<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: cult]]></title>
    <link>http://securityratty.com/tag/cult</link>
    <description></description>
    <pubDate>Thu, 21 Feb 2008 21:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Microsoft Fixes 8-year Old Design Flaw in SMB]]></title>
      <link>http://securityratty.com/article/a9e76f6b098eb908aafae4695f6fe6e9</link>
      <guid>http://securityratty.com/article/a9e76f6b098eb908aafae4695f6fe6e9</guid>
      <description><![CDATA[With regard to the recent Patch Tuesday fix, there has been an issue fixed regarding NTLM Relaying, that has been around for more than eight years
In 2000, I wrote an advisory about NTLM relaying (...]]></description>
      <content:encoded><![CDATA[<p>With regard to the recent Patch Tuesday fix, there has been an issue fixed regarding NTLM Relaying, that has been around for more than eight years. </p>
<p>In 2000, I wrote an <a href="http://packetstormsecurity.org/advisories/atstake/A091400-1">advisory</a> about NTLM relaying (<a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0834">CVE-2000-0834</a>). The problem turned out to be significantly larger than I originally suggested in the advisory. The attack extended to other NTLM-based authentications on other protocols and allowed general-purpose credential theft via a man-in-the-middle attack.</p>
<p>The <a href="http://en.wikipedia.org/wiki/SMBRelay">SMBRelay</a> tool was published in 2001 by Sir Dystic of Cult Of The Dead Cow, and that really took it to the next level. The protocol completely fell apart. It kicked off a number of other analyses of the NTLM protocol that finally resulted in this patch.  Eight years after it&#8217;s discovery.</p>
<p>At least they got around to it. Thanks!</p>
]]></content:encoded>
      <pubDate>Wed, 12 Nov 2008 18:11:12 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ntlm protocol">ntlm protocol</category>
      <category domain="http://securityratty.com/tag/ntlm">ntlm</category>
      <category domain="http://securityratty.com/tag/general-purpose credential theft">general-purpose credential theft</category>
      <category domain="http://securityratty.com/tag/issue fixed">issue fixed</category>
      <category domain="http://securityratty.com/tag/significantly larger">significantly larger</category>
      <category domain="http://securityratty.com/tag/attack">attack</category>
      <category domain="http://securityratty.com/tag/dead cow">dead cow</category>
      <category domain="http://securityratty.com/tag/sir dystic">sir dystic</category>
      <category domain="http://securityratty.com/tag/smbrelay tool">smbrelay tool</category>
      <source url="http://www.veracode.com/blog/2008/11/microsoft-fixes-8-year-old-design-flaw-in-smb/">Microsoft Fixes 8-year Old Design Flaw in SMB</source>
    </item>
    <item>
      <title><![CDATA[Opera Browser Integrates Malware Protection]]></title>
      <link>http://securityratty.com/article/ee1c35e6ac591be9f90a77c56f737b50</link>
      <guid>http://securityratty.com/article/ee1c35e6ac591be9f90a77c56f737b50</guid>
      <description><![CDATA[Opera, arguably one of the fastest rendering browsers available, is stepping up on security. With their version 9.5 release they are adding in malware protection courtesy of a deal that was struck...]]></description>
      <content:encoded><![CDATA[<p>Opera, arguably one of the fastest rendering browsers available, is stepping up on security. With their version 9.5 release they are adding in malware protection courtesy of a deal that was struck with Haute Secure. </p>
<p>From Tech Crunch:</p>
<blockquote><p>Haute Secure makes software that aggressively monitors and alerts users to malware sites. Besides the version that is being integrated into Opera, Haute is also available as a free plugin for Internet Explorer and Firefox. It differentiates itself from other blocking software by analyzing sites on the link level instead of at the domain level. This means that on very large sites like MySpace that contain a combination of legitimate material along with more sinister profiles, pages will be blocked on a case by case basis instead of simply banning the entire MySpace site.</p>
<p>Opera, while not nearly as popular as Internet Explorer or Firefox, has managed to gain something of a cult following since its original launch in 1996.</p></blockquote>
<p>Nice upgrade for the little browser that <strike>could</strike> can. If you haven&#8217;t tried it give Opera a test drive. I use it as one of my 3 regular browsers. </p>
<p><a href="http://www.techcrunch.com/2008/06/06/opera-browser-integrates-haute-secure-to-block-malware/">Article Link</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=ccqVjI"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=ccqVjI" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=umS4NI"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=umS4NI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=bFYYri"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=bFYYri" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=q56kqi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=q56kqi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=NK0hGi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=NK0hGi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=kjqY5i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=kjqY5i" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/307382453" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sun, 08 Jun 2008 10:27:05 +0000</pubDate>
      <category domain="http://securityratty.com/tag/opera">opera</category>
      <category domain="http://securityratty.com/tag/haute secure">haute secure</category>
      <category domain="http://securityratty.com/tag/haute">haute</category>
      <category domain="http://securityratty.com/tag/malware sites">malware sites</category>
      <category domain="http://securityratty.com/tag/internet explorer">internet explorer</category>
      <category domain="http://securityratty.com/tag/sites">sites</category>
      <category domain="http://securityratty.com/tag/myspace">myspace</category>
      <category domain="http://securityratty.com/tag/entire myspace site">entire myspace site</category>
      <category domain="http://securityratty.com/tag/malware protection courtesy">malware protection courtesy</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/307382453/">Opera Browser Integrates Malware Protection</source>
    </item>
    <item>
      <title><![CDATA[Google Vulnerability Scanner]]></title>
      <link>http://securityratty.com/article/a29e047c915f86ee6280138ac6e6f29a</link>
      <guid>http://securityratty.com/article/a29e047c915f86ee6280138ac6e6f29a</guid>
      <description><![CDATA[We've all known for years that you can use Google to scan for vulnerabilities. Well, now the process has been automated
Presenting: Goolag Scanner from the Cult of the Dead Cow
I've seen a lot of...]]></description>
      <content:encoded><![CDATA[<p>We've all known for years that you can use Google to scan for vulnerabilities.  Well, now the process <a href="http://www.eweek.com/index2.php?option=content&task=view&id=46520&pop=1&hide_ads=1&page=0&hide_js=1">has been</a> <a href="http://www.networkworld.com/news/2008/022208-hackers-turn-google-into-vulnerability.html">automated</a>.</p>

