<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Unmask Parasites. Blog. &#187; Tweet Week</title>
	<atom:link href="http://blog.unmaskparasites.com/category/tweet-week/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.unmaskparasites.com</link>
	<description>Website insecurity by example</description>
	<lastBuildDate>Thu, 26 Jan 2012 10:56:06 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Selected Tweets (Oct-Nov 2011)</title>
		<link>http://blog.unmaskparasites.com/2011/11/21/selected-tweets-oct-nov-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/11/21/selected-tweets-oct-nov-2011/#comments</comments>
		<pubDate>Mon, 21 Nov 2011 15:11:26 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[canonical]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[MyBB]]></category>
		<category><![CDATA[safe browsing]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=854</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.
It has been a while since the last Tweet Week. The main reason is I don&#8217;t tweet that often now to post my tweets every week and I don&#8217;t want to post old news here either.
So what happened? The answer [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t follow me on Twitter.</span></em></p>
<p>It has been a while since the last <a href="http://blog.unmaskparasites.com/2011/08/29/tweet-week-august-22-28-2011/">Tweet Week</a>. The main reason is I don&#8217;t tweet that often now to post my tweets every week and I don&#8217;t want to post old news here either.</p>
<p>So what happened? The answer is I can&#8217;t get used to Twitter web interface &#8211; it is so inconvenient. I had to use it when I had some strange problems with my Twitter client (twhirl).  Thank&#8217;s god, I&#8217;ve finally made my twhirl work so I hope I will be able to tweet more often.</p>
<p>Anyway, here are some of the latest tweets.<br />
<span id="more-854"></span><br />
<span style="color: #888888;"><strong>November 15, 2011</strong></span></p>
<p style="padding-left: 30px;">[h-online] <a href="http://www.h-online.com/security/news/item/Joomla-updates-close-security-holes-1379162.html">Joomla! updates close security holes</a> &#8211; attackers can change Joomla passwords. Upgrade ASAP</p>
<p style="padding-left: 30px;">[seoarmada com au] <a href="http://seoarmada.com.au/seo-strategy/how-my-wordpress-sites-got-hacked-over-the-weekend">Webmaster&#8217;s story</a> about how the recent WordPress attack affected his four sites</p>
<p><strong><span style="color: #888888;">November 9, 2011</span></strong></p>
<p style="padding-left: 30px;"><a href="https://plus.google.com/112663080821764238527">Unmask Parasites is on Google+ now</a> &#8212; I&#8217;ll post things that are too long for Twitter and too short for blog</p>
<p><span style="color: #888888;"><strong>November 3, 2011</strong></span></p>
<p style="padding-left: 30px;">[TheRegister] <a href="http://www.theregister.co.uk/2011/11/02/wordpress_mass_compromise/">Thousands of WordPress sites commandeered by Black Hole</a> &#8212; not sure why it mentions my older article (<a href="https://plus.google.com/102541908655540829036/posts/DEMPBjoTv5V" target="_blank">G+</a>)</p>
<p><span style="color: #888888;"><strong>November 2, 2011</strong></span></p>
<p style="padding-left: 30px;"><a href="http://googlewebmastercentral.blogspot.com/2011/11/get-post-and-safely-surfacing-more-of.html">Google will selectively crawl resources behind POST requests</a></p>
<p><span style="color: #888888;"><strong>October 31, 2011</strong></span></p>
<p style="padding-left: 30px;"><strong></strong>RT <a href="http://twitter.com/stopbadware">@stopbadware</a>: In May, <a href="http://twitter.com/unmaskparasites">@unmaskparasites</a> discussed <a href="http://blog.stopbadware.org/2011/05/20/canonical-hacks">canonical hacks</a> on our blog. Google <a href="http://googlewebmastercentral.blogspot.com/2011/10/raising-awareness-of-cross-domain-url.html">announces protection</a> today.</p>
