<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>insecure</title>
	
	<link>http://blog.insecure.in</link>
	<description />
	<lastBuildDate>Sun, 19 Feb 2012 08:45:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/in_secure" /><feedburner:info uri="in_secure" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>in_secure</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item>
		<title>Hacker Demanded $50,000 for not releasing Stolen Symantec Source Code</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/bMSc-isD4XM/</link>
		<comments>http://blog.insecure.in/?p=1176#comments</comments>
		<pubDate>Tue, 07 Feb 2012 05:26:55 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Norton]]></category>
		<category><![CDATA[Norton Source Code]]></category>
		<category><![CDATA[PCAnywhere]]></category>
		<category><![CDATA[PCAnywhere Source Code]]></category>
		<category><![CDATA[Source Code Hack]]></category>
		<category><![CDATA[Source Code Leak]]></category>
		<category><![CDATA[Stories]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[Symantec Hacked]]></category>
		<category><![CDATA[Symantec Source Code]]></category>
		<category><![CDATA[Yamatough]]></category>
		<category><![CDATA[Yamatough Hacker]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1176</guid>
		<description><![CDATA[According to email transcripts posted to Pastebin yesterday, and confirmed by the company, a group of hackers attempted to extort $50,000 from Symantec in exchange for not releasing its stolen PCAnywhere and Norton Antivirus source code. Hackers associated with the group Anonymous known as the Lords of Dharamaja leaked what appears to be another 1.27 [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/symantec-source-code-leak.jpg" alt="Norton Source Code" align="left" style="padding-right:6px;padding-bottom:5px;" />According to email transcripts posted to <a href="http://pastebin.com/GJEKf1T9" target="_blank">Pastebin</a> yesterday, and confirmed by the company, a group of hackers attempted to extort $50,000 from Symantec in exchange for not releasing its stolen PCAnywhere and Norton Antivirus source code. </p>
<p>Hackers associated with the group Anonymous known as the Lords of Dharamaja leaked what appears to be another 1.27 gigabytes of source code from Symantec Monday night, what they claim is the source code of the Symantec program PCAnywhere. </p>
<p>A 1.2GB file labeled &#8220;<a href="http://thepiratebay.se/torrent/7014253/Symantec_s_pcAnywhere_Leaked_Source_Code" target="_blank">Symantec&#8217;s pcAnywhere Leaked Source Code</a>&#8221; has been posted to The Pirate Bay.</p>
<p>The leak comes as little surprise: Symantec had previously revealed that the hackers had obtained 2006 versions of that code along with other Symantec products from the same time period, and warned users of PCAnywhere to disable its functionality until they patched the program earlier this month.</p>
<p>The emails between Symantec employee Sam Thomas and the hacker(s) Yamatough, began in January. Symantec confirmed in a statement that it had contacted law enforcement after confirming the theft of the code and that the email exchange was, in fact, part of a criminal investigation. The email thread ended yesterday with Yamatough threatening to immediately release the code.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bMSc-isD4XM:_SryCqJCHLY:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bMSc-isD4XM:_SryCqJCHLY:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bMSc-isD4XM:_SryCqJCHLY:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bMSc-isD4XM:_SryCqJCHLY:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bMSc-isD4XM:_SryCqJCHLY:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bMSc-isD4XM:_SryCqJCHLY:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/bMSc-isD4XM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1176</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1176</feedburner:origLink></item>
		<item>
		<title>Joomscan – Joomla Security Scanner Updated to 611 Vulnerabilities Database</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/d0M0QnfYESk/</link>
		<comments>http://blog.insecure.in/?p=1174#comments</comments>
		<pubDate>Mon, 06 Feb 2012 05:21:50 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Information Gathering]]></category>
		<category><![CDATA[Penetration Testing]]></category>
		<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[Joomla Scanner]]></category>
		<category><![CDATA[Joomla Vulnerabilities]]></category>
		<category><![CDATA[Joomscan]]></category>
		<category><![CDATA[joomscan.pl]]></category>
		<category><![CDATA[OWASP]]></category>
		<category><![CDATA[OWASP Joomscan]]></category>
		<category><![CDATA[Security Scanner]]></category>
		<category><![CDATA[Security Tool]]></category>
