<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>FireBlog &#124; FireHost &#187; Hackers</title>
	<atom:link href="http://www.fireblog.com/tag/hackers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.fireblog.com</link>
	<description>Secure Hosting Blog</description>
	<lastBuildDate>Thu, 29 Jul 2010 14:23:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Stealth Cyber Attacks on SMBs are Increasingly Attractive to Hackers</title>
		<link>http://www.fireblog.com/stealth-cyber-attacks-on-smbs-are-increasingly-attractive-to-hackers/</link>
		<comments>http://www.fireblog.com/stealth-cyber-attacks-on-smbs-are-increasingly-attractive-to-hackers/#comments</comments>
		<pubDate>Fri, 30 Oct 2009 05:00:52 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Secure Web Hosting]]></category>
		<category><![CDATA[SMB security]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=2426</guid>
		<description><![CDATA[SMBs around the world believe they are too small and pose too little value to hackers to be worth their time, but recent trends in hacker and cybercrime activity reveal that's just not the case. In reality, SMBs' limited resources, inadequate security, and lack of technical expertise make them more vulnerable to cyber attack, and hackers are taking notice.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2452" title="steathattack" src="http://www.fireblog.com/wp-content/uploads/2009/10/steathattack.jpg" alt="steathattack" width="150" height="161" />McAfee&#8217;s <a href="http://www.mcafee.com/us/research/security_paradox/index.html" target="_blank">study</a>, &#8220;The Security Paradox&#8221; examines how small and medium organizations that employ between 51-1,000 workers address IT security and growing cyber threats.</p>
<p>An overarching theme of the report reveals that SMBs around the world (and particularly in North America) believe they are too small and pose too little value to hackers to be worth their time, but recent trends in hacker and cybercrime activity reveal that&#8217;s just not the case.</p>
<p>In reality, SMBs&#8217; limited resources, inadequate security, and lack of technical expertise make them <em><strong>more</strong></em> vulnerable to cyber attack, and hackers are taking notice.</p>
<p>Jeff Green, Senior VP of McAfee Avert Labs confirmed, &#8220;High profile attacks [on larger enterprises] are becoming less frequent because they are often detected quickly. Attackers are favoring stealth attacks that quietly infiltrate systems [of small and medium businesses].&#8221;</p>
<p>To change this trend, small and medium-sized organizations will need to make significant shifts in their fundamental values and budgetary allocations.</p>
<p><span id="more-2426"></span></p>
<p>Today:</p>
<ul>
<li>52% of SMBs believe they are not well known enough to be a target for cybercrime</li>
<li>46% believe hackers could not make any money by accessing their information</li>
<li>45% of SMBs think they hold little value to hackers</li>
<li>44% believe cyber crime is an issue for larger organizations</li>
<li>35% of SMBs are not concerned about being a target of cybercrime</li>
<li>34% don&#8217;t think their information has value outside the organization</li>
</ul>
<p>As a result, an alarming number (74%) of  SMBs allocate three hours or less each week to IT security, and half of all SMBs surveyed feel adequately protected by default settings on the IT equipment. The effects of these lax standards are dire resulting in stolen data, downtime, decreased productivity, non-compliance, lost sales, and a tarnished reputation.</p>
<p>Businesses in this space typically experience a week of downtime trying to recover from a cyber attack, and real, out of pocket costs hover around $41,000 per incident.</p>
<p>So what&#8217;s a small business to do?</p>
<p>&#8220;Get ahead of the hackers. Take every step you can to prevent security breaches by partnering with organizations that specialize in security for small business,&#8221; advises FireHost Founder and CEO, Chris Drake. &#8220;We provide resources and expertise required to do business securely online, and FireHost helps SMBs achieve higher security levels for less money than they might spend taking on the challenge alone.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/stealth-cyber-attacks-on-smbs-are-increasingly-attractive-to-hackers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQL Injection Vulnerability Exposes Sensitive Details about Ride Share Users in S. California</title>
		<link>http://www.fireblog.com/sql-injection-vulnerability-exposes-sensitive-details-about-ride-share-users-in-s-california/</link>
		<comments>http://www.fireblog.com/sql-injection-vulnerability-exposes-sensitive-details-about-ride-share-users-in-s-california/#comments</comments>
		<pubDate>Tue, 15 Sep 2009 14:00:50 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[security bugs]]></category>
		<category><![CDATA[SQL Injections]]></category>
		<category><![CDATA[Website Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=2134</guid>
