<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: ebooks]]></title>
    <link>http://securityratty.com/tag/ebooks</link>
    <description></description>
    <pubDate>Sat, 15 Dec 2007 06:08:23 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Happy Birthday Freebies from the Belgian Security Network]]></title>
      <link>http://securityratty.com/article/1dfeb29bc5fb0feaa65ec9ba9a9e5370</link>
      <guid>http://securityratty.com/article/1dfeb29bc5fb0feaa65ec9ba9a9e5370</guid>
      <description><![CDATA[Happy birthday Belsec
It looks like the Belgian Security bloggers network is just a year old, and in celebration, its bloggers are providing links to free stuff online check out the following
60+...]]></description>
      <content:encoded><![CDATA[<p>Happy birthday Belsec!</p>
<p>It looks like the Belgian Security bloggers&#8217; network is just a year old, and in celebration, its bloggers are providing links to free stuff online &#8212; check out the following:</p>
<p><a rel="nofollow" target="_blank" href="http://belsec.skynetblogs.be/post/6430422/complete-freeware-60-links-here-windows-">60+ freeware programs</a></p>
<p><a rel="nofollow" target="_blank" href="http://belsec.skynetblogs.be/post/6430369/scribd-600-more-ebooks-to-download-">Hundreds of eBooks</a></p>
<p><a rel="nofollow" target="_blank" href="http://belsec.skynetblogs.be/tag/1/belsecbirthday">Fun videos and other stuff</a></p>]]></content:encoded>
      <pubDate>Thu, 13 Nov 2008 09:45:24 +0000</pubDate>
      <category domain="http://securityratty.com/tag/happy birthday belsec">happy birthday belsec</category>
      <category domain="http://securityratty.com/tag/fun videos">fun videos</category>
      <category domain="http://securityratty.com/tag/freeware programs">freeware programs</category>
      <category domain="http://securityratty.com/tag/hundreds">hundreds</category>
      <category domain="http://securityratty.com/tag/celebration">celebration</category>
      <category domain="http://securityratty.com/tag/stuff">stuff</category>
      <category domain="http://securityratty.com/tag/bloggers">bloggers</category>
      <category domain="http://securityratty.com/tag/ebooks">ebooks</category>
      <category domain="http://securityratty.com/tag/links">links</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/452194583/">Happy Birthday Freebies from the Belgian Security Network</source>
    </item>
    <item>
      <title><![CDATA[Summarizing June's Threatscape]]></title>
      <link>http://securityratty.com/article/520325188c71fdacd3f86834feb1cdc5</link>
      <guid>http://securityratty.com/article/520325188c71fdacd3f86834feb1cdc5</guid>
      <description><![CDATA[June's threatscape that I'll summarize in this post based on all the research conducted during the month, was a very vibrant one. With the return of GPcode, a remotely exploitable flaw in the Zeus...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"><a href="http://bp3.blogger.com/_wICHhTiQmrA/SGoHvxfg0WI/AAAAAAAAB3M/6CMFS1Q1zGQ/s1600-h/ddanchev.jpg" imageanchor="1" style="clear: left; border-right: 0pt; border-top: 0pt; float: left; margin-bottom: 1em; border-left: 0pt; margin-right: 1em; border-bottom: 0pt; background-color: transparent;"><img src="http://bp3.blogger.com/_wICHhTiQmrA/SGoHvxfg0WI/AAAAAAAAB3M/WskmE9LDFvE/s200-R/ddanchev.jpg" style="border-right: 0pt; border-top: 0pt; border-left: 0pt; border-bottom: 0pt;" /></a>June's threatscape that I'll summarize in this post based on all the research conducted during the month, was a very vibrant one. With the return of GPcode, a remotely exploitable flaw in the Zeus crimeware kit allowing both, researchers and malicious parties to assess the severity of a particular banker malware campaign, the increasing use of malicious doorways next to ICANN and IANA's DNS hijacking, all speak for themselves and how diverse the threats and, of course, the abilities to maintain a decent situatiational awareness about what's going on have become.</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>01.</b>&nbsp; <a href="http://ddanchev.blogspot.com/2008/06/uks-crime-reduction-portal-hosting.html">U.K's Crime Reduction Portal Hosting Phishing Pages</a> - nothing new here since vulnerable sites are to be "remotely file included" and SQL injected to locally host anything on behalf of a malicious party. Risk and responsibility forwarding is one thing, but having a crime reduction portal hosting phishing pages is entirely another. The phishing pages was shut down in less than 12 hours upon notification</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>02.