<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-1154750093487312148</id><updated>2012-01-28T07:58:03.230-05:00</updated><category term='Adobe'/><category term='MSN Messenger'/><category term='NSA'/><category term='Phishing'/><category term='0day'/><category term='Microsoft'/><category term='certstation'/><category term='URL Redirection'/><category term='Amish Hacker'/><category term='vulnerability'/><category term='VCIM'/><category term='National Security'/><category term='FBI'/><category term='hacking'/><category term='Social-Network'/><category term='Security'/><category term='Skimming Attacks'/><category term='forensic'/><category term='Satelite'/><category term='Community'/><category term='hacked'/><category term='creditcard'/><category term='Pay-at-the-Pump'/><category term='Fake CA'/><category term='sniffer'/><category term='xssed'/><category term='25C3'/><category term='cracked'/><category term='Privacy'/><category term='CIA'/><category term='SSL'/><category term='MD5'/><category term='Spam'/><category term='XSS'/><category term='Fake SSL'/><category term='exploit'/><category term='Facebook'/><category term='Petrol Stations'/><title type='text'>CERTStation Lab</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Jamal Khan</name><uri>http://www.blogger.com/profile/11081181953537179199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>15</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-191114541745099470</id><published>2012-01-28T07:53:00.002-05:00</published><updated>2012-01-28T07:58:03.288-05:00</updated><title type='text'>Zscalar ThreatLabz Free Web Risk Analysis Service</title><summary type='text'>Zulu - a free service from Zscalar that scans websites for potential threats. This service uses mix of proprietary-based and open-source tools to scan sites and provide security ratings. Threat rating is done through the use of heuristics, reputation and host domain analysis for a particular URL. It supports direct URLs as well as addresses masked with URL shortening services. These days </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/191114541745099470/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=191114541745099470' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/191114541745099470'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/191114541745099470'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2012/01/zscalar-threatlabz-free-web-risk.html' title='Zscalar ThreatLabz Free Web Risk Analysis Service'/><author><name>cERTx</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-2421678002966925583</id><published>2010-07-23T03:37:00.000-04:00</published><updated>2010-07-23T03:37:24.932-04:00</updated><title type='text'>Opensource intrusion detection &amp; prevention engine</title><summary type='text'>The Open Information Security Foundation (OISF) has released version 1.0 of its open source intrusion detection and prevention engine – Suricata. The first stable release includes a number of improvements and new features over the previous development releases, such as support for DCERPC over UDP and the tag keyword. Unlike Snort, another popular open source network intrusion prevention and </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/2421678002966925583/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=2421678002966925583' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2421678002966925583'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2421678002966925583'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2010/07/opensource-intrusion-detection.html' title='Opensource intrusion detection &amp; prevention engine'/><author><name>Fahd</name><uri>http://www.blogger.com/profile/13117699133623286926</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://2.bp.blogspot.com/_MdcwASvDC6k/StLOKtyfq6I/AAAAAAAAAgo/NsNjIlB7ZTc/S220/7_0y6cgP91dGaBOb9KVkxbZogtS6_vMaEQIAhxfiyvvtweYL3c8Kyx9hp-IK_EGH.jpeg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-6585722083117680375</id><published>2010-05-25T02:30:00.000-04:00</published><updated>2010-05-25T02:30:17.000-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Facebook'/><category scheme='http://www.blogger.com/atom/ns#' term='Privacy'/><category scheme='http://www.blogger.com/atom/ns#' term='Community'/><category scheme='http://www.blogger.com/atom/ns#' term='Social-Network'/><title type='text'>Facebook users prefer quitting the social network over privacy concerns.</title><summary type='text'>A company called Sophos have claimed that numbers of Facebook users are having concerns about how the privacy is being maintained on the social networking site and how is it effecting them. Previously the company ran an online survey asking Facebook users if they would consider quitting Facebook over privacy concerns.

