<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: shadowserver]]></title>
    <link>http://securityratty.com/tag/shadowserver</link>
    <description></description>
    <pubDate>Thu, 22 May 2008 04:49:38 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[IT Security In The News: DLP, Zombies And Busted Myths]]></title>
      <link>http://securityratty.com/article/851eadf0ed57d455694ab0fabbcb50cf</link>
      <guid>http://securityratty.com/article/851eadf0ed57d455694ab0fabbcb50cf</guid>
      <description><![CDATA[Zombie Jamboree Are you 'fraid of zombies? You should be! According to the Shadowserver Foundation, which tracks zombie numbers worldwide, in the last three months a plague has broken out - a...]]></description>
      <content:encoded><![CDATA[Zombie Jamboree Are you 'fraid of zombies? You should be! According to the Shadowserver Foundation, which tracks zombie numbers worldwide, in the last three months a plague has broken out - a thre...]]></content:encoded>
      <pubDate>Wed, 10 Sep 2008 14:26:58 +0000</pubDate>
      <category domain="http://securityratty.com/tag/zombies">zombies</category>
      <category domain="http://securityratty.com/tag/zombie jamboree">zombie jamboree</category>
      <category domain="http://securityratty.com/tag/tracks zombie">tracks zombie</category>
      <category domain="http://securityratty.com/tag/shadowserver foundation">shadowserver foundation</category>
      <category domain="http://securityratty.com/tag/fraid">fraid</category>
      <category domain="http://securityratty.com/tag/worldwide">worldwide</category>
      <category domain="http://securityratty.com/tag/thre">thre</category>
      <category domain="http://securityratty.com/tag/plague">plague</category>
      <category domain="http://securityratty.com/tag/months">months</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/389231455/">IT Security In The News: DLP, Zombies And Busted Myths</source>
    </item>
    <item>
      <title><![CDATA[Come! Join our BotNet Human!]]></title>
      <link>http://securityratty.com/article/89ebef92570768bc884a5ce6c14326ae</link>
      <guid>http://securityratty.com/article/89ebef92570768bc884a5ce6c14326ae</guid>
      <description><![CDATA[Just in time for the Holiday season. Its driving me Botty


