<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress.com" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>hacker &amp;laquo; WordPress.com Tag Feed</title>
	<link>http://wordpress.com/tag/hacker/</link>
	<description>Feed of posts on WordPress.com tagged "hacker"</description>
	<pubDate>Sun, 07 Sep 2008 12:16:47 +0000</pubDate>

	<generator>http://wordpress.com/tags/</generator>
	<language>en</language>

<item>
<title><![CDATA[Assassinando o Manuel]]></title>
<link>http://diariosl.wordpress.com/?p=27</link>
<pubDate>Sat, 06 Sep 2008 21:47:30 +0000</pubDate>
<dc:creator>flavetz</dc:creator>
<guid>http://diariosl.wordpress.com/?p=27</guid>
<description><![CDATA[Sempre que me deparo com pessoas escrevendo, vejo o quão mal anda a cultura popular por estas banda]]></description>
<content:encoded><![CDATA[<p>Sempre que me deparo com pessoas escrevendo, vejo o quão mal anda a cultura popular por estas bandas.</p>
<p>A popularização dos meios de comunicação e sua massificação na Internet é muito interessante e, ao mesmo tempo, pessoas que não tinham o hábito de escrever hoje tem blogs, participam de comunidades virtuais, fóruns, tem um perfil no Orkut ou no MySpace e a gente vê o quanto as pessoas andam escrevendo mal.</p>
<p>Não sei se pela maior exposição ou se a população está realmente estudando e lendo menos, o que se percebe é que a língua portuguesa está sob artilharia pesada.</p>
<p>O pior mesmo é quando encontramos sites profissionais, muitas vezes bastante atraentes, e encontramos aquela palavra escrita incorretamente. Continua-se a ler o texto pra ver se não foi apenas um erro de digitação e - pimba! Lá está outra ocorrência da mesma palavra.</p>
<p>Ninguém é obrigado a ser perfeito, todos erramos, mas o duro é errar de propósito, ser um ignorante achando que não tem problema. O maior tesouro de uma nação é seu idioma, precisamos proteger o nosso.</p>
<p>Percebo muito nos fóruns de discussão que os melhores escritores também são aqueles que mais ajudam na comunidade e quando são desenvolvedores também costumam ser os melhores. Essa explicação é simples: quem escreve melhor, lê bastante. Quem lê bastante, aprende mais.</p>
<p>Portanto, se você quer ser um <em>hacker</em> de verdade, leia. Leia muito. Aprenda o tempo todo. Leia mais um pouco. Desenvolva a linguagem escrita também. Não adianta ser um excelente programador, administrador de sistemas, nem mesmo técnico e não saber escrever com um mínimo de qualidade. Lembre-se sempre que quando algo é escrito a outra ponta, o seu leitor, terá que entender o seu recado.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Organise, and a very wet 2600]]></title>
<link>http://yorksranter.wordpress.com/?p=3547</link>
<pubDate>Sat, 06 Sep 2008 18:33:28 +0000</pubDate>
<dc:creator>yorksranter</dc:creator>
<guid>http://yorksranter.wordpress.com/?p=3547</guid>
<description><![CDATA[So I took my stupid damn idea off to the stupid ideas club. When we got there, guess who? Spyblog wa]]></description>
<content:encoded><![CDATA[<p>So I took my stupid damn <a href="http://yorksranter.wordpress.com/2008/08/31/organise/">idea</a> off to the <a href="http://www.london2600.org.uk/">stupid ideas club</a>. When we got there, guess who? <a href="http://spyblog.org.uk/blog/spyblog/">Spyblog</a> was waiting at the rendezvous with some Dutchmen and an Argentine documentarist and half the No2ID members not currently in hospital. And after we made our way through Jock McZanu's EU Maddie monsoon (GOOD HERE ISN'T IT???) to the pub, who shows up but <a href="http://reverendrat.com/">Rat</a>; carrying a total of 30GB of mass storage on his person in an array of USB drives, a fob GPS, and God knows what in his piercings.</p>
<p>Anyway, we talked over the thing, and many other things besides; what should happen if secret police become members? wouldn't it be easier to do an open-source clone of a BMC helpdesk ticketing app? (why? why? I thought my brain would concrete) how would you sterilise an airport fingerprint reader in less than 10 seconds? So I promised to revise the proposals, and well, here they are.</p>
<p>Or would be, but nobody likes a 2,000 word blog post. So instead it's <a href="http://docs.google.com/Doc?id=ddb95rfv_52fzqmcscm">here on Google Documents</a>, which probably means something badological. Read. Mark. Learn. Inwardly digest. Comment. Here at first, but if you want to take part just tell me and I'll give you write privileges. If anyone cares very much I'll get it set up on Sourceforge and set about preparing a list of functions and tables. I still think Django is the way to go, in which case the mapping of the org model into Python classes into db tables should be as straightforward as these things ever are.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Which programming language should you learn first?]]></title>
<link>http://functionalrants.wordpress.com/?p=3</link>
<pubDate>Sat, 06 Sep 2008 15:19:59 +0000</pubDate>
<dc:creator>Dan6688</dc:creator>
<guid>http://functionalrants.wordpress.com/?p=3</guid>
<description><![CDATA[I&#8217;ve always thought that there are several types of programmers, each one showing distinctive ]]></description>
<content:encoded><![CDATA[<p>I've always thought that there are several types of programmers, each one showing distinctive features. Now, I think you could do the same with people who want to learn programming. And, one of the most important decisions a novice programmer will ever take is what to learn; the first choice is which programming language to learn first.</p>
<h3> The hobbyist</h3>
<p>That's the person who's just interested in learning programming as a form of entertainment and to take a challenge every now and then. So, instead of collecting stamps, he learns programming. He probably won't want to get down to the complex stuff, but he might end up liking it and wanting to do it for a living.</p>
<p style="font-style:italic;">Is this you? I suggest you learn <a href="http://www.python.org">Python</a>, which is easy to learn but also powerful.<br />
You should probably read <a href="http://openbookproject.net/thinkCSpy/index.xhtml">this book</a>. You can find a .pdf version <a href="http://www.greenteapress.com/thinkpython/thinkCSpy.pdf">here</a>.</p>
<h3>The engineer</h3>
<p>That's the person who wants to learn programming as a discipline, and to get more out of his computer, or perhaps because he likes a challenge (but not the <span style="font-style:italic;">hobbyist</span>'s kind). He's more likely to end up wanting to do it for a living, or to make use of the skills he starts to acquire in his current job.</p>
<p style="font-style:italic;">Is this you? I suggest you either learn Python (see above) as an introduction to programming, and perhaps <a href="http://www.cprogramming.com/tutorial.html#ctutorial">learn C</a>. The latter might be a bit difficult in the beginning, but the effort will be worth it (you will not only be able to program in C -- You will have some base knowledge and skills which will let you learn C++ or more advanced object-oriented programming languages more easily).</p>