</b> <a href="http://ddanchev.blogspot.com/2008/06/price-discrimination-in-market-for.html">Price Discrimination in the Market for Stolen Credit Cards</a> - Tracking down "yet another stolen credit cards for sale" service in the wild, the price discremination that they applied greatly reflects the current lack of transpararency for a potential buyer of stolen credit cards, and how higher profit margins are driving the entire business model. With script kiddies running their own botnets and undermining the sophisticated botnet master's high profit margin business model by undercutting their prices, stolen credit cards are not what they used to be - an exclussive good. Nowadays, they are a commodity good and often a bargain</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>03.</b> <a href="http://ddanchev.blogspot.com/2008/06/blackhat-seo-redirects-to-malware-and.html">Blackhat SEO Redirects to Malware and Rogue Software</a> - Sampling an active blackhat SEO campaign out of the hundreds of thousands currently active online, releaved a large portfolio of domains serving Zlob variants by pitching them as fake codecs that the end user should download if they are to view the non existent adult content at the sites. Where's the OSINT mean? It's in the fact that the codecs and the fake security software phone back to UkrTeleGroup Ltd's network</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>04.</b> <a href="http://ddanchev.blogspot.com/2008/06/using-market-forces-to-disrupt-botnets.html">Using Market Forces to Disrupt Botnets</a> - With the current oversupply of malware infected hosts, and botnet masters embracing the services model for anything malicious, in this post I discussed the radical security approach of puchasing already infected malware hosts on a per country basis, disinfecting them and forcing them to update all the software on the infected PCs. Of course, on an opt-in basis. The possibility to directly provide incentives for botnet hunters to shut down whatever they come across to on a daily basis, and that's a lot of botnets, is also there</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>05.</b> <a href="http://ddanchev.blogspot.com/2008/06/whos-behind-gpcode-ransomware.html">Who's Behind the GPcode Ransomware?</a> - The title speaks for itself, the research with enough actionable intelligence gathered in the shortest timeframe possible is already proving accurate and highly valuable. How come? Stay tuned for more developments</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>06.</b> <a href="http://ddanchev.blogspot.com/2008/06/imageshack-typosquatted-to-serve.html">ImageShack Typosquatted to Serve Malware</a> - In a rare instance of a creative attack combining typosquatting in order to impersonate ImageShack and serve malware by redirecting users to an image file that is actually forwarding to the binary, I was recently tipped by the folks at TrendMicro who are also following this that the site is up and running again. Not for long</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>07.</b> <a href="http://ddanchev.blogspot.com/2008/06/fake-youtube-site-serving-flash.html">Fake YouTube Site Serving Flash Exploits</a> - Next to using the usual set of exploits courtesy of a commodity web malware exploitation kit, this campaign was also using flash exploits. Even more interesting is the fact that the password stealer obtained was attempting to phone back to a misconfigured malware command and control interface, basically allowing you to assess the campaign from the eyes of the "campaigner"</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>08.</b> <a href="http://ddanchev.blogspot.com/2008/06/monetizing-web-site-defacements.html">Monetizing Web Site Defacements</a> - Web site defacements are getting monetized just like SQL injections are in order to locally host a blackhat search engine optimization campaign on a vulnerable site with a high page rank. In this post I've assessed such monetization courtesy of a web site defacer at The Africa Middle Market Fund</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>09.</b> <a href="http://ddanchev.blogspot.com/2008/06/malicious-doorways-redirecting-to.html">Malicious Doorways Redirecting to Malware</a> - Yet another large domains portfolio exposed though a malicious doorway redirecting to fake porn and video sites serving Zlob variants, tracking down the initial spamming of the malicious doorways across multiple vulnerable forums and guestbooks </div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>10.