<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearchrss/1.0/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0"><id>tag:blogger.com,1999:blog-5503033376577198846</id><updated>2012-05-17T00:25:35.824+05:30</updated><category term="Mass hack alert exero.eu catalog jquery.js spyeye blackhole exploit kit" /><category term="esploit" /><title type="text">::eSploit::</title><subtitle type="html">::About:▲ʇ!oldXǝ▲::\\?\GLOBALROOT\Information\Security\Research\Weblog【ツ】</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://esploit.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default?start-index=26&amp;max-results=25" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>1007</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/blogspot/TPcMJ" /><feedburner:info xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" uri="blogspot/tpcmj" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">blogspot/TPcMJ</feedburner:emailServiceId><feedburner:feedburnerHostname xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">http://feedburner.google.com</feedburner:feedburnerHostname><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-6723864742277810349</id><published>2011-08-06T19:02:00.000+05:30</published><updated>2011-08-06T19:02:00.082+05:30</updated><title type="text">wikileaks indian blackmoney List</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;"WikiLeaks and Indian black money: The following is a FAKE image and never appeared on WikiLeaks."&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-VYCmOUnsHQk/Tj1BSCfy3vI/AAAAAAAAAak/7rjIfXNyaks/s1600/wikileaks_indian_blackmoney.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="384" src="http://1.bp.blogspot.com/-VYCmOUnsHQk/Tj1BSCfy3vI/AAAAAAAAAak/7rjIfXNyaks/s640/wikileaks_indian_blackmoney.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;b&gt;wish it were a real leak :( waiting for the day when the list will be out.&lt;/b&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-h2I0GJY7fIc/Tj1BnNwsN0I/AAAAAAAAAao/azeK5jjEnvU/s1600/wikileaks_fake.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-h2I0GJY7fIc/Tj1BnNwsN0I/AAAAAAAAAao/azeK5jjEnvU/s1600/wikileaks_fake.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-6723864742277810349?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/6723864742277810349" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/6723864742277810349" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/wikileaks-indian-blackmoney-list.html" title="wikileaks indian blackmoney List" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-VYCmOUnsHQk/Tj1BSCfy3vI/AAAAAAAAAak/7rjIfXNyaks/s72-c/wikileaks_indian_blackmoney.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-668439018569253542</id><published>2011-08-04T22:00:00.001+05:30</published><updated>2011-08-04T22:00:43.663+05:30</updated><title type="text">HTran and APT</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://www.secureworks.com/research/threats/htran/"&gt;HTran and the Advanced Persistent Threat | Dell SecureWorks&lt;/a&gt;: "While researching one of the malware families involved in the RSA breach disclosed in March 2011, Dell SecureWorks CTU observed an interesting pattern in the network traffic of a related sample (MD5:53ba6845f57f8e9ef600ef166be3be14). When the sample under analysis attempted to connect to the C2 server at my.amazingrm.com (203.92.45.2), the server returned a succinct plain-text error message instead of the expected HTTP-formatted response:"&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://www.secureworks.com/research/threats/htran/"&gt;http://www.secureworks.com/research/threats/htran/&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://read.pudn.com/downloads199/sourcecode/windows/935255/htran.cpp__.htm"&gt;http://read.pudn.com/downloads199/sourcecode/windows/935255/htran.cpp__.htm&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-668439018569253542?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/668439018569253542" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/668439018569253542" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/htran-and-apt.html" title="HTran and APT" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-2252139767993621410</id><published>2011-08-04T21:41:00.001+05:30</published><updated>2011-08-04T21:42:28.402+05:30</updated><title type="text">Internet Underground 2011</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;"This paper aims to give an overall up-to-update review, evaluation and analysis of the underground scene of black hat hackers and/or cyber criminals."&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-o07sLuz5qhs/TjrE3JWx--I/AAAAAAAAAag/sMiu65A9h9k/s1600/underground.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="392" src="http://2.bp.blogspot.com/-o07sLuz5qhs/TjrE3JWx--I/AAAAAAAAAag/sMiu65A9h9k/s640/underground.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Paper Download:&lt;br /&gt;&lt;a href="http://www.exploit-db.com/download_pdf/17334/"&gt;www.exploit-db.com/download_pdf/17334/ &lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-2252139767993621410?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/2252139767993621410" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/2252139767993621410" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/internet-underground-2011.html" title="Internet Underground 2011" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-o07sLuz5qhs/TjrE3JWx--I/AAAAAAAAAag/sMiu65A9h9k/s72-c/underground.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-7547314425846776705</id><published>2011-08-04T21:36:00.000+05:30</published><updated>2011-08-04T21:36:22.968+05:30</updated><title type="text">Pwnie winners</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Pwnie for Best Server-Side Bug&lt;br /&gt;&lt;br /&gt;Awarded to the person who discovered or exploited the most technically sophisticated and interesting server-side bug. This includes any software that is accessible remotely without using user interaction.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;ASP.NET Framework Padding Oracle (&lt;a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3332"&gt;CVE-2010-3332&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;Credit: Juliano Rizzo, Thai Duong&lt;br /&gt;&lt;br /&gt;Juliano and Thai &lt;a href="http://www.troyhunt.com/2010/09/fear-uncertainty-and-and-padding-oracle.html"&gt;showed&lt;/a&gt; that the ASP.NET framework is vulnerable to a padding oracle attack that can be used to remotely compromise almost any ASP.NET web application, often leading to remote code execution on the server.&lt;br /&gt;&lt;br /&gt;Pwnie for Best Client-Side Bug&lt;br /&gt;&lt;br /&gt;Awarded to the person who discovered or exploited the most technically sophisticated and interesting client-side bug. These days, ‘client’ is pretty much synonymous with ‘web browser’, but don't forget about all the media player integer overflows!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;FreeType vulnerability in iOS (&lt;a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0226"&gt;CVE-2011-0226&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;Credit: Comex&lt;br /&gt;&lt;br /&gt;Comex exploited a vulnerability in the interpreter for Type 1 font programs in the FreeType library used by MobileSafari. This &lt;a href="http://esec-lab.sogeti.com/post/Analysis-of-the-jailbreakme-v3-font-exploit"&gt;exploit&lt;/a&gt; is a great example of programming a weird machine to exploit a modern system. Comex used his control over the interpreter to construct a highly sophisticated ROP payload at runtime and bypass the ASLR protection in iOS. Furthermore, the ROP payload exploited a kernel vulnerability to execute code in the kernel and disable code-signing. The exploit was hosted on&lt;a href="http://jailbreakme.com/"&gt;jailbreakme.com&lt;/a&gt; and was successfully used by thousands of people to jailbreak their iOS devices.&lt;br /&gt;&lt;br /&gt;Pwnie for Best Privilege Escalation Bug&lt;br /&gt;&lt;br /&gt;Awarded to the person who discovered or exploited the most technically sophisticated and interesting privilege escalation vulnerability. As more defense-in-depth systems like Mandatory Access Control and Virtualization are deployed, privilege escalation vulnerabilities are becoming more important. These vulnerabilities can include local operating system privilege escalations, operating system sandbox escapes, and virtual machine guest breakout vulnerabilities.