<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Attackr.com &#187; Developer Portal for web designers, developers and programmers</title>
	<atom:link href="http://www.attackr.com/tag/internet-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.attackr.com</link>
	<description>Come To Share, Come To Learn</description>
	<lastBuildDate>Tue, 20 Dec 2011 13:09:25 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>How Secure Are You Really?</title>
		<link>http://www.attackr.com/how-secure-are-you-really/</link>
		<comments>http://www.attackr.com/how-secure-are-you-really/#comments</comments>
		<pubDate>Tue, 23 Sep 2008 17:28:33 +0000</pubDate>
		<dc:creator>Karen</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Internet Security]]></category>

		<guid isPermaLink="false">http://www.attackr.com/how-secure-are-you-really/</guid>
		<description><![CDATA[At the end of August this year right before I was to move, I got a very rude awakening. I was searching for an mp3 for a personal project and I accidently clicked on an attack site containing nasty malware. At the time, I was using ZoneAlarm and an alert popped up to allow svchost.exe [...]]]></description>
			<content:encoded><![CDATA[<p>At the end of August this year right before I was to move, I got a very rude awakening. I was searching for an mp3 for a personal project and I accidently clicked on an attack site containing nasty malware. At the time, I was using ZoneAlarm and an alert popped up to allow svchost.exe access. </p>
<p>Now, normally I deny all ZoneAlarm program alerts I don&#8217;t recognize as something I want to give access to, but I was really tired that night, and my hand actually twitched and I clicked accept!  Honestly, I did not want to click that but it happened! And the next thing you know, my desktop was hijacked, my browsers were hijacked, and it took me almost a week to get rid of this malicious trojan &#8211; the AntiVirus XP 2008 trojan, a rogue anti-spyware program. This trojan takes over your hosts file, your desktop, your browsers, and who knows what else. It was nasty! </p>
<p>Now, if a web-savy techie, geeky, internet consultant/marketer like me &#8211; who&#8217;s been online making a living since 1997 &#8211; can get infected accidently by malware or viruses, etc., can you imagine what&#8217;s happening to most people who aren&#8217;t so savy and have no idea they even have spyware or malware on their computers? They are mostly using Intenet Explorer and if they are not getting regular Windows updates on patch Tuesdays and if they are not using a proper firewall with proper browser settings and tools, or updated antivirus software, then they are very vulnerable and at risk. <span id="more-158"></span></p>
<p>Good old Microsoft Windows and Intenet Explorer is so full of security leaks. <strong>Ah, but Internet Explorer is not the only browser at risk anymore.</strong> Because of the huge popularity of Firefox, it is vulnerable too. I was using Firefox 3 when I got attacked.  In fact, <strong>3 of my browsers got hijacked</strong>: Internet Explorer 7, Firefox 3 amd Opera 9.52. Luckily Netscape 8 was not affected and I was able to find solutions to get rid of the problem.</p>
<p>Now I use a really good Firefox add-on called <a href="http://noscript.net/">NoScript </a>.  I enable scripts at sites I trust, only. I have a better firewall and I do regular port scans using SheildsUp at <a href="http://www.grc.com/default.htm">Gibson Research</a>. I am just more vigilant about updating my anti-virus/anti-spyware programs. I can only suggest that you do the same. </p>
<p>The Internet is wonderful most of the time, thank goodness. Just make Intenet security a priority and you&#8217;re good to go. </p>
<p>Enjoy the ride!</p>
<h3 class='related_post_title'>Related Posts:</h3>
<ul class='related_post'>
<li><a href='http://www.attackr.com/crack-windows-passwords/' title='Crack Windows Passwords'>Crack Windows Passwords</a></li>
<li><a href='http://www.attackr.com/cross-site-scripting/' title='Cross-site Scripting'>Cross-site Scripting</a></li>
<li><a href='http://www.attackr.com/wordpress-25-shortcodes/' title='WordPress 2.5 Shortcodes'>WordPress 2.5 Shortcodes</a></li>
<li><a href='http://www.attackr.com/a-great-little-script-for-affiliate-marketers/' title='A Great Little Script for Affiliate Marketers'>A Great Little Script for Affiliate Marketers</a></li>
<li><a href='http://www.attackr.com/wordpress-25-first-impressions/' title='WordPress 2.5: First Impressions'>WordPress 2.5: First Impressions</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.attackr.com/how-secure-are-you-really/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Crack Windows Passwords</title>
		<link>http://www.attackr.com/crack-windows-passwords/</link>
		<comments>http://www.attackr.com/crack-windows-passwords/#comments</comments>
		<pubDate>Sun, 17 Jun 2007 17:13:31 +0000</pubDate>
		<dc:creator>Sean</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Internet Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>

		<guid isPermaLink="false">http://www.attackr.com/crack-windows-passwords/</guid>
