<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: files]]></title>
    <link>http://securityratty.com/tag/files</link>
    <description></description>
    <pubDate>Thu, 17 Jul 2008 14:35:58 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[A Note Of Caution....]]></title>
      <link>http://securityratty.com/article/85650b602aeedaee2136e9b994eb9818</link>
      <guid>http://securityratty.com/article/85650b602aeedaee2136e9b994eb9818</guid>
      <description><![CDATA[In the last few days, we've discovered a program that attempts to get around certain privacy related features on Myspace groups (which are effectively mini-forums run by Myspace users). Note that the...]]></description>
      <content:encoded><![CDATA[
        In the last few days, we've discovered a program that attempts to get around certain privacy related features on Myspace groups (which are effectively mini-forums run by Myspace users). Note that the program doesn't attempt to do anything to individual end-users like infect their PC - and as long as you're <i>not</i> posting up personal / private information to Myspace groups that you don't want to risk being grabbed by nefarious individuals, you have nothing to worry about. (As a general rule of thumb, you shouldn't post sensitive information to <i>any</i> third-party website in any case, but that's another story).<br /><br />We're not posting up any additional information at this time, because we don't want to cause a mass stampede by people to grab the files in question and start using them left, right and center until Myspace has had a chance to tackle the problem.<br /><br />For now, we've passed on everything to Myspace and hopefully they'll be able to resolve this speedily.<br /> 
        
    ]]></content:encoded>
      <pubDate>Wed, 23 Jul 2008 08:45:25 +0000</pubDate>
      <category domain="http://securityratty.com/tag/additional information">additional information</category>
      <category domain="http://securityratty.com/tag/myspace users">myspace users</category>
      <category domain="http://securityratty.com/tag/myspace">myspace</category>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/post sensitive information">post sensitive information</category>
      <category domain="http://securityratty.com/tag/nefarious individuals">nefarious individuals</category>
      <category domain="http://securityratty.com/tag/mass stampede">mass stampede</category>
      <category domain="http://securityratty.com/tag/third-party website">third-party website</category>
      <category domain="http://securityratty.com/tag/program">program</category>
      <source url="http://blog.spywareguide.com/2008/07/a-note-of-caution.html">A Note Of Caution....</source>
    </item>
    <item>
      <title><![CDATA[Using VMware Converter to resize virtual disk files]]></title>
      <link>http://securityratty.com/article/9fdb6c49e2515f7d861e2c7a2ce65a6e</link>
      <guid>http://securityratty.com/article/9fdb6c49e2515f7d861e2c7a2ce65a6e</guid>
      <description><![CDATA[Resizing virtual disk files enables virtualization administrators to use host server capacity more efficiently. This article provides step-by-step instruction on using VMware Converter and the...]]></description>
      <content:encoded><![CDATA[Resizing virtual disk files enables virtualization administrators to use host server capacity more efficiently. This article provides step-by-step instruction on using VMware Converter and the vmkstools command to change virtual disk file sizes.<img src="http://feeds.feedburner.com/~r/WhatisEnterpriseItTipsAndExpertAdvice/~4/342911543" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 22 Jul 2008 13:08:43 +0000</pubDate>
      <category domain="http://securityratty.com/tag/vmware converter">vmware converter</category>
      <category domain="http://securityratty.com/tag/host server capacity">host server capacity</category>
      <category domain="http://securityratty.com/tag/step-by-step instruction">step-by-step instruction</category>
      <category domain="http://securityratty.com/tag/vmkstools command">vmkstools command</category>
      <category domain="http://securityratty.com/tag/article">article</category>
      <category domain="http://securityratty.com/tag/efficiently">efficiently</category>
      <source url="http://feeds.feedburner.com/~r/WhatisEnterpriseItTipsAndExpertAdvice/~3/342911543/0,289483,sid179_gci1322236,00.html">Using VMware Converter to resize virtual disk files</source>
    </item>
    <item>
      <title><![CDATA[Reading a binary field in an Oracle database with LotusScript]]></title>