		<category><![CDATA[Vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1174</guid>
		<description><![CDATA[Joomscan, Joomla Security Scanner is now updated to 611 vulnerabilities database. In Joomscan you can check for new updates with command: ./joomscan.pl check or ./joomscan.pl update Overview: Joomla! is probably the most widely-used CMS out there due to its flexibility, user-friendlinesss, extensibility to name a few. So, watching its vulnerabilities and adding such vulnerabilities as [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/joomscan.jpg" alt="Joomscan" align="right" style="padding-left:6px;padding-bottom:5px;" />Joomscan, Joomla Security Scanner is now updated to 611 vulnerabilities database.</p>
<p>In Joomscan you can check for new updates with command: <strong><em>./joomscan.pl check</em></strong> or <strong><em>./joomscan.pl update</em></strong></p>
<p><strong>Overview:</strong><br />
Joomla! is probably the most widely-used CMS out there due to its flexibility, user-friendlinesss, extensibility to name a few. So, watching its vulnerabilities and adding such vulnerabilities as KB to Joomla scanner takes ongoing activity. It will help web developers and web masters to help identify possible security weaknesses on their deployed Joomla! sites. No web security scanner is dedicated only one CMS.</p>
<p><strong>Features:</strong></p>
<ul type="square">
<li>Exact version Probing</li>
<li>Common Joomla! based web application firewall detection</li>
<li>Searching known vulnerabilities of Joomla! and its components</li>
<li>Reporting to Text &#038; HTML output</li>
<li>Immediate update capability via scanner or svn </li>
</ul>
<p><strong>Requirement:</strong><br />
Perl 5.6 or up</p>
<p><strong>Download:</strong> <a href="http://sourceforge.net/projects/joomscan/files/latest/download" target="_blank">joomscan-latest.zip</a></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=d0M0QnfYESk:cBbprFwZzVU:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=d0M0QnfYESk:cBbprFwZzVU:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=d0M0QnfYESk:cBbprFwZzVU:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=d0M0QnfYESk:cBbprFwZzVU:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=d0M0QnfYESk:cBbprFwZzVU:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=d0M0QnfYESk:cBbprFwZzVU:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/d0M0QnfYESk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1174</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1174</feedburner:origLink></item>
		<item>
		<title>Wifi Protector – Protect Your Android From Wi-Fi Sniffing Attacks</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/hbF0Dpo6UNg/</link>
		<comments>http://blog.insecure.in/?p=1145#comments</comments>
		<pubDate>Sun, 05 Feb 2012 11:12:44 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[Android App]]></category>
		<category><![CDATA[Android Security]]></category>
		<category><![CDATA[Android WiFi Protector]]></category>
		<category><![CDATA[Security Tool]]></category>
		<category><![CDATA[Wi-Fi Protector]]></category>
		<category><![CDATA[Wi-Fi Security]]></category>
		<category><![CDATA[WiFi]]></category>
		<category><![CDATA[WiFi Protector]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1145</guid>
		<description><![CDATA[Detects and protects from all kinds of ARP (Address Resolution Protocol) related attacks in Wi-Fi networks, like DOS (Denial Of Service) or MITM (Man In The Middle) Attack. Protects your phone from tools like FaceNiff, Cain &#038; Abel, ANTI, ettercap, DroidSheep, NetCut, and all others that try to hijack your session via MITM through ARP [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/android-wifi-protector.png" alt="Android Wifi Protector" align="left" style="padding-right:6px;padding-bottom:5px;" />Detects and protects from all kinds of ARP (Address Resolution Protocol) related attacks in Wi-Fi networks, like DOS (Denial Of Service) or MITM (Man In The Middle) Attack.</p>
<p>Protects your phone from tools like FaceNiff, Cain &#038; Abel, ANTI, ettercap, DroidSheep, NetCut, and all others that try to hijack your session via MITM through ARP spoofing / ARP poisoning.</p>
<p><strong>Features:</strong><br />
– Uses very few resources<br />
– Uses no resources if Wi-Fi is disabled<br />
– Nearly zero battery consumption<br />
– Requires very few permissions. Requests only absolutely necessary permissions<br />
– No configuration required, works off the shelf for novices<br />
– Experts can change many settings to adapt the app to their needs<br />
– Undetectable by the bad guy<br />
– 100% silent and passive inside the network. Generates no noise<br />
– Highly customizable notifications<br />
– Plays ringtone on attack (optional)<br />
– Vibrates in a given pattern on attack (optional)<br />
– Easy to use one-click-interface as well as detailed network view for experts<br />