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Windows kernel win32k user-mode callback vulnerabilities (&lt;a href="http://www.microsoft.com/technet/security/bulletin/MS11-034.mspx"&gt;MS11-034&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;Credit: Tarjei Mandt&lt;br /&gt;&lt;br /&gt;In the span of a few months, Tarjei found more than 40 &lt;a href="http://blogs.technet.com/b/srd/archive/2011/04/12/ms11-034-addressing-vulnerabilities-in-the-win32k-subsystem.aspx"&gt;vulnerabilities&lt;/a&gt; in the Windows kernel. In his&lt;a href="http://mista.nu/research/kernelpool_infiltrate2011.pdf"&gt;presentation&lt;/a&gt; at Infiltrate 2011, he described the details of these vulnerabilities and his kernel exploitation techniques.&lt;br /&gt;&lt;br /&gt;Pwnie for Most Innovative Research&lt;br /&gt;&lt;br /&gt;Awarded to the person who published the most interesting and innovative research in the form of a paper, presentation, tool or even a mailing list post.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Securing the Kernel via Static Binary Rewriting and Program Shepherding&lt;br /&gt;&lt;br /&gt;Author: Piotr Bania&lt;br /&gt;&lt;br /&gt;To &lt;a href="http://piotrbania.com/all/articles/pbania-securing-the-kernel2011.pdf"&gt;implement&lt;/a&gt; some of the ideas from &lt;a href="http://pax.grsecurity.net/docs/pax-future.txt"&gt;pax-future.txt&lt;/a&gt; is one thing, to implement them through static analysis on Windows, rewriting drivers automagically, and have it all work preserving binary compatibility across a wide range of Windows versions: that's deserving of respect.&lt;br /&gt;&lt;br /&gt;Pwnie for Lifetime Achievement&lt;br /&gt;&lt;br /&gt;Most hackers have the personality of a supermodel who does discrete mathematics for fun. Like mathematicians, hackers get off on solving very obscure and difficult to even explain problems. Like models, hackers wear a lot of black, think they are more famous than they are, and their career effectively ends at age 30. Either way, upon entering one's fourth decade, it is time to put down the disassembler and consider a relaxing job in management. This award is to honor the previous achievements of those who have moved on to bigger and better things.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;pipacs/PaX Team&lt;br /&gt;&lt;br /&gt;The person that we are honoring this year with the lifetime achievement award has, surprisingly, contributed a lot to the defensive side of security. The winner has repeatedly innovated behind the scenes, avoided the conference circus and maintained a high level of personal and intellectual integrity.&lt;br /&gt;&lt;br /&gt;His technical work has had an outsize impact on security: His ideas are fundamental to security improvements in all major operating systems in recent years, and his ideas have indirectly shaped most modern memory-corruption attack techniques. No attacker can be taken seriously nowadays that does not deal with defensive inventions pioneered by our winner.&lt;br /&gt;&lt;br /&gt;In an environment where Microsoft awards 200k USD for mitigation ideas that they can then patent and monopolize, he has freely shared his ideas - out of intellectual openness, but also out of a rather endearing mixture of humility and incredulity at the general retardedness of others.&lt;br /&gt;&lt;br /&gt;Aside from all this, his innovations had a major impact when they were first introduced: For quite a while after their introduction, his work made it difficult to hack other hackers, taking away the hackers favourite pasttime -- infighting -- and making sure that innocent third parties were hacked.&lt;br /&gt;&lt;br /&gt;The winner of this years lifetime achievement award is pipacs/PaX Team, for creating PaX, giving birth to ASLR, impacting all modern operating systems, and, last but not least, for patching an mp3 player and a tetris clone into softIce.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://pwnies.com/winners/"&gt;http://pwnies.com/winners/&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-7547314425846776705?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7547314425846776705" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7547314425846776705" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/pwnie-winners.html" title="Pwnie winners" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-5296293553464939472</id><published>2011-08-04T21:35:00.001+05:30</published><updated>2011-08-04T21:35:16.656+05:30</updated><title type="text">Analysis of ngrBot</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://stopmalvertising.com/rootkits/analysis-of-ngrbot.html"&gt;Analysis of ngrBot - Stop Malvertising&lt;/a&gt;: "Today we will have a closer look at ngrBot, an IRC bot with rootkit capabilities. The core of ngrBot is an advanced ring3 (usermode) system-wide injection and hooking engine similar to ZeuS and SpyEye."&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://stopmalvertising.com/rootkits/analysis-of-ngrbot.html"&gt;http://stopmalvertising.com/rootkits/analysis-of-ngrbot.html&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-5296293553464939472?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/5296293553464939472" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/5296293553464939472" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/analysis-of-ngrbot.html" title="Analysis of ngrBot" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-4017758358707128992</id><published>2011-08-04T18:34:00.001+05:30</published><updated>2011-08-04T18:34:43.325+05:30</updated><title type="text">Deobfuscate exploit kits using Malzilla</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://www.malwaredomainlist.com/forums/index.php?topic=4636.msg21853#msg21853"&gt;Deobfuscate exploit kits using Malzilla&lt;/a&gt;: "I'll give you some examples how you can use Malzilla for deobfuscation of exploit packs.&lt;br /&gt;&lt;br /&gt;My preferred method is using templates for various exploit kits.&lt;br /&gt;&lt;br /&gt;Part 1 - Best Pack exploit kit&lt;br /&gt;&lt;br /&gt;Create a new file in Malzilla's subdirectory 'templates' and name the file 'BestPack'.&lt;br /&gt;Insert the following lines."&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://www.malwaredomainlist.com/forums/index.php?topic=4636.msg21853#msg21853"&gt;http://www.malwaredomainlist.com/forums/index.php?topic=4636.msg21853#msg21853&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-4017758358707128992?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/4017758358707128992" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/4017758358707128992" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/deobfuscate-exploit-kits-using-malzilla.html" title="Deobfuscate exploit kits using Malzilla" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-3042373661724278954</id><published>2011-08-04T00:35:00.000+05:30</published><updated>2011-08-04T00:35:38.968+05:30</updated><title type="text">open sale hacked data Sqli !</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;I stumbled upon this site (selling the below services ) in&amp;nbsp;January this year, it was in the news then and many (including me )blogged, tweeted about it.&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-hlmf4bMiMV8/TjmTFN8mFMI/AAAAAAAAAaE/6ItwCPZCvVI/s1600/services.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="480" src="http://4.bp.blogspot.com/-hlmf4bMiMV8/TjmTFN8mFMI/AAAAAAAAAaE/6ItwCPZCvVI/s640/services.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Thought it'll go down in a day or so. However, today&amp;nbsp;after&amp;nbsp;nearly 7 months saw the same news in imperva blog, checked the site and found that it's not only still up and running but even updating frequently !