      <link>http://securityratty.com/article/f6265b6ad2ffe1d318ddbda56e65e13a</link>
      <guid>http://securityratty.com/article/f6265b6ad2ffe1d318ddbda56e65e13a</guid>
      <description><![CDATA[Use this LotusScript code to read a binary field in an Oracle database, allowing you to find Microsoft Word documents, spreadsheets, PDFs and JPEG...]]></description>
      <content:encoded><![CDATA[Use this LotusScript code to read a binary field in an Oracle database, allowing you to find Microsoft Word documents, spreadsheets, PDFs and JPEG files.<img src="http://feeds.feedburner.com/~r/WhatisEnterpriseItTipsAndExpertAdvice/~4/342558740" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 22 Jul 2008 05:38:55 +0000</pubDate>
      <category domain="http://securityratty.com/tag/binary field">binary field</category>
      <category domain="http://securityratty.com/tag/oracle database">oracle database</category>
      <category domain="http://securityratty.com/tag/microsoft word documents">microsoft word documents</category>
      <category domain="http://securityratty.com/tag/lotusscript code">lotusscript code</category>
      <category domain="http://securityratty.com/tag/jpeg files">jpeg files</category>
      <category domain="http://securityratty.com/tag/spreadsheets">spreadsheets</category>
      <category domain="http://securityratty.com/tag/pdfs">pdfs</category>
      <source url="http://feeds.feedburner.com/~r/WhatisEnterpriseItTipsAndExpertAdvice/~3/342558740/0,289483,sid4_gci1321503,00.html">Reading a binary field in an Oracle database with LotusScript</source>
    </item>
    <item>
      <title><![CDATA[Coding Spyware and Malware for Hire]]></title>
      <link>http://securityratty.com/article/1dbd4bddd9e4248009d0273ad7cae5dd</link>
      <guid>http://securityratty.com/article/1dbd4bddd9e4248009d0273ad7cae5dd</guid>
      <description><![CDATA[What type of antivirus evasion do you want today? For the past several years, we have been witnessing the emerging customerization applied in malware and spyware for hire services. What used to be a...]]></description>
      <content:encoded><![CDATA[<div class="separator" style="text-align: left; clear: both;"><a href="http://bp2.blogger.com/_wICHhTiQmrA/SIWJkocpGwI/AAAAAAAAB8U/_v3hJOM2k_s/s1600-h/preview_random.jpg" imageanchor="1" style="border: 0pt none ; background-color: transparent; clear: left; margin-bottom: 1em; float: left; margin-right: 1em;"><img src="http://bp2.blogger.com/_wICHhTiQmrA/SIWJkocpGwI/AAAAAAAAB8U/15Yc8N_lG74/s200-R/preview_random.jpg" style="border: 0pt none ;" /></a></div>What type of antivirus evasion do you want today? For the past several years, we have been witnessing the emerging customerization applied in malware and spyware for hire services. What used to be a situation where the malware authors would code and then start promoting a piece of malware including features that he thinks his potential customers would want by generalizing a cybercriminal's needs, is today's "listening to the customer" win-win situation that they've reached already. <br />
<br />
The whole maturity from a product concept to customerization is in fact so prevalent these days, that malware authors wanting to preserve their intellectual property are forbidding their customers from reverse engineering their malware modules, presumably fearing that <a href="http://ddanchev.blogspot.com/2008/06/zeus-crimeware-kit-vulnerable-to.html">remotely exploitable flaws like this one in one of the most popular Ebanker malwares for the last two yers Zeus</a>, could be discovered due to the malware author's insecure coding practices. Moreover, limiting the distribution of a single license they are given to more than three people will result in the malware author ignoring any future business relationships with the party that ruined the exclusiveness of the malware, thereby leaking it to the public, something that's been happening and will continue happening with web malware exploitation kits.<br />
<br />
What would be the price of a custom malware module coded on demand? How much does it cost to have a built in email harvester that would sniff all the incoming and outgoing email addresses from the infected host to later on include them in upcoming spam and malware campaigns? Would the malware author also provide a managed hosting service for the command and control and the actual binaries on a revenue sharing <br />
<br />
Here's an automatically translated, and fairly easy to understand random proposition for coding spyware and malware for hire, aiming to answer many of these questions, clearly demonstrating that today's malware is coded in exactly the same way the customer wants it to : <br />
