<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Atul Karmarkar.Com&#187; Security Issues</title>
	<atom:link href="http://www.atulkarmarkar.com/category/security-issues/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.atulkarmarkar.com</link>
	<description>Around Pune, Technology, Investing, Living it Up</description>
	<lastBuildDate>Fri, 23 Jul 2010 09:26:42 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Visa CodeSure-security for your credit card</title>
		<link>http://www.atulkarmarkar.com/visa-codesure-security-for-your-credit-card/</link>
		<comments>http://www.atulkarmarkar.com/visa-codesure-security-for-your-credit-card/#comments</comments>
		<pubDate>Fri, 23 Jul 2010 02:34:28 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Personal Finance]]></category>
		<category><![CDATA[Scams]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[American Express]]></category>
		<category><![CDATA[Credit Card]]></category>
		<category><![CDATA[Visa]]></category>

		<guid isPermaLink="false">http://www.atulkarmarkar.com/?p=1759</guid>
		<description><![CDATA[
			
				
			
		
Across the world, and particularly in India, using a credit card to shop online has always been fraught with danger, though you&#8217;re just as likely to have your card cloned when paying a bill at a restaurant.
Visa Europe now tries to add a layer of security for all those who are paranoid / terrified about [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fvisa-codesure-security-for-your-credit-card%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fvisa-codesure-security-for-your-credit-card%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p style="text-align: justify;">Across the world, and particularly in India, using a credit card to shop online has always been fraught with danger, though you&#8217;re just as likely to have your <a title="Credit card scam at Hotel Le Meridien Pune" href="http://www.atulkarmarkar.com/credit-card-scam-at-hotel-le-meridien-pune/" target="_blank">card cloned</a> when paying a bill at a restaurant.</p>
<p style="text-align: justify;">Visa Europe now tries to add a layer of security for all those who are paranoid / terrified about using their credit card for online purchases. They have announced the commercial launch of their new credit card which features an inbuilt 12 button keypad, a battery designed to last three years and an alphanumeric digital display which generates ever-changing unique passwords each time you use the card.</p>
<p style="text-align: justify;"><img class="alignleft" style="float: left;" src="http://atulkarmarkar.com/wp-content/uploads/2010/07/visa_codesure.png" alt="Visa Codesure" width="200" height="150" /></p>
<p style="text-align: justify;">Called Visa CodeSure, it  is designed to work on any Visa debit, credit, prepaid or commercial card and has been approved for use in the following services:</p>
<ul style="text-align: justify;">
<li>PIN generated one-time-passcode for Verified by Visa payments at participating merchants globally – without changes to merchant software or cardholders having to register and remember passwords</li>
<li>PIN-generated one-time passcode for online banking access</li>
<li>PIN-generated one-time passcode for telephone banking services</li>
<li>Transaction signing for online banking services, using specific elements such as Account Reference Number or amount of transaction</li>
<li>Access to third party services such as corporate virtual private networks (VPN) for commercial card users, or frequent flyer programmes and other online services.</li>
</ul>
<p style="text-align: justify;">The process of validating the transaction is done in three simple steps:</p>
<ol style="text-align: justify;">
<li>When shopping online or logging in to an online banking service, the cardholder activates the authentication process by pressing the “Verified by Visa” option button on the card’s keypad</li>
<li>When prompted the consumer inputs their PIN into the keypad embedded in the card</li>
<li>A unique one-time-passcode appears on the card’s display, which is then used by the cardholder to authenticate a normal Verified by Visa transaction.</li>
</ol>
<p style="text-align: justify;"><img class="alignright" style="float: right;" src="http://atulkarmarkar.com/wp-content/uploads/2010/07/hsbc-security-device.gif" alt="HSBC Security Device" width="120" height="139" /></p>
<p style="text-align: justify;">I have been an HSBC cardholder for some time now and a few years ago, they had sent me a &#8220;security device&#8221;, which did something similar, by generating a unique set of digits each time I transacted online or even logged in to my HSBC account. Eventually, once the novelty wore off, it became a pain to carry around and since I rarely use my HSBC card anyway, the device is probably lying in a forgotten nook somewhere.</p>
<p style="text-align: justify;">Likewise, HDFC Bank has something called Netsafe. You need to create an account and then each time you want to transact online, the system generates a virtual card number. You are then prompted to link this virtual card with either your credit card or bank account, for making payment to the merchant site. I tried it a couple of times, but there were too many hassles at the time, especially on Amazon, where I ended up using my <a href="http://www.atulkarmarkar.com/american-express-and-kingfisher-offer-a-co-branded-platinum-credit-card/" target="_blank">American Express</a> card. Haven&#8217;t used Netsafe recently though.</p>
<p style="text-align: justify;">This new card from Visa promises much, but I can&#8217;t escape the feeling that no matter what levels of security are introduced, it will only be a matter of time before some hacker cracks that system too.</p>
<p style="text-align: justify;">Till then, happy and safe transacting online! <img src='http://atulkarmarkar.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p style="text-align: justify;"> </p>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/smart-credit-gold-overdraft-from-stanchart/" title="Smart Credit Gold Overdraft from StanChart">Smart Credit Gold Overdraft from StanChart</a></li><li><a href="http://www.atulkarmarkar.com/credit-card-scam-at-hotel-le-meridien-pune/" title="Credit card scam at Hotel Le Meridien Pune">Credit card scam at Hotel Le Meridien Pune</a></li><li><a href="http://www.atulkarmarkar.com/visa-to-offer-406-million-class-a-shares-at-37-42-each/" title="Visa to offer $406 million Class A shares at $37-$42 each">Visa to offer $406 million Class A shares at $37-$42 each</a></li><li><a href="http://www.atulkarmarkar.com/actor-amol-palekar-victim-of-credit-card-fraud/" title="Actor Amol Palekar victim of credit card fraud">Actor Amol Palekar victim of credit card fraud</a></li><li><a href="http://www.atulkarmarkar.com/a-credit-card-defaulter-without-a-credit-card/" title="A credit card defaulter without a credit card !!">A credit card defaulter without a credit card !!</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/visa-codesure-security-for-your-credit-card/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WordPress Hack Attack &#8211; Is your blog safe?</title>
		<link>http://www.atulkarmarkar.com/wordpress-hack-attack-is-your-blog-safe/</link>
		<comments>http://www.atulkarmarkar.com/wordpress-hack-attack-is-your-blog-safe/#comments</comments>
		<pubDate>Sat, 05 Sep 2009 11:27:06 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Blogging]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://www.atulkarmarkar.com/?p=1154</guid>
		<description><![CDATA[
			