&lt;br /&gt;&lt;br /&gt;Apart from selling the services above, this guy also discloses SQL injection vulnerabilities in major websites including banks,&amp;nbsp;universities, large corporations and&amp;nbsp;Government&amp;nbsp;organizations &amp;nbsp;like :&lt;br /&gt;&lt;br /&gt;&lt;b&gt;https://www.playstation.ru/&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;http://www.playstation.ca/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;http://www.hartford.edu/&lt;/b&gt;&lt;br /&gt;&lt;b&gt;http://armani.com/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;http://www.parliament.gov.bw/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;http://www.nbc.org.kh/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;http://www.bot-tz.org/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;div&gt;&lt;b&gt;http://www.na.gov.pk/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;http://www.presidentofpakistan.gov.pk/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;http://www.cbp.gov/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;http://www.ad.gov.ir/&lt;/b&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-tab-span" style="white-space: pre;"&gt;&lt;b&gt;http://www.tacp.toshiba.com/ &lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;http://labs.oracle.com/&lt;span class="Apple-tab-span" style="white-space: pre;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="color: red;"&gt;The worst part is many of the disclosed SQLi&amp;nbsp;vulnerabilities in the above sites&amp;nbsp;may be still open and can be misused by someone.&amp;nbsp;Recently, SONY had a bad time with&amp;nbsp;series of hacks . It looks like the playstation&amp;nbsp;vulnerabilities&amp;nbsp;are updated recently (Yesterday August 2) so may be still live !&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-GUlNctJdILU/TjmWfyo2-II/AAAAAAAAAaM/rOEKhOjhNP4/s1600/pshack.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="544" src="http://2.bp.blogspot.com/-GUlNctJdILU/TjmWfyo2-II/AAAAAAAAAaM/rOEKhOjhNP4/s640/pshack.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;This guy also provides his contact information clearly:&amp;nbsp;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-cvBIDbsXU0Y/TjmVQslnxnI/AAAAAAAAAaI/TDyyzNZIfXQ/s1600/contact.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="462" src="http://3.bp.blogspot.com/-cvBIDbsXU0Y/TjmVQslnxnI/AAAAAAAAAaI/TDyyzNZIfXQ/s640/contact.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-MAtznegqSSU/TjmXkUAbRgI/AAAAAAAAAaQ/ZZALW-myW80/s1600/comments.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="560" src="http://1.bp.blogspot.com/-MAtznegqSSU/TjmXkUAbRgI/AAAAAAAAAaQ/ZZALW-myW80/s640/comments.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;Whois &amp;amp; Domain Info:&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-UdOojn4hEqY/TjmaOcpn5cI/AAAAAAAAAaU/uosE-tODzBA/s1600/whois.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="496" src="http://1.bp.blogspot.com/-UdOojn4hEqY/TjmaOcpn5cI/AAAAAAAAAaU/uosE-tODzBA/s640/whois.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-IVKByg0qyBw/TjmaWndpn0I/AAAAAAAAAaY/-bgRkp6htO0/s1600/domain.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="450" src="http://1.bp.blogspot.com/-IVKByg0qyBw/TjmaWndpn0I/AAAAAAAAAaY/-bgRkp6htO0/s640/domain.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Some&amp;nbsp;Additional&amp;nbsp;Related snapshots and Links:&amp;nbsp;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-LJ6W2X0NWzs/TjmbA9OaM2I/AAAAAAAAAac/xODl7IjlNSU/s1600/8-3-2011+11-27-11+PM.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="406" src="http://2.bp.blogspot.com/-LJ6W2X0NWzs/TjmbA9OaM2I/AAAAAAAAAac/xODl7IjlNSU/s640/8-3-2011+11-27-11+PM.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;div&gt;&lt;a href="http://webcache.googleusercontent.com/search?q=cache:0NFyFEui4FcJ:www.hackforums.net/showthread.php%3Ftid%3D1289466+http://www.hackforums.net/showthread.php%3Ftid%3D1289466&amp;amp;cd=1&amp;amp;hl=en&amp;amp;ct=clnk&amp;amp;gl=in&amp;amp;source=www.google.co.in"&gt;http://webcache.googleusercontent.com/search?q=cache:0NFyFEui4FcJ:www.hackforums.net/showthread.php%3Ftid%3D1289466+http://www.hackforums.net/showthread.php%3Ftid%3D1289466&amp;amp;cd=1&amp;amp;hl=en&amp;amp;ct=clnk&amp;amp;gl=in&amp;amp;source=www.google.co.in&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://www.youtube.com/watch?v=Ad62bfptGpQ"&gt;http://www.youtube.com/watch?v=Ad62bfptGpQ&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Now, the question is why|how the site is still up ? Good question...I don't know aswell :)&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;The Site:&lt;/div&gt;&lt;br /&gt;&lt;a href="http://www.srblche.com/"&gt;http://www.srblche.com/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;eSploit Post (Jan):&lt;br /&gt;&lt;br /&gt;&lt;a href="http://esploit.blogspot.com/2011/01/professional-hacker-website-hacking.html"&gt;http://esploit.blogspot.com/2011/01/professional-hacker-website-hacking.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Imperva posts: (Recent &amp;amp; Jan)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://blog.imperva.com/2011/08/in-hollywood-sequels-are-tremendously-profitable-now-matter-how-bad-in-fact-in-2009-mathmaticians-even-came-up-with-a-f.html"&gt;http://blog.imperva.com/2011/08/in-hollywood-sequels-are-tremendously-profitable-now-matter-how-bad-in-fact-in-2009-mathmaticians-even-came-up-with-a-f.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://krebsonsecurity.com/2011/01/ready-for-cyberwar/"&gt;http://krebsonsecurity.com/2011/01/ready-for-cyberwar/&lt;/a&gt;&lt;br /&gt;&lt;a href="http://blog.imperva.com/2011/01/major-websites-govmiledu-are-hacked-and-up-for-sale.html"&gt;http://blog.imperva.com/2011/01/major-websites-govmiledu-are-hacked-and-up-for-sale.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-3042373661724278954?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/3042373661724278954" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/3042373661724278954" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/open-sale-hacked-data-sqli.html" title="open sale hacked data Sqli !" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-hlmf4bMiMV8/TjmTFN8mFMI/AAAAAAAAAaE/6ItwCPZCvVI/s72-c/services.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-1223641140572037688</id><published>2011-08-03T23:10:00.001+05:30</published><updated>2011-08-03T23:12:15.115+05:30</updated><title type="text">non-alpha encoder online</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-ENFx26yHcoM/TjmIDRH8fKI/AAAAAAAAAaA/ImC_991kAPU/s1600/nonalpha+encoder.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="362" src="http://1.bp.blogspot.com/-ENFx26yHcoM/TjmIDRH8fKI/AAAAAAAAAaA/ImC_991kAPU/s640/nonalpha+encoder.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;a href="http://hackvertor.co.uk/hvurl/2p"&gt;http://hackvertor.co.uk/hvurl/2p&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.thespanner.co.uk/2011/08/03/decoding-non-alphanumeric-code-with-hackvertor/"&gt;http://www.thespanner.co.uk/2011/08/03/decoding-non-alphanumeric-code-with-hackvertor/&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-1223641140572037688?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/1223641140572037688" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/1223641140572037688" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/non-alpha-encoder-online.html" title="non-alpha encoder online" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-ENFx26yHcoM/TjmIDRH8fKI/AAAAAAAAAaA/ImC_991kAPU/s72-c/nonalpha+encoder.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-6751281850787579074</id><published>2011-08-03T23:08:00.000+05:30</published><updated>2011-08-03T23:08:28.720+05:30</updated><title type="text">hodprod malware analysis</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-WzmsxQDWreY/TjmHbp0N8xI/AAAAAAAAAZ8/PgNIUR9rEvc/s1600/hotprod.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="294" src="http://1.bp.blogspot.com/-WzmsxQDWreY/TjmHbp0N8xI/AAAAAAAAAZ8/PgNIUR9rEvc/s640/hotprod.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;a href="http://www.eset.com/us/resources/white-papers/Hodprot-Report.pdf"&gt;http://www.eset.com/us/resources/white-papers/Hodprot-Report.pdf&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-6751281850787579074?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/6751281850787579074" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/6751281850787579074" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/hodprod-malware-analysis.html" title="hodprod malware analysis" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-WzmsxQDWreY/TjmHbp0N8xI/AAAAAAAAAZ8/PgNIUR9rEvc/s72-c/hotprod.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-7024907732386261604</id><published>2011-08-03T22:56:00.000+05:30</published><updated>2011-08-03T22:56:03.728+05:30</updated><title type="text">Operation Shady RAT !