(it)gossips     Twitter     Advertise     Squidoo     Subscribe for FREE newsletter

Archive for July, 2007

mybeNi SecureWordPress Worm

July 31st, 2007 by | Comments | Filed in Uncategorized

This maybe is the second ‘Friendly’ worm I ever see :D

Created by mybeNi, and it’s a XSS worm. It uses the Security vulnerabilities in the latest Wordpress Version (2.2.1) to get into your blog and help you patching the Security flaws! Everything based on Cross-Site Scripting and Cross-Site Request Forgery.

How can I start the Worm?

  • Go to your blog and login to your Wordpress Adminstration Panel
  • Post a Comment to your own Blog containing a link to this blog, that means http://mybeni.rootzilla.de/mybeNi/
  • Go into your admin Panel -> Moderate Comments and click the freaking link :o)
  • The friendly worm will guide you through everything and your blog is secure again.

Trust me, This is what you’ll get:

mybeNi SecureWordpress Worm

I have tried it myself and it works very well.

Source : http://mybeni.rootzilla.de/

Java Game Engine

July 31st, 2007 by it gossips | Comments | Filed in Uncategorized

today, when i try googling about applet technology , i have found a good stuff for java programmer, especially game programmer.
Just like the title, i get java game engine… it’s really helpful for developing game.
Sorry, i cant give details for now.. coz i have just found it, so wait for my next post.

here is the link <click here> (http://www.goldenstudios.or.id/products/GTGE/) if you want to know more about this engine. Enjoy it Read more at: Me, Hikago, Game & GBA, Anime, Dorama, J-Music (http://echohikaru.blogsome.com/2007/08/01/java-game-engine/)

mybeNi SecureWordPress Worm

July 31st, 2007 by it gossips | Comments | Filed in Uncategorized

This maybe is the second ‘Friendly’ worm I ever see
Created by mybeNi, and it’s a XSS worm. It uses the Security vulnerabilities in the latest Wordpress Version (2.2.1) (http://mybeni.rootzilla.de/mybeNi/2007/wordpress_zeroday_vulnerability_roundhouse_kick_and_why_i_nearly_wrote_the_first_blog_worm/) to get into your blog and help you patching the Security flaws! Everything based on Cross-Site Scripting and Cross-Site Request Forgery.
How can I start the Worm?

Go to your blog and login to your Wordpress Adminstration Panel
Post a Comment to your own Blog containing a link to this blog, that means http://mybeni.rootzilla.de/mybeNi/
Go into your admin Panel -> Moderate Comments and click the freaking link :o)
The friendly worm will guide you through everything and your blog is secure again.

Trust me, This is what you’ll get:
http://mybeni.rootzilla.de/ (http://mybeni.rootzilla.de)Read more at: Zoiz Blog (http://zoiz.web.id/?p=23)

The New Hacker Manifesto

July 30th, 2007 by | Comments | Filed in Uncategorized

Manifest

I. Hacker

1. We are those, the Different. Technological rats, swimming in the ocean of information.

2. We are the retiring, little kid at school, sitting at the last desk, in the corner of the class room.

3. We are the teenager everybody considers strange

4. We are the student hacking computer systems, exploring the depth of his reach.

5. We are the grown-up in the park, sitting on a bench, laptop on his knees, programming the last virtual reality. (more…)

The New Hacker Manifesto

July 30th, 2007 by it gossips | Comments | Filed in Uncategorized

Manifest
I. Hacker
1. We are those, the Different. Technological rats, swimming in the ocean of information.
2. We are the retiring, little kid at school, sitting at the last desk, in the corner of the class room.
3. We are the teenager everybody considers strange
4. We are the student hacking computer systems, exploring the depth of his reach.
5. We are the grown-up in the park, sitting on a bench, laptop on his knees, programming the last virtual reality. (more…) (http://zoiz.web.id/?p=20#more-20)Read more at: Zoiz Blog (http://zoiz.web.id/?p=20)

Freaky Proxy List #9: unblock proxy

July 27th, 2007 by it gossips | Comments | Filed in Uncategorized

Here’s proxy list: unblock proxy

http://www.hidemyass.com/

http://www.007surf.info/

http://www.dontblockus.info/

http://www.proxying.info/

http://www.aplusproxy.com/

http://coolbypass.com/

http://www.sitesurfing.info/

http://www.coolproxie.info/

http://www.instantlook.info/

http://www.seethenet.info/

http://www.viewthemall.info/

Read more… Freaky Code: The Unblocker Website (http://masbuchin.com/freaky-proxy-list-9-unblock-proxy.htm)

I have 26 hours a day

July 25th, 2007 by it gossips | Comments | Filed in Uncategorized

Many of you maybe don’t know how come we can have extra 2 hours? Here the story begin.
Yesterday when I was working, one of my friends told me that he had a project to do, and asked me to help him taking down this project. It’s quite a ‘big sum’ project for me. I really hope that I can do that, but if only I have the time. Actually it’s not that I don’t have the time I need, just I don’t know how to manage my time.
As usual before I sleep every night, I let myself rest a while and think back what have I done the entire day. And so I got a conclusion for myself, maybe for you if you want.
If I can work effectively, it’s not impossible that I can have all my jobs done in less than working hour. If I can do it, that means that I have much more time left to do something else. I think that is possible for everyone. It depend on ourselves. In conclusion, I ‘generate’ formulas to have more time each day:

Stop doing things that is useless (in vain).
Stop being lazy.
Never postpone doing your important tasks that is can be done right now, because you don’t know what will HAPPEN NEXT.