				
			
		
It wasn&#8217;t a very pleasant feeling to log in to the blogosphere and twittersphere to find that WordPress was under attack.
To be more precise, all blogs running self-hosted WordPress that weren&#8217;t up to date were facing a threat from hackers. The latest version is 2.8.4 and for your own sake, it is better you upgrade right away! Apparently, the [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fwordpress-hack-attack-is-your-blog-safe%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fwordpress-hack-attack-is-your-blog-safe%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">It wasn&#8217;t a very pleasant feeling to log in to the blogosphere and twittersphere to find that WordPress was under attack.</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">To be more precise, all blogs running self-hosted WordPress that weren&#8217;t up to date were facing a threat from hackers. The latest version is <a title="Download WordPress 2.8.4" href="http://wordpress.org/latest.zip" target="_blank">2.8.4</a> and for your own sake, it is better you upgrade right away! Apparently, the attack has not affected blogs hosted on wordpress.com.</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">Basically, the worm seeks to exploit holes in previous versions by taking control of admin accounts and also compromising the database integrity. A couple of ways to know if your blog has been hit;</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">a) You will notice some weird strings added to your permalinks, like xyz.com/title/%&amp;(%7B$%7Beval(base64_decode($_SERVER%5BHTTP_REFERER%5D))%7D%7D|.+)&amp;%/. The danger words here are “<strong>eval</strong>” and “<strong>base64_decode</strong>.”</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">b) Another way to confirm this is via the site users panel, where a hidden admin account will have been created.</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">Recovering from an attack will be an extremely painful process, including but not limited to firstly cleaning the content, exporting it, uninstalling &amp; reinstalling WordPress and then importing the content after ensuring there is no malicious code in it.</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;">As Matt explains in his post on <a title="How to Keep WordPress Secure" href="http://wordpress.org/development/2009/09/keep-wordpress-secure/" target="_blank">How to Keep WordPress Secure</a>, upgrading is like taking your vitamins, fixing a hack is open heart surgery <img src='http://atulkarmarkar.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> , so upgrade <a title="Download WordPress 2.8.4" href="http://wordpress.org/latest.zip" target="_blank">NOW</a> !!</p>
<p style="margin: 0px 0px 1em; line-height: 1.5; text-align: justify; padding: 0px;"> </p>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/wordpress-3-0-is-here/" title="WordPress 3.0 is here">WordPress 3.0 is here</a></li><li><a href="http://www.atulkarmarkar.com/googles-pac-man-logo-marks-a-return-to-blogging/" title="Google&#8217;s Pac-Man logo marks a return to blogging">Google&#8217;s Pac-Man logo marks a return to blogging</a></li><li><a href="http://www.atulkarmarkar.com/amazon-associates-integrates-with-blogger/" title="Amazon Associates integrates with Blogger">Amazon Associates integrates with Blogger</a></li><li><a href="http://www.atulkarmarkar.com/wordpress-26-released/" title="WordPress 2.6 released">WordPress 2.6 released</a></li><li><a href="http://www.atulkarmarkar.com/wordpress-releases-version-251/" title="WordPress releases Version 2.5.1">WordPress releases Version 2.5.1</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/wordpress-hack-attack-is-your-blog-safe/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>HDFC Netbanking now with Secure Access</title>
		<link>http://www.atulkarmarkar.com/hdfc-netbanking-now-with-secure-access/</link>
		<comments>http://www.atulkarmarkar.com/hdfc-netbanking-now-with-secure-access/#comments</comments>
		<pubDate>Sun, 12 Oct 2008 13:43:21 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[HDFC Netbanking]]></category>
		<category><![CDATA[Netbanking]]></category>
		<category><![CDATA[Online Banking]]></category>

