<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" version="2.0">

<channel>
	<title>PhireFast Blog</title>
	
	<link>http://blog.phirefast.com</link>
	<description>Welcome to PhireFast's Blog!</description>
	<lastBuildDate>Mon, 18 Jan 2010 13:03:47 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/PhireFastBlog" /><feedburner:info xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" uri="phirefastblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
		<title>Majority Of Platform Is Down: SOLVED</title>
		<link>http://blog.phirefast.com/2010/01/18/majority-of-platform-is-down/</link>
		<comments>http://blog.phirefast.com/2010/01/18/majority-of-platform-is-down/#comments</comments>
		<pubDate>Mon, 18 Jan 2010 07:17:49 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=91</guid>
		<description><![CDATA[Dear Valued Clients,
Tonight a serious issue has temporarilly affected many of our customer websites and servers. NO DATA HAS BEEN LOST, although websites, cPanel itself and SSH are currently unavailable. IMAP, POP3 and SMTP appear to be working normally.
I&#8217;d like you to know we are working hard to make sure everything is back up in [...]]]></description>
			<content:encoded><![CDATA[<p>Dear Valued Clients,</p>
<p>Tonight a serious issue has temporarilly affected many of our customer websites and servers. NO DATA HAS BEEN LOST, although websites, cPanel itself and SSH are currently unavailable. IMAP, POP3 and SMTP appear to be working normally.</p>
<p>I&#8217;d like you to know we are working hard to make sure everything is back up in a timely manner, and I will update as soon as possible, as information reveals itself.</p>
<p>Thank you for understanding, and thank you for choosing us as your web host.</p>
<p>- Mark Mutti</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2010/01/18/majority-of-platform-is-down/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thanksgiving Weekend Support</title>
		<link>http://blog.phirefast.com/2009/11/26/thanksgiving-weekend-support/</link>
		<comments>http://blog.phirefast.com/2009/11/26/thanksgiving-weekend-support/#comments</comments>
		<pubDate>Thu, 26 Nov 2009 18:58:35 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=78</guid>
		<description><![CDATA[Valued Hosters -
As usual, support will be available 24 hours a day, even during this Thanksgiving Holiday here in the United States. We are also working on expanding our livesupport (live chat) hours for your convenience!
For those who celebrate the holiday, we hope you have a fun and happy Thanksgiving, and as always, we are [...]]]></description>
			<content:encoded><![CDATA[<p>Valued Hosters -</p>
<p>As usual, support will be available 24 hours a day, even during this Thanksgiving Holiday here in the United States. We are also working on expanding our livesupport (live chat) hours for your convenience!</p>
<p>For those who celebrate the holiday, we hope you have a fun and happy Thanksgiving, and as always, we are very grateful to be your web hosting provider. Thank you!</p>
<p>(Gobble gobble)</p>
<p>- Mark Mutti<br />
Owner, PhireFast.com</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/11/26/thanksgiving-weekend-support/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ATTENTION Verizon DSL Subscribers</title>
		<link>http://blog.phirefast.com/2009/10/13/attention-verizon-dsl-subscribers/</link>
		<comments>http://blog.phirefast.com/2009/10/13/attention-verizon-dsl-subscribers/#comments</comments>
		<pubDate>Tue, 13 Oct 2009 20:54:59 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=75</guid>
		<description><![CDATA[We have received a large amount of Support Requests today from Verizon DSL Subscribers over the last 36 hours.
After our own research, and communication with other web hosting and email providers, we have confirmed that Verizon has started blocking Port 25 (SMTP) access on their platform.
