<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Unu Gets Kaspersky (again)</title>
	<atom:link href="http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/feed/" rel="self" type="application/rss+xml" />
	<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/</link>
	<description>Information security, a little slower...a little deeper</description>
	<lastBuildDate>Tue, 07 Feb 2012 08:17:21 -0500</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Praetorian Prefect &#124; Intel Breach Reveals Passport Information</title>
		<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/comment-page-1/#comment-4596</link>
		<dc:creator>Praetorian Prefect &#124; Intel Breach Reveals Passport Information</dc:creator>
		<pubDate>Wed, 23 Dec 2009 05:05:59 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=2180#comment-4596</guid>
		<description>&lt;p&gt;[...] largely discloses SQL injection web application vulnerabilities on major sites including recently two Kaspersky international properties and a Wall Street Journal conference site has demonstrated an attack on an Intel web property, [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] largely discloses SQL injection web application vulnerabilities on major sites including recently two Kaspersky international properties and a Wall Street Journal conference site has demonstrated an attack on an Intel web property, [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Arron M Finnon - Finux Blog</title>
		<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/comment-page-1/#comment-4572</link>
		<dc:creator>Arron M Finnon - Finux Blog</dc:creator>
		<pubDate>Tue, 22 Dec 2009 13:32:10 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=2180#comment-4572</guid>
		<description>&lt;p&gt;[...] be encouraged to follow an online &quot;Green Cross Code&quot; and block and report inappropriate content. http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/  Unu, a Romanian hacker (one who may enjoy the challenge of breaking into other computers but does [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] be encouraged to follow an online &quot;Green Cross Code&quot; and block and report inappropriate content. <a href="http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/" rel="nofollow">http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/</a>  Unu, a Romanian hacker (one who may enjoy the challenge of breaking into other computers but does [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Prefect</title>
		<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/comment-page-1/#comment-4534</link>
		<dc:creator>Prefect</dc:creator>
		<pubDate>Sun, 20 Dec 2009 23:22:58 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=2180#comment-4534</guid>
		<description>&lt;p&gt;Don&#039;t fully understand your comments, feel like we&#039;re being insulted somewhere, but you don&#039;t do an effective enough job of it for us to get it. We’ll try to pretend to be bright for a minute and figure it out.&lt;/p&gt;

&lt;p&gt;Above is a blog post that states the facts of and a how to on a Kaspersky SQL injection. No comment is made on the sophistication or lack thereof of the attack either way. If you don&#039;t think it’s special (it is not a new or novel attack method) then you don&#039;t have to read about it. Sometimes it is not the attack, but the target, that makes something worth looking at. Others, a portion of the audience we try to reach, are not all that familiar with the mechanisms of these attacks. It doesn&#039;t mean they are not smart folks, just that they are specialists elsewhere who want a concise description of what happened, why, and from a technical perspective how. Still others fully understand web application attacks like SQL injection, but want a decent summary of exactly what happened in this particular case.&lt;/p&gt;

&lt;p&gt;Frankly, listening to people on any side of the information security equation talking about their skillz or how elite they are is an irritant. We can assure you from enough years of experience that in any area of specialization there are those you are better than and those that are better than you. If more are worse than are better, you’re probably an interesting person to talk to.&lt;/p&gt;

&lt;p&gt;We mention Litchfield twice, first in reference to the fact that he was hired to determine the scope of the database access when Kaspersky USA was hit earlier in the year. The second time we joke about him being on a plane to do the same thing again. At no time do we discuss whether he is uber or not (his books and contributions are pretty good though in our opinion, if you’re asking). We do know what Unu and others are driving at mentioned him in their posts, we didn’t miss the sarcasm, but choose to carry none of that forward in our post. Because at the end of the day David was hired to do an audit of a database, probably did it to a reasonable level of quality, and has no going forward responsibility for the web application security of Kaspersky web sites.&lt;/p&gt;

&lt;p&gt;Full disclosure is a bitch? It can be, but that’s a well worn topic worthy of its own blog post and debate. Frankly much of what constitutes the responsible disclosure debate is nonsense in our opinion, but another time and another place.&lt;/p&gt;

