<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: upgrade]]></title>
    <link>http://securityratty.com/tag/upgrade</link>
    <description></description>
    <pubDate>Wed, 24 Sep 2008 14:29:31 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[One in four DNS servers still vulnerable to Kaminsky flaw, survey says]]></title>
      <link>http://securityratty.com/article/340a8b4b4e8bc31df1c5f56034729697</link>
      <guid>http://securityratty.com/article/340a8b4b4e8bc31df1c5f56034729697</guid>
      <description><![CDATA[he Measurement Factory's 4th annual study of 80 million addresses in the IPv4 space proves several in the Internet community didn't heed the industry's warning to upgrade their DNS servers with...]]></description>
      <content:encoded><![CDATA[he Measurement Factory's 4th annual study of 80 million addresses in the IPv4 space proves several in the Internet community didn't heed the industry's warning to upgrade their DNS servers with patches for the Kaminsky flaw and other known vulnerabilities.]]></content:encoded>
      <pubDate>Sun, 09 Nov 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/dns servers">dns servers</category>
      <category domain="http://securityratty.com/tag/kaminsky flaw">kaminsky flaw</category>
      <category domain="http://securityratty.com/tag/4th annual study">4th annual study</category>
      <category domain="http://securityratty.com/tag/ipv4 space proves">ipv4 space proves</category>
      <category domain="http://securityratty.com/tag/measurement factory">measurement factory</category>
      <category domain="http://securityratty.com/tag/million addresses">million addresses</category>
      <category domain="http://securityratty.com/tag/internet community">internet community</category>
      <category domain="http://securityratty.com/tag/heed">heed</category>
      <category domain="http://securityratty.com/tag/industry">industry</category>
      <source url="http://www.networkworld.com/news/2008/111008-dns-server-kaminsky.html?fsrc=rss-security">One in four DNS servers still vulnerable to Kaminsky flaw, survey says</source>
    </item>
    <item>
      <title><![CDATA[Microsoft touts virtualization, Windows 7 integration with Windows Server upgrade ]]></title>
      <link>http://securityratty.com/article/c5ab1da965a1efa0b6aa0732b2f7bafe</link>
      <guid>http://securityratty.com/article/c5ab1da965a1efa0b6aa0732b2f7bafe</guid>
      <description><![CDATA[Microsoft next week will distribute a pre-beta of Windows Server 2008 R2 to a select group of testers and highlighted the softwares virtualization capabilities, integration with Windows 7 and other...]]></description>
      <content:encoded><![CDATA[Microsoft next week will distribute a pre-beta of Windows Server 2008 R2 to a select group of testers and highlighted the software’s virtualization capabilities, integration with Windows 7 and other features.]]></content:encoded>
      <pubDate>Thu, 06 Nov 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/windows server">windows server</category>
      <category domain="http://securityratty.com/tag/windows">windows</category>
      <category domain="http://securityratty.com/tag/softwares virtualization capabilities">softwares virtualization capabilities</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/integration">integration</category>
      <category domain="http://securityratty.com/tag/features">features</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/pre-beta">pre-beta</category>
      <category domain="http://securityratty.com/tag/testers">testers</category>
      <source url="http://www.networkworld.com/news/2008/110708-microsoft-windows.html?fsrc=rss-security">Microsoft touts virtualization, Windows 7 integration with Windows Server upgrade </source>
    </item>
    <item>
      <title><![CDATA[Happy (Belated) First Birthday!]]></title>
      <link>http://securityratty.com/article/0afd1c77456ad4b8b1421c1314abc638</link>
      <guid>http://securityratty.com/article/0afd1c77456ad4b8b1421c1314abc638</guid>
      <description><![CDATA[to my ADSL application

Last year in October a salesperson at Telkom phoned to let me know that my phone exchange supports ADSL and do I want to upgrade my line to have ADSL

I did the maths and...]]></description>
      <content:encoded><![CDATA[.... to my ADSL application.<br /><br />Last year in October a salesperson at Telkom phoned to let me know that my phone exchange supports ADSL and do I want to upgrade my line to have ADSL?<br /><br />I did the maths and worked out that it would be cheaper for me to have ADSL and have the benefit of all-time-on access to the Internet.<br /><br />So, I applied and a few days later my application was processed and I had an application number. It all got to the point where I had the modem connected and ready when a technical person at the exchange noticed that "no, the exchange is <span style="font-style: italic;">potentially</span> ready for ADSL but was not, in fact, ready."<br /><br />"But, good news, there is a project to upgrade the exchange to be ADSL capable. It should be done by latest end of December 2007."<br /><br />That became end of January, end of February, end of April... then it jumped to end of June.<br /><br />Now it is scheduled to be completed by the end of April 2009.<br /><br />The way things are looking - I'll probably be celebrating the second birthday of my ADSL application this time next year... many happy returns.<img src="http://feeds.feedburner.com/~r/SecurityThoughts/~4/437801003" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 31 Oct 2008 04:27:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/adsl">adsl</category>