</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;"Operation Shady RAT - Biggest Cyber Attacks in history uncovered . McAfee publish a new report that it says is one of the most comprehensive analysis ever revealed of victim profiles from a five-year long targeted operation by a specific actor dubbed Operation Shady RAT."Paper:&lt;br /&gt;&lt;a href="http://www.mcafee.com/us/resources/white-papers/wp-operation-shady-rat.pdf"&gt;http://www.mcafee.com/us/resources/white-papers/wp-operation-shady-rat.pdf&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.zdnet.com/blog/btl/operation-shady-rat-five-things-to-know/53928"&gt;http://www.zdnet.com/blog/btl/operation-shady-rat-five-things-to-know/53928&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-7024907732386261604?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7024907732386261604" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7024907732386261604" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/operation-shady-rat.html" title="Operation Shady RAT !" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-7254890620028797771</id><published>2011-08-03T22:47:00.000+05:30</published><updated>2011-08-03T22:47:39.521+05:30</updated><title type="text">China Blue Army !</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;"China has recently announced the existence of &lt;a href="http://www.theaustralian.com.au/australian-it/chinas-blue-army-could-conduct-cyber-warfare-on-foreign-powers/story-e6frgakx-1226064132826"&gt;the Blue Army&lt;/a&gt;, a government sponsored cyber warfare unit similar to those launched by the&lt;a href="http://en.wikipedia.org/wiki/United_States_Cyber_Command"&gt;U.S&lt;/a&gt;, the &lt;a href="http://www.dailymail.co.uk/news/article-1345490/Armed-Forces-chief-set-UK-cyber-warfare-unit-launch-attacks-enemies-cyberspace.html"&gt;United Kingdom&lt;/a&gt;, &lt;a href="http://www.scmagazine.com.au/News/250899,ag-speech-transcript-creating-cyberwarfare-unit.aspx/2"&gt;Australia&lt;/a&gt; and &lt;a href="http://www.telegraph.co.uk/news/worldnews/middleeast/israel/8034987/Israeli-cyber-unit-responsible-for-Iran-computer-worm-claim.html"&gt;Israel&lt;/a&gt;."&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&lt;a href="http://www.zdnet.com/blog/security/chinas-blue-army-when-nations-harness-hacktivists-for-information-warfare/8686"&gt;http://www.zdnet.com/blog/security/chinas-blue-army-when-nations-harness-hacktivists-for-information-warfare/8686&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-7254890620028797771?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7254890620028797771" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7254890620028797771" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/china-blue-army.html" title="China Blue Army !" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-3272368773894648427</id><published>2011-08-03T22:45:00.000+05:30</published><updated>2011-08-03T22:45:38.981+05:30</updated><title type="text">Google Chrome 13.0.782.107 Update !</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;"The Google Chrome team is pleased to announce the arrival of Chrome 13.0.782.107 to the Stable Channel for Windows, Mac, Linux, and Chrome Frame.  Spanning 5200+ revisions, Chrome 13 contains some exciting new features like &lt;a href="http://chrome.blogspot.com/2011/06/faster-than-fast.html"&gt;Instant Pages&lt;/a&gt; prerendering technology. To find out about other new features, check out the &lt;a href="http://chrome.blogspot.com/2011/08/instant-pages-on-google-chrome.html"&gt;Official Chrome Blog&lt;/a&gt;. " &lt;br /&gt;&lt;br /&gt;&lt;div&gt;&lt;b&gt;FIXES:&lt;/b&gt;&lt;ul style="text-align: left;"&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=75821"&gt;75821&lt;/a&gt;] Medium CVE-2011-2358: Always confirm an extension install via a browser dialog. Credit to Sergey Glazunov.&lt;/li&gt;&lt;li&gt;[$1000 each] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=78841"&gt;78841&lt;/a&gt;] High CVE-2011-2359: Stale pointer due to bad line box tracking in rendering. Credit to miaubiz and Martin Barbella.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=79266"&gt;79266&lt;/a&gt;] Low CVE-2011-2360: Potential bypass of dangerous file prompt. Credit to kuzzcc.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=79426"&gt;79426&lt;/a&gt;] Low CVE-2011-2361: Improve designation of strings in the basic auth dialog. Credit to kuzzcc.&lt;/li&gt;&lt;li&gt;[Linux only] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=81307"&gt;81307&lt;/a&gt;] Medium CVE-2011-2782: File permissions error with drag and drop. Credit to Evan Martin of the Chromium development community.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=83273"&gt;83273&lt;/a&gt;] Medium CVE-2011-2783: Always confirm a developer mode NPAPI extension install via a browser dialog. Credit to Sergey Glazunov.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=83841"&gt;83841&lt;/a&gt;] Low CVE-2011-2784: Local file path disclosure via GL program log. Credit to kuzzcc.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=84402"&gt;84402&lt;/a&gt;] Low CVE-2011-2785: Sanitize the homepage URL in extensions. Credit to kuzzcc.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=84600"&gt;84600&lt;/a&gt;] Low CVE-2011-2786: Make sure the speech input bubble is always on-screen. Credit to Olli Pettay of Mozilla.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=84805"&gt;84805&lt;/a&gt;] Medium CVE-2011-2787: Browser crash due to GPU lock re-entrancy issue. Credit to kuzzcc.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=85559"&gt;85559&lt;/a&gt;] Low CVE-2011-2788: Buffer overflow in inspector serialization. Credit to Mikołaj Małecki.&lt;/li&gt;&lt;li&gt;[$500 each] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=85808"&gt;85808&lt;/a&gt;] Medium CVE-2011-2789: Use after free in Pepper plug-in instantiation. Credit to Mario Gomes and kuzzcc.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=86502"&gt;86502&lt;/a&gt;] High CVE-2011-2790: Use-after-free with floating styles. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=86900"&gt;86900&lt;/a&gt;] High CVE-2011-2791: Out-of-bounds write in ICU. Credit to Yang Dingning from NCNIPC, Graduate University of Chinese Academy of Sciences.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87148"&gt;87148&lt;/a&gt;] High CVE-2011-2792: Use-after-free with float removal. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87227"&gt;87227&lt;/a&gt;] High CVE-2011-2793: Use-after-free in media selectors. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[$500] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87298"&gt;87298&lt;/a&gt;] Medium CVE-2011-2794: Out-of-bounds read in text iteration. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[$500] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87339"&gt;87339&lt;/a&gt;] Medium CVE-2011-2795: Cross-frame function leak. Credit to Shih Wei-Long.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87548"&gt;87548&lt;/a&gt;] High CVE-2011-2796: Use-after-free in Skia. Credit to Google Chrome Security Team (Inferno) and Kostya Serebryany of the Chromium development community.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87729"&gt;87729&lt;/a&gt;] High CVE-2011-2797: Use-after-free in resource caching. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87815"&gt;87815&lt;/a&gt;] Low CVE-2011-2798: Prevent a couple of internal schemes from being web accessible. Credit to sirdarckcat of the Google Security Team.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=87925"&gt;87925&lt;/a&gt;] High CVE-2011-2799: Use-after-free in HTML range handling. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[$500] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=88337"&gt;88337&lt;/a&gt;] Medium CVE-2011-2800: Leak of client-side redirect target. Credit to Juho Nurminen.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=88591"&gt;88591&lt;/a&gt;] High CVE-2011-2802: v8 crash with const lookups. Credit to Christian Holler.&lt;/li&gt;&lt;li&gt;[&lt;a href="http://code.google.com/p/chromium/issues/detail?id=88827"&gt;88827&lt;/a&gt;] Medium CVE-2011-2803: Out-of-bounds read in Skia paths. Credit to Google Chrome Security Team (Inferno).&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=88846"&gt;88846&lt;/a&gt;] High CVE-2011-2801: Use-after-free in frame loader. Credit to miaubiz.&lt;/li&gt;&lt;li&gt;[$1000] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=88889"&gt;88889&lt;/a&gt;] High CVE-2011-2818: Use-after-free in display box rendering. Credit to Martin Barbella.