<p><span style="color: #888888;"><strong>October 30, 2011</strong></span></p>
<p style="padding-left: 30px;">Mozilla updated my <a href="https://addons.mozilla.org/en-US/firefox /addon/readable-safebrowsing/">&#8220;Readable SafeBrowsing&#8221; extension</a> to v0.2.5. &#8212; if you use FireFox and read SafeBrowsing diagnistic pages</p>
<p><span style="color: #888888;"><strong>October 26, 2011</strong></span></p>
<p style="padding-left: 30px;">[h-online] <a href="http://www.h-online.com/security/news/item/MyBB-downloads-were-infected-1366300.html">MyBB downloads were infected</a> &#8212; download package for MyBB v1.6.4 contained a backdoor</p>
<p><span style="color: #888888;"><strong>October 21, 2011</strong></span></p>
<p style="padding-left: 30px;">[armorize]<a href="http://blog.armorize.com/2011/10/httpjjghuicomurchinjs-mass-infection.html"> &#8220;jighui /urchin.js&#8221; script injection</a> on ASP.NET sites. &#8212; Did hackers confused Breton with Brazilian?</p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter or <a href="https://plus.google.com/112663080821764238527">circle Unmask Parasites</a> on Google +.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/11/21/selected-tweets-oct-nov-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tweet Week: August 22-28, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/08/29/tweet-week-august-22-28-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/08/29/tweet-week-august-22-28-2011/#comments</comments>
		<pubDate>Mon, 29 Aug 2011 21:14:48 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[Apache]]></category>
		<category><![CDATA[counter-wordpress]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[kwizhveo.php]]></category>
		<category><![CDATA[phpMyAdmin]]></category>
		<category><![CDATA[StopBadware]]></category>
		<category><![CDATA[timthumb.php]]></category>
		<category><![CDATA[WooFramework]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=847</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

August 22, 2011
RT @stopbadware: Q&#38;A: @maximweinstein on We Stop Badware™ Web Host program: how responsible hosting providers can fight badware
August 23, 2011
[wordpress.org] two forum threads about the counter-wordpress attack 1 &#38; 2 &#8212; timthumb again
[cio.com.au] Security and Google Apps &#8212; [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-847"></span><br />
<span style="color: #888888;"><strong>August 22, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a title="StopBadware" href="http://twitter.com/#%21/stopbadware">@stopbadware</a>: Q&amp;A: <a rel="nofollow" href="http://twitter.com/maximweinstein">@maximweinstein</a> on We Stop Badware™ Web Host program: <a href="http://www.thewhir.com/web-hosting-news/082211_QA_Maxim_Weinstein_on_StopBadwares_New_Web_Host_Program">how responsible hosting providers can fight badware</a></p>
<p><span style="color: #888888;"><strong>August 23, 2011</strong></span></p>
<p style="padding-left: 30px;">[wordpress.org] two forum threads about the counter-wordpress attack <a href="http://wordpress.org/support/topic/google-issuing-warnings-about-wp-site-content-from-counter-wordpresscom">1</a> &amp; <a href="http://wordpress.org/support/topic/iframe-hack-3">2</a> &#8212; timthumb again</p>
<p style="padding-left: 30px;">[cio.com.au] <a href="http://www.cio.com.au/article/398067/security_google_apps/">Security and Google Apps</a> &#8212; An interview with Google Enterprise director of security, Eran Feigenbaum</p>
<p style="padding-left: 30px;">RT <a title="StopBadware" href="http://twitter.com/#%21/stopbadware">@stopbadware</a>: Request for comments: <a href="http://blog.stopbadware.org/2011/08/22/seeking-comments-on-best-practices">public draft of new best practices for reporting badware URLs</a> Please RT!</p>
<p><span style="color: #888888;"><strong>August 24, 2011</strong></span></p>