<h3>The computer scientist</h3>
<p>Right, we're starting to deal with the serious folks. That's the folk who wants to learn programming to earn a living, and perhaps we should make a difference between an "engineer" in my categorizing system, and a "software engineer", which is what this type of person will eventually become. He <em>does</em> want a challenge, but probably only to improve his skills and add new shiny things to his CV.</p>
<p style="font-style:italic;">Is this you? I suggest you <a href="http://www.cprogramming.com/tutorial.html#ctutorial">learn C</a>. It will most likely be a prerequisite for you to work as an actual software engineer. Otherwise, it lets you learn C++, Java, or whatever you're into more easily. Focus on object-oriented programming languages, as that's the trend nowadays.</p>
<h3>The hacker</h3>
<p>Now, this is the type I wanted to talk about. That's the person who <em>loves</em>challenges, <em>loves</em> programming, and <em>loves</em> to experiment with both old and new stuff. He'll most likely want to do it for a living, but he's likely to experience some trouble working for someone else doing things that he doesn't like, unless he's got enough free time to do what he likes at home (or in his server-cave). While you may think of programming as either something very complex or as a serious discipline, the hacker (if you're thinking of movie types who break into computer systems, you're thinking of a <em>cracker</em>, not a hacker) will think of it as a playful and pleasurable form of entertainment. It will probably even become his lifestyle.</p>
<p style="font-style:italic;">Is this you? Hell, forget about Python unless you don't know anything about programming yet! <a href="http://www.cprogramming.com/tutorial.html#ctutorial">Learn C</a> for lower-level tasks and embedded systems, and... Lisp! You can choose between Scheme (the tiny basis for Lisp, with which you can experiment but not really write any serious applications) and Common Lisp (a complex and complete dialect of Lisp, probably uglier than Scheme but excellent for any purpose).</p>
<p>See? It's not <span style="font-style:italic;">that</span> hard to decide which language to learn first.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Ecco i contenuti della manomissione del blog del moige]]></title>
<link>http://maxifasso.wordpress.com/?p=357</link>
<pubDate>Sat, 06 Sep 2008 14:19:03 +0000</pubDate>
<dc:creator>maxifasso</dc:creator>
<guid>http://maxifasso.wordpress.com/?p=357</guid>
<description><![CDATA[Sono state cinque ore, molto movimentate nel bigottisimo blog del moige, che nella giornata di ieri,]]></description>
<content:encoded><![CDATA[<p>Sono state cinque ore, molto movimentate nel bigottisimo blog del moige, che nella giornata di ieri, su manomesso, grazie ad una scarsissima manutenzione da parte dei gestori del blog.</p>
<p>Le immagini documentano i vari post fatti dagli autori dell'attacco:</p>
<p><a href="http://img403.imageshack.us/my.php?image=moigehackerato2pp0.png" target="_blank"><img class="aligncenter" src="http://img403.imageshack.us/img403/4404/moigehackerato2pp0.th.png" border="0" alt="" /></a><br />
<a href="http://img213.imageshack.us/my.php?image=moigehackerato3qp3.png" target="_blank"><img class="aligncenter" src="http://img213.imageshack.us/img213/9972/moigehackerato3qp3.th.png" border="0" alt="" /></a><br />
Qui hanno fatto un'accunt pubblico, distribuendo username (neim :) ) e password ( uord :) ), dando di conseguenza ai visitatori, la facolta di scrivere dei post che riposto qui.</p>
<p>I videogiochi fanno male:</p>
<p style="text-align:center;"><a href="http://img230.imageshack.us/my.php?image=moigehackerato4rz9.png" target="_blank"><img class="aligncenter" src="http://img230.imageshack.us/img230/2442/moigehackerato4rz9.th.png" border="0" alt="" /></a></p>
<p>Il demonio:</p>
<p style="text-align:center;"><a href="http://img123.imageshack.us/my.php?image=moigehackerato5xc9.png" target="_blank"><img class="aligncenter" src="http://img123.imageshack.us/img123/1531/moigehackerato5xc9.th.png" border="0" alt="" /></a></p>
<p>Peccatori:</p>
<p style="text-align:center;"><a href="http://img141.imageshack.us/my.php?image=moigehackerato6xf2.png" target="_blank"><img class="aligncenter" src="http://img141.imageshack.us/img141/7844/moigehackerato6xf2.th.png" border="0" alt="" /></a></p>
<p>Porca Madonna (è cosi il titolo, non ci posso far niente...):</p>
<p style="text-align:center;"><a href="http://img73.imageshack.us/my.php?image=moigehackerato7gp9.png" target="_blank"><img class="aligncenter" src="http://img73.imageshack.us/img73/1497/moigehackerato7gp9.th.png" border="0" alt="" /></a></p>
<p>La bugia più grande della storia:</p>
<p style="text-align:center;"><a href="http://img177.imageshack.us/my.php?image=moigehackerato8qz9.png" target="_blank"><img class="aligncenter" src="http://img177.imageshack.us/img177/3853/moigehackerato8qz9.th.png" border="0" alt="" /></a></p>
<p>Un pò di saggezza cristiana:</p>
<p style="text-align:center;"><a href="http://img177.imageshack.us/my.php?image=moigehackerato9bj5.png" target="_blank"><img class="aligncenter" src="http://img177.imageshack.us/img177/1570/moigehackerato9bj5.th.png" border="0" alt="" /></a></p>
<p>Continuate cosi... (l'ultimo post)</p>
<p style="text-align:center;"><a href="http://img123.imageshack.us/my.php?image=moigehackerato10yf8.png" target="_blank"><img class="aligncenter" src="http://img123.imageshack.us/img123/9443/moigehackerato10yf8.th.png" border="0" alt="" /></a></p>
<p>Ovviamente dopo cinque ore di blog manomesso, i gestori si sono svegliati ed hanno messo la seguente schermata, ancora presente mentre sto scrivendo questo post:</p>
<p style="text-align:center;"><a href="http://img403.imageshack.us/my.php?image=moigehackeratofinehl3.png" target="_blank"><img class="aligncenter" src="http://img403.imageshack.us/img403/14/moigehackeratofinehl3.th.png" border="0" alt="" /></a></p>
<p>Se i gestori del sito, fosserò stati più curanti del lato sicurezza, questo non sarebbe successo!<br />
Questo blog ha "documentato" il centenuto della manomissione, per chi si è perso l'evento.</p>
<p>Comunque ci tengo a precisare che non ho postato nulla li, anche perchè non condivido l'azione fatta contro il moige.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Wahlcomputerprobleme bei US-Wahl absehbar]]></title>
<link>http://itsicherheit.wordpress.com/?p=237</link>
<pubDate>Sat, 06 Sep 2008 06:29:16 +0000</pubDate>
<dc:creator>Guido Strunck</dc:creator>
<guid>http://itsicherheit.wordpress.com/?p=237</guid>
<description><![CDATA[Wahlcomputer sind eine unter Experten umstrittene Sache. Der Chaos Computer Club lehnt sie rundherau]]></description>
<content:encoded><![CDATA[<p>Wahlcomputer sind eine unter Experten umstrittene Sache. Der Chaos Computer Club lehnt sie rundheraus ab, nachdem er 2006 in einem spektakulärem Hack demonstrierte, wie leicht diese Geräte manipuliert werden können. Dabei wurde eines der angeblich unangreifbaren Geräte kurzerhand zum Schachcomputer umfunktioniert.</p>