</b> <a href="http://ddanchev.blogspot.com/2008/06/zeus-crimeware-kit-vulnerable-to.html">The Zeus Crimeware Kit Vulnerable to Remotely Exploitable Flaw</a> - When cyber criminals get advised to patch their vulnerable versons of the Zeus Crimeware Kit, you know there's a monoculture in the crimeware market. This flaw released publicly in May, 2008, not just allows others to hijack someone's ebanking botnet, but also, vendors and researchers to better assess a vulnerable Zeus command and control location</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>11.</b> <a href="http://ddanchev.blogspot.com/2008/06/fake-celebrity-video-sites-serving.html">Fake Celebrity Video Sites Serving Malware</a> - When templates for fake video and adult sites are just as available as they are now, anyone can take advantage of this cheap social engineering track that seems to work just fine. Compared to relying on blackhat search optimization to acquire traffic, some of the campaigns were SQL injected at vulnerable sites in order to drive traffic to them, next to several other tactics which when combined can result in a lot of people unknowingly visiting the sites </div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>12.</b> <a href="http://ddanchev.blogspot.com/2008/06/phishing-campaign-spreading-across.html">Phishing Campaign Spreading Across Facebook</a> - An internal phishing campaign was circulating across Facebook, which got taken care of thanks to coordinated efforts with Facebook's security folks. There's also an indicating tha they are currently typosquatting other social networking sites like Hi5 for instance</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>13.</b> <a href="http://ddanchev.blogspot.com/2008/06/underground-multitasking-in-action.html">Underground Multitasking in Action</a> - As a firm believed in taking a random sample for a particular threat segment, this was once of these cases confirming the confidence I've built into anticipating upcoming tactics and strategies to be used </div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<div style="text-align: left;"><b>14.</b> <a href="http://ddanchev.blogspot.com/2008/06/update-to-photobuckets-dns-hijacking.html">An Update to Photobucket's DNS Hijacking</a> - Despite that Photobucket didn't oficially acknowledge the DNS hijacking, the hosting provider the NetDevilz hacking team used issued a statement. Ironically, the Turkish hacking group used the same provider weeks later to redirect ICANN and IANA's domains to Atspace.com</div>
<div style="text-align: left;"><b>15.</b> <a href="http://ddanchev.blogspot.com/2008/06/fake-porn-sites-serving-malware.html">Fake Porn Sites Serving Malware</a> - Among the largest domains portfolio of malware serving porn sites I've exposed in a while, all of them naturally remain active since they are hosted on a partition of RBN's diverse network. Visualizing a malicious doorway or the entire ecosystem provides a better understanding at how structured the ecosystems are</div>
<div style="text-align: left;"></div>
<div style="text-align: left;"></div>
<b>16.</b> <a href="http://ddanchev.blogspot.com/2008/06/backdoording-cyber-jihadist-ebooks-for.html">Backdoording Cyber Jihadist Ebooks for Surveillance Purposes</a> - Despite that in this case we have a cyber jihadist backdoording his own released books, the international intelligence community next to law enforcement are known to have expressed interest in backdooring suspect's PCs, so why not SQL inject the cyber jihadist forums themselves?<br />
<b>17.</b> <a href="http://ddanchev.blogspot.com/2008/06/right-wing-israeli-hackers-deface.html">Right Wing Israeli Hackers Deface Hamas's Site</a> - When you read that Hamas's site is hacked, you ask yourself the following, do they even have a web site that's up the running? The answer to which would be the fact that even Hezbollah has been maintaining an Internet infrastructure since 1998 <br />
<b>18.</b> <a href="http://ddanchev.blogspot.com/2008/06/icann-and-ianas-domain-names-hijacked.html">ICANN and IANA's Domain Names Hijacked by the NetDevilz Hacking Group</a> - A fact is a fact, no comment here, go through all the technical details of the hijacking, including some actionable intelligence on who's behind the hijacking<br />