      <category domain="http://securityratty.com/tag/adsl application">adsl application</category>
      <category domain="http://securityratty.com/tag/adsl capable">adsl capable</category>
      <category domain="http://securityratty.com/tag/application">application</category>
      <category domain="http://securityratty.com/tag/time">time</category>
      <category domain="http://securityratty.com/tag/all-time-on access">all-time-on access</category>
      <category domain="http://securityratty.com/tag/ready">ready</category>
      <category domain="http://securityratty.com/tag/exchange">exchange</category>
      <category domain="http://securityratty.com/tag/technical person">technical person</category>
      <source url="http://feeds.feedburner.com/~r/SecurityThoughts/~3/437801003/happy-belated-first-birthday.html">Happy (Belated) First Birthday!</source>
    </item>
    <item>
      <title><![CDATA[Microsoft warns of another update to Windows Update]]></title>
      <link>http://securityratty.com/article/2b8b59b4a7ff0743b742fda26d0172ad</link>
      <guid>http://securityratty.com/article/2b8b59b4a7ff0743b742fda26d0172ad</guid>
      <description><![CDATA[Microsoft is again warning users it plans to upgrade Windows Update, the service most people rely on to download patches and other...]]></description>
      <content:encoded><![CDATA[Microsoft is again warning users it plans to upgrade Windows Update, the service most people rely on to download patches and other fixes.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:b9d6dc057ee06e4f1db4cca08c29aaf1:aaYwBJqAi740HIAf19q%2BeiDRbbo0S772fO1FpVaRbhLGtCE2SCUJSeI6iYXKZEUIg8ZyLs9%2FMVGd'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:82e3735dbd8205e6a24d2b8dfec44566:MH%2FX7YEkhK6kjSQ2p7%2BlKkOJD%2FnP7QFgWdzrgfPEhKxiOM%2FM0neacxh1q9Mq%2Fq67Ooe5D2seWY497g%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:40dcc9890e62440c6f82c873c7444d7d:ir3r7UG%2B2lu1on0J9gHt5DKL5Y5MMyZoHPt0mXlZydtygZM8vO3fT8AIkjZ36DWTxehoQUVSeAXlrA%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:00425d2e16c920960c934ab26aa6ce77:9Ws5h5SgznqFXsySTzK8lK57EvbjVIY%2BEYhDyVmYGGRElxEYe8HVhqnJRFFmy%2FGx%2BJAcNAQAGFDKtg%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=61d3f1a91077a8e43ee52843a96fd024" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=61d3f1a91077a8e43ee52843a96fd024" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Fri, 31 Oct 2008 01:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/download patches">download patches</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/people rely">people rely</category>
      <category domain="http://securityratty.com/tag/upgrade windows">upgrade windows</category>
      <category domain="http://securityratty.com/tag/fixes">fixes</category>
      <category domain="http://securityratty.com/tag/users">users</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/plans">plans</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=61d3f1a91077a8e43ee52843a96fd024">Microsoft warns of another update to Windows Update</source>
    </item>
    <item>
      <title><![CDATA[Links List 10.24.08]]></title>
      <link>http://securityratty.com/article/8e899f9ef46d0a44116f8be8a4a6e8a3</link>
      <guid>http://securityratty.com/article/8e899f9ef46d0a44116f8be8a4a6e8a3</guid>
      <description><![CDATA[Ah a mystery. In The strange case of the slow server , Jack Hughes at The Tech Teapot had problems with internet presence slow website loading, problems logging in and slow emails. Sound familiar? In...]]></description>
      <content:encoded><![CDATA[<p>Ah a mystery. In “<a href="http://www.openxtra.co.uk/blog/the-strange-case-of-the-slow-server/" target="_blank">The strange case of the slow server</a>”, Jack Hughes at The Tech Teapot had problems with internet presence – slow website loading, problems logging in and slow emails. Sound familiar? In Jack’s case, the culprit was his main download site but the real issue was lack of visibility across multiple tools that provided much info but not in a way that was really usable. “The main lesson I take away from this is to make sure you’re creating meaningful stats for everything you’ve got because you never know what may be causing you a problem.”</p>
<p>Information Week’s new blog, Plug Into the Cloud, is already in the thick of the controversy on the emerging cloud computing trend. A recent post <a href="http://www.informationweek.com/cloud-computing/blog/archives/2008/10/cloud_computing_4.html" target="_blank">lists a bunch of highly opinionated comments on the topic</a> by site visitors, running the gamut from “Cloud computing is kind of like the Emperor’s New Clothes” to “cloud software can actually be more expensive than the software I load onto my hard drive.”</p>
<p>Jeff Doyle writes an interesting post about <a href="http://www.networkworld.com/community/node/34103" target="_blank">resistance to IPv6</a> adoption (what, you think <a href="http://blog.sciencelogic.com/times-up-ipv6-omb-mandate/06/2008" target="_blank">we forgot</a>?). Instead of the usual focus on IPv6 as an application issue, he points out that it’s actually an infrastructure thing. Would you wait to upgrade routers, switches, software, or servers until you can find a way to make the newer systems profitable? Would you wait to increase bandwidth only after you have customers waiting to use it? If you’ve answered these questions “no”, then why are you waiting to upgrade to IPv6?</p>