<p><a href="https://berlin.ccc.de/wiki/Wahlcomputer" target="_blank">Wiki des Berliner CCC zum Thema Wahlcomputer</a></p>
<p>Nun haben auch die USA ihr Wahlcomputerproblem. Wie die aktuelle <a href="http://www.computerzeitung.de/" target="_blank">Computerzeitung </a>in ihrer Printausgabe berichtet, hat der Einsatz von Geräten der Firma <a href="http://www.diebold.com/" target="_blank">Diebold</a>, Hersteller von Kiosk-Systemen, in mindestens 34 Staaten bei Vorwahlen zu Problemen geführt. Teilweise wurden Stimmen nicht oder falsch erfasst. Oder es kam zu Stabilitätsproblemen. So soll z.B. die installierte Antivirus-Software zu Störungen geführt haben. Oder das Hochladen von Speicherkarten führte zu Pufferüberläufen.</p>
<p>So kam ein Team der Princeton University, das im Auftrag des kalifornischen Inneministeriums den Quellcode des E-Voting-System von Diebold - bestehend aus einem Touchscreen-System, einem optischen Scanner und dem Wahlmanagementsystem – untersuchte, zu einem deutlichem Ergebnis: Demnach bräuchte ein versierter Einzeltäter nur kurzzeitig den Zugang zu einem einzigen Wahlcomputer, um darauf einen Virus zu installieren, der sich auf dem Weg über das Wahlmanagementsystem auf alle daran angeschlossenen Stimmerfassungsgeräte eines Wahlkreises ausbreiten könnte.</p>
<p>Aber auch in Wahlsystemen von <a href="http://www.hartintercivic.com/" target="_blank">Hart Intercivic</a> und <a href="http://www.sequoiavote.com/" target="_blank">Sequoia </a>fanden unversitäre Hackerteams bereits im vergangnen Jahr zahlreiche Schwachstellen. Fast könnte man meinen Wahlcomputer wären „Bananenware“, die zum Ausreifen beim Kunden bestimmt ist. Und deren erste Arbeitsergebnisse allenfalls Heizwert haben.</p>
<p>Bis zur US-Präsidentenwahl im November hofft man die Geräte doch noch hinzubekommen. Allerdings laufen zwischen Diebold und dem US-Bundesstaat Ohio bereits juristische Auseinandersetzungen hinsichtlich der offenbar fehlerhaft ausgelieferten Geräte.</p>
<p><a href="http://www.heise.de/newsticker/US-Wahlcomputer-koennen-keine-vertrauenswuerdigen-Wahlen-garantieren--/meldung/93800" target="_blank">Heise.de: US-Wahlcomputer können keine vertrauenswürdigen Wahlen garantieren</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Make Me Ill]]></title>
<link>http://sphodra.wordpress.com/?p=548</link>
<pubDate>Sat, 06 Sep 2008 00:33:53 +0000</pubDate>
<dc:creator>George</dc:creator>
<guid>http://sphodra.wordpress.com/?p=548</guid>
<description><![CDATA[A hacker got into my church&#8217;s website (which I adminsiter for the time being) - exploiting, I ]]></description>
<content:encoded><![CDATA[<p>A hacker got into my church's website (which I adminsiter for the time being) - exploiting, I believe, a recently found bug in Joomla 1.5.  I have corrected that issue - but my backups may not be very helpful to me due to the date - and the hacker went and deleted each article on the site, then each section and category, before finally deleting all the user accounts (including mine).We'll see this evening what I can do to recover or get back to a semblance of sanity.</p>
<p>The hacker did not feel that that was enough - they retitled the site so that users browsing our church would see an expletive, rather than helpful or encouraging content. Ah, well. I suppose I will have to pay closer attention to security updates and the like - be a little more proactive.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacking EBOOK FREE Download]]></title>
<link>http://ebooklink.wordpress.com/?p=5</link>
<pubDate>Fri, 05 Sep 2008 14:48:24 +0000</pubDate>
<dc:creator>ebooklink</dc:creator>
<guid>http://ebooklink.wordpress.com/?p=5</guid>
<description><![CDATA[
19 Deadly Sins of Software Security
2600 The Hacker Quarterly Magazine 
Anti-Hacker Tool Kit Second]]></description>
<content:encoded><![CDATA[<ul>
<li><a class="link_text_underline" title="Ebooks 19 Deadly Sins of Software Security" href="http://www.ebooks-space.com/ebook/702/19-Deadly-Sins-of-Software-Security.html" target="_blank">19 Deadly Sins of Software Security</a></li>
<li><a class="link_text_underline" title="Ebooks 2600 The Hacker Quarterly Magazine " href="http://www.ebooks-space.com/ebook/222/2600-The-Hacker-Quarterly-Magazine-.html" target="_blank">2600 The Hacker Quarterly Magazine </a></li>
<li><a class="link_text_underline" title="Ebooks Anti-Hacker Tool Kit Second Edition" href="http://www.ebooks-space.com/ebook/292/Anti-Hacker-Tool-Kit-Second-Edition.html" target="_blank">Anti-Hacker Tool Kit Second Edition</a></li>
<li><a class="link_text_underline" title="Ebooks Big Book of Windows Hacks" href="http://www.ebooks-space.com/ebook/182/Big-Book-of-Windows-Hacks.html" target="_blank">Big Book of Windows Hacks</a></li>
<li><a class="link_text_underline" title="Ebooks Computer Security and Cryptography" href="http://www.ebooks-space.com/ebook/465/Computer-Security-and-Cryptography.html" target="_blank">Computer Security and Cryptography</a></li>
<li><a class="link_text_underline" title="Ebooks Cryptography for Developers" href="http://www.ebooks-space.com/ebook/934/Cryptography-for-Developers.html" target="_blank">Cryptography for Developers</a></li>
<li><a class="link_text_underline" title="Ebooks Firefox Hacking" href="http://www.ebooks-space.com/ebook/804/Firefox-Hacking.html" target="_blank">Firefox Hacking</a></li>
<li><a class="link_text_underline" title="Ebooks Google Apps Hacks" href="http://www.ebooks-space.com/ebook/59/Google-Apps-Hacks.html" target="_blank">Google Apps Hacks</a></li>
<li><a class="link_text_underline" title="Ebooks Gray Hat Hacking" href="http://www.ebooks-space.com/ebook/551/Gray-Hat-Hacking.html" target="_blank">Gray Hat Hacking</a></li>
<li><a class="link_text_underline" title="Ebooks Hack Attacks Testing" href="http://www.ebooks-space.com/ebook/376/Hack-Attacks-Testing.html" target="_blank">Hack Attacks Testing</a></li>
<li><a class="link_text_underline" title="Ebooks Hacker Attack" href="http://www.ebooks-space.com/ebook/228/Hacker-Attack.html" target="_blank">Hacker Attack</a></li>
<li><a class="link_text_underline" title="Ebooks Hackers Secrets " href="http://www.ebooks-space.com/ebook/152/Hackers-Secrets-.html" target="_blank">Hackers Secrets </a></li>
<li><a class="link_text_underline" title="Ebooks Hacking - The Art of Exploitation" href="http://www.ebooks-space.com/ebook/76/Hacking---The-Art-of-Exploitation.html" target="_blank">Hacking - The Art of Exploitation</a></li>
<li><a class="link_text_underline" title="Web 2.0 Security Secrets and Solutions" href="http://www.ebooks-space.com/ebook/190/Hacking-Exposed-Web-2.0%3A-Web-2.0-Security-Secrets-and-Solutions.html" target="_blank">Hacking Exposed Web 2.0: Web 2.0 Security Secrets and Solutions</a></li>
<li><a class="link_text_underline" title="Ebooks Hacking GMail" href="http://www.ebooks-space.com/ebook/381/Hacking-GMail.html" target="_blank">Hacking GMail</a></li>
<li><a class="link_text_underline" title="Ebooks Hacking GPS" href="http://www.ebooks-space.com/ebook/329/Hacking-GPS.html" target="_blank">Hacking GPS</a></li>