In response the survey concluded that sixty per cent of the users stated that </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/6585722083117680375/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=6585722083117680375' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/6585722083117680375'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/6585722083117680375'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2010/05/facebook-users-prefer-quitting-social.html' title='Facebook users prefer quitting the social network over privacy concerns.'/><author><name>Fahd</name><uri>http://www.blogger.com/profile/13117699133623286926</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://2.bp.blogspot.com/_MdcwASvDC6k/StLOKtyfq6I/AAAAAAAAAgo/NsNjIlB7ZTc/S220/7_0y6cgP91dGaBOb9KVkxbZogtS6_vMaEQIAhxfiyvvtweYL3c8Kyx9hp-IK_EGH.jpeg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-5870005306837210483</id><published>2010-02-26T00:18:00.001-05:00</published><updated>2010-02-26T00:18:16.333-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Pay-at-the-Pump'/><category scheme='http://www.blogger.com/atom/ns#' term='Petrol Stations'/><category scheme='http://www.blogger.com/atom/ns#' term='Skimming Attacks'/><category scheme='http://www.blogger.com/atom/ns#' term='creditcard'/><title type='text'>Credit card skimming attacks on pay-at-the-pump petrol stations</title><summary type='text'>According to US media reports, criminals have launched large-scale attacks on petrol pumps with built-in card payment systems to gain access to card data. Similar attacks that involve the attachment of special skimming devices over the legitimate equipment to copy card data, have previously only targeted cash points. Attackers often obtain the PIN with a hidden camera or a secondary PIN pad </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/5870005306837210483/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=5870005306837210483' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/5870005306837210483'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/5870005306837210483'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2010/02/credit-card-skimming-attacks-on-pay-at.html' title='Credit card skimming attacks on pay-at-the-pump petrol stations'/><author><name>Fahd</name><uri>http://www.blogger.com/profile/13117699133623286926</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://2.bp.blogspot.com/_MdcwASvDC6k/StLOKtyfq6I/AAAAAAAAAgo/NsNjIlB7ZTc/S220/7_0y6cgP91dGaBOb9KVkxbZogtS6_vMaEQIAhxfiyvvtweYL3c8Kyx9hp-IK_EGH.jpeg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-468095889598507798</id><published>2009-04-13T06:33:00.005-04:00</published><updated>2009-04-13T07:56:44.072-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Satelite'/><category scheme='http://www.blogger.com/atom/ns#' term='VCIM'/><category scheme='http://www.blogger.com/atom/ns#' term='National Security'/><category scheme='http://www.blogger.com/atom/ns#' term='hacked'/><category scheme='http://www.blogger.com/atom/ns#' term='Amish Hacker'/><title type='text'>National Satellites are they Hackable ...!</title><summary type='text'>According to " http://www.infiltrated.net/amishAttacks.html " reported on 9th april "Security experts are reporting today that Amish hackers equipped with reverse engineered VCIM's have hacked into Instar's vehicle satellite navigation systems and are extorting Instar." while some witnessess were also reported saying "It's horrible. I was headed down Main Street and my Garmin told me to turn </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/468095889598507798/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=468095889598507798' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/468095889598507798'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/468095889598507798'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2009/04/national-satellites-are-they-hackable.html' title='National Satellites are they Hackable ...!'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-6462296768292615824</id><published>2009-03-12T11:16:00.002-04:00</published><updated>2009-03-12T11:16:37.242-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='exploit'/><category scheme='http://www.blogger.com/atom/ns#' term='hacking'/><title type='text'>Adobe Vulnerability  takes a new turn</title><summary type='text'>The new adobe vulnerability is now exploitable not only by reading the infected pdf file but also by at least three different methods using metadata which is used by windows to show file information. It turns out that adobe has a shell extension which get the file information. Security Researcher "Didier Stevens" have released a short video on his blog which shows how this vulnerability can be </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/6462296768292615824/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=6462296768292615824' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/6462296768292615824'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/6462296768292615824'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2009/03/adobe-vulnerability-takes-new-turn.html' title='Adobe Vulnerability  takes a new turn'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-3460447375187506437</id><published>2009-01-29T07:40:00.001-05:00</published><updated>2009-01-29T07:42:04.394-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='sniffer'/><category scheme='http://www.blogger.com/atom/ns#' term='forensic'/><category scheme='http://www.blogger.com/atom/ns#' term='creditcard'/><title type='text'>Heartland Sniffer Hid In Unallocated Portion Of Disk</title><summary type='text'>While I was surfing online today, this news was something really interesting.