<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Recognize-Security &#187; LOLz</title>
	<atom:link href="http://www.rec-sec.com/category/lolz/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.rec-sec.com</link>
	<description>a non-profit information security web site authored by Moshe Ben Abu (Trancer), focusing on vulnerability research, exploit development (mainly for the Metasploit Framework), web application security, information security and hacking news from around the world.</description>
	<lastBuildDate>Sun, 14 Mar 2010 17:44:35 +0000</lastBuildDate>
	<generator>http://www.rec-sec.com</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<cloud domain='www.rec-sec.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com" />
	<atom:link rel="hub" href="http://superfeedr.com/hubbub" />
			<item>
		<title>ZF0wned 5</title>
		<link>http://www.rec-sec.com/2009/07/30/zf0wned-5/</link>
		<comments>http://www.rec-sec.com/2009/07/30/zf0wned-5/#comments</comments>
		<pubDate>Wed, 29 Jul 2009 23:45:04 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[LOLz]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=740</guid>
		<description><![CDATA[The hacking group ZF0 (Zero For 0wned) released the 5th edition of their eZine / hacklog.
You can download it here &#8211; zf05.txt
In this issue they owned quite a few hacking and information security websites:
mitnicksecurity.com (Kevin Mitnick)
0&#215;000000.com (Ronald van den Heetkamp)
doxpara.com (Dan Kaminsky)
perlmonks.org (Perl Monks)
elitehackers.com/info (EliteHackers)
binrev.com (Binary revolution)
invisiblethingslab.com (Joanna Rutkowska)
and more&#8230;
Also in this issue, ZF0 version [...]]]></description>
			<content:encoded><![CDATA[<p>The hacking group ZF0 (Zero For 0wned) released the 5th edition of their eZine / hacklog.<br />
You can download it here &#8211; <a href="/files/zf05.txt" title="Zero For 0wned 5">zf05.txt</a></p>
<p>In this issue they owned quite a few hacking and information security websites:<br />
mitnicksecurity.com (Kevin Mitnick)<br />
0&#215;000000.com (Ronald van den Heetkamp)<br />
doxpara.com (Dan Kaminsky)<br />
perlmonks.org (Perl Monks)<br />
elitehackers.com/info (EliteHackers)<br />
binrev.com (Binary revolution)<br />
invisiblethingslab.com (Joanna Rutkowska)<br />
and more&#8230;</p>
<p>Also in this issue, ZF0 version of the Pwnie awards, which is quite funny. Congratulation to <a href="http://xorl.wordpress.com/" title="xorl %eax, %eax">xorl</a>, one of my favorite security blogs for winning the best blog category, read his speech on <a href="http://seclists.org/fulldisclosure/2009/Jul/0499.html" title="Full Disclosure: zf05 Best blog pwnie award">Full-Disclosure</a>.</p>
<p>I&#8217;d like to clarify that I don&#8217;t support this group or their actions what so ever, they got really nasty is this one. But still, I recommend you read it.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/07/30/zf0wned-5/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Breaking the IronKey (literally)</title>
		<link>http://www.rec-sec.com/2009/05/27/breaking-the-ironkey/</link>
		<comments>http://www.rec-sec.com/2009/05/27/breaking-the-ironkey/#comments</comments>
		<pubDate>Wed, 27 May 2009 16:49:31 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[LOLz]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=575</guid>
		<description><![CDATA[Before:

After:

