTTP Form Repurposing Attacks</a></li><li><a href="http://www.securiteam.com/securityreviews/6M0010UNFQ.html">Frame Pointer Overwrite Demonstration (Linux)</a></li><li><a href="http://www.securiteam.com/securityreviews/6E0030KNFO.html">Format String Exploitation Demonstration (Linux)</a></li><li><a href="http://www.securiteam.com/securityreviews/6D00C0KN5S.html">Hacking SOHO Routers</a></li></ul> <!-- end of securiteam feed --> </li> <a href="http://www.securiteam.com/securiteam.rss"><img class="offsetimg" src="http://blogs.securiteam.com/wp-content/themes/securiteam.new/images/rss.gif" ALT="Security Research"> Subscribe</a> </ul> </div> <div class="sidebar"> <a style="font-size: 150%;" href="/index.php/feed/"><img src="http://blogs.securiteam.com/wp-content/themes/securiteam.new/images/rss-icon-48x48.gif" width="24" ALT="Security RSS"> Subscribe</a> <br><br> <ul> <!-- <li class="pagenav"><h2>Pages</h2><ul><li class="page_item"><a href="http://blogs.securiteam.com/index.php/about/" title="About">About</a></li> <li class="page_item"><a href="http://blogs.securiteam.com/index.php/sectoon_about/" title="About SecuriToons">About SecuriToons</a></li> <li class="page_item"><a href="http://blogs.securiteam.com/index.php/sectoon_contact/" title="Contact SecuriToons">Contact SecuriToons</a></li> <li class="page_item"><a href="http://blogs.securiteam.com/index.php/sectoon_join/" title="Join SecuriToons">Join SecuriToons</a></li> <li class="page_item"><a href="http://blogs.securiteam.com/index.php/sectoon_authors/" title="SecuriToons Authors">SecuriToons Authors</a></li> <li class="page_item"><a href="http://blogs.securiteam.com/index.php/write/" title="Write with us">Write with us</a></li> </ul></li> --> <li> <h2 class="orange delicious">On the Wire</h2> <!-- inlineRSS - beginning of delicious feed --> <ul><li><a href="http://unsafebits.com/2010/03/11/goodbye-mostly-securityfocus/">Goodbye (mostly), SecurityFocus « UnsafeBits</a></li><li><a href="http://freakonomics.blogs.nytimes.com/2010/03/01/setting-off-alarm-bells-at-work/?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed:+FreakonomicsBlog+(Freakonomics+Blog)">Setting Off Alarm Bells at Work - Freakonomics Blog - NYTimes.com</a></li><li><a href="http://www.informationweek.com/blog/main/archives/2010/01/google_were_enc.html">Google: We're Encrypting Everyone's Gmail Automatically</a></li><li><a href="http://www.theregister.co.uk/2010/01/05/symantec_y2k10_bug/">Y2.01K bug trips up Symantec</a></li><li><a href="http://www.washingtonpost.com/wp-dyn/content/article/2009/12/22/AR2009122201429.html?hpid=moreheadlines">Obama names Howard Schmidt as cybersecurity coordinator</a></li><li><a href="http://mashable.com/2009/10/19/twitter-bug-exposes-private-tweets/">Twitter Bug Exposes Private Tweets</a></li><li><a href="http://www.canada.com/technology/Wary+naked+force+Israelis+cyberwar+Iran/1767247/story.html">Wary of naked force, Israelis eye cyberwar on Iran</a></li><li><a href="http://gizmodo.com/5361061/coming-back-from-china-throw-your-phone-out">Coming Back From China? Throw Your Phone Out</a></li><li><a href="http://www.forbes.com/2009/09/03/apple-snow-leopard-technology-security-flash.html?feed=rss_popstories">Apple's Sloppy Security Moves</a></li><li><a href="http://chargen.matasano.com/chargen/2009/8/27/the-security-implications-of-google-native-client.html">the security implications of google native client</a></li><li><a href="http://news.zdnet.com/2100-9595_22-334668.html">Cyberattackers lay more 'stepping stones'</a></li><li><a href="http://www.thesidebar.org/insecurity/?p=447">Breaking Assa locks</a></li><li><a href="http://it.slashdot.org/story/09/08/18/2119254/Australian-Police-Database-Lacked-Root-Password">Australian Police Database Lacked Root Password</a></li><li><a href="http://ephermata.livejournal.com/204026.html">The $99 iphone as an inexpensive tracking device</a></li><li><a href="http://arstechnica.com/tech-policy/news/2009/07/social-insecurity-numbers-open-to-hacking.ars">New algorithm guesses SSNs using date and place of birth</a></li></ul> <!-- end of delicious feed --> <a class="more" href="http://del.icio.us/securiteam">More...</a><br /> <a href="http://del.icio.us/rss/securiteam"><img class="offsetimg" src="http://blogs.securiteam.com/wp-content/themes/securiteam.new/images/rss.gif" ALT="Leading Security Blog"> Subscribe</a> <p></p><p></p> </li> <li class="feature"><h2 class="orange top">Top Posts</h2> <ul> <li><a href="http://blogs.securiteam.com/index.php/archives/790">IE7 on Linux</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1150">Microsoft Windows RPC Vulnerability MS08-067 (CVE-2008-4250) FAQ - October 2008 [UPDATED]</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1032">Zoned Out #2 (comic strip)</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1060">MBR rootkit - here's some references</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1039">Zoned Out #4 (comic strip)</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1024">Memory Leak #23 (comic strip)</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1038">Zoned Out #3 (comic strip)</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1059">Google as an RBL</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1031">The NULL Terminated Strip #5 (comic strip)</a></li><li><a href="http://blogs.securiteam.com/index.php/archives/1064">iPhone Key Leak</a></li> </ul> </li> <li><h2>RSS FEED</h2><a href="http://blogs.securiteam.com/index.php/feed/"><img class="offsetimg" src="http://blogs.securiteam.com/wp-content/themes/securiteam.new/images/rss.gif" ALT="SecuriTeam RSS">Securiteam Blogs RSS</a> <br /><br /> </li> <li><h2>Reed's Alert!