&lt;/li&gt;&lt;li&gt;[$500] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=89142"&gt;89142&lt;/a&gt;] High CVE-2011-2804: PDF crash with nested functions. Credit to Aki Helin of OUSPG.&lt;/li&gt;&lt;li&gt;[$1500] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=89520"&gt;89520&lt;/a&gt;] High CVE-2011-2805: Cross-origin script injection. Credit to Sergey Glazunov.&lt;/li&gt;&lt;li&gt;[$1500] [&lt;a href="http://code.google.com/p/chromium/issues/detail?id=90222"&gt;90222&lt;/a&gt;] High CVE-2011-2819: Cross-origin violation in base URI handling. Credit to Sergey Glazunov.&lt;/li&gt;&lt;/ul&gt;&lt;a href="http://googlechromereleases.blogspot.com/2011/08/stable-channel-update.html"&gt;http://googlechromereleases.blogspot.com/2011/08/stable-channel-update.html&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-3272368773894648427?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/3272368773894648427" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/3272368773894648427" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/google-chrome-130782107-update.html" title="Google Chrome 13.0.782.107 Update !" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-8551023698893029117</id><published>2011-08-03T22:39:00.001+05:30</published><updated>2011-08-03T22:39:49.629+05:30</updated><title type="text">WAF and SQL Injection</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://www.darkreading.com/database-security/blog/231003041/wafs-and-sql-injection.html"&gt;WAFs And SQL Injection - Dark Reading&lt;/a&gt;: "The ModSecurity site is putting on the SQL Injection Challenge. Contestants are attempting to find successful SQL injection attacks against target applications. The four sample applications are from IBM, Cenzic, HP, and Acunetix, each with a slightly different host configuration and database platform."&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://www.darkreading.com/database-security/blog/231003041/wafs-and-sql-injection.html"&gt;http://www.darkreading.com/database-security/blog/231003041/wafs-and-sql-injection.html&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-8551023698893029117?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/8551023698893029117" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/8551023698893029117" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/waf-and-sql-injection.html" title="WAF and SQL Injection" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-2691157389801539683</id><published>2011-08-03T22:36:00.001+05:30</published><updated>2011-08-03T22:36:31.270+05:30</updated><title type="text">Port 3389 terminal services scans</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://isc.sans.edu/diary.html?storyid=11299&amp;amp;rss"&gt;ISC Diary | Port 3389 / terminal services scans&lt;/a&gt;: &lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: Arial, Helvetica, sans-serif; font-size: 15px; line-height: 19px;"&gt;"Port 3389 / TCP is used by Microsoft Terminal Services, and has been a continuing target of attacks."&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: Arial, Helvetica, sans-serif; font-size: 15px; line-height: 19px;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: Arial, Helvetica, sans-serif; font-size: 15px; line-height: 19px;"&gt;&lt;a href="http://isc.sans.edu/diary.html?storyid=11299&amp;amp;rss"&gt;http://isc.sans.edu/diary.html?storyid=11299&amp;amp;rss&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-2691157389801539683?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/2691157389801539683" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/2691157389801539683" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/port-3389-terminal-services-scans.html" title="Port 3389 terminal services scans" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-5242191981093404592</id><published>2011-08-03T01:17:00.002+05:30</published><updated>2011-08-03T01:19:27.044+05:30</updated><title type="text">thejester vs ANONYMOUSABU  lulzsec</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://th3j35t3r.wordpress.com/2011/08/01/even-topiary-didnt-know-what-he-was-getting-into/"&gt;Even Topiary Didn’t Know What He Was Getting Into «&lt;/a&gt;: "Privacy is necessary for an open society in the electronic age. Privacy is not secrecy. Privacy is the power to selectively reveal oneself to the world.’&lt;br /&gt;&lt;br /&gt;So folks continue to ask me why I am ‘after’ anon/lulzsec….&lt;br /&gt;&lt;br /&gt;Well I’d like to address this.&lt;br /&gt;&lt;br /&gt;I am not particularly ‘after’ anon (that’s not denying that we have had our run-ins), everyone knows their roots and anyone who can google knows mine.&lt;br /&gt;&lt;br /&gt;However… Lulzsec, hmmm different beast. Lulzsec are threatening, and inciting and RECRUITING.&lt;br /&gt;&lt;br /&gt;While Anonymous claim to be ‘leaderless’, Lulzsec is obviously not. And Anonymous in their desperation for the world to see them as anything other than what they really are… have allowed themselves to have a ‘leader’.&lt;br /&gt;&lt;br /&gt;That ‘leader’ is known as ANONYMOUSABU"&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://th3j35t3r.wordpress.com/2011/08/01/even-topiary-didnt-know-what-he-was-getting-into/"&gt;http://th3j35t3r.wordpress.com/2011/08/01/even-topiary-didnt-know-what-he-was-getting-into/&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.scribd.com/doc/61211269/Anonymous-LulzSec-Terrorist-Ties"&gt;http://www.scribd.com/doc/61211269/Anonymous-LulzSec-Terrorist-Ties&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-5242191981093404592?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/5242191981093404592" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/5242191981093404592" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/thejester-vs-anonymousabu-lulzsec.html" title="thejester vs ANONYMOUSABU  lulzsec" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-6371079758014802595</id><published>2011-08-03T01:10:00.001+05:30</published><updated>2011-08-03T01:10:06.353+05:30</updated><title type="text">Host4africa Mass Compromise</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://blog.sucuri.net/2011/08/host4africa-mass-compromise.html"&gt;Host4africa Mass Compromise | Sucuri&lt;/a&gt;: "We are seeing a lot of sites hosted at host4africa.com compromised with Blackhat Spam SEO. Most of them are in the .co.za TLD (at 74.53.0.0/16 and 74.54.0.0/16) and have hidden links to generic drugs (common Pharma Spam)."&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-3J7sYkNOH3k/TjhSb_hovRI/AAAAAAAAAZ4/s75GY2upOi4/s1600/host4africa.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="544" src="http://3.bp.blogspot.com/-3J7sYkNOH3k/TjhSb_hovRI/AAAAAAAAAZ4/s75GY2upOi4/s640/host4africa.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;a href="http://blog.sucuri.net/2011/08/host4africa-mass-compromise.html"&gt;http://blog.sucuri.net/2011/08/host4africa-mass-compromise.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-6371079758014802595?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/6371079758014802595" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/6371079758014802595" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/host4africa-mass-compromise.html" title="Host4africa Mass Compromise" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-3J7sYkNOH3k/TjhSb_hovRI/AAAAAAAAAZ4/s75GY2upOi4/s72-c/host4africa.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-8954718641135120637</id><published>2011-08-03T01:00:00.000+05:30</published><updated>2011-08-03T01:00:28.791+05:30</updated><title type="text">30 China govt sites hacked Hitcher</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;br /&gt;&lt;img alt="http://i53.tinypic.com/2rc7sle.png" src="http://i53.tinypic.com/2rc7sle.png" /&gt;&lt;br /&gt;Mirror:&lt;br /&gt;http://k0-ka.in/attack/?id=28212&lt;br /&gt;http://k0-ka.in/attack/?id=28211&lt;br /&gt;http://k0-ka.in/attack/?id=28210&lt;br /&gt;http://k0-ka.in/attack/?id=28209&lt;br /&gt;http://k0-ka.in/attack/?id=28211&lt;br /&gt;http://k0-ka.in/attack/?id=28210&lt;br /&gt;http://k0-ka.in/attack/?id=28209&lt;br /&gt;http://k0-ka.in/attack/?id=28208&lt;br /&gt;http://k0-ka.in/attack/?id=28207&lt;br /&gt;http://k0-ka.in/attack/?id=28204&lt;br /&gt;http://k0-ka.in/attack/?id=28203&lt;br /&gt;http://k0-ka.in/attack/?id=28202&lt;br /&gt;http://k0-ka.in/attack/?id=28201&lt;br /&gt;http://k0-ka.in/attack/?id=28200&lt;br /&gt;http://k0-ka.in/attack/?id=28199&lt;br /&gt;http://k0-ka.in/attack/?id=28197&lt;br /&gt;http://k0-ka.in/attack/?id=28196&lt;br /&gt;http://k0-ka.in/attack/?id=28195&lt;br /&gt;http://k0-ka.in/attack/?id=28194&lt;br /&gt;http://k0-ka.in/attack/?id=28222&lt;br /&gt;http://k0-ka.in/attack/?id=28221&lt;br /&gt;http://k0-ka.in/attack/?id=28220&lt;br /&gt;http://k0-ka.in/attack/?id=28219&lt;br /&gt;http://k0-ka.in/attack/?id=28218&lt;br /&gt;http://k0-ka.in/attack/?id=28217&lt;br /&gt;http://k0-ka.in/attack/?id=28216&lt;br /&gt;http://k0-ka.in/attack/?id=28215&lt;br /&gt;http://k0-ka.in/attack/?id=28214&lt;br /&gt;http://k0-ka.in/attack/?id=28213&lt;br /&gt;------------------------------------------------------------------------------------------------------&lt;br /&gt;Note: look at the domain names, not sure if they're really govt. sites (if yes, then no offense) &amp;nbsp;but the domain names look like random dll/exe names of some malware , trojan vundo or sumthing :P.