“The sniffer malware that surreptitiously siphoned tons of payment card data from card processor Heartland Payment Systems hid in an unallocated portion of a server’s disk. The malware, which was ultimately detected courtesy of a trail of temp files, was hidden so well that it eluded two different teams of forensic </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/3460447375187506437/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=3460447375187506437' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/3460447375187506437'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/3460447375187506437'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2009/01/heartland-sniffer-hid-in-unallocated.html' title='Heartland Sniffer Hid In Unallocated Portion Of Disk'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-2166066054440364023</id><published>2009-01-22T07:02:00.000-05:00</published><updated>2009-01-22T10:18:50.363-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='CIA'/><category scheme='http://www.blogger.com/atom/ns#' term='FBI'/><category scheme='http://www.blogger.com/atom/ns#' term='XSS'/><category scheme='http://www.blogger.com/atom/ns#' term='NSA'/><category scheme='http://www.blogger.com/atom/ns#' term='xssed'/><category scheme='http://www.blogger.com/atom/ns#' term='certstation'/><title type='text'>FBI, CIA and NSA websites susceptible to XSS attacks.</title><summary type='text'>Popular xss archive website xssed.com is reporting that government websites like FBI.gov, CIA.gov and NSA.gov are susceptible to XSS attacks found by independent researchers. Cross site scripting attacks are not new and have been causing damage since 2007, numerous trainings, presentations and books have been in market since its time of discovery but this has still been around like the SQL </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/2166066054440364023/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=2166066054440364023' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2166066054440364023'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2166066054440364023'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2009/01/fbi-cia-and-nsa-websites-susceptible-to.html' title='FBI, CIA and NSA websites susceptible to XSS attacks.'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-2923681324146790356</id><published>2009-01-01T03:39:00.009-05:00</published><updated>2009-01-01T07:09:49.826-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SSL'/><category scheme='http://www.blogger.com/atom/ns#' term='Fake SSL'/><category scheme='http://www.blogger.com/atom/ns#' term='25C3'/><category scheme='http://www.blogger.com/atom/ns#' term='MD5'/><category scheme='http://www.blogger.com/atom/ns#' term='hacked'/><category scheme='http://www.blogger.com/atom/ns#' term='Fake CA'/><category scheme='http://www.blogger.com/atom/ns#' term='cracked'/><title type='text'>MD5 Practically Attacked</title><summary type='text'>&lt;!--[if gte mso 9]&gt;     Normal   0               false   false   false      EN-US   X-NONE   X-NONE                                                     MicrosoftInternetExplorer4                                                   &lt;![endif]--&gt;&lt;!--[if gte mso 9]&gt;</summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/2923681324146790356/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=2923681324146790356' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2923681324146790356'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2923681324146790356'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2009/01/md5-practically-attacked.html' title='MD5 Practically Attacked'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-6926943435016264593</id><published>2008-12-23T08:52:00.004-05:00</published><updated>2008-12-27T08:08:32.183-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Phishing'/><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Spam'/><category scheme='http://www.blogger.com/atom/ns#' term='URL Redirection'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft URL Redirection</title><summary type='text'>It seems like microsoft is having a bad year end to 2008 as the host of security vulnerabilities being published not only in its products but also on their website. The following is one more to the pile of security issues faced by the company these days. Although it is a simple url redirect but the purpose it can be used and is being used is really dangerous mainly because of the domain name </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/6926943435016264593/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=6926943435016264593' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/6926943435016264593'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/6926943435016264593'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2008/12/microsoft-url-redirection.html' title='Microsoft URL Redirection'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-4477242182500273402</id><published>2007-07-10T07:22:00.000-04:00</published><updated>2007-07-10T19:35:47.902-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='MSN Messenger'/><category scheme='http://www.blogger.com/atom/ns#' term='0day'/><title type='text'>MSN Messenger 0day</title><summary type='text'>MSN Messenger 8.x has a rather scary bug that is being exploited by people online.  