– &#8220;Immunity&#8221; protects you without disabling Wi-Fi (root required)<br />
– Can also disable Wi-Fi if you don&#8217;t have root access to your phone<br />
– Logging of all spoofing attempts with details about the network and the attacker<br />
– Works in complex wireless LANs, like vWLAN and WDS (please see FAQ)<br />
– Detects networks already under attack<br />
– Automatic countermeasures</p>
<div align="center">
<object class="doc-video" width="420" height="336"><param value="https://www.youtube.com/v/Yu6vbNMj6m0?fs=1&#038;rel=0&#038;version=3" name="movie"><param value="true" name="allowFullScreen"><param value="always" name="allowscriptaccess"><param value="opaque" name="wmode"><embed width="420" height="336" wmode="opaque" allowfullscreen="true" allowscriptaccess="always" type="application/x-shockwave-flash" src="https://www.youtube.com/v/Yu6vbNMj6m0?fs=1&#038;rel=0&#038;version=3"><br />
</object>
</div>
<p><strong>Download:</strong><br />
<a href="https://market.android.com/details?id=com.gurkedev.wifiprotector" target="_blank">https://market.android.com/details?id=com.gurkedev.wifiprotector</a></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=hbF0Dpo6UNg:vMSbNz5aXbo:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=hbF0Dpo6UNg:vMSbNz5aXbo:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=hbF0Dpo6UNg:vMSbNz5aXbo:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=hbF0Dpo6UNg:vMSbNz5aXbo:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=hbF0Dpo6UNg:vMSbNz5aXbo:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=hbF0Dpo6UNg:vMSbNz5aXbo:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/hbF0Dpo6UNg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1145</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1145</feedburner:origLink></item>
		<item>
		<title>Anonymous Hacks FBI and Records Conference Call</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/IeTR6JpaHAM/</link>
		<comments>http://blog.insecure.in/?p=1153#comments</comments>
		<pubDate>Sat, 04 Feb 2012 07:51:22 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[Videos]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[Anonymous Hackers]]></category>
		<category><![CDATA[AntiSec]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[FBI Conference Hack]]></category>
		<category><![CDATA[FBI Hacked]]></category>
		<category><![CDATA[FBI Hackers]]></category>
		<category><![CDATA[Hacking Video]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[LulzSec Hackers]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Operation AntiSec]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1153</guid>
		<description><![CDATA[Earlier today, Anonymous released a confidential conference call between the FBI and law enforcement officers in the UK. The 16-minute call discusses ongoing investigations into hackers associated with Anonymous, AntiSec, and LulzSec. From all appearances, Anonymous retrieved the sensitive access code information and a list of attendees from an FBI email account. The group released [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/anonymous-hackers.jpg" alt="Anonymous Hackers" align="right" style="padding-left:6px;padding-bottom:5px;" />Earlier today, Anonymous released a confidential conference call between the FBI and law enforcement officers in the UK. The 16-minute call discusses ongoing investigations into hackers associated with Anonymous, AntiSec, and LulzSec.</p>
<p>From all appearances, Anonymous retrieved the sensitive access code information and a list of attendees from an FBI email account. The group released a roughly 15-minute-long recording of what appears to be a Jan. 17 conference call devoted to tracking and prosecuting members of the loose-knit hacking group.</p>
<p>The email, titled <em>“Anon-Lulz International Coordination Call”</em>, was published <a href="http://pastebin.com/8G4jLha8" target="_blank">on pastebin</a> earlier today. The email with details for accessing the call was sent to law enforcement officials in Britain, France, the Netherlands and others but the only people who identify themselves on the call are from the FBI and Scotland Yard.In a message on Twitter, Anonymous posted links to the audio recording and said the FBI &#8220;might be curious how we&#8217;re able to continuously read their internal comms for some time now.&#8221;</p>
<p>The initial link to the conference call was for <a href="http://www.mirrorcreator.com/files/1SL3XXIR/" target="_blank">an mp3 download</a>, but it was also made available to stream on YouTube.</p>
<div align="center"><iframe allowfullscreen="" src="http://www.youtube.com/embed/pl3spwzUZfQ" frameborder="0" height="300" width="500"></iframe></div>