<p>We posted about whether or not there were <a href="http://blog.sciencelogic.com/are-there-recession-proof-it-products/10/2008" target="_blank">recession proof products in IT yesterday</a>. Network World Management Maven Denise Dubie also writes about <a href="http://www.networkworld.com/newsletters/nsm/2008/102008nsm2.html?nlhtnsm=ts_102208&amp;nladname=102208networksystemsmanagemental" target="_blank">readers weighing in on IT and the economy</a> – from having to do even more with less to seeing the economic downtown as an opportunity to highlight IT’s true value to the business.</p>
<p><img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" src="http://blog.sciencelogic.com/wp-content/uploads/2008/10/clip-image002.jpg" border="0" alt="clip_image002" hspace="hspace" width="299" height="196" align="left" />And finally, on the lighter side: What would we do without crazy billionaires and their crazy purchases? According to a New York Times article, a company controlled by Google’s top execs just added a <a href="http://bits.blogs.nytimes.com/2008/10/23/a-new-fighter-jet-for-googles-founders/" target="_blank">fighter jet</a> to their roster. “Presumably no attacks on Microsoft are planned at this time.” <em>(<a href="http://en.wikipedia.org/wiki/Image:Alpha_jet_zj646_arp.jpg" target="_blank">image from Wikipedia</a>)</em></p>
]]></content:encoded>
      <pubDate>Fri, 24 Oct 2008 14:55:16 +0000</pubDate>
      <category domain="http://securityratty.com/tag/cloud software">cloud software</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/cloud">cloud</category>
      <category domain="http://securityratty.com/tag/jeff doyle writes">jeff doyle writes</category>
      <category domain="http://securityratty.com/tag/ipv6 adoption">ipv6 adoption</category>
      <category domain="http://securityratty.com/tag/post">post</category>
      <category domain="http://securityratty.com/tag/recent post lists">recent post lists</category>
      <category domain="http://securityratty.com/tag/ipv6">ipv6</category>
      <category domain="http://securityratty.com/tag/writes">writes</category>
      <source url="http://blog.sciencelogic.com/links-list-102408/10/2008">Links List 10.24.08</source>
    </item>
    <item>
      <title><![CDATA[Massive SQL Injection Attacks - the Chinese Way]]></title>
      <link>http://securityratty.com/article/42e493c2424af4f8ef6cc5dd581317bf</link>
      <guid>http://securityratty.com/article/42e493c2424af4f8ef6cc5dd581317bf</guid>
      <description><![CDATA[From copycats and &quot;localizers&quot; of Russian web malware exploitation kits , to suppliers of original hacking tools, the Chinese IT underground has been closely following the emerging threats and the...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://2.bp.blogspot.com/_wICHhTiQmrA/SP46U3HSQHI/AAAAAAAACUY/QH40puDsgXY/s1600-h/security_company_hacking_tools.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://2.bp.blogspot.com/_wICHhTiQmrA/SP46U3HSQHI/AAAAAAAACUY/QO3L0OWKJcY/s200-R/security_company_hacking_tools.JPG" /></a>From <a href="http://ddanchev.blogspot.com/2008/05/firepack-exploitation-kit-localized-to.html">copycats</a> and <a href="http://ddanchev.blogspot.com/2007/10/mpack-and-icepack-localized-to-chinese.html">"localizers" of Russian web malware exploitation kits</a>, to suppliers of original hacking tools, the Chinese IT underground has been closely following the emerging threats and the obvious insecurities on a large scale, and so is either filling the niches left open by other international communities, or coming up with tools setting new benchmarks for massive SQL injection attacks, like the case with this one :<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SP5DX0GzAtI/AAAAAAAACUg/3GOnK2TsSRk/s1600-h/search_engines_mass_SQL_injection.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SP5DX0GzAtI/AAAAAAAACUg/pdCwjwri7LM/s200-R/search_engines_mass_SQL_injection.JPG" /></a>"<i>A professional web site vulnerability scanning, use of tools, SQL injection is a new generation of tools to help Web developers and site of the station quickly find vulnerabilities in order to be able to effectively prepare Security work. At the same time, the tool to Web developers to demonstrate the ways in which hackers are using these vulnerabilities, hackers, as well as through the loopholes to do things, can effectively raise the safety awareness of relevant personnel.</i>"<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5DkEEtbqI/AAAAAAAACUo/Mm7pCwd7LT4/s1600-h/search_engines_mass_SQL_injection2.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5DkEEtbqI/AAAAAAAACUo/qMaY93_QOvY/s200-R/search_engines_mass_SQL_injection2.JPG" /></a>Nothing's wrong with the marketing pitch at the first place, but going through the features, the "massive SQL injections through search engine reconnaissance" and automatic page rank verification which you can see in the attached screenshots, ruin the "security auditing" marketing pitch. The tool not only allows easy integration of potentially vulnerable sites obtained through <a href="http://ddanchev.blogspot.com/2007/07/sql-injection-through-search-engines.html">search engines reconnaissance</a>, but also, is prioritizing the results based on the probability for successful injection, next to the page rank of the domains in question. A simple demonstration offered by the company is also, directly enticing its users to "localize" the search engine reconnaissance, by filtering the search results for a particupar country, in this case they used French sites for one of the demos. Here are some excerpts from its CHANGE log speaking for themselves :<br />