Nah, if you could do that, it’s 100% possible for you to have 26 hours a day.
Read more at: Zoiz Blog (http://zoiz.web.id/?p=18)

Freaky Proxy List #8: school proxy

July 24th, 2007 by it gossips | Comments | Filed in Uncategorized

Here is the freaky proxy list come again. Please give your feedback (http://masbuchin.com/contact) if there’s broken link.

http://iamunblocked.com/ (http://iamunblocked.com/)
http://www.unfiltersites.com/ (http://www.unfiltersites.com/)
http://www.blockednet.info/ (http://www.blockednet.info/)
http://www.hiddencloak.com/ (http://www.hiddencloak.com/)
http://www.surfpat.info/ (http://www.surfpat.info/)
http://www.allowaccess.com/ (http://www.allowaccess.com/)
http://kwiq.net/ (http://kwiq.net/)
http://www.flipmyip.com/ (http://www.flipmyip.com/)
http://www.surfinstantly.info/ (http://www.surfinstantly.info/)
http://www.coolproksea.info/ (http://www.coolproksea.info/)
Read more… Freaky Code: The Unblocker Website (http://masbuchin.com/freaky-proxy-list-8-school-proxy.htm)

Automatically Configure Browsers for Proxy

July 24th, 2007 by | Comments | Filed in Uncategorized

Autoconfigure Scripts for Proxy Settings - Apr. 22, 2004

April 22, 2004: Added more complex examples to bypass proxy for multiple URL’s.

August 15, 2003: Updated with example of bypassing proxy for a particular URL, and also mention WPAD.DAT to automatically configure Internet Explorer.

PROXY.PAC Files

Several of my clients have asked for a way to have browsers automatically pick up proxy settings if the PC (usually a laptop) is on the local LAN, but not use a proxy server if the PC is not on the local LAN. For instance, moving a laptop from a home network with no proxy server to the office LAN, with a BorderManager server.

The browser can be configured with a simple PROXY.PAC file. The PROXY.PAC file can be quite complex, providing for load-balancing, fault tolerance, or other uses. I would be happy to produce a custom proxy.pac file for you (as a paid consulting project). The examples here are pretty basic.

I have tested this PROXY.PAC file on Netscape, Mozilla, Firefox, Opera and Internet Explorer on Windows XP Professional and Windows 2000 Professional.

Note: This is not a method for remotely or permanently setting the proxy settings, which can be done in a number of ways (ZENworks, login script, proxy configuration files from Netscape or Microsoft, etc.) I will assume that you will visit the workstations and enter the proxy settings as necessary to point to the PROXY.PAC file. If the PC is to be moved off the local LAN, you will also need to copy the file to the PC.

How it works:

The .PAC file checks the local IP subnet address of the PC, and branches with an IF / ELSE statement. If the PC is located in a subnet that matches, a proxy server is used. If the PC is on any other subnet, a direct connection is used instead of the proxy.

function FindProxyForURL(url, host)
{
if (isInNet(myIpAddress(), “192.168.1.0″, “255.255.255.0″))
return “PROXY 192.168.1.1:8080″;
else
return “DIRECT”;
}

In my example file #1, I check that the host is in the 192.168.1.0 (255.255.255.0) subnet. If it is, I tell the browser to use a proxy at IP address 192.168.1.1, using port 8080. Obviously, you may need to change the subnet, subnet mask and proxy address/port for your LAN configuration.

There are methods which can be used to check for multiple subnets in case you have more than one internal LAN subnet. Ask in the Novell Public Forums about more complex PROXY.PAC files. (Or hire me to develop one for your environment!)

Download my example PROXY.PAC file #1 HERE (simple version)

More Complex Version

I have had a number of occasions where I needed to bypass the http proxy for a particular web site. This is easily done with a PROXY.PAC file, by putting in an IF statement with the proper syntax. (You can have lots of IF statements if you want to do this for multiple web sites.)

Here is an example that bypasses proxy for a particular web site (principia.mo.techpaths.com) that was giving grief when going to it through the HTTP Proxy:

function FindProxyForURL(url, host)
{
if (shExpMatch(url, “http://principia.mo.techpaths.com*”)) {
return “DIRECT”;
}
if (isInNet(myIpAddress(), “192.168.1.0″, “255.255.255.0″))
return “PROXY 192.168.1.1:8080″;
else
return “DIRECT”;
}

You can download this version of PROXY.PAC here.