<p>The FBI and Scotland Yard have now confirmed that their internal conference call describing their investigation into Anonymous hackers was illegally intercepted, as was the email containing the conference call details. The Metropolitan Police also confirmed it, saying:“We are aware of the video which relates to an FBI conference call involving a PCeU representative. The matter is being investigated by the FBI. We continue to carry out a full assessment. We are not prepared to discuss further.”</p>
<p>Karen Todner, a lawyer for Cleary, said that the recording could be “incredibly sensitive” and warned that such data breaches had the potential to derail the police’s work.“If they haven’t secured their email it could potentially prejudice the investigation,” she told. Following a spate of arrests across the world, the group and its various offshoots have focused their attention on law enforcement agencies in general and the FBI in particular.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=IeTR6JpaHAM:cq1FzGzkTIk:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=IeTR6JpaHAM:cq1FzGzkTIk:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=IeTR6JpaHAM:cq1FzGzkTIk:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=IeTR6JpaHAM:cq1FzGzkTIk:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=IeTR6JpaHAM:cq1FzGzkTIk:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=IeTR6JpaHAM:cq1FzGzkTIk:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/IeTR6JpaHAM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1153</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1153</feedburner:origLink></item>
		<item>
		<title>NASA and Pentagon Hacker – TinKode Arrested in Romania</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/tQrBFuT92DI/</link>
		<comments>http://blog.insecure.in/?p=1156#comments</comments>
		<pubDate>Thu, 02 Feb 2012 11:11:25 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[NASA Hacker]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Pentagon Data Breach]]></category>
		<category><![CDATA[Pentagon Hack]]></category>
		<category><![CDATA[Pentagon Hacker]]></category>
		<category><![CDATA[TinKode]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1156</guid>
		<description><![CDATA[Romanian police have arrested a man believed to be TinKode, the notorious hacker responsible for several daring, high-profile cyberattacks, including last year&#8217;s breach of NASA&#8217;s servers, Royal Navy, The European Space Agency and MySQL.com. The 20-year-old man, named as Razvan Manole Cernaianu, allegedly attacked Pentagon and NASA computer systems, revealed security holes, and published information [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/hacker-tinkode.jpg" alt="Hacker TinKode" align="left" style="padding-right:8px;padding-bottom:5px;" />Romanian police have arrested a man believed to be TinKode, the notorious hacker responsible for several daring, high-profile cyberattacks, including last year&#8217;s breach of NASA&#8217;s servers, Royal Navy, The European Space Agency and MySQL.com. The 20-year-old man, named as Razvan Manole Cernaianu, allegedly attacked Pentagon and NASA computer systems, revealed security holes, and published information about SQL injection vulnerabilities he had discovered, the Romanian Directorate for Investigating Organized Crime and Terrorist (DIICOT) said in <a href="http://www.diicot.ro/index.php?option=com_content&#038;view=article&#038;id=654:comunicat-de-presa-31012012&#038;catid=38:mass-media&#038;Itemid=81" target="_blank">a press release</a>.</p>
<p>He also posted a video on his blog demonstrating an attack he carried out against the U.S. government, and created and offered for sale a computer program used to hack Web sites. Through his exploits, Cernaianu blocked access to systems and seriously disabled their proper functioning, authorities said.</p>
<p>Currently, Cernăianu is being taken to Bucharest for questioning and he is charged with breaching a computing system without authorization, unauthorized transfer of data from a computing system, and the disruption of a computing system. Romanian authorities said the FBI and NASA took part in the investigation.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=tQrBFuT92DI:NKqPSkce6Is:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=tQrBFuT92DI:NKqPSkce6Is:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=tQrBFuT92DI:NKqPSkce6Is:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=tQrBFuT92DI:NKqPSkce6Is:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=tQrBFuT92DI:NKqPSkce6Is:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=tQrBFuT92DI:NKqPSkce6Is:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/tQrBFuT92DI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1156</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1156</feedburner:origLink></item>
		<item>