<b>19.</b> <a href="http://ddanchev.blogspot.com/2008/06/malicious-isps-you-rarely-see-in-any.html">The Malicious ISPs You Rarely See in Any Report</a> - Who's tolerating malicious activities on their network, and how is the RBN related to all this? Well, when combined, the tiny parts of these ISPs represent a tiny part of the Russian Business Network itself<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=Arx0SJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=Arx0SJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=5olcEJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=5olcEJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=a2BAsj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=a2BAsj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=H5lz4j"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=H5lz4j" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=MYqzVJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=MYqzVJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=1PoM3J"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=1PoM3J" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=d9Ilyj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=d9Ilyj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/323996877" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 01 Jul 2008 03:05:01 +0000</pubDate>
      <category domain="http://securityratty.com/tag/site">site</category>
      <category domain="http://securityratty.com/tag/fake youtube site">fake youtube site</category>
      <category domain="http://securityratty.com/tag/web site defacements">web site defacements</category>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/malware hosts">malware hosts</category>
      <category domain="http://securityratty.com/tag/web site defacer">web site defacer</category>
      <category domain="http://securityratty.com/tag/sites">sites</category>
      <category domain="http://securityratty.com/tag/vulnerable sites">vulnerable sites</category>
      <category domain="http://securityratty.com/tag/malicious">malicious</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/323996877/summarizing-junes-threatscape.html">Summarizing June's Threatscape</source>
    </item>
    <item>
      <title><![CDATA[Backdoording Cyber Jihadist Ebooks for Surveillance Purposes]]></title>
      <link>http://securityratty.com/article/aeea8b0a7f192cc968531f573ed672a4</link>
      <guid>http://securityratty.com/article/aeea8b0a7f192cc968531f573ed672a4</guid>
      <description><![CDATA[It appears that cyber jihadists are striking back at the academic and intelligence community, by binding their propaganda Ebooks with malware, then distributing them across different forums, thanks to...]]></description>
      <content:encoded><![CDATA[<a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp0.blogger.com/_wICHhTiQmrA/SGK0uoJSocI/AAAAAAAAB2U/xrKTEEsEaac/s1600-h/Al-Qaeda_ebook_malware.png"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp0.blogger.com/_wICHhTiQmrA/SGK0uoJSocI/AAAAAAAAB2U/xrKTEEsEaac/s200/Al-Qaeda_ebook_malware.png" alt="" id="BLOGGER_PHOTO_ID_5215930031591825858" border="0" /></a>It appears that cyber jihadists are striking back at the academic and intelligence community, by binding their propaganda Ebooks with malware, then distributing them across different forums, thanks to a recently analyzed Ebook entitled "<span style="font-style: italic;">The Al-Qaeda network's timely entrance in Palestine</span>" distributed by the Global Islamic Media Front - hat tip to <a href="http://warintel.blogspot.com">Warintel</a>.<br /><br />If it were posted by a newly joined forum member, it would have logically raises the suspicion that it's in fact intelligence agencies spreading malware infected Ebooks around cyber jihadist forums, but it's since this one in particular is being distributed by what looks like a hardcore cyber jihadist, it brings the discussion to a whole new level.<br /><br />What are they trying to achive? Abuse the already established trust of their readers and cyber jihadist supporters in order to snoop on their Internet activities, or it's the academic and intelligence community they are trying to monitor? In times when botnets can be rented and created on demand, they seem to be more interested in infecting their enemies. Moreover, I suspect that prior to the forum posting, private messages and emails were automatically sent to notify members whose number of posts at the forum greate outpace those of average observers, perhaps the target in such an attack.<br /><br />The malware is detected by 9 out of 33 antivirus scanners as <span style="font-weight: bold;">Trojan.Midgare.gra</span>. Consider reading a previous post on "<a href="http://ddanchev.blogspot.com/2008/03/terror-on-internet-conflict-of-interest.html">Terror on the Internet - Conflict of Interest</a>" as well as through the related posts summarizing all the cyber jihadist research I've conducted so far.