clipped from www.vnunet.com

Dramatic rise in botnet-controlled PCs



Recent
figures recorded by the Shadowserver Foundation reveal that...]]></description>
      <content:encoded><![CDATA[<div > Just in time for the Holiday season.<br/>Its driving me Botty! </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clipmark/403ADA8A-DAF8-44A4-BE1D-61A157B660D4/" title="go to this clipmark"><img src="http://content.clipmarks.com/blog_icon/66985c0a-3dc4-4066-93ef-1689b3ba4f45/403ADA8A-DAF8-44A4-BE1D-61A157B660D4/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.vnunet.com/vnunet/news/2225185/botnet-ranks-exploding" href="http://www.vnunet.com/vnunet/news/2225185/botnet-ranks-exploding" style="font-size: 11px;">www.vnunet.com</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.vnunet.com/vnunet/news/2225185/botnet-ranks-exploding -->
<div style="margin: 4px 0px; color: #000000; font-size: 20px;">Dramatic rise in botnet-controlled PCs</div>
</td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.vnunet.com/vnunet/news/2225185/botnet-ranks-exploding --><P><br />
<A title="Botnet Charts" target="_blank" href="http://www.shadowserver.org/wiki/pmwiki.php?n=Stats.BotnetCharts">Recent<br />
figures</A> recorded by the Shadowserver Foundation reveal that the number of<br />
computers infected by botnets has quadrupled in the past 90 days.</P></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/403ADA8A-DAF8-44A4-BE1D-61A157B660D4/blog/" title="blog or email this clip"><img src="http://content7.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
<BR/><MAP name="bdv_RSS_Ad_040908024638"><AREA alt="Feed Ads By BidVertiser.com" shape="poly" coords="0,0,467,0,467,45,315,45,315,59,0,59" href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=040908024638&amp;click=1" target="_blank" /><AREA alt="Feed Ads By BidVertiser.com" shape="rect" coords="315,45,467,59" href="http://www.bidvertiser.com/bdv/bidvertiser/bdv_ref.dbm?Ref_PID=165886&amp;Ref_Option=main&amp;source=90614506" target="_blank" /></MAP><P><a href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=040908024638&amp;click=1" target="_blank"><IMG src="http://bdv.bidvertiser.com/BidVertiser.dbm?pid=165886&amp;bid=400950&amp;PHS=040908024638&amp;rssimage=1&amp;rSRC=2" border="0" usemap="#bdv_RSS_Ad_040908024638" /></a></P>]]></content:encoded>
      <pubDate>Thu, 04 Sep 2008 10:46:38 +0000</pubDate>
      <category domain="http://securityratty.com/tag/shadowserver foundation reveal">shadowserver foundation reveal</category>
      <category domain="http://securityratty.com/tag/holiday season">holiday season</category>
      <category domain="http://securityratty.com/tag/time">time</category>
      <category domain="http://securityratty.com/tag/figures">figures</category>
      <category domain="http://securityratty.com/tag/botty">botty</category>
      <category domain="http://securityratty.com/tag/days">days</category>
      <category domain="http://securityratty.com/tag/computers">computers</category>
      <category domain="http://securityratty.com/tag/vnunet">vnunet</category>
      <category domain="http://securityratty.com/tag/past">past</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=604">Come! Join our BotNet Human!</source>
    </item>
    <item>
      <title><![CDATA[The Number Of Infected Machines In Botnets Quadrupled In Last 3 Months]]></title>
      <link>http://securityratty.com/article/daaca7f9bc4f75d386d4221ce644ee3e</link>
      <guid>http://securityratty.com/article/daaca7f9bc4f75d386d4221ce644ee3e</guid>
      <description><![CDATA[According to Shadowserver Foundation, the number of compromised zombie PCs in botnet networks has quadrupled over the last three months. Shadowserver tracks botnet activity and the number of command...]]></description>
      <content:encoded><![CDATA[According to Shadowserver Foundation, the number of compromised zombie PCs in botnet networks has quadrupled over the last three months. Shadowserver tracks botnet activity and the number of command and control servers. It uses a variety of metrics to slice and dice its figures based in part on the entropy of botnet infections. The clear [...]]]></content:encoded>
      <pubDate>Tue, 02 Sep 2008 18:49:12 +0000</pubDate>
      <category domain="http://securityratty.com/tag/figures based">figures based</category>
      <category domain="http://securityratty.com/tag/control servers">control servers</category>
      <category domain="http://securityratty.com/tag/botnet networks">botnet networks</category>
      <category domain="http://securityratty.com/tag/botnet infections">botnet infections</category>
      <category domain="http://securityratty.com/tag/shadowserver foundation">shadowserver foundation</category>
      <category domain="http://securityratty.com/tag/zombie pcs">zombie pcs</category>
      <category domain="http://securityratty.com/tag/months">months</category>
      <category domain="http://securityratty.com/tag/variety">variety</category>
      <category domain="http://securityratty.com/tag/entropy">entropy</category>
      <source url="http://cyberinsecure.com/infected-machines-in-botnets-quadrupled-in-last-3-months/">The Number Of Infected Machines In Botnets Quadrupled In Last 3 Months</source>
    </item>
    <item>
      <title><![CDATA[Cyberattack Against Georgia Preceded Real Attack]]></title>
      <link>http://securityratty.com/article/05aa9f87510a1d42d2691aadc95f19a7</link>
      <guid>http://securityratty.com/article/05aa9f87510a1d42d2691aadc95f19a7</guid>
      <description><![CDATA[This is interesting: Exactly who was behind the cyberattack is not known. The Georgian government blamed Russia for the attacks, but the Russian government said it was not involved. In the end,...]]></description>
      <content:encoded><![CDATA[<p><a href="http://www.nytimes.com/2008/08/13/technology/13cyber.html">This</a> is interesting:</p>

<blockquote>Exactly who was behind the cyberattack is not known. The Georgian government blamed Russia for the attacks, but the Russian government said it was not involved. In the end, Georgia, with a population of just 4.6 million and a relative latecomer to the Internet, saw little effect beyond inaccessibility to many of its government Web sites, which limited the government's ability to spread its message online and to connect with sympathizers around the world during the fighting with Russia.

