<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NetworkingReviews.com &#187; Information Security</title>
	<atom:link href="http://www.networkingreviews.com/category/information-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.networkingreviews.com</link>
	<description>The Information Source for Home Networks, TCP/IP, and Security</description>
	<lastBuildDate>Sun, 18 Jul 2010 19:31:41 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Trojans steal FTP Login passwords for websites</title>
		<link>http://www.networkingreviews.com/2010/03/21/trojans-steal-ftp-login-passwords-for-websites/</link>
		<comments>http://www.networkingreviews.com/2010/03/21/trojans-steal-ftp-login-passwords-for-websites/#comments</comments>
		<pubDate>Sun, 21 Mar 2010 16:47:15 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/?p=1147</guid>
		<description><![CDATA[From hakin9.org
Jacques Erasmus, CTO at Prevx, an internet security vendor headquartered in the U.K., discovered a site where a trojan is uploading FTP login credentials from more than 74,000 websites. Among the affected FTP login data are major corporations including Bank of America, BBC, Amazon, Symantec and McAfee. The trojan, a variant of Zbot, main [...]]]></description>
			<content:encoded><![CDATA[<p>From hakin9.org</p>
<p>Jacques Erasmus, CTO at Prevx, an internet security vendor headquartered in the U.K., discovered a site where a trojan is uploading FTP login credentials from more than 74,000 websites. Among the affected FTP login data are major corporations including Bank of America, BBC, Amazon, Symantec and McAfee. The trojan, a variant of Zbot, main purpose is to harvest stored FTP login credentials to send them to servers located in China. According to Erasmus, the final purpose of this attack is to get access to websites source codes injecting evil Iframe that would spread the malware further. The Zbot trojan has been in use for some time to carry on different types of illegal and also remunerative activities: installing spyware and adwares and<br />
phishing emails mainly.</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2010/03/21/trojans-steal-ftp-login-passwords-for-websites/&#038;title=Trojans+steal+FTP+Login+passwords+for+websites&#038;text=From+hakin9.org+Jacques+Erasmus%2C+CTO+at+Prevx%2C+an+internet+security+vendor+headquartered+in+the+U.K.%2C+discovered+a+site+where+a+trojan+is+uploading+FTP+login+credentials+from+more+than+74%2C000...&#038;tags=" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2010/03/21/trojans-steal-ftp-login-passwords-for-websites/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Browsing Securely &#8211; Is it Possible?</title>
		<link>http://www.networkingreviews.com/2010/02/23/browsing-securely-is-it-possible/</link>
		<comments>http://www.networkingreviews.com/2010/02/23/browsing-securely-is-it-possible/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 06:56:13 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[anonymous browsing]]></category>
		<category><![CDATA[anonymous surfing]]></category>
		<category><![CDATA[browsing securely]]></category>
		<category><![CDATA[secure browsing]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/2010/02/23/browsing-securely-is-it-possible/</guid>
		<description><![CDATA[If you&#8217;ve ever felt like you&#8217;re being watched online, well it&#8217;s because you probably are. The desire for secure web browsing, is quite a common one. The ordinary person browsing the web is a target for virtually everyone. At the moment there are numerous pieces of legislation targeting the poor ISPs because they have a [...]]]></description>
			<content:encoded><![CDATA[<p>If you&#8217;ve ever felt like you&#8217;re being watched online, well it&#8217;s because you probably are. The desire for secure web browsing, is quite a common one. The ordinary person browsing the web is a target for virtually everyone.<span id="more-1081"></span> At the moment there are numerous pieces of legislation targeting the poor ISPs because they have a complete list of all our web browsing, emails, and anything you do online. Identity thieves also crave this information but they also have other methods of stealing your information online.</p>
<p>One of these methods involves using anonymous proxies, lots of people think that finding a free online anonymous proxy and surfing through that will make you secure. Well I&#8217;m afraid the opposite is generally the truth, many of these servers are run by identity thieves across the world, it&#8217;s an easy way to steal account names by having people send them directly to you.</p>
<p>So let me just clarify a couple of points and if you wish you can investigate further. From the moment you fire up your browser, your privacy is at risk.</p>
<p>1) When you type in a web address in your browser, it is instantly sent out in clear text. The first place it is logged is in your ISP where you&#8217;ll find the most complete list of someone&#8217;s online activity.</p>
<p>2) The web site you visit also logs your IP address before sending you the information.</p>
<p>3) The vast majority of all your internet traffic is vulnerable throughout their journey, remember it&#8217;s virtually all clear text.</p>
<p>So anyway if you&#8217;ve already found a free, fast proxy I suggest you be very careful about using it, find out who runs it and more importantly why are they funding the large bills for free!</p>