Slightly More Complex PROXY.PAC Example - Multiple Proxy Bypass URL’s (not for laptops)

In this example you can add multiple URL’s to NOT use a proxy, and then proxy everything else. In this example, you do not have a check for the local network, so it would not be a good example for a laptop that moves between networks.

function FindProxyForURL(url, host)
{
// variable strings to return
var proxy_yes = “PROXY 192.168.1.1:8080″;
var proxy_no = “DIRECT”;
if (shExpMatch(url, “http://www.mycompanywebsite.com*”)) { return proxy_no; }
if (shExpMatch(url, “http://www.myotherwebsite.com*”)) { return proxy_no; }
if (shExpMatch(url, “http://www.my3rdlocalsite.com*”)) { return proxy_no; }
// Proxy anything else
return proxy_yes;
}

Even More Complex PROXY.PAC Example - Multiple Proxy Bypass URL’s with Local Address Check

In this example you can add multiple URL’s to NOT use a proxy, and then proxy everything else. In this example, you have a check for the local network, so you can use this one on a laptop.

function FindProxyForURL(url, host)
{
// variable strings to return
var proxy_yes = “PROXY 192.168.1.1:8080″;
var proxy_no = “DIRECT”;
if (shExpMatch(url, “http://www.mycompanywebsite.com*”)) { return proxy_no; }
if (shExpMatch(url, “http://www.myotherwebsite.com*”)) { return proxy_no; }
if (shExpMatch(url, “http://www.my3rdlocalsite.com*”)) { return proxy_no; }
if (shExpMatch(url, “http://192.168.1.100*”)) { return proxy_no; }
// Proxy if PC is on local LAN
if (isInNet(myIpAddress(), “192.168.1.0″, “255.255.255.0″))
return “PROXY 192.168.1.1:8080″;
else
return “DIRECT”;
}

Autoconfigure the Proxy Settings from the BorderManager Server (for Internet Explorer)

In this method, you point to a file being made available via the BorderManager miniwebserver. For a simple PROXY.PAC file and a PC that says on the local LAN, this doesn’t make a lot of sense, as it is easier to just enter the proxy server address and port numbers. However, this technique is useful when you have complex PROXY.PAC files which do load balancing, etc.

1. Copy the PROXY.PAC file to the BorderManager SYS:ETC\PROXY\DATA directory.
2. In the browser proxy settings, configure the Automatic Proxy Configuration (Netscape) or Use Automatic Configuration Script (IE) URL to:

http://192.168.1.1:1959/data/proxy.pac

Where 192.168.1.1 must be changed to your BorderManager server’s private IP address. The port 1959 is the default miniwebserver address.

If Internet Explorer doesn’t see the file, it will default to using whatever proxy settings are configured under LAN settings.

Certain versions of Internet Explorer have a bug with .PAC files. This can be fixed with a patch. See the Microsoft article here.

Autoconfigure the Proxy Settings from a Local Copy of the PROXY.PAC File (IE or Netscape)

In this method, useful for laptops that travel on and off your LAN, you copy the file to some local directory, and point to it.

1. Copy the PROXY.PAC file to the C:\WINDOWS directory, or other directory of your choice.
2. In the browser proxy settings, configure the Automatic Proxy Configuration (Netscape) or Use Automatic Configuration Script (IE) URL to:

Netscape, use: file:///c|/windows/proxy.pac
Internet Explorer, use: file://c:/windows/proxy.pac

In Netscape, click on the Reload button.

Have Internet Explorer Automatically Configure Itself to Use a Proxy

There are ways to push the proxy settings (including PROXY.PAC) files to any browser, but Internet Explorere tends to be the easiest. In fact, you can have Internet Explorer automatically discover your PROXY.PAC file without you even having to touch the browser, if the browser is left at default settings. This is done by renaming PROXY.PAC to WPAD.DAT, and launching it from web server, using a local DNS entry. Please see this tip on methods for configuring browsers to pick up proxy settings.

from http://nscsysop.hypermart.net/proxypac.html

Tags: ,

Moving to a new host

July 23rd, 2007 by it gossips | Comments | Filed in Uncategorized

we’re (http://masbuchin.com) moving to a new host. Yes we’re moving to dreamhost (http://dreamhost.com) after 110mb (http://110mb.com).

I’ve been emailed by 110mb yesterday. That email said that I must pay or writing at least 50 post to the forum to continue support for mysql. In the same time, I got PM from my buddy: p3rf3ctg3ntl3m4nt, he said that he was ordering dreamhost to me. So, this news is good news from me.But I should moving all my content from my old host to a new one, dumping mysql data, and copying it. Not only has that but also installed fresh WordPress installation. This because of my old WP is version 2.0.7.So, if there’s error in my site, please inform me (http://masbuchin.com/contact).Read more… Freaky Code: The Unblocker Website (http://masbuchin.com/moving-to-a-new-host.htm)