<br />
"<i>As you can see in the history of its development turned directly into the combine, while almost no raspuh in weight, full-size pack аж 18 kb and minialno 5 kb, for all nampomnyu again, all descriptions below can be done as otdelnym bot, and any combination of cross except for a few restrictions. This product is targeted at mass-user and will not be all prodavatsya row. So, you can choose from:</i><br />
<br />
<i>Actually loader - is able to load a file from adminki, by country and other characteristics, such as the number of animals on board with a specific bot, a country group of countries, the availability of certain authors or Fire, sredenemu time online, etc. etc.. You can adjust the speed of shipping limits for each file, can load 1 as well as how files simultaneously<br />
300 €</i><br />
<br />
<i><b>FTP and not only Graber</b><br />
Analyzes user traffic and collects from the ftp acclamation, that is ftp acclamation would you regardless of how the customer uses ftp user, thus can be obtained most valuable ftp aka (even those to which the password is not saved), you can also grab other in a way not only acclamation acclamation and other tasty things more)<br />
150 €<b>&nbsp;</b></i><br />
<br />
<i><b>Assembler spam bases</b><br />
Analyzes user traffic and collects from all email, snifit http pop3 smtp protocols, keeps records unikallnosti locally on each boat to reduce the burden on the server as well as globally on a server has 2 mode of operation - ie passive with only collects user to please and active - the very beginning to download the entire inet) in search of soap<br />
220 €<br />
<br />
<b>Socks 4 / 5</b><br />
Normal soks with competently implemented multithreading, is activated only if the user real Ip, otherwise not. And also optional, depending on the connection type and speed ineta.<br />
70 €<br />
<br />
<b>Indicates</b><br />
The primitive method, contamination fleshek avtoranom gives 2-3% increase in the first week and up to 7% in the next, a pleasant trifle)<br />
35 €<br />
<br />
<b>Scripts</b><br />
Loader supports internal scripting language - jscript, to carry out arbitrary actions on the victim machine, whether recording data in the register, setting authentic hon-Pago, opening URL in your browser (it was done so to please with 90% punching)), apload arbitrary files on a server, even theoretically possible to form and grabing inzhekty in IE) has only to write the script zaebetes, vobschem lyuboye actions soul who wish)<br />
70 € basic functionality<br />
<br />
<b>Assembler passwords</b><br />
Collects data such as passwords pstorage IE, MSN, etc., will be added at the request of other sources of passwords<br />
70 €<br />
<br />
<b>Mini-AV</b><br />
When installing loadera wheelbarrows to remove BHO shaped three, zevso-shaped, the majority of shit from all avtoranov, render most keylogerov until all) forward proposals to improve<br />
70 €<br />
<br />
<b>File-default</b><br />
In exe loadera program URL (in adminke) to the file which once progruzit 1 and run at first start loadera on wheelbarrows, while simultaneously helping progruzke Trojan for example, in its entire botnet that does not paired with challenges in adminke, the module operates in 20 seconds after the mini - av which excludes the removal of your Trojan bot, after progruza this exe bot continues to normal activities.<br />
35 €<br />
<br />
<b>Form Graber</b><br />
While in beta version, robbed IE. Sends logs in adminku, folding country. Logs are like logs agent. It consists of:<br />
<br />
<b>Graber certificats</b><br />
On the idea is part formgrabera but could work and of itself, actually there is nothing to describe)<br />
<br />
<b>Injections</b><br />
Literacy sold inzhekty, did not begin work after full progruza pages (as in bolshistve three) and immediately supported injection yavaskript code, which allows avtozalivy and DC inzhekty for data collection. For example not to yuzat acclamation at all is not yet introduce the necessary number of Britain, after which inzhekt ceases to operate. Вобщем mdelat can be anything and in any form) rather than the meager request field pin) And also inzhektov subspecies - a substitute for the issuance of search enginee.<br />
<br />
<b>Graber balances</b><br />
Makes loot aka balances at the entrance to the user acclamation, detail added to the logs.<br />
<br />
<b>Screen</b><br />
