<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Munca.ro, poarta deschisa catre baza de date</title>
	<atom:link href="http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/</link>
	<description></description>
	<lastBuildDate>Sat, 17 Sep 2011 10:00:04 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: B7ackAnge7z</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1022</link>
		<dc:creator>B7ackAnge7z</dc:creator>
		<pubDate>Sun, 15 Feb 2009 04:28:42 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1022</guid>
		<description>Poate ca esti mai bine informat, deaceea nu vreau sa te contrazic...

Dar totusi, imi place sum &quot;SUNA&quot; aici: [url=http://blogs.technet.com/msrc/archive/2009/02/12/conficker-activity-update.aspx]Conficker Activity Update[/url] si sunt mai mult ca sigur ca cei de la Microsoft au urgent nevoie de autorul virusului. 

Si asta ma face sa cred ca Microsoftul nu este singura companie care se confrunta cu probleme de acest gen.</description>
		<content:encoded><![CDATA[<p>Poate ca esti mai bine informat, deaceea nu vreau sa te contrazic&#8230;</p>
<p>Dar totusi, imi place sum &#8220;SUNA&#8221; aici: [url=http://blogs.technet.com/msrc/archive/2009/02/12/conficker-activity-update.aspx]Conficker Activity Update[/url] si sunt mai mult ca sigur ca cei de la Microsoft au urgent nevoie de autorul virusului. </p>
<p>Si asta ma face sa cred ca Microsoftul nu este singura companie care se confrunta cu probleme de acest gen.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: whatever</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1021</link>
		<dc:creator>whatever</dc:creator>
		<pubDate>Sun, 15 Feb 2009 04:21:17 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1021</guid>
		<description>Continua sa visezi B7ackAnge7z. Visezi frumos :)</description>
		<content:encoded><![CDATA[<p>Continua sa visezi B7ackAnge7z. Visezi frumos <img src='http://blog.rstcenter.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: B7ackAnge7z</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1020</link>
		<dc:creator>B7ackAnge7z</dc:creator>
		<pubDate>Sat, 14 Feb 2009 20:32:50 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1020</guid>
		<description>Nu cred ca au trecut acele timpuri()... caci orice companie doreste sa aiba cel putin un HACKER in echipa sa... si stim cu totii de ce ;)

doar ca acum mARILE companii nu doresc sa &quot;strice&quot; imaginea...

Cel mai recent exemplu este MicroSoft, care ofera $250.000 celui care va gasi autorul virusului Conficker. Sunt sigur ca daca il &quot;aresteaza&quot; pe autor, nu il vor trimite la racoare :D</description>
		<content:encoded><![CDATA[<p>Nu cred ca au trecut acele timpuri()&#8230; caci orice companie doreste sa aiba cel putin un HACKER in echipa sa&#8230; si stim cu totii de ce <img src='http://blog.rstcenter.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>doar ca acum mARILE companii nu doresc sa &#8220;strice&#8221; imaginea&#8230;</p>
<p>Cel mai recent exemplu este MicroSoft, care ofera $250.000 celui care va gasi autorul virusului Conficker. Sunt sigur ca daca il &#8220;aresteaza&#8221; pe autor, nu il vor trimite la racoare <img src='http://blog.rstcenter.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: whatever</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1017</link>
		<dc:creator>whatever</dc:creator>
		<pubDate>Sat, 14 Feb 2009 18:22:09 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1017</guid>
		<description>Deci clar nu au fost furate informatii confidentiale despre clienti. Litchfield stie ce vorbeste.

-

Kaspersky Lab’s specialists investigated the incident and hired an independent expert, Next Generation Security Software’s David Litchfield, to corroborate the results of the internal investigation, and to confirm that no data was leaked. Litchfield’s report was delivered to Kaspersky Lab on Thursday, February 12, 2009, and confirmed that no data had in fact been compromised from the site.