		<description><![CDATA[Programming errors on RideMatch.info allow hackers to access names, home addresses, phone numbers, commuting schedules, and employee ID numbers for the service's users.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2145" title="rideshareFinal" src="http://www.fireblog.com/wp-content/uploads/2009/09/rideshareFinal.jpg" alt="rideshareFinal" width="140" height="115" />Programming errors on <a href="https://www.ridematch.info/service.asp" target="_blank">RideMatch.info</a> allow hackers to access names, home addresses, phone numbers, commuting schedules, and employee ID numbers for the service&#8217;s users according to an <a href="http://www.theregister.co.uk/2009/09/08/ridematch_website_vulnerability/" target="_blank">article</a> featured in The Register.</p>
<p>The RideMatch.info flaw provides inadequate scrutiny of user-generated text entered in search boxes and fields throughout the website. Hackers exploit the SQL injection vulnerability by passing commands directly into the back end database.</p>
<p>The vulnerability was identified and reported in August by Kristian Hermansen, a security researcher who was required by his employer to sign up for the service. His report to The Register stated, &#8220;The reason I am bringing this to your attention is that the issue is not being fixed by the admins and most companies don&#8217;t even know that their employee&#8217;s personal and corporate information may be been compromised.&#8221;</p>
<p>To date, the exploit has exposed hundreds of employees&#8217; sensitive information across several organizations in S. California, including at least one military entity.</p>
<p><span id="more-2134"></span></p>
<p>The Ride Match website is a joint project between five regional transit authorities. The service pairs commuters based on home and office destinations as well as departure times. The Riverside County Transportation Commission, an agency responsible for the website, reported to have reached out to the Trapeze Group (a Canada-based development company that designed the software) right after the vulnerability was reported.</p>
<p>Once identified, SQL injection vulnerabilities can often be patched by changing a line or two of code, but The Register spoke to a Trapeze spokesperson on 9/8, and at that time she was unaware of any security bugs being reported on the software. She promised that any vulnerabilities brought to their attention would be investigated and resolved.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/sql-injection-vulnerability-exposes-sensitive-details-about-ride-share-users-in-s-california/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Online Payment Institutions, the New Phishing Target</title>
		<link>http://www.fireblog.com/drop-in-phishing-attempts-may-signal-new-threats/</link>
		<comments>http://www.fireblog.com/drop-in-phishing-attempts-may-signal-new-threats/#comments</comments>
		<pubDate>Tue, 01 Sep 2009 14:00:46 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Web Hosting]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Secure Web Hosting]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=1997</guid>
		<description><![CDATA[Overall, phishing attempts are down in the first half of 2009. Researchers speculate that the decrease is fueled by a decline in the number of traditional banks, the financial crisis, and/or improved security measures when users login to "real" banks online.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2063" title="onlinePhishing" src="http://www.fireblog.com/wp-content/uploads/2009/09/onlinePhishing.jpg" alt="onlinePhishing" width="132" height="97" />Overall, phishing attempts are down in the first half of 2009 as reported by IBM&#8217;s <a href="http://www-935.ibm.com/services/us/iss/xforce/trendreports/" target="_blank">X-Force Team</a> in the 2009 Mid-Year Trend &amp; Risk Report.</p>
<p>The decrease is fueled by a decline in the number of traditional banks. Researchers speculate  that this trend could be fueled by the financial crisis, or perhaps improved security measures when users login to &#8220;real&#8221; banks online is playing a role. Make no mistake however, hackers aren&#8217;t slowing down. They seem instead to be targeting Online Payment institutions instead as reflected in the rise of attacks over the last 18 months.</p>
<p><img class="aligncenter size-full wp-image-2058" title="Phishing Targets by Industry" src="http://www.fireblog.com/wp-content/uploads/2009/09/ibmChart.jpg" alt="Phishing Targets by Industry" width="320" height="306" /></p>
<p>To further reinforce the movement toward Online Payment institutions, PayPal is mentioned in two of the top five subject lines from this year. (PayPal is included four times if you extend the list to the top ten slots.)</p>
<p><span id="more-1997"></span></p>
<ul>
<li>Attention! Votre compte PayPal a ete limite!, 24%</li>
<li>Important Information Regarding Your Limited Account, 7%</li>
<li>PayPal® Account Review Department, 2%</li>
<li>Account Security Measures, 1%</li>
<li>Citibank Alert: Additional Security Requirements, 1%</li>
</ul>