<br />
"<i><b>2008.7.15 release version 1.3 </b><br />
&nbsp;</i><br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5DyBXVu7I/AAAAAAAACUw/37LsW8yh_AE/s1600-h/chinese_SQL_injector.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5DyBXVu7I/AAAAAAAACUw/ub8OVgeWC6Y/s200-R/chinese_SQL_injector.png" /></a><i>- New powerful "automatic machine cycle" feature&nbsp;</i><br />
<i>- Automatic machine cycle is to provide assistance to the advanced user manual into the use of a very&nbsp;</i><br />
<i>- powerful and flexible module, the main sites used for some special filtering into the hand, is almost a&nbsp;</i><br />
<i>- universal tool, you can achieve the following: <br />
&nbsp;</i><br />
<a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SP5D-g3FyAI/AAAAAAAACU4/xYACViJuVn4/s1600-h/chinese_SQL_injector2.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SP5D-g3FyAI/AAAAAAAACU4/oPVCur3PMgI/s200-R/chinese_SQL_injector2.png" /></a><i>1. In support of GET / POST / COOKIES in a variety of ways, such as the injection.&nbsp;</i><br />
<i>2. Scan the key to the page (background, upload, WebShell, databases, backup files, etc.).&nbsp;</i><br />
<i>3. According to the dictionary to violence landing back-guess solution WebShell password and password (required to verify that the code can not guess solution).&nbsp;</i><br />
<i>4. Page language does not limit the types and databases (to provide specific statements into the database).&nbsp;</i><br />
<i>5. At the same time, support for the circulation of the two variables and two dictionaries, fast running and violent content of the database solution to guess a password.</i>"<br />
<br />
It gets even more interesting in terms of the massive SQL injection attacks mentality which is pretty evident on all fronts :<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SP5ELiLoBiI/AAAAAAAACVA/0fb6Epapby0/s1600-h/chinese_SQL_injector3.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SP5ELiLoBiI/AAAAAAAACVA/nmrC87TeCxo/s200-R/chinese_SQL_injector3.png" /></a>"<i>- The use of the three search engine sites scans to invade the side to complete<br />
- in scanning probe into the Web site ranking points<br />
- added, "VBS upload to download", "upload directory Web site viewer," "FTP upload to download configuration file" function to make it more convenient for the sa rights to use the site. <br />
- New "sequence document scanners" <br />
- What is the sequence document scanners role? Upload to find loopholes, some of the procedures to upload the file after the upload will be renamed, rename the way the system is usually based on time or incremental increase in the number prefix code for the upload process, if not to return after the file name, Upload files to know the url is usually very difficult to sequence the use of paper scanner can be scanned out</i><br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SP5FUvl0FhI/AAAAAAAACVY/Y5mM2l7Q6K4/s1600-h/chinese_SQL_injector4.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SP5FUvl0FhI/AAAAAAAACVY/DU7feV1pnjU/s200-R/chinese_SQL_injector4.png" /></a><i><br />
- The best reverse domain name query engine, and quasi-wide <br />
- in scanning the database of basic information, an increase of the database of information related to the process, the link has information on the database server user login (sa need permission) <br />
- control of the interface had a big adjustment, the interface process easier to understand and operate. <br />
- based on a significant site of the wrong mode of access to a comprehensive code optimization and more accurate access to the content, accuracy and access to show progress. <br />
- added, "VBS upload to download", "upload directory Web site viewer," "FTP upload to download configuration file" function to make it more convenient for the sa rights to use the site.&nbsp;</i><br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5FgfdkSbI/AAAAAAAACVg/R77obP_vxig/s1600-h/chinese_SQL_injector5.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5FgfdkSbI/AAAAAAAACVg/ORo853Aicy4/s200-R/chinese_SQL_injector5.png" /></a><i><br />
- point into the types of improved detection order to improve the efficiency of detection. <br />
- improved automatic keyword detection, automatic keyword detection more accurate. <br />
- probe into the points the way to improve and increase the use of automatic detection of the keyword detection. <br />
- type of database to improve the detection, the use of the contents of the length of the failure to detect the type of database automatically switch to the probe through the keyword. <br />