		<guid isPermaLink="false">http://www.the-smart-investor.org/hdfc-netbanking-now-with-secure-access/</guid>
		<description><![CDATA[
			
				
			
		
Logged into my HDFC Netbanking account and saw some changes there.
Firstly, the earlier login screen has now been replaced by one where you first enter only your Customer Id. Once the bank verifies that, you are allowed to enter the password at the next screen.
Once you fill in your customer id and password, you are [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fhdfc-netbanking-now-with-secure-access%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fhdfc-netbanking-now-with-secure-access%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p align="justify">Logged into my HDFC Netbanking account and saw some changes there.</p>
<p align="justify">Firstly, the earlier login screen has now been replaced by one where you first enter only your Customer Id. Once the bank verifies that, you are allowed to enter the password at the next screen.</p>
<p align="justify">Once you fill in your customer id and password, you are then greeted by a message informing you of HDFC Bank&#8217;s new <a href="https://www.hdfcbank.com/personal/access/netbanking_RSA/netbanking_rsa.htm" target="_blank">Secure Access policy</a> according to which you are now required to register if you wish to avail of:</p>
<ul>
<li>
<div align="justify">Transfer from one HDFC Bank account to other HDFC Bank account holders (under distinct customer ID)</div>
</li>
<li>
<div align="justify">Transfer from HDFC Bank account to any other Bank&#8217;s account (also known as RTGS &amp; NEFT)</div>
</li>
<li>
<div align="justify">Visa Money Transfer </div>
</li>
<li>
<div align="justify">Third Party Demand Draft through NetBanking</div>
</li>
</ul>
<p align="justify">This is a one time registration process and to do so, you will need to</p>
<ul>
<li>
<div align="justify">Personalise an image</div>
</li>
<li>
<div align="justify">Personalise text</div>
</li>
<li>
<div align="justify">Answer 5 questions</div>
</li>
<li>
<div align="justify">Share two contact numbers</div>
</li>
</ul>
<p align="justify">Initially, I thought this was going to be a long process, but it was quite painless and was wrapped up within 5 minutes. </p>
<p align="justify">Most banks now allow you to use a virtual keyboard to enter the password. Banks like HSBC send you a hardware device that generates a random code whenever you press a button on it. You then input that code when prompted during your netbanking session. </p>
<p align="justify">All for the better, no doubt, however, what defeats all this is the lack of common sense shown by people who continue to visit <a href="http://en.wikipedia.org/wiki/Phishing_site" target="_blank">phishing sites</a> like moths to a flame !!</p>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/respite-paypal-customers-india/" title="Respite for PayPal customers in India">Respite for PayPal customers in India</a></li><li><a href="http://www.atulkarmarkar.com/paypal-problem-india-users/" title="PayPal nukes users in India">PayPal nukes users in India</a></li><li><a href="http://www.atulkarmarkar.com/visa-codesure-security-for-your-credit-card/" title="Visa CodeSure-security for your credit card">Visa CodeSure-security for your credit card</a></li><li><a href="http://www.atulkarmarkar.com/playing-with-googles-bag-of-tricks/" title="Playing with Google&#8217;s bag of tricks">Playing with Google&#8217;s bag of tricks</a></li><li><a href="http://www.atulkarmarkar.com/death-by-twitter/" title="Death By Twitter">Death By Twitter</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/hdfc-netbanking-now-with-secure-access/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Hacking Google Gadgets possible</title>
		<link>http://www.atulkarmarkar.com/google-gadgets-hacked/</link>
		<comments>http://www.atulkarmarkar.com/google-gadgets-hacked/#comments</comments>
		<pubDate>Sat, 09 Aug 2008 16:38:38 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[Gmail]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Hacks]]></category>