&lt;p&gt;And somewhere in there you seem to be irritated by the phenomenon of foreign hackers finding problems with the web sites of brand name companies, and with the editorializing done alongside it in the blog posts. That&#039;s a fair point, an opinion others clearly share from the comments made on those other blogs, but would seem unrelated to how bright we are?&lt;/p&gt;

&lt;p&gt;Unless you are making a point that we are inflating what&#039;s happening by doing a blog post about it. To that we respond that&#039;s it is our blog, we&#039;re not paid to do it, and thus we&#039;ll write about what interests us. We&#039;re not the media (ostensibly media get paid for writing), so we do not owe anyone anything. It interests us in this case that a security company had a problem like this, dealt with it by basically saying it will never happen again, and then seeing how they react when it does happen again. This casts no dispersions on Kaspersky, a company of experts, because web vulnerabilities are very common. But it is commentary and observation on the handling of this specific situation.&lt;/p&gt;

&lt;p&gt;Congratulations on your mastery of anonymous proxies.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Don&#8217;t fully understand your comments, feel like we&#8217;re being insulted somewhere, but you don&#8217;t do an effective enough job of it for us to get it. We’ll try to pretend to be bright for a minute and figure it out.</p>

<p>Above is a blog post that states the facts of and a how to on a Kaspersky SQL injection. No comment is made on the sophistication or lack thereof of the attack either way. If you don&#8217;t think it’s special (it is not a new or novel attack method) then you don&#8217;t have to read about it. Sometimes it is not the attack, but the target, that makes something worth looking at. Others, a portion of the audience we try to reach, are not all that familiar with the mechanisms of these attacks. It doesn&#8217;t mean they are not smart folks, just that they are specialists elsewhere who want a concise description of what happened, why, and from a technical perspective how. Still others fully understand web application attacks like SQL injection, but want a decent summary of exactly what happened in this particular case.</p>

<p>Frankly, listening to people on any side of the information security equation talking about their skillz or how elite they are is an irritant. We can assure you from enough years of experience that in any area of specialization there are those you are better than and those that are better than you. If more are worse than are better, you’re probably an interesting person to talk to.</p>

<p>We mention Litchfield twice, first in reference to the fact that he was hired to determine the scope of the database access when Kaspersky USA was hit earlier in the year. The second time we joke about him being on a plane to do the same thing again. At no time do we discuss whether he is uber or not (his books and contributions are pretty good though in our opinion, if you’re asking). We do know what Unu and others are driving at mentioned him in their posts, we didn’t miss the sarcasm, but choose to carry none of that forward in our post. Because at the end of the day David was hired to do an audit of a database, probably did it to a reasonable level of quality, and has no going forward responsibility for the web application security of Kaspersky web sites.</p>

<p>Full disclosure is a bitch? It can be, but that’s a well worn topic worthy of its own blog post and debate. Frankly much of what constitutes the responsible disclosure debate is nonsense in our opinion, but another time and another place.</p>

<p>And somewhere in there you seem to be irritated by the phenomenon of foreign hackers finding problems with the web sites of brand name companies, and with the editorializing done alongside it in the blog posts. That&#8217;s a fair point, an opinion others clearly share from the comments made on those other blogs, but would seem unrelated to how bright we are?</p>

<p>Unless you are making a point that we are inflating what&#8217;s happening by doing a blog post about it. To that we respond that&#8217;s it is our blog, we&#8217;re not paid to do it, and thus we&#8217;ll write about what interests us. We&#8217;re not the media (ostensibly media get paid for writing), so we do not owe anyone anything. It interests us in this case that a security company had a problem like this, dealt with it by basically saying it will never happen again, and then seeing how they react when it does happen again. This casts no dispersions on Kaspersky, a company of experts, because web vulnerabilities are very common. But it is commentary and observation on the handling of this specific situation.</p>

<p>Congratulations on your mastery of anonymous proxies.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: your fav script kiddie</title>
		<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/comment-page-1/#comment-4496</link>
		<dc:creator>your fav script kiddie</dc:creator>
		<pubDate>Sat, 19 Dec 2009 10:15:21 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=2180#comment-4496</guid>
		<description>&lt;p&gt;You fellas aren&#039;t quite bright in there, or just pretend you aren&#039;t...&lt;/p&gt;