- automatically save and load solution has been to guess the tree structure of the database, guess Solutions has been the content and structure of the database will automatically save and open the next time the injection point will be automatically made available, the solutions do not have to guess again, the continuity of work Greatly increased.&nbsp;</i><br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5FrcWctII/AAAAAAAACVo/DcQNU5crc5k/s1600-h/chinese_SQL_injector6.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="131" src="http://2.bp.blogspot.com/_wICHhTiQmrA/SP5FrcWctII/AAAAAAAACVo/9zGp4bsPB2U/s200-R/chinese_SQL_injector6.png" width="200" /></a><i><br />
- solved from the database to read large amounts of data (on hundreds of thousands or millions of records), the half-way card program will die. <br />
- increased significantly on the wrong model of ASP.NET and SQL Server2005 significant mode of dealing with mistakes, error messages can be extracted from a Web directory! <br />
- significant amendments to the wrong mode, some of the injected one by one point in the field or access to the contents of the issue can not be successful (error code in hand); for increased access to specific points table and into the field.&nbsp;</i><br />
<i><br />
- amendments to the text of a significant error patterns to detect and correct use of loopholes in the system can be used more to expand. (Text significantly in the wrong mode in version 1.1 already supported, but in the version 1.2 upgrade in the process of scanning to improve the performance of the Gaodiao careless. -_-#) <br />
- on a variety of encoded text can be significantly wrong in the right-compatible, able to correctly handle the ASP.NET page of the text marked wrong. Through custom error keyword, truly compatible with any language, any coding error message. <br />
- crack anti-improvement and enhancement. <br />
- An increase of auto-detection feature keywords.&nbsp;</i><br />
<i><br />
- Mssql database specifically for significant points into the wrong mode of detection and the use of up and down the hard work, and many other software can not detect the point of injection can also be used. <br />
- Automatic save and load access to the database, to allow manual known to add tables and fields for solutions to guess. <br />
- Can be used to amend the degree of accuracy; optimize the code to reduce memory footprint; enhance the stability of multi-threading. <br />
- Significant amendments to the wrong mode solution guess the contents of the database must be checked first field defects.</i>"<br />
<br />
The public version of the tool has been in the while for over an year, with a VIP version available to customers only.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=PsITM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=PsITM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=JBO9M"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=JBO9M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=owYAm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=owYAm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=LTzNm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=LTzNm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=LaPQM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=LaPQM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=go5fM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=go5fM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rYJ9m"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rYJ9m" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/427878843" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 21 Oct 2008 12:18:48 +0000</pubDate>
      <category domain="http://securityratty.com/tag/keyword detection">keyword detection</category>
      <category domain="http://securityratty.com/tag/detection">detection</category>
      <category domain="http://securityratty.com/tag/database">database</category>
      <category domain="http://securityratty.com/tag/database solution">database solution</category>
      <category domain="http://securityratty.com/tag/solution">solution</category>
      <category domain="http://securityratty.com/tag/process">process</category>
      <category domain="http://securityratty.com/tag/upload process">upload process</category>
      <category domain="http://securityratty.com/tag/text">text</category>
      <category domain="http://securityratty.com/tag/load solution">load solution</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/427878843/massive-sql-injection-attacks-chinese.html">Massive SQL Injection Attacks - the Chinese Way</source>
    </item>
    <item>
      <title><![CDATA[Frustration with PGP-9.6 and networking]]></title>
      <link>http://securityratty.com/article/1211e2354185cb54588b99973c0191f0</link>
      <guid>http://securityratty.com/article/1211e2354185cb54588b99973c0191f0</guid>
      <description><![CDATA[So, I recently upgraded from PGp-8.1 to PGp-9.6 and I thought I'd share a bit of the frustration

I was running what I believe to be a fairly standard configuration

Corporate desktop image

Outlook...]]></description>
