<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; General News</title>
	<atom:link href="http://www.darknet.org.uk/category/general-news/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>More Cyberterrorism &#8211; Taiwan Political Party Accuses China of Hacking</title>
		<link>http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/</link>
		<comments>http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/#comments</comments>
		<pubDate>Tue, 09 Aug 2011 16:34:30 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chinese government hackers]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[cyber attacks]]></category>
		<category><![CDATA[cyber-terrorism]]></category>
		<category><![CDATA[cyberterrorism]]></category>
		<category><![CDATA[tawain]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3166</guid>
		<description><![CDATA[Well there hasn&#8217;t been a whole lot of news the last couple of days apart from the London riots &#8211; which don&#8217;t have much of a technical spin. The only technical part is that the looters/rioters etc seem to be organizing themselves using BBM (BlackBerry Messenger) and Twitter. The former being rather smart as it&#8217;s [...]]]></description>
			<content:encoded><![CDATA[<p>Well there hasn&#8217;t been a whole lot of news the last couple of days apart from the London riots &#8211; which don&#8217;t have much of a technical spin. The only technical part is that the looters/rioters etc seem to be organizing themselves using BBM (BlackBerry Messenger) and Twitter.</p>
<p>The former being rather smart as it&#8217;s encrypted and sent via a 3rd party network &#8211; so it&#8217;s not open to wiretapping. It&#8217;s unlikely the tracksuit wearing chavs &#038; hoodies know that, but still &#8211; it&#8217;s keeping them safe. Posting videos/pictures of themselves on public Twitter and Facebook accounts is not so smart though and will surely lead to some arrests.</p>
<p>Anyway that&#8217;s not the topic here, the topic here is another politically motivated hacking attack &#8211; what we would commonly call <a href="http://www.darknet.org.uk/tag/cyberterrorism/" title="Cyberterrorism">cyberterrorism</a>.</p>
<blockquote><p>A Taiwanese political party suspects the Chinese government is behind a hacking attack that stole information about the party&#8217;s election activities.</p>
<p>Taiwan&#8217;s Democratic Progressive Party (DPP) said on Tuesday that some of the attacks had been traced to China&#8217;s Xinhua News Agency, a state-run press group. The attack operated as a phishing campaign, in which DPP staffers were sent e-mails by hackers who attempted to impersonate other party employees. The staffers were then told to open the e-mail attachments, which secretly contained viruses to monitor the computers, a DPP spokeswoman said.</p>
<p>The DPP alleges the attacks were routed from the Xinhua News Agency through Malaysia and Australia. The attacks were also traced to IP addresses from the Chinese mainland. The Xinhua News Agency was contacted for response, but has yet to an issue a comment.</p>
<p>IT security experts have said the attacks were part of a state-sponsored hacking attempt, according to the DPP. &#8220;Already many countries and security groups have said the attacks from China&#8217;s cyber army are well organized and that a state actor guides and supports them,&#8221; the DPP said in statement issued on the party&#8217;s website. </p></blockquote>
<p>As we all know, Taiwan and <a href="http://www.darknet.org.uk/tag/china/">China</a> are not really the best of friends with China claiming Taiwan to be part of it and Taiwan not quite agreeing. In China they fully act like Taiwan is just another state/province in China.</p>
<p>This time it seems to be a state run Chinese news agency (Xinhua) attacking Taiwan&#8217;s Democratic Progressive Party (commonly know as DPP).</p>
<p>These are of course at this time just claims, and it&#8217;ll probably stay that way as there&#8217;s no conclusive proof in these kind of situations.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>China is already in the spotlight for cyber attacks after security vendor McAfee reported a massive cyber attack that stole sensitive information from 72 companies and organizations. Although McAfee did not name the group behind the hacking attempts, security experts have pointed fingers at China because of the organizations targeted. China, however, has repeatedly denied it sponsors any kind of hacking.</p>
<p>A DPP spokeswoman said the phishing attacks have been an ongoing problem, but that it appears more of the recent hacking attempts have been coming from China.</p>
<p>Taiwan and China separated in 1949 after a civil war. While China&#8217;s ruling communist party seeks for reunification with the island, the DPP supports Taiwan becoming its own nation, putting the two at odds with one another.</p>
<p>The DPP said on Tuesday it also traced hacking attempts to Taiwan&#8217;s own Research, Development and Evaluation Commission and called for the commission to investigate. The commission could not be reached for immediate comment. </p></blockquote>
<p>China have been in the spotlight fairly recently with some very widespread phishing attacks including &#8211; <a href="http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/">Targeted Phishing Attacks Carried Out On Gmail – Likely From China</a>.</p>
<p>It seems like these kinds of games will be going on forever including hacktivism, cyberterrorism, defacement in the name of certain causes and all kinds of other naughty business.</p>
<p>With so much information on computers now it&#8217;s no surprise, I&#8217;d like to see these kind of organisations having better infosec policies though including awareness training for all staff with access to e-mail accounts and computers.</p>
<p>Source: <a href="http://www.networkworld.com/news/2011/080911-taiwan-political-party-accusses-china.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3166+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;t=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F08%2Fmore-cyberterrorism-taiwan-political-party-accuses-china-of-hacking%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>AnonPlus/Anon+ &#8211; The Anonymous Social Network</title>
		<link>http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/</link>
		<comments>http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/#comments</comments>
		<pubDate>Mon, 18 Jul 2011 10:47:14 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[anon]]></category>
		<category><![CDATA[anon social network]]></category>
		<category><![CDATA[anonops]]></category>
		<category><![CDATA[anonplus]]></category>
		<category><![CDATA[anonymous]]></category>
		<category><![CDATA[anonymous social network]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3149</guid>
		<description><![CDATA[We&#8217;ve reported a few times on the Anonymous collective, with the most recent being the rumoured attacks by Anonymous against the Malaysian Government. The latest story is following Google+ banning numerous Anonymous members, they have spawned their own social network called Anon+/Anonplus. As is normal with these things, it&#8217;d hard to say if it really [...]]]></description>
			<content:encoded><![CDATA[<p>We&#8217;ve reported a few times on the <a href="http://www.darknet.org.uk/tag/anonymous/" title="Anonymous">Anonymous</a> collective, with the most recent being the rumoured <a href="http://www.darknet.org.uk/2011/06/malaysia-government-sites-under-attack-from-anonymous/" title="Malaysia Government Sites Under Attack From Anonymous">attacks by Anonymous against the Malaysian Government</a>.</p>
<p>The latest story is following <a href="https://plus.google.com/" title="Google+">Google+</a> banning numerous Anonymous members, they have spawned their own social network called <a href="http://anonplus.com/" title="AnonPlus">Anon+/Anonplus</a>.</p>
<p>As is normal with these things, it&#8217;d hard to say if it really has anything to do with Anonymous or not &#8211; the &#8216;official&#8217; Anonymous <a href="https://twitter.com/#!/anonops">Twitter</a> and <a href="http://anonops.blogspot.com/">Blog</a> accounts have not mentioned Anon+ &#8211; so make of it what you will.</p>