		<description><![CDATA[Have you ever tried to log into a Windows computer for a few minutes and you finally realize that you forgot the password? There&#8217;s a way to crack the password and it doesn&#8217;t involve reformatting and reinstalling Windows. The solution is called @stake LC4 (formerly L0phtCrack), however since Symantec stopped development of L0phtcrack, I&#8217;m going [...]]]></description>
			<content:encoded><![CDATA[<p>Have you ever tried to log into a Windows computer for a few minutes and you finally realize that you forgot the password? </p>
<p>There&#8217;s a way to crack the password and it doesn&#8217;t involve reformatting and reinstalling Windows.</p>
<p>The solution is called @stake LC4 (formerly L0phtCrack), however since Symantec stopped development of L0phtcrack, I&#8217;m going to let you in on a program called LC5. </p>
<p>Just like L0phtCrack, LC5 attacks your Windows machine with a combination of dictionary and brute force attacks. </p>
<p>LC5 can crack almost all common passwords in seconds. More advanced passwords with numbers and characters takes longer.</p>
<p>The main purpose of the LCP program is user account passwords auditing and recovery in Windows NT/2000/XP. </p>
<p>I haven&#8217;t tested it against Windows Vista yet, so I&#8217;m not sure if it will work. Your mileage may very either way.</p>
<p><strong>How it works:</strong></p>
<p>Windows NT, 2000 and XP passwords are stored as encrypted hash marks. LC5 attacks these hash marks with hundreds of passwords per minute. </p>
<p>Eventually the correct password will be sent and then displayed to the screen.<br />
<span id="more-92"></span><br />
<strong>Good intentions:</strong></p>
<ul>
<li>System administrators can find weak passwords within minutes. Sys admins can then change the passwords to make them more secure.</li>
<li>LC5 can be used to access computers of users who forget passwords.</li>
<li>In companies, it can be used to access computers of employees who have left the company.</li>
</ul>
<p><strong>Bad intentions:</strong></p>
<ul>
<li>Hackers can use LC5 to sniff passwords over networks.</li>
<li>Hackers can install this application onto a primary domain controller and steal hundreds of passwords within minutes.</li>
</ul>
<p>Please note that I am not the author of this software. Be advised that if you use this software, you do so at your own risk without any warranty expresses or implied by Geek With Laptop.</p>
<p><strong>Download LC5 (v5.04):</strong></p>
<p><a href="http://www.geekwithlaptop.com/download-manager.php?id=15">English version (with installer)</a> &#8211; 2.29 MB<br />
<a href="http://www.geekwithlaptop.com/download-manager.php?id=16">English version (without installer, ZIP)</a> &#8211; 1.86 MB<br />
<a href="http://www.geekwithlaptop.com/download-manager.php?id=17">English version (without installer, RAR)</a> &#8211; 1.66 MB</p>
<p><strong>Software License:</strong> LCP is a freeware program. The program may be distributed under condition of saving all files contents and structure of installation package.<br />
<h3 class='related_post_title'>Related Posts:</h3>
<ul class='related_post'>
<li><a href='http://www.attackr.com/how-secure-are-you-really/' title='How Secure Are You Really?'>How Secure Are You Really?</a></li>
<li><a href='http://www.attackr.com/wordpress-25-shortcodes/' title='WordPress 2.5 Shortcodes'>WordPress 2.5 Shortcodes</a></li>
<li><a href='http://www.attackr.com/migrating-from-wordpresscom-to-wordpressorg-or-self-hosting/' title='Migrating from wordpress.com to wordpress.org or self-hosting'>Migrating from wordpress.com to wordpress.org or self-hosting</a></li>
<li><a href='http://www.attackr.com/fine-tune-your-flash-drive/' title='Fine-Tune Your Flash Drive'>Fine-Tune Your Flash Drive</a></li>
<li><a href='http://www.attackr.com/wordpress-tip-disable-visual-editor/' title='WordPress Tip-Disable Visual Editor'>WordPress Tip-Disable Visual Editor</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.attackr.com/crack-windows-passwords/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Cross-site Scripting</title>
		<link>http://www.attackr.com/cross-site-scripting/</link>
		<comments>http://www.attackr.com/cross-site-scripting/#comments</comments>
		<pubDate>Wed, 06 Jun 2007 05:28:57 +0000</pubDate>
		<dc:creator>graystatic</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Internet Security]]></category>

		<guid isPermaLink="false">http://www.attackr.com/cross-site-scripting/</guid>
		<description><![CDATA[With all the buzz about web 2.0 and the growing open source community the importance of security is sometimes forgotten. When you want something cool and snazzy for your site and you find a open source solution, it&#8217;s easy to install the app on your site and forget about it. When the app, tool, forum, [...]]]></description>
			<content:encoded><![CDATA[<p>With all the buzz about web 2.0 and the growing open source community the importance of security is sometimes forgotten.  When you want something cool and snazzy for your site and you find a open source solution, it&#8217;s easy to install the app on your site and forget about it.  When the app, tool, forum, or whatever is so easy to set up, it&#8217;s easy to not think about testing it or updating it with security patches. </p>
<p>Cross-site scripting is a very relevant security problem on the web today.  One of the big parts of web 2.0 is user interaction.  That is where the problem can happen when a server takes user input and redisplays it.  If the code taking the users input doesn&#8217;t properly validate it before the script uses it.  </p>