&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-JhD6zBctpDQ/TjhNVCLRuJI/AAAAAAAAAZ0/Mx_6eRTD-wo/s1600/chinahack.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="284" src="http://4.bp.blogspot.com/-JhD6zBctpDQ/TjhNVCLRuJI/AAAAAAAAAZ0/Mx_6eRTD-wo/s640/chinahack.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Original:&lt;br /&gt;&lt;a href="http://pastebin.com/XDGRJ6BE"&gt;http://pastebin.com/XDGRJ6BE&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-8954718641135120637?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/8954718641135120637" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/8954718641135120637" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/30-china-govt-sites-hacked-hitcher.html" title="30 China govt sites hacked Hitcher" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://i53.tinypic.com/2rc7sle_th.png" height="72" width="72" /></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-5195893814709946797</id><published>2011-08-03T00:37:00.001+05:30</published><updated>2011-08-03T00:37:49.732+05:30</updated><title type="text">Anonware malware framework download github</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;"download complete everything @ http://www.megaupload.com/?d=QKMY6HRW&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;UPDATE: GITHUB REPO AVAILABLE NOW! https://github.com/opendeveloper/anonware (^)_(^)&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;TO SET THE RECORD STRAIGHT:&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;as for allegations that my code is 'amaturish, lazy, etc.' i would like to say that it's completely true :) the code provided here *IS* just a C# compiler (with a little extra) and shouldn't be taken as some kind of super awesome virus released by a group of Anonymous hackers. it's something me, a bad programmer, threw together in a couple hours and decided to paste on pastebin.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;oh, and fortherecord, i was a little high, and, retrospectively, the comments were definitely over-optimistic. and when the reporter from the tech herald contacted me, i assumed that he was a developer, and he took interest in the code. i naturally was like, well i guess it is pretty cool...and let my ego get ahead of myself. i would like to formally apologize to fellow Anonymous members for providing such a simple framework&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;and then acting inapropriately like it was an awesome new idea.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;as for encryption/obfuscation&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;encryption/obfuscation was something i was assuming the devs could add to the framework; i didn't think it would be something i should put in the framework. besides; if i put a specific kind of obfuscation/encryption into the framework as it was, it would be pretty easy for the a/v vendors to just find a flaw in one part of my encryption code and then use that to exploit all future editions of it.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;that doesn't allign well with what the 'framework' is, more of like the standard stuff so you can add on your own stuff so that a/v doesn't have one standard thing to go off.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;as for existing malware frameworks&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;once again, alittle high, way to optimistic comments ^^_^^&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;as for the existing malware frameworks pointed out, all of them are either pay-to-use or really hard to find the source for. i provided AnonWare as a service that's simple to find and easy to modify&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;for the future:&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;i will release the FIRST version of AnonWare a couple days after #RefRef is released. hopefully, it will include encryption/obfuscation, a seperate edition for people that want to create rouge AV and other software. i have an idea for using it with #RefRef, and will get everything ready for integration with #RefRef while we wait for the #RefRef team to complete development. i emphasize FIRST because it seems some people misunderstood&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;the point of AnonWare...it was counterintuitive for the Sophos researcher to provide malware detection for it since what is provided here is nowhere near completed malware. also the tech hareld reporter may have misunderstood, partially by sending the code to the researches. i'm not blaming anyone for this; i acted like it was bigger than it was, and as a result reporters and the public may have been dissapointed when reading thru the code.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;finally, please help AnonWare :P if you can do any type of development, i would love it if you could help improve the code, translate the code, etc.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;ty. tyvm.&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;NOW BACK TO THE REST OF THE PASTE!&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;note - keep in mind that this is nowhere near a completed virus, just sumthing i threw together in a day ^_^&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;if you would like to use this at all, you're gonna need to add a lot to the code...it's just the absolute simplest parts of malware&lt;/span&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;a href="https://github.com/opendeveloper/anonware"&gt;https://github.com/opendeveloper/anonware&lt;/a&gt;&lt;br /&gt;&lt;a href="http://pastebin.com/MFc4SY3S"&gt;http://pastebin.com/MFc4SY3S&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-5195893814709946797?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/5195893814709946797" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/5195893814709946797" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/anonware-malware-framework-download.html" title="Anonware malware framework download github" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-3390609713412534735</id><published>2011-08-03T00:31:00.002+05:30</published><updated>2011-08-03T00:31:08.614+05:30</updated><title type="text">The Sun Scottish students poll Hacked</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://pastebin.com/Ucy6Lj34"&gt;The Sun - Hacked Scottish students poll - Pastebin.com&lt;/a&gt;: "The Sun - Scottish students poll&lt;br /&gt;Released by batteye&lt;br /&gt;&lt;br /&gt;Full CSV file: http://www.mediafire.com/download.php?77kkuvlm6c92exv"&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://pastebin.com/Ucy6Lj34"&gt;http://pastebin.com/Ucy6Lj34&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-3390609713412534735?