When any of the strings given below are pasted into the private message box on your MSN Messenger, your Messenger will immediately disconnect.  It happens so quickly that you will think that it has not connected in the first place. If any of your friends asks you to paste the following in your personal message, do</summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/4477242182500273402/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=4477242182500273402' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/4477242182500273402'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/4477242182500273402'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2007/07/msn-messenger-0day.html' title='MSN Messenger 0day'/><author><name>Abdus Samad</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-4299605642062743678</id><published>2007-04-19T23:39:00.000-04:00</published><updated>2007-04-19T23:46:39.208-04:00</updated><title type='text'>CERTStation Radio on Podcast Bunker</title><summary type='text'>The guys over at Podcast Bunker have accepted our podcast onto their listings.</summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/4299605642062743678/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=4299605642062743678' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/4299605642062743678'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/4299605642062743678'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2007/04/certstation-radio-on-podcast-bunker.html' title='CERTStation Radio on Podcast Bunker'/><author><name>Lab Monkey</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-2401093813315568234</id><published>2007-04-18T22:33:00.000-04:00</published><updated>2007-04-19T19:53:17.376-04:00</updated><title type='text'>This week's Podcast - 16 Apr</title><summary type='text'>This week's podcast covered:Windows DNS Service zero day flaw exploited in targeted attacks while Microsoft hit by slew of new zero day flaws New Storm Worm outbreak hits the Internet and finally, Cisco fixes WiFi flaws.</summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/2401093813315568234/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=2401093813315568234' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2401093813315568234'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/2401093813315568234'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2007/04/this-weeks-tma.html' title='This week&apos;s Podcast - 16 Apr'/><author><name>Lab Monkey</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-5141953077491819298</id><published>2007-04-17T21:17:00.000-04:00</published><updated>2007-04-18T22:12:19.793-04:00</updated><title type='text'>Blackhat Wednesday</title><summary type='text'>It looks like Blackhats are increasingly releasing vulnerabilities in the days immediately after Patch Tuesday in an effort to cause as much frustration as possible for Microsoft.  We expect this trend to continue.  So not only do enterprises have to contend with deploying Microsoft patches on one day but also they can expect a major vulnerability the day after.</summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/5141953077491819298/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=5141953077491819298' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/5141953077491819298'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/5141953077491819298'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2007/04/blackhat-wednesday.html' title='Blackhat Wednesday'/><author><name>Lab Monkey</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1154750093487312148.post-5931203985106713674</id><published>2007-04-17T20:59:00.000-04:00</published><updated>2007-04-18T22:15:20.188-04:00</updated><title type='text'>Microsoft DNS Server Remote Code Advisory</title><summary type='text'>Microsoft released their advisory on 12 Apr 07 and hackers reacted quickly with working exploits the very next day.  By Apr 14th, working exploits were out in the wild for script kiddies and crackers to add to their Internet worms.What you need to knowThis exploit involves The Lookup_ZoneTreeNodeFromDottedName() which uses a vulnerable function Name_ConvertFileNameToCountName() to convert a </summary><link rel='replies' type='application/atom+xml' href='http://certstation.blogspot.com/feeds/5931203985106713674/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=1154750093487312148&amp;postID=5931203985106713674' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/5931203985106713674'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1154750093487312148/posts/default/5931203985106713674'/><link rel='alternate' type='text/html' href='http://certstation.blogspot.com/2007/04/microsoft-dns-server-remote-code.html' title='Microsoft DNS Server Remote Code Advisory'/><author><name>Lab Monkey</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