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=aALb5I"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=aALb5I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=KKgA4I"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=KKgA4I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=IAOaCi"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=IAOaCi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=i3gCMi"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=i3gCMi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=vaz7SI"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=vaz7SI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=k38EzI"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=k38EzI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=ceZ6Vi"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=ceZ6Vi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/320030748" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 25 Jun 2008 13:06:38 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ebooks">ebooks</category>
      <category domain="http://securityratty.com/tag/intelligence community">intelligence community</category>
      <category domain="http://securityratty.com/tag/cyber jihadist forums">cyber jihadist forums</category>
      <category domain="http://securityratty.com/tag/forums">forums</category>
      <category domain="http://securityratty.com/tag/cyber jihadist research">cyber jihadist research</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/hardcore cyber jihadist">hardcore cyber jihadist</category>
      <category domain="http://securityratty.com/tag/forum">forum</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/320030748/backdoording-cyber-jihadist-ebooks-for.html">Backdoording Cyber Jihadist Ebooks for Surveillance Purposes</source>
    </item>
    <item>
      <title><![CDATA[Combating Unrestricted Warfare]]></title>
      <link>http://securityratty.com/article/419887eeeb4122e5f09f9278c24e0444</link>
      <guid>http://securityratty.com/article/419887eeeb4122e5f09f9278c24e0444</guid>
      <description><![CDATA[It's February, 1999, and two senior colonels from China's PLA, namely Qiao Liang and Wang Xiangsui depressed the world's military thinkers by coming up with a study on the future developments and...]]></description>
      <content:encoded><![CDATA[<a href="http://bp0.blogger.com/_wICHhTiQmrA/R2BcsaehX3I/AAAAAAAABPQ/wDVNwyWr2tY/s1600-h/Unconditional_warfare_PLA.jpg"><img id="BLOGGER_PHOTO_ID_5143212692548444018" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://bp0.blogger.com/_wICHhTiQmrA/R2BcsaehX3I/AAAAAAAABPQ/wDVNwyWr2tY/s200/Unconditional_warfare_PLA.jpg" border="0" /></a>It's February, 1999, and two senior colonels from China's PLA, namely Qiao Liang and Wang Xiangsui depressed the world's military thinkers by coming up with a study on the future developments and potential of asymmetric warfare in a surprising move next to the overall discussion always orbiting around <a href="http://ddanchev.blogspot.com/2006/02/who-needs-nuclear-weapons-anymore.html">symmetric warfare</a>. The study itself entitled "<a href="http://www.terrorism.com/documents/TRC-Analysis/unrestricted.pdf">Unconventional Warfare</a>" is an ugly combination of Sun Tzu's 3D perspective on warfare in combination with guerilla approaches to achieve one of Sun Tzu's most insightful quotes - "<em>One hundred victories in one hundred battles is not the most skillful. Seizing the enemy without fighting is the most skillful.</em>" Here's a <a href="http://www.fas.org/nuke/guide/china/doctrine/unresw1.htm">summary of the study</a> :<br /><br /><div><div><div>"<em>Two senior PLA Air Force colonels wrote "Unrestricted Warfare", presented here in summary translation, to explore how technology innovation is setting off a revolution in military tactics, strategy and organization. "Unrestricted Warfare" discusses new types of warfare which may be conducted by civilians as well as by soldiers including computer hacker attacks, trade wars and finance wars.</em>"</div><br /><div>During the years, and especially since 9/11, the tipping point acting as the wake up call that asymmetric warfare is also getting embraced by the bad guys, many other niche research papers were published in the context of information warfare and cyber warfare such as :</div><br /><div><a class="l" onmousedown="return clk(this.href,'','','res','32','&amp;sig2=TZgnHqsm3WrHpWNNzN0G4A')" href="http://www.strategicstudiesinstitute.army.mil/pdffiles/PUB62.pdf">Chinese Information Warfare: A Phantom Menace or Emerging Threat?