<p>Along with the change in volume, phishing attack origins have shifted dramatically this year. Russia takes the top spot, and they weren&#8217;t present on the list last year; Turkey, Ukraine, and India are new as well. Spain and Italy sat in the top slots last year, but Spain has completely disappeared along with Israel, France, and Germany who were smaller yet valid players in &#8217;08.</p>
<p><strong>The top 10 for 2009 include:</strong></p>
<div style="width: 200px; float: left;">
<ul>
<li>Russia 47% <em style="color:#B2B2B2;">NEW</em></li>
<li>Brazil 7%</li>
<li>India 2% <em style="color:#B2B2B2;">NEW</em></li>
<li>Poland 2%</li>
<li>S. Korea 2%</li>
</ul>
</div>
<div style="width: 200px; float: left;">
<ul>
<li>US 11%</li>
<li>Turkey 4% <em style="color:#B2B2B2;">NEW</em></li>
<li>Ukraine 2% <em style="color:#B2B2B2;">NEW</em></li>
<li>Argentina 2%</li>
<li>Italy 1%</li>
</ul>
</div>
<p style="clear:both;">The net of these changes lay the groundwork to support foundational changes to the cyber community ecosystem are coming. Researchers are concerned that the decline in phishing attempts simply means that hackers are redirecting resources to other methods that obtain the same (or better gains) that phishing once achieved.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/drop-in-phishing-attempts-may-signal-new-threats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Summer 2009 Review: Top 100 Dirtiest Websites</title>
		<link>http://www.fireblog.com/symantec-safeweb/</link>
		<comments>http://www.fireblog.com/symantec-safeweb/#comments</comments>
		<pubDate>Tue, 25 Aug 2009 14:00:03 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[dirtiest websites]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[Secure Web Hosting]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=1968</guid>
		<description><![CDATA[In a press release last week, Symantec revealed the top 100 dirtiest websites. Simply visiting one of these websites could infect your computer. Without downloading or clicking on anything in particular, you risk exposing your computer to infection and revealing your personal and financial information into the hands of cyber criminals.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-1978" title="dirtySites" src="http://www.fireblog.com/wp-content/uploads/2009/08/dirtySites.jpg" alt="dirtySites" width="177" height="163" />In a press release last week, <a href="http://www.symantec.com/about/news/release/article.jsp?prid=20090819_01" target="_blank">Symantec</a> revealed the top 100 dirtiest websites, but less than half of them (48%) were dirty in the way you&#8217;re thinking. The majority of the list&#8217;s subject matter features less scandalous content like catering, figure skating, legal services, and buying electronics.</p>
<p>Websites that made the list represent the “worst of the worst” based on the number of threats detected by <a href="http://safeweb.norton.com/safety" target="_blank">Norton Safe Web</a>. Without downloading or clicking on anything in particular, you risk exposing your computer to infection and revealing your personal and financial information into the hands of cyber criminals. Simply <em><strong>visiting</strong></em> one of these websites could infect your computer, so we don&#8217;t recommend you actually visit any of the websites that made the <a href="http://safeweb.norton.com/dirtysites" target="_blank">list</a>.</p>
<p>So what makes these websites so dirty? <a href="http://security.firehost.com/terms/malware" target="_blank">Malware</a>, security risks like <a href="http://security.firehost.com/terms/phishing" target="_blank">phishing</a>, and browser exploits top the list. In fact, the average number of threats found on the top dirtiest sites is&#8230; (ready for this?) 18,000, and 40 of the top 100 dirtiest websites have more than 20,000 unique threats each lurking in the shadows waiting to exploit unknowing visitors.</p>
<p><span id="more-1968"></span></p>
<p>Symantec found the dirty websites by crawling the web using web forensic techniques like file scanning, IDS (intrusion detection systems), behavioral detection, and install/uninstall analysis to find security risks. In addition, Symantec has more than 20 million active contributors in the Norton Community Watch program. You can see dirty site submissions in real time by visiting <a href="http://safeweb.norton.com/safety" target="_blank">http://safeweb.norton.com/safety</a>.</p>
<p>While Norton can help you detect which websites are bad, FireHost can help keep your website off the bad list. We help keep hacker activity at bay by providing application level firewall protection, proactive vulnerability monitoring, and much more as a standard part of every <a href="http://www.firehost.com/secure-hosting" target="_blank">secure web hosting</a> package.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/symantec-safeweb/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>US Based SMBs Targeted by Hackers More Often than International Firms</title>
		<link>http://www.fireblog.com/us-based-smbs-targeted-by-hackers-more-often-than-international-firms/</link>