      <content:encoded><![CDATA[So, I recently upgraded from PGp-8.1 to PGp-9.6 and I thought I'd share a bit of the frustration.<br /><br />I was running what I believe to be a fairly standard configuration.<br /><ul><li>Corporate desktop image<br /></li><li>Outlook 2003</li><li>Symantec AV</li><li>PGP-8.1<br /></li></ul>I decided to upgrade my Outlook to 2007.  Turns out that PGP-8.1 isn't compatible with Outlook 2003, so I needed upgrade.<br /><ol><li>Install PGP-9.6</li><li>reboot twice per instructions</li><li>Find that my networking completely doesn't work.</li></ol>Turns out that in order to get PGP-9.6 working with things like Symantec's AV that hook the network stack you need to back out PGP's POP/IMAP network stack hooking.<br /><ol><li>regsvr32 /u PGPfsshl.dll</li><li>Run a Registry merge on c:\WINDOWS\system32\PGPlspRollback.reg</li><li>Reboot</li></ol>Then of course, if you should happen to upgrade PGP to 9.9 because the update is out, you get to repeat all of those last few steps again.<br /><br />This process of course is made a lot easier if you happen to have another machine with network connectivity, otherwise you're kind of SOL.<br /><br />Just my bit of unfun for the afternoon.<br /><br />It is of course working now and reasonably well.  Kind of sucks that the install isn't a lot easier.<img src="http://feeds.feedburner.com/~r/SecurityRetentive/~4/426964111" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 20 Oct 2008 13:44:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/pgp-9">pgp-9</category>
      <category domain="http://securityratty.com/tag/pgp">pgp</category>
      <category domain="http://securityratty.com/tag/install pgp-9">install pgp-9</category>
      <category domain="http://securityratty.com/tag/pgp-8">pgp-8</category>
      <category domain="http://securityratty.com/tag/upgrade pgp">upgrade pgp</category>
      <category domain="http://securityratty.com/tag/popimap network stack">popimap network stack</category>
      <category domain="http://securityratty.com/tag/network stack">network stack</category>
      <category domain="http://securityratty.com/tag/lot easier">lot easier</category>
      <category domain="http://securityratty.com/tag/upgrade">upgrade</category>
      <source url="http://feeds.feedburner.com/~r/SecurityRetentive/~3/426964111/frustration-with-pgp-96-and-networking.html">Frustration with PGP-9.6 and networking</source>
    </item>
    <item>
      <title><![CDATA[Flash 10 Fixes Clickjacking Flaw]]></title>
      <link>http://securityratty.com/article/7466eca5f91107c96844d79b2e110ddd</link>
      <guid>http://securityratty.com/article/7466eca5f91107c96844d79b2e110ddd</guid>
      <description><![CDATA[Not long after &quot;clickjacking&quot; attacks appeared several weeks ago it became clear that the culprit was Adobe's Flash. And the problem, as we say in the software biz, wasn't a bug, it was a feature....]]></description>
      <content:encoded><![CDATA[Not long after <a href="http://securitywatch.eweek.com/vulnerability_research/clickjacking_browser_attack_details_emerge.html">"clickjacking" attacks appeared several weeks ago</a> it became clear that the culprit was Adobe's Flash. And the problem, as we say in the software biz, wasn't a bug, it was a feature. This feature has been modified in <a href="http://www.eweek.com/c/a/Application-Development/Adobe-Releases-Flash-Player-10/">the new Flash 10 player</a> to address the problem.

The problem is clipboard access. By default, Flash 9 allowed a Flash program to read and write to the clipboard. "Clickjacking" attacks took advantage of this to persistently stuff a value. usually a malicious URL, into the clipboard, in the hope the user would visit it. The attack is as cross-platform as Flash, working on Macs as well as Windows.

In Flash 10 the clipboard methods will only work when called through ActionScript which originates with a user action, like pressing a button. No longer will a silent Flash app be able to hijack the clipboard completely without the user noticing.

This change was just one of <a href="http://www.adobe.com/devnet/flashplayer/articles/fplayer10_security_changes.html">many security changes in the Flash 10 player</a>. Changes in how Flash handles policy files means that developers will have to address their use of them. Errors on socket connect() calls will be handled differently. And much in the same philosophy as with clipboards, file uploads and downloads may only occur in script that begins with a user action. There are other changes as well.

The flip side of this fix is that it is not implemented in Flash 9. This means that the only way to escape clickjacking attacks is to upgrade to Flash 10.
<p><a href="http://feedads.googleadservices.com/~a/FtymtK-1YQe4YgTHIvGH8JR05Ck/a"><img src="http://feedads.googleadservices.com/~a/FtymtK-1YQe4YgTHIvGH8JR05Ck/i" border="0" ismap="true"></img></a></p><img src="http://feedproxy.google.com/~r/RSS/cheap_hack/~4/58cVGsWzlbk" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 16 Oct 2008 10:07:56 +0000</pubDate>
      <category domain="http://securityratty.com/tag/flash">flash</category>
      <category domain="http://securityratty.com/tag/silent flash app">silent flash app</category>
      <category domain="http://securityratty.com/tag/flash program">flash program</category>
      <category domain="http://securityratty.com/tag/clipboard">clipboard</category>
      <category domain="http://securityratty.com/tag/clipboard methods">clipboard methods</category>
      <category domain="http://securityratty.com/tag/user">user</category>
      <category domain="http://securityratty.com/tag/user action">user action</category>
      <category domain="http://securityratty.com/tag/clipboard access">clipboard access</category>
      <category domain="http://securityratty.com/tag/clipboard completely">clipboard completely</category>
