<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SecurityGyan &#187; Secuity Awareness</title>
	<atom:link href="http://securitygyan.com/category/secuity-awareness/feed/" rel="self" type="application/rss+xml" />
	<link>http://securitygyan.com</link>
	<description>World of information security</description>
	<lastBuildDate>Mon, 14 Dec 2009 10:00:35 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
		<item>
		<title>&#8220;Human Present&#8221; A new security technology</title>
		<link>http://securitygyan.com/2009/05/09/human-present-a-new-security-technology/</link>
		<comments>http://securitygyan.com/2009/05/09/human-present-a-new-security-technology/#comments</comments>
		<pubDate>Sat, 09 May 2009 02:49:42 +0000</pubDate>
		<dc:creator>Vinod Sharma</dc:creator>
				<category><![CDATA[Secuity Awareness]]></category>

		<guid isPermaLink="false">http://securitygyan.com/?p=70</guid>
		<description><![CDATA[Human Present is a technology spun off from research at Georgia Tech that catches online fraud in action, using a dynamic method of identifying human behavior anomalies while at the same time preventing the fraudsters from detecting that they&#8217;re being watched. It differentiates human visitors from spiders, bots, and even zombie computers in bot networks. [...]]]></description>
			<content:encoded><![CDATA[<p>Human Present is a technology spun off from research at Georgia Tech that catches online fraud in action,  using a dynamic method of identifying human behavior anomalies while at the same time preventing the fraudsters from detecting that they&#8217;re being watched. It differentiates human visitors from spiders, bots, and even zombie computers in bot networks.</p>
<p>For complete details visit:<br />
<a href="http://www.humanpresent.net">http://www.humanpresent.net</a><br />
<a href="http://www.pramana.com">http://www.pramana.com</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitygyan.com/2009/05/09/human-present-a-new-security-technology/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Over 8M Virginian patient records held to ransom</title>
		<link>http://securitygyan.com/2009/05/08/over-8m-virginian-patient-records-held-to-ransom/</link>
		<comments>http://securitygyan.com/2009/05/08/over-8m-virginian-patient-records-held-to-ransom/#comments</comments>
		<pubDate>Fri, 08 May 2009 02:37:59 +0000</pubDate>
		<dc:creator>Vinod Sharma</dc:creator>
				<category><![CDATA[Secuity Awareness]]></category>

		<guid isPermaLink="false">http://securitygyan.com/?p=68</guid>
		<description><![CDATA[Hi, On Thursday, April 30, the secure site for the Virginia Prescription Monitoring Program (PMP) was replaced with a $US10M ransom demand: &#8220;I have your shit! In *my* possession, right now, are 8,257,378 patient records and a total of 35,548,087 prescriptions. Also, I made an encrypted backup and deleted the original. Unfortunately for Virginia, their [...]]]></description>
			<content:encoded><![CDATA[<p>Hi,<br />
On Thursday, April 30, the secure site for the Virginia Prescription Monitoring Program (PMP) was replaced with a $US10M ransom demand:<br />
&#8220;I have your shit! In *my* possession, right now, are 8,257,378 patient records and a total of 35,548,087 prescriptions. Also, I made an encrypted backup and deleted the original. Unfortunately for Virginia, their backups seem to have gone missing, too. Uhoh <img src='http://securitygyan.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> For $10 million, I will gladly send along the password.&#8221; </p>
<p>Original copy is available at:<a href="http://riga.ax.lt/leak/virginia-ransom-2009.html">virginia-ransom-2009</a><br />
The note said the intruders possessed 8.3 million patient records and 35.6 million prescriptions. Also, the thieves said they created an encrypted backup of the data and deleted the original files.<br />
Virginia&#8217;s Prescription Monitoring Program (VPMP) website <a href="https://www.pmp.dhp.virginia.gov/pmpwebcenter/login.aspx">PMP</a> is still not accessible.</p>
<p>Compromise of a website/server is not new but thing about which i am concerned is: Disaster management department(DMD) is doing what, before the incidence? They have not maintained a single isolated backup copy of the whole database. I thing DMD did a very poor job, because if they have backup system which is can&#8217;t be compromised through the internet, then they don&#8217;t have to bent there knees in front of a bad guy.      </p>
<p>Remember<br />
&#8220;Nobody is secure in cyber world but security can be achieved up to the maximum by closing all possible loop holes&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://securitygyan.com/2009/05/08/over-8m-virginian-patient-records-held-to-ransom/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>ProxyStrike v2.0 released</title>
		<link>http://securitygyan.com/2009/05/03/proxystrike-v20-released/</link>
		<comments>http://securitygyan.com/2009/05/03/proxystrike-v20-released/#comments</comments>
		<pubDate>Sun, 03 May 2009 07:27:24 +0000</pubDate>
		<dc:creator>Vinod Sharma</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Secuity Awareness]]></category>

		<guid isPermaLink="false">http://securitygyan.com/?p=35</guid>
		<description><![CDATA[ProxyStrike is an active Web Application Proxy, is a tool designed to find web application vulnerabilities like XSS,SQL,LFI,DT etc. while browsing an application. Download location:http://code.google.com/p/proxystrike/downloads/list Demo: http://www.edge-security.com/proxystrike.php]]></description>
			<content:encoded><![CDATA[<p>ProxyStrike is an active Web Application Proxy, is a tool designed to find web application vulnerabilities like XSS,SQL,LFI,DT etc. while browsing an application.</p>
<p>Download location:<a href="http://code.google.com/p/proxystrike/downloads/list">http://code.google.com/p/proxystrike/downloads/list</a></p>
<p>Demo: <a href="http://www.edge-security.com/proxystrike.php">http://www.edge-security.com/proxystrike.php</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitygyan.com/2009/05/03/proxystrike-v20-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