<p>[...]</p>

<p>In Georgia, media, communications and transportation companies were also attacked, according to security researchers. Shadowserver saw the attack against Georgia spread to computers throughout the government after Russian troops entered the Georgian province of South Ossetia. The National Bank of Georgia's Web site was defaced at one point. Images of 20th-century dictators as well as an image of Georgia's president, Mr. Saakashvili, were placed on the site. "Could this somehow be indirect Russian action? Yes, but considering Russia is past playing nice and uses real bombs, they could have attacked more strategic targets or eliminated the infrastructure kinetically," said Gadi Evron, an Israeli network security expert. "The nature of what's going on isn't clear," he said.</p>

<p>[...]</p>

<p>In addition to D.D.O.S. attacks that crippled Georgia's limited Internet infrastructure, researchers said there was evidence of redirection of Internet traffic through Russian telecommunications firms beginning last weekend. The attacks continued on Tuesday, controlled by software programs that were located in hosting centers controlled by a Russian telecommunications firms. A Russian-language Web site, stopgeorgia.ru, also continued to operate and offer software for download used for D.D.O.S. attacks.</blockquote></p>

<p>Welcome to 21st century warfare.</p>

<blockquote>"It costs about 4 cents per machine," Mr. Woodcock said. "You could fund an entire cyberwarfare campaign for the cost of replacing a tank tread, so you would be foolish not to."</blockquote><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=FRnMDK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=FRnMDK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=O8aHKK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=O8aHKK" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Mon, 18 Aug 2008 09:11:09 +0000</pubDate>
      <category domain="http://securityratty.com/tag/georgia">georgia</category>
      <category domain="http://securityratty.com/tag/indirect russian action">indirect russian action</category>
      <category domain="http://securityratty.com/tag/russian">russian</category>
      <category domain="http://securityratty.com/tag/georgian government">georgian government</category>
      <category domain="http://securityratty.com/tag/government">government</category>
      <category domain="http://securityratty.com/tag/russian troops">russian troops</category>
      <category domain="http://securityratty.com/tag/spread">spread</category>
      <category domain="http://securityratty.com/tag/georgia spread">georgia spread</category>
      <category domain="http://securityratty.com/tag/government web sites">government web sites</category>
      <source url="http://www.schneier.com/blog/archives/2008/08/cyberattack_aga.html">Cyberattack Against Georgia Preceded Real Attack</source>
    </item>
    <item>
      <title><![CDATA[Website For The President Of Georgia Under Distributed Denial Of Service Attack]]></title>
      <link>http://securityratty.com/article/f749639c8bd16781924ec178d083170a</link>
      <guid>http://securityratty.com/article/f749639c8bd16781924ec178d083170a</guid>
      <description><![CDATA[Steven Adair from Shadowserver reports a multi-pronged distributed denial of service (DDoS) attack against the website of President of Georgia, Mikhail Saakashvili (www.president.gov.ge). For over 24...]]></description>
      <content:encoded><![CDATA[Steven Adair from Shadowserver reports a multi-pronged distributed denial of service (DDoS) attack against the website of President of Georgia, Mikhail Saakashvili (www.president.gov.ge). For over 24 hours the website has been rendered unavailable. The attack began very early Saturday morning (Georgian time). Shadowserver has observed at least one web-based command and control (C&#38;C) server taking [...]]]></content:encoded>
      <pubDate>Sun, 20 Jul 2008 18:08:02 +0000</pubDate>
      <category domain="http://securityratty.com/tag/website">website</category>
      <category domain="http://securityratty.com/tag/attack">attack</category>
      <category domain="http://securityratty.com/tag/president">president</category>
      <category domain="http://securityratty.com/tag/shadowserver reports">shadowserver reports</category>
      <category domain="http://securityratty.com/tag/shadowserver">shadowserver</category>
      <category domain="http://securityratty.com/tag/georgian time">georgian time</category>
      <category domain="http://securityratty.com/tag/georgia">georgia</category>