<li><a class="link_text_underline" title="ExtremeTech" href="http://www.ebooks-space.com/ebook/354/Hacking-Windows-Vista%3A-ExtremeTech.html" target="_blank">Hacking Windows Vista: ExtremeTech</a></li>
<li><a class="link_text_underline" title="88 Tech Tricks to Turbocharge Your Day" href="http://www.ebooks-space.com/ebook/730/Lifehacker%3A-88-Tech-Tricks-to-Turbocharge-Your-Day.html" target="_blank">Lifehacker: 88 Tech Tricks to Turbocharge Your Day</a></li>
<li><a class="link_text_underline" title="A Guide to Social Engineering Dumpster Diving and Shoulder Surfing" href="http://www.ebooks-space.com/ebook/469/No-Tech-Hacking%3A-A-Guide-to-Social-Engineering-Dumpster-Diving-and-Shoulder-Surfing-.html" target="_blank">No Tech Hacking: A Guide to Social Engineering Dumpster Diving and Shoulder Surfing </a></li>
<li><a class="link_text_underline" title="Ebooks Practical Hacking Techniques and Countermeasures" href="http://www.ebooks-space.com/ebook/705/Practical-Hacking-Techniques-and-Countermeasures.html" target="_blank">Practical Hacking Techniques and Countermeasures</a></li>
<li><a class="link_text_underline" title="Ebooks Security Fundamentals for E-Commerce" href="http://www.ebooks-space.com/ebook/327/Security-Fundamentals-for-E-Commerce.html" target="_blank">Security Fundamentals for E-Commerce</a></li>
<li><a class="link_text_underline" title="Replacing Fear Uncertainty and Doubt" href="http://www.ebooks-space.com/ebook/484/Security-Metrics%3A-Replacing-Fear-Uncertainty-and-Doubt.html" target="_blank">Security Metrics: Replacing Fear Uncertainty and Doubt</a></li>
<li><a class="link_text_underline" title="Tips and Tools for Cheap Fun Innovative Phone Service" href="http://www.ebooks-space.com/ebook/288/Skype-Hacks%3A-Tips-and-Tools-for-Cheap-Fun-Innovative-Phone-Service.html" target="_blank">Skype Hacks: Tips and Tools for Cheap Fun Innovative Phone Service</a></li>
<li><a class="link_text_underline" title="Ebooks SQL Hacks" href="http://www.ebooks-space.com/ebook/900/SQL-Hacks.html" target="_blank">SQL Hacks</a></li>
<li><a class="link_text_underline" title="Ebooks The Craft of System Security" href="http://www.ebooks-space.com/ebook/173/The-Craft-of-System-Security.html" target="_blank">The Craft of System Security</a></li>
<li><a class="link_text_underline" title="A Practical Guide to Computer Security" href="http://www.ebooks-space.com/ebook/399/ting-the-Hacker%3A-A-Practical-Guide-to-Computer-Security.html" target="_blank">ting the Hacker: A Practical Guide to Computer Security</a></li>
</ul>
]]></content:encoded>
</item>
<item>
<title><![CDATA[captchas]]></title>
<link>http://piratenblog.wordpress.com/?p=810</link>
<pubDate>Fri, 05 Sep 2008 11:07:25 +0000</pubDate>
<dc:creator>piratenblog</dc:creator>
<guid>http://piratenblog.wordpress.com/?p=810</guid>
<description><![CDATA[Ein sehr schönes Beispiel für Captchas, findet man hier: http://random.irb.hr/signup.php

Wobei ic]]></description>
<content:encoded><![CDATA[<p>Ein sehr schönes Beispiel für Captchas, findet man hier: <a href="http://random.irb.hr/signup.php">http://random.irb.hr/signup.php</a></p>
<p><a href="http://piratenblog.files.wordpress.com/2008/09/captcha.png"><img class="aligncenter size-full wp-image-811" title="captcha" src="http://piratenblog.wordpress.com/files/2008/09/captcha.png" alt="" width="449" height="246" /></a></p>
<p>Wobei ich nicht glaube, dass es hier darum geht, Spambots auszusperren, sondern eher um "uneingeweihte" Normalos nicht rein zu lassen.</p>
<p>Danke an <a href="http://www.scienceblogs.de/mathlog/2008/03/captcha.php">ScienceBlogs</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Julukan ........ di Indonesia]]></title>
<link>http://arishardinanto.wordpress.com/?p=150</link>
<pubDate>Fri, 05 Sep 2008 02:55:18 +0000</pubDate>
<dc:creator>aris h</dc:creator>
<guid>http://arishardinanto.wordpress.com/?p=150</guid>
<description><![CDATA[Dari si Blek
Kata salah satu yang katanya pakar bidang gitu-gituan, para anu dan si anu dalam harian]]></description>
<content:encoded><![CDATA[<p>Dari si <a href="http://blackclaw.wordpress.com/2007/01/20/julukan-heker-di-indonesi" target="_blank">Blek</a></p>
<p>Kata salah satu yang katanya pakar bidang <em>gitu-gituan</em>, para anu dan si anu dalam harian ibu kutit akan melakukan serangan terhadap sistem Depkominfo, tapi siapa sih sebenarnya .... itu???? makanan apa sih itu...???????????</p>
<p>Seperti yang sudah diketahui secara umum, penilaian seorang HEKER (BUKAN HACKER LOH… (^_^)b) apa tidaknya seseorang di dunia ini adalah pengakuan dari masyarakat, minimal orang atau sebuah komunitasnya. Bukan dari pengakuannya sendiri. Ya, memang begitu seharusnya, tetapi waspadalah jika di Indonesia. Pengakuan dari orang atau komunitas SANGAT TIDAK BISA SAMA SEKALI dijadikan acuan untuk menentukan Heker tidaknya seseorang! Mengapa dikatakan demikian? Yah, saya bukannya mengecilkan arti orang-orang yang sudah dapat pengakuan dari lingkungan disekitarnya, mohon jangan tersinggung, tetapi, di Indon, seseorang yang dianggap lebih menguasai ketimbang orang di sekitarnya dianggap HEKER! Contoh, seseorang yang lebih cepat mengetik menggunakan MSWORD di sebuah Rental akan dianggap HEKER oleh komunitas pengetikan di tempat itu. Begitupula dengan seseorang yang lebih jago menggunakan Winamp, mengetahui shortcut tersembunyi dari winamp, akan menjadi HEKER! Wuah! Tidak heran, sangat BANYAK SEKALI HEKER di Indonesia! Banyak yang tidak tahu, heker itu kerjaannya cuman di satu bidang, yaitu bidang keamanan doang, tetapi, di Indon, seorang heker itu dianggap sangat pakar segalanya, mulai dari bisa ngedit gambar pake potosop, bisa bikin email, bakin komputer sendiri, sampe-sampe bisa pasang prosesor pentium 3 di mobo AMD, bisa bikin efek video, bisa segala-galanya, padahal tidak! Banyak wizard dan elite yang saya kenal, bahkan situs dan programnya memiliki GUI yang sangat biasaaa sekali, benar-benar penampilan yang sangat biasa! Tapi tentu saja keamanannya sangat tinggi pada umumnya. Bahkan, seorang kenalan saya yang juga sama-sama anggota CDC dengan nick TR1V!4 (tenang bo, die bule, kaga ngerti paan nyang kite omongin…) tidak mengerti sama sekali apa beda DDR dan SDR, yah tapi urusan ngeliat string, beliau jagonya! heheheheheee… Di indon, biasalaaah, semuanya dipukul rata! Hal ini juga memunculkan anggapan, bahwa seorang Heker itu otomatis lebih tinggi ilmunya ketimbang seorang grafik designer, web designer, tukang reparasi, dll, padahal BUKANKAH ITU PEKERJAAN YANG BERBEDA??? Dalam kasus ini, dipukul ratalah bahwa seorang Tukang sate lebih enak masakannya ketimbang Tukang Mie Ayam, padahal dua-duanya memiliki pekerjaan yang berbeda walaupun sama-sama tukang! Padahal, strata heker ndiri itu banyak lo… cari sendiri, males ane ngejelasin… hahahahaa! Tapi, utamanya, seputih-putihnya heker indonesia, belum ada yang berani untuk putih total, sehingga jadi guru. Tetap saja ada keinginan untuk… yaaa.. taulaaah… dan biasanya dilakuin seh… Satu hal yang jadi pikiran akhir-akhir ini, betulkah bahwa benar-benar ada seorang WHITE HAT di dunia