<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Nenad Vijatov &#187; Security</title>
	<atom:link href="http://blog.vijatov.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.vijatov.com</link>
	<description>xor %ecx,%ecx</description>
	<lastBuildDate>Thu, 05 Aug 2010 23:14:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Ubuntu Pentest Edition</title>
		<link>http://blog.vijatov.com/2010/01/15/ubuntu-pentest-edition/</link>
		<comments>http://blog.vijatov.com/2010/01/15/ubuntu-pentest-edition/#comments</comments>
		<pubDate>Fri, 15 Jan 2010 11:41:00 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Pentest]]></category>
		<category><![CDATA[Ubuntu]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=116</guid>
		<description><![CDATA[netinfinity release Ubuntu Pentest Edition &#8230; &#8220;Ubuntu pentest edition is primarily designed as a complete system (everyday usage &#8211; office, internet etc..) and can be used in pentesting purposes, which is a big advantage because you do not need to have a dual boot or use a virtual machine to run the system for pentest.&#8221; [...]]]></description>
			<content:encoded><![CDATA[<p>netinfinity release Ubuntu Pentest Edition &#8230;<br />
&#8220;Ubuntu pentest edition is primarily designed as a complete system (everyday usage &#8211; office, internet etc..) and can be used in pentesting purposes, which is a big advantage because you do not need to have a dual boot or use a virtual machine to run the system for pentest.&#8221;<br />
Try it &#8230; <a href="http://www.netinfinity.org/download/">link</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2010/01/15/ubuntu-pentest-edition/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Researcher Acknowledgments for Microsoft Online Services</title>
		<link>http://blog.vijatov.com/2009/09/01/security-researcher-acknowledgments-for-microsoft-online-services-4/</link>
		<comments>http://blog.vijatov.com/2009/09/01/security-researcher-acknowledgments-for-microsoft-online-services-4/#comments</comments>
		<pubDate>Tue, 01 Sep 2009 06:40:32 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Nenad Vijatov]]></category>
		<category><![CDATA[Researcher Acknowledgment]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=106</guid>
		<description><![CDATA[&#8230; for July and August. Thanks to Microsoft Security Response Center.]]></description>
			<content:encoded><![CDATA[<p>&#8230; for July and August.<br />
Thanks to <a href="http://blogs.technet.com/msrc/">Microsoft Security Response Center</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/09/01/security-researcher-acknowledgments-for-microsoft-online-services-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Researcher Acknowledgment</title>
		<link>http://blog.vijatov.com/2009/07/16/security-researcher-acknowledgment/</link>
		<comments>http://blog.vijatov.com/2009/07/16/security-researcher-acknowledgment/#comments</comments>
		<pubDate>Thu, 16 Jul 2009 13:18:23 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Nenad Vijatov]]></category>
		<category><![CDATA[Researcher Acknowledgment]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=104</guid>
		<description><![CDATA[&#8230; for June 2009. http://technet.microsoft.com/en-us/security/cc308589.aspx]]></description>
			<content:encoded><![CDATA[<p>&#8230; for June 2009.</p>
<p><a href="http://technet.microsoft.com/en-us/security/cc308589.aspx">http://technet.microsoft.com/en-us/security/cc308589.aspx</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/07/16/security-researcher-acknowledgment/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Researcher Acknowledgments for Microsoft Online Services</title>
		<link>http://blog.vijatov.com/2009/06/04/security-researcher-acknowledgments-for-microsoft-online-services-3/</link>
		<comments>http://blog.vijatov.com/2009/06/04/security-researcher-acknowledgments-for-microsoft-online-services-3/#comments</comments>
		<pubDate>Thu, 04 Jun 2009 07:38:50 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Nenad Vijatov]]></category>
		<category><![CDATA[Researcher Acknowledgment]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=97</guid>
		<description><![CDATA[I got Acknowledgment for Security Researcher fourth time this year &#8230; Great me!]]></description>
			<content:encoded><![CDATA[<p>I got Acknowledgment for Security Researcher fourth time this year &#8230; Great me! <img src='http://blog.vijatov.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/06/04/security-researcher-acknowledgments-for-microsoft-online-services-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Researcher Acknowledgments for Microsoft Online Services</title>
		<link>http://blog.vijatov.com/2009/04/06/security-researcher-acknowledgments-for-microsoft-online-services-2/</link>
		<comments>http://blog.vijatov.com/2009/04/06/security-researcher-acknowledgments-for-microsoft-online-services-2/#comments</comments>
		<pubDate>Mon, 06 Apr 2009 11:20:59 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Nenad Vijatov]]></category>
		<category><![CDATA[Researcher Acknowledgment]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=66</guid>
		<description><![CDATA[Third time in a row &#8230; http://technet.microsoft.com/en-us/security/cc308589.aspx]]></description>
			<content:encoded><![CDATA[<p>Third time in a row &#8230;<br />
<a href="http://technet.microsoft.com/en-us/security/cc308589.aspx" target="_blank">http://technet.microsoft.com/en-us/security/cc308589.aspx</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/04/06/security-researcher-acknowledgments-for-microsoft-online-services-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Pwn2Own 2009</title>
		<link>http://blog.vijatov.com/2009/03/22/pwn2own-2009/</link>
		<comments>http://blog.vijatov.com/2009/03/22/pwn2own-2009/#comments</comments>
		<pubDate>Sat, 21 Mar 2009 23:11:07 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=62</guid>
		<description><![CDATA[This years Pwn2Own uncover 4 new never seen before critical vulnerabilities affecting the IE8, Safari and FireFox. More about this contest you can read at DVLabs Blog.]]></description>
