<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>chackraview.net &#187; Information Security</title>
	<atom:link href="http://blog.chackraview.net/category/information-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.chackraview.net</link>
	<description>There is no such thing as closed source software…the processor sees every instruction, and so does the reverse engineer…</description>
	<lastBuildDate>Sun, 07 Mar 2010 09:00:11 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Yet another information disclosure vulnerability in Internet explorer.</title>
		<link>http://blog.chackraview.net/2010/02/04/yet-another-information-disclosure-vulnerability-in-internet-explorer/</link>
		<comments>http://blog.chackraview.net/2010/02/04/yet-another-information-disclosure-vulnerability-in-internet-explorer/#comments</comments>
		<pubDate>Fri, 05 Feb 2010 05:42:53 +0000</pubDate>
		<dc:creator>Abhijeet</dc:creator>
				<category><![CDATA[ConferenceTalks]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Web Security]]></category>
		<category><![CDATA[Abusing Insecure features of IE]]></category>
		<category><![CDATA[Black Hat DC]]></category>
		<category><![CDATA[Browser Security]]></category>
		<category><![CDATA[CVE-2010-0255]]></category>
		<category><![CDATA[Information Leakage]]></category>
		<category><![CDATA[URL Security Zone bypass]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=604</guid>
		<description><![CDATA[IE Aurora&#8217;s dust was not even settled in our minds and yet another critical vulnerability in IE has emerged with a bang !!
A Security Consultant from CORE Security Technologies, Mr.Jorge Luis Alvarez Medina discussed a vulnerability in BlackHat DC 10 conference. His presentation demonstrated a Proof of Concept code which exploits this vulnerability and allows an [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/02/04/yet-another-information-disclosure-vulnerability-in-internet-explorer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Breaking into 802.1x EAP-MD5 Port based authentication in Wired VoIP Network &#8211; I</title>
		<link>http://blog.chackraview.net/2010/01/30/breaking-into-8021x-eap-md5-port-based-authentication-in-wired-voip-network-i/</link>
		<comments>http://blog.chackraview.net/2010/01/30/breaking-into-8021x-eap-md5-port-based-authentication-in-wired-voip-network-i/#comments</comments>
		<pubDate>Sat, 30 Jan 2010 21:12:53 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Voice Over IP]]></category>
		<category><![CDATA[802.1x]]></category>
		<category><![CDATA[EAP-MD5]]></category>
		<category><![CDATA[Port Based Authentication]]></category>

		<guid isPermaLink="false">http://bughira.wordpress.com/?p=78</guid>
		<description><![CDATA[To avoid physical security breaches and un-authorized access from publicly available network ports laying in lobby or reception, companies use port based authentication schemes.
Once implemented device needs to authenticate itself with the authenticating server to prove its identity and once proved, gets access to the network. Thus providing authentication mechanism to devices wishing to attach [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/30/breaking-into-8021x-eap-md5-port-based-authentication-in-wired-voip-network-i/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Apple iPad SEO poisoning attack</title>
		<link>http://blog.chackraview.net/2010/01/30/apple-ipad-seo-poisoning-attack/</link>
		<comments>http://blog.chackraview.net/2010/01/30/apple-ipad-seo-poisoning-attack/#comments</comments>
		<pubDate>Sat, 30 Jan 2010 21:12:52 +0000</pubDate>
		<dc:creator>Abhijeet</dc:creator>
				<category><![CDATA[General Talks]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Web Security]]></category>
		<category><![CDATA[Apple iPad]]></category>
		<category><![CDATA[fake AV]]></category>
		<category><![CDATA[fake video codec]]></category>
		<category><![CDATA[SEO poisoning]]></category>
		<category><![CDATA[social engineering]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=592</guid>
		<description><![CDATA[What is SEO
Search engine optimization (SEO) is the process of improving the volume or quality of traffic to a web site.  As an internet marketing strategy, webmasters edit the HTML content to increase its relevance to popular keywords; thereby raising ranking of their websites.
SEO techniques can be broadly categorized under white hat and black hat [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/30/apple-ipad-seo-poisoning-attack/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Analyzing IRCBOTS: Part II</title>
		<link>http://blog.chackraview.net/2010/01/29/analyzing-ircbots-part-ii/</link>
		<comments>http://blog.chackraview.net/2010/01/29/analyzing-ircbots-part-ii/#comments</comments>
		<pubDate>Fri, 29 Jan 2010 06:54:23 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Malware Techniques]]></category>
		<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[Reverse Engineering]]></category>
		<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[59a95f668e1bd00f30fe8c99af675691]]></category>
		<category><![CDATA[Anti Virus Signature]]></category>
		<category><![CDATA[Code patching]]></category>
		<category><![CDATA[IRC bots]]></category>
		<category><![CDATA[testirc1.sh1xy2bg.NET]]></category>
		<category><![CDATA[W32.Spybot]]></category>
		<category><![CDATA[W32/Spybot-Fam]]></category>
		<category><![CDATA[W32/Spybot.worm.gen]]></category>
		<category><![CDATA[Win32.Spybot.gen]]></category>
		<category><![CDATA[Winsec32.exe]]></category>
		<category><![CDATA[Worm.P2P.SpyBot.gen]]></category>