Universal method to grab information from absolutely any species and varieties klaiviatur screens, in particular html, flash, in one picture, with a drop-down fields after choosing your encrypted, as well as information such as "enter 3 yu secret letter word" etc. as well as any information which is visible a user but not seen in the logs. Screen settings of adminki, set URL where do screen as well as the type of screen: for virtual keyboard (done several small images of areas around the clique) or to "enter 3 yu secret letter words" (makes 1 full shot). With the withdrawal screen recorded in the log entry with the name of the file to the screen this position.<br />
<br />
<b>Antiabuznost for botneta</b><br />
Feachem adminki, keep botnet enables fast, normal, bezglyuchnyh NEabuzoustoychivyh hosting, with features that you forget what abuzy, nohistory week saporta "abuzoustoychivogo" hosting inaccessibility host to half ineta etc., etc., also with the help of the supplement will be able to keep huge botnety (over SL) at 1 dedike with 512 Lake) and well on the price of hosting a savings, not $ 500 a month and 150. It may use this feature to stroronnim development, Trojans, bots, etc., actually is a separate product. And incidentally, if you do not understand the theory that nenado ask "and how does it work?" imagine that it works and point and neubivaemo in pritsnipe.<br />
600 € +<br />
&nbsp;</i><br />
<i>All prices are in euros, the calculation is made at the rate of CB on the day of purchase. ps I will not disappear as most authors after months of sales, I DONT how to please you get to the assembly ftp, I DONT how many soap collects soap-graber, I DONT what otstuk from loadera, I DONT soksov how many will be from 1 to downloads, and how best To work load a file is not dead quickly, if you are confused my ignorance - that my loader so you do not need more tries)<br />
<br />
Rules / Licence<br />
-- Customer has no right to transfer any of his three 3 persons except options for harmonizing with me<br />
-- Customer does not have the right to make any decompile, research, malicious modification of any three parts<br />
-- Customer has no right where either rasprostanyat information about three and a public discussion with the exception of three entries.<br />
-- For violating the rules - without any license denial manibekov and further conversations</i>" <br />
<br />
This malware coder seems to be participating in an affiliate program with a malicious ISP that is offering hosting services for the entire campaign, not just the malware binaries, so you have a rather good example that incentives and revenue-sharing models result in value-added services, a all-in-one shop for a customer to take advantage of without bothering to approach a third-party.<br />
<br />
Cybercrime is getting even more easier to outsource these days, and with the malicious parties improving their communication and incentives model, the resulting transparency in the underground market<br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2007/03/underground-economys-supply-of-goods.html">The Underground Economy's Supply of Goods and Services</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/dynamics-of-malware-industry.html">The Dynamics of the Malware Industry - Proprietary Malware Tools</a><br />
<a href="http://ddanchev.blogspot.com/2008/06/using-market-forces-to-disrupt-botnets.html">Using Market Forces to Disrupt Botnets</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/multiple-firewalls-bypassing.html">Multiple Firewalls Bypassing Verification on Demand</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/managed-spamming-appliances-future-of.html">Managed Spamming Appliances - The Future of Spam</a><br />
<a href="http://ddanchev.blogspot.com/2008/02/localizing-cybercrime-cultural.html">Localizing Cybercrime - Cultural Diversity on Demand</a><br />
<a href="http://ddanchev.blogspot.com/2008/01/e-crime-and-socioeconomic-factors.html">E-crime and Socioeconomic Factors</a><br />
<a href="http://ddanchev.blogspot.com/2007/12/russias-fsb-vs-cybercrime.html">Russia's FSB vs Cybercrime</a><br />
<a href="http://ddanchev.blogspot.com/2007/08/malware-as-web-service.html">Malware as a Web Service</a><br />
<a href="http://ddanchev.blogspot.com/2007/09/localizing-open-source-malware.html">Localizing Open Source Malware</a><br />
<a href="http://ddanchev.blogspot.com/2008/04/quality-and-assurance-in-malware.html">Quality and Assurance in Malware Attacks</a><br />