			<content:encoded><![CDATA[<p>This years <a href="http://cansecwest.com/post/2009-03-18-01:00:00.PWN2OWN_Final_Rules" target="_blank">Pwn2Own</a> uncover 4 new never seen before critical vulnerabilities affecting the IE8, Safari and FireFox.<br />
More about this contest you can read at <a href="http://dvlabs.tippingpoint.com/blog" target="_blank">DVLabs Blog</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/03/22/pwn2own-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Analysis of Conficker</title>
		<link>http://blog.vijatov.com/2009/03/10/analysis-of-conficker/</link>
		<comments>http://blog.vijatov.com/2009/03/10/analysis-of-conficker/#comments</comments>
		<pubDate>Tue, 10 Mar 2009 12:02:45 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Conficker]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=60</guid>
		<description><![CDATA[Guys from the SRI International were made really good analysis on the currently most active Virus/Worm, Conficker, also known as Downup, Downadup and Kido. Analysis can be found at http://mtc.sri.com/Conficker/.]]></description>
			<content:encoded><![CDATA[<p>Guys from the <a href="http://www.sri.com/" target="_blank">SRI International</a> were made really good analysis on the currently most active Virus/Worm, <a href="http://en.wikipedia.org/wiki/Conficker" target="_blank">Conficker</a>, also known as Downup, Downadup and Kido.</p>
<p>Analysis can be found at <a href="http://mtc.sri.com/Conficker/" target="_blank">http://mtc.sri.com/Conficker/</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/03/10/analysis-of-conficker/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Researcher Acknowledgment &#8211; second time in a row</title>
		<link>http://blog.vijatov.com/2009/03/06/security-researcher-acknowledgment-second-time-in-a-row/</link>
		<comments>http://blog.vijatov.com/2009/03/06/security-researcher-acknowledgment-second-time-in-a-row/#comments</comments>
		<pubDate>Fri, 06 Mar 2009 14:16:57 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Nenad Vijatov]]></category>
		<category><![CDATA[Researcher Acknowledgment]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=58</guid>
		<description><![CDATA[&#8230; and now I am very proud of myself because my name is the second time in a row appear on this page Security Researcher Acknowledgments for Microsoft Online Services. Hope to see you soon again!]]></description>
			<content:encoded><![CDATA[<p>&#8230; and now I am very proud of myself because my name is the second time in a row appear on this page <a href="http://technet.microsoft.com/en-us/security/cc308589.aspx" target="_blank">Security Researcher Acknowledgments for Microsoft Online Services</a>. Hope to see you soon again!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/03/06/security-researcher-acknowledgment-second-time-in-a-row/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Researcher Acknowledgments for Microsoft Online Services</title>
		<link>http://blog.vijatov.com/2009/02/10/security-researcher-acknowledgments-for-microsoft-online-services/</link>
		<comments>http://blog.vijatov.com/2009/02/10/security-researcher-acknowledgments-for-microsoft-online-services/#comments</comments>
		<pubDate>Tue, 10 Feb 2009 08:05:58 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Nenad Vijatov]]></category>
		<category><![CDATA[Researcher Acknowledgment]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.vijatov.com/?p=53</guid>
		<description><![CDATA[I am very proud to inform you that I&#8217;m on Security Researcher Acknowledgments for Microsoft Online Services for January 2009. I will continue my research in hope that i will be on this prestigious list again!]]></description>
			<content:encoded><![CDATA[<p>I am very proud to inform you that I&#8217;m on <a href="http://technet.microsoft.com/en-us/security/cc308589.aspx" target="_blank">Security Researcher Acknowledgments for Microsoft Online Services</a> for January 2009.<br />
I will continue my research in hope that i will be on this prestigious list again!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2009/02/10/security-researcher-acknowledgments-for-microsoft-online-services/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Password protect single user mode</title>
		<link>http://blog.vijatov.com/2008/02/25/9/</link>
		<comments>http://blog.vijatov.com/2008/02/25/9/#comments</comments>
		<pubDate>Mon, 25 Feb 2008 13:59:00 +0000</pubDate>
		<dc:creator>Nenad Vijatov</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Single user mode]]></category>

		<guid isPermaLink="false">http://vijatov.com/blog/?p=9</guid>
		<description><![CDATA[You forget your root password and get locked out of your own box. What do you do? Typically, you would reboot into single user mode and change the password there. When booting into single user mode you will not be prompted for the root password. This is something every attacker knows and prays on once [...]]]></description>
			<content:encoded><![CDATA[<p>You forget your root password and get locked out of your own box. What do you do? Typically, you would reboot into single user mode and change the password there.</p>
<p>When booting into single user mode you will not be prompted for the root password. This is something every attacker knows and prays on once he has gained physical access to you box. So what do you do?<br />
Firstly, a good sys admin knows not to forget the root password. Login in as root is never a good idea so using sudo is always advised.<br />
This still leaves the single user mode vulnerable, to secure it you will have to append the following line “su:S:wait:/sbin/sulogin” to your “/etc/inittab” file.<br />
Now, every time you boot into single user mode you will be prompted for the root password.</p>
<p># password protect single user mode<br />
su:S:wait:/sbin/sulogin</p>
<p>PS: Always remember you password, if you can’t then write in down in a safe place.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.vijatov.com/2008/02/25/9/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