		<guid isPermaLink="false">http://bughira.wordpress.com/?p=207</guid>
		<description><![CDATA[OK we know from previous post that malware is trying to connect testirc1.sh1xy2bg.NET. To learn more about its intentions, i added fake DNS entry in the XP host configuration file and pointed testirc1.sh1xy2bg.NET to my BackTrack 3 Machine. I then rebooted the live analysis machine and started Wireshark again on BT3 system.
As malware has configured [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/29/analyzing-ircbots-part-ii/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>URL shortening: Social engineering attack vector</title>
		<link>http://blog.chackraview.net/2010/01/29/url-shortening-social-engineering-attack-vector/</link>
		<comments>http://blog.chackraview.net/2010/01/29/url-shortening-social-engineering-attack-vector/#comments</comments>
		<pubDate>Fri, 29 Jan 2010 06:54:21 +0000</pubDate>
		<dc:creator>Abhijeet</dc:creator>
				<category><![CDATA[HOWTO's]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Web Security]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[url shortning]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=575</guid>
		<description><![CDATA[URL shortening is a technique in the World Wide Web wherein a provider makes a web page available under a very short URL in addition to the original address.
For example, the page http://blog.chackraview.net/2010/01/19/operation-aurora/ can be shortened to http://bit.ly/5RJICq
As web clients tends to pass more and more data in the URL to communicate with web server; [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/29/url-shortening-social-engineering-attack-vector/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>VideoJak: Now Hijaking IP Video Surveillance Camera!!!</title>
		<link>http://blog.chackraview.net/2010/01/25/videojak-now-hijaking-ip-video-surveillance-camera/</link>
		<comments>http://blog.chackraview.net/2010/01/25/videojak-now-hijaking-ip-video-surveillance-camera/#comments</comments>
		<pubDate>Tue, 26 Jan 2010 01:42:13 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Voice Over IP]]></category>
		<category><![CDATA[Defcon 17]]></category>
		<category><![CDATA[Security Camera Hack]]></category>
		<category><![CDATA[VideoJak]]></category>
		<category><![CDATA[VIPER Lab]]></category>

