<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-1171000088612469984</id><updated>2011-07-28T15:38:32.445-04:00</updated><title type='text'>Security 0wnage</title><subtitle type='html'>This site is intended for all Information Security enthusiasts, Information Security newbies and anybody who is interested in Information Security.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://sec0wn.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://sec0wn.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Mohamad AL- Bustami</name><uri>http://www.blogger.com/profile/05113832517993381064</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>3</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-1171000088612469984.post-7117541374731999646</id><published>2010-03-26T21:57:00.001-04:00</published><updated>2010-03-27T14:25:06.168-04:00</updated><title type='text'>Vulnerabilities and Exploits Flying all over in Vancouver</title><content type='html'>If you want to be a witness to all kinds of new Vulnerabilities and Exploits to major Web Browsers, OS, and Mobile devices, then you should head right away to Vancouver, BC, Canada where the &lt;a href="http://cansecwest.com/"&gt;CanSecWest&lt;/a&gt; Conference is taking place. The infamous &lt;a href="http://dvlabs.tippingpoint.com/blog/2010/02/15/pwn2own-2010"&gt;Pwn2Own&lt;/a&gt; contest is well underway and is bringing results like no other contest. In the past 2 days vulnerabilities in &lt;a href="http://www.microsoft.com/windows/internet-explorer/default.aspx"&gt;Microsoft's IE 8&lt;/a&gt; was discovered and exploited by &lt;a href="http://vreugdenhilresearch.nl/about/"&gt;Peter Vreugdenhil&lt;/a&gt; a security researcher participating in this contest. Apple's &lt;a href="http://www.apple.com/safari/"&gt;Safari&lt;/a&gt; was also exploited mostly to Own iPhone devices. Mozilla's &lt;a href="http://www.mozilla.com/en-US/firefox/upgrade.html"&gt;Firefox&lt;/a&gt; was not left out of the party. A security researcher that goes by the name of Nils developed the exploit to attack Firefox 3.x. Note that all of those Vulnerabilities and exploits will be reported to Vendors in order to provide sufficient patches and the exploit code will not be available until the vendors patch there products.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://blogs.zdnet.com/security/?p=2951"&gt;Nils2Own: 'I want to see security flaws fixed'&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1171000088612469984-7117541374731999646?l=sec0wn.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://sec0wn.blogspot.com/feeds/7117541374731999646/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://sec0wn.blogspot.com/2010/03/vulnerabilites-and-expolits-flying-all.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default/7117541374731999646'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default/7117541374731999646'/><link rel='alternate' type='text/html' href='http://sec0wn.blogspot.com/2010/03/vulnerabilites-and-expolits-flying-all.html' title='Vulnerabilities and Exploits Flying all over in Vancouver'/><author><name>Mohamad AL- Bustami</name><uri>http://www.blogger.com/profile/05113832517993381064</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1171000088612469984.post-1398760924268823312</id><published>2010-03-19T15:09:00.014-04:00</published><updated>2010-03-20T14:35:08.053-04:00</updated><title type='text'>The Reason behind Conficker</title><content type='html'>If you are in the security field, you probably had heard about the &lt;a href="http://en.wikipedia.org/wiki/Conficker"&gt;Conficker Worm&lt;/a&gt;. But for everyone else who is interested in Information Security, or anybody in the IT field, or even anyone who owns a PC, this is a concern. The Conficker Worm was on of the highlights of the first quarter of last year and the end of 2008. You will find the link at the bottom of this post that tells you all about Conficker. This post is to show you the reason behind Conficker and how it came to live. It started in October 23, 2008 when Microsoft reported a Vulnerability in their&lt;br /&gt;&lt;a name='more'&gt;&lt;/a&gt; Windows platform regarding its Networking services, &lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx"&gt;MS08-067&lt;/a&gt;. This vulnerability allows Remote Code Execution with System level privileges. That means once you are hacked, the attacker can do whatever he wants on your machine. For Cyber-criminals this is a perfect environment for a worm spread. So they did not waste anytime and took advantage of this vulnerability. Less than a month after MS08-067 was reported, on November 21, 2008 we saw the first generation of Conficker. By January 2009, the number of infected machines ranged between 9-15 million. Today, we can still see the affect of the Conficker Worm, as Cyber-Criminals has been using all the infected machine as Cyber real state for Malware distributors. Below you will find a demo of how to trigger the vulnerability and all the links you might need on how to detect and protect against this vulnerability.