<p style="padding-left: 30px;">[sucuri.net] <a href="http://blog.sucuri.net/2011/08/mass-infection-of-wordpress-sites-counter-wordpress-com.html">Mass infection of WordPress sites (counter-wordpress .com)</a> via <a rel="nofollow" href="http://twitter.com/sucuri_security">@sucuri_security</a></p>
<p style="padding-left: 30px;">[blog.cnizz.com] <a href="http://blog.cnizz.com/2011/08/23/evil-hackers-from-outerspace/">Evil Hackers from Outerspace</a> &#8212; finding  and removing malware &#8211; webmaster&#8217;s story</p>
<p style="padding-left: 30px;"><a rel="nofollow" href="http://twitter.com/sucuri_security">@sucuri_security</a>&#8217;s take on the <a rel="nofollow" href="http://twitter.com/WooThemes">@WooThemes</a> / timthumb / <a href="http://blog.sucuri.net/2011/08/timthumb-php-attacks-now-using-googlesafebrowsing-com.html">googlesafebrowsing attack</a></p>
<p><span style="color: #888888;"><strong>August 25, 2011</strong></span></p>
<p style="padding-left: 30px;">Google Safe Browsing now flags <em>GoogleSafeBrowsing .com</em> and the company, incl. hacked sites. <a href="http://www.unmaskparasites.com/malware-warning-guide/">How to deal with warnings</a></p>
<p><span style="color: #888888;"><strong>August 26, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a title="Matt Cutts" href="http://twitter.com/#%21/mattcutts">@mattcutts</a>: Scrapers getting you down? <a href="https://docs.google.com/a/google.com/spreadsheet/viewform?formkey=dGM4TXhIOFd3c1hZR2NHUDN1NmllU0E6MQ&amp;ndplr=1">Tell us about blog scrapers you see</a> We need datapoints for testing</p>
<p><span style="color: #888888;"><strong>August 27, 2011</strong></span></p>
<p style="padding-left: 30px;">The <em>kwizhveo</em> timthumb attack (<em>GoogleSafeBrowsing com</em>) now uses  &#8220;<em>statcounter . com</em>&#8221; domain. WTF? Do they want Google to flag the  innocent?</p>
<p style="padding-left: 30px;"><a href="http://pic.twitter.com/PMCFrU9">Screenshot</a> of the hidden &#8220;<em>statcounter .com</em>&#8221; kwizhveo.php iframe in an Unmask Parasites report of an infected blog.</p>
<p><span style="color: #888888;"><strong>August 28, 2011</strong></span></p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/phpMyAdmin-updates-close-XSS-hole-1331093.html">phpMyAdmin updates close XSS hole </a></p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/Tool-causes-Apache-web-server-to-freeze-Update-1330105.html">Tool causes Apache web server to freeze &#8211; Update</a> and &#8220;Rewrite&#8221; workaround</p>
<p style="padding-left: 30px;">[cnet.com] <a href="http://howto.cnet.com/8301-11310_39-20098098-285/how-to-check-if-a-web-site-is-safe/">How to check if a Web site is safe </a></p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/08/29/tweet-week-august-22-28-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Two Tweet Weeks: August 8-21, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/08/22/two-tweet-weeks-august-8-21-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/08/22/two-tweet-weeks-august-8-21-2011/#comments</comments>
		<pubDate>Mon, 22 Aug 2011 15:49:26 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[black hat seo]]></category>
		<category><![CDATA[BlackHole]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[k985ytv]]></category>
		<category><![CDATA[osCommerce]]></category>
		<category><![CDATA[StopBadware]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=839</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

August 8, 2011
[markmaunder.com] WordThumb is now TimThumb 2.0 &#8212; please upgrade if your WordPress theme/plugin uses old timthumb.php
August 9, 2011
[theregister.co.uk] Mass WordPress hijack poisons Google Image well &#8212; based on my Friday&#8217;s post
RT @threatpost: Hacked Wordpress Blogs Used to Poison [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-839"></span><br />
<span style="color: #888888;"><strong>August 8, 2011</strong></span></p>