<p>Anyway the solution to <a  rel="nofollow" href="http://www.anonymous-proxies.org" target="_blank">proper anonymity</a> and protecting your data online can be summarised in one word &#8211; encryption. Without encryption anybody can get access to what you do online. A trusted secure proxy and full encryption is the only real option for protection.</p>
<p>You can achieve this in a variety of ways, if you have the technical knowledge you can do it yourself for a small cost. Check out the TOR and SSLTunnel projects for a start, combining these with your own proxy would be a very good start. There are some commercial options &#8211; though make sure you pick a professional service. Don&#8217;t end up using some badly set up VPN service, run by a teenager off a cheap shared web hosting plan.</p>
<p>Good luck in your search for privacy, if you&#8217;re interested here&#8217;s a free demo of the service I use,</p>
<p><a  rel="nofollow" href="http://www.ssl-proxies.com" target="_blank">demo here</a></p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2010/02/23/browsing-securely-is-it-possible/&#038;title=Browsing+Securely+%26%238211%3B+Is+it+Possible%3F&#038;text=If+you%26%238217%3Bve+ever+felt+like+you%26%238217%3Bre+being+watched+online%2C+well+it%26%238217%3Bs+because+you+probably+are.+The+desire+for+secure+web+browsing%2C+is+quite+a+common+one.&#038;tags=online" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2010/02/23/browsing-securely-is-it-possible/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Database Security Measures You Can Use</title>
		<link>http://www.networkingreviews.com/2009/12/31/database-security-measures-you-can-use/</link>
		<comments>http://www.networkingreviews.com/2009/12/31/database-security-measures-you-can-use/#comments</comments>
		<pubDate>Thu, 31 Dec 2009 19:01:12 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[computers]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[viruses]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/2009/12/31/database-security-measures-you-can-use/</guid>
		<description><![CDATA[It&#8217;s very easy for a hacker to get access to information from our computers. Email and the Internet are great tools for hackers to use to gain unauthorized access to some of our most important personal and financial information. There are things that you can do to protect your computer, and prevent harmful content from [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s very easy for a hacker to get access to information from our computers. Email and the Internet are great tools for hackers to use to gain unauthorized access to some of our most important personal and financial information. There are things that you can do to protect your computer, and prevent harmful content from being sent to your computer.<span id="more-866"></span></p>
</p>
<p>A great way of doing this is to keep the file password protected. This will only allows specific users to have access to the files and the database. It can keep people out of the information that you do not want them to see. You can also install various anti-virus and anti-spyware software on your computer. Fire walls are another excellent tool that you can use to prevent anyone getting access to your personal information.</p>
</p>
<p>There are always new updates and downloads available that you can get to keep your security software programs safe and protected. It is important to stay up to date with any of the new features that you can download to help improve the level of security. Using firewalls and by protecting your databases, you can be your databases safe. Fire walls can be used in software and in hardware and even both. They are usually used to help prevent unauthorized users from being able to access private information and networks that are connected to the Internet. Fire walls are commonly used in companies that are protecting the privacy of information being passed from one user to another, or through the Internet. Fire walls are set up to filter every message and communication that passes through the system.</p>
</p>
<p>If you have information that you need to keep protected and need to have security features intact for allowing only certain users to have access to view, change or delete files in your database security system, you need to have the right tools to defend your computer. If you are not sure if you have the right amount of security and protection to keep your entire information safe, you may want to verify that you have anti-virus software installed. Not only is it important to have anti-virus software installed on your computer, you also need to make sure that it is up to date and turned on for full security.</p>
</p>
<p>Security is a big concern for both corporations and small companies. More and more research and development is going into new ways to help keep computers protected and to keep everyone&#8217;s personal and financial information secure and prevent others from gaining access to the files.</p>
</p>
<p>Article created by <a  href="http://www.jakeruston.co.uk" target="_blank">Jake Ruston</a>.</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/12/31/database-security-measures-you-can-use/&#038;title=Database+Security+Measures+You+Can+Use&#038;text=It%26%238217%3Bs+very+easy+for+a+hacker+to+get+access+to+information+from+our+computers.+Email+and+the+Internet+are+great+tools+for+hackers+to+use+to+gain+unauthorized+access+to+some+of+our+most+important...&#038;tags=you+have%2C+your+computer%2C+that+you%2C+information%2C+access%2C+security%2C+computer%2C+software" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/12/31/database-security-measures-you-can-use/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ideas to Recover Lost Data</title>