<a href="http://ddanchev.blogspot.com/2006/09/benchmarking-and-optimising-malware.html">Benchmarking and Optimising Malware</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=CfEGOJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=CfEGOJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=ZmZP2J"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=ZmZP2J" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=3RDQbj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=3RDQbj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=uN1LUj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=uN1LUj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=oSzTOJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=oSzTOJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=KOIqZJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=KOIqZJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=8gh7xj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=8gh7xj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/342366718" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 21 Jul 2008 23:52:14 +0000</pubDate>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/malware author">malware author</category>
      <category domain="http://securityratty.com/tag/malware authors">malware authors</category>
      <category domain="http://securityratty.com/tag/malware binaries">malware binaries</category>
      <category domain="http://securityratty.com/tag/malware attacks">malware attacks</category>
      <category domain="http://securityratty.com/tag/ftp">ftp</category>
      <category domain="http://securityratty.com/tag/ftp user">ftp user</category>
      <category domain="http://securityratty.com/tag/collects">collects</category>
      <category domain="http://securityratty.com/tag/malware industry">malware industry</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/342366718/coding-spyware-and-malware-for-hire.html">Coding Spyware and Malware for Hire</source>
    </item>
    <item>
      <title><![CDATA[The Langley Files]]></title>
      <link>http://securityratty.com/article/1d86287caa54b846b08a3d1020799d36</link>
      <guid>http://securityratty.com/article/1d86287caa54b846b08a3d1020799d36</guid>
      <description><![CDATA[The Central Intelligence Agency doesn't like to talk about its mistakes. It's not just embarrassing, but officials believe exposing details about how an operation went wrong reveals too much about how...]]></description>
      <content:encoded><![CDATA[The Central Intelligence Agency doesn't like to talk about its mistakes. It's not just embarrassing, but officials believe exposing details about how an operation went wrong reveals too much about how it captures enemy secrets. But published statements and news reports suggest one recent error-the U.S. bombing of the Chinese embassy in Belgrade during the Kosovo war last year, which killed three and injured 20-happened in part because CIA officers targeted what they thought was a Yugoslav Army warehouse based on outdated maps, and others failed to catch the mistake before the proposal was passed to the military.]]></content:encoded>
      <pubDate>Sun, 20 Jul 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/central intelligence agency">central intelligence agency</category>
      <category domain="http://securityratty.com/tag/captures enemy secrets">captures enemy secrets</category>
      <category domain="http://securityratty.com/tag/cia officers">cia officers</category>
      <category domain="http://securityratty.com/tag/recent error-the">recent error-the</category>
      <category domain="http://securityratty.com/tag/kosovo war">kosovo war</category>
      <category domain="http://securityratty.com/tag/wrong reveals">wrong reveals</category>
      <category domain="http://securityratty.com/tag/news reports">news reports</category>
      <category domain="http://securityratty.com/tag/chinese embassy">chinese embassy</category>
      <category domain="http://securityratty.com/tag/statements">statements</category>
      <source url="http://www.networkworld.com/news/2008/072108-the-langley.html?fsrc=rss-security">The Langley Files</source>
    </item>
    <item>
      <title><![CDATA[Flying Without ID? Know What's in Your Files]]></title>
      <link>http://securityratty.com/article/007b217c1a6f56bd6a542715acf37f7e</link>
      <guid>http://securityratty.com/article/007b217c1a6f56bd6a542715acf37f7e</guid>
      <description><![CDATA[Under new rules from the Transportation Security Administration, travelers who try to fly without ID will need to provide personal information from public records to convince federal employees to let...]]></description>