<blockquote><p>The story so far is that Anonymous – or someone associated with Anonymous, or someone cynically riding on the back of Anonymous, who knows? – has set up a site that will offer some kind of social network.</p>
<p>According to TechSpot, the idea (and the “Alpha” Website, anonplus.com) arose when Google+ allegedly banned an unknown number of Anonymous members. The Anonplus site is couched in Anonymous’s usual grandiose phraseology – “they will know that we have arrived. There will be no oppression. There will be no more tyranny. We are the people and we are Anonymous.”</p>
<p>Fair enough. Anyone’s got the right to set up a social network if they want, and they have the right to claim to act on behalf of others, regardless of how accurate that claim may be. But the idea of a completely anarchic, “no tyranny, no oppression” (defined in whose terms?) social network offers some interesting self-contradictions to resolve.</p>
<p>I’ll grant that the world of corporate social networks is a nightmare of “tyranny and oppression” – so much so that the success of Facebook and the excitement over Google+ mystifies me.</p>
<p>Facebook bans a Google+ ad at the drop of a hat, but turns into a nearly-immovable object if asked to help deal with abusive commenters (who, for example, infest tribute pages to the dead). Google+ demands an understanding of 37 different privacy statements. Social networks are not just tyrannical, they’re also a “confusopoly” whose success depends on nobody being able to decode the rules they’ve promised to follow.</p></blockquote>
<p>It&#8217;s an interesting concept though and could gain some traction amongst the tin-foil hat wearing, conspiracy theorists on the net. Those who are probably already surfing with Tor and multiple proxies.</p>
<p>As for the rest of us? I&#8217;d imagine we&#8217;ll be sticking with <a href="http://www.darknet.org.uk/tag/facebook/" title="Facebook">Facebook</a>, Twitter and Google+.</p>
<p>There are plenty of people out there who are uncomfortable surrendering so much information to large companies like Google and to closed networks like Facebook, but maybe Anon+ is just a joke &#8211; who knows really.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>Anonymous’s intervention – to me, a much more welcome intervention than the group’s inability to distinguish between targets, slapping the small and mighty with equal abandon and claiming equal credit whether they’ve defeated a flea-bite nobody or a US military operation – may or may not succeed, but it raises an interesting question.</p>
<p>What’s the line separating rules that are necessary for a social network to function from rules that are oppressive; and when does one become the other?</p>
<p>All social interactions are government by rules of some kind. They may be tight or loose, consensual or tyrannical, explicit or implicit, designed or evolved, but the rules exist, whether or not you follow them (or even acknowledge them).</p>
<p>If all you do is hold a conversation with someone, you will follow at least one rule – the two of you will hold the conversation in languages comprehensible to you both. The interaction won’t happen without that minimum rule.</p>
<p>“If we hack something, we publish it” is a rule for Anonymous – written or not. “There will be no tyranny” is a rule of interaction.</p>
<p>And even Anonplus.com must have, at minimum, one rule: “anybody may join”. The group itself has implied a second rule, that nobody be censored or blacked out.</p>
<p>Censorship provides a convenient handle on which I can hang a question about rules: censorship by whom? Sure, it’s clear that “Anonplus” won’t censor the statements or posts of its users – but what of those users who would wish to constrain, censor or silence other users?</p>
<p>Such people exist in every large group – whether they merely seek to shout down dissent or, since this is the Internet, if they seek to silence those they don’t like by hacking their profiles.</p></blockquote>
<p>But it does say on the site, the network is not just intended for Anonymous members &#8211; it&#8217;s for everyone. Well everyone that supports the free Internet with no tyranny and no censorship, that seems to be the goal.</p>
<p>You can check out the development forum for Anon+ here:</p>
<p><a href="http://anonplus.presstorm.com/">http://anonplus.presstorm.com/</a></p>
<p>It seems like <a href="http://presstorm.com/">Presstorm</a> has something to do with it, with the forum being hosted under their domain, and the announcement post here: <a href="http://presstorm.com/2011/07/investigative-innovation-anonymous-and-presstorm-present-anon/">Investigative Innovation: Anonymous and Presstorm Present – Anon+</a>.</p>
<p>Source: <a href="http://www.theregister.co.uk/2011/07/18/anonymous_social_network/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=AnonPlus%2FAnon%2B+%E2%80%93+The+Anonymous+Social+Network+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3149+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/&amp;t=AnonPlus%2FAnon%2B+%E2%80%93+The+Anonymous+Social+Network" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/&amp;title=AnonPlus%2FAnon%2B+%E2%80%93+The+Anonymous+Social+Network" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/&amp;title=AnonPlus%2FAnon%2B+%E2%80%93+The+Anonymous+Social+Network" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/&amp;title=AnonPlus%2FAnon%2B+%E2%80%93+The+Anonymous+Social+Network" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/&amp;title=AnonPlus%2FAnon%2B+%E2%80%93+The+Anonymous+Social+Network" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F07%2Fanonplusanon-the-anonymous-social-network%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/07/anonplusanon-the-anonymous-social-network/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Sony Rebuilding PlayStation Network (PSN) &#8211; Down 4 Days So Far</title>
		<link>http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/</link>
		<comments>http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/#comments</comments>
		<pubDate>Mon, 25 Apr 2011 10:08:59 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[playstation network]]></category>
		<category><![CDATA[playstation network hack]]></category>
		<category><![CDATA[ps3]]></category>
		<category><![CDATA[ps3 security]]></category>
		<category><![CDATA[psn]]></category>
		<category><![CDATA[psn hack]]></category>
		<category><![CDATA[qriocity]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[sony]]></category>
		<category><![CDATA[sony hack]]></category>
		<category><![CDATA[sony hacked]]></category>
		<category><![CDATA[sony playstation network]]></category>
		<category><![CDATA[sony psn]]></category>
		<category><![CDATA[sony security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3101</guid>
		<description><![CDATA[There&#8217;s been a few big stories in the past few days, one is of course the whole iPhone geo-location data tracking thing &#8211; but everyone was too busy checking into Foursquare to complain about that. The other is that the Sony PlayStation Network (PSN) basically got hacked, owned and raped. It&#8217;s still currently down and [...]]]></description>
			<content:encoded><![CDATA[<p>There&#8217;s been a few big stories in the past few days, one is of course the whole <a href="http://www.darknet.org.uk/tag/iphone/">iPhone</a> geo-location data tracking thing &#8211; but everyone was too busy checking into Foursquare to complain about that.</p>
<p>The other is that the Sony PlayStation Network (PSN) basically got hacked, owned and raped. It&#8217;s still currently down and according to <a href="http://www.darknet.org.uk/tag/sony/">Sony</a> is being completely rebuilt to be more secure, so far it&#8217;s been down for 4 days.</p>
<blockquote><p>The outage of Sony&#8217;s PlayStation Network and Qriocity service, now in its fourth day, looks set to continue after the company said on Sunday that it is &#8220;rebuilding&#8221; its system to better guard against attacks.</p>
<p>Sony said on Saturday that the outage was caused by an &#8220;external intrusion&#8221; into the network, but has yet to detail the problem.</p>
<p>The PlayStation Network is used for PlayStation 3 online gaming and sales of software to consoles and the PlayStation Portable. The Qriocity service runs on the same network infrastructure and provides audio and video to Sony consumer electronics products. The latest update, while not explaining the intrusion, pointed towards it being relatively sophisticated.</p>