		<link>http://www.networkingreviews.com/2009/10/14/ideas-to-recover-lost-data/</link>
		<comments>http://www.networkingreviews.com/2009/10/14/ideas-to-recover-lost-data/#comments</comments>
		<pubDate>Wed, 14 Oct 2009 17:13:02 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/2009/10/14/ideas-to-recover-lost-data/</guid>
		<description><![CDATA[Practically anyone who uses a computer, camera, cell phone or other electronic devices will at some point lose data. This can be caused by accidentally deleting files, acquiring a virus, or experiencing hardware or software breakdowns and malfunctions. When this occurs the first thing you will want to do is recover lost data from your computer or other device.]]></description>
			<content:encoded><![CDATA[<div style='font-style:italic' class='byline'>by Tab Pierce</div>
<p>Practically anyone who uses a computer, camera, cell phone or other electronic devices will at some point lose data. This can be caused by accidentally deleting files, acquiring a virus, or experiencing hardware or software breakdowns and malfunctions. When this occurs the first thing you will want to do is recover lost data from your computer or other device.</p>
<p>You need to realize when you first lose your photos, music, text documents or other types of data that this loss may be temporary and the information could very well still be available to access on your computer or other type of device. Recover lost data help is available. Data recovery software and data recovery specialists are the two main ways you can get the help you need to recover your lost data.</p>
<p>One thing you need to avoid doing when you lose data is to keep storing new information on your computer or other electronic device. This new data may end up overwriting the old information and make data recovery harder. Therefore it is very important to attempt to recover lost data as soon as you can.</p>
<p>When it comes to data recovery software, there are both paid and free versions available to help you recover lost data. The software is easy to require and you can download it from online. Once the software is installed on your computer or device it will attempt to recover your lost data.</p>
<p>If data was deleted by accident from a computer or electronic device, the data can probably be retrieved with data recovery software. However, if there was a more serious problem such as hard drive error you will probably need professional help. To recover lost data you can contact a computer repair service or data recovery specialist.</p>
<p>Another possible way you can lose data is from contracting a virus on your computer or electronic device. If this happens you may be able to use software to fix the problem. If this is not effective you will need to have your computer examined by an expert.</p>
<p>Some data loss problems are easy to solve. Many computer and electronic device users can just obtain software and fix the problem themselves. Other problems, however, are more serious and complex and may need a data recovery specialist to restore the data.</p>
<p>The main thing to keep in mind is to not panic and realize that there are solutions available to help when you lose data off your computer or other device. Research your options and work to solve the problem quickly in order to give yourself a better chance of recovering your information. There are recover lost data solutions available to you if you act quickly.</p>
<div class='resource'>
<div style='font-style:italic' class='about'>About the Author:</div>
<div class='links'>Tab is a security professional that enjoys writing on a variety of subjects. His objective is to provide individuals with ways to <a  href="http://recoverlostdataexplained.com/improve-your-chances-to-recover-lost-data/" rel="nofollow">manage data loss</a> as well as <a  href="http://recoverlostdataexplained.com/" rel="nofollow">educating in data loss prevention</a>.</div>
</div>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/10/14/ideas-to-recover-lost-data/&#038;title=Ideas+to+Recover+Lost+Data&#038;text=by+Tab+Pierce+Practically+anyone+who+uses+a+computer%2C+camera%2C+cell+phone+or+other+electronic+devices+will+at+some+point+lose+data.&#038;tags=your+computer%2C+data+recovery%2C+recover+lost%2C+computer%2C+recover%2C+device%2C+software%2C+recovery%2C+other" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/10/14/ideas-to-recover-lost-data/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>An overview of Web Applications and Web Servers security</title>
		<link>http://www.networkingreviews.com/2009/05/16/an-overview-of-web-applications-and-web-servers-security/</link>
		<comments>http://www.networkingreviews.com/2009/05/16/an-overview-of-web-applications-and-web-servers-security/#comments</comments>
		<pubDate>Sat, 16 May 2009 16:58:30 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[database security]]></category>
		<category><![CDATA[web server security]]></category>
		<category><![CDATA[website security]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/?p=548</guid>
		<description><![CDATA[Did you know that the vast majority of internet attacks nowadays are focused on web applications and web servers in general? Almost any business has an online presence with a website, e-commerce web application, web front with database at the back etc etc.
