<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>FireBlog &#124; FireHost &#187; ftp vulnerability</title>
	<atom:link href="http://www.fireblog.com/tag/ftp-vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.fireblog.com</link>
	<description>Secure Hosting Blog</description>
	<lastBuildDate>Wed, 11 Aug 2010 19:40:07 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Inquisitive Hackers Compromise Curious George Website</title>
		<link>http://www.fireblog.com/inquisitive-hackers-compromise-curious-george/</link>
		<comments>http://www.fireblog.com/inquisitive-hackers-compromise-curious-george/#comments</comments>
		<pubDate>Fri, 25 Sep 2009 14:00:12 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[ftp vulnerability]]></category>
		<category><![CDATA[Secure Web Hosting]]></category>
		<category><![CDATA[Security Threats]]></category>
		<category><![CDATA[SQL Injections]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=2198</guid>
		<description><![CDATA[The Curious George childrens' television show was propagating malware from at least Monday until Thursday last week. It's not clear how how hackers were able to break into the site, but it is possible that they obtained the credentials to an FTP account or exploited an SQL injection vulnerability.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2236" title="effedGeorge" src="http://www.fireblog.com/wp-content/uploads/2009/09/effedGeorge.jpg" alt="effedGeorge" width="118" height="184" />The <a href="http://pbskids.org/curiousgeorge/" target="_blank">Curious George</a> childrens&#8217; television show, which is run by  the Public Broadcasting Service (PBS), was propagating malware from at least Monday until Thursday last week.</p>
<p>Nidhi Shah, a research scientist at Purewire told <a href="http://www.scmagazineus.com/PBS-Curious-George-site-hacked-to-serve-malware/article/149244/" target="_blank">SCMagazineUS.com</a>, &#8220;It&#8217;s not clear how how hackers were able to break into the site, but it is possible that they obtained the credentials to an FTP account or exploited an SQL injection vulnerability.&#8221;</p>
<p>The exploit manifested as a pop up for visitors to authenticate their session with a username and password before viewing the site contents. When users canceled the message screen or entered the wrong credentials, an error page informed them that they had failed to login properly. That error page contained JavaScript code which loaded malware from an exploit site targeting a number of known software vulnerabilities in Adobe Acrobat Reader, AOL Radio AmpX and SuperBuddy and Apple QuickTime. Any user not patched against these bugs received the malware.</p>
<p><span id="more-2198"></span></p>
<p>It&#8217;s undetermined how many people encountered the attack, but Kevin Dando, director of digital and education communications at PBS believes the exposure to be very low since PBS has not received complaints. Mr. Dando told SCMagazineUS.com that internal triggers had alerted them to the situation. They  addressed it quickly, and that the situation has been completely fixed as of last Friday.</p>
<p>In his closing comments, Mr. Dando warned &#8220;that this incident should serve as a reminder that any system can potentially be exposed to infection, and service providers must remain vigilant against threats and be prepared to act aggressively and be ready with pre-established procedures.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/inquisitive-hackers-compromise-curious-george/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