</h2> <ul> <li><a href="mailto:reedalert@securiteam.com">Got something burning?<br />Tell SecuriTeam blogs.</a></li> </ul> </li> <li><h2>Favorites</h2> <ul> <li><a href="http://www.beyondsecurity.com/vulnerability-scanner.html">Vulnerability Scanner</a></li> <li><a href="http://www.beyondsecurity.com/vulnerability-assessment.html">Vulnerability Assessment</a></li> <li><a href="http://www.beyondsecurity.com/black-box-testing.html">Black Box Testing</a></li> </ul> </li> <li><h2>Cartoons</h2> <ul> <li><a href="http://www.securitoons.com/">SecuriTeam cartoons</a></li> </ul> </li>                   <li id="activity">                  <h2>COMMENTS</h2><ul><li><a href="http://blogs.securiteam.com/index.php/archives/48" class="activityentry">An Online MD5 Hash Database</a>  <a href="http://blogs.securiteam.com/index.php/archives/48#comments" title="Go to the comments of this entry">172</a><br /> <small><a style="color: #545454;" href="http://blogs.securiteam.com/index.php/archives/48#comment-653440">ace</a>, <a style="color: #545454;" href="http://blogs.securiteam.com/index.php/archives/48#comment-653439">ace</a>, <a style="color: #888888;" href="http://blogs.securiteam.com/index.php/archives/48#comment-653144">Canary</a>, <a style="color: #888888;" href="http://blogs.securiteam.com/index.php/archives/48#comment-653143">Canary</a>, <a style="color: #b5b5b5;" href="http://blogs.securiteam.com/index.php/archives/48#comment-652983">DTeCH</a>, <a style="color: #b5b5b5;" href="http://blogs.securiteam.com/index.php/archives/48#comment-652982">DTeCH</a> <a href="http://blogs.securiteam.com/index.php/archives/48#comments" title="Go to the comments of this entry">[...]</a></small></li> <li><a href="http://blogs.securiteam.com/index.php/archives/144" class="activityentry">Hack the hackers (muhahaha)</a>  <a href="http://blogs.securiteam.com/index.php/archives/144#comments" title="Go to the comments of this entry">134</a><br /> <small><a style="color: #c5c5c5;" href="http://blogs.securiteam.com/index.php/archives/144#comment-652927">vidhu</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/144#comment-651137">sanjith123</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/144#comment-650309">Joshy Basil</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/144#comment-586914">muhahaha</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/144#comment-572908">i use orkut account by gmail id but now gmail id was disabled so i cant sign in what can ido draju@in.com</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/144#comment-569533">SHARADHA</a> <a href="http://blogs.securiteam.com/index.php/archives/144#comments" title="Go to the comments of this entry">[...]</a></small></li> <li><a href="http://blogs.securiteam.com/index.php/archives/1324" class="activityentry">Microsoft Security Essentials review</a>  <a href="http://blogs.securiteam.com/index.php/archives/1324#comments" title="Go to the comments of this entry">30</a><br /> <small><a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1324#comment-652872">Rob Stansbury</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1324#comment-652546">Richard K</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1324#comment-652365">Garry</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1324#comment-649216">Suman Sesham</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1324#comment-649133">Agellius</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1324#comment-648823">Bichey</a> <a href="http://blogs.securiteam.com/index.php/archives/1324#comments" title="Go to the comments of this entry">[...]</a></small></li> <li><a href="http://blogs.securiteam.com/index.php/archives/1344" class="activityentry">So Microsoft has known about the IE vulnerability (CVE-2010-0249) since last September.</a>  <a href="http://blogs.securiteam.com/index.php/archives/1344#comments" title="Go to the comments of this entry">3</a><br /> <small><a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1344#comment-652485">Kevin Severud</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1344#comment-649901">xyberpix</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1344#comment-649896">Toby</a></small></li> <li><a href="http://blogs.securiteam.com/index.php/archives/1268" class="activityentry">File upload security recommendations</a>  <a href="http://blogs.securiteam.com/index.php/archives/1268#comments" title="Go to the comments of this entry">5</a><br /> <small><a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1268#comment-652321">maxishare</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1268#comment-650943">SquirreliT</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1268#comment-604446">w0lf</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1268#comment-604269">Prashant