Hackers have found ways to infiltrate internal networks via those web applications that [...]]]></description>
			<content:encoded><![CDATA[<p>Did you know that the vast majority of internet attacks nowadays are focused on web applications and web servers in general? Almost any business has an online presence with a website, e-commerce web application, web front with database at the back etc etc.</p>
<p>Hackers have found ways to infiltrate internal networks via those web applications that most of the times are insecurely coded and are full of vulnerabilities. Attacks and exploits range from code injections, sql injection, cross site scripting (XSS) etc. Via those exploits, attackers can steal sensitive information from the databases on the back of the web-apps, or even manage to gain shell access on the database or web server itself. Gaining shell access allows the attacker to create a &#8220;pivot-point&#8221; from where he can execute further attacks to get deeper into the network.</p>
<p>The following are some important suggestions to follow for hardening your web applications:<br />
 </p>
<ol>
<li>First and most important is to adopt secure coding. Your software developers or the vendor from where you purchased the web application or whoever designed and coded your website, must have implemented security inside the code itself. Some examples include the filtering of input data in web forms (to block sql injections or XSS), the avoidance of buffer overflows, the avoidance of remote file injection and local file injection etc.</li>
<li>Don&#8217;t allow the web server to communicate with the database as an administrator user (sa).</li>
<li>Don&#8217;t run the webserver or the database server with administrator priviledges.</li>
<li>Configure engress firewall filtering in order to prohibit the database from communicating with the outside world.</li>
<li>Remove command execution (e.g xp_cmdshell) capability on the database.</li>
<li>And ofcourse harden all software and applications with latest patches.</li>
<li>Implement host intrusion detection and log monitoring.</li>
</ol>
<p> Those are some of the most important steps you need  to take to enhance the security of your web-apps and backend databases.</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/05/16/an-overview-of-web-applications-and-web-servers-security/&#038;title=An+overview+of+Web+Applications+and+Web+Servers+security&#038;text=Did+you+know+that+the+vast+majority+of+internet+attacks+nowadays+are+focused+on+web+applications+and+web+servers+in+general%3F&#038;tags=the+database%2C+database" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/05/16/an-overview-of-web-applications-and-web-servers-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Warning &#8211; You Have Been DataMined!</title>
		<link>http://www.networkingreviews.com/2009/05/05/warning-you-have-been-datamined/</link>
		<comments>http://www.networkingreviews.com/2009/05/05/warning-you-have-been-datamined/#comments</comments>
		<pubDate>Tue, 05 May 2009 02:34:50 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/2009/05/05/warning-you-have-been-datamined/</guid>
		<description><![CDATA[Datamining is here to stay and it&#8217;s reach is unyielding to all who exists in today&#8217;s society.
It affects hundreds of millions of us each day while we are blissfully unaware. 