		<comments>http://www.fireblog.com/us-based-smbs-targeted-by-hackers-more-often-than-international-firms/#comments</comments>
		<pubDate>Fri, 07 Aug 2009 14:00:52 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[Website Security]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=1816</guid>
		<description><![CDATA[Panda Security's most recent report indicates that thirty percent of small and medium size businesses worldwide have been infected with malware, and businesses based in the US are even more susceptible.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-1905" title="usSmbs_targeted" src="http://www.fireblog.com/wp-content/uploads/2009/08/usSmbs_targeted1.jpg" alt="usSmbs_targeted" width="195" height="120" /><a href="http://www.pandasecurity.com/usa/about/company-profile/" target="_blank">Panda Security</a>&#8216;s most recent report indicates that thirty percent of small and medium size businesses worldwide have been infected with malware, and businesses based in the US are even more susceptible. Close to half (44%) of US based SMBs have lost time and productivity due to some form of cybercrime.</p>
<p>A lack of threat awareness is not the problem. The study shows that almost all businesses in this category have installed anti-virus programs and kept security systems up to date, but a large number of SMBs still become victims of cyber crimes. When disaster strikes, viruses (41%) followed by spyware (26%) are most often the cause.</p>
<p>In a conversation with <a href="http://www.scmagazineus.com/A-rise-in-cybercrime-hits-SMBs/article/140666/" target="_blank">SC Magazine</a>, Luis Corrons, PandaLabs technical director suggested, “these companies often lack the in-house staff and resources to fight off increasingly sophisticated and exponentially more targeted Internet attacks.&#8221;<span id="more-1816"></span></p>
<p>The study&#8217;s results support Mr. Corrons claim that SMBs are not or able (or willing) to allocate the appropriate resources to close vulnerabilities and properly secure their environment.</p>
<ul>
<li>52% of survey respondents have no web filtering solution</li>
<li>39% are untrained/unaware of IT threats</li>
<li>29% have no anti-spam solution</li>
<li>22% are without anti-spyware technology</li>
<li>16% do not have a firewall</li>
</ul>
<p>So what should small and medium size business owners do?</p>
<p>Network <a href="http://www.firehost.com/secure-hosting/vulnerability-audit" target="_blank">vulnerability scans</a> provide extremely high value. A thorough scan of your website(s), database(s), and application(s) can identify disasters waiting to happen. With a starting pricepoint around <a href="http://www.firehost.com/secure-hosting/vulnerability-audit" target="_blank">$100 each</a>, vulnerability scans provide SMBs an affordable way to identify open ports, SQL injections, cross-site scripting (XSS) attempts, holes in JavaScript and web forms, and much more.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/us-based-smbs-targeted-by-hackers-more-often-than-international-firms/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Symantec CEO Identifies Three Key Security Risks</title>
		<link>http://www.fireblog.com/symatec-ceo-discusses-website-security-risks/</link>
		<comments>http://www.fireblog.com/symatec-ceo-discusses-website-security-risks/#comments</comments>
		<pubDate>Fri, 17 Jul 2009 14:00:31 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[protect open source applications]]></category>
		<category><![CDATA[Secure Web Hosting]]></category>
		<category><![CDATA[Security Threats]]></category>
		<category><![CDATA[Website Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=951</guid>
		<description><![CDATA[Data from <a href="https://tms.symantec.com/Default.aspx" target="_blank">Symantec's</a> Global Intelligence Network indicates we have reached the point where there are more malicious programs created than legitimate programs every day, and that cyber attackers leverage vulnerabilities fueled by application code.]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.fireblog.com/wp-content/uploads/2009/07/enriqueSalem_02.jpg" alt="enriqueSalem_02" title="enriqueSalem_02" width="166" height="182" class="alignright size-full wp-image-1728" />In an interview with <a href="http://www.scmagazineus.com/QA-The-New-Security-Agenda-Changing-the-Game/article/131026/" target="_blank">SC Magazine</a>, Symantec&#8217;s CEO and President Enrique Salem discussed the new security threats facing companies doing business on the internet. When asked about the top security threats, he responded with three.</p>
<p>&#8220;In 2009, we see three key trends that could impact IT security – a continued explosion of new <a href="http://security.firehost.com/terms/malware" target="_self">malware</a> variants, advanced web threats, and an uptick in threats related to social networking sites.&#8221; Mr. Salem reinforced that &#8220;<a href="http://security.firehost.com/terms/cyber-crime" target="_self">cybercriminals</a> are more sophisticated and driven than ever, and they operate in an increasingly profitable underground economy that makes it easy for them to not only buy and sell stolen information such as credit card data or even identities.&#8221;</p>