<p style="padding-left: 30px;">[markmaunder.com] <a href="http://markmaunder.com/2011/08/05/wordthumb-is-now-timthumb-2-0/">WordThumb is now TimThumb 2.0</a> &#8212; please upgrade if your WordPress theme/plugin uses old timthumb.php</p>
<p><span style="color: #888888;"><strong>August 9, 2011</strong></span></p>
<p style="padding-left: 30px;">[theregister.co.uk] <a href="http://www.theregister.co.uk/2011/08/08/wordpress_hijack_poisons_google_image/">Mass WordPress hijack poisons Google Image well</a> &#8212; based on my Friday&#8217;s post</p>
<p style="padding-left: 30px;">RT <a title="Threatpost" href="http://twitter.com/#%21/threatpost">@threatpost</a>: <a href="http://threatpost.com/en_us/blogs/hacked-wordpress-blogs-used-poison-google-image-search-080811">Hacked Wordpress Blogs Used to Poison Google Image Search</a></p>
<p><span style="color: #888888;"><strong>August 10, 2011</strong></span></p>
<p style="padding-left: 30px;"><a href="http://blog.unmaskparasites.com/2011/08/08/ciscotred-cz-cc-joomla-hack/#update1">update</a> on the &#8220;ciscotred .cz .cc&#8221; attack &#8212; new redirect destination and connection with &#8220;.bee .pl&#8221; attacks</p>
<p style="padding-left: 30px;">If you only knew how many websites of small hosting providers are  hacked! And I mean their own sites, not their clients&#8217; sites&#8230;</p>
<p style="padding-left: 30px;"><a href="http://blog.unmaskparasites.com/2011/08/05/hacked-wordpress-blogs-poison-google-images/#update2">update</a> on the hacked WP blogs  1. Google removed doorways from index, 2. there are cloaked links in legitimate pages</p>
<p><span style="color: #888888;"><strong>August 15, 2011</strong></span></p>
<p style="padding-left: 30px;">[wpmu.org] <a href="http://wpmu.org/what-lurks-in-the-wordpress-plugin-repository/">What Lurks in the WordPress Plugin Repository?</a> &#8212; via <a rel="nofollow" href="http://twitter.com/SiobhanPMcKeown">@SiobhanPMcKeown</a></p>
<p style="padding-left: 30px;">Google PageRank 5 for a new domain in six months? Easy! &#8211; <a href="http://blog.unmaskparasites.com/2011/08/14/following-the-black-hat-seo-traces/#anomaly">analysis of SEO progress of a poker site</a> (black hat)</p>
<p><span style="color: #888888;"><strong>August 16, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a title="StopBadware" href="http://twitter.com/#%21/stopbadware">@stopbadware</a>: <a href="http://blog.stopbadware.org/2011/08/16/stopbadware-introduces-we-stop-badware-program-for-web-hosting-providers">StopBadware debuts We Stop Badware™ Web Host program</a> for hosting providers committed to protecting users from badware</p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/teamcymru">@teamcymru</a> <a href="http://www.v3.co.uk/v3-uk/news/2102153/hackers-botnets-bypass-google-map-attack-victims/">using botnets to search for 80k &#8216;Google Dorks&#8217; to streamline hacker target selection</a></p>
<p><span style="color: #888888;"><strong>August 17, 2011</strong></span></p>
<p style="padding-left: 30px;">[lightbluetouchpaper.org] <a href="http://www.lightbluetouchpaper.org/2011/08/10/measuring-search-redirection-attacks-in-the-illicit-online-prescription-drug-trade/">Measuring Search-Redirection Attacks in the Illicit Online Prescription Drug Trade</a></p>
<p style="padding-left: 30px;">RT <a title="StopBadware" href="http://twitter.com/#%21/stopbadware">@stopbadware</a>: Please help <a rel="nofollow" href="http://twitter.com/sans_isc">@sans_isc</a> with a <a href="http://isc.sans.edu/survey/4/">survey about the most dangerous (in terms of vulnerabilities/exploits) web platforms</a></p>
<p style="padding-left: 30px;">RT <a title="Threatpost" href="http://twitter.com/#%21/threatpost">@threatpost</a>: <a href="http://threatpost.com/en_us/blogs/mozilla-fixes-10-bugs-release-firefox-6-081711">New version of Firefox fixes 10 vulns</a>, several of them critical flaws that could allow remote code execution.</p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/features/Rapid-relief-for-osCommerce-administrators-1324235.html">Rapid relief for osCommerce administrators</a> &#8212; hardening outdated osCommerce sites</p>