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/3390609713412534735" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/3390609713412534735" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/sun-scottish-students-poll-hacked.html" title="The Sun Scottish students poll Hacked" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-1775011217573264891</id><published>2011-08-03T00:28:00.000+05:30</published><updated>2011-08-03T00:28:02.586+05:30</updated><title type="text">Free Tope Antisec Movement</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;$$$$$$ &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;/$$$$$$$$$$$$$ &amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$__/ &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;|____ $$$____/&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$ &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | $$$&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$$$$ &amp;nbsp;/$$$$$ &amp;nbsp;/$$$$$ &amp;nbsp;/$$$$$ &amp;nbsp; &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp; /$$$$$$ &amp;nbsp;/$$$$$$ &amp;nbsp;/$$$$$&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$__/ | $$$_/ | $$$_/ | $$$_/ &amp;nbsp; &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp;| $$$ &amp;nbsp;$ | $$$ &amp;nbsp;$ | $$$_/&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$ &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp; | $$$$$ | $$$$$ &amp;nbsp; &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp;| $$$ &amp;nbsp;$ | $$$ &amp;nbsp;$ | $$$$$&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$ &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp; | $$$_/ | $$$_/ &amp;nbsp; &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp;| $$$ &amp;nbsp;$ | $$$ &amp;nbsp;$ | $$$_/&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;| $$$ &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp; | $$$$$ | $$$$$ &amp;nbsp; &amp;nbsp; &amp;nbsp;| $$$ &amp;nbsp;| $$$$$$ | $$$$$$ | $$$$$&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;|___/ &amp;nbsp; &amp;nbsp;|___/ &amp;nbsp; |_____/ |_____/ &amp;nbsp; &amp;nbsp; &amp;nbsp;|___/ &amp;nbsp;|______/ | $$$__/ |_____/&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | $$$&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; |___/&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;"To my dearest Lulz Lizards,&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;Jake Davis is perhaps the greatest digital graffiti artist of all time. A purveyor of many lulz, this swank garden hedge known as Topiary left his personal Twitter account with a quotation from famed civil rights activist Medgar Evers, "You cannot arrest an idea."&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;Jake wrote many lulzy press releases for both Anonymous and Lulz Security. He proved his value as a spokesperson by taking on Shirley Phelps of Westboro Baptist, slaying her hateful religious zeal with over 9,000 sins.&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;------&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;------&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;"Under a government which imprisons any unjustly, the true place for a just man is also a prison." ~ Henry David Thoreau"&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;You can help Topiary by donating bitcoins to whichever following address you trust most:&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;18NHixaoQekQJ3y52aBGJJwgBWX9X3myYR ~ Sabu&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;18zJouAQAMzX5sJygZ4M2QV7yb8FzxSbdq ~ Chronicle.SU&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;------&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;------&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;a href="http://pastebin.com/NzsxhNXT"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;http://pastebin.com/NzsxhNXT&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;a href="http://pastebin.com/yXmajXmv"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;http://pastebin.com/yXmajXmv&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-1775011217573264891?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/1775011217573264891" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/1775011217573264891" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/free-tope-antisec-movement.html" title="Free Tope Antisec Movement" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-7875980430773302004</id><published>2011-08-03T00:18:00.001+05:30</published><updated>2011-08-03T00:18:54.749+05:30</updated><title type="text">Stuxnet memory analysis Volatility 2.0</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://mnin.blogspot.com/2011/06/examining-stuxnets-footprint-in-memory.html"&gt;MNIN Security Blog: Stuxnet's Footprint in Memory with Volatility 2.0&lt;/a&gt;: "Stuxnet modifies an infected system in such ways that are perfect for showing off many of the new capabilities in Volatility 2.0. We won't cover all of Volatility's commands (for example you won't see idt, gdt, ssdt), because Stunet doesn't mess with those areas of the system, but you'll get a good summary. Second, although many people understand technical malware descriptions, not many people have the 'glue' knowledge to translate artifacts that they read about into Volatility commands. Sometimes you can capably determine if a system is infected by hunting for the artifacts eluded to in reports."&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://mnin.blogspot.com/2011/06/examining-stuxnets-footprint-in-memory.html"&gt;http://mnin.blogspot.com/2011/06/examining-stuxnets-footprint-in-memory.html&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-7875980430773302004?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7875980430773302004" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/7875980430773302004" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/stuxnet-memory-analysis-volatility-20.html" title="Stuxnet memory analysis Volatility 2.0" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-1512509359223541854</id><published>2011-08-03T00:11:00.000+05:30</published><updated>2011-08-03T00:11:35.580+05:30</updated><title type="text">Practical C++ Decompilation REcon 2011</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://www.hexblog.com/?p=432"&gt;Recon 2011: Practical C++ Decompilation | Hex Blog&lt;/a&gt;: "C++ decompilation and how to handle it in IDA and Hex-Rays decompile"&lt;br /&gt;&lt;div&gt;&lt;object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" height="506" width="640"&gt;&lt;param value="true" name="allowfullscreen"/&gt;&lt;param value="always" name="allowscriptaccess"/&gt;&lt;param value="high" name="quality"/&gt;&lt;param value="true" name="cachebusting"/&gt;&lt;param value="#000000" name="bgcolor"/&gt;&lt;param name="movie" value="http://www.archive.org/flow/flowplayer.commercial-3.2.1.swf" /&gt;&lt;param value="config={'key':'#$aa4baff94a9bdcafce8','playlist':['format=Thumbnail?.jpg',{'autoPlay':false,'url':'12_Igor_Skochinsky.mp4'}],'clip':{'autoPlay':true,'baseUrl':'http://www.archive.org/download/Recon_2011_Practical_Cpp_decompilation/','scaling':'fit','provider':'h264streaming','showCaptions':true},'canvas':{'backgroundColor':'#000000','backgroundGradient':'none'},'plugins':{'controls':{'playlist':false,'fullscreen':true,'height':26,'backgroundColor':'#000000','autoHide':{'fullscreenOnly':true}},'h264streaming':{'url':'http://www.archive.org/flow/flowplayer.pseudostreaming-3.2.1.swf'},'captions':{'url':'http://www.archive.org/flow/flowplayer.captions-3.2.0.swf','captionTarget':'content'},'content':{'display':'block','url':'http://www.archive.org/flow/flowplayer.content-3.2.0.swf','bottom':26,'left':0,'width':640,'height':50,'backgroundGradient':'none','backgroundColor':'transparent','textDecoration':'outline','border':0,'style':{'body':{'fontSize':'14','fontFamily':'Arial','textAlign':'center','fontWeight':'bold','color':'#ffffff'}}}},'contextMenu':[{},'-','Flowplayer v3.2.1']}" name="flashvars"/&gt;&lt;embed src="http://www.archive.org/flow/flowplayer.commercial-3.2.1.swf" type="application/x-shockwave-flash" width="640" height="506" allowfullscreen="true" allowscriptaccess="always" cachebusting="true" bgcolor="#000000" quality="high" flashvars="config={'key':'#$aa4baff94a9bdcafce8','playlist':['format=Thumbnail?.jpg',{'autoPlay':false,'url':'12_Igor_Skochinsky.mp4'}],'clip':{'autoPlay':true,'baseUrl':'http://www.archive.org/download/Recon_2011_Practical_Cpp_decompilation/','scaling':'fit','provider':'h264streaming','showCaptions':true},'canvas':{'backgroundColor':'#000000','backgroundGradient':'none'},'plugins':{'controls':{'playlist':false,'fullscreen':true,'height':26,'backgroundColor':'#000000','autoHide':{'fullscreenOnly':true}},'h264streaming':{'url':'http://www.archive.org/flow/flowplayer.pseudostreaming-3.2.1.swf'},'captions':{'url':'http://www.archive.org/flow/flowplayer.captions-3.2.0.swf','captionTarget':'content'},'content':{'display':'block','url':'http://www.archive.org/flow/flowplayer.content-3.2.0.swf','bottom':26,'left':0,'width':640,'height':50,'backgroundGradient':'none','backgroundColor':'transparent','textDecoration':'outline','border':0,'style':{'body':{'fontSize':'14','fontFamily':'Arial','textAlign':'center','fontWeight':'bold','color':'#ffffff'}}}},'contextMenu':[{},'-','Flowplayer v3.2.1']}"&gt; &lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Slides:&lt;/div&gt;&lt;div&gt;&lt;a href="http://www.hexblog.com/wp-content/uploads/2011/08/Recon-2011-Skochinsky.pdf"&gt;http://www.hexblog.com/wp-content/uploads/2011/08/Recon-2011-Skochinsky.pdf&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-1512509359223541854?