      <source url="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~3/58cVGsWzlbk/flash_10_fixes_clickjacking_flaw.html">Flash 10 Fixes Clickjacking Flaw</source>
    </item>
    <item>
      <title><![CDATA[Infoblox upgrade thwarts DNS attacks]]></title>
      <link>http://securityratty.com/article/35e2874dd0125f61b328a6070e0c60d2</link>
      <guid>http://securityratty.com/article/35e2874dd0125f61b328a6070e0c60d2</guid>
      <description><![CDATA[IP address management vendor Infoblox has upgraded its core network services appliances with security capabilities that guard against DNS...]]></description>
      <content:encoded><![CDATA[IP address management vendor Infoblox has upgraded its core network services appliances with security capabilities that guard against DNS attacks.<p><A href="http://ad.doubleclick.net/jump/idg.us.nwf.rss/security;sz=468x60;ord=47704?">
<IMG src="http://ad.doubleclick.net/ad/idg.us.nwf.rss/security;sz=468x60;ord=47704?" border="0" width="468" height="60"></A>
</p>]]></content:encoded>
      <pubDate>Sun, 28 Sep 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/dns attacks">dns attacks</category>
      <category domain="http://securityratty.com/tag/security capabilities">security capabilities</category>
      <category domain="http://securityratty.com/tag/guard">guard</category>
      <source url="http://www.networkworld.com/news/2008/092908-infoblox-dns-attacks.html?fsrc=rss-security">Infoblox upgrade thwarts DNS attacks</source>
    </item>
    <item>
      <title><![CDATA[A Diverse Portfolio of Fake Security Software - Part Six]]></title>
      <link>http://securityratty.com/article/c31e0991fc6f93e70c9a40cf1ca74ce2</link>
      <guid>http://securityratty.com/article/c31e0991fc6f93e70c9a40cf1ca74ce2</guid>
      <description><![CDATA[Thanks to misconfigured traffic management kits, not taking advantage of all the built-in features that could have made a research a little bit more time consuming, here are the latest fake security...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SNqkjX8i0oI/AAAAAAAACLY/oW2_WhlJhfg/s1600-h/fake_security_software_september.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="189" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SNqkjX8i0oI/AAAAAAAACLY/zHIGkRoi5jM/s200-R/fake_security_software_september.JPG" width="200" /></a>Thanks to misconfigured traffic management kits, not taking advantage of all the built-in features that could have made a research a little bit more time consuming, here are the latest fake security software domains popping up at the end of fake adult content sites :<br />
<br />
<b>anti-spyware8 .com<br />
anti-spyware4 .com<br />
anti-spyware11 .com<br />
anti-spyware10 .com</b><br />
<b>antivirus-cs1 .com<br />
antivirus-cs14 .com<br />
antivirus-cs4 .com<br />
antivirus-cs15 .com<br />
antivirus-cs5 .com<br />
antivirus-cs7 .com<br />
antivirus-cs8 .com<br />
antivirus-cs9 .com<br />
trustedpaymenssite .com<br />
altawebgl-500 .com<br />
masterspitetds09 .com<br />
protectionaudit .com<br />
prt3ctionactiv3scan .com<br />
prtectionactivescan .com<br />
smartantivirusv2 .com<br />
smartantivirus2009v2 .com<br />
smartantivirus2009v2-buy .com<br />
smartantivirus-2009v2buy .com<br />
smart-antivirus2009v2buy .com<br />
anti-virus-xp .com<br />
anti-virus-xp .net<br />
e-antiviruspro .com<br />
ultimate-anti-virus .com <br />
antimalwarewarrior2009 .com</b><br />
<b>spyware-buy .com<br />
superantivirus2009 .com<br />
total-secure2009 .com<br />
pcprivacycleanerpro .com<br />
bestguardownload .com<br />
trustedantivirus .com<br />
antivirus-buy1 .com<br />
spyware-quickscan-2008 .com<br />
securealertbar .com<br />
secureclick1 .com<br />
megantivirus2009 .com <br />
micro-antivirus2008 .com<br />
superantivirus2009 .com <br />
advanced-anti-virus .com&nbsp; <br />
antivirusmaster2009 .com&nbsp; <br />
scanner-online1 .com<br />
internet-scanner2009 .com<br />
filescheck-list303 .com<br />
virus-webscanner .com<br />
virus9-webscanner .com<br />
spamnuker .com<br />
detect-file101 .com<br />
googlescanners-360 .com<br />
onlinescannersite9 .com<br />
bestantivirusscan .com<br />
hottystars .com<br />
internet-defenses .com<br />
globals-advers .com<br />
quickupdates29 .com<br />
myscanners101 .com<br />
myfreescan500 .com<br />
scanthnet .com<br />
scanners-pro .com<br />
megatradetds0 .com<br />
xp-licensingpages .com<br />
bestantivirusscan .com</b><br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://1.bp.blogspot.com/_wICHhTiQmrA/SNrGyIp8TvI/AAAAAAAACLg/6ZPTklX3YhA/s1600-h/fake_security_software_september_2.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="110" src="http://1.bp.blogspot.com/_wICHhTiQmrA/SNrGyIp8TvI/AAAAAAAACLg/23VCO4Xvlv8/s200-R/fake_security_software_september_2.JPG" width="200" /></a><b>power-avc .com<br />
pvrantivirus .com<br />
online-xp-antivirus-checker .com<br />
antivir-online-scan .com<br />
online-win-xpantivirus .com<br />
tube-911 .com<br />
favoredmovie .com<br />
getqtysoftware .com<br />
softwareportal2008 .com<br />
megazcodec .com<br />
soft-upgrade-network .com<br />
download-base .com<br />
fastsoftdownloads .com<br />
software-downloadz .com<br />
download-soft-basez .com<br />
plupdate .com<br />
0scan .com<br />
virus-online-scan .com<br />
0scanner .com<br />
porno-tds .com<br />
jirolu .com<br />
virus-online-scanz .com<br />
red-tubbe .info<br />