<p><span style="color: #888888;"><strong>August 18, 2011</strong></span></p>
<p style="padding-left: 30px;">[Google Online Security] <a href="http://googleonlinesecurity.blogspot.com/2011/08/four-years-of-web-malware.html/">Four Years of Web Malware</a> &#8212; analysis of Safe Browsing data</p>
<p style="padding-left: 30px;">[armorize.com] <a href="http://blog.armorize.com/2011/08/k985ytvhtm-fake-antivirus-mass.html">k985ytv mass compromise ongoing, spreads fake antivirus</a> &#8212; Windows version dependent scareware sites</p>
<p><span style="color: #888888;"><strong>August 19, 2011</strong></span></p>
<p style="padding-left: 30px;">Owners of WordPress blogs: check the series of articles about timthumb-related malware attacks on <a href="http://blog.sucuri.net/">Sucuri blog</a> ﻿﻿</p>
<p style="padding-left: 30px;">RT <a title="Steven" href="http://twitter.com/#%21/Xylit0l">@Xylit0l</a>: MalwareIntelligence Black Hole Exploits Kit 1.1.0 Inside  [<a href="http://malwareint.blogspot.com/2011/08/black-hole-exploits-kit-110-inside.html">english</a>] [<a href="http://mipistus.blogspot.com/2011/08/black-hole-exploit-kit-110-inside.html">Spanish</a>]</p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/08/22/two-tweet-weeks-august-8-21-2011/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Two Tweet Weeks: July 25 &#8211; August 7, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/08/08/two-tweet-weeks-july-25-august-7-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/08/08/two-tweet-weeks-july-25-august-7-2011/#comments</comments>
		<pubDate>Mon, 08 Aug 2011 15:07:15 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[auditor]]></category>
		<category><![CDATA[FastFluxing]]></category>
		<category><![CDATA[Google Chrome]]></category>
		<category><![CDATA[osCommerce]]></category>
		<category><![CDATA[phpMyAdmin]]></category>
		<category><![CDATA[scareware]]></category>
		<category><![CDATA[StopBadware]]></category>
		<category><![CDATA[timthumb.php]]></category>
		<category><![CDATA[willysy]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=825</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

July 25, 2011
Added the +1 button to http://www.UnmaskParasites.com/ &#8211; let&#8217;s see how it works
[h-online.com] phpMyAdmin updates close critical security holes &#8212; Upgrade! phpMyAdmin hacks lead to server-wide problems
RT @StopBadware: RT @DarkReading: Websites on average are attacked once every two minutes, [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-825"></span><br />
<span style="color: #888888;"><strong>July 25, 2011</strong></span></p>
<p style="padding-left: 30px;"><a href="http://blog.sucuri.net/2011/07/python-no-such-file-or-directory-your-site-is-likely-compromised.html"></a>Added the +1 button to <a rel="nofollow" href="http://www.unmaskparasites.com/" target="_blank">http://www.UnmaskParasites.com/</a> &#8211; let&#8217;s see how it works</p>
<p style="padding-left: 30px;">[h-online.com]<a href="http://www.h-online.com/security/news/item/phpMyAdmin-updates-close-critical-security-holes-1285281.html"> phpMyAdmin updates close critical security holes</a> &#8212; Upgrade! phpMyAdmin hacks lead to server-wide problems</p>
<p style="padding-left: 30px;">RT <a href="http://twitter.com/StopBadware">@StopBadware</a>: RT <a rel="nofollow" href="http://twitter.com/DarkReading">@DarkReading</a>: <a href="http://www.darkreading.com/database-security/167901020/security/application-security/231002549/websites-are-attacked-once-every-two-minutes.html">Websites on average are attacked once every two minutes</a>, new <a rel="nofollow" href="http://twitter.com/Imperva">@Imperva</a> study finds</p>
<p><span style="color: #888888;"><strong>July 29, 2011</strong></span></p>
<p style="padding-left: 30px;">[abuse.ch] <a href="http://www.abuse.ch/?p=3387">How Criminals Defend Their Rogue Networks</a> &#8212; FastFluxing, DGA, custom DNS</p>