For many years, PhireFast has run an SMTP Relay on [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-medium wp-image-76" title="107309-Verizon_logo" src="http://blog.phirefast.com/wp-content/uploads/2009/10/107309-Verizon_logo-300x197.jpg" alt="107309-Verizon_logo" width="300" height="197" />We have received a large amount of Support Requests today from Verizon DSL Subscribers over the last 36 hours.</p>
<p>After our own research, and communication with other web hosting and email providers, we have confirmed that Verizon has started blocking Port 25 (SMTP) access on their platform.</p>
<p>For many years, PhireFast has run an SMTP Relay on Port 26 for our clients facing this restriction from their ISPs, which until now has mainly only been AT&amp;T DSL and Earthlink.</p>
<p><strong>The Fix:</strong> Simply access your email program&#8217;s settings and change your POP3 email account&#8217;s SMTP port from 25 to 26 and you should be alright. IMAP platform users are not affected by Verizon&#8217;s switch-over.</p>
<p><strong>The Reason:</strong> Many ISPs block port 25 to prevent the transit of spam on their network. By blocking access to this common port, one extra layer of &#8220;protection&#8221; (or so they say) is added to their network.</p>
<p>As always, please feel free to ask us for help by submitting a Support Request.</p>
<p>Thank you for hosting with us!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/10/13/attention-verizon-dsl-subscribers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Libpurple Users: Update ASAP!</title>
		<link>http://blog.phirefast.com/2009/08/21/libpurple-users-update-asap/</link>
		<comments>http://blog.phirefast.com/2009/08/21/libpurple-users-update-asap/#comments</comments>
		<pubDate>Fri, 21 Aug 2009 17:29:46 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=71</guid>
		<description><![CDATA[
For users of the awesome instant messaging client Pidgin, you should have a look at this and update your libpurple library when possible.
Just download and install the latest version of Pidgin. It will automatically upgrade your current version.
US-CERT Emailed today:
Pidgin has released a security advisory to address a vulnerability affecting libpurple. This vulnerability is a [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-medium wp-image-72" title="Pidgin Vulnerability" src="http://blog.phirefast.com/wp-content/uploads/2009/08/pidginChatClient01-231x300.jpg" alt="Pidgin Vulnerability" width="231" height="300" /><strong><br />
For users of the awesome instant messaging client Pidgin, you should have a look at this and update your libpurple library when possible.</p>
<p>Just download and install the latest version of Pidgin. It will automatically upgrade your current version.</strong></p>
<p><em>US-CERT Emailed today:</em></p>
<blockquote><p>Pidgin has released a <a href="http://pidgin.im/news/security/?id=34" target="_blank">security advisory</a> to address a vulnerability affecting libpurple. This vulnerability is a buffer overflow that may allow an attacker to execute arbitrary code. Libpurple is used by multiple instant messenger (IM) programs including Adium and Pidgin.</p>
<p>IM applications that use libpurple may distribute it as a part of their security updates. Users are encouraged to update affected IM software as soon as possible. A partial listing of IM programs that implement libpurple can be found in the &#8220;<a href="http://developer.pidgin.im/wiki/WhatIsLibpurple" target="_blank">What is libpurple?</a>&#8221; webpage on the Pidgin website. Additional information may be found in the <a href="http://www.kb.cert.org/vuls/id/582244" target="_blank">US-CERT Vulnerability Notes Database</a>.</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/08/21/libpurple-users-update-asap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Invision Power Board 3.0.2 Out Now!</title>
		<link>http://blog.phirefast.com/2009/08/11/invision-power-board-3-0-2-out-now/</link>
		<comments>http://blog.phirefast.com/2009/08/11/invision-power-board-3-0-2-out-now/#comments</comments>
		<pubDate>Tue, 11 Aug 2009 18:49:05 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=67</guid>
		<description><![CDATA[For our clients who run Invision Software, Invision has released Power Board 3.0.2 today!