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx"&gt;Microsoft Advisory&lt;/a&gt; &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=0D5F9B6E-9265-44B9-A376-2067B73D6A03&amp;amp;displaylang=en"&gt;Microsoft Security Update&lt;/a&gt; &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&amp;amp;displaylang=en"&gt;Microsoft® Windows® Malicious Software Removal Tool&lt;/a&gt;&lt;br /&gt;&lt;a href="http://secunia.com/advisories/32326/"&gt;Secunia Advisory&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;object height="385" width="480"&gt;&lt;param name="movie" value="http://www.youtube.com/v/Mh-t2Eaku5Y&amp;hl=en_US&amp;fs=1&amp;"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/Mh-t2Eaku5Y&amp;hl=en_US&amp;fs=1&amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="480" height="385"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1171000088612469984-1398760924268823312?l=sec0wn.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://sec0wn.blogspot.com/feeds/1398760924268823312/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://sec0wn.blogspot.com/2010/03/reason-behind-conficker.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default/1398760924268823312'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default/1398760924268823312'/><link rel='alternate' type='text/html' href='http://sec0wn.blogspot.com/2010/03/reason-behind-conficker.html' title='The Reason behind Conficker'/><author><name>Mohamad AL- Bustami</name><uri>http://www.blogger.com/profile/05113832517993381064</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1171000088612469984.post-3411131425610997124</id><published>2010-03-16T22:57:00.016-04:00</published><updated>2010-03-17T17:08:50.516-04:00</updated><title type='text'>Latest Internet Explorer 0-day Vulnerability Demo</title><content type='html'>Most of you have already heard or know about the latest 0-day vulnerability affecting Microsoft's Internet Explorer. In the video demo below, i show you how to perform the attack on a demo lab network. As always this video is for tutorial and educational purposes only. I am also providing the original advisory from Microsoft and the vulnerability information from Secunia and Security Focus which both are considered to be leaders in providing vulnerability advisories.&lt;br /&gt;&lt;br /&gt;Microsoft Advisory: &lt;a href="http://www.microsoft.com/technet/security/advisory/981374.mspx"&gt;http://www.microsoft.com/technet/security/advisory/981374.mspx&lt;/a&gt;&lt;br /&gt;BID: &lt;a href="http://www.securityfocus.com/bid/38615"&gt;http://www.securityfocus.com/bid/38615&lt;/a&gt;&lt;br /&gt;Secunia ID: &lt;a href="http://secunia.com/advisories/38860"&gt;http://secunia.com/advisories/38860&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;For any questions, comments, or recommendations; leave it in the comments section below.&lt;br /&gt;&lt;br /&gt;&lt;object width="480" height="385"&gt;&lt;param name="movie" value="http://www.youtube.com/v/JIaGHNmSBcA&amp;hl=en_US&amp;fs=1&amp;"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/JIaGHNmSBcA&amp;hl=en_US&amp;fs=1&amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="480" height="385"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1171000088612469984-3411131425610997124?l=sec0wn.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://sec0wn.blogspot.com/feeds/3411131425610997124/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://sec0wn.blogspot.com/2010/03/latest-internet-explorer-0-day-demo.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default/3411131425610997124'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1171000088612469984/posts/default/3411131425610997124'/><link rel='alternate' type='text/html' href='http://sec0wn.blogspot.com/2010/03/latest-internet-explorer-0-day-demo.html' title='Latest Internet Explorer 0-day Vulnerability Demo'/><author><name>Mohamad AL- Bustami</name><uri>http://www.blogger.com/profile/05113832517993381064</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry></feed>