Litchfield’s report states the following:

“The usa.kaspersky.com website and database were successfully breached early on Saturday morning on the 7th of February. Kaspersky was deliberately targeted. The attacker, based in Romania, used Google to search for web servers owned by Kaspersky running applications that may be vulnerable to SQL injection. The attacker claims to have been able to access private customer information but has publicly stated that no data was compromised. The attacker&#039;s claim to be able to access customer data is correct and, as is apparent from the web server log files, the attacker did attempt to gain access to customer data however, the attempts failed. At no point was customer data accessed. On the Saturday, the attacker published the fact that the usa.kaspersky.com web site was vulnerable to SQL injection. This caused a number of other attackers from various locations to probe the site further. None of these followup attackers accessed any customer data either. On hearing of the threat, Kaspersky immediately took down the vulnerable web server, preventing further and deeper breaches.”</description>
		<content:encoded><![CDATA[<p>Deci clar nu au fost furate informatii confidentiale despre clienti. Litchfield stie ce vorbeste.</p>
<p>-</p>
<p>Kaspersky Lab’s specialists investigated the incident and hired an independent expert, Next Generation Security Software’s David Litchfield, to corroborate the results of the internal investigation, and to confirm that no data was leaked. Litchfield’s report was delivered to Kaspersky Lab on Thursday, February 12, 2009, and confirmed that no data had in fact been compromised from the site.</p>
<p>Litchfield’s report states the following:</p>
<p>“The usa.kaspersky.com website and database were successfully breached early on Saturday morning on the 7th of February. Kaspersky was deliberately targeted. The attacker, based in Romania, used Google to search for web servers owned by Kaspersky running applications that may be vulnerable to SQL injection. The attacker claims to have been able to access private customer information but has publicly stated that no data was compromised. The attacker&#8217;s claim to be able to access customer data is correct and, as is apparent from the web server log files, the attacker did attempt to gain access to customer data however, the attempts failed. At no point was customer data accessed. On the Saturday, the attacker published the fact that the usa.kaspersky.com web site was vulnerable to SQL injection. This caused a number of other attackers from various locations to probe the site further. None of these followup attackers accessed any customer data either. On hearing of the threat, Kaspersky immediately took down the vulnerable web server, preventing further and deeper breaches.”</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: whatever</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1015</link>
		<dc:creator>whatever</dc:creator>
		<pubDate>Sat, 14 Feb 2009 17:19:25 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1015</guid>
		<description>Au trecut de mult timpurile cand hackerii erau angajati de cei care erau sparti.</description>
		<content:encoded><![CDATA[<p>Au trecut de mult timpurile cand hackerii erau angajati de cei care erau sparti.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: B7ackAnge7z</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1011</link>
		<dc:creator>B7ackAnge7z</dc:creator>
		<pubDate>Sat, 14 Feb 2009 11:59:52 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1011</guid>
		<description>2 Whatever ::
Stii?! Pe forumuri, bloguri si chaturi din Russia se spune cam asa: &quot;...Лаборатории Касперского имеет смысл отыскать этого хакера и принять его на работу...&quot;

Adica, in traducere suna cam asa:&quot;... Laboratorul Kasperky ar face foarte bine sa sa prinda acel hacker... si sa-l angajeze la lucru...&quot;

Chiar si cei de la Kaspersky spun:&quot;...a fost o lectie de care trebuie sa tinem cont...&quot;

Doar ca ei spun ca hakerul nu obtinut nici un byte de informatie confidentiala, interesant de ce? :)</description>
		<content:encoded><![CDATA[<p>2 Whatever ::<br />
Stii?! Pe forumuri, bloguri si chaturi din Russia se spune cam asa: &#8220;&#8230;Лаборатории Касперского имеет смысл отыскать этого хакера и принять его на работу&#8230;&#8221;</p>
<p>Adica, in traducere suna cam asa:&#8221;&#8230; Laboratorul Kasperky ar face foarte bine sa sa prinda acel hacker&#8230; si sa-l angajeze la lucru&#8230;&#8221;</p>
<p>Chiar si cei de la Kaspersky spun:&#8221;&#8230;a fost o lectie de care trebuie sa tinem cont&#8230;&#8221;</p>
<p>Doar ca ei spun ca hakerul nu obtinut nici un byte de informatie confidentiala, interesant de ce? <img src='http://blog.rstcenter.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Foreverlost</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1010</link>
		<dc:creator>Foreverlost</dc:creator>
		<pubDate>Sat, 14 Feb 2009 11:43:56 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1010</guid>
		<description>@Alex:Asa e Foreverlost. Am avut si eu de a face cu astfel de programatori. Saracii de ei… dar mai ‘Saracii’ de cei ce ii angajeaza sa presteze servicii pentru ei :))
Nu lor sa le plangi de mila ci celor care utilizeaza site-ul.</description>
		<content:encoded><![CDATA[<p>@Alex:Asa e Foreverlost. Am avut si eu de a face cu astfel de programatori. Saracii de ei… dar mai ‘Saracii’ de cei ce ii angajeaza sa presteze servicii pentru ei <img src='http://blog.rstcenter.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> )<br />
Nu lor sa le plangi de mila ci celor care utilizeaza site-ul.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Whatever</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1008</link>
		<dc:creator>Whatever</dc:creator>
		<pubDate>Sat, 14 Feb 2009 11:06:37 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1008</guid>
		<description>Din cauza kiddie-lor ca si tine, Claudel au romanii renume asa prost in afara. Nu ai nimic concret de spus, habar nu ai ce vorbesti dar totusi te bagi in seama.