<p style="padding-left: 30px;">RT <a title="Joel Spolsky" href="http://twitter.com/spolsky">@spolsky</a>: This wild <a href="http://serverfault.com/questions/293217/our-security-auditor-is-an-idiot-how-do-i-give-him-the-information-he-wants">story about a deeply incompetent security auditor</a> has over 100,000 views already:</p>
<p style="padding-left: 30px;">[serverfault.com] <a href="http://serverfault.com/questions/293217/our-security-auditor-is-an-idiot-how-do-i-give-him-the-information-he-wants">Our security auditor is an idiot, how do I give him the information he wants?</a> &#8212; must read</p>
<p><span style="color: #888888;"><strong>August 1, 2011</strong></span></p>
<p style="padding-left: 30px;">[hostexploit.com] <a href="http://news.hostexploit.com/cyber-security-news/4953-implement-mitigation-strategies-to-stop-cyber-intrusions.html">Implement Mitigation Strategies to Stop Cyber Intrusions</a> &#8212; top 4 strategies prevent 85% intrusions</p>
<p><span style="color: #888888;"><strong>August 2, 2011</strong></span></p>
<p style="padding-left: 30px;">[journeyintoir.blogspot.com] <a href="http://journeyintoir.blogspot.com/2011/07/google-security-incident-detector.html">Google the Security Incident Detector</a> &#8212; using Google to find security issues on your site</p>
<p><span style="color: #888888;"><strong>August 3, 2011</strong></span></p>
<p style="padding-left: 30px;"><a href="http://krebsonsecurity.com/2011/08/fake-antivirus-industry-down-but-not-out/">Fake antivirus industry down, but not out.</a> via <a rel="nofollow" href="http://twitter.com/briankrebs">@briankrebs</a> . That&#8217;s a milestone!</p>
<p style="padding-left: 30px;">[markmaunder.com] <a href="http://markmaunder.com/2011/zero-day-vulnerability-in-many-wordpress-themes/">Zero Day Vulnerability in many WordPress Themes</a> &#8212; buggy <strong>timthumb.php</strong> + <a href="http://markmaunder.com/2011/technical-details-and-scripts-of-the-wordpress-timthumb-php-hack/">follow up</a></p>
<p style="padding-left: 30px;">RT <a title="StopBadware" href="http://twitter.com/stopbadware">@stopbadware</a>: <a href="http://blog.stopbadware.org/2011/08/03/new-insights-on-hosting-provider-badware-liability">New insights on web hosting provider liability for malicious content</a></p>
<p><span style="color: #888888;"><strong>August 5, 2011</strong></span></p>
<p style="padding-left: 30px;">&#8220;Google just released the biggest <a href="http://goo.gl/lkGDl">refresh of their spam report form</a> in, oh, say 10 years&#8221;  via <a rel="nofollow" href="http://twitter.com/mattcutts">@mattcutts</a></p>
<p><span style="color: #888888;"><strong>August 6, 2011</strong></span></p>
<p style="padding-left: 30px;">[armorize.com] <a href="http://blog.armorize.com/2011/07/willysycom-mass-injection-ongoing.html">willysy.com Mass Injection ongoing, over 6 million infected pages</a>, targets osCommerce sites &#8212; osC holes</p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/08/08/two-tweet-weeks-july-25-august-7-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tweet Week: July 18-24, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/07/26/tweet-week-july-18-24-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/07/26/tweet-week-july-18-24-2011/#comments</comments>
		<pubDate>Tue, 26 Jul 2011 15:31:09 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[G.CO]]></category>
		<category><![CDATA[Image Search]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[Python]]></category>
		<category><![CDATA[Tattoo]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=820</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

July 18, 2011
Python errors on a WordPress sites? Nonsense? No &#8211; a sign of a hack &#8212; via @sucuri_security
July 20, 2011
RT @mattcutts: Important: we&#8217;ve detected some specific malware. Go to google.com to see if you have it Please RT!