</a></div><div><a class="l" onmousedown="return clk('http://www.indiana.edu/~tisj/readers/full-text/15-4%20cronin.pdf','','','res','5','&amp;sig2=MkWQCOKoRk7CjJ7p9Lop1Q')" href="http://www.indiana.edu/~tisj/readers/full-text/15-4%20cronin.pdf">Information Warfare: Its Application in Military and Civilian Contexts</a></div><div><a class="l" onmousedown="return clk(this.href,'','','res','6','&amp;sig2=Gl9cL9huPo73gyRudyudkA')" href="http://www.iwar.org.uk/iwar/resources/usaf/maxwell/students/2001/01-003.pdf">The Spectrum of Cyber Conflict From Hacking to Information Warfare</a></div><div><a class="l" onmousedown="return clk(this.href,'','','res','5','&amp;sig2=lBYJ4frOob352lXQxUX6mQ')" href="http://www.au.af.mil/au/awc/awcgate/acsc/02-053.pdf">Globalization and Asymmetrical Warfare</a></div><div><a href="http://ddanchev.blogspot.com/2006/05/whos-who-in-cyber-warfare.html">Cyber Warfare: An Analysis of the Means and Motivations of Selected Nation States</a><br /><br /><a href="http://bp2.blogger.com/_wICHhTiQmrA/R2Blr6ehX4I/AAAAAAAABPY/nfY8zsv9Zm4/s1600-h/unrestricted_warfare.jpg"><img id="BLOGGER_PHOTO_ID_5143222579563159426" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://bp2.blogger.com/_wICHhTiQmrA/R2Blr6ehX4I/AAAAAAAABPY/nfY8zsv9Zm4/s200/unrestricted_warfare.jpg" border="0" /></a>Each of these is a visionary reading by itself, but perhaps it was the need for setting a new milestone into such warfare thinking that prompted the public release of the <a href="http://www.jhuapl.edu/urw_symposium/pages/Proceedings/2006_URW_Book_Full.pdf">Unrestricted Warfare Symposium Proceedings Book</a> in <a href="http://www.jhuapl.edu/urw_symposium/pages/proceedings2006.htm">2006</a> and in 2007. An excerpt from the introduction of the 2006 edition :</div><br /><div>"<em>To compensate for their weaker military forces, these actors will employ a multitude of means, both military and nonmilitary, to strike out during times of conflict. The first rule of unrestricted warfare is that there are no rules; no measure is forbidden. It involves multidimensional, asymmetric attacks on almost every aspect of the adversary’s social, economic, and political life. Unrestricted warfare employs surprise and deception and uses both civilian technology and military weapons to break the opponent’s will.</em>"</div><br /><div><a href="http://bp0.blogger.com/_wICHhTiQmrA/R2BrjaehX5I/AAAAAAAABPg/g8qALl58MrI/s1600-h/Book_Cov.jpg"><img id="BLOGGER_PHOTO_ID_5143229030604038034" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://bp0.blogger.com/_wICHhTiQmrA/R2BrjaehX5I/AAAAAAAABPg/g8qALl58MrI/s200/Book_Cov.jpg" border="0" /></a>Moreover, <a href="http://www.jhuapl.edu/urw_symposium/pages/proceedings2007.htm">the 2007</a> edition is <a href="http://www.jhuapl.edu/urw_symposium/pages/proceedings/2007/chapters/URW%202007%20Book.pdf">covering in-depth</a> such popular asymmetric threats posed by jihadists (pages 135/143) debunking the use of WMD as a priority, and the cyber dimension (pages 251/297) with some remarkable analogies post Cold-War strategies applied to modern digital threats :<br /></div><br /><div>"<em>Technology alone is never going to solve the IA problem. We have no informed national defensive strategy in this area. The situation is starting to change and improve, in large part because visionaries like General Cartwright are in key slots. But we do not have a lot of time. The intelligence community is not sufficiently engaged in conducting, analyzing, and reporting those issues. During the Cold War, we analyzed Soviet capabilities exhaustively. We did everything possible to understand our adversary and manage that gap. We need to do the same thing today. The bottom line is that it is dangerous to underestimate the capabilities of our adversaries. They do whatever it takes to win. Good adversaries know our strengths and weaknesses. They develop surprising partners that sometimes do not even know they are partners—they will give someone an honorarium to talk at a conference and ask that person for information on associates. They play by a different set of rules. They see offense as a systems problem, while our defense is fragmented.</em>"</div></div><br /><div></div><a href="http://bp0.blogger.com/_wICHhTiQmrA/R2BybaehX6I/AAAAAAAABPo/59i39aGCLjY/s1600-h/victory_in_cyberspace"><img id="BLOGGER_PHOTO_ID_5143236589746479010" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://bp0.blogger.com/_wICHhTiQmrA/R2BybaehX6I/AAAAAAAABPo/59i39aGCLjY/s200/victory_in_cyberspace" border="0" /></a>All of these reports and Ebooks are highly recomended bedtime reading, and so is the last but not least one, namely "<a href="http://www.afa.org/media/reports/victorycyberspace.pdf">Victory in Cyberspace</a>" released October, 2007. Besides generalizing cyberspace war activities, it includes a comprehensive summary of the events that took place in Estonia during the DDoS attacks.