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/1512509359223541854" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/1512509359223541854" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/practical-c-decompilation-recon-2011.html" title="Practical C++ Decompilation REcon 2011" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-2686224285061222742</id><published>2011-08-02T23:28:00.001+05:30</published><updated>2011-08-02T23:28:54.462+05:30</updated><title type="text">Washington University Students Staff emails Dumped</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;a href="http://seclists.org/fulldisclosure/2011/Aug/3"&gt;Full Disclosure: Washington University Student and Staff Dump&lt;/a&gt;: "Washington University Student and Staff Dump"&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://www.washington.edu/home/peopledir/"&gt;http://www.washington.edu/home/peopledir/&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://pastebin.com/ALYtW4hA"&gt;http://pastebin.com/ALYtW4hA&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-2686224285061222742?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/2686224285061222742" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/2686224285061222742" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/washington-university-students-staff.html" title="Washington University Students Staff emails Dumped" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-8542238447113296918</id><published>2011-08-02T23:18:00.000+05:30</published><updated>2011-08-02T23:18:08.822+05:30</updated><title type="text">CVE-2011-2357 Android Browser Cross Application Scripting !</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="border-collapse: collapse; font-size: 13px;"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;span style="font-size: x-small;"&gt;"A 3rd party application may exploit Android's Browser URL loading process in&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;order to inject JavaScript code into an arbitrary domain thus break Android's&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&lt;u&gt;sandboxing&lt;/u&gt;. There are two vectors that can achieve this:&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;1. The malicious application causes the Android's browser to reach the MAX_TAB&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;limit. From then on URLs are loaded under the current tab. The attacking&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;application can open MAX_TAB URLs by calling startActivity &lt;max_tab&gt; times&lt;/max_tab&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;with the attacked domain. On the &lt;max_tab+1&gt;&lt;u&gt;th&lt;/u&gt;&amp;nbsp;call, the attacking&amp;nbsp;&lt;u&gt;app&lt;/u&gt;&amp;nbsp;can&lt;/max_tab+1&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;insert a&amp;nbsp;&lt;u&gt;javascript&lt;/u&gt;:// URI, which will be opened in the context of the&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;attacked domain. It should be denoted that the sent Intent should be&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;combined with the FLAG_ACTIVITY_BROUGHT_TO_FRONT flag because it is likely&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;that the Browser will have UI focus from the second intent and forward, in&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;which case&amp;nbsp;&lt;u&gt;Android&lt;/u&gt;&amp;nbsp;won't attach this flag automatically and the crucial code&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;fragment under onNewIntent will not be executed.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;2. Sending two consecutive startActivity calls. The first call includes the&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;attacked domain, and causes Android's browser to load it. The second call&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;contains the&amp;nbsp;&lt;u&gt;javascript&lt;/u&gt;&amp;nbsp;code. If the time interval between the two intents&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;is small enough, then it is likely that the browser will have UI focus when&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;the second startActivity call is made, therefore the input intent won't have&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;the FLAG_ACTIVITY_BROUGHT_TO_FRONT flag and, as explained in the previous&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;vector, the JavaScript URI will be opened under the current tab, i.e. the&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size: x-small;"&gt;&amp;nbsp; &amp;nbsp;attacked domain."&lt;/span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;object class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://3.gvt0.com/vi/BzUpbcrWufs/0.jpg" height="266" width="320"&gt;&lt;param name="movie" value="http://www.youtube.com/v/BzUpbcrWufs&amp;fs=1&amp;source=uds" /&gt;&lt;param name="bgcolor" value="#FFFFFF" /&gt;&lt;embed width="750" height="466"  src="http://www.youtube.com/v/BzUpbcrWufs&amp;fs=1&amp;source=uds" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;a href="http://blog.watchfire.com/files/advisory-android-browser.pdf"&gt;http://blog.watchfire.com/files/advisory-android-browser.pdf&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;a href="http://seclists.org/fulldisclosure/2011/Aug/9"&gt;http://seclists.org/fulldisclosure/2011/Aug/9&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-8542238447113296918?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/8542238447113296918" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/8542238447113296918" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/cve-2011-2357-android-browser-cross.html" title="CVE-2011-2357 Android Browser Cross Application Scripting !" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry><entry><id>tag:blogger.com,1999:blog-5503033376577198846.post-4362499660633122396</id><published>2011-08-02T23:00:00.000+05:30</published><updated>2011-08-02T23:00:02.463+05:30</updated><title type="text">Return Oriented Programming paper !</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;Review: Buffer overflow, format string&lt;br /&gt;&lt;br /&gt;• Return Oriented Programming&lt;br /&gt;&lt;br /&gt;– Chain together sequences (‘gadgets’) ending in RET&lt;br /&gt;&lt;br /&gt;– Can use good code chunks as ‘alphabet’, string&lt;br /&gt;&lt;br /&gt;together to get for bad code&lt;br /&gt;&lt;br /&gt;• Some similarities to an antigram (form of anagram)&lt;br /&gt;&lt;br /&gt;Within earshot ‡ I won't hear this&lt;br /&gt;&lt;br /&gt;– Build “gadgets” for load‐store, arithmetic,&lt;br /&gt;&lt;br /&gt;logic, control flow, system calls&lt;br /&gt;&lt;br /&gt;– Attack can perform arbitrary computation&lt;br /&gt;&lt;br /&gt;using no injected code at all&lt;/span&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: 'Courier New', Courier, monospace;"&gt;&lt;a href="http://cs.uno.edu/~dbilar/11CSCI6621-NetworkSecurity/04.07.11.ROP.CSCI6621/04.06.11.ReturnOrientedProgramming.CSCI6621.pdf"&gt;http://cs.uno.edu/~dbilar/11CSCI6621-NetworkSecurity/04.07.11.ROP.CSCI6621/04.06.11.ReturnOrientedProgramming.CSCI6621.pdf&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5503033376577198846-4362499660633122396?l=esploit.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/4362499660633122396" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/5503033376577198846/posts/default/4362499660633122396" /><link rel="alternate" type="text/html" href="http://esploit.blogspot.com/2011/08/return-oriented-programming-paper.html" title="Return Oriented Programming paper !" /><author><name>Satyamhax</name><uri>http://www.blogger.com/profile/10558552010115462273</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="26" src="http://3.bp.blogspot.com/_gw0ss3AlOQ4/TPo0_g9Ao9I/AAAAAAAAAK0/7sdzf4XZpOw/S220/computerbrain.jpg" /></author></entry></feed>

