<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/atom10full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">
    <title>CGISecurity - Website and Application Security News</title>
    
    <link rel="alternate" type="text/html" href="http://www.cgisecurity.net/" />
    <id>tag:typepad.com,2003:weblog-1694854</id>
    <updated>2009-01-07T09:44:57-08:00</updated>
    <subtitle>All things related to website, database, SDL, and application security since 2000.
</subtitle>
    <generator uri="http://www.cgisecurity.com/">CGISecurity</generator>
    <link rel="self" href="http://feeds.feedburner.com/typepad/1216429516s8517/news" type="application/atom+xml" /><entry>
        <title>Sacked Croydon hacker spied on former colleagues' e-mails</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/505433661/sacked-croydon-hacker-spied-on-former-colleagues-emails.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/sacked-croydon-hacker-spied-on-former-colleagues-emails.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-61001834</id>
        <published>2009-01-07T09:44:57-08:00</published>
        <updated>2009-01-07T09:45:07-08:00</updated>
        <summary>"An IT expert sacked for lying on his CV hacked into his company's computer system to spy on his former colleagues - and deleted vital information which led to the loss of jobs. Julius Oladiran, 46, was dismissed from after his employers discovered his boasts of a master's degree, and top...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/sacked-croydon-hacker-spied-on-former-colleagues-emails.html</feedburner:origLink></entry>
    <entry>
        <title>Twitter hacked via weak passwords to admin system</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/505383851/twitter-hacked-via-weak-passwords-to-admin-system.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/twitter-hacked-via-weak-passwords-to-admin-system.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60998576</id>
        <published>2009-01-07T08:38:22-08:00</published>
        <updated>2009-01-07T08:39:15-08:00</updated>
        <summary>"A teenage hacker, known in the digital underground as GMZ, claims he obtained access to the micro-blogging site’s admin controls using a brute force dictionary attack. After guessing the login identity of an administrator, in part based on the large number of people she followed, GMZ ran an automated password guessing...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/twitter-hacked-via-weak-passwords-to-admin-system.html</feedburner:origLink></entry>
    <entry>
        <title>CheckFree warns 5 million customers after DNS hack</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/504829013/checkfree-warns-5-million-customers-after-dns-hack.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/checkfree-warns-5-million-customers-after-dns-hack.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60971172</id>
        <published>2009-01-06T17:52:53-08:00</published>
        <updated>2009-01-06T17:53:32-08:00</updated>
        <summary>"Tolley wouldn't say what banks were affected by the hack, but the majority of these five million customers were CheckFree's own users, she said. In total, about 42 million customers access CheckFree's bill payment site, she said. Customers who went to CheckFree's Web sites between 12:35 a.m. and 10:10 a.m. on...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/checkfree-warns-5-million-customers-after-dns-hack.html</feedburner:origLink></entry>
    <entry>
        <title>Building a Web Application Security Program, Part 8: Putting It All Together </title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/504662269/building-a-web-application-security-program-part-8-putting-it-all-together-.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/building-a-web-application-security-program-part-8-putting-it-all-together-.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60961862</id>
        <published>2009-01-06T13:35:11-08:00</published>
        <updated>2009-01-06T13:35:18-08:00</updated>
        <summary>"Whew! This is our final post in this series on Building a Web Application Security Program (Part 1, Part 2, Part 3, Part 4, Part 5, Part 6, Part 7), and it’s time to put all the pieces together. Here are our guidelines for designing a program that meets the needs...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Articles" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="SDL" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/building-a-web-application-security-program-part-8-putting-it-all-together-.html</feedburner:origLink></entry>
    <entry>
        <title>Hackers Post Faked Report of Steve Jobs's Death</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/504560613/hackers-post-faked-report-of-steve-jobss-death.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/hackers-post-faked-report-of-steve-jobss-death.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60954104</id>
        <published>2009-01-06T11:18:27-08:00</published>
        <updated>2009-01-06T11:18:33-08:00</updated>
        <summary>"MacRumors, one of the many sites which cover Apple's annual Macworld product launches, has had its live coverage infiltrated, with someone adding the false news of Steve Jobs's death to the blow-by-blow reports."Here's the very amusing screenshot of the incident.http://cache.gawker.com/assets/images/gawker/2009/01/macrumorshacked.jpgRead more: http://valleywag.gawker.com/5124580/hackers-post-faked-report-of-steve-jobss-death</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Funny" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/hackers-post-faked-report-of-steve-jobss-death.html</feedburner:origLink></entry>