		<title>theHarvester – Information Gathering Tool</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/Q8JkEND_kOk/</link>
		<comments>http://blog.insecure.in/?p=1143#comments</comments>
		<pubDate>Fri, 27 Jan 2012 18:34:44 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Information Gathering]]></category>
		<category><![CDATA[Privacy Attacks]]></category>
		<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[emails gathering tool]]></category>
		<category><![CDATA[Hacking Tool]]></category>
		<category><![CDATA[Hacktools]]></category>
		<category><![CDATA[Information Gathering Tool]]></category>
		<category><![CDATA[sub domains gathering tool]]></category>
		<category><![CDATA[theHarvester]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1143</guid>
		<description><![CDATA[theHarvester is a tool for gathering e-mail accounts, user names and hostnames/subdomains from different public sources like search engines and PGP key servers. This tools is intended to help Penetration testers in the early stages of the project It&#8217;s a really simple tool, but very effective. The sources supported are: – Google &#8211; emails,subdomains/hostnames – [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/the-harvester.jpg" alt="The Harvester" align="right" style="padding-left:6px;padding-bottom:5px;" />theHarvester is a tool for gathering e-mail accounts, user names and hostnames/subdomains from different public sources like search engines and PGP key servers.</p>
<p>This tools is intended to help Penetration testers in the early stages of the project It&#8217;s a really simple tool, but very effective.</p>
<p><strong>The sources supported are:</strong><br />
– Google &#8211; emails,subdomains/hostnames<br />
– Google profiles &#8211; Employee names<br />
– Bing search &#8211; emails, subdomains/hostnames,virtual hosts<br />
– Pgp servers &#8211; emails, subdomains/hostnames<br />
– Linkedin &#8211; Employee names<br />
– Exalead &#8211; emails,subdomain/hostnames</p>
<p><strong>New features:</strong><br />
– Time delays between requests<br />
– XML and HTML results export<br />
– Search a domain in all sources<br />
– Virtual host verifier<br />
– Shodan computer database integration<br />
– Active enumeration (DNS enumeration,DNS reverse lookups, DNS TLD expansion)<br />
– Basic graph with stats</p>
<p><strong>Some Examples:</strong><br />
Searching emails accounts for the domain microsoft.com, it will work with the first 500 google results:</p>
<blockquote><p>./theharvester.py -d microsoft.com -l 500 -b google</p></blockquote>
<p>Searching emails accounts for the domain microsoft.com in a PGP server, here it&#8217;s not necessary to specify the limit.</p>
<blockquote><p>./theharvester.py -d microsoft.com -b pgp</p></blockquote>
<p>Searching for user names that works in the company microsoft, we use google as search engine, so we need to specify the limit of results we want to use:</p>
<blockquote><p>./theharvester.py -d microsoft.com -l 200 -b linkedin</p></blockquote>
<p>Searching in all sources at the same time, with a limit of 200 results:</p>
<blockquote><p>./theHarvester.py -d microsoft.com -l 200 -b all</p></blockquote>
<p><strong>Download:</strong> <a href="https://code.google.com/p/theharvester" target="_blank">https://code.google.com/p/theharvester</a></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=Q8JkEND_kOk:mKFkdB5mWbI:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=Q8JkEND_kOk:mKFkdB5mWbI:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=Q8JkEND_kOk:mKFkdB5mWbI:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=Q8JkEND_kOk:mKFkdB5mWbI:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=Q8JkEND_kOk:mKFkdB5mWbI:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=Q8JkEND_kOk:mKFkdB5mWbI:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/Q8JkEND_kOk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1143</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1143</feedburner:origLink></item>
		<item>
		<title>FBI will Monitor Social Media using Crawl Application</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/bcXqtBLgYpU/</link>
		<comments>http://blog.insecure.in/?p=1141#comments</comments>
		<pubDate>Thu, 26 Jan 2012 18:14:33 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Information Gathering]]></category>
		<category><![CDATA[Network Forensics]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Facebook Monitor]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Social Media Monitor]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[Twitter Monitor]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1141</guid>