<p>Presenting: <a href="http://www.goolag.org/">Goolag Scanner</a> from the Cult of the Dead Cow.</p>

<p>I've seen a lot of pre-release scanning results from these guys, and it's pretty amazing what they've found.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=umElVkF"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=umElVkF" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=uZr5CzF"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=uZr5CzF" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Tue, 04 Mar 2008 09:12:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/google">google</category>
      <category domain="http://securityratty.com/tag/dead cow">dead cow</category>
      <category domain="http://securityratty.com/tag/goolag scanner">goolag scanner</category>
      <category domain="http://securityratty.com/tag/lot">lot</category>
      <category domain="http://securityratty.com/tag/process">process</category>
      <category domain="http://securityratty.com/tag/cult">cult</category>
      <category domain="http://securityratty.com/tag/pretty">pretty</category>
      <category domain="http://securityratty.com/tag/scan">scan</category>
      <category domain="http://securityratty.com/tag/vulnerabilities">vulnerabilities</category>
      <source url="http://www.schneier.com/blog/archives/2008/03/google_vulnerab.html">Google Vulnerability Scanner</source>
    </item>
    <item>
      <title><![CDATA[Hacker group releases automated 'Google hacking' tool]]></title>
      <link>http://securityratty.com/article/d0d2d9149f756b459909b38e5d3a740b</link>
      <guid>http://securityratty.com/article/d0d2d9149f756b459909b38e5d3a740b</guid>
      <description><![CDATA[The Cult of the Dead Cow hacker group has released an open-source tool that can use a collection of specially crafted Google search terms to scan Web sites for security...]]></description>
      <content:encoded><![CDATA[The Cult of the Dead Cow hacker group has released an open-source tool that can use a collection of specially crafted Google search terms to scan Web sites for security vulnerabilities.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=bdBE1i"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=bdBE1i" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/239617048" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 22 Feb 2008 11:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/dead cow hacker">dead cow hacker</category>
      <category domain="http://securityratty.com/tag/scan web sites">scan web sites</category>
      <category domain="http://securityratty.com/tag/google">google</category>
      <category domain="http://securityratty.com/tag/security vulnerabilities">security vulnerabilities</category>
      <category domain="http://securityratty.com/tag/open-source tool">open-source tool</category>
      <category domain="http://securityratty.com/tag/terms">terms</category>
      <category domain="http://securityratty.com/tag/collection">collection</category>
      <category domain="http://securityratty.com/tag/cult">cult</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/239617048/article.do">Hacker group releases automated 'Google hacking' tool</source>
    </item>
    <item>
      <title><![CDATA[Hackers turn Google into vulnerability scanner]]></title>
      <link>http://securityratty.com/article/c18d060922af58603d0538b0d437195f</link>
      <guid>http://securityratty.com/article/c18d060922af58603d0538b0d437195f</guid>
      <description><![CDATA[The hacking group Cult of the Dead Cow (CDC) this week released a tool that turns Google into an automated vulnerability scanner, scouring Web sites for sensitive information such as passwords or...]]></description>
      <content:encoded><![CDATA[The hacking group Cult of the Dead Cow (CDC) this week released a tool that turns Google into an automated vulnerability scanner, scouring Web sites for sensitive information such as passwords or server vulnerabilities.
			