win-xp-antivir-hqscanne .com<br />
xp-protections .com<br />
xp-registration .com<br />
xp2008-protect .com<br />
getdefender2009 .com<br />
gettotalsec2008 .com<br />
msantivirus-xp .com<br />
xp-licensingpages .com<br />
protectionpurchase .com<br />
winxp-antivir-on-line-scan .com <br />
antispychecker .com<br />
errorofbrowser .com<br />
fresh-video-news .com<br />
newschannel2008 .com<br />
internet--daily-news .com<br />
secure.signupsecurity .com<br />
xpacodec .com<br />
xpbcodec .com<br />
gmkvideo .com<br />
hqsextube08 .com<br />
antivirusworld9 .com<br />
viacodecright1 .com<br />
viacodecright2 .com<br />
quickupdates29 .com<br />
antivirusworld9 .com<br />
scanthnet .com<br />
city-codec .com<br />
citycodec .net<br />
codecdownload.anothersoftportal09 .com<br />
viacodecright2 .com<br />
sextubecodec023dfs41 .com<br />
hot-sextubedriver2 .com<br />
viacodecright2 .com</b><br />
<br />
The Diverse Portfolio of Fake Security Software series are prone to continue taking a bite out of cybercrime, and the people who distribute them on a affiliation based revenue sharing model. <br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2008/08/fake-porn-sites-serving-malware-part.html">Fake Porn Sites Serving Malware - Part Three</a><br />
<a href="http://ddanchev.blogspot.com/2008/07/fake-porn-sites-serving-malware-part.html">Fake Porn Sites Serving Malware - Part Two</a><br />
<a href="http://ddanchev.blogspot.com/2008/06/fake-porn-sites-serving-malware.html">Fake Porn Sites Serving Malware</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/estdomains-and-intercage-vs-cybercrime.html">EstDomains  and Intercage VS Cybercrime</a><br />
<a href="http://ddanchev.blogspot.com/2008/08/fake-security-software-domains-serving.html">Fake  Security Software Domains Serving Exploits</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security.html">A Diverse Portfolio of Fake Security Software - Part Five</a> <br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security_25.html">A  Diverse Portfolio of Fake Security Software - Part Four</a><br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security_20.html">A  Diverse Portfolio of Fake Security Software - Part Three</a><b> </b><br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security.html">A  Diverse Portfolio of Fake Security Software - Part Two</a><br />
<a href="http://ddanchev.blogspot.com/2008/04/localized-fake-security-software.html">Localized  Fake Security Software</a><br />
<a href="http://ddanchev.blogspot.com/2007/12/diverse-portfolio-of-fake-security.html">Diverse  Portfolio of Fake Security Software</a><br />
<a href="http://ddanchev.blogspot.com/2008/05/got-your-xpshield-up-and-running.html">Got  Your XPShield Up and Running?</a><br />
<a href="http://ddanchev.blogspot.com/2008/05/fake-pestpatrol-security-software.html">Fake  PestPatrol Security Software</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/rbns-fake-security-software.html">RBN's  Fake Security Software</a><br />
<a href="http://ddanchev.blogspot.com/2008/07/lazy-summer-days-at-ukrtelegroup-ltds.html">Lazy  Summer Days at UkrTeleGroup Ltd</a><br />
<a href="http://ddanchev.blogspot.com/2008/02/geolocating-malicious-isps.html">Geolocating  Malicious ISPs</a><br />
<a href="http://ddanchev.blogspot.com/2008/06/malicious-isps-you-rarely-see-in-any.html">The  Malicious ISPs You Rarely See in Any Report</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=fl5WL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=fl5WL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=limgL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=limgL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=DSqtl"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=DSqtl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rGI5l"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rGI5l" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=BE6sL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=BE6sL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=9HuVL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=9HuVL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=44Tvl"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=44Tvl" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/402243350" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 24 Sep 2008 14:29:31 +0000</pubDate>
      <category domain="http://securityratty.com/tag/fake security software">fake security software</category>
      <category domain="http://securityratty.com/tag/diverse portfolio">diverse portfolio</category>
      <category domain="http://securityratty.com/tag/fake porn sites">fake porn sites</category>
      <category domain="http://securityratty.com/tag/malicious isps">malicious isps</category>
      <category domain="http://securityratty.com/tag/affiliation based revenue">affiliation based revenue</category>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/viacodecright2">viacodecright2</category>
      <category domain="http://securityratty.com/tag/lazy summer days">lazy summer days</category>
      <category domain="http://securityratty.com/tag/traffic management kits">traffic management kits</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/402243350/diverse-portfolio-of-fake-security_24.html">A Diverse Portfolio of Fake Security Software - Part Six</source>
    </item>
  </channel>
</rss>