ini? Masalahnya, umumnya, untuk mendapatkan predikat heker (bukan di indon) seseorang biasanya akan banyk membobol situs, dan yang paling sering, mendeface situs itu sendiri agar dapat pengakuan dan masuk ke sebuah komunitas untuk memperoleh lebih banyak ilmu hingga stratanya naik. Bukankah itu tergolon BLACK HAT, dimana hal tersebut merugikan orang lain? Mengapa saya berani berkata demikian? yah, walaupun dia berhasil masuk dan tidak mengadakan penghapusan file, tapi dengan adanya deface atau minimal pemberitahuan secara luas dan terang2an, si OWNER akan kehilangan kepercayaan publik, dan jelas itu merugikannya. SANGAT JARANG saya temukan seseorang yang hanya mengemail si pemilik dengan ebrkata bahwa “Hei, teman, keamanan situsmu itu BEGINI, BEGINI, BEGINI,…dst” Akhir-akhir ini. Sekarang, yang ada, hanyalah kepentingan untuk nyari popularitas semata. Yang paling parah, untuk mendapatkan pengakuan, sering digunakan cara-cara yang juga parah (ATAU SOSIAL ENGINERING YANG KEREN???). misalnya, seseorang yang pengen jadi heker, akan bergabung dengan sebuah milis heker dengan tiga username yang berbeda2. Anggaplah A, B, dan C, dimana A digunakan sebagai Nickname utamnya, B sebagai pemancing, dan C sebagai korban. Timbullah sandiwara yang lucu. Dengan menggunakan user B, dia akan menulis kepada milis sebuah tantangan, SIAPA YANG BISA BAJAK MAIL SAYA KALO KALIAN HEKER? Kemudian dengan user C, dia akan berkata, WAH, MILIS PAYAH NIH, GITU AJA GA BISA. nah, nanti, dia akan menggunakan User A untuk menghancurkan C dengan pertama-tama memberitahukan bahwa dia akan menghack user C yang mengejek milis, kemudian menggunakan user C untuk mengirim EMAIL : “HI, saya A dan SAYA MENGGUNAKAN account C sekarang tahu rasa kau C” dan setelah itu, si B akan menyanjung2 si A. Lucu bukan? Wahahahahahaha! Tiga2nya usernya dia juga…! Wahahahaha!!!! Cara lain, adalah dengan membajak forum. Tarohlah ada sebuah forum yang cukup terkenal, maka dia akan mendaftar sebagai member BUKAN DENGAN USERNAME yang sering dia gunakan. dan akan sangat aktif sehingga diangkat menjadi moderator, bahkan Super Moderator. Nah, biasanya, di sebuah forum, ada sebuah tempat tersembunyi untuk staff berbincang bincang. Dia tinggal mengkopi semua isinya (karena dia sekarang staff tentu) dan dengan menggunakan username yang sering dia gunakan (username “HACKER”nya) dia akan mempublish isi thread tersembunyi itu ke forum tersebut. Biasanya ditambah-tambahi dengan kata2 :”ADMINISTRATOR, SITUS ANDA MEMILIKI KEAMANAN YANG SANGAT RENDAH. LIHAT, SAYA BISA MASUK KE THREAD TERSEMBUNYI ANDA. INI BUKTINYA!” dan dengan gaya bahasa yang sopan, banyak yang akan berpikir… “WAH.. orang ini sudah tinggi ilmunya!” HAHAHAHAHAHA!!! BASI TAUK!!!!! Satu lagi cara, adalah dengan masuk ke milist para newbie dengan mengatakan bahwa : “HEY, ada BUG BARU DI MSN! JIKA INGIN MENDAPATKAN USERNAME DAN PASSWORD SESEORANG, CUKUP BIKIN FORM usr : target email usrmd : email kita pwdmd : password kita (bahasa yang kayak program pokoknya…) dengan subjek finding boot, dan dikirm ke admin_mail_robots@msn.com, maka kita bisa dapat password dan username target!Ini biasanya digunakan oleh para pengurus MSN, tapi yah, sekarang bocor ke tangan kita! Hahahahha!” Kemudian, banyak yang mencoba dan akhirnya dia bisa mendapatkan email dan password si korban yang coba-coba, kemudian show off, dan dianggap lebih tinggi dari newbie yang lain! Loh..? Kok bisa Claw? Mudah saja. Email yang admin_mail_robots@msn.com itu emailnya dia… hahahaha! Bisa juga, supaya kelihatan asli, pake gaya yang aneh2 supaya kesannya automated recovery. Contoh : adminm41l_msn@msn.com dll. Lagian, secara logika, untuk apa para pengurus MSN sibuk nyari password ma username orang kalo bisa masuk langsung database?? HAHAHAHAA!!! selain itu, umumnya, Begitu bangganya “HEKER INDONESIA” ini jika berhasil menembus situs yang LUBANG KEAMANANNYA SUDAH DIPOSTING DI SITUS ATAUPUN LEWAT IRC kemudian koar-koar di forum atau channel yang banyakan orang biasa. Dia akan dianggap SANG GOD HEKER disana… Oke. balik mengenai apa yang mengganggu pikiran saya akhir-akhir ini, adalah jika seorang WHITE HAT menulis mengenai Hacking dan dibaca oleh orang lain dan kemudian menggunakannya untuk hal buruk walaupun si penulis telah mencantumkan “PENULIS TIDAK BERTANGGUNG JAWAB TERHADAP HAL BURUK YANG TERJADI AKIBAT TULISAN INI”, tetap saja dia bertanggung jawab. mengapa demikian? sudah tau internet masih nulis, itu sama saja dengan Polisi yang NAROH SEKARUNG PISTOL DI DI TEMPAT UMUM shingga bisa saja ada orang yang make buat nembak. Lalu bagaimana? Haruskah berhenti menulis? Itu hal yang tidak mungkin karena bagi ILMU itu hukumnya WAJIB! INI yang membuat saya masih bingung sampe karang. hahahahahaha! Oh ya, satu hal lagi. Okelah, jika si elite white hat ini gak seperti yang saya sebutkan diatas, dan dia telah dipercaya untuk melindungi server, dan namanya telah terkenal. Kemudian, junior-juniornya yang masih dalam kategori CRACKER berusaha untuk masuk, kemudian ia menangkapnya! Wah, temen-makan temen gitu… soalnya dulu si white hat ini minimal pasti pernah ngelakuin hal yang sama waktu cupu dulu… Mau dilepaskan? Tidak bisa! Itu sama saja dengan mendukung kejahatan, berarti BLACK HAT! Nah lo, gimane neh…? Satu hal yang pasti dari pembahasan diatas, punya satu inti. JIKA ENGKAU INGIN JADI HEKER DI INDONESIA, seringlah maen ke tempat pengetikan, dan jika suatu ketika engkau dapat rejeki nemu komputer yang lagi sesi ADMINISTRATOR, passwordlah semuanya. tunggu beberapa saat mpe bosnya datang, dan dia akan kesulitan, saat itu juga, tawarkan bantuan, kemudian pura-puralah mengetik dan buka passwordnya, dan katakan dengan bahasa digital : “BOS, KEBETULAN SAYA BISA BUKANYA DENGAN MENGINJECT FORM LOGIN PADA BASE CORE SYSTEMNYA KERNEL SISTEM OPERASI. ADA BUG YANG MASIH TERSISA DI TRX FILENYA DAN SAYA SUDAH PERBAIKI, DAN BOS, PERLU DIINGAT, SAYA BUKAN HACKER.” Dengan kalimat SAYA BUKAN HACKER, orang itu akan menganggap kamu bener2 heker. Dengan cara demikian, niscaya, kamu sudah dianggap HEKER INDONESIA. catatan : “Tidak semua heker indonesia seperti diatas! Sayapun “mengangkat topi” hormat pada beberapa diantaranya seperti Sakitjiwa, S’to, Xnuxer, D0d1, dan yang lain. Saya menulis ini bukan karena saya Seorang HEKER atau iri terhadap HEKER. Saya sudah punya pekerjaan. Pengamen, dan saya serius ^_^”</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Bilgisayarınız başkasının kontrolünde]]></title>
<link>http://sciencetechno.wordpress.com/?p=140</link>
<pubDate>Thu, 04 Sep 2008 20:17:26 +0000</pubDate>
<dc:creator>abdelk</dc:creator>
<guid>http://sciencetechno.wordpress.com/?p=140</guid>
<description><![CDATA[Çok sayıda bilgisayarın uzaktan kontrol edilmesine izin veren bir programın bulaştırıldığı]]></description>
<content:encoded><![CDATA[<p class="textBodyBlack">Çok sayıda bilgisayarın uzaktan kontrol edilmesine izin veren bir programın bulaştırıldığı ve aynı anda binlerce bilgisayarın gizlice yönetildiği ağ sistemine “botnet” adı verildiğini belirten bilişim uzmanları, bu ağı yönetmek için özel olarak tasarlanan kötü niyetli programların da “bot” olarak adlandırıldığını belirtti. Bir botnet sahibinin, ağı oluşturan bilgisayarları dünyanın herhangi bir yerinden kontrol edebildiğine dikkat çeken uzmanlar, bu ağdaki bilgisayar sahiplerinin makinelerinin siber suçlular tarafından kullanıldığını fark etmediklerini kaydetti.</p>