Today&#8217;s high-tech world is drowning in data but is starved for knowledge. Data mining is the search for significant patterns and trends. It&#8217;s also been [...]]]></description>
			<content:encoded><![CDATA[<p>Datamining is here to stay and it&#8217;s reach is unyielding to all who exists in today&#8217;s society.</p>
<p>It affects hundreds of millions of us each day while we are blissfully unaware. </p>
<p>Today&#8217;s high-tech world is drowning in data but is starved for knowledge. Data mining is the search for significant patterns and trends. It&#8217;s also been called the poor stepchild to statistcial analysis.</p>
<p>By this point in time, you&#8217;ve probably heard a good deal about <a  href="http://www.squidoo.com/stopidtheft" target="_blank">internet security</a> &#8212; the database industry&#8217;s latest buzzword. What&#8217;s this trend all about? To use a simple analogy, it&#8217;s finding the proverbial needle in the haystack. In this case, the needle is that single piece of intelligence your business needs and the haystack is the large data warehouse you&#8217;ve built up over a long period of time. </p>
<p>To give you an example you go to your local supermarket to buy food and you use your store card for discounts and fast checkout. It give the store a record of how often you shop, what foods you like and at what prices in this case it&#8217;s a win-win situation. This continues thoughout your day as you bank go to the mall, gas station, and so on.</p>
<p>However information is increasingly collected without your knowledge or consent. &#8220;Black Boxes&#8221; the size of cigarette packs have been installed in 40 million vehicles to monitor speed, seat belt use, and more. Only 5 states at the present time require that the buyer be made aware of this fact.</p>
<p>The trade-off is somone has a record of when and where you drive,what you eat, what over the counter medications you buy,whether you smoke or not,where you fly and with whom, what you like to read and watch and spend money on.</p>
<p>Any one item is not invasive but when birth certificates, credit histories, real estate deeds, military records, and insurance claims are pulled together it paints a very intimate picture. Add to the mix that the average person is seen by surveillance cameras 75X a day.</p>
<p>In the past decade an explosion of technology has taken place and the insatiable appetite of marketers for <a  href="http://stopidtheft.blogspot.com" target="_blank">personal finance</a> information about consumers has made data collection less voluntary and more worrisome.</p>
<p>Data mining is big business. Companies vacuum up data from public and private records, aggravate it analyze it and sell it to buyers ranging from private companies to the CIA. If an error exists there is no knowledge on your part thus it can&#8217;t be fixed.</p>
<p>Data thefts are on the rise included are banks, credit card companies, and the biggest of the data brokers Choicepoint.</p>
<p>When their records were breach they left millions of people vulnerable to identity theft. </p>
<p>In closing technology is here to stay and we love convenience but we must be aware and remain vigilant. Also it&#8217;s time for Congress to step up and do their job to create a basic bill of rights for all information. This will provide us with much needed protection.</p>
<p>Read important suggestions to <a  href="http://www.freetrafficsystem.com" target="_blank">free website traffic</a> &#8211; this is your personal guide.</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/05/05/warning-you-have-been-datamined/&#038;title=Warning+%26%238211%3B+You+Have+Been+DataMined%21&#038;text=Datamining+is+here+to+stay+and+it%26%238217%3Bs+reach+is+unyielding+to+all+who+exists+in+today%26%238217%3Bs+society.+It+affects+hundreds+of+millions+of+us+each+day+while+we+are+blissfully+unaware.&#038;tags=and+the%2C+it%26%238217%3Bs" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/05/05/warning-you-have-been-datamined/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Protect your children on the Internet</title>
		<link>http://www.networkingreviews.com/2009/04/26/protect-your-children-on-the-internet/</link>
		<comments>http://www.networkingreviews.com/2009/04/26/protect-your-children-on-the-internet/#comments</comments>
		<pubDate>Sun, 26 Apr 2009 18:58:39 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Home Computer Security]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[internet child protection]]></category>
		<category><![CDATA[protect your children on internet]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/?p=517</guid>
		<description><![CDATA[Many parents ask how they can protect their children while they surf on the Internet. Recently a mother was worried that her children spend too much time on sites like Orkut, MySpace and Facebook. These concerns were not because of time loss from such activities but mainly because she didn&#8217;t know with whom the children [...]]]></description>