Excerpted from their email blast earlier today, new features include:
* Improved search and member list performance
* Date filter options for Active Content page
* Many improvements for Sphinx searching (i.e. ability to filter by forum, ability to search titles only, ability to group [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-medium wp-image-68" title="Invision Power Board 3.0.2" src="http://blog.phirefast.com/wp-content/uploads/2009/08/homepage_ss_1-300x206.png" alt="Invision Power Board 3.0.2" width="300" height="206" />For our clients who run Invision Software, Invision has released Power Board 3.0.2 today!</p>
<p>Excerpted from their email blast earlier today, new features include:</p>
<blockquote><p>* Improved search and member list performance<br />
* Date filter options for Active Content page<br />
* Many improvements for Sphinx searching (i.e. ability to filter by forum, ability to search titles only, ability to group posts as topics, plugin functionality for modifying the query, and misc bug fixes)<br />
* Ability to hide an application&#8217;s tab on the front end, while still allowing it to be publicly accessible<br />
* Improved IP address lookup tool can now support add-on applications<br />
* Portal option to not pin pinned topics for articles<br />
* Added link to user profile when editing a member in ACP<br />
* Added display of time remaining for suspended members when editing a member in ACP<br />
* Spam Monitoring Service support<br />
* Ability to control image quality for Gallery images (jpg/png only)<br />
* PHP version 5.3 is now supported in IP.Board except for OpenID login method. We are awaiting updates from OpenID vendors.</p></blockquote>
<p>These features look promising, and I recommend if you can, upgrade to it! The improvements to the search are worth it alone, in my opinion.</p>
<p>Also from their email:</p>
<blockquote><p>You can download IP.Board 3.0.2 and any applications you have an active license for in the <a href="http://click.icptrack.com/icp/relay.php?r=51360838&amp;msgid=713696&amp;act=SX3E&amp;c=335011&amp;admin=0&amp;destination=http%3A%2F%2Fwww.invisionpower.com%2Fcustomer%2F" target="_blank">client area</a>. As always, make a backup of your community before proceeding.</p></blockquote>
<p>If you need a hand with this, let us know! We&#8217;re here for you, day and night.</p>
<p>Happy foruming! Thanks for hosting with PhireFast!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/08/11/invision-power-board-3-0-2-out-now/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter Being DDOSed</title>
		<link>http://blog.phirefast.com/2009/08/06/twitter-being-ddosed/</link>
		<comments>http://blog.phirefast.com/2009/08/06/twitter-being-ddosed/#comments</comments>
		<pubDate>Thu, 06 Aug 2009 16:51:53 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>
		<category><![CDATA[down]]></category>
		<category><![CDATA[twitter attack]]></category>
		<category><![CDATA[twitter ddos]]></category>
		<category><![CDATA[twitter dos]]></category>
		<category><![CDATA[twitter.com]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=59</guid>
		<description><![CDATA[It happened to us a couple of weeks ago, and now Twitter is experiencing the pain of a DDOS attack.
Twitter.com is being DDOSed right now, and the event is reminding us that even Twitter, with their bottomless funding and technical contacts, has been unusable most of the day.
This is a grim reminder that the internet [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-medium wp-image-61" title="Twitter &quot;Fail Whale&quot;" src="http://blog.phirefast.com/wp-content/uploads/2009/08/whale-300x225.png" alt="Twitter &quot;Fail Whale&quot;" width="300" height="225" />It happened to us a couple of weeks ago, and now Twitter is experiencing the pain of a DDOS attack.</p>
<p>Twitter.com is being DDOSed right now, and the event is reminding us that even Twitter, with their bottomless funding and technical contacts, has been unusable most of the day.</p>
<p>This is a grim reminder that the internet is just like the wild west. Everyone server administrator is responsible for their own &#8220;e-land,&#8221; and when the bigger boys come in to town and start wreaking havoc, you better watch out.</p>
<p>The winner of most DDOS attacks is the contestant with the most bandwidth. DDOS attacks often come from hundreds or thousands of IP addresses and locations which are constantly changing &#8211; A situation which is nearly impossible to block. The analogy I&#8217;ve always liked is <em>&#8220;you&#8217;re trying to shoot several moving targets.&#8221;</em> In this case, it&#8217;s obvious that Twitter is being overpowered, and for this, I wish them luck.</p>
<p><strong>Promotion that makes no sense right now, seeing that they&#8217;re down:</strong><br />
<em>Don&#8217;t forget to check out PhireFast on Twitter! <a href="http://twitter.com/phirefast" target="_blank">twitter.com/phirefast</a></em></p>
<p><strong>Regarding the DDOS attack against PhireFast two weeks ago:</strong><br />
<a href="http://blog.phirefast.com/2009/07/16/incoming-dos-attacks-tonight/">Incoming DOS Attacks (Update: Federal Report Now Filed)</a></p>
<p>Wishing luck to Twitter today. Happy hosting!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/08/06/twitter-being-ddosed/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Update your iPhone ASAP!</title>
		<link>http://blog.phirefast.com/2009/08/05/update-your-iphone-asap/</link>
		<comments>http://blog.phirefast.com/2009/08/05/update-your-iphone-asap/#comments</comments>
		<pubDate>Wed, 05 Aug 2009 15:14:36 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=52</guid>
		<description><![CDATA[Good morning clients and visitors!