<p>&#8220;Our efforts to resolve this matter involve rebuilding our system to further strengthen our network infrastructure,&#8221; the company said in a statement. &#8220;Though this task is time-consuming, we decided it was worth the time necessary to provide the system with additional security.&#8221; </p></blockquote>
<p>I bet there&#8217;s a lot of gaming addicts out there jonesing to get their fix, I&#8217;d imagine it&#8217;s a top priority for Sony to get this back up and running especially as they were planning to major updates. They haven&#8217;t as yet given any kind of indication as to how long it&#8217;s going to take them to fix it.</p>
<p>I&#8217;d estimate they should be done before the end of this week, more than 7 days down is suicide for this kind of online model.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>Sony said it is &#8220;working around the clock to bring them both back online,&#8221; but didn&#8217;t say when they might return. Phone calls to the company&#8217;s Tokyo headquarters went unanswered on Sunday.</p>
<p>&#8220;We thank you for your patience to date and ask for a little more while we move towards completion of this project,&#8221; the statement said.</p>
<p>The outage has left PlayStation 3 owners unable to play online games. Networked gaming, in which gamers collaborate with others in real-time battles, challenges and quests, is very popular and typically enjoyed by millions, especially over the weekend. </p></blockquote>
<p>I&#8217;d imagine we&#8217;ll be seeing some kinda of announcement by Sony about this fairly shortly &#8211; they can&#8217;t be leaving millions of frustrated gamers in the dark. I&#8217;d be interested to see some kind of details regarding the intrusion too.</p>
<p>How did they get in? How serious was it? Did they use some kind of mythical 0-day exploit?</p>
<p>From what we know about Sony though, I wouldn&#8217;t hold your breath on the details..</p>
<p>Source: <a href="http://www.networkworld.com/news/2011/042411-sony-rebuilding-playstation-network-after.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Sony+Rebuilding+PlayStation+Network+%28PSN%29+%E2%80%93+Down+4+Days+So+Far+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3101+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/&amp;t=Sony+Rebuilding+PlayStation+Network+%28PSN%29+%E2%80%93+Down+4+Days+So+Far" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/&amp;title=Sony+Rebuilding+PlayStation+Network+%28PSN%29+%E2%80%93+Down+4+Days+So+Far" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/&amp;title=Sony+Rebuilding+PlayStation+Network+%28PSN%29+%E2%80%93+Down+4+Days+So+Far" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/&amp;title=Sony+Rebuilding+PlayStation+Network+%28PSN%29+%E2%80%93+Down+4+Days+So+Far" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/&amp;title=Sony+Rebuilding+PlayStation+Network+%28PSN%29+%E2%80%93+Down+4+Days+So+Far" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F04%2Fsony-rebuilding-playstation-network-psn-down-4-days-so-far%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/04/sony-rebuilding-playstation-network-psn-down-4-days-so-far/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Web Hacking Incident Database Shows DoS Attacks On The Rise</title>
		<link>http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/</link>
		<comments>http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/#comments</comments>
		<pubDate>Thu, 17 Mar 2011 14:09:38 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[anonymous]]></category>
		<category><![CDATA[defacement]]></category>
		<category><![CDATA[hacker activism]]></category>
		<category><![CDATA[hacktivism]]></category>
		<category><![CDATA[information theft]]></category>
		<category><![CDATA[spiderlabs]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[web attack stats]]></category>
		<category><![CDATA[web hacking incident database]]></category>
		<category><![CDATA[web incidents]]></category>
		<category><![CDATA[whid]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3071</guid>
		<description><![CDATA[It seems like the formidable Anonymous army has managed to change the weighting of stats collected by the Web Hacking Incident Database (WHID) with it&#8217;s vast array of DDoS attacks. We&#8217;ve reported on a couple of them like back in December when the WikiLeaks Attacks Caused Rival DDoS Retaliation. There have been a whole lot [...]]]></description>
			<content:encoded><![CDATA[<p>It seems like the formidable <a href="http://www.darknet.org.uk/tag/anonymous/">Anonymous</a> army has managed to change the weighting of stats collected by the Web Hacking Incident Database (WHID) with it&#8217;s vast array of <a href="http://www.darknet.org.uk/tag/ddos/">DDoS</a> attacks.</p>
<p>We&#8217;ve reported on a couple of them like back in December when the <a href="http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/">WikiLeaks Attacks Caused Rival DDoS Retaliation</a>. There have been a whole lot of other attack types going as usual though with <a href="http://www.darknet.org.uk/tag/sql-injection/">SQL Injection</a> and <a href="http://www.darknet.org.uk/tag/xss/">XSS (Cross Site Scripting)</a> making up the to the top 3 with DDoS Attacks.</p>
<p>But if you haven&#8217;t worried about it before, perhaps now is the time to look into prevention/protection against <a href="http://www.darknet.org.uk/tag/denial-of-service/">denial-of-service</a> attacks.</p>
<blockquote><p>Driven by the hacktivism of the loose-knit Anonymous group, denial-of-service attacks surged to the top of the list of Web incidents, outpacing SQL injection and cross-site scripting, according to a survey of publicly disclosed attacks.</p>
<p>The ongoing survey, known as the Web Hacking Incident Database, categorized 222 incidents in 2010 and found that attackers aimed to take down the Web sites in a third of the incidents, while defacement accounted for 15 percent of attacks and stealing information was the goal in 13 percent of incidents. Unsurprisingly, the popular goal of causing downtime meant that denial-of-service attacks accounted for about a third of attack types, followed by SQL injection (21 percent) and cross-site scripting (9 percent).</p>
<p>In many industry reports, denial-of-service is not even on the list, but companies should worry about such brute-force tactics, says Ryan Barnett, a senior security researchers with security firm Trustwave&#8217;s SpiderLabs, who manages the WHID project. &#8220;You need to re-prioritize because Web servers are actively being targeted with denial-of-service attacks,&#8221; says Barnett.</p></blockquote>
<p>Simple tools like <a href="http://www.darknet.org.uk/2009/06/slowloris-http-dos-tool-in-perl/">Slowloris</a> can give even the most robust web sites a big headache. Of course you also have to make sure you are secured against SQL Injection and any other kind of web attacks that can comprise your up-time or data.</p>
<p>According to the data different industries need to be prepared for different kinds of attacks, obviously skilled attackers will focus different ways of compromising hosts in different sectors.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>Yet, different industries should also worry about different types of attacks, he says. Attackers focus on stealing money from financial firms using stolen credentials, according to the WHID data. They also tend to focus on defacing government sites and stealing credit-card numbers from retailers, using SQL injection in both cases, according to the WHID. The latter two relationships are weaker, however: While those are the most popular goals for attackers, each only accounts for a bit more than a quarter of attacks against the particular vertical. Money is the goal in two-thirds of attacks against financials.</p>
<p>&#8220;The outcomes and attacks and weaknesses are different, so depending on what market you are in, we have a pool of attacks that worked,&#8221; says Barnett. &#8220;So CSOs should pick out examples in their market because those are most applicable to them.&#8221;</p>
<p>Attackers&#8217; focus on downtime means that corporate CSOs need to make sure that they can handle Web-specific denial-of-service attacks. Many times such attack focus on flooding the Web servers, but low-and-slow attacks are becoming more popular and require a different defense.</p>