		<guid isPermaLink="false">http://www.tech-chips.com/?p=151</guid>
		<description><![CDATA[
			
				
			
		
The annual DefCon gathering of hackers has brought to light the fact that Google Gadgets can be hacked. These nifty little gadgets have become quite popular with people personalising their &#8221;iGoogle&#8221; home pages using them to keep track of the time, stock prices, the weather, currency converters, news, task lists et al.
SecTheory CEO Robert Hansen aka RSnake said, &#8220;I [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fgoogle-gadgets-hacked%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fgoogle-gadgets-hacked%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p style="TEXT-ALIGN: justify">The annual DefCon gathering of hackers has brought to light the fact that Google Gadgets can be hacked. These nifty little gadgets have become quite popular with people personalising their &#8221;iGoogle&#8221; home pages using them to keep track of the time, stock prices, the weather, currency converters, news, task lists et al.</p>
<p style="TEXT-ALIGN: justify">SecTheory CEO Robert Hansen aka RSnake said, &#8220;I could force you to download child porn or send subversive material to China. The exploitation is almost limitless. Google has to fix it. We pretty much break into anything we try.&#8221;</p>
<p style="TEXT-ALIGN: justify">He also said Gmail users faced dangers from the same security glitch, and that they&#8217;d been telling Google about these vulnerabilities for years, but they were not patched yet.</p>
<p style="TEXT-ALIGN: justify"> </p>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/playing-with-googles-bag-of-tricks/" title="Playing with Google&#8217;s bag of tricks">Playing with Google&#8217;s bag of tricks</a></li><li><a href="http://www.atulkarmarkar.com/check-your-gmail-offline-now/" title="Check your Gmail offline now">Check your Gmail offline now</a></li><li><a href="http://www.atulkarmarkar.com/sending-sms-from-gmail/" title="Sending SMS from Gmail, almost there">Sending SMS from Gmail, almost there</a></li><li><a href="http://www.atulkarmarkar.com/google-mail-goggles-saviour-for-drunkards-on-gmail/" title="Google Mail Goggles &#8211; Saviour for drunkards on Gmail">Google Mail Goggles &#8211; Saviour for drunkards on Gmail</a></li><li><a href="http://www.atulkarmarkar.com/view-all-unread-mail-in-your-gmail-inbox/" title="View all unread mail in your Gmail inbox">View all unread mail in your Gmail inbox</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/google-gadgets-hacked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tipping Point finds a flaw in Firefox 3</title>
		<link>http://www.atulkarmarkar.com/tipping-point-finds-a-flaw-in-firefox-3/</link>
		<comments>http://www.atulkarmarkar.com/tipping-point-finds-a-flaw-in-firefox-3/#comments</comments>
		<pubDate>Fri, 20 Jun 2008 13:45:19 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Browser]]></category>
		<category><![CDATA[Firefox]]></category>

		<guid isPermaLink="false">http://www.tech-chips.com/?p=134</guid>
		<description><![CDATA[
			
				
			