      <content:encoded><![CDATA[Under new rules from the Transportation Security Administration, travelers who try to fly without ID will need to provide personal information from public records to convince federal employees to let them past the x-ray machines and onto the plane.<br style="clear: both;"/>
      <a href="http://www.pheedo.com/click.phdo?s=27486a872e4eb23170b6580575ef98aa"><img alt="" style="border: 0;" border="0" src="http://www.pheedo.com/img.phdo?s=27486a872e4eb23170b6580575ef98aa"/></a>
  <img src="http://www.pheedo.com/feeds/tracker.php?i=27486a872e4eb23170b6580575ef98aa" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=VH0KQJ"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=VH0KQJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=onSavj"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=onSavj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=Aozmhj"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=Aozmhj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=QJu7fJ"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=QJu7fJ" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=yf1TVJ"><img src="http://feeds.wired.com/~f/wired/politics/security?i=yf1TVJ" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=JxJsjj"><img src="http://feeds.wired.com/~f/wired/politics/security?i=JxJsjj" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=SvT2jj"><img src="http://feeds.wired.com/~f/wired/politics/security?i=SvT2jj" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=HsAM3J"><img src="http://feeds.wired.com/~f/wired/politics/security?i=HsAM3J" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/340216882" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/340216883" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sat, 19 Jul 2008 18:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/convince federal employees">convince federal employees</category>
      <category domain="http://securityratty.com/tag/transportation security administration">transportation security administration</category>
      <category domain="http://securityratty.com/tag/provide personal information">provide personal information</category>
      <category domain="http://securityratty.com/tag/x-ray machines">x-ray machines</category>
      <category domain="http://securityratty.com/tag/public records">public records</category>
      <category domain="http://securityratty.com/tag/plane">plane</category>
      <category domain="http://securityratty.com/tag/travelers">travelers</category>
      <category domain="http://securityratty.com/tag/rules">rules</category>
      <category domain="http://securityratty.com/tag/past">past</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/340216883/flying-without.html">Flying Without ID? Know What's in Your Files</source>
    </item>
    <item>
      <title><![CDATA[Joining files using SQLRPGLE]]></title>
      <link>http://securityratty.com/article/2335a8b5581094744829f3badd8f1198</link>
      <guid>http://securityratty.com/article/2335a8b5581094744829f3badd8f1198</guid>
      <description><![CDATA[In DB/400, for a join operation returning a single row, the SELECT INTO statement can be used in...]]></description>
      <content:encoded><![CDATA[In DB/400, for a join operation returning a single row, the SELECT INTO statement can be used in SQLRPGLE.<img src="http://feeds.feedburner.com/~r/WhatisEnterpriseItTipsAndExpertAdvice/~4/339218277" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 18 Jul 2008 10:03:51 +0000</pubDate>
      <category domain="http://securityratty.com/tag/sqlrpgle">sqlrpgle</category>
      <category domain="http://securityratty.com/tag/single row">single row</category>
      <category domain="http://securityratty.com/tag/join operation">join operation</category>
      <category domain="http://securityratty.com/tag/db400">db400</category>
      <category domain="http://securityratty.com/tag/statement">statement</category>
      <category domain="http://securityratty.com/tag/select">select</category>
      <source url="http://feeds.feedburner.com/~r/WhatisEnterpriseItTipsAndExpertAdvice/~3/339218277/0,289625,sid3_gci1321827,00.html">Joining files using SQLRPGLE</source>
    </item>
    <item>
      <title><![CDATA[Wormlike malware transcodes MP3s to try to infect PCs]]></title>
      <link>http://securityratty.com/article/35264f2b91b5439d692d49d18c1f44c4</link>
      <guid>http://securityratty.com/article/35264f2b91b5439d692d49d18c1f44c4</guid>
      <description><![CDATA[A new variety of malicious software could pose a danger to those who download music files on peer-to-peer...]]></description>