<p>&#8220;Many of these organizations foolishly think that the network security gear that they have to handle the lower level DOSing floods will take care of this and it won&#8217;t,&#8221; Barnett says. &#8220;The overall amount of traffic that you have to send to take down the Web server is a lot less, and it looks legitimate.&#8221; </p></blockquote>
<p>Downtime has gotta be one of the worst types of attack, especially for e-tailers or online vendors. Yah theft of credentials is bad, but honestly &#8211; most of the time those attacks aren&#8217;t even disclosed and no-one knows about them.</p>
<p>And from what I&#8217;ve seen most companies seem to think sticking a mid-range firewall in front of whatever they are doing is the be all and end all of security &#8211; it&#8217;ll protect their applications, their data, their organisation&#8230;and so on.</p>
<p>How misguided they are.</p>
<p>Source: <a href="http://www.networkworld.com/news/2011/031511-web-attackers-deface-govt-sites.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Web+Hacking+Incident+Database+Shows+DoS+Attacks+On+The+Rise+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3071+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/&amp;t=Web+Hacking+Incident+Database+Shows+DoS+Attacks+On+The+Rise" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/&amp;title=Web+Hacking+Incident+Database+Shows+DoS+Attacks+On+The+Rise" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/&amp;title=Web+Hacking+Incident+Database+Shows+DoS+Attacks+On+The+Rise" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/&amp;title=Web+Hacking+Incident+Database+Shows+DoS+Attacks+On+The+Rise" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/&amp;title=Web+Hacking+Incident+Database+Shows+DoS+Attacks+On+The+Rise" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F03%2Fweb-hacking-incident-database-shows-dos-attacks-on-the-rise%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/03/web-hacking-incident-database-shows-dos-attacks-on-the-rise/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Adobe Promises Patch For Flash 0-day Being Used In Targeted Attacks</title>
		<link>http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/</link>
		<comments>http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/#comments</comments>
		<pubDate>Tue, 15 Mar 2011 10:30:57 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[General News]]></category>
		<category><![CDATA[0-day]]></category>
		<category><![CDATA[0day]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[adobe flash]]></category>
		<category><![CDATA[adobe flash security]]></category>
		<category><![CDATA[adobe security]]></category>
		<category><![CDATA[flash 0-day]]></category>
		<category><![CDATA[flash exploit]]></category>
		<category><![CDATA[flash security]]></category>
		<category><![CDATA[flash vulnerability]]></category>
		<category><![CDATA[flash zero day]]></category>
		<category><![CDATA[hacking-flash]]></category>
		<category><![CDATA[out of band patch]]></category>
		<category><![CDATA[zero-day]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3066</guid>
		<description><![CDATA[With all the new vulnerabilities with working exploits pouring out of Pwn2Own, I can&#8217;t say I expected to see another 0-day in Adobe Flash outside of the contest. It wasn&#8217;t that long ago (back in October 2010) when there was another Critical 0-day Vulnerability In Adobe Flash Player, Reader &#038; Acrobat and Adobe were scrambling [...]]]></description>
			<content:encoded><![CDATA[<p>With all the new vulnerabilities with working exploits pouring out of <a href="http://www.darknet.org.uk/tag/pwn2own/">Pwn2Own</a>, I can&#8217;t say I expected to see another 0-day in <a href="http://www.darknet.org.uk/tag/adobe-flash/">Adobe Flash</a> outside of the contest.</p>
<p>It wasn&#8217;t that long ago (back in October 2010) when there was another <a href="http://www.darknet.org.uk/2010/10/critical-0-day-vulnerability-in-adobe-flash-player-reader-acrobat/">Critical 0-day Vulnerability In Adobe Flash Player, Reader &#038; Acrobat</a> and <a href="http://www.darknet.org.uk/tag/adobe/">Adobe</a> were scrambling to fix it.</p>
<p>They are promising an out of band patch for this vulnerability as it&#8217;s marked as critical and has apparently been seen in the wild, but only in a few targeted attacks according to this blog post by Adobe:</p>
<p><a href="http://blogs.adobe.com/asset/2011/03/background-on-apsa11-01-patch-schedule.html">Background on APSA11-01 Patch Schedule</a></p>
<blockquote><p>Adobe Systems plans to release emergency patches for its Flash and Reader applications after learning a critical vulnerability is being exploited to install malware on vulnerable machines.</p>
<p>The out-of-cycle patches for Adobe Flash Player 10 and Acrobat and Reader versions 9, 10, and X will arrive during the week March 21, the company said on Monday. The updates will cover all versions of those programs except for Reader X for Windows, which ships with a security sandbox that blocks the exploits Adobe has observed so far.</p>
<p>The announcement comes after members of Adobe&#8217;s security team received reports of targeted attacks aimed “at a very small number of organizations and limited in scope” that “install persistent malware on the victim&#8217;s machine,” the company said in an advisory. The exploits wield a booby-trapped Flash file hidden inside a Microsoft Excel file attached to an email.</p>
<p>The attacks exploit an unspecified flaw in Flash Player for the Windows, Mac, Linux, Solaris and Android operating systems. Adobe security members are unaware of other types of attacks, such as those that plant the malicious Flash file in documents using the the PDF, or portable document format, specification.</p></blockquote>
<p>It&#8217;s a pretty tricky attack with multiple layers, it seems like the Flash exploit itself is embedded in an Excel file attached to e-mails. It looks like corporate users of Reader X will be out of luck as there is no patch for that version. But then <a href="http://www.darknet.org.uk/tag/adobe/">Adobe</a> states as Reader X comes with a sandbox the exploit won&#8217;t actually function anyway.</p>
<p>The patch is slated to come out next week sometime, there are no specifics as of yet &#8211; I guess it depends how long it takes them to fix the problem reliably. They are looking to rush the patch out though rather than waiting for the next cycle.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>“However, attackers have leveraged these type [sic] of Flash Player vulnerabilities in the past via .pdf files to attack the embedded authplay.dll component shipping with Adobe Reader and Acrobat v9,” Brad Arkin, Adobe&#8217;s senior director of product security and privacy, wrote. “Out of a preponderance of caution we took the decision to ship out-of-cycle updates for Adobe Reader and Acrobat v9, and Acrobat X to mitigate the risk of attackers shifting the attack from an .xls container to a .pdf container.”</p>
<p>The unscheduled patch won&#8217;t cover Reader X for Windows, because that recently released version of the program contains a Sandbox that isolates remotely supplied payloads from the OS&#8217;s core functions. As a result, the exploits Adobe has seen to date aren&#8217;t able to successfully execute on machines that run it. Many Reader users, particularly those in corporate settings, still run versions 10 or 9 of Reader, meaning they will remain vulnerable until the emergency patch is installed.</p>
<p>Excluding Reader X for Windows from the out-of-cycle release will allow Adobe engineers to publish it more quickly than it otherwise could. The fix for that version will be released on June 14, during Adobe&#8217;s next scheduled quarterly update.</p></blockquote>
<p>The Security Bulletin from Adobe is here:</p>
<p><a href="http://www.adobe.com/support/security/advisories/apsa11-01.html">Security Advisory for Adobe Flash Player, Adobe Reader and Acrobat</a></p>
<p>It has been assigned the CVE Number: CVE-2011-0609</p>