			<content:encoded><![CDATA[<p>Many parents ask how they can protect their children while they surf on the Internet. Recently a mother was worried that her children spend too much time on sites like Orkut, MySpace and Facebook. These concerns were not because of time loss from such activities but mainly because she didn&#8217;t know with whom the children were communicating in these social networks and whether the children were giving any personal information to unknown people. After several references on the press about the hazards hidden in the Internet social networks, the mother decided to block some sites on the children computer.</p>
<p>The only problem was that the mother was not aware of parental control software like Net Nanny or Norton Internet Security, which also cost some money. Before you decide to block some addresses (something that the children will be opposed), try a few other things:</p>
<p>First of all, educate your children and tell them about the dangers that exist when they share information with strangers. Family members should discuss the security and confidentiality of data in the web. You can place the computer in an area where you can easily check the screen to get an idea of what your children do and which sites they visit frequently. Furthermore, Orkut is a social network which means that one can easily see what friends your children have and what data is exchanged.</p>
<p>Finally, to block specific sites on your child&#8217;s computer with Windows without paying any money, follow the procedure below.</p>
<p>* Start &#8211; Run<br />
* Enter notepad c: \ windows \ system32 \ drivers \ etc \ hosts<br />
* Go to last line and add:</p>
<p>127.0.0.1 orkut.com<br />
127.0.0.1 facebook.com<br />
127.0.0.1 myspace.com</p>
<p>* Save the file and quit notepad</p>
<p>You can block any site you want with this technique. If you want later to unblock a certain site, simply remove the appropriate line with the same procedure. You should know however that usually your children are very smart and they will find out about the above technique sooner or later. So maybe a parental control software might be more appropriate.</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/04/26/protect-your-children-on-the-internet/&#038;title=Protect+your+children+on+the+Internet&#038;text=Many+parents+ask+how+they+can+protect+their+children+while+they+surf+on+the+Internet.+Recently+a+mother+was+worried+that+her+children+spend+too+much+time+on+sites+like+Orkut%2C+MySpace+and+Facebook.&#038;tags=you+can%2C+children" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/04/26/protect-your-children-on-the-internet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Adobe Reader and Acrobat JBIG2 Processing Multiple Vulnerabilities</title>
		<link>http://www.networkingreviews.com/2009/03/27/adobe-reader-and-acrobat-jbig2-processing-multiple-vulnerabilities/</link>
		<comments>http://www.networkingreviews.com/2009/03/27/adobe-reader-and-acrobat-jbig2-processing-multiple-vulnerabilities/#comments</comments>
		<pubDate>Fri, 27 Mar 2009 05:54:42 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Home Computer Security]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[adobe reader vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/?p=504</guid>
		<description><![CDATA[Description: 
Adobe Acrobat is a program designed to create, manage and view Portable Document Format (PDF) and Adobe Reader is designed to only view and print PDF&#8217;s. Both Adobe Acrobat and Reader have buffer overflow vulnerabilities while handling JBIG2 streams inside a PDF file. JBIG2 is an image encoding standard for encoding bi-level images. One [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Description: </strong><br />
Adobe Acrobat is a program designed to create, manage and view Portable Document Format (PDF) and Adobe Reader is designed to only view and print PDF&#8217;s. Both Adobe Acrobat and Reader have buffer overflow vulnerabilities while handling JBIG2 streams inside a PDF file. JBIG2 is an image encoding standard for encoding bi-level images. One of the flaws is due to a four byte value which represents the number of values in a table and is used to allocate a buffer. This value is taken from the file without adequate checking and a specially crafted PDF file can be used to overflow the buffer. The other flaw is due to a malformed JBIG2 symbol dictionary segment contained in a malicious PDF file. There are still some other unspecified errors in the processing of this JBIG2 streams. Potential vectors of attack are sending the malicious PDF document as an email attachment, or enticing the victim to visit the website that has malicious document &#8211; which can be achieved via iframes, or placing the document on a file share. In either case the attacker has to convince the victim to open the files. Successful exploitation can lead to code execution. Some technical details are publicly available.</p>
<p><strong>Affected:</strong>Adobe Acrobat Standard 8.1.3 and prior<br />
Adobe Acrobat Standard 7.0.8 and prior<br />
Adobe Acrobat Standard 9<br />
Adobe Acrobat Standard 8.1 and prior<br />
Adobe Acrobat Standard 7.1<br />
Adobe Acrobat Reader (UNIX) 7.0.1 and prior<br />
Adobe Acrobat Reader 8.1.3 and prior<br />
Adobe Acrobat Reader 7.0.9 and prior<br />
Adobe Acrobat Reader 9<br />
Adobe Acrobat Reader 8.1 and prior<br />
Adobe Acrobat Reader 7.1<br />
Adobe Acrobat Professional 8.1.3 and prior<br />