		<description><![CDATA[The Federal Bureau of Investigation is looking for a better way to spy on Facebook and Twitter users. The Bureau is asking companies to build software that can effectively scan social media online for significant words, phrases and behavior so that agents can respond. A paper posted on the FBI website asks for companies to [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/fbi-facebook-monitor.jpg" alt="FBI Monitor Facebook" align="right" style="padding-left:6px;padding-bottom:5px;" />The Federal Bureau of Investigation is looking for a better way to spy on Facebook and Twitter users. </p>
<p>The Bureau is asking companies to build software that can effectively scan social media online for significant words, phrases and behavior so that agents can respond.</p>
<p><a href="https://www.fbo.gov/index?s=opportunity&#038;mode=form&#038;tab=core&#038;id=c65777356334dab8685984fa74bfd636&#038;_cview=1" target="_blank">A paper</a> posted on the FBI website asks for companies to build programs that will map sentiment and wrongdoing.</p>
<blockquote><p>“The application must be infinitely flexible and have the ability to adapt quickly to changing threats to maintain the strategic and tactical advantage,” the Request for Information said, “The purpose of this effort is to meet the outlined objectives…for the enhancement [of] FBI SOIC’s overall situation awareness and improved strategic decision making.”The tool would be used in “reconnaisance and surveillance missions, National Special Security Events (NSS) planning, NSSE operations, SOIC operations, counter intelligence, terrorism, and more.</p></blockquote>
<p>Although the police, including in Britain, already use Facebook routinely to ascertain the whereabouts of criminals, automatically filtering out irrelevant information remains challenging. The new FBI application will be able to automatically highlight the most relevant information. </p>
<p>The FBI is seeking responses by 10 February.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bcXqtBLgYpU:3J__jpHIH-s:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bcXqtBLgYpU:3J__jpHIH-s:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bcXqtBLgYpU:3J__jpHIH-s:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bcXqtBLgYpU:3J__jpHIH-s:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=bcXqtBLgYpU:3J__jpHIH-s:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=bcXqtBLgYpU:3J__jpHIH-s:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/bcXqtBLgYpU" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1141</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1141</feedburner:origLink></item>
		<item>
		<title>Attackers Using DNS Poisoning to Hijack Domains, Divert Traffic</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/xoOAVbRq3qk/</link>
		<comments>http://blog.insecure.in/?p=1133#comments</comments>
		<pubDate>Wed, 25 Jan 2012 11:27:05 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[Anti SOPA]]></category>
		<category><![CDATA[DNS Attack]]></category>
		<category><![CDATA[DNS Hacking]]></category>
		<category><![CDATA[DNS Poisoning]]></category>
		<category><![CDATA[Domain Hijack]]></category>
		<category><![CDATA[Domain Hijacking]]></category>
		<category><![CDATA[Hack SOPA]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[SOPA]]></category>
		<category><![CDATA[Stop SOPA]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1133</guid>
		<description><![CDATA[Several &#8220;activist hackers&#8221; appear to be using DNS poisoning and other attacks against the Domain Name System to divert users away from legitimate sites. Instead of just launching distributed denial-of-service attacks, cyber-attackers have started hijacking domain names and redirecting traffic from legitimate sites to malicious ones. The hacker group Anonymous recently managed to hijack the [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/dns-poisoning.jpg" alt="DNS Poisoning" align="left" style="padding-right:6px;padding-bottom:5px;" />Several &#8220;activist hackers&#8221; appear to be using DNS poisoning and other attacks against the Domain Name System to divert users away from legitimate sites.</p>
<p>Instead of just launching distributed denial-of-service attacks, cyber-attackers have started hijacking domain names and redirecting traffic from legitimate sites to malicious ones.</p>
<p>The hacker group Anonymous recently managed to hijack the Domain Name System record for CBS.com and redirected all traffic to another Web server that displayed an empty directory structure. It appeared as if the contents of CBS.com had been wiped, but it was actually a different server altogether. CBS.com managed to regain control of its domain after the DNS poisoning attack.</p>
<p>A group of attackers called UGNazi, which may or may not have Anonymous sympathies, was behind a similar attack on the Website of the Ultimate Fighting Championship over the weekend. The UFC had supported the controversial Stop Online Piracy Act and Protect IP Act bills, which are now temporarily shelved in Congress. The same group hijacked two domains belonging to luxury handbag and leather goods retailer Coach and diverted the traffic.</p>