If you are one of our clients who uses an iPhone, we thought you should know about a new security risk Apple has just released an update to fix.
Apple has released iPhone OS 3.0.1 to address a vulnerability in the CoreTelephony component. By sending a specially crafted SMS message to a [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-medium wp-image-55" title="iphone_home" src="http://blog.phirefast.com/wp-content/uploads/2009/08/iphone_home-181x300.gif" alt="iphone_home" width="181" height="300" />Good morning clients and visitors!</p>
<p>If you are one of our clients who uses an iPhone, we thought you should know about a new security risk Apple has just released an update to fix.</p>
<blockquote><p>Apple has released iPhone OS 3.0.1 to address a vulnerability in the CoreTelephony component. By sending a specially crafted SMS message to a user, an attacker may be able to execute arbitrary code or cause a denial-of-service condition.</p>
<p>US-CERT encourages users review Apple article <a href="http://support.apple.com/kb/HT3754" target="_blank">HT3754</a> and apply any necessary updates to help mitigate the risk.</p>
<p>Source: <a href="http://www.us-cert.gov/current/index.html#apple_releases_iphone_os_31" target="_blank">US CERT</a> &amp; <a href="http://support.apple.com/kb/HT3754" target="_blank">Apple</a></p></blockquote>
<p>On behalf of the PhireFast Team, I wish you best of luck!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/08/05/update-your-iphone-asap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Incoming DOS Attacks (Update: Federal Report Now Filed)</title>
		<link>http://blog.phirefast.com/2009/07/16/incoming-dos-attacks-tonight/</link>
		<comments>http://blog.phirefast.com/2009/07/16/incoming-dos-attacks-tonight/#comments</comments>
		<pubDate>Thu, 16 Jul 2009 06:22:07 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=35</guid>
		<description><![CDATA[UPDATE (11:49am PT, Fri July 17 2009): Things have been running smoothly since my last update. Our new firewalls are doing the trick and an average of 30 new attacking IPs per hour are successfully being blocked. We are currently filing reports of this incident on a federal level with the FBI&#8217;s IC3 department to [...]]]></description>
			<content:encoded><![CDATA[<blockquote><p><em><strong>UPDATE (11:49am PT, Fri July 17 2009):</strong> Things have been running smoothly since my last update. Our new firewalls are doing the trick and an average of 30 new attacking IPs per hour are successfully being blocked. We are currently filing reports of this incident on a federal level with the FBI&#8217;s IC3 department to further re-enforce the fact we take incidents like this <u>very</u> seriously. The report will be made public by PhireFast when all is said and done. Thanks again for hosting with PhireFast!</em></p></blockquote>
<blockquote><p><em><strong>UPDATE (5:11pm PT, Thurs July 16 2009):</strong> I&#8217;m pleased to announce it looks like the problems have been resolved now and we&#8217;re readier than ever to face another massive DDOS attack like this one proved itself to be. Thank you guys for hosting with PhireFast &#8211; This is real-time assurance you&#8217;ve chosen a competent host!</em></p></blockquote>