		
All the hype and hoopla surrounding the launch of Firefox 3 has hardly subsided, and there is already a security glitch. Firefox 3 was downloaded 8.3 million times within 24 hours of it&#8217;s release, a yet to be verified world record.
Tipping Point, in it&#8217;s Zero Day Initiative upcoming advisory, have discovered the very first critical vulnerability in Firefox 3 within five [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Ftipping-point-finds-a-flaw-in-firefox-3%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Ftipping-point-finds-a-flaw-in-firefox-3%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p style="text-align: justify;">All the hype and hoopla surrounding the <a title="Firefox 3: Download Day is here" href="http://www.tech-chips.com/firefox-3-download-day-is-here/" target="_blank">launch of Firefox 3</a> has hardly subsided, and there is already a security glitch. Firefox 3 was downloaded 8.3 million times within 24 hours of it&#8217;s release, a yet to be verified world record.</p>
<p style="text-align: justify;"><a title="Tipping Point" href="http://www.tippingpoint.com/" target="_blank">Tipping Point</a>, in it&#8217;s <a title="Zero Day Initiative" href="http://www.zerodayinitiative.com/advisories/upcoming/" target="_blank">Zero Day Initiative</a> upcoming advisory, have discovered the very first critical vulnerability in Firefox 3 within five hours of the browser&#8217;s release, and have rated it as &#8216;High Severity&#8217;. The flaw is not disclosed publicly allowing the vendor, Mozilla in this case, to patch it.</p>
<p style="text-align: justify;">Mozilla acknowledged the flaw, saying it wasn&#8217;t public so the threat was minimal and that they were working to find a fix to the problem.</p>
<p> </p>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/firefox-3-download-day-is-here/" title="Firefox 3: Download Day is here">Firefox 3: Download Day is here</a></li><li><a href="http://www.atulkarmarkar.com/playing-with-googles-bag-of-tricks/" title="Playing with Google&#8217;s bag of tricks">Playing with Google&#8217;s bag of tricks</a></li><li><a href="http://www.atulkarmarkar.com/death-by-twitter/" title="Death By Twitter">Death By Twitter</a></li><li><a href="http://www.atulkarmarkar.com/wordpress-3-0-is-here/" title="WordPress 3.0 is here">WordPress 3.0 is here</a></li><li><a href="http://www.atulkarmarkar.com/googles-pac-man-logo-marks-a-return-to-blogging/" title="Google&#8217;s Pac-Man logo marks a return to blogging">Google&#8217;s Pac-Man logo marks a return to blogging</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/tipping-point-finds-a-flaw-in-firefox-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Laptop stolen? Find it with Locate Laptop</title>
		<link>http://www.atulkarmarkar.com/laptop-stolen-find-it-with-locate-laptop/</link>
		<comments>http://www.atulkarmarkar.com/laptop-stolen-find-it-with-locate-laptop/#comments</comments>
		<pubDate>Mon, 10 Mar 2008 09:32:55 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Laptops]]></category>

		<guid isPermaLink="false">http://www.tech-chips.com/2008/03/laptop-stolen-find-it-with-locate-laptop/</guid>
		<description><![CDATA[
			
				
			