    <entry>
        <title>Pak hackers plan attack on Indian cyber networks: Intel</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/504516600/pakistan-hackers-plan-attack-on-indian-cyber-networks-intel.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/pakistan-hackers-plan-attack-on-indian-cyber-networks-intel.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60951508</id>
        <published>2009-01-06T10:21:50-08:00</published>
        <updated>2009-01-06T10:21:54-08:00</updated>
        <summary>"After the Mumbai terror strikes, anti-India elements in Pakistan are now planning an attack on Indian computer networks, intelligence agencies have warned. Already Pakistani hackers are trying out a dry run against Indian networks through popular websites registered there after the Mumbai terror strikes, Home Ministry sources told PTI here today....</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/pakistan-hackers-plan-attack-on-indian-cyber-networks-intel.html</feedburner:origLink></entry>
    <entry>
        <title>Paper: Security Assessment of the Internet Protocol</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/504478606/paper-security-assessment-of-the-internet-protocol.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/paper-security-assessment-of-the-internet-protocol.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60948856</id>
        <published>2009-01-06T09:28:36-08:00</published>
        <updated>2009-01-06T10:16:11-08:00</updated>
        <summary>The following was sent to the Full Disclosure mailing list last yesterday."In August 2008 the UK CPNI (United Kingdom's Centre for the Protection ofNational Infrastructure) published the document "Security Assessment of theInternet Protocol". The motivation of the aforementioned document isexplained in the Preface of the document itself. (The paper is availableat:...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Papers" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="Research" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/paper-security-assessment-of-the-internet-protocol.html</feedburner:origLink></entry>
    <entry>
        <title>Israel hacks Arab TV station</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/504473971/israel-hacks-arab-tv-station.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/israel-hacks-arab-tv-station.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60948246</id>
        <published>2009-01-06T09:22:58-08:00</published>
        <updated>2009-01-06T09:22:58-08:00</updated>
        <summary>"Israeli military forces have reportedly hacked into a Hamas-run TV station to broadcast propaganda. The hijack of the Al-Aqsa television station last weekend represents the latest phase in a war in cyberspace that has accompanied the ongoing conflict in Gaza. Al-Aqsa is known for featuring allegedly antisemitic childrens' cartoons as part...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/israel-hacks-arab-tv-station.html</feedburner:origLink></entry>
    <entry>
        <title>Twitter Security Collapses; Obama, Fox and Britney Accounts Hacked</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/503573843/twitter-security-collapses-obama-fox-and-britney-accounts-hacked.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/twitter-security-collapses-obama-fox-and-britney-accounts-hacked.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60896444</id>
        <published>2009-01-05T10:04:41-08:00</published>
        <updated>2009-01-06T09:19:37-08:00</updated>
        <summary>From Twitter's blog"The issue with these 33 accounts is different from the Phishing scam aimed at Twitter users this weekend. These accounts were compromised by an individual who hacked into some of the tools our support team uses to help people do things like edit the email address associated with their...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="Funny" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="Incidents" />
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/twitter-security-collapses-obama-fox-and-britney-accounts-hacked.html</feedburner:origLink></entry>
    <entry>
        <title>Security: The Number One Technology Failure of All Time</title>
        <link rel="alternate" type="text/html" href="http://feeds.feedburner.com/~r/typepad/1216429516s8517/news/~3/503037402/security-the-number-one-technology-failure-of-all-time.html" />
        <link rel="replies" type="text/html" href="http://www.cgisecurity.net/2009/01/security-the-number-one-technology-failure-of-all-time.html" thr:count="0" />
        <id>tag:typepad.com,2003:post-60869830</id>
        <published>2009-01-04T19:45:07-08:00</published>
        <updated>2009-01-04T19:45:09-08:00</updated>
        <summary>"I was reading through an article last night about the 25 greatest blunders in technology history and was happily strolling through memory lane (what are Palm Pilots, PS/2s and Apple Newtons anyways? :p) and then got quite a surprise at the very end of the article. The number one technology failure...</summary>
        <author>
            <name>Robert</name>
        </author>
        <category scheme="http://www.sixapart.com/ns/types#category" term="IndustryNews" />
        
        


    <feedburner:origLink>http://www.cgisecurity.net/2009/01/security-the-number-one-technology-failure-of-all-time.html</feedburner:origLink></entry>
 
</feed><!-- ph=1 --><!-- nhm:from_kauri -->