      <content:encoded><![CDATA[A new variety of malicious software could pose a danger to those who download music files on peer-to-peer networks.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=CrFmzp"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=CrFmzp" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/339202749" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 18 Jul 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/download music files">download music files</category>
      <category domain="http://securityratty.com/tag/peer-to-peer networks">peer-to-peer networks</category>
      <category domain="http://securityratty.com/tag/malicious software">malicious software</category>
      <category domain="http://securityratty.com/tag/variety">variety</category>
      <category domain="http://securityratty.com/tag/danger">danger</category>
      <category domain="http://securityratty.com/tag/pose">pose</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/339202749/article.do">Wormlike malware transcodes MP3s to try to infect PCs</source>
    </item>
    <item>
      <title><![CDATA[New worm transcodes MP3s to try to infect PCs]]></title>
      <link>http://securityratty.com/article/e25e76cdad0418eb124212dd0f7fc14c</link>
      <guid>http://securityratty.com/article/e25e76cdad0418eb124212dd0f7fc14c</guid>
      <description><![CDATA[A new kind of malicious software could pose a danger to Windows users who download music files on peer-to-peer...]]></description>
      <content:encoded><![CDATA[A new kind of malicious software could pose a danger to Windows users who download music files on peer-to-peer networks.]]></content:encoded>
      <pubDate>Thu, 17 Jul 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/download music files">download music files</category>
      <category domain="http://securityratty.com/tag/peer-to-peer networks">peer-to-peer networks</category>
      <category domain="http://securityratty.com/tag/malicious software">malicious software</category>
      <category domain="http://securityratty.com/tag/windows users">windows users</category>
      <category domain="http://securityratty.com/tag/danger">danger</category>
      <category domain="http://securityratty.com/tag/pose">pose</category>
      <source url="http://www.networkworld.com/news/2008/071808-new-worm-transcodes-mp3s-to.html?fsrc=rss-security">New worm transcodes MP3s to try to infect PCs</source>
    </item>
    <item>
      <title><![CDATA[Critical PDF Processing Vulnerability In BlackBerry Enterprise Server]]></title>
      <link>http://securityratty.com/article/10927bc4a5c4c116c0fe7d3de170b848</link>
      <guid>http://securityratty.com/article/10927bc4a5c4c116c0fe7d3de170b848</guid>
      <description><![CDATA[BlackBerry reports a highly critical vulnerability in BlackBerry Enterprise Server, which potentially can be exploited by malicious people to compromise a vulnerable system. The vulnerability is...]]></description>
      <content:encoded><![CDATA[BlackBerry reports a highly critical vulnerability in BlackBerry Enterprise Server, which potentially can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to an unspecified error in the BlackBerry Attachment Service when processing PDF files. This can be exploited to potentially execute arbitrary code on the vulnerable system via an [...]]]></content:encoded>
      <pubDate>Thu, 17 Jul 2008 14:35:58 +0000</pubDate>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <category domain="http://securityratty.com/tag/blackberry enterprise server">blackberry enterprise server</category>
      <category domain="http://securityratty.com/tag/vulnerable system">vulnerable system</category>
      <category domain="http://securityratty.com/tag/highly critical vulnerability">highly critical vulnerability</category>
      <category domain="http://securityratty.com/tag/blackberry attachment service">blackberry attachment service</category>
      <category domain="http://securityratty.com/tag/execute arbitrary code">execute arbitrary code</category>
      <category domain="http://securityratty.com/tag/malicious people">malicious people</category>
      <category domain="http://securityratty.com/tag/blackberry reports">blackberry reports</category>
      <category domain="http://securityratty.com/tag/pdf files">pdf files</category>
      <source url="http://cyberinsecure.com/critical-pdf-processing-vulnerability-in-blackberry-enterprise-server/">Critical PDF Processing Vulnerability In BlackBerry Enterprise Server</source>
    </item>
  </channel>
</rss>