		
If you&#8217;ve ever been in a situation where you lost / misplaced your laptop and despaired of ever getting it back again, you&#8217;d wish you had installed Locate Laptop on it.  
Ok, so what is Locate Laptop?
Well, it is a system brought out by Unistal Systems, a provider of data care, data recovery, anti-virus and Internet security products.
&#160;
What [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Flaptop-stolen-find-it-with-locate-laptop%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Flaptop-stolen-find-it-with-locate-laptop%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p align="justify"><img border="0" align="left" width="335" src="http://atulkarmarkar.com/wp-content/uploads/2008/03/locatelaptop.gif" height="69" style="width: 318px; height: 55px" />If you&#8217;ve ever been in a situation where you lost / misplaced your laptop and despaired of ever getting it back again, you&#8217;d wish you had installed <a href="http://locatelaptop.com/">Locate Laptop</a> on it.  </p>
<p align="justify">Ok, so what is Locate Laptop?</p>
<p align="justify"><em>Well, it is a system brought out by Unistal Systems, a provider of data care, data recovery, anti-virus and Internet security products.</em></p>
<p align="justify">&nbsp;</p>
<p align="justify">What does it do and how does it work?</p>
<p align="justify"><em>Once installed on a laptop, it resides and operates in stealth mode, silently transfering critical stuff to their servers. If you think your laptop has been stolen, you can login to this site&#8217;s Personal Tracking and Monitoring Page to view and trace where your laptop has been accessed from.</em></p>
<p align="justify"><em>You then need to confirm that it is indeed a theft by reporting it to Unistal&#8217;s emergency response team, who activate Locate Laptop&#8217;s WebSniff technology and sounds an alert as soon as the offender connects to the internet. The City and IP address are informed to the user. It keeps tracking all the locations whenever the offender connects to the internet, so you need to hope and pray that the cops in your city are cyber savvy enough to see this trail and nab the culprit.</em></p>
<p align="justify">&nbsp;</p>
<p align="justify">How much does it cost ?</p>
<p align="justify"><em>$75 (Rs.3,000), which doesn&#8217;t seem quite a lot.</em></p>
<p align="justify">&nbsp;</p>
<p align="justify">What if I still can&#8217;t get my laptop back?</p>
<p align="justify"><em>Unistal has a money back guarantee <strong>ONLY</strong> for Indian customers, offering 5 times the cost of this system, in case the laptop cannot be traced, and subject to proper FIR submission !! No wonder, these chaps know the Indian criminal system well enough ! So good luck with the FIR, and if that goes well, what you get back in this case is Rs.15,000 (in all probability, less than half the price of a your laptop, not to mention your data which is gone forever).</em></p>
<p align="justify">&nbsp;</p>
<p align="justify">I&#8217;d prefer to wait a bit, though, before I go rushing out to buy this. How about you ?</p>
<p align="justify">&nbsp;</p>
<h3  class="related_post_title">You may also like to read:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/ramalinga-raju-admits-to-massive-fraud-quits-satyam/" title="Ramalinga Raju admits to massive fraud, quits Satyam">Ramalinga Raju admits to massive fraud, quits Satyam</a></li><li><a href="http://www.atulkarmarkar.com/mystery-shoppers-have-a-field-day/" title="Mystery Shoppers have a field day..">Mystery Shoppers have a field day..</a></li><li><a href="http://www.atulkarmarkar.com/how-long-should-a-password-be/" title="How long should a password be?">How long should a password be?</a></li><li><a href="http://www.atulkarmarkar.com/graziano-indian-ceo-beaten-to-death-by-dismissed-employees/" title="Graziano Indian CEO beaten to death by dismissed employees">Graziano Indian CEO beaten to death by dismissed employees</a></li><li><a href="http://www.atulkarmarkar.com/test-drove-i10-kappa-paul-newman-dies-ferrari-screws-up-at-singapore/" title="Test drove the i10 Kappa, Paul Newman dies, Ferrari screws up at Singapore">Test drove the i10 Kappa, Paul Newman dies, Ferrari screws up at Singapore</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/laptop-stolen-find-it-with-locate-laptop/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kapersky finds the first iPod virus</title>
		<link>http://www.atulkarmarkar.com/kapersky-finds-the-first-ipod-virus/</link>
		<comments>http://www.atulkarmarkar.com/kapersky-finds-the-first-ipod-virus/#comments</comments>
		<pubDate>Mon, 09 Apr 2007 12:52:00 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Anti-Virus]]></category>
		<category><![CDATA[iPod]]></category>
		<category><![CDATA[Kaspersky]]></category>

		<guid isPermaLink="false">http://tech-chips.com/?p=31</guid>
		<description><![CDATA[
			
				
			