      <category domain="http://securityratty.com/tag/mikhail saakashvili">mikhail saakashvili</category>
      <category domain="http://securityratty.com/tag/denial">denial</category>
      <source url="http://cyberinsecure.com/website-for-the-president-of-georgia-under-distributed-denial-of-service-attack/">Website For The President Of Georgia Under Distributed Denial Of Service Attack</source>
    </item>
    <item>
      <title><![CDATA[Malware Domains Used in the SQL Injection Attacks]]></title>
      <link>http://securityratty.com/article/006fb71c4d155504d8f571646aa4cc66</link>
      <guid>http://securityratty.com/article/006fb71c4d155504d8f571646aa4cc66</guid>
      <description><![CDATA[Whereas the value of these malicious domains lies in the historical preservation of evidence, as long as hundreds of thousands of sites continue operating with outdated and unpatched web applications,...]]></description>
      <content:encoded><![CDATA[<a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp1.blogger.com/_wICHhTiQmrA/SDNbuXtDXEI/AAAAAAAABuo/BrBwggomVvM/s1600-h/shadowserver_SQL_injection_attacks.JPG"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp1.blogger.com/_wICHhTiQmrA/SDNbuXtDXEI/AAAAAAAABuo/BrBwggomVvM/s200/shadowserver_SQL_injection_attacks.JPG" alt="" id="BLOGGER_PHOTO_ID_5202602846738144322" border="0" /></a>Whereas the value of these malicious domains lies in the historical preservation of evidence, as long as hundreds of thousands of sites continue operating with outdated and unpatched web applications, the list is prone to grow on a daily basis, thanks to copycats and the <a href="http://blogs.zdnet.com/security/?p=1122">Asprox botnet</a>. The Shadowserver Foundation's <a href="http://www.shadowserver.org/wiki/pmwiki.php?n=Calendar.20080514">list of malicious domains used in the SQL injection attacks</a> :<br /><br /><span style="font-weight: bold;">nihaorr1.com</span> <span style="font-weight: bold;"><br />free.hostpinoy.info</span><br /><span style="font-weight: bold;">xprmn4u.info</span><br /><span style="font-weight: bold;">nmidahena.com</span><br /><span style="font-weight: bold;">winzipices.cn</span><br /><span style="font-weight: bold;">sb.5252.ws</span> <span style="font-weight: bold;"><br />aspder.com</span><br /><span style="font-weight: bold;">11910.net</span><br /><span style="font-weight: bold;">bbs.jueduizuan.com</span> <span style="font-weight: bold;"><br />bluell.cn</span><br /><span style="font-weight: bold;">2117966.net</span><br /><span style="font-weight: bold;">s.see9.us</span><br /><span style="font-weight: bold;">xvgaoke.cn</span><br /><span style="font-weight: bold;">1.hao929.cn</span><br /><span style="font-weight: bold;">414151.com</span> <span style="font-weight: bold;"><br />cc.18dd.net</span><br /><span style="font-weight: bold;">kisswow.com.cn</span><br /><span style="font-weight: bold;">urkb.net</span><br /><span style="font-weight: bold;">c.uc8010.com</span><br /><span style="font-weight: bold;">rnmb.net</span><br /><span style="font-weight: bold;">ririwow.cn</span><br /><span style="font-weight: bold;">killwow1.cn</span><br /><span style="font-weight: bold;">qiqigm.com</span><br /><span style="font-weight: bold;">wowgm1.cn</span><br /><span style="font-weight: bold;">wowyeye.cn</span><br /><span style="font-weight: bold;">9i5t.cn</span><br /><span style="font-weight: bold;">computershello.cn</span><br /><span style="font-weight: bold;">z008.net</span><br /><span style="font-weight: bold;">b15.3322.org</span><br /><span style="font-weight: bold;">direct84.com</span><br /><span style="font-weight: bold;">caocaowow.cn</span><br /><span style="font-weight: bold;">qiuxuegm.com</span><br /><span style="font-weight: bold;">firestnamestea.cn</span><br /><span style="font-weight: bold;">qiqi111.cn</span><br /><span style="font-weight: bold;">banner82.com</span> <span style="font-weight: bold;">s<br />meisp.cn</span><br /><span style="font-weight: bold;">okey123.cn</span><br /><span style="font-weight: bold;">b.kaobt.cn</span><br /><span style="font-weight: bold;">nihao112.com</span><br /><span style="font-weight: bold;">al.99.vc</span><br /><span style="font-weight: bold;">aidushu.net</span> <span style="font-weight: bold;"><br />chliyi.com</span><br /><span style="font-weight: bold;">free.edivid.info</span><br /><span style="font-weight: bold;">52-o.cn</span> <span style="font-weight: bold;"><br />actualization.cn</span><br /><span style="font-weight: bold;">d39.6600.org</span><br /><span style="font-weight: bold;">h28.8800.org</span><br /><span style="font-weight: bold;">ucmal.com</span><br /><span style="font-weight: bold;">t.uc8010.com</span> <span style="font-weight: bold;"><br />dota11.cn</span><br /><span style="font-weight: bold;">bc0.cn</span><br /><span style="font-weight: bold;">adword71.com</span> <span style="font-weight: bold;"><br />killpp.cn</span><br /><span style="font-weight: bold;">w11.6600.org</span><br /><span style="font-weight: bold;">usuc.us</span><br /><span style="font-weight: bold;">msshamof.com</span> <span style="font-weight: bold;"><br />newasp.com.cn</span><br /><span style="font-weight: bold;">wowgm2.cn</span><br /><span style="font-weight: bold;">mm.jsjwh.com.cn</span><br /><span style="font-weight: bold;">17ge.cn</span><br /><span style="font-weight: bold;">adword72.com</span> <span style="font-weight: bold;"><br />117275.cn</span><br /><span style="font-weight: bold;">vb008.cn</span><br /><span style="font-weight: bold;">wow112.cn</span><br /><span style="font-weight: bold;">nihaoel3.com</span><br /><br />Some new additions that I'm tracking :<br /><br /><span style="font-weight: bold;">a.13175.com</span><br /><span style="font-weight: bold;">r.you30.cn</span><br /><span style="font-weight: bold;">d39.6600.org</span><br /><span style="font-weight: bold;">001yl.com</span><br /><span style="font-weight: bold;">free.edivid.info</span><br /><span style="font-weight: bold;">aaa.1l1l1l.Com/error/404.html</span><br /><span style="font-weight: bold;">cc.buhaoyishi.com/one/hao5.htm?015</span><br /><span style="font-weight: bold;">aaa.77xxmm.cn/new858.htm?075</span> <span style="font-weight: bold;"><br />llSging.com/ww/new05.htm?075</span> <span style="font-weight: bold;"><br />shIjIedIyI.net/one/hao8.htm?005</span><br /><span style="font-weight: bold;">congtouzaIlaI.net/one/hao8.htm?005</span><br /><span style="font-weight: bold;">aa.llsging.com/ww/new05.hTm?075</span><br /><br />The rough number of SQL injected sites is around 1.5 million pages, in reality the number is much bigger, and there are several ongoing campaigns injecting obfuscated characters making it a bit more time consuming to track down. Who's behind these attacks? Besides <a href="http://ddanchev.blogspot.com/2007/07/sql-injection-through-search-engines.html">the automation courtesy of botnets</a>, the short answer is everyone with a decent SQL injector, and <a href="http://ddanchev.blogspot.com/2007/05/google-hacking-for-vulnerabilities.html">today's SQL injectors have a built-in reconnaissance capabilities</a>, like this one which I assessed in a previous post.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=awmrQH"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=awmrQH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=7U1K5H"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=7U1K5H" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=kjtVCh"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=kjtVCh" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=0wivlh"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=0wivlh" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=b7mJQH"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=b7mJQH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=v0Ar2H"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=v0Ar2H" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rABKgh"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rABKgh" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/295841225" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 22 May 2008 04:49:38 +0000</pubDate>
      <category domain="http://securityratty.com/tag/attacks">attacks</category>
      <category domain="http://securityratty.com/tag/sql injection attacks">sql injection attacks</category>
      <category domain="http://securityratty.com/tag/sql">sql</category>
      <category domain="http://securityratty.com/tag/net">net</category>
      <category domain="http://securityratty.com/tag/decent sql injector">decent sql injector</category>
      <category domain="http://securityratty.com/tag/htm">htm</category>
      <category domain="http://securityratty.com/tag/org">org</category>
      <category domain="http://securityratty.com/tag/malicious domains lies">malicious domains lies</category>
      <category domain="http://securityratty.com/tag/malicious domains">malicious domains</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/295841225/malware-domains-used-in-sql-injection.html">Malware Domains Used in the SQL Injection Attacks</source>
    </item>
  </channel>
</rss>