&lt;p&gt;I see you made a comment &#039;bout David Litchfield. Perhaps it is in direct relationship with &quot;unu&quot;&#039;s comment &#039;bout David Litchfield...
Let me translate it for you: &quot;uber&quot; from there means &quot;dumb ass&quot;.
Source:
http://www.hackersblog.org/2009/12/03/kaspersky-com-pt-hacked/&lt;/p&gt;

&lt;p&gt;I made a comment on &quot;unu&#039;s&quot; post regrading the hidden irony from its blog post. My comment never made it(I can post it here if you like), full disclosure is a bitch, I assume, when it comes to your own shit, especially when you&#039;re full of it.&lt;/p&gt;

&lt;p&gt;What do we have here ?
It&#039;s very simple, it&#039;s called escalation of skilzz...
A bunch of romanian script kiddies, inflated by dumb ass media, think now they &quot;secure the web&quot;...
Weee...&lt;/p&gt;

&lt;p&gt;Posted by anonymous, through anonymous proxies(see, anybody can do it), as your romanian script kiddies...&lt;/p&gt;

&lt;p&gt;source:
http://www.imdb.com/title/tt0465602/quotes&lt;/p&gt;

&lt;p&gt;Mr. Smith: You know what I really hate? 
[Smith shoots Hertz in the the chest] 
Mr. Smith: What I really hate, is a pussy with a gun in his hand.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>You fellas aren&#8217;t quite bright in there, or just pretend you aren&#8217;t&#8230;</p>

<p>I see you made a comment &#8217;bout David Litchfield. Perhaps it is in direct relationship with &#8220;unu&#8221;&#8217;s comment &#8217;bout David Litchfield&#8230;
Let me translate it for you: &#8220;uber&#8221; from there means &#8220;dumb ass&#8221;.
Source:
<a href="http://www.hackersblog.org/2009/12/03/kaspersky-com-pt-hacked/" rel="nofollow">http://www.hackersblog.org/2009/12/03/kaspersky-com-pt-hacked/</a></p>

<p>I made a comment on &#8220;unu&#8217;s&#8221; post regrading the hidden irony from its blog post. My comment never made it(I can post it here if you like), full disclosure is a bitch, I assume, when it comes to your own shit, especially when you&#8217;re full of it.</p>

<p>What do we have here ?
It&#8217;s very simple, it&#8217;s called escalation of skilzz&#8230;
A bunch of romanian script kiddies, inflated by dumb ass media, think now they &#8220;secure the web&#8221;&#8230;
Weee&#8230;</p>

<p>Posted by anonymous, through anonymous proxies(see, anybody can do it), as your romanian script kiddies&#8230;</p>

<p>source:
<a href="http://www.imdb.com/title/tt0465602/quotes" rel="nofollow">http://www.imdb.com/title/tt0465602/quotes</a></p>

<p>Mr. Smith: You know what I really hate? 
[Smith shoots Hertz in the the chest] 
Mr. Smith: What I really hate, is a pussy with a gun in his hand.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; Blog Archive &#187; Unu gets Kaspersky again</title>
		<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/comment-page-1/#comment-4196</link>
		<dc:creator>&#187; Blog Archive &#187; Unu gets Kaspersky again</dc:creator>
		<pubDate>Fri, 11 Dec 2009 21:04:05 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=2180#comment-4196</guid>
		<description>&lt;p&gt;[...] more here.SHARETHIS.addEntry({ title: &quot;Unu gets Kaspersky again&quot;, url: [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] more here.SHARETHIS.addEntry({ title: &quot;Unu gets Kaspersky again&quot;, url: [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: InfoSecurity</title>
		<link>http://praetorianprefect.com/archives/2009/12/unu-gets-kaspersky-again/comment-page-1/#comment-4182</link>
		<dc:creator>InfoSecurity</dc:creator>
		<pubDate>Fri, 11 Dec 2009 13:05:02 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=2180#comment-4182</guid>
		<description>&lt;p&gt;Kaspersky Thailand Full Access
http://tinkode.baywords.com/index.php/2009/12/kaspersky-thailand-full-access/&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Kaspersky Thailand Full Access
<a href="http://tinkode.baywords.com/index.php/2009/12/kaspersky-thailand-full-access/" rel="nofollow">http://tinkode.baywords.com/index.php/2009/12/kaspersky-thailand-full-access/</a></p>]]></content:encoded>
	</item>
</channel>
</rss>