		
Kaspersky Lab, a leading developer of secure content management solutions, has discovered the first virus designed to infect iPod portable media players. The virus, which has been named Podloso, is a proof of concept program which does not pose a real threat.
The virus is a file which can be launched and run on an iPod. [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fkapersky-finds-the-first-ipod-virus%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fkapersky-finds-the-first-ipod-virus%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<div align="justify"><span style="font-family:verdana;">Kaspersky Lab, a leading developer of secure content management solutions, has discovered the first virus designed to <a href="http://www.kaspersky.com/news?id=207575511">infect iPod</a> portable media players. The virus, which has been named Podloso, is a <a href="http://www.webopedia.com/TERM/P/proof_of_concept_virus.html">proof of concept program </a>which does not pose a real threat.</span></div>
<div align="justify"><span style="font-family:verdana;"><br />The virus is a file which can be launched and run on an iPod. However, for the virus to function, Linux has to be installed on the iPod. Podloso cannot be launched automatically without user involvement.<br /></span></div>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/how-to-quickly-charge-your-mobile-or-ipod/" title="How to quickly charge your mobile or iPod">How to quickly charge your mobile or iPod</a></li><li><a href="http://www.atulkarmarkar.com/weekend-blues-my-ipod-also-acts-up/" title="Weekend blues &#8211; My iPod also acts up">Weekend blues &#8211; My iPod also acts up</a></li><li><a href="http://www.atulkarmarkar.com/stay-with-us-get-an-ipod-free/" title="Stay with us, get an iPod free">Stay with us, get an iPod free</a></li><li><a href="http://www.atulkarmarkar.com/apple-sells-100-million-ipods/" title="Apple sells 100 million iPods">Apple sells 100 million iPods</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/kapersky-finds-the-first-ipod-virus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>US Worst for Malware Hosting, Spam-Relaying:Sophos</title>
		<link>http://www.atulkarmarkar.com/new-sophos-security-report-reveals-us-is-worst-for-malware-hosting-and-spam-relaying/</link>
		<comments>http://www.atulkarmarkar.com/new-sophos-security-report-reveals-us-is-worst-for-malware-hosting-and-spam-relaying/#comments</comments>
		<pubDate>Wed, 24 Jan 2007 04:32:00 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://tech-chips.com/?p=21</guid>
		<description><![CDATA[
			
				
			
		
Sophos, a world leader in threat management solutions, has published its Security Threat Report 2007, examining the threat landscape during the previous twelve months, and predicting malware and spam developments for 2007.


The report reveals that the U.S. hosts more than one third of the websites containing malicious code identified during 2006, as well as relays [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fnew-sophos-security-report-reveals-us-is-worst-for-malware-hosting-and-spam-relaying%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fnew-sophos-security-report-reveals-us-is-worst-for-malware-hosting-and-spam-relaying%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<div align="justify"><span style="font-family:arial;">Sophos, a world leader in threat management solutions, has published its </span><a href="http://webhosting.sys-con.com/read/325848.htm"><span style="font-family:arial;">Security Threat Report 2007</span></a><span style="font-family:arial;">, examining the threat landscape during the previous twelve months, and predicting malware and spam developments for 2007.</p>
<p></span></div>
<div align="justify"><span style="font-family:arial;"></span></div>
<div align="justify"><span style="font-family:arial;">The report reveals that the U.S. hosts more than one third of the websites containing malicious code identified during 2006, as well as relays more spam than any other nation.</span></div>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/wordpress-hack-attack-is-your-blog-safe/" title="WordPress Hack Attack &#8211; Is your blog safe?">WordPress Hack Attack &#8211; Is your blog safe?</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/new-sophos-security-report-reveals-us-is-worst-for-malware-hosting-and-spam-relaying/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ID Theft / fraud</title>
		<link>http://www.atulkarmarkar.com/id-theft-fraud/</link>
		<comments>http://www.atulkarmarkar.com/id-theft-fraud/#comments</comments>
		<pubDate>Sat, 20 Jan 2007 05:30:00 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://tech-chips.com/?p=20</guid>
		<description><![CDATA[
			
				
			