<blockquote><p><em><strong>UPDATE (8:23am PT, Thurs July 16 2009):</strong> The all-knowing engineers are now in and helping block one last set of IP addresses. We managed to keep server loads low throughout the night, and are now blocking out an <a href="http://en.wikipedia.org/wiki/IP_address_spoofing">IP spoofer</a>.</em></p></blockquote>
<blockquote><p><em><strong>UPDATE (12:21am PT, Thurs July 16 2009):</strong> Looks like we have this under control (for now, anyway.) Will keep you posted all the way to the end.</em></p></blockquote>
<blockquote><p><em><strong>UPDATE (11:27pm PT, still Weds July 15 2009):</strong> We&#8217;re currently under attack from an IP address right here in Los Angeles. Oh, the irony! I say we go knocking on every door until we find the culprit. Nothing better than humor to get us through hard times like this. :-p</em></p></blockquote>
<p><strong>Original post:</strong><br />
Thanks to the talent, skill and experience of our team, it&#8217;s very rare we have problems like this to report.</p>
<p>However, tonight, multiple PhireFast servers have fallen under medium-scale Distributed Denial Of Service attacks, also knows as DDOS attacks. (<a href="http://en.wikipedia.org/wiki/Denial-of-service_attack">Wikipedia article about DDOS Attacks</a>)</p>
<p>What is assumed to be nothing more than an unusually impressive attempt from some kids somewhere, is taking a bit longer to clear up than expected.</p>
<p><strong>All servers have been and are currently online and functioning. There has been no interruption in service,</strong> though you may have noticed a little sluggishness these evening, and for this we apologize.</p>
<p>DDOS attacks can be difficult to deal with. Think of one as trying to shoot several moving targets &#8211; Attacks spawn from many locations all around the world.</p>
<p>Granted we have handled tonight&#8217;s attack very quickly and effectively, the war has not yet been won. We do have DDOS mitigation hardware in place and are putting it to good use tonight. <img src='http://blog.phirefast.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>I will personally be keeping you posted throughout this ordeal.<br />
(No technicians were harmed in the making of this blog post.)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/07/16/incoming-dos-attacks-tonight/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>PhireFast Welcomes Members of the iPocalypse IRC Network!</title>
		<link>http://blog.phirefast.com/2009/06/29/phirefast-welcomes-members-of-the-ipocalypse-irc-network/</link>
		<comments>http://blog.phirefast.com/2009/06/29/phirefast-welcomes-members-of-the-ipocalypse-irc-network/#comments</comments>
		<pubDate>Mon, 29 Jun 2009 22:24:34 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=31</guid>
		<description><![CDATA[ I am pleased to welcome members from the popular Internet Relay Chat network iPocalypse to PhireFast!
PhireFast and iPocalypse are working together to bring an affordable new package to members of the iPocalypse network, although the package is not limited to only iPocalypse members.
The iPackage
25GB Disk Space
250GB Bandwidth/Month.