<p>Source: <a href="http://www.theregister.co.uk/2011/03/14/adobe_flash_reader_emergency_patch/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Adobe+Promises+Patch+For+Flash+0-day+Being+Used+In+Targeted+Attacks+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3066+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/&amp;t=Adobe+Promises+Patch+For+Flash+0-day+Being+Used+In+Targeted+Attacks" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/&amp;title=Adobe+Promises+Patch+For+Flash+0-day+Being+Used+In+Targeted+Attacks" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/&amp;title=Adobe+Promises+Patch+For+Flash+0-day+Being+Used+In+Targeted+Attacks" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/&amp;title=Adobe+Promises+Patch+For+Flash+0-day+Being+Used+In+Targeted+Attacks" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/&amp;title=Adobe+Promises+Patch+For+Flash+0-day+Being+Used+In+Targeted+Attacks" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F03%2Fadobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/03/adobe-promises-patch-for-flash-0-day-being-used-in-targeted-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gawker CTO Outlines Security Improvements Post Breach</title>
		<link>http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/</link>
		<comments>http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/#comments</comments>
		<pubDate>Tue, 21 Dec 2010 14:26:21 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Countermeasures]]></category>
		<category><![CDATA[General News]]></category>
		<category><![CDATA[gawker]]></category>
		<category><![CDATA[gawker hack]]></category>
		<category><![CDATA[gawker media]]></category>
		<category><![CDATA[gawker password breach]]></category>
		<category><![CDATA[gawker password hack]]></category>
		<category><![CDATA[gawker passwords]]></category>
		<category><![CDATA[gawker security]]></category>
		<category><![CDATA[gawker security improvements]]></category>
		<category><![CDATA[oauth]]></category>
		<category><![CDATA[tom plunkett]]></category>
		<category><![CDATA[two-factor authentication]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3019</guid>
		<description><![CDATA[An e-mail from the Gawker CTO (Tom Plunkett) has been posted online and it outlines the security improvements that Gawker are planning to implement after the recent massive breach of user passwords from their database. As we mentioned recently, the U.S. Federal Bureau of Investigation is looking into the Gawker breach, which just goes to [...]]]></description>
			<content:encoded><![CDATA[<p>An e-mail from the Gawker CTO (Tom Plunkett) has been posted online and it outlines the security improvements that Gawker are planning to implement after the recent massive breach of user passwords from their database.</p>
<p>As we mentioned recently, the <a href="http://www.darknet.org.uk/2010/12/fbi-investigating-gawker-media-user-database-password-ownage/">U.S. Federal Bureau of Investigation is looking into the Gawker breach</a>, which just goes to show how serious this case is.</p>
<p>The improvements are pretty standard security practice, but it just shows in these days of rapid development and the focus being on features rather than security &#8211; bad things can happen.</p>
<blockquote><p>Gawker Media&#8217;s CTO has outlined a series of security changes designed to shore up the company&#8217;s IT operations following an attack last week that compromised up to 1.4 million accounts.</p>
<p>The company was unprepared to respond to an attack in which user data and passwords were posted to peer-to-peer file-sharing networks, wrote Tom Plunkett in an e-mail memo to Gawker staff on Friday. The e-mail was reposted on Jim Romenesko&#8217;s blog on the Poynter journalism site. A group called Gnosis claimed responsibility for the hack, which exploited a flaw in the source code of Gawker&#8217;s Web servers.</p>
<p>&#8220;Our development efforts have been focused on new product while committing relatively little time to reviewing past work,&#8221; Plunkett wrote. &#8220;This is often a fatal mistake in software development and was central to this vulnerability.&#8221;</p>
<p>As a result, Gawker has done a security audit of the sites affected, which include Lifehacker, Gizmodo, Gawker, Jezebel, io9, Jalopnik, Kotaku, Deadspin and Fleshbot.</p>
<p>Gawker is now mandating the use of SSL (Secure Sockets Layer) encryption for employees with company accounts using Google Apps. Also, if those employees have access to sensitive legal, financial or account data, two-factor authentication must be used, Plunkett wrote. </p></blockquote>
<p>Most of the things would have been picked up if they had ever done any kind of internal ISMS audit (based perhaps on something like <a href="http://en.wikipedia.org/wiki/ISO/IEC_27001">ISO27001</a>) &#8211; which bans all chat applications except for Skype as that encrypts the chats.</p>
<p>Using things like <a href="http://www.darknet.org.uk/tag/ssl/">SSL</a> are pretty obvious and should be forced on all login pages on all web applications &#8211; with <a href="http://www.darknet.org.uk/2010/10/firesheep-social-network-session-stealinghijacking-tool/">FireSheep</a> bring that issues to the forefront recently.</p>
<p>I&#8217;d say the most sensible move would be considering moving away from the local database model and using something like OAuth &#8211; that would make sense.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>Gawker also will not allow employees to discuss sensitive information on chat applications, including AOL&#8217;s Instant Messenger and Campfire.</p>
<p>For users of its websites, Plunkett wrote that Gawker wants to move away from storing information such as e-mail and passwords and use systems such as OAuth.</p>
<p>OAuth is an authentication protocol that allows people to use the same login information for multiple services and share data through an API (application programming interfaces). OAuth provides a token that grants access to different applications, which do not see users&#8217; original login credentials. It is being used now by Google, Twitter and Facebook, among other services.</p>
<p>Gawker will also allow people to create a &#8220;disposable&#8221; account with its sites in order to leave comments. Gawker will not store e-mail addresses or passwords for those accounts. The accounts can be used as long as the person remembers a key code, Plunkett wrote.</p>
<p>Since the breach, Gawker has been in the process of notifying those who are affected and reminding them to change their passwords, especially if they used the same password for other Web services. Twitter saw a raft of spam soon after the Gawker breach, which illustrated that some people used the same password on both services. </p></blockquote>
<p>It&#8217;s good to see Gawker taking some pro-active measures rather than the normal arrogance we are used to. I think the disposable token based account is a good idea too as often I want to leave a comment on some site or another but the sign-up process, e-mail validation and so on puts me off.</p>
<p>I hope Gawker has gotten around to notifying everyone who had an account that was compromised as sadly many people use the same password and username/e-mail combo for all their online site accounts.</p>
<p>Source: <a href="http://www.networkworld.com/news/2010/122010-after-hack-gawker-cto-outlines.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Gawker+CTO+Outlines+Security+Improvements+Post+Breach+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3019+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/&amp;t=Gawker+CTO+Outlines+Security+Improvements+Post+Breach" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/&amp;title=Gawker+CTO+Outlines+Security+Improvements+Post+Breach" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/&amp;title=Gawker+CTO+Outlines+Security+Improvements+Post+Breach" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/&amp;title=Gawker+CTO+Outlines+Security+Improvements+Post+Breach" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/&amp;title=Gawker+CTO+Outlines+Security+Improvements+Post+Breach" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F12%2Fgawker-cto-outlines-security-improvements-post-breach%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/12/gawker-cto-outlines-security-improvements-post-breach/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WikiLeaks Attacks Cause Rival DDoS Retaliation</title>
		<link>http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/</link>