		
With the advance in technology over the years, access to information has become quite easy, and confidential data can now be accessed in a matter of minutes with a few clicks. There is an increasing reliance on everything being available &#8220;online&#8221;, whether it is netbanking, credit card information, investments et al. It is not surprising [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fid-theft-fraud%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fid-theft-fraud%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><span style="font-family:arial;">With the advance in technology over the years, access to information has become quite easy, and confidential data can now be accessed in a matter of minutes with a few clicks. There is an increasing reliance on everything being available &#8220;online&#8221;, whether it is netbanking, credit card information, investments et al. </span><br /><span style="font-family:Arial;"></span><br /><span style="font-family:Arial;">It is not surprising to see in the increase of &#8220;<a href="http://en.wikipedia.org/wiki/Phishing">phishing</a>&#8221; sites that have mushroomed lately, and banks have been under a lot of pressure to educate their customers about which sites and links <em>NOT</em> to visit. </span><br /><span style="font-family:Arial;"></span><br /><span style="font-family:Arial;">Almost a decade ago, there was an interesting movie called, quite appropriately, &#8220;<a href="http://www.imdb.com/title/tt0113957/">The Net</a>&#8220;, in which the character played by Sandra Bullock becomes a victim when her identity is switched. </span><br /><span style="font-family:Arial;"></span></p>
<h3  class="related_post_title">You may also like to read:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/shillong-guitar-fiesta-aims-to-enter-guinness-book/" title="Shillong guitar fiesta aims to enter Guinness Book">Shillong guitar fiesta aims to enter Guinness Book</a></li><li><a href="http://www.atulkarmarkar.com/satyam-to-list-in-europe/" title="Satyam to list in Europe">Satyam to list in Europe</a></li><li><a href="http://www.atulkarmarkar.com/ppf-safe-option-in-troubled-times/" title="PPF &#8211; A safe option in troubled times">PPF &#8211; A safe option in troubled times</a></li><li><a href="http://www.atulkarmarkar.com/daiichis-open-offer-for-ranbax/" title="Daiichi&#039;s open offer for Ranbaxy">Daiichi&#039;s open offer for Ranbaxy</a></li><li><a href="http://www.atulkarmarkar.com/was-dhoni-correct-in-playing-for-a-draw/" title="Was Dhoni correct in playing for a draw?">Was Dhoni correct in playing for a draw?</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/id-theft-fraud/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>QuickTime zero-day bug disclosed</title>
		<link>http://www.atulkarmarkar.com/quicktime-zero-day-bug-disclosed/</link>
		<comments>http://www.atulkarmarkar.com/quicktime-zero-day-bug-disclosed/#comments</comments>
		<pubDate>Fri, 05 Jan 2007 07:19:00 +0000</pubDate>
		<dc:creator>Atul Karmarkar</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[QuickTime]]></category>

		<guid isPermaLink="false">http://tech-chips.com/?p=18</guid>
		<description><![CDATA[
			
				
			
		
A newly disclosed security vulnerability in QuickTime could put both Macs and Windows PCs at risk of cyberattacks, experts have warned.The publication on Monday of the vulnerability and detailed attack code kicks off the &#8220;Month of the Apple Bugs&#8221; project, which promises to feature a new Apple software bug each day in January.The QuickTime vulnerability [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fquicktime-zero-day-bug-disclosed%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.atulkarmarkar.com%2Fquicktime-zero-day-bug-disclosed%2F&amp;source=atulkarmarkar&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<div align="justify"><span style="font-family:arial;">A newly disclosed <a href="http://news.zdnet.com/2100-1009_22-6146615.html" class="broken_link" >security vulnerability in QuickTime</a> could put both Macs and Windows PCs at risk of cyberattacks, experts have warned.<br /></span><br /><span style="font-family:arial;">The publication on Monday of the vulnerability and detailed attack code kicks off the &#8220;Month of the Apple Bugs&#8221; project, which promises to feature a </span><span style="font-family:arial;">new Apple software bug</span><span style="font-family:arial;"> each day in January.<br /></span><br /><span style="font-family:arial;">The QuickTime vulnerability relates to how the media player software handles the Real Time Streaming Protocol, or RTSP, according to </span><span style="font-family:arial;">an advisory</span><span style="font-family:arial;"> published on the Month of the Apple Bugs Web site. An attacker could create a special RTSP string in a rigged QuickTime file that would cause a buffer overflow, according to the advisory. </span></div>
<h3  class="related_post_title">Related Posts:</h3><ul class="related_post"><li><a href="http://www.atulkarmarkar.com/steve-jobs-ceo-of-the-decade/" title="Apple&#8217;s Steve Jobs is CEO of the decade">Apple&#8217;s Steve Jobs is CEO of the decade</a></li><li><a href="http://www.atulkarmarkar.com/iphone-finally-in-india-should-you-buy/" title="iPhone finally hits India, should you buy?">iPhone finally hits India, should you buy?</a></li><li><a href="http://www.atulkarmarkar.com/iphone-debut-india-14-yr-old-first-buyer/" title="iPhone finally debuts in India, 14 yr old among first buyers">iPhone finally debuts in India, 14 yr old among first buyers</a></li><li><a href="http://www.atulkarmarkar.com/airtel-vodafone-to-launch-iphone-on-aug-22/" title="Airtel, Vodafone to launch iPhone on Aug 22">Airtel, Vodafone to launch iPhone on Aug 22</a></li><li><a href="http://www.atulkarmarkar.com/pre-register-your-iphone-with-vodafone/" title="Pre-register your iPhone with Vodafone">Pre-register your iPhone with Vodafone</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.atulkarmarkar.com/quicktime-zero-day-bug-disclosed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