It wasn&#8217;t that hard :P 
]]></description>
			<content:encoded><![CDATA[<p><strong>Before:</strong><br />
<img alt="IronKey - Before" width="493" height="389" src="images/ironkey.png" /><br />
<strong>After:</strong><br />
<img alt="IronKey - After" width="493" height="389" src="images/ironkey2.png" /></p>
<p>It wasn&#8217;t that hard :P </p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/05/27/breaking-the-ironkey/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>No more Google AdSense for you! Next!</title>
		<link>http://www.rec-sec.com/2009/03/12/google-adsense-ban/</link>
		<comments>http://www.rec-sec.com/2009/03/12/google-adsense-ban/#comments</comments>
		<pubDate>Thu, 12 Mar 2009 20:48:58 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[LOLz]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=201</guid>
		<description><![CDATA[I&#8217;ve got banned from Google AdSense service. Why exactly? I don&#8217;t really know. I didn&#8217;t violate any part of their license, I didn&#8217;t post ads at p0rn sites and I didn&#8217;t use any script\service\something automated to rise my profit. Actually, I almost didn&#8217;t make any profit. One or two checks from them a year and [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Google AdSense" width="143" height="59" class="right" src="images/google_adsense.png" />I&#8217;ve got banned from Google AdSense service. Why exactly? I don&#8217;t really know. I didn&#8217;t violate any part of their license, I didn&#8217;t post ads at p0rn sites and I didn&#8217;t use any script\service\something automated to rise my profit. Actually, I almost didn&#8217;t make any profit. One or two checks from them a year and that&#8217;s it, paying for the site hosting service.<br />
I looked at the server logs and haven&#8217;t seen anything that implies abuse of any kind.</p>
<p>This is the mail I got from them:</p>
<blockquote><p>
Hello,</p>
<p>While going through our records recently, we found that your AdSense<br />
account has posed a significant risk to our AdWords advertisers. Since<br />
keeping your account in our publisher network may financially damage our<br />
advertisers in the future, we&#8217;ve decided to disable your account.</p>
<p>Please understand that we consider this a necessary step to protect the<br />
interests of both our advertisers and our other AdSense publishers. We<br />
realize the inconvenience this may cause you, and we thank you in advance<br />
for your understanding and cooperation.</p>
<p>If you have any questions about your account or the actions we&#8217;ve taken,<br />
please do not reply to this email. You can find more information by<br />
visiting<br />
<a href="https://www.google.com/adsense/support/bin/answer.py?answer=57153" title="Google AdSense - Disabled Account FAQ - AdSense Help">https://www.google.com/adsense/support/bin/answer.py?answer=57153</a>.</p>
<p>Sincerely,</p>
<p>The Google AdSense Team
</p></blockquote>
<p>Sincerely my ass, that&#8217;s just fucked up! I wish you all drop dead :-)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/03/12/google-adsense-ban/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Twitter</title>
		<link>http://www.rec-sec.com/2009/03/07/twitter/</link>
		<comments>http://www.rec-sec.com/2009/03/07/twitter/#comments</comments>
		<pubDate>Sat, 07 Mar 2009 10:00:18 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[LOLz]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=196</guid>
		<description><![CDATA[I&#8217;ve just register to Twitter and joined the world-wide hype.
Isn&#8217;t that shit suppose to be secure?
Update: they&#8217;ve fixed the XSS vulnerability. You know I tried notifying them in advance, but after about 15 minutes searching for an email address for bug reporting with no luck, I&#8217;ve decided to publish it here.
Make your homework Twitter guys.
]]></description>
			<content:encoded><![CDATA[<p><img alt="Twitter" width="193" height="108" class="right" src="images/twitter-logo.png" />I&#8217;ve just register to <a href="http://twitter.com/Trancer00t" title="Twitter / Trancer00t">Twitter</a> and joined the world-wide hype.<br />
Isn&#8217;t that shit suppose to be <a href="http://twitter.com/search?q=foo&#038;source=bar');alert('xss');//" title="Twitter Security">secure</a>?</p>
<p><strong>Update:</strong> they&#8217;ve fixed the <abbr title="Cross-Site Scripting">XSS</abbr> vulnerability. You know I tried notifying them in advance, but after about 15 minutes searching for an email address for bug reporting with no luck, I&#8217;ve decided to publish it here.<br />
Make your homework Twitter guys.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/03/07/twitter/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Google Developer Day 2008 got pwned</title>
		<link>http://www.rec-sec.com/2008/11/05/google-dev-day-pwned/</link>
		<comments>http://www.rec-sec.com/2008/11/05/google-dev-day-pwned/#comments</comments>
		<pubDate>Wed, 05 Nov 2008 19:56:00 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[LOLz]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=206</guid>
		<description><![CDATA[Now that is funny, Israel Google Developer Day 2008 networks got hacked, the wireless network and the wired LAN.
I got this email from Google, a day after the convention:

Dear attendee,
First of all thanks for attending Google Developer Day yesterday, we hope you found it useful. Unfortunately, we need to let you know about an incident [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Google Developer Day 2008" width="201" height="142" class="right" src="images/google_devday.png" />Now that is funny, Israel Google Developer Day 2008 networks got hacked, the wireless network and the wired <abbr title="Local Area Network">LAN</abbr>.<br />
I got this email from Google, a day after the convention:</p>
<blockquote><p>
Dear attendee,</p>
<p>First of all thanks for attending Google Developer Day yesterday, we hope you found it useful. Unfortunately, we need to let you know about an incident which took place during the conference which you may need to take precautionary action on.</p>
<p>We identified unauthorised activity on the public wired Ethernet network which was provided by the convention centre for conference attendees to access the Internet. This may have affected a limited number of  attendees accessing websites and online applications through the wired Ethernet connection. We have no evidence so far to suggest that the wireless network also provided at the event, and which was used by most attendees, was affected.</p>
<p>Due to the unauthorised activity, there is a chance that if you used the wired network, any user name and password entered to access a website may have been put at risk. When trying to access a secure website (a website using https), you may have received an alert indicating that the page had an invalid security certificate. In any case, we advise users as a precaution to change the passwords for any websites or services they accessed through the wired connection during the conference.</p>
<p>We&#8217;re really sorry that this has happened but we believe that the vast majority of attendees won&#8217;t have been affected by this incident. In the meantime, we look forward to seeing you at future events very soon.</p>
<p>The Google Developer Day Team
</p></blockquote>
<p>Sounds like a typical man-in-the-middle using <abbr title="Address Resolution Protocol">ARP</abbr> poisoning technique.<br />
In my opinion, that&#8217;s really irresponsible from Google, risking their event visitors with unsecured <abbr title="Local Area Network">LAN</abbr>s. There was tons of developers at the convention and the information at stake here is sensitive.<br />
Hope they do good next year, I also strongly recommend changing routers and switches default passwords when setting up a network for the convention ;-)</p>
<p>See also an article at <a href="http://www.calcalist.co.il/internet/articles/0,7340,L-3143244,00.html" title="Calcalist - Technology - Hackers hacked the Google Developer convention network">Calcalist</a> web site (Hebrew).</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/11/05/google-dev-day-pwned/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