<p>Uzmanlar, “Zombi Ağı” adı da verilen botnetlerin asıl hedefinin evlerdeki kullanılan bilgisayarlar olduğuna işaret ederek, siber suçluların böylesi bir ağa erişim sağlamak için ne uzmanlaşmış bir bilgiye ne de büyük miktarlarda bir paraya ihtiyacı olmadığının altını çizdi.<!--more--></p>
<p>Bu konudaki hizmetlerin birçok bilgisayar korsanı tarafından küçük ücretler karşılığında sunulduğu belirten bilişim uzmanları, artık botnetlerin, internet üzerindeki yasa dışı gelirin ana kaynakları arasındadır yer aldığını ve siber suçluların elindeki en güçlü silahlardan biri olduğunu söylediler.</p>
<p><span style="font-size:x-small;font-family:Verdana;"><span style="font-size:x-small;font-family:Verdana;"><strong>BİLGİSAYARLARI NASIL ELE GEÇİRİYORLAR?</strong></span></span><strong></strong><br />
Güvenlik uzmanlarının ortak görüşüne göre, dünya çapında evlerde kullanılan bilgisayarlardan en az yüzde 10’u uluslararası robot ağın yani botnetin bir parçası. İnternet arama motoru “Google”un yöneticilerine göre ise şu anda 100 milyondan fazla bilgisayar, botnetlerin kontrolü altında.</p>
<p>Bu ağ için bir tür virüs kullanan siber suçlular, bu tehlikeli yazılımı bir “e-posta” veya “dosya indirme” sitelerindeki en gözde müzik, film ve program dosyalarının içine gizliyor. Hedefteki bilgisayarın kullanıcısı, söz konu “e-posta”yı açtığında veya programı indirdiğinde, anında bilgisayarına bir iki satırdan oluşan bir yazılım yükleniyor. Bu küçük ve gizli program sayesinde, hedefteki bilgisayar artık başkası tarafından yönlendirilebiliyor.</p>
<p>Yaklaşık 10 yıldan beri varlığı tespit edilen bu programlar, zaman içinde daha da geliştirilerek, neredeyse tespit edilemez durama gelmiş durumda. Kişisel bilgisayarları birer “zombi”ye dönüştüren “bot”lar, internet üzerinden girdiği bir ağ üzerindeki 10 binlence bilgisayara bulaşarak, onları da birer suç makinesi haline getiriyor.</p>
<p><span style="font-size:x-small;font-family:Verdana;"><span style="font-size:x-small;font-family:Verdana;"><strong>İSTİHBARAT ÖRGÜTLERİ DE KULLANIYOR</strong></span></span><strong></strong><br />
Botnet’in sadece siber suçlular tarafından değil, birçok ülkenin istihbarat servisleri tarafından da kullanıldığına işaret eden bilişim uzmanları, bu sadeye “hedef” alınan bir ülkedeki on binlerce bilgisayarın ele geçirilerek, tüm kişisel kullanıcı bilgilerinin toplanmasına olanak tanıdığını vurguladı.</p>
<p>Kimi botnet sistemlerini yönetenlerin kontrol altına aldığı “bilgisayar ordusu” sayesinde, hükümetlerin web sitelerine saldırılar düzenlediğini ve “server”larını çökerttiğini ifade eden uzmanlar, kimi zaman da bu yöntemle büyük şirketlerin “server”larının ele geçirilerek, müşterilerine ait tüm bilgilere sahip olduklarını bildirdi.</p>
<p><span style="font-size:x-small;font-family:Verdana;"><span style="font-size:x-small;font-family:Verdana;"><strong>BOTNET SALDIRISININ SON KURBANI BİRLEŞMİŞ MİLLETLER OLDU</strong></span></span><strong></strong><br />
Bilgisayar korsanları, son olarak Birleşmiş Milletler’in (BM) resmi internet sitesini bir süreliğine “hack”leyerek, web sitesine “Hey İsrail ve ABD, çocukları ve diğer insanları öldürmeyin. Barış evrenseldir. Savaşa hayır” yazdı.</p>
<p>Yetkililer, saldırganların ayrıca BM’nin internet sitesine de “botnet” yazılımı yüklendiğini belirterek, bu süre içinde siteye girenlerin bilgisayarlarının da “zombi”ye dönüştüğünü bildirdi.</p>
<p>Saldırganların yakın zamandaki kurbanlarından biri de Hindistan’daki bir banka oldu. Saldırganlar sadece bankanın bilgisayar sistemini “hack”lemekle yetinmeyip, internet sitesine giren herkesin bilgisayarlarına 3 farklı trojan yükleyerek, her birini “zombi” bilgisayar haline getirdi.</p>
<p><span style="font-size:x-small;font-family:Verdana;"><span style="font-size:x-small;font-family:Verdana;"><strong>SALDIRILARIN HEDEFİNDEKİ BİLGİLER</strong></span></span><strong></strong><br />
İnternette en büyük tehlikelerden biri “zararsız” görünen web sitelerinin “zararlı” yazılımlar içermesi. Şimdilik çok yaygın olmayan bu sitelere sızan bilgisayar korsanları, sisteme yerleştirdikleri tehlikeli kodlar sayesinde birçok kullanıcının bilgisayarını ele geçiriyor.</p>
<p>Bugüne kadar aralarından dünyanın en ünlü şirketleri veya kişilerine ait onlarca web siteleri ile online oyun portallarına sızan “hacker”lar, kimi zaman bir reklamı kimi zaman da ünlü bir kişinin resmini “yem” olarak kullanıyor. Bazı yazılımlar ise kişilerin online kimliğini ele geçirmek için programlanırken, hedeflerinde ise bankacılık ve kredi kartı bilgileri, e-posta ve oyun şifreleri bulunuyor. Bu bilgilerin karaborsada büyük bilgilere satıldığını belirten bilişim güvenliği uzmanları, 2007 yılında internet üzerinde tespit edilen zararlı program sayısının 2,2 milyondan fazla olduğununa dikkat çekiyor.  Kaynak:NTVMSNBC</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Danke Welt. WISO eigentlich ich?]]></title>
<link>http://strassenblog.wordpress.com/?p=185</link>
<pubDate>Thu, 04 Sep 2008 11:58:32 +0000</pubDate>
<dc:creator>vTOthISSER</dc:creator>
<guid>http://strassenblog.wordpress.com/?p=185</guid>
<description><![CDATA[Vorschau: WISO am 8. September 2008 

 
Wenn man abends um kurz vor 23 Uhr nach einer satten Hand v]]></description>
<content:encoded><![CDATA[<p><a href="http://wiso.zdf.de/ZDFde/inhalt/22/0,1872,7302998,00.html">Vorschau: WISO am 8. September 2008 </a></p>
<p><a href="http://www.raw.at/galerie/images/comix/schimpf.gif"><img class="alignnone" src="http://www.raw.at/galerie/images/comix/schimpf.gif" alt="" width="472" height="500" /></a><a href="http://www.raw.at/galerie/images/comix/schimpf.gif"></a></p>
<p> </p>
<p>Wenn man abends um kurz vor 23 Uhr nach einer satten Hand voll Bier eine Email aufs Handy vom <span>Zweites Deutsches Fernsehen / Redaktion WISO  von der Email Adresse &#62;&#62; wiso-datendiebstahl@wiso.de &#60;&#60; bekommt ... und kein echter Computer in der Nähe steht ... kann einem der Arsch schon mal ziemlich auf Grundeis gehen. Zum Inhalt der Email, die mich ob des Inhaltes die halbe Nacht gekostet hat - ich zitiere:</span></p>
<p><span><em>Ihre E-Mail-Adresse und das Passwort befinden sich nach unseren Recherchen auf einem im Internet frei zugänglichen, in China beheimateten Server.</em></span></p>
<p><em>Die Daten scheinen aus einem Datendiebstahl zu stammen, die Datendiebe haben versucht, sich mit Hilfe dieser Kombination aus Mail-Adresse und Passwort Zugang zu Online-Bezahldiensten zu verschaffen.</em></p>
<p><em>Die Daten selbst stammen nach ersten Erkenntnissen aus einer Datenbank, die nichts mit Finanzdienstleistungen zu tun hat und bei der Sie sich in der Vergangenheit einmal angemeldet haben.</em></p>