		<comments>http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/#comments</comments>
		<pubDate>Thu, 09 Dec 2010 12:57:27 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[4chan]]></category>
		<category><![CDATA[anonymous]]></category>
		<category><![CDATA[anonymous ddos]]></category>
		<category><![CDATA[anonymous ddos attacks]]></category>
		<category><![CDATA[ddos]]></category>
		<category><![CDATA[denial-of-service]]></category>
		<category><![CDATA[distributed denial of service]]></category>
		<category><![CDATA[dos]]></category>
		<category><![CDATA[julian assange]]></category>
		<category><![CDATA[paypal attack]]></category>
		<category><![CDATA[paypal ddos]]></category>
		<category><![CDATA[postfinance attack]]></category>
		<category><![CDATA[postfinance ddos]]></category>
		<category><![CDATA[wikileaks]]></category>
		<category><![CDATA[wikileaks dns]]></category>
		<category><![CDATA[wikileaks dos]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3009</guid>
		<description><![CDATA[The biggest news by far for the past week or so has been the attacks on WikiLeaks infrastructure after posting tens of thousands of classified cables online in a categorized form. Just a few days ago their DNS provider (EveryDNS) pulled the plug &#8211; apparently due to pressure from the US government, and also because [...]]]></description>
			<content:encoded><![CDATA[<p>The biggest news by far for the past week or so has been the attacks on WikiLeaks infrastructure after posting tens of thousands of classified cables online in a categorized form.</p>
<p>Just a few days ago their DNS provider (<a href="http://www.bbc.co.uk/news/technology-11928899">EveryDNS</a>) pulled the plug &#8211; apparently due to pressure from the US government, and also because of the ongoing DDoS attacks against WikiLeaks which also effected them.</p>
<p>The latest development is that &#8216;Anonymous&#8217; has joined the WikiLeaks side of the argument and start attacking those it sees as detrimental to WikiLeaks.</p>
<blockquote><p>An anonymous, loosely affiliated group that has been responsible for a series of recent Distributed Denial of Service (DDOS) attacks against entertainment industry Web sites over copyright issues, has started attacking organizations viewed as being hostile to WikiLeaks, says a PandaLabs researcher.</p>
<p>The group, dubbed Anonymous, launched a DDOS attack on Monday that knocked Swiss payment transaction firm PostFinance&#8217;s Web site offline. The attack was in apparent retaliation for the firm&#8217;s freezing of an account set up by WikiLeaks founder Julian Assanage, PandaLabs threat researcher Sean-Paul Correll said.</p>
<p>The bank&#8217;s main Web site was unavailable for several hours but appeared to have been restored by late Monday afternoon. The attack on PostFinance was preceded by one against PayPal&#8217;s blog site over the weekend, Correll said. That attack was apparently prompted by PayPal&#8217;s decision to cut off money services to WikiLeaks last week.</p>
<p>The PayPal attack began at 4.00 a.m PST on Saturday and resulted in the blog being unavailable for a total of more than 8 hours, Correll said. Meanwhile, anonops.net, a site used by Anonymous to announce their attack plans, came under a massive DDOS attack earlier on Monday, apparently by those opposed to WikiLeaks. In an ironic twist, users attempting to reach the site were being redirected to PostFinance&#8217;s Website late Monday evening. </p></blockquote>
<p>The first target I became aware of was <a href="http://www.darknet.org.uk/tag/paypal/">PayPal</a>, due to the fact they froze the WikiLeaks account and ceased processing donations for them. More info on that here:</p>
<p><a href="http://www.readwriteweb.com/archives/paypal_announces_it_will_no_longer_handle_wikileak.php">PayPal Announces It Will No Longer Handle Wikileaks Donations</a></p>
<p>It seems there are other targets on the list such as the payment processor PostFinance who froze an account set up for Julian Assange the WikiLeaks founder.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>A lengthy statement posted on the anonymous group&#8217;s Web site listed several organizations that the group claimed had stifled WikiLeaks&#8217; effort to release the documents. &#8220;We will find and will attack those who stand against Wikileaks and we will support WikiLeaks in everything they need,&#8221; the statement said.</p>
<p>The group said it will offer WikiLeaks an additional site for mirroring the leaked documents. It will also create &#8216;counter-propaganda&#8217; and organize DDoS attacks on &#8220;various targets related to censorship&#8221; the group claimed.</p>
<p>Anonymous&#8217; campaign over copyright enforcement issues, Operation:Payback, has resulted in several DDOS attacks being launched against and knocking off sites belonging to the Recording Industry Association of America, the Motion Picture Association of America and others.</p>
<p>In the statement announcing support for Assange, the organizers of Anonymous declared that &#8220;Operation:Payback has come out in support of WikiLeaks and has declared war on the entities involved in censoring there information.&#8221;</p>
<p>The online tussle between those opposed to WikiLeaks&#8217; campaign and those supporting it highlights how the Internet is increasingly becoming the battleground for all sorts of causes, Correll said.</p>
<p>&#8220;People are starting to figure out they can use technology to fight back,&#8221; he said. &#8220;They have realized they don&#8217;t have to just stand in a picket line. This has been going on for a few years, but its getting more organized.&#8221; </p></blockquote>
<p>WikiLeaks has been having a bad time recently, as just before they lost their DNS service &#8211; <a href="http://www.computerworld.com/s/article/9199258/With_WikiLeaks_Amazon_shows_its_power_over_customers">they got kicked off from the Amazon platform</a>.</p>
<p>All in all it seems freedom of speech really isn&#8217;t free. If you want to read more about this, <a href="http://news.google.com/news/search?aq=f&#038;pz=1&#038;cf=all&#038;ned=en_my&#038;hl=en&#038;q=WikiLeaks">there are a LOT of articles</a> &#8211; so knock yourselves out.</p>
<p>Source: <a href="http://www.networkworld.com/news/2010/120710-wikileaks-furor-spawns-rival-ddos.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=WikiLeaks+Attacks+Cause+Rival+DDoS+Retaliation+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3009+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/&amp;t=WikiLeaks+Attacks+Cause+Rival+DDoS+Retaliation" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/&amp;title=WikiLeaks+Attacks+Cause+Rival+DDoS+Retaliation" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/&amp;title=WikiLeaks+Attacks+Cause+Rival+DDoS+Retaliation" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/&amp;title=WikiLeaks+Attacks+Cause+Rival+DDoS+Retaliation" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/&amp;title=WikiLeaks+Attacks+Cause+Rival+DDoS+Retaliation" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F12%2Fwikileaks-attacks-cause-rival-ddos-retaliation%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/12/wikileaks-attacks-cause-rival-ddos-retaliation/feed/</wfw:commentRss>
		<slash:comments>15</slash:comments>
		</item>
		<item>
		<title>India Central Bureau of Investigation (CBI) Site Still Down</title>
		<link>http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/</link>
		<comments>http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/#comments</comments>
		<pubDate>Tue, 07 Dec 2010 17:47:54 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[cbi]]></category>
		<category><![CDATA[cbi hacked]]></category>
		<category><![CDATA[central bureau of investigation]]></category>
		<category><![CDATA[cyber-terrorism]]></category>
		<category><![CDATA[cyberterrorism]]></category>
		<category><![CDATA[feds]]></category>
		<category><![CDATA[hacking-web-sites]]></category>
		<category><![CDATA[india cbi]]></category>
		<category><![CDATA[india cbi hacked]]></category>
		<category><![CDATA[indian cyber army]]></category>
		<category><![CDATA[indian government]]></category>
		<category><![CDATA[indian site hacked]]></category>
		<category><![CDATA[pakistani cyber army]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[web-defacement]]></category>
		<category><![CDATA[web-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3008</guid>
