<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5299807096243182865</id><updated>2011-07-08T01:46:14.549-07:00</updated><category term='webmaster'/><category term='website'/><category term='plugin'/><category term='cms'/><category term='.my'/><title type='text'>The Un-Mamak Style</title><subtitle type='html'>This is not rox at all!</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://security-unmamak-style.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5299807096243182865/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://security-unmamak-style.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>C0r3</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5299807096243182865.post-4144266293378897731</id><published>2009-10-21T22:28:00.000-07:00</published><updated>2009-10-22T06:14:10.277-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='cms'/><category scheme='http://www.blogger.com/atom/ns#' term='.my'/><category scheme='http://www.blogger.com/atom/ns#' term='plugin'/><category scheme='http://www.blogger.com/atom/ns#' term='website'/><category scheme='http://www.blogger.com/atom/ns#' term='webmaster'/><title type='text'>F-Secure Weblog - .my Websites Compromised</title><content type='html'>&lt;div&gt;Yeah, Mamak Style's geng have found something bad about Malaysia (.MY) again, and they had "highlight" it in the &lt;a href="http://www.security.org.my/"&gt;Mamak Style&lt;/a&gt;. Luckily the wording use is correct "unintentionally hosting malicious or unsafe &lt;b&gt;LINKS&lt;/b&gt;"&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Nothing more can I say, &lt;b&gt;MOST&lt;/b&gt; of them caused by unpatched/vulnerable plugins or modules. I'm not saying that keeping a website secure is easy, but at least please do subscribe to some mailing-list or RSS that can highlight you (webmaster) vulnerabilities in your current version of CMS, plugins or modules.&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;In Un-Mamak Style, we don't just critic, we share and try to solve the problem (although no one can hear my voice)&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;.MY Webmaster, before the &lt;a href="http://www.security.org.my/"&gt;Mamak Style&lt;/a&gt; geng found new ideas for their posts, kindly subscribe to these RSS:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://feeds.feedburner.com/HelpNetSecurity-Vulnerabilities?format=xml"&gt;http://feeds.feedburner.com/HelpNetSecurity-Vulnerabilities?format=xml&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://twitter.com/statuses/user_timeline/22233993.rss"&gt;http://twitter.com/statuses/user_timeline/22233993.rss&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://php.opensourcecms.com/general/rssfeed.xml"&gt;http://php.opensourcecms.com/general/rssfeed.xml&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;Update/upgrade/patch vulnerable CMS/addons/plugins/modules is required &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;Here we go again:&lt;br /&gt;&lt;blockquote&gt;Users aren't the only ones that have to stay vigilant when it comes to security. On the other side of the fence, keeping a website secure is a challenge for even the best webmasters.&lt;br /&gt;&lt;br /&gt;We recently came across lots of websites under the ".my" domain that were compromised and unintentionally hosting malicious or unsafe links.&lt;/blockquote&gt;&lt;br /&gt;Here's a screenshot of .my domain serving cracked software:&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;img src="http://www.f-secure.com/weblog/archives/mydomain_hack_searchresults.jpg" alt="" height="450" width="450" /&gt;&lt;/center&gt;&lt;br /&gt;&lt;br /&gt;Read the rest of the posting &lt;a href="http://www.f-secure.com/weblog/archives/00001798.html" style="color: rgb(0, 51, 102); text-decoration: underline;"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;[The Mamak Style: &lt;b&gt;&lt;a href="http://security.org.my/index.php?/archives/F-Secure-Weblog-.my-Websites-Compromised.html"&gt;HERE&lt;/a&gt;&lt;/b&gt;]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5299807096243182865-4144266293378897731?l=security-unmamak-style.