<p>&#8220;We arn&#8217;t done&#8230;not even close,&#8221; the attackers wrote on their Website. A short list of &#8220;targets&#8221; on the site explained the attacks were a result of the organizations&#8217; support of SOPA.</p>
<p>Both Coach and UFC registered their domains through Network Solutions. It was evident the attackers had accessed Network Solutions’ domain management accounts. While it was unclear how they had done so, the cause is usually weak or compromised user passwords or a vulnerability in the registrar&#8217;s Website. </p>
<p>SOPA-related attacks continued this week and don&#8217;t appear to be abating. Anonymous attacked OnGuardOnline, a government-managed Website devoted to keeping users secure online. Some Anonymous members said the OnGuardOnline attack was in retaliation for SOPA and PIPA, as well as the proposed international agreement on combating online piracy, according to a message posted Jan. 23 on text-sharing site Pastebin,.</p>
<p>&#8220;If SOPA/PIPA/ACTA passes we will wage a relentless war against the corporate Internet, destroying dozens upon dozens of government and company Websites,&#8221; the message read.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=xoOAVbRq3qk:6lEPnuFTDDw:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=xoOAVbRq3qk:6lEPnuFTDDw:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=xoOAVbRq3qk:6lEPnuFTDDw:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=xoOAVbRq3qk:6lEPnuFTDDw:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=xoOAVbRq3qk:6lEPnuFTDDw:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=xoOAVbRq3qk:6lEPnuFTDDw:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/xoOAVbRq3qk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1133</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1133</feedburner:origLink></item>
		<item>
		<title>QR Codes Being Exploited by Hackers to Distribute Malware</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/soW2MJvBtps/</link>
		<comments>http://blog.insecure.in/?p=1131#comments</comments>
		<pubDate>Tue, 24 Jan 2012 11:11:59 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Stories/News]]></category>
		<category><![CDATA[Blackhole Toolkit]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Malware Distribution]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[QR Code]]></category>
		<category><![CDATA[QR Code Hacking]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1131</guid>
		<description><![CDATA[Hackers are using QR codes to distribute malware to smartphone owners, says AVG. According to the security firm&#8217;s AVG Community Powered Threat Report – Q4 2011, QR codes are becoming more popular with mobile users when it comes to accessing web pages or information without the need for typing in text or a URL, as [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/qr-code-hack.jpg" alt="QR Code Hack" align="right" style="padding-left:6px;padding-bottom:5px;" />Hackers are using QR codes to distribute malware to smartphone owners, says AVG.</p>
<p>According to the security firm&#8217;s AVG Community Powered Threat Report – Q4 2011, QR codes are becoming more popular with mobile users when it comes to accessing web pages or information without the need for typing in text or a URL, as the codes can simply be scanned by a handset and then automatically direct the user to the information. However, hackers are beginning to exploit this popularity as the user does not know what lurks behind the QR code until the malware is already installed and running on their device.</p>
<p>&#8220;In Q4 we clearly saw the convergence between computers and mobile phones applies to malware too. As phones become more like computers, so do the risks,&#8221; said Yuval Ben-Itzhak, Chief Technology Officer, AVG Technologies.</p>
<p>&#8220;Many sophisticated tricks of the trade from computers are now being repurposed for phones. However, as phones are often tied into billing systems the gains can be far greater.&#8221;</p>
<p>AVG also revealed 2011 saw a surge in the number of Android malware samples detected as well as the number of smartphones running Google&#8217;s operating system. Furthermore, stolen digital certificates, which are used to trick a user into believing the application is genuine, are also being used to target mobile device owners along with Rootkits, which AVG said are &#8220;evolving to be much more sophisticated&#8221;.</p>