Verma</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1268#comment-604046">Blaque</a></small></li> <li><a href="http://blogs.securiteam.com/index.php/archives/1161" class="activityentry">Writing malicious macros using metasploit</a>  <a href="http://blogs.securiteam.com/index.php/archives/1161#comments" title="Go to the comments of this entry">14</a><br /> <small><a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1161#comment-651950">virus</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1161#comment-634754">abhishek</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1161#comment-631575">r00t</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1161#comment-618234">Anisha</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1161#comment-584874">w0lf</a>, <a style="color: #cccccc;" href="http://blogs.securiteam.com/index.php/archives/1161#comment-584161">abhishek</a> <a href="http://blogs.securiteam.com/index.php/archives/1161#comments" title="Go to the comments of this entry">[...]</a></small></li> </ul>                 </li>          <li id="authors"> <h2>MOST ACTIVE</h2> <ul> <li><a href="http://blogs.securiteam.com/index.php/archives/author/aviram/" title="Posts by Aviram">Aviram Jenik</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/aviram/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/davidh/" title="Posts by davidh">David Harley</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/davidh/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/dmitryc/" title="Posts by dmitryc">Dmitry Chan</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/dmitryc/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/gadi/" title="Posts by gadi">Gadi Evron</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/gadi/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/joe/" title="Posts by joe">Joe Stewart</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/joe/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/juha-matti/" title="Posts by Juha-Matti">Juha-Matti Laurio</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/juha-matti/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/mattmurphy/" title="Posts by mattmurphy">Matthew Murphy</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/mattmurphy/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/noam/" title="Posts by noam">Noam Rathaus</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/noam/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/p1/" title="Posts by p1">Rob Slade</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/p1/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/prozacgod/" title="Posts by Prozacgod">David Hagler</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/prozacgod/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/ren-and-stimpy/" title="Posts by ren and stimpy">Ren and Stimpy</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/ren-and-stimpy/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/roger/" title="Posts by Roger">Roger Thompson</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/roger/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/trirat/" title="Posts by Trirat">Trirat Kira P</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/trirat/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/whiteacid/" title="Posts by WhiteAcid">WhiteAcid</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/whiteacid/feed/" title="rss">rss</a>) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/author/xyberpix/" title="Posts by xyberpix">xyberpix</a> (<a href="http://blogs.securiteam.com/index.php/archives/author/xyberpix/feed/" title="rss">rss</a>) </li> </ul> </li> <li><h2>Archives</h2> <ul> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2010/03/' title='March 2010'>March 2010</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2010/02/' title='February 2010'>February 2010</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2010/01/' title='January 2010'>January 2010</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/12/' title='December 2009'>December 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/11/' title='November 2009'>November 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/10/' title='October 2009'>October 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/09/' title='September 2009'>September 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/08/' title='August 2009'>August 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/07/' title='July 2009'>July 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/06/' title='June 2009'>June 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/05/' title='May 2009'>May 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/04/' title='April 2009'>April 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/03/' title='March 2009'>March 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/02/' title='February 2009'>February 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2009/01/' title='January 