[google] G.CO, [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-820"></span><br />
<span style="color: #888888;"><strong>July 18, 2011</strong></span></p>
<p style="padding-left: 30px;"><a href="http://blog.sucuri.net/2011/07/python-no-such-file-or-directory-your-site-is-likely-compromised.html">Python errors on a WordPress sites?</a> Nonsense? No &#8211; a sign of a hack &#8212; via <a rel="nofollow" href="http://twitter.com/sucuri_security">@sucuri_security</a></p>
<p><span style="color: #888888;"><strong>July 20, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/mattcutts">@mattcutts</a>: Important: we&#8217;ve detected some specific malware. <a href="http://googleblog.blogspot.com/2011/07/using-data-to-protect-people-from.html">Go to google.com to see if you have it</a> Please RT!</p>
<p style="padding-left: 30px;">[google] <a href="http://googleblog.blogspot.com/2011/07/gco-official-url-shortcut-for-google.html"><strong>G.CO</strong>, the official URL shortcut for Google websites</a> &#8212; URL shortened by Google  linking to Google&#8217;s own pages</p>
<p style="padding-left: 30px;"><a href="http://krebsonsecurity.com/2011/07/google-your-computer-appears-to-be-infected/">Details about the Google&#8217;s &#8220;Your computer appears to be infected&#8221; warning</a> via <a rel="nofollow" href="http://twitter.com/briankrebs">@briankrebs</a></p>
<p><span style="color: #888888;"><strong>July 21, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/mattcutts">@mattcutts</a>: We updated the <a href="http://googleblog.blogspot.com/2011/07/using-data-to-protect-people-from.html">Google blog post about our malware notice</a>:  Looks like it spread via fake antivirus pages.</p>
<p><span style="color: #888888;"><strong>July 22, 2011</strong></span></p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/Joomla-1-7-brings-new-update-mechanism-1282426.html">Joomla! 1.7 brings new update mechanism</a> &#8212; finally one-click update! Will it work with customized sites?</p>
<p><span style="color: #888888;"><strong>July 23, 2011</strong></span></p>
<p style="padding-left: 30px;">[G+] <a href="https://plus.google.com/102541908655540829036/posts/6quxG7ZorCZ#102541908655540829036/posts/6quxG7ZorCZ">Follow up on the yesterday&#8217;s post about &#8220;tattoo&#8221; spam in Google Image search </a></p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/07/26/tweet-week-july-18-24-2011/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Tweet Week: July 11-17, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/07/18/tweet-week-july-11-17-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/07/18/tweet-week-july-11-17-2011/#comments</comments>
		<pubDate>Mon, 18 Jul 2011 20:06:54 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[Avira]]></category>
		<category><![CDATA[PuTTY]]></category>
		<category><![CDATA[WordPress]]></category>
		<category><![CDATA[Yahoo]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=815</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

July 11, 2011
[searchengineland.com] Yahoo Shutting Down Site Explorer This Year &#8212; any other public tool for back link research?
[pressography.com] comment about some major hosting providers that are not ready for WordPress 3.2
July 12, 2011
Some sections of Avira&#8217;s basic guidelines provide [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-815"></span><br />
<span style="color: #888888;"><strong>July 11, 2011</strong></span></p>
<p style="padding-left: 30px;">[searchengineland.com] <a href="http://searchengineland.com/yahoo-shutting-down-site-explorer-this-year-85038">Yahoo Shutting Down Site Explorer This Year</a> &#8212; any other public tool for back link research?</p>
<p style="padding-left: 30px;">[pressography.com] <a href="http://pressography.com/wordpress/interview-denis-sinegubko-malware-researcher-and-unmask-parasites/#comment-8587">comment</a> about some major hosting providers that are not ready for WordPress 3.2</p>
<p><span style="color: #888888;"><strong>July 12, 2011</strong></span></p>
<p style="padding-left: 30px;">Some sections of Avira&#8217;s basic guidelines provide good overview of prevalent threats. E.g. <a href="http://forum.avira.com/wbb/index.php?page=Thread&amp;postID=1081016#post1081016">search results poisoning </a></p>
<p style="padding-left: 30px;">[seozen.com] <a href="http://www.seozen.com/compelling-reconsideration-request/">How to submit a compelling reconsideration request</a> &#8212; dealing with spam and malware issues [Google]</p>
<p><span style="color: #888888;"><strong>July 13, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/wordpress">@wordpress</a>: <a href="http://wordpress.org/news/2011/07/wordpress-3-2-1/">WordPress 3.2.1 is now available</a>. &#8212; maintenance release. No security fixes mentioned&#8230;</p>
<p style="padding-left: 30px;">If you use <a rel="nofollow" href="http://twitter.com/WordPress">@WordPress</a> consider taking a short <a href="http://wpsurvey.polldaddy.com/s/wp-2011-e?src=pio">WordPress 2011 survey</a></p>
<p><span style="color: #888888;"><strong>July 14, 2011</strong></span></p>
<p style="padding-left: 30px;">Apparently, all CO.TV sites have also been removed from Google <a title="http://www.google.com/search/?q=site%3Aco.tv" rel="nofollow" href="http://www.google.com/search?q=site%3Aco.tv" target="_blank">http://www.google