<p>The security firm said the Blackhole toolkit is currently the most active threat on the web, accounting for half of all detected instances and over 80 percent of all toolkits found this quarter. The USA remains the largest source of spam, but is now followed by the UK, which jumped from fourth to second place overtaking India and Brazil this quarter.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=soW2MJvBtps:9GBfoyZjx3Y:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=soW2MJvBtps:9GBfoyZjx3Y:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=soW2MJvBtps:9GBfoyZjx3Y:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=soW2MJvBtps:9GBfoyZjx3Y:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=soW2MJvBtps:9GBfoyZjx3Y:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=soW2MJvBtps:9GBfoyZjx3Y:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/soW2MJvBtps" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1131</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1131</feedburner:origLink></item>
		<item>
		<title>Tor – Multiple Vulnerabilities</title>
		<link>http://feedproxy.google.com/~r/in_secure/~3/2aux-5qQafY/</link>
		<comments>http://blog.insecure.in/?p=1121#comments</comments>
		<pubDate>Mon, 23 Jan 2012 18:47:29 +0000</pubDate>
		<dc:creator>Prasanna Sherekar</dc:creator>
				<category><![CDATA[Exploits]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[Bugs]]></category>
		<category><![CDATA[Tor]]></category>
		<category><![CDATA[Tor Bugs]]></category>
		<category><![CDATA[Tor Project]]></category>
		<category><![CDATA[Tor Project Vulnerability]]></category>
		<category><![CDATA[Tor Vulnerabilities]]></category>
		<category><![CDATA[Tor Vulnerability]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://blog.insecure.in/?p=1121</guid>
		<description><![CDATA[Multiple vulnerabilities have been found in Tor, the most severe of which may allow a remote attacker to execute arbitrary code. Multiple vulnerabilities have been discovered in Tor: When configured as client or bridge, Tor uses the same TLS certificate chain for all outgoing connections (CVE-2011-2768). When configured as a bridge, Tor relays can distinguish [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.insecure.in/images/tor-logo.png" alt="Tor Logo" align="left" padding-right:6px;padding-bottom:5px; />Multiple vulnerabilities have been found in Tor, the most severe of which may allow a remote attacker to execute arbitrary code.</p>
<p>Multiple vulnerabilities have been discovered in Tor:</p>
<ul type="square">
<li>When configured as client or bridge, Tor uses the same TLS certificate chain for all outgoing connections (CVE-2011-2768).</li>
<li>When configured as a bridge, Tor relays can distinguish incoming bridge connections from client connections (CVE-2011-2769).</li>
<li>An error in or/buffers.c could result in a heap-based buffer overflow (CVE-2011-2778).</li>
</ul>
<p><strong>Impact:</strong><br />
A remote attacker could possibly execute arbitrary code or cause a Denial of Service. Furthermore, a remote relay the user is directly connected to may be able to disclose anonymous information about that user or enumerate bridges in the user&#8217;s connection.</p>
<p><strong>Vulnerable Versions:</strong><br />
< 0.2.2.35 </p>
<p><strong>Workaround:</strong><br />
There is no known workaround at this time.</p>
<p><strong>Resolution:</strong><br />
All Tor users should upgrade to the latest version:</p>
<blockquote><p> # emerge &#8211;sync<br />
  # emerge &#8211;ask &#8211;oneshot &#8211;verbose &#8220;>=net-misc/tor-0.2.2.35&#8243;</p></blockquote>
<p><strong>References:</strong><br />
– <a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2768" target="_blank">CVE-2011-2768</a><br />
– <a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2769" target="_blank">CVE-2011-2769</a><br />
– <a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2778" target="_blank">CVE-2011-2778</a></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/in_secure?d=TzevzKxY174" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/in_secure?i=2aux-5qQafY:UDo7bwG2n98:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/in_secure?d=l6gmwiTKsz0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:KwTdNBX3Jqk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=2aux-5qQafY:UDo7bwG2n98:KwTdNBX3Jqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/in_secure?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/in_secure?i=2aux-5qQafY:UDo7bwG2n98:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/in_secure?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/in_secure?i=2aux-5qQafY:UDo7bwG2n98:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/in_secure?a=2aux-5qQafY:UDo7bwG2n98:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/in_secure?i=2aux-5qQafY:UDo7bwG2n98:D7DqB2pKExk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/in_secure/~4/2aux-5qQafY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.insecure.in/?feed=rss2&amp;p=1121</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.insecure.in/?p=1121</feedburner:origLink></item>
	</channel>
</rss>