<p>Data from <a href="https://tms.symantec.com/Default.aspx" target="_blank">Symantec&#8217;s</a> Global Intelligence Network indicates we have reached the point where there are more malicious programs created than legitimate programs every day, and that cyber attackers leverage vulnerabilities fueled by application code. Hackers compromise specific (often <a href="http://www.firehost.com/secure-hosting/platforms" target="_self">open source</a>) websites, and then use them as a means for launching other attacks across the internet.<span id="more-951"></span></p>
<p>Hosting websites in a secure environment helps prevent malicious hackers from breaching files and applications and stealing confidential information, but you can to more to protect your identity. Partnering with a web host who also has expertise in <a href="http://www.firehost.com/services/security-consulting" target="_self">website security</a> is critical. FireHost&#8217;s team of security engineers works directly with clients to help identify and close vulnerabilities in programming and design that hackers can use to exploit your company.</p>
<p>To learn more about how we help remedy JavaScript and open source vulnerabilities, visit our <a href="http://www.firehost.com/services" target="_self">Services</a> page.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/symatec-ceo-discusses-website-security-risks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Journalist Turns Hacker in Under One Hour</title>
		<link>http://www.fireblog.com/journalist-turns-hacker-in-under-one-hour/</link>
		<comments>http://www.fireblog.com/journalist-turns-hacker-in-under-one-hour/#comments</comments>
		<pubDate>Tue, 16 Jun 2009 14:00:01 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[Secure Web Hosting]]></category>
		<category><![CDATA[Sub Seven Trojan]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=1474</guid>
		<description><![CDATA[It takes as little as $300 to infect several Windows clients and take complete control of them in a test environment. By using real samples of malicious code, you are able to infect PCs with a Sub Seven Trojan and gain remote access to the machines. Once inside the computers, you are exposed to some of the malicious tricks hackers can play on unsuspecting malware victims.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-1498" title="hacker" src="http://www.fireblog.com/wp-content/uploads/2009/06/hacker.jpg" alt="hacker" width="170" height="178" />In less than one hour last Thursday, Internet security journalist Elinor Mills mastered the <a href="http://news.cnet.com/8301-1009_3-10263239-83.html" target="_blank">tools of the hacker</a> trade at McAfee&#8217;s Malware Experience event.</p>
<p>It takes &#8220;as little as $300 to infect several Windows clients and take complete control of them in a test environment,&#8221; Mills reports. By using real samples of malicious code, she was able to infect PCs with a Sub Seven Trojan and gain remote access to the machines. Once inside the computers, she was exposed to some of the malicious tricks hackers can play on unsuspecting <a href="http://security.firehost.com/terms/malware">malware</a> victims.</p>
<p><span id="more-1474"></span></p>
<ul>
<li>Invert the users screen so images and text appear upside down</li>
<li>Change background colors</li>
<li>Direct the PCs browser to any URL</li>
<li>Control webcams, chat sessions, and printers</li>
</ul>
<p>After mastering the Sub Seven Trojan&#8217;s &#8220;mildly malicious&#8221; features and functions, Ms. Mills was ready for the big leagues. With a few simple keystrokes, she created a <a href="http://security.firehost.com/terms/botnet">botnet</a> to control multiple <a href="http://security.firehost.com/terms/zombie">zombies</a> and do things like shut down websites with a <a href="http://security.firehost.com/terms/denial-of-service">DOS attack</a>, send spam, <a href="http://security.firehost.com/terms/scanning">scan ports</a>, and install malicious files and <a href="http://security.firehost.com/terms/keylogger">keystroke loggers</a> on multiple PCs.</p>
<p>McAfee&#8217;s Avert Labs participated in the event and reported to participants that there are 400,000+ new <a href="http://security.firehost.com/terms/zombie">zombies</a> deployed and 4,000+ new pieces of malware discovered daily that result in over 1.5MM malicious website attacks every month.</p>
<p>Ms. Mills wrapped up the McAfee Malware Experience by saying, &#8220;The numbers aren&#8217;t all that surprising to me now that I&#8217;ve seen first hand how easy the <a href="http://security.firehost.com/terms/malware">malware</a> is to create and use. All in all, I&#8217;d say it was a very sobering experience.&#8221;</p>
<p>Start protecting your online presence today by partnering with a Secure Web Hosting provider. Contact a FireHost sales engineer today.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/journalist-turns-hacker-in-under-one-hour/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Stakkato Charged in Crime Against Cisco</title>
