While trying to follow up on the quite widely publicised Kaspersky website hack I went along to the obvious spot of Zone-h. Having it uncontactable the last two days, I tried again this morning and got the following: Zone-H defaced No Details on this as yet. Hackers blog has more on the Kaspersky hack which [...]
Entries Tagged as 'Incidents'
Zone-H got owned
February 11th, 2009 · 1 Comment
Tags: Incidents · Security · Uncategorized
Fresh Phish – more on DNS and Kaminsky
October 29th, 2008 · No Comments
The October 2008 Issue of IEEE Spectrum magazine has an nicely phrased piece title “Fresh Phish” by David Schneider describing the potential of the DNS spoofing bug Discovered by Kaminsky. Also worth noting is the focus on Steampunk [1] [2] [3] including a reference to Steampunk band Abney Park
Next Great worm on the rise ? (MS08-067 Critical)
October 24th, 2008 · No Comments
Microsoft seems to have broken with the “Patch Tuesday” scheduled release cycle with the urgent release of MS08-67 earlier today after having detected in the wild attacks against netapi32.dll. The vulnerability is in the RPC connector we know and love so well ( Blaster, Welchia, Nimda …). ISC points out quite nicely that this could [...]
Tags: Incidents · Security · Uncategorized
A poetic approach to Dan’s (And Halvar’s) DNS debacle
July 23rd, 2008 · No Comments
With the ongoing smoldering relating to the cross platform cross-vendor flaw in DNS as reported by Dan Kaminsky, Christofer Hoff has put a summary of the situation together, but as a poem. Its also worth noting that Halvar Flake has stepped up and stated that hes found the bug as well ( so I assume [...]
Tags: Incidents · Security · Systems Administration
WordPress and dealing with incoming hacks
June 7th, 2008 · No Comments
The other day morning stated out with a conversation with darb that went as follows: DARB: so…wordpress hey? BVI: I got over writing my own code BVI: now I’m waiting for my blog to be 0wn3d DARB: you know wordpress is the equivalent of an 8ft tall ogre that stands outside looking pretty, smashes tables [...]
Tags: Incidents · Security · Uncategorized
Layer 2 security is still important
June 4th, 2008 · 1 Comment
Richard Bejtlich posted a few days ago about the ‘hack’ on the Metasploit webserver as reported by SunBelt. What is interesting is that the actual website wasnt compromised, but rather another system on the same VLAN at the hosting provider which then performed some ARP spoofing magic against the gateway, in effect redirecting traffic to [...]