<p>If a user were to put in certain script tags into a forum entry form and the data was not checked before being redisplayed, that forum could potentially run the script in somebody&#8217;s browser that just views the page the data was posted to.  <span id="more-85"></span></p>
<p>Another example is a login form.  If the input data is directly used, without validation, in a database query, someone could purposely input commands that your server would then execute.</p>
<p>This might not seem so bad, who cares if a little guestbook or forum app on your site is hacked, but this is a potentially big problem.  One bad form on one page of your site could make your whole server vulnerable.  One vulnerable could also make your database, which may run the rest of your site, vulnerable.  </p>
<p>So how can you make sure your site is secure?  VALIDATE, VALIDATE, and VALIDATE, make sure you validate all potentially malicious input data.  Also make sure you check for updates.  The security of your entire site could depend on it.  Nobody is above being attacked.  Some famous examples include big names such as MySpace and CBS News.  For more real-world examples visit <a href="http://en.wikipedia.org/wiki/Cross-site_scripting#Real-world_examples">Wikipedia</a>.<br />
<h3 class='related_post_title'>Related Posts:</h3>
<ul class='related_post'>
<li><a href='http://www.attackr.com/how-secure-are-you-really/' title='How Secure Are You Really?'>How Secure Are You Really?</a></li>
<li><a href='http://www.attackr.com/crack-windows-passwords/' title='Crack Windows Passwords'>Crack Windows Passwords</a></li>
<li><a href='http://www.attackr.com/wordpress-25-shortcodes/' title='WordPress 2.5 Shortcodes'>WordPress 2.5 Shortcodes</a></li>
<li><a href='http://www.attackr.com/a-great-little-script-for-affiliate-marketers/' title='A Great Little Script for Affiliate Marketers'>A Great Little Script for Affiliate Marketers</a></li>
<li><a href='http://www.attackr.com/wordpress-25-first-impressions/' title='WordPress 2.5: First Impressions'>WordPress 2.5: First Impressions</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.attackr.com/cross-site-scripting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Popup Blockers</title>
		<link>http://www.attackr.com/popup-blockers/</link>
		<comments>http://www.attackr.com/popup-blockers/#comments</comments>
		<pubDate>Fri, 02 Feb 2007 16:07:52 +0000</pubDate>
		<dc:creator>kirby145</dc:creator>
				<category><![CDATA[Internet Security]]></category>
		<category><![CDATA[Reference & Tutorials]]></category>

		<guid isPermaLink="false">http://www.attackr.com/popup-blockers/</guid>
		<description><![CDATA[Popups are a major pain and internet security risk. They jump out and get in your way when you are browsing. Due to the use of popup blockers, many sites have stopped using them. However, there are sites with popups. These sites often tend to be on the bad side. Anyway, let&#8217;s look at popup [...]]]></description>
			<content:encoded><![CDATA[<p>Popups are a major pain and internet security risk. They jump out and get in your way when you are browsing. Due to the use of popup blockers, many sites have stopped using them.</p>
<p>However, there are sites with popups. These sites often tend to be on the bad side. Anyway, let&#8217;s look at popup blocking.</p>
<p>To begin, most modern browsers come equipped with popup blockers, or it can be made in the settings. For Internet Explorer6 and 7, go under tools&gt;turn on popup blocker. From here I suggest you turn it on to <strong>high</strong> and if you are using ie6 turn off the annoying information bar and popup sounds. Please note the high setting requires you to press <strong>control+click</strong> to open a new window, but you will get used to it and it is worth it to block the annoying ads.</p>
<p>In other browsers such az Mozilla Firefox and Opera, popups are automatically blocked (usually). As mentioned earlier you can edit these settings by certain browser types.</p>
<p>Finally, if you think this is too complicated or it won&#8217;t work for you, just go download the Google toolbar. It has a popup blocker and it&#8217;s better to trust Google than any other toolbar maker. This blocker is great and the toolbar is handy.</p>
<p>Stop popups today- Set up your browser.</p>
<h3 class='related_post_title'>Related Posts:</h3>
<ul class='related_post'>
<li><a href='http://www.attackr.com/how-secure-are-you-really/' title='How Secure Are You Really?'>How Secure Are You Really?</a></li>
<li><a href='http://www.attackr.com/geek-survival-kit/' title='Geek Survival Kit'>Geek Survival Kit</a></li>
<li><a href='http://www.attackr.com/customising-ubuntu/' title='Customizing Ubuntu'>Customizing Ubuntu</a></li>
<li><a href='http://www.attackr.com/dvds-on-your-ipod/' title='DVDs on Your iPod'>DVDs on Your iPod</a></li>
<li><a href='http://www.attackr.com/combining-flash-with-htmlcss/' title='Combining flash with HTML/CSS'>Combining flash with HTML/CSS</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.attackr.com/popup-blockers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
<!-- WP Super Cache is installed but broken. The path to wp-cache-phase1.php in wp-content/advanced-cache.php must be fixed! -->