		<description><![CDATA[There has been quite a lot of chatter online about this case, politically there are long standing disputes between India and Pakistan and naturally these also extend to online wars &#8211; which inevitably end in defacement. The latest target from the group calling themselves the Pakistani Cyber Army was the site for the Central Bureau [...]]]></description>
			<content:encoded><![CDATA[<p>There has been quite a lot of chatter online about this case, politically there are long standing disputes between <a href="http://www.darknet.org.uk/tag/india/">India</a> and Pakistan and naturally these also extend to online wars &#8211; which inevitably end in defacement.</p>
<p>The latest target from the group calling themselves the Pakistani Cyber Army was the site for the Central Bureau of Investigation in India &#8211; <a href="http://cbi.nic.in/">http://cbi.nic.in/</a>.</p>
<p>Almost 4 days after the defacement, the site still appears to be down.</p>
<blockquote><p>Close to four days after the site of India&#8217;s key investigation agency, the Central Bureau of Investigation (CBI), was hacked and defaced, the web site is still inaccessible to users.</p>
<p>The CBI is doing a thorough security audit, and plugging all holes to prevent another hack, Vinita Thakur, a spokeswoman said on Tuesday. She didn&#8217;t say when that would be complete, and the site restored.</p>
<p>The web site of the CBI was hacked and defaced on Friday night. The hackers calling themselves the &#8220;Pakistani Cyber Army&#8221; left a message saying that the attack was in revenge for similar Indian attacks on Pakistani sites.</p>
<p>The CBI&#8217;s IT systems were not compromised by the hack, as the web site and the CBI’s computer systems are separate, Thakur said. </p></blockquote>
<p>They say they are doing a thorough audit and they are going to plug all the holes, but in reality &#8211; we know that&#8217;s not true because it&#8217;s not possible. They both seem to be stuck in a catch 22 situation as both the Indian and Pakistani sides continue with revenge attacks for the previous defacement.</p>
<p>Almost immediately after this attack the Indian Cyber Army executed another hack and deface job to retaliate. And well, whatever happens after this &#8211; it&#8217;s not going to be pretty for either side.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>The information that the hackers had access to was public information, she added.</p>
<p>The border dispute between India and Pakistan over Kashmir has often spilled online, with both sides attempting to hack each other&#8217;s web sites.</p>
<p>The web site of Pakistan&#8217;s Oil &#038; Gas Regulatory Authority was hacked on Saturday by a group called &#8220;Indian Cyber Army&#8221; in retaliation for the CBI web site hack, according to media reports from Pakistan.</p>
<p>The web site which displayed the message &#8220;This Account has been suspended&#8221; late Saturday, has since been restored. </p></blockquote>
<p>The Pakistani site that was attacked is back up and accessible to the public again, but as of now I&#8217;m still seeing some database access error messages in the sidebar and at the top of the page &#8211; <a href="http://www.ogra.org.pk/">http://www.ogra.org.pk/</a>.</p>
<p>My guess would be that this is not going to stop any time soon.</p>
<p>Source: <a href="http://www.networkworld.com/news/2010/120710-hacked-indian-investigation-agency-web.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=India+Central+Bureau+of+Investigation+%28CBI%29+Site+Still+Down+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3008+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/&amp;t=India+Central+Bureau+of+Investigation+%28CBI%29+Site+Still+Down" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/&amp;title=India+Central+Bureau+of+Investigation+%28CBI%29+Site+Still+Down" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/&amp;title=India+Central+Bureau+of+Investigation+%28CBI%29+Site+Still+Down" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/&amp;title=India+Central+Bureau+of+Investigation+%28CBI%29+Site+Still+Down" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/&amp;title=India+Central+Bureau+of+Investigation+%28CBI%29+Site+Still+Down" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F12%2Findia-central-bureau-of-investigation-cbi-site-still-down%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/12/india-central-bureau-of-investigation-cbi-site-still-down/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Critical Zero Day Abobe Flash Flaw Puts Android Phones At Risk</title>
		<link>http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/</link>
		<comments>http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/#comments</comments>
		<pubDate>Wed, 15 Sep 2010 06:34:50 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[General News]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[adobe flash]]></category>
		<category><![CDATA[adobe flash security]]></category>
		<category><![CDATA[android]]></category>
		<category><![CDATA[android exploit]]></category>
		<category><![CDATA[android vulnerability]]></category>
		<category><![CDATA[flash]]></category>
		<category><![CDATA[flash 0-day]]></category>
		<category><![CDATA[flash exploit]]></category>
		<category><![CDATA[flash security]]></category>
		<category><![CDATA[flash vulnerability]]></category>
		<category><![CDATA[flash zero day]]></category>
		<category><![CDATA[smart-phone security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2950</guid>
		<description><![CDATA[Adobe hasn&#8217;t been having the best of luck recently with a string of serious PDF exploits in their Reader software and now in less than a week two critical flaws in Flash. This is a pretty serious flaw and sadly proves Steve Jobs right for not supporting Flash on the iPhone and Ipad. A new [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.darknet.org.uk/tag/adobe/">Adobe</a> hasn&#8217;t been having the best of luck recently with a string of <a href="http://www.darknet.org.uk/2010/08/adobe-scrambling-to-fix-another-serious-pdf-flaw/">serious PDF exploits</a> in their Reader software and now in less than a week two critical flaws in <a href="http://www.darknet.org.uk/tag/flash/">Flash</a>.</p>
<p>This is a pretty serious flaw and sadly proves Steve Jobs right for not supporting Flash on the <a href="http://www.darknet.org.uk/tag/iphone/">iPhone</a> and Ipad. A new twist is that this vulnerability extends to mobile platforms such as Android due to the full support for flash. It also effects desktop systems across the board (Windows, Mac, Linux &#038; Solaris).</p>
<blockquote><p>Adobe revealed a critical zero day flaw  in Adobe Flash&#8211;the second in less than a week. The vulnerability extends even to Adobe Flash on the Android mobile OS, supporting at least one of the reasons laid out by Steve Jobs for not allowing Flash on the iPhone and iPad.</p>
<p>An Adobe spokesperson contacted me and shared that, &#8220;A critical vulnerability exists in Adobe Flash Player 10.1.82.76 and earlier versions for Windows, Macintosh, Linux, Solaris and Android operating systems. This vulnerability also affects Adobe Reader 9.3.4 for Windows, Macintosh and UNIX, and Adobe Acrobat 9.3.4 and earlier versions for Windows and Macintosh.&#8221;</p>
<p>In a nutshell, the critical flaw could be exploited to crash the affected system, or may even allow an attacker to gain access and control it to execute additional malicious software. There are reports that this vulnerability is being actively exploited in the wild against Adobe Flash Player, but Adobe is not aware of any attacks exploiting it against Adobe Reader or Acrobat thus far.</p>
<p>The Adobe spokesperson explained, &#8220;Adobe is actively sharing information about this vulnerability (and vulnerabilities in general) with partners in the security community to enable them to quickly develop detection and quarantine methods to protect users until a patch is available. As always, Adobe recommends that users follow security best practices by keeping their anti-malware software and definitions up to date.&#8221; </p></blockquote>