<br /><br /><div></div><div><div><strong>Related posts:</strong></div><div><a href="http://ddanchev.blogspot.com/2007/10/peoples-information-warfare-concept.html">People's Information Warfare Concept</a></div><div><a href="http://ddanchev.blogspot.com/2007/09/chinas-cyber-espionage-ambitions.html">China's Cyber Espionage Ambitions</a></div><div><a href="http://ddanchev.blogspot.com/2006/07/north-koreas-cyber-warfare-unit-121.html">North Korea's Cyber Warfare Unit 121</a></div><div><a href="http://ddanchev.blogspot.com/2006/09/chinese-hackers-attacking-us.html">Chinese Hackers Attacking U.S Department of Defense Networks</a></div><div><a href="http://ddanchev.blogspot.com/2007/11/electronic-jihad-v30-what-cyber-jihad.html">Electronic Jihad v3.0 - What Cyber Jihad Isn't</a></div><div><a href="http://ddanchev.blogspot.com/2007/11/electronic-jihads-targets-list.html">Electronic Jihad's Targets List</a></div><div><a href="http://ddanchev.blogspot.com/2007/11/teaching-cyber-jihadists-how-to-hack.html">Teaching Cyber Jihadists How to Hack</a></div><div><a href="http://ddanchev.blogspot.com/2007/10/empowering-script-kiddies.html">Empowering the Script Kiddies</a></div><div><a href="http://ddanchev.blogspot.com/2007/04/osint-through-botnets.html">OSINT Through Botnets</a></div><div><a href="http://ddanchev.blogspot.com/2007/05/corporate-espionage-through-botnets.html">Corporate Espionage Through Botnets</a></div><div><a href="http://ddanchev.blogspot.com/2007/11/overperforming-turkish-hacktivists.html">Overperforming Turkish Hacktivists</a></div><div><a href="http://ddanchev.blogspot.com/2006/07/hacktivism-tensions-israel-vs.html">Hacktivism Tensions - Israel vs Palestine Cyberwars</a></div><div><a href="http://ddanchev.blogspot.com/2006/05/current-emerging-and-future-state-of.html">The Current, Emerging, and Future State of Hacktivism</a></div><div><a href="http://ddanchev.blogspot.com/2006/09/internet-psyops-psychological.html">Internet PSYOPS - Psychological Operations</a></div><div><a href="http://ddanchev.blogspot.com/2007/05/ddos-on-demand-vs-ddos-extortion.html">DDoS on Demand VS DDoS Extortion</a></div><div><a href="http://ddanchev.blogspot.com/2006/09/biggest-military-hacks-of-all-time.html">The Biggest Military Hacks of All Time</a></div></div></div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=7TzHNfC"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=7TzHNfC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=X0jMdAC"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=X0jMdAC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=qXU7Rnc"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=qXU7Rnc" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=ZEufBmc"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=ZEufBmc" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=81bBPqC"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=81bBPqC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=dQtwflC"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=dQtwflC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=kD0ea2c"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=kD0ea2c" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/199469513" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sat, 15 Dec 2007 06:08:23 +0000</pubDate>
      <category domain="http://securityratty.com/tag/chinese information warfare">chinese information warfare</category>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/information warfare">information warfare</category>
      <category domain="http://securityratty.com/tag/warfare">warfare</category>
      <category domain="http://securityratty.com/tag/cyber warfare unit">cyber warfare unit</category>
      <category domain="http://securityratty.com/tag/cyber warfare">cyber warfare</category>
      <category domain="http://securityratty.com/tag/asymmetric warfare">asymmetric warfare</category>
      <category domain="http://securityratty.com/tag/unconventional warfare">unconventional warfare</category>
      <category domain="http://securityratty.com/tag/warfare employs surprise">warfare employs surprise</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/199469513/combating-unrestricted-warfare.html">Combating Unrestricted Warfare</source>
    </item>
  </channel>
</rss>