			<div style="margin-top:20" />
			<table border="1" BORDERCOLOR="#0033CC" cellspacing="0" cellpadding="2">
				<tr valign="top" align="left">
					<td>
						<table border="0" cellspacing="3" cellpadding="2" width="100%">
			
			
		  
		<tr> 
		<tr>
      <td width="*">
				<font face="Arial,Helvetica,Geneva,Sans-serif,sans-serif" size="-1">
				<p>	
			
			<a href="http://rsslinks.industrybrains.com/click?sid=93&scid=10069&rqctid=589&lid=481288&cid=134860&pr=2&tstamp=20080222000000&url=http://clk.atdmt.com/7X1/go/ndstrpkt00100000017x1/direct/01/" target=_blank><strong>Hear the latest on WAN application performance</strong></a></p>
				<td align="right">
					<font face="Arial,Helvetica,Geneva,Sans-serif,sans-serif" COLOR="#0033CC" size="-1"><p>Advertisement</p></font>
				</td>
				</tr>
				<tr><td colspan="2"><font face="Arial,Helvetica,Geneva,Sans-serif,sans-serif" size="-1"><p>Give us 5 minutes to show how we can address your toughest challenges & Get $25 Coffee Gift Card!
			
				</p>
				</font>
		 	</td>
     </tr>
		 
		 
			
						</table>
					</td>
				</tr>
			</table>
			<div style="margin-top:20" />
			
			]]></content:encoded>
      <pubDate>Thu, 21 Feb 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/vulnerability scanner">vulnerability scanner</category>
      <category domain="http://securityratty.com/tag/wan application performance">wan application performance</category>
      <category domain="http://securityratty.com/tag/coffee gift card">coffee gift card</category>
      <category domain="http://securityratty.com/tag/google">google</category>
      <category domain="http://securityratty.com/tag/web sites">web sites</category>
      <category domain="http://securityratty.com/tag/dead cow">dead cow</category>
      <category domain="http://securityratty.com/tag/sensitive information">sensitive information</category>
      <category domain="http://securityratty.com/tag/server vulnerabilities">server vulnerabilities</category>
      <category domain="http://securityratty.com/tag/advertisement">advertisement</category>
      <source url="http://www.networkworld.com/news/2008/022208-hackers-turn-google-into-vulnerability.html?fsrc=rss-security">Hackers turn Google into vulnerability scanner</source>
    </item>
    <item>
      <title><![CDATA[Goolag makes Google Hacking a snap]]></title>
      <link>http://securityratty.com/article/95ea8f1ad81ca35293b784867fc5689c</link>
      <guid>http://securityratty.com/article/95ea8f1ad81ca35293b784867fc5689c</guid>
      <description><![CDATA[The hacking group Cult of the Dead Cow has released a tool that should make Google hacking a little easier for...]]></description>
      <content:encoded><![CDATA[The hacking group Cult of the Dead Cow has released a tool that should make Google hacking a little easier for novices.]]></content:encoded>
      <pubDate>Thu, 21 Feb 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/google">google</category>
      <category domain="http://securityratty.com/tag/dead cow">dead cow</category>
      <category domain="http://securityratty.com/tag/novices">novices</category>
      <category domain="http://securityratty.com/tag/cult">cult</category>
      <category domain="http://securityratty.com/tag/easier">easier</category>
      <category domain="http://securityratty.com/tag/tool">tool</category>
      <source url="http://www.networkworld.com/news/2008/022208-goolag-makes-google-hacking-a.html?fsrc=rss-security">Goolag makes Google Hacking a snap</source>
    </item>
  </channel>
</rss>