Ziceai de chestii de pe .gov si alte faze din astea. Poti ai din astea atata timp cat nu citeste nimeni blogul. Cand devii popular oamenii incep sa fie mai atenti la ceea ce faci.</description>
		<content:encoded><![CDATA[<p>Din cauza kiddie-lor ca si tine, Claudel au romanii renume asa prost in afara. Nu ai nimic concret de spus, habar nu ai ce vorbesti dar totusi te bagi in seama.</p>
<p>Ziceai de chestii de pe .gov si alte faze din astea. Poti ai din astea atata timp cat nu citeste nimeni blogul. Cand devii popular oamenii incep sa fie mai atenti la ceea ce faci.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Claudel</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1003</link>
		<dc:creator>Claudel</dc:creator>
		<pubDate>Sat, 14 Feb 2009 04:45:38 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1003</guid>
		<description>ceea ce nu inteleg eu, defapt e ca tu porti de grija altora, si-ti dai cu parerea cam cand s-ar plictisi ei si alte kkturi de 3 lei dinastea care pur si simplu nu-si au rostul, daca iti face placere citesti, daca nu, nu si cu asta basta</description>
		<content:encoded><![CDATA[<p>ceea ce nu inteleg eu, defapt e ca tu porti de grija altora, si-ti dai cu parerea cam cand s-ar plictisi ei si alte kkturi de 3 lei dinastea care pur si simplu nu-si au rostul, daca iti face placere citesti, daca nu, nu si cu asta basta</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Claudel</title>
		<link>http://blog.rstcenter.com/2009/02/13/muncaro-poarta-deschisa-catre-baza-de-date/comment-page-1/#comment-1002</link>
		<dc:creator>Claudel</dc:creator>
		<pubDate>Sat, 14 Feb 2009 04:45:06 +0000</pubDate>
		<guid isPermaLink="false">http://hackersblog.org/?p=1259#comment-1002</guid>
		<description>Stiu foarte bine care e diferenta intre hacker/cracker, lucrez in domeniu de vreo 10 ani (pentesting).

stii sa scrii mult prost si mai ales fara rost, atat.
exista site-uri de acest gen de cel putin 10 ani, care fac exact aceleasi lucruri daca nu chiar mai mult, si stai lejer ca totul e perfect legal, altfel nu ar fi stat 10 ani in picioare asa ca mai informeaza-te inainte sa arunci cu sume la misto. de curizitate vezi ca sunt 2a dburi de exploituri pe .gov si un FD pe .edu perfect listate, daca nu stiai.</description>
		<content:encoded><![CDATA[<p>Stiu foarte bine care e diferenta intre hacker/cracker, lucrez in domeniu de vreo 10 ani (pentesting).</p>
<p>stii sa scrii mult prost si mai ales fara rost, atat.<br />
exista site-uri de acest gen de cel putin 10 ani, care fac exact aceleasi lucruri daca nu chiar mai mult, si stai lejer ca totul e perfect legal, altfel nu ar fi stat 10 ani in picioare asa ca mai informeaza-te inainte sa arunci cu sume la misto. de curizitate vezi ca sunt 2a dburi de exploituri pe .gov si un FD pe .edu perfect listate, daca nu stiai.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