Adobe Acrobat Professional 7.0.9 and prior<br />
Adobe Acrobat Professional 9<br />
Adobe Acrobat Professional 8.1 and prior<br />
Adobe Acrobat Professional 7.1<br />
Adobe Acrobat 7.0.3 and prior</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/03/27/adobe-reader-and-acrobat-jbig2-processing-multiple-vulnerabilities/&#038;title=Adobe+Reader+and+Acrobat+JBIG2+Processing+Multiple+Vulnerabilities&#038;text=Description%3A++Adobe+Acrobat+is+a+program+designed+to+create%2C+manage+and+view+Portable+Document+Format+%28PDF%29+and+Adobe+Reader+is+designed+to+only+view+and+print+PDF%26%238217%3Bs.&#038;tags=adobe+acrobat%2C+and+prior%2C+adobe%2C+acrobat%2C+prior%2C+reader%2C+standard%2C+professional" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/03/27/adobe-reader-and-acrobat-jbig2-processing-multiple-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Buffer Overflow Vulnerability on Graphical Device Interface GDIPlus EMF</title>
		<link>http://www.networkingreviews.com/2009/03/27/microsoft-buffer-overflow-vulnerability-on-graphical-device-interface-gdiplus-emf/</link>
		<comments>http://www.networkingreviews.com/2009/03/27/microsoft-buffer-overflow-vulnerability-on-graphical-device-interface-gdiplus-emf/#comments</comments>
		<pubDate>Fri, 27 Mar 2009 05:41:37 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Home Computer Security]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[microsoft vulnerability gdi]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/?p=500</guid>
		<description><![CDATA[There is a Critical Microsoft vulnerability discovered these days affecting almost all windows versions:
Description:
Graphics Device Interface (GDI) is an application programming interface by Microsoft Windows. It&#8217;s a core operating system component responsible for representing graphical objects. Microsoft Windows GDI has integer overflow vulnerability in gdiplus.dll while processing Enhanced Metafile (EMF) files. Possible vectors to exploit [...]]]></description>
			<content:encoded><![CDATA[<p>There is a Critical Microsoft vulnerability discovered these days affecting almost all windows versions:</p>
<p><strong>Description:</strong></p>
<p>Graphics Device Interface (GDI) is an application programming interface by Microsoft Windows. It&#8217;s a core operating system component responsible for representing graphical objects. Microsoft Windows GDI has integer overflow vulnerability in gdiplus.dll while processing Enhanced Metafile (EMF) files. Possible vectors to exploit the flaw are: (a) Create a webpage containing a malicious WMF or EMF image file, and entice an attacker to visit his webpage. (b) Send an email with a specially crafted EMF image file attachment and convincing the user to view it or (c) embedding the malicious image file in an Office document and convincing the user to open it. Successful exploitation might lead to code execution or denial-of-service. Technical details about the vulnerability are publicly available.</p>
<p><strong>Affected versions:</strong></p>
<p>Microsoft Windows XP Professional SP2<br />
Microsoft Windows XP Professional SP1<br />
Microsoft Windows XP Professional<br />
Microsoft Windows XP Media Center Edition SP2<br />
Microsoft Windows XP Media Center Edition SP1<br />
Microsoft Windows XP Media Center Edition<br />
Microsoft Windows XP Home SP2<br />
Microsoft Windows XP Home SP1<br />
Microsoft Windows XP Home<br />
Microsoft Windows XP Gold 0<br />
Microsoft Windows XP 0<br />
Microsoft Office XP SP2 and prior</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/03/27/microsoft-buffer-overflow-vulnerability-on-graphical-device-interface-gdiplus-emf/&#038;title=Microsoft+Buffer+Overflow+Vulnerability+on+Graphical+Device+Interface+GDIPlus+EMF&#038;text=There+is+a+Critical+Microsoft+vulnerability+discovered+these+days+affecting+almost+all+windows+versions%3A+Description%3A+Graphics+Device+Interface+%28GDI%29+is+an+application+programming+interface+by...&#038;tags=microsoft+windows%2C+media+center%2C+microsoft%2C+windows" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/03/27/microsoft-buffer-overflow-vulnerability-on-graphical-device-interface-gdiplus-emf/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Data security on the internet &#8211; DES and RSA Encryption</title>
		<link>http://www.networkingreviews.com/2009/02/11/data-security-on-the-internet-des-and-rsa-encryption/</link>
		<comments>http://www.networkingreviews.com/2009/02/11/data-security-on-the-internet-des-and-rsa-encryption/#comments</comments>
		<pubDate>Wed, 11 Feb 2009 16:11:06 +0000</pubDate>
		<dc:creator>BlogAdmin</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[data encryption]]></category>
		<category><![CDATA[data security]]></category>
		<category><![CDATA[des. rsa]]></category>

		<guid isPermaLink="false">http://www.networkingreviews.com/?p=464</guid>
		<description><![CDATA[Have you ever wondered what happens when sending personal data via the Internet (eg via e-mail)? When you send your message, this becomes accessible from multiple computers, and a third person could take it and read. Imagine now if the government or military messages could be read by prospective Hackers what would happen. There should [...]]]></description>