cPanel + Webmail
PhireFast&#8217;s Hourly Offsite Backups
&#8230; and more! [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-full wp-image-32" title="iPocalypse + PhireFast = The iPackage" src="http://blog.phirefast.com/wp-content/uploads/2009/06/ipocalypse_irc.png" alt="iPocalypse + PhireFast = The iPackage" width="223" height="50" /> I am pleased to welcome members from the popular Internet Relay Chat network <a href="http://www.ipocalypse.net" target="_blank"><em>iPocalypse</em></a> to PhireFast!</p>
<p>PhireFast and iPocalypse are working together to bring an affordable new package to members of the iPocalypse network, although the package is not limited to only iPocalypse members.</p>
<p><strong>The iPackage</strong><br />
25GB Disk Space<br />
250GB Bandwidth/Month.<br />
cPanel + Webmail<br />
PhireFast&#8217;s Hourly Offsite Backups<br />
&#8230; and more! <a href="http://www.phirefast.com/ipoc/">View full specs »</a></p>
<p>For those of you already hosting with us, we hope you are enjoying our quality of service, and invite you to add an IRC chat to your website &#8211; It only takes a few minutes and is backed by the friendly staff of iPocalypse (and it&#8217;s free!)<br />
<a href="http://ipocalypse.net/flash-chat-web-embed/" target="_blank">Add a chat to my website »</a></p>
<p>For those considering getting started, we invite you to experience a whole new combination of affordability and quality, via the iPackage!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/06/29/phirefast-welcomes-members-of-the-ipocalypse-irc-network/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gumblar Malware Exploit</title>
		<link>http://blog.phirefast.com/2009/05/19/gumblar-malware-exploit/</link>
		<comments>http://blog.phirefast.com/2009/05/19/gumblar-malware-exploit/#comments</comments>
		<pubDate>Tue, 19 May 2009 16:13:21 +0000</pubDate>
		<dc:creator>Mark A. Mutti</dc:creator>
				<category><![CDATA[PhireFast]]></category>

		<guid isPermaLink="false">http://blog.phirefast.com/?p=27</guid>
		<description><![CDATA[Good morning and happy hosting, ladies and gentlemen!
We hope current clients are enjoying our service, and we extend an invitation to future clients to contact us at any time with any questions.
I&#8217;d like to take a moment to post some interesting news which has the potential to affect many of our clients. This news is [...]]]></description>
			<content:encoded><![CDATA[<p>Good morning and happy hosting, ladies and gentlemen!</p>
<p>We hope current clients are enjoying our service, and we extend an invitation to future clients to contact us at any time with any questions.</p>
<p>I&#8217;d like to take a moment to post some interesting news which has the potential to affect many of our clients. This news is regarding a relatively new web-based exploit you should be aware of.</p>
<blockquote>
<h2><span style="font-family: Arial,Geneva,Helvetica;">Gumblar Malware Exploit Circulating</span></h2>
<p><span style="font-family: Arial,Geneva,Helvetica;"><small><em>added May 18, 2009 at 12:47 pm</em></small><br />
</span><span style="font-family: Arial,Geneva,Helvetica;"> US-CERT is aware of public reports of a malware exploit circulating. This is a drive-by-download exploit with multiple stages and is being referred to as Gumblar. The first stage of this exploit attempts to compromise legitimate websites by injecting malicious code into them. Reports indicate that these website infections occur primarily through stolen FTP credentials but may also be compromised through poor configuration settings, vulnerable web applications, etc.  The second stage of this exploit occurs when users visit a website compromised by Gumblar. Users who visit these compromised websites and have not applied updates for known PDF and Flash Player vulnerabilities may become infected with malware. This malware may be used by attackers to monitor network traffic and obtain sensitive information, including FTP and login credentials, that can be used to conduct further exploits. Additionally, this malware may also redirect Google search results for the infected user.</span></p>
<p>US-CERT encourages users and administrators to apply software updates in a timely manner and use up-to-date antivirus software to help mitigate the risks.</p>
<p>US-CERT will provide additional information as it becomes available.<br />
<a href="http://www.us-cert.gov/current/index.html#gumblar_malware_attack_circulating">Source: http://www.us-cert.gov/current/index.html#gumblar_malware_attack_circulating</a></p></blockquote>
<p>This instance serves as a good reminder to keep FTP information safeguarded, and web software updated. This especially goes for CMS systems, Blog and Forum software.</p>
<p>As always, we&#8217;re here to help. If you should need any help updating your web-based software, please let us know. We are able to assist with this in most cases, and as always, are willing to go to any extent to keep our network safe for you and your visitors.</p>
<p>As always, practice safe browsing and hosting.<br />
Thank you for hosting with us! We&#8217;re proud to be your host!</p>
<p>- Mark A Mutti<br />
PhireFast Administration<br />
e: mark.mutti[~at~]phirefast.com<br />
p: (866) 350-4456 Ext 100</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.phirefast.com/2009/05/19/gumblar-malware-exploit/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