2009'>January 2009</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/12/' title='December 2008'>December 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/11/' title='November 2008'>November 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/10/' title='October 2008'>October 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/09/' title='September 2008'>September 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/08/' title='August 2008'>August 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/07/' title='July 2008'>July 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/06/' title='June 2008'>June 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/05/' title='May 2008'>May 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/04/' title='April 2008'>April 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/03/' title='March 2008'>March 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/02/' title='February 2008'>February 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2008/01/' title='January 2008'>January 2008</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/12/' title='December 2007'>December 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/11/' title='November 2007'>November 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/10/' title='October 2007'>October 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/09/' title='September 2007'>September 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/08/' title='August 2007'>August 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/07/' title='July 2007'>July 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/06/' title='June 2007'>June 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/05/' title='May 2007'>May 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/04/' title='April 2007'>April 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/03/' title='March 2007'>March 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/02/' title='February 2007'>February 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2007/01/' title='January 2007'>January 2007</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/12/' title='December 2006'>December 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/11/' title='November 2006'>November 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/10/' title='October 2006'>October 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/09/' title='September 2006'>September 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/08/' title='August 2006'>August 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/07/' title='July 2006'>July 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/06/' title='June 2006'>June 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/05/' title='May 2006'>May 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/04/' title='April 2006'>April 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/03/' title='March 2006'>March 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/02/' title='February 2006'>February 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2006/01/' title='January 2006'>January 2006</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2005/12/' title='December 2005'>December 2005</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2005/11/' title='November 2005'>November 2005</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2005/10/' title='October 2005'>October 2005</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2005/09/' title='September 2005'>September 2005</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2005/08/' title='August 2005'>August 2005</a></li> <li><a href='http://blogs.securiteam.com/index.php/archives/date/2005/07/' title='July 2005'>July 2005</a></li> </ul> </li> <li id="linkcat-1"><h2>Blogroll</h2> <ul> <li><a href="http://www.osvdb.org/blog/">OSVDB blog</a></li> <li><a href="http://www.securiteam.com">SecuriTeam</a></li> </ul> </li> <li><h2>Categories</h2> <ul> <li><a href="http://blogs.securiteam.com/index.php/archives/category/apple/" title="Stories related to Apple Computer Inc.">Apple</a> (38) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/ask-the-expert/" title="Questions sent to expert@securiteam.com fall under this category.">Ask the Expert</a> (15) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/botnets/" title="View all posts filed under Botnets">Botnets</a> (65) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/cisco/" title="Stories related to Cisco and their products">Cisco</a> (24) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/commentary/" title="General ideas about the world of security">Commentary</a> (996) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/corporate-security/" title="View all posts filed under Corporate Security">Corporate Security</a> (261) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/culture/" title="View all posts filed under Culture">Culture</a> (241) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/ddos/" title="View all posts filed under DDoS">DDoS</a> (32) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/digest/" title="SecuriTeam