			<content:encoded><![CDATA[<p>Have you ever wondered what happens when sending personal data via the Internet (eg via e-mail)? When you send your message, this becomes accessible from multiple computers, and a third person could take it and read. Imagine now if the government or military messages could be read by prospective Hackers what would happen. There should be therefore some kind of protection for sending and receiving messages. And of course this is how things are. There are two types of encryption, symmetric and asymmetric cryptography. Both types use two keys by which encryption and decryption of messages is achieved.</p>
<p>In symmetric cryptography, the same encryption key is used for encoding and decoding of a message. Therefore the key must be known to both the sender and the recipient. However, this requires a secure means for transmission and the only way to achieve this is to have a private meeting of the sender and the recipient where it is agreed what key will be used. If this is not feasible, symmetric cryptography is not recommended. A well known <strong>symmetric encryption algorithm is the Data Encryption Standard (DES or 3DES)</strong>, which was developed by IBM and then adopted in 1977 by the U.S. Government as the standard encryption algorithm for important information. </p>
<p>On the other hand, in asymmetric cryptography two keys are used, one for encryption and another for decryption. Lets look at this case with an example using <strong>RSA asymmetric cryptography</strong>. Assume one party wants to accept a message from another party. Then from the side of the receiver, two keys are generated, a public and a private key, which uniquely correlate with each other. (ie for each private key there is only one public key). The receiver gives the sender the public key (which can be seen by anyone). Then the sender encrypts the message with this key and sends it to the recipient. During transport, the message can be seen by anyone but it can not be decrypted (at least regarding the RSA algorithm for which we discuss below). When the receiver gets the encrypted message, he can decrypt the message with his private key.</p>
<p>You must be asking now how this happens, that is, how an encrypted message created by the public key can not be deciphered with the same key that was created. This is the «magic» of mathematics in which there is not always a reverse process, or if there is, it can not be achieved by mathematical analytical methods. As we said before there is a correlation between public and private key. If you found this correlation then you can brake the encryption.</p>
<p>The RSA encryption method was proposed in 1977 by leading mathematicians Rivest, Shamir and Adleman, from where it took its name. The philosophy of this algorithm is what mentioned above and its security strength is based on the complexity of numbers. We will not mention how it operates exactly but we will give a very simple example to understand why its such a safe encryption method.</p>
<p>Assume you are given a number, 133. Can you find two numbers (except 1 and the same number), which when multiplied will give us 133? An analytical formula certainly does not exist (at least not for all the numbers), ie there is no formula to accept as input number 133 or 1,3,3 or any other relevant number and output a result. The only way to find these numbers is by trial and error, i.e to begin with numbers 2,3,4 &#8230; until we find exactly what divides 133 (to be precise we should look at numbers 2, 3, 5, 7, 11, 13, 17, 19, 23, 29, 31, 37, 41 ..- prime numbers). After testing you will find that 7 divides exactly 133: 133 / 7 = 19, so the solution is the pair (7, 19).</p>
<p>Imagine now the number is not just 3 digits, like 133, &#8230; but 1000 digits! The time needed to find two numbers that when multiplied will give this 1000 digit number will increase dramatically. The RSA method is based on the inability of a system to analyze any such large numbers at a reasonable time.</p>
<p>As you will understand the higher the figure the more time you need to analyze this number to two factors (which are prime numbers). If one could calculate such numbers in a short time (and not a few years!), you could find the private key through the public key in order to decode the encrypted messages.</p>
<br/><a  href="http://www.socialmarker.com/?link=http://www.networkingreviews.com/2009/02/11/data-security-on-the-internet-des-and-rsa-encryption/&#038;title=Data+security+on+the+internet+%26%238211%3B+DES+and+RSA+Encryption&#038;text=Have+you+ever+wondered+what+happens+when+sending+personal+data+via+the+Internet+%28eg+via+e-mail%29%3F+When+you+send+your+message%2C+this+becomes+accessible+from+multiple+computers%2C+and+a+third+person+could...&#038;tags=private+key%2C+public+key%2C+and+the%2C+two+keys%2C+numbers%2C+encryption%2C+message%2C+which%2C+number%2C+there" target="_blank" rel="nofollow"><img src= "http://www.socialmarker.com/bookmark.gif" border="0" /></a><noscript><a  href="http://www.socialmarker.com" rel="nofollow">Social Bookmarking</a></noscript>]]></content:encoded>
			<wfw:commentRss>http://www.networkingreviews.com/2009/02/11/data-security-on-the-internet-des-and-rsa-encryption/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