<p><em>Möglicherweise nutzen Sie diese Kombination aus E-Mail-Adresse und Passwort für weitere Internet-Dienste, etwa für Ihren Mail-Account, zum Anmelden bei Online-Shops oder auf anderen Webseiten. In diesem Fall raten wir Ihnen dringend, auf jeder einzelnen dieser Seiten Ihr Passwort unverzüglich zu ändern, bevor irgendjemand aus dem Vorhandensein dieser Daten im Internet einen Vorteil ziehen kann.</em></p>
<p><em>Datendiebe haben es lt. WISO auf E-Mail-Adressen und Passwörter abgesehen: 56.000 Datensätze sind nach WISO-Recherchen kürzlich aus einer Unternehmensdatenbank gestohlen worden. </em></p>
<p>Ich wills kurz machen: mir brennt der Arsch. Danke WISO dass ich als Geschädigter rechtzeitig mein Passwörter ändern durfte. Ich ändere gerade wie ein Wahnsinniger alle jemals von mir existenten Passworte und Benutzernamen um SAFE zu sein. Wenn einer von Euch noch meinen Namen oder ein Passwort von mir findet einfach löschen. Ich habe fertig mit der Sch ... - aber habt Ihr Euch mal die Frage gestellt, wo Ihr Eure Signatur schon alles hinterlassen habt? Drei handgeschriebene Seiten mit möglichen Seiten habe ich schon (analog) runtergeschrieben, um mir darüber mal klar zu werden. Jetzt arbeite ich mich langsam durch die Liste und betreibe Schadensbegrenzung. So sieht's aus. Danke Welt!</p>
<p>Nachtrag - <a href="http://www.pwc.de/portal/pub/cxml/04_Sj9SPykssy0xPLMnMz0vM0Y_QjzKLd4p3dg3SL8h2VAQAC2vaRg!!?topNavNode=49c4e4a420942bcb&#38;siteArea=49c234c4f2195056&#38;content=e549f742c9beec8">Das steckt dahinter</a>: Das Wirtschaftsprüfungs- und Beratungsunternehmen PricewaterhouseCoopers (PwC) hat heute Strafanzeige gegen bislang unbekannte Daten-Hacker gestellt, die eine externe Servicedatenbank für Jobsuchende angegriffen und dabei Daten gestohlen haben. Diese von einem externen Serviceprovider betriebene Internet-Seite diente interessierten Nutzern zur vereinfachten Erstellung ihrer Bewerbung bei PwC.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacker's Movie]]></title>
<link>http://wfanindra.wordpress.com/?p=44</link>
<pubDate>Thu, 04 Sep 2008 05:13:50 +0000</pubDate>
<dc:creator>wfanindra</dc:creator>
<guid>http://wfanindra.wordpress.com/?p=44</guid>
<description><![CDATA[Download koleksi film-film Hacker:
 http://films.0&#215;7.net/www.web-hack.ru/
]]></description>
<content:encoded><![CDATA[<p>Download koleksi film-film Hacker:<br />
<a href="http://films.0x7.net/www.web-hack.ru/" target="_blank"> http://films.0x7.net/www.web-hack.ru/</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[WordPress hacker]]></title>
<link>http://webmess.wordpress.com/?p=35</link>
<pubDate>Wed, 03 Sep 2008 20:05:22 +0000</pubDate>
<dc:creator>webmess</dc:creator>
<guid>http://webmess.wordpress.com/?p=35</guid>
<description><![CDATA[Sono stato piuttosto indeciso sull&#8217;opportunità o meno di pubblicare questo post, ma visto che]]></description>
<content:encoded><![CDATA[<p>Sono stato piuttosto indeciso sull'opportunità o meno di pubblicare questo post, ma visto che <a href="http://www.google.com/search?hl=en&#38;q=wordpress+x-hacker&#38;btnG=Google+Search&#38;aq=f&#38;oq=">altri prima di me</a> ne hanno già parlato, ho pensato che in fondo non fosse più un grande segreto.</p>
<p>Ecco infatti cosa compare tra gli header HTTP delle pagine ospitate su <a href="http://wordpress.com/">wordpress.com</a>:</p>
<blockquote><p>X-hacker: If you're reading this, you should visit automattic.com/jobs and apply to join the fun, mention this header.</p></blockquote>
<p>Non c'è che dire, è decisamente un modo molto originale e simpatico per offrire un posto di lavoro.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Gary McKinnon Protest - (02.09.08)]]></title>
<link>http://marcvallee.wordpress.com/?p=1043</link>
<pubDate>Wed, 03 Sep 2008 11:43:50 +0000</pubDate>
<dc:creator>marcvallee</dc:creator>
<guid>http://marcvallee.wordpress.com/?p=1043</guid>
<description><![CDATA[
LONDON, UNITED KINGDOM - 02.09.08. Two boys covered with &#8220;Free Gary&#8221; stickers demonstra]]></description>
<content:encoded><![CDATA[<p><a href="http://pa.photoshelter.com/gallery-slideshow/G0000ZwhjQIxscf0/" target="_blank"><img class="alignnone size-full wp-image-1042" src="http://marcvallee.wordpress.com/files/2008/09/020908_marcvallee_gary_mckinnon_protest_blog_1.jpg" alt="" width="378" height="567" /></a></p>
<p><strong>LONDON, UNITED KINGDOM</strong> - 02.09.08. Two boys covered with "Free Gary" stickers demonstrate in support of the British hacker Gary McKinnon outside the Home Office London, England on Tuesday 9th September 2008. Mr. McKinnon has been fighting against extradition to the US on charges of hacking into US Pentagon and NASA computer systems and faces up to 80 years in prison. (Photo by Marc Vallée/marcvallee.co.uk) (c) Marc Vallée, 2008.</p>
<p><a href="http://www.guardian.co.uk/commentisfree/2008/aug/29/hacking.security" target="_blank">"Our citizens, their law"</a> - <em>The Guardian</em>.</p>
<p><strong>Clients :</strong> Click on the  images above and below to view a slideshow from the set and click on the link below for rights managed editorial licensing. <strong>High resolution images are available on request.</strong></p>
<p><strong>Images: </strong><a href="http://pa.photoshelter.com/gallery-show/G0000ZwhjQIxscf0" target="_blank">"Gary McKinnon Protest - 02.09.08."</a><strong> </strong></p>
<p><strong>Archive Link :</strong> <a href="http://www.archive.marcvallee.co.uk/">www.archive.marcvallee.co.uk</a></p>
<p><a href="http://pa.photoshelter.com/gallery-slideshow/G0000ZwhjQIxscf0/" target="_blank"><img class="alignnone size-full wp-image-1045" src="http://marcvallee.wordpress.com/files/2008/09/020908_marcvallee_gary_mckinnon_protest_blog_21.jpg" alt="" width="378" height="248" /></a></p>
<p><strong>LONDON, UNITED KINGDOM</strong> - 02.09.08. Lucy Clarke, the partner of British hacker Gary McKinnon is comforted by a supporter as she cries during protest outside the Home Office London, England on Tuesday 9th September 2008. Mr. McKinnon has been fighting against extradition to the US on charges of hacking into US Pentagon and NASA computer systems and faces up to 80 years in prison. (Photo by Marc Vallée/marcvallee.co.uk) (c) Marc Vallée, 2008.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Tom Anderson president of Myspace was a Hacker of the 80's]]></title>
<link>http://julianrdz.wordpress.com/?p=777</link>
<pubDate>Tue, 02 Sep 2008 21:48:51 +0000</pubDate>
<dc:creator>Julián Rodríguez</dc:creator>
<guid>http://julianrdz.wordpress.com/?p=777</guid>
<description><![CDATA[Late last year we discovered that MySpace cofounder Tom Anderson, arguably the most popular individu]]></description>
<content:encoded><![CDATA[<p>Late last year we discovered that MySpace cofounder Tom Anderson, arguably the most popular individual on the Internet with 240+ million MySpace friends (he is added by default to every MySpace account) was <a href="http://www.techcrunch.com/2007/10/23/has-americas-first-friend-been-lying-about-his-age/">actually 37 years old</a>, not the 32 that he continues to claim on his <a href="http://www.myspace.com/tom">MySpace page</a>.</p>