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://security-unmamak-style.blogspot.com/feeds/4144266293378897731/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://security-unmamak-style.blogspot.com/2009/10/f-secure-weblog-my-websites-compromised.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5299807096243182865/posts/default/4144266293378897731'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5299807096243182865/posts/default/4144266293378897731'/><link rel='alternate' type='text/html' href='http://security-unmamak-style.blogspot.com/2009/10/f-secure-weblog-my-websites-compromised.html' title='F-Secure Weblog - .my Websites Compromised'/><author><name>C0r3</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5299807096243182865.post-3715395629731176431</id><published>2009-10-20T08:26:00.000-07:00</published><updated>2009-10-22T06:16:28.516-07:00</updated><title type='text'>halal.upm.edu.my Hacked and Possibly Serving Malwares</title><content type='html'>Due to the vulnerability in the Joomla component(s) that has been used, halal.upm.edu.my has been compromised.&lt;br /&gt;&lt;br /&gt;Somehow it is not hosting any malware, but most of the links are pointing to a .CN website and gonna return you malware as the reward for clicking it&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Filename: crack.45155.exe&lt;/li&gt;&lt;li&gt;SHA256: d1aba4ba4afe3153985c9a5515d9f3d8c6220152a427972b3e78f6ab74aa8ae1&lt;/li&gt;&lt;li&gt;Anubis Task ID: 17ef11e831070b784e5fb135f75072c57&lt;/li&gt;&lt;li&gt;Virustotal Analysis ID: d1aba4ba4afe3153985c9a5515d9f3d8c6220152a427972b3e78f6ab74aa8ae1-1256053002&lt;/li&gt;&lt;/ul&gt;Ethically, for geng of &lt;a href="http://www.security.org.my"&gt;Mamak Style&lt;/a&gt;, this incident should be informed to the following contact person(s):&lt;br /&gt;&lt;ul&gt;&lt;li&gt;azhar[+at+]upm{dot}edu{dot}my&lt;/li&gt;&lt;li&gt;mycert[+at+]cybersecurity{dot}my&lt;/li&gt;&lt;/ul&gt;Here are some screenshots:&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;a href="http://www.security.org.my/uploads/halal.upm.edu.my.png"&gt;&lt;img src="http://www.security.org.my/uploads/halal.upm.edu.my.png" alt="" width="450" /&gt;&lt;/a&gt;&lt;/center&gt;&lt;br /&gt;The "anti-malware" page when you visit http://www.halal.upm.edu.my/index.php?option=crack&amp;amp;name=abc&amp;amp;net=1&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;a href="http://www.security.org.my/uploads/halal.upm.edu.my-source.png"&gt;&lt;img src="http://www.security.org.my/uploads/halal.upm.edu.my-source.png" alt="" width="450" /&gt;&lt;/a&gt;&lt;/center&gt;&lt;br /&gt;The Google search query "site:halal.upm.edu.my crack" yields the the following results:&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;a href="http://www.security.org.my/uploads/halal.upm.edu.my-google.png"&gt;&lt;img src="http://www.security.org.my/uploads/halal.upm.edu.my-google.png" alt="" width="450" /&gt;&lt;/a&gt;&lt;/center&gt;&lt;br /&gt;This website belongs to &lt;a href="http://www.halal.upm.edu.my/index.php"&gt;Institut Penyelidikan Produk Halal&lt;/a&gt; (Halal Product Research Institute), which is under &lt;a href="http://www.upm.edu.my/"&gt;Universiti Putra Malaysia&lt;/a&gt;, Malaysia's Leading Research University.&lt;br /&gt;&lt;br /&gt;[The Mamak Style: &lt;a href="http://www.security.org.my/index.php?/archives/halal.upm.edu.my-Hacked-and-Possibly-Serving-Malwares.html"&gt;HERE&lt;/a&gt;]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5299807096243182865-3715395629731176431?l=security-unmamak-style.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://security-unmamak-style.blogspot.com/feeds/3715395629731176431/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://security-unmamak-style.blogspot.com/2009/10/halalupmedumy-hacked-and-possibly.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5299807096243182865/posts/default/3715395629731176431'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5299807096243182865/posts/default/3715395629731176431'/><link rel='alternate' type='text/html' href='http://security-unmamak-style.blogspot.com/2009/10/halalupmedumy-hacked-and-possibly.html' title='halal.upm.edu.my Hacked and Possibly Serving Malwares'/><author><name>C0r3</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