Digest">Digest</a> (41) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/earl/" title="View all posts filed under Earl">Earl</a> (11) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/encryption/" title="View all posts filed under Encryption">Encryption</a> (32) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/full-disclosure/" title="The need for Full, Partial, Responsible and Zero disclosure. Issues with reporting vulnerabilities to vendors.">Full Disclosure</a> (192) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/" title="Comic strips by our cartoon-writing-bloggers">Funnies</a> (69) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funny/" title="or at least, we think so">Funny</a> (65) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/fuzzing/" title="View all posts filed under Fuzzing">Fuzzing</a> (24) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/gadgets/" title="Hacking TiVO, PS2, Palm, GPRS, or your riding bikes">Gadgets</a> (38) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/google/" title="View all posts filed under Google">Google</a> (50) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/hacked/" title="View all posts filed under Hacked">Hacked</a> (13) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/insecurity/" title="View all posts filed under InSecurity">InSecurity</a> (17) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/insider-threat/" title="The FBI says 70% of attackers originate from inside the organization (or is it 80%). So why do we all talk about hackers and Internet-bound attacks?">Insider Threat</a> (38) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/interviews/" title="View all posts filed under Interviews">Interviews</a> (7) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/law/" title="Law and legislation">Law</a> (55) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/linux/" title="Linux related stories">Linux</a> (36) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/malware/" title="View all posts filed under malware">malware</a> (13) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/memory-leak/" title="View all posts filed under Memory Leak">Memory Leak</a> (24) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/microsoft/" title="Stories about Microsoft, Windows, Office and so on">Microsoft</a> (211) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/networking/" title="View all posts filed under Networking">Networking</a> (69) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/opsec/" title="View all posts filed under OPSEC">OPSEC</a> (11) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/ot/" title="Off Topic">OT</a> (66) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/phishing/" title="View all posts filed under Phishing">Phishing</a> (86) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/physical-security/" title="Fences, alarms, but also TEMPEST and side channels">Physical Security</a> (63) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/privacy/" title="Privacy and anonymity">Privacy</a> (118) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/rootkits/" title="View all posts filed under Rootkits">Rootkits</a> (23) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/sec-tools/" title="View all posts filed under Sec Tools">Sec Tools</a> (35) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/spam/" title="Anything related to Spam.">Spam</a> (135) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/the-null-terminated/" title="View all posts filed under The NULL Terminated">The NULL Terminated</a> (5) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/virus/" title="Anything related to viruses, Trojans and backdoors.">Virus</a> (215) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/web/" title="Web related security entries. Anything that has to do with PHP/ASP/JSP, including Apache, IIS, Macromedia flash, etc.">Web</a> (396) </li> <li><a href="http://blogs.securiteam.com/index.php/archives/category/funnies/zoned-out/" title="View all posts filed under Zoned Out">Zoned Out</a> (4) </li> </ul> </li> <li><h2>Meta</h2> <ul> <li><a href="http://blogs.securiteam.com/wp-login.php">Login</a></li> </ul> </li> </ul> </div> <div class="clear"></div> <div id="footer"> <p><a href="http://blogs.securiteam.com" title="SecuriTeam Blogs home page">SecuriTeam Blogs</a> is powered by Word Press.</p> </div> </div><!-- end page --> </div> <script type="text/javascript"> var gaJsHost = (("https:" == document.location.protocol) ? "https://ssl." : "http://www."); document.write(unescape("%3Cscript src='" + gaJsHost + "google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E")); </script> <script type="text/javascript"> var pageTracker = _gat._getTracker("UA-240792-4"); pageTracker._initData(); pageTracker._trackPageview(); </script> <br> <div align="center"><a href="http://www.beyondsecurity.com/vulnerability-scanner-verification/blogs.securiteam.com" > <img src="http://www.beyondsecurity.com/verification-images/blogs.securiteam.com/vulnerability-scanner-2.gif" alt="Vulnerability Scanner" /> </a> </div> <br> </body> </html>