<p>Now we’ve learned a much more colorful part of Anderson’s history: In 1985, when he was fourteen and in high school in Escondido, California, Anderson was subject to one of the largest FBI raids in California history after hacking into a Chase Manhattan Bank computer system and subsequently showing his friends how to do it. He was never arrested because he was a minor, but the FBI confiscated all of his computer equipment and some newspaper accounts of the incident stated incorrectly (see image below from a 1986 LA Times story) that he was <em>“convicted in federal court of computer hacking and placed on probation”</em> (the statements were corrected in subsequent articles). Anderson used the hacker name “Lord Flathead.”</p>
<p>MySpace and Anderson would not comment on this post. But most of the information is now available online as news articles from the 1980s (and earlier) have been added to Google and other search engines. We came across an <a href="http://pqasb.pqarchiver.com/latimes/access/58107716.html?dids=58107716:58107716&#38;FMT=ABS&#38;FMTS=ABS:FT&#38;date=Dec+11%2C+1986&#38;author=TOM+GORMAN&#38;pub=Los+Angeles+Times+%28pre-1997+Fulltext%29&#38;desc=A+Hacker+Vanishes+Computer+Whiz%2C+Missing+Since+September%2C+a+Source+of+Mystery&#38;pqatl=google">initial article</a> accidentally and started investigating from there. Some of the information in this post has been obtained by a source close to Anderson, including the connection between Anderson and his hacker name.</p>
<p><strong>Lord Flathead Goes Too Far</strong></p>
<p>Anderson, using the name Lord Flathead, was a computer hacker at least since he was 13 years old, which is just about the time the movie <a href="http://www.youtube.com/watch?v=tAcEzhQ7oqA">WarGames</a> came out in theaters. Like David Lightman in WarGames (played by Mathew Broderick), Anderson was able to hack into computer systems by simply figuring out the right phone number (this was called “war dialing” and was done with the help of a simple computer program that dialed sequential phone numbers until it received a modem response, signaling a computer system on the other end, usually a UNIX mainframe that often had a default password or no password at all). Once you were past the password security, you often had deep access to whatever system you had called.</p>
<p>According to a New York Times <a href="http://www.techcrunch.com/tom-anderson-as-lord-flathead-ny-times-article/">article</a> in October 1985, “Lord Flathead,” was the leader of an early black-hat hacker group when he was 14 years old. In July and August 1985, between his freshman and sophomore years, Anderson hacked into a Chase Manhattan Bank DEC VAX computer system (like the one in the image below) that handled <em>“much of Chase’s data processing and record keeping, including records of home mortgages and…portfolios of major customers such as pension funds.”</em> He subsequently showed up to 40 of his friends how to do it.</p>
<p>Anderson obtained or guessed the passwords necessary to get through the first level of security and, once connected, changed at least two passwords to prevent bank officials from accessing the system. According to the New York Times article the group also created fictitious accounts, and Anderson, using the Lord Flathead name, left a message saying that unless he was given free use of the system he would destroy records.</p>
<p>The bank notified the FBI and they set up an <em>“electronic trap in the computer system that traced the calls to at least 23 homes in the San Diego area.”</em> Fifty FBI agents then raided the homes of Anderson and his friends and seized 25 personal computers. The raids were conducted simultaneously at 7 pm to prevent anyone from notifying the other hackers and giving them a chance to destroy evidence. This was one of the largest FBI raids in California history. Our source says the FBI was expecting a serious criminal conspiracy ring of hardcore hackers, not a group of teens led by Anderson, a high school freshman.</p>
<p>Tom was hacking for quite a while before the raid, says our source. Tom, a minor at the time, agreed to stop committing computer crimes and was put on probation. His computer was never returned.</p>
<p>One of the reasons Anderson would hack into living room sized mainframe systems was to get access to computers that could run a C compiler to learn programming. There were no open source or free C compilers at the time, and personal computers had very limited memory and processing power, so hackers would try to access them on other systems.</p>
<p>As far as we can tell Anderson never attempted to destroy records or transfer funds. We can’t find any records of prosecutions being made against any of the people raided.</p>
<p><a href="http://www.techcrunch.com/tom-anderson-as-lord-flathead-ny-times-article/">Supporting documents are here</a>. The LA Times article linked above and the Newsweek article talk about a friend of Anderson, a hacker named Bill Landreth, a published author for Microsoft Press on computer security issues. At Bill’s suggestion Anderson spoke with a literary agent and published books about computer security as well (we are trying to track them down).</p>
<p>Landreth was living with Anderson’s family and disappeared in September 1986 after leaving a suicide note. We haven’t been able to determine Landreth’s fate, although based on <a href="http://query.nytimes.com/gst/fullpage.html?res=9D0CE7D6173EF934A15755C0A967958260">this article</a> from 1991 he or someone with his name became a government agent investigating security crimes.</p>
<p>Frankly, my opinion of Tom Anderson just rose significantly. This was pretty hard core stuff in the 80s. Twenty years later he would go on to cofound what would become the largest site on the Internet.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[The Hacker Diary]]></title>
<link>http://kernelx.wordpress.com/?p=3</link>
<pubDate>Tue, 02 Sep 2008 17:34:31 +0000</pubDate>
<dc:creator>kernelx</dc:creator>
<guid>http://kernelx.wordpress.com/?p=3</guid>
<description><![CDATA[This blog is dedicated to the white hat, black hat, and also the gray hat hacker community at large.]]></description>
<content:encoded><![CDATA[<p>This blog is dedicated to the white hat, black hat, and also the gray hat hacker community at large. I am starting this blog because, I feel the need to write what I would call the "hacker diary". I have chosen the title "The Dark Coder" because, I like many coders or programmers out there belong to this community of security professionals.</p>
<p>The main reason I decided to maintain this so called diary on wordpress is because it grants me the immunity that I need over the internet. The whole idea of having a custom domain name and blog...bla bla bla beats the whole idea of immunity for me. There is always someone who's gonna know who you are and that beats the purpose of trying to "lay low".</p>
<p>In the coming weeks, I shall update this blog on stuff along the security line that I consider interesting. I shall also post about some of the fun that I have while hacking.</p>
]]></content:encoded>
</item>

</channel>
</rss>