		<guid isPermaLink="false">http://bughira.wordpress.com/2009/08/03/videojak-hijaking-ip-video-calls-2/</guid>
		<description><![CDATA[Researchers from VIPER Lab, kept their promise of delivering exciting and freaky features in the coming version of videoJak. VideoJak rocked Defcon 17 with some thrilling video attack demonstrations which we have seen only in Bond Movies.]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/25/videojak-now-hijaking-ip-video-surveillance-camera/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Decode: eval_gzinflate_base64_decode</title>
		<link>http://blog.chackraview.net/2010/01/25/decode-eval_gzinflate_base64_decode-2/</link>
		<comments>http://blog.chackraview.net/2010/01/25/decode-eval_gzinflate_base64_decode-2/#comments</comments>
		<pubDate>Tue, 26 Jan 2010 01:42:12 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[HOWTO's]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[Web Security]]></category>
		<category><![CDATA[eval gzinflate base64]]></category>
		<category><![CDATA[malwares]]></category>
		<category><![CDATA[php decode]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=569</guid>
		<description><![CDATA[If you follow my posts&#8230;.sometime back i wrote about the my encounter with web attacks which was amazing experience. I am lazy kinda person and with all this IPL fever these days, I don&#8217;t even think of blogging or doing personal research.
So what made me sit and write today?
The answer is,  my same old friend [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/25/decode-eval_gzinflate_base64_decode-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Execute programs at windows startup</title>
		<link>http://blog.chackraview.net/2010/01/24/execute-program-at-windows-startup/</link>
		<comments>http://blog.chackraview.net/2010/01/24/execute-program-at-windows-startup/#comments</comments>
		<pubDate>Sun, 24 Jan 2010 07:43:16 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Malware Techniques]]></category>
		<category><![CDATA[ADS]]></category>
		<category><![CDATA[Alternate Data Streams]]></category>
		<category><![CDATA[Filetype association]]></category>
		<category><![CDATA[Win.ini]]></category>
		<category><![CDATA[winstart.bat]]></category>

		<guid isPermaLink="false">http://bughira.wordpress.com/?p=54</guid>
		<description><![CDATA[My Last post was related to the ADS technology adopted by viruses and rootkits. These viruses can implement Alternate Data Streams and easily hide themselves behind legitimate files. I also did a small mention of how to get suspicious whenever you see some new entry in Registrys keys used to start program with operating system. [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/24/execute-program-at-windows-startup/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Whats all fuss about PIFTS.exe?</title>
		<link>http://blog.chackraview.net/2010/01/24/whats-all-fuss-about-piftsexe/</link>
		<comments>http://blog.chackraview.net/2010/01/24/whats-all-fuss-about-piftsexe/#comments</comments>
		<pubDate>Sun, 24 Jan 2010 07:43:15 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[General Talks]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[Norton Patch]]></category>
		<category><![CDATA[PATCH021809DB]]></category>
		<category><![CDATA[PIFTS.exe]]></category>
		<category><![CDATA[Symantec]]></category>

		<guid isPermaLink="false">http://bughira.wordpress.com/?p=307</guid>
		<description><![CDATA[March 9 was interesting and chaotic day for the  people using Norton Antivirus as they started getting alerts about some binary named PIFTS.exe is trying to reach Internet. When analyzed, people  found its traces in Norton Antivirus. This was weired. How does Norton alerting for its own applications? It looked suspicious and people started [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/24/whats-all-fuss-about-piftsexe/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BackTrack3 Installer: Simplest way to install BT3 on HDD</title>
		<link>http://blog.chackraview.net/2010/01/24/backtrack3-installer-simplest-way-to-install-bt3-on-hdd/</link>
		<comments>http://blog.chackraview.net/2010/01/24/backtrack3-installer-simplest-way-to-install-bt3-on-hdd/#comments</comments>
		<pubDate>Sun, 24 Jan 2010 07:43:12 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[General Talks]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[BackTrack3 HDD Install]]></category>
		<category><![CDATA[BT3Install]]></category>
		<category><![CDATA[fdisk]]></category>
		<category><![CDATA[Install BackTrack on HDD]]></category>

		<guid isPermaLink="false">http://bughira.wordpress.com/?p=145</guid>
		<description><![CDATA[Backtrack is the top rated security distribution available on earth for security community. Metasploit&#8217;s core developer and renown hacker HD Moore says:
&#8220;BackTrack is the fastest way to go from boot to remote root.&#8221;
Currently BT is in its third generation.  As Backtrack has excellent support for Audio/Video and most of the desktop features, many people prefer [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/24/backtrack3-installer-simplest-way-to-install-bt3-on-hdd/feed/</wfw:commentRss>
		<slash:comments>70</slash:comments>
		</item>
	</channel>
</rss>