		<link>http://www.fireblog.com/stakkato-charged-in-crime-against-cisco/</link>
		<comments>http://www.fireblog.com/stakkato-charged-in-crime-against-cisco/#comments</comments>
		<pubDate>Thu, 28 May 2009 14:00:51 +0000</pubDate>
		<dc:creator>FireHost Evangelist</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Website Security]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=1275</guid>
		<description><![CDATA[Earlier this month, 21 year-old hacker, Philip Gabriel Pettersson (aka "Stakkato"), was named in a five-count indictment that includes one count of intrusion and two counts of trade secret misappropriation involving Cisco Systems, Inc.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-1339" title="handcuffs" src="http://www.fireblog.com/wp-content/uploads/2009/05/handcuffs.gif" alt="handcuffs" width="158" height="123" />Earlier this month, 21 year-old hacker, Philip Gabriel Pettersson (aka &#8220;Stakkato&#8221;), was named in a five-count indictment that includes one count of intrusion and two counts of trade secret misappropriation involving Cisco Systems, Inc. Read more at <a href="http://www.upi.com/Top_News/2009/05/06/Swede-21-charged-in-Cisco-hacking-scheme/UPI-66221241620664/" target="_blank">UPI.com</a></p>
<p>If an up and coming hacker/prodigy can penetrate the network of a publicly traded, global corporation with a <a href="http://www.cisco.com/en/US/products/svcs/ps2961/ps2952/serv_group_home.html" target="_blank"><em>security division</em></a>, imagine how easily he could ruin your business.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/stakkato-charged-in-crime-against-cisco/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hackers Exploit Microsoft Vulnerabilities</title>
		<link>http://www.fireblog.com/hackers-exploit-microsoft-vulnerabilities/</link>
		<comments>http://www.fireblog.com/hackers-exploit-microsoft-vulnerabilities/#comments</comments>
		<pubDate>Tue, 19 May 2009 14:00:21 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Web Hosting]]></category>
		<category><![CDATA[Application Protection]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Vulnerability Exploitation]]></category>

		<guid isPermaLink="false">http://www.fireblog.com/?p=1008</guid>
		<description><![CDATA[In just the last few months, Microsoft has announced two vulnerabilities discovered in their popular Office application suite. This is a good example of a vulnerability in programs on your computer, and similar holes exist for web applications.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-1263" title="windows-hack3" src="http://www.fireblog.com/wp-content/uploads/2009/05/windows-hack3.jpg" alt="windows-hack3" width="190" height="198" />On FireBlog, we&#8217;ve discussed several vulnerabilities found in open source applications, but it&#8217;s important to mention that vulnerabilities exist in even the most protected application code. Even Microsoft, which has a 1:1 ratio of programmers to quality control analysts, cannot always prevent their software from containing exploitable vulnerabilities.</p>
<p>In just the last few months, Microsoft has announced two vulnerabilities discovered in their popular Office application suite. Specifically, these vulnerabilities affect Excel and PowerPoint, and both flaws allow hackers to install malicious software or even hijack a computer completely. For more information about resolving these two vulnerabilities, read the <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;taxonomyName=security_hardware_and_software&amp;articleId=9131040&amp;taxonomyId=145&amp;intsrc=kc_top" target="_blank">full report by <em>Computer World</em></a>.</p>
<p><span id="more-1008"></span></p>
<p>This is a good example of a vulnerability in programs on your computer, and similar holes exist for web applications. As we&#8217;ve explained previously, web application vulnerabilities found in Drupal or WordPress can just as easily be used by malicious hackers to exploit your website and customers. It&#8217;s important to take an active role in securing your website, with secure hosting such as FireHost.</p>
<p>Although every application will contain vulnerabilities of some kind, you can still guard against the exploitation of your website&#8217;s applications by malicious hackers. <a href="http://www.firehost.com/" target="_blank">FireHost</a> protects your company and valued customers with industry-leading security, including sophisticated web application firewalls to prevent hackers from exploiting the applications running your website.</p>
<p>The value of making your customers feel secure when dealing with your company website is immeasurable. Discover the difference FireHost secure web hosting will make for your company, visit <a href="http://www.firehost.com/" target="_blank">FireHost.com</a> and <a href="http://www.firehost.com/company/contact-us" target="_blank">contact a FireHost Agent today</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fireblog.com/hackers-exploit-microsoft-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