<p>There are reports of this vulnerability being exploited in the wild, but I haven&#8217;t really seen any details of it so far. It&#8217;s an interesting point regarding smart-phones and I wonder how Android developers might look at addressing this kind of issue and safeguarding the phones in the future.</p>
<p>A sandbox method might be a good idea, and from what I know of Android you don&#8217;t have root privileges by default anyway. We&#8217;ll have to see if Android makes any announcements regarding this or comes out with any kind of plan for future safeguards.</p>
<blockquote><p>Those best practices are long established among the traditional desktop computing platforms, but users running Adobe Flash on Android smartphones  may be left wondering exactly which &#8220;best practices&#8221; will protect them. Smartphones have grown into palm-based portable computers&#8211;with processing power and storage space significant enough to be a worthy target&#8211;but smartphone security is not as evolved as its desktop and notebook counterparts.</p>
<p>As Microsoft has improved its software development processes and implemented new security controls in the Windows operating system and other applications, attackers have looked elsewhere to find the chinks in the armor. Adobe has emerged as the virtually ubiquitous low-hanging fruit&#8211;with security practices that are not as mature as Microsoft&#8217;s, and software with potentially exploitable weaknesses available on pretty much every platform out there.</p>
<p>The iPhone and iPad stand uniquely apart from other smartphone and tablet platforms thanks to Apple&#8217;s very public rejection of Adobe Flash for iOS. While the real reasons probably have more to do with iAd and wanting to exert tighter control over the developer community, security is also a concern that has been cited. Zero day flaws like this one, which potentially impact Android smartphones running Adobe Flash, seem to illustrate the wisdom of that choice. </p></blockquote>
<p>You can read the security advisory from Adobe here &#8211; <a href="http://www.adobe.com/support/security/advisories/apsa10-03.html">Security Advisory for Flash Player</a>, the fix has not been issued as yet but they do state they are working on it so expect a flash update soon.</p>
<p>It&#8217;ll be interesting to see what comes of this and how fast Adobe can push a patch out.</p>
<p>Source: <a href="http://www.networkworld.com/news/2010/091410-adobe-flash-zero-day-puts.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Critical+Zero+Day+Abobe+Flash+Flaw+Puts+Android+Phones+At+Risk+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2950+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/&amp;t=Critical+Zero+Day+Abobe+Flash+Flaw+Puts+Android+Phones+At+Risk" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/&amp;title=Critical+Zero+Day+Abobe+Flash+Flaw+Puts+Android+Phones+At+Risk" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/&amp;title=Critical+Zero+Day+Abobe+Flash+Flaw+Puts+Android+Phones+At+Risk" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/&amp;title=Critical+Zero+Day+Abobe+Flash+Flaw+Puts+Android+Phones+At+Risk" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/&amp;title=Critical+Zero+Day+Abobe+Flash+Flaw+Puts+Android+Phones+At+Risk" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F09%2Fcritical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/09/critical-zero-day-abobe-flash-flaw-puts-android-phones-at-risk/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>Email Worm Spreading Like Wildfire &#8211; W32.Imsolk/VBMania Variant</title>
		<link>http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/</link>
		<comments>http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/#comments</comments>
		<pubDate>Fri, 10 Sep 2010 09:12:52 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[email worm]]></category>
		<category><![CDATA[fast spreading email worm]]></category>
		<category><![CDATA[here you go]]></category>
		<category><![CDATA[here you go worm]]></category>
		<category><![CDATA[imsolk]]></category>
		<category><![CDATA[malicious screensaver]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[pdf email worm]]></category>
		<category><![CDATA[pdf exploit]]></category>
		<category><![CDATA[scr]]></category>
		<category><![CDATA[screensaver virus]]></category>
		<category><![CDATA[vbmania]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2947</guid>
		<description><![CDATA[Oh this is a throw back to the 90s, a self-replicating e-mail worm based around a malicious screensaver (.scr) that sends itself to everyone in your address book. It seems this one is spreading fast though with hundreds of thousands of infections. Reminds of the heydays of ILOVEYOU and Anna Kournikova. A fast-moving email worm [...]]]></description>
			<content:encoded><![CDATA[<p>Oh this is a throw back to the 90s, a self-replicating e-mail worm based around a malicious screensaver (.scr) that sends itself to everyone in your address book. It seems this one is spreading fast though with hundreds of thousands of infections.</p>
<p>Reminds of the heydays of <a href="http://www.darknet.org.uk/?s=ILOVEYOU">ILOVEYOU</a> and Anna Kournikova.</p>
<blockquote><p>A fast-moving email worm that began spreading on Thursday has been able to affect hundreds of thousands of computers worldwide, anti-virus provider Symantec warned.</p>
<p>The email arrives with the subject “Here you have.” An executable screensaver that&#8217;s disguised as a PDF document then tries to send the same message to everyone listed in the recipient&#8217;s address book. The .scr file is a variation of the W32.Imsolk.A@mm worm Symantec discovered last month.</p>
<p>In addition to spreading through email, it can propagate through mapped drives, autorun and instant messenger. It also has the ability to disable various security programs.</p></blockquote>
<p>It&#8217;s slightly more advanced than the old versions though with the ability to spread through instant messaging (probably MSN Live Messenger) and also disable security programs.</p>
<p>Plus it&#8217;s harder to scan for as the malicious screensaver isn&#8217;t actually attached to the email but downloaded from a remote source, and from early reports &#8211; multiple remote sources.</p>
<blockquote><p>The worm is a throwback to attacks not seen in almost a decade, when the Anna Kournikova and I Love You attacks wreaked havoc on email systems worldwide. The Here You Go worm appears to different in that the malicious payload is downloaded from a page on members.multimania.com, rather than being attached to the email. That could make efforts to eradicate the worm easier.</p>
<p>Then again, McAfee said multiple variants of the worm appear to be spreading, so it&#8217;s not yet clear that the malicious screensaver is hosted by a single source.</p></blockquote>
<p>There&#8217;s more info available here:</p>
<p>Symantec &#8211; <a href="http://www.symantec.com/connect/blogs/new-round-email-worm-here-you-have">New Round of Email Worm, &#8220;Here you have&#8221;</a><br />
McAfee &#8211; <a href="http://www.avertlabs.com/research/blog/index.php/2010/09/09/widespread-reporting-of-here-you-have-virus/">Widespread Reporting of “Here you have” Virus (aka W32/VBMania@MM)</a></p>
<p>Source: <a href="http://www.theregister.co.uk/2010/09/10/email_worm_spreading/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Email+Worm+Spreading+Like+Wildfire+%E2%80%93+W32.Imsolk%2FVBMania+Variant+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2947+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/&amp;t=Email+Worm+Spreading+Like+Wildfire+%E2%80%93+W32.Imsolk%2FVBMania+Variant" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/&amp;title=Email+Worm+Spreading+Like+Wildfire+%E2%80%93+W32.Imsolk%2FVBMania+Variant" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/&amp;title=Email+Worm+Spreading+Like+Wildfire+%E2%80%93+W32.Imsolk%2FVBMania+Variant" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/&amp;title=Email+Worm+Spreading+Like+Wildfire+%E2%80%93+W32.Imsolk%2FVBMania+Variant" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/&amp;title=Email+Worm+Spreading+Like+Wildfire+%E2%80%93+W32.Imsolk%2FVBMania+Variant" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F09%2Femail-worm-spreading-like-wildfire-w32-imsolkvbmania-variant%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/09/email-worm-spreading-like-wildfire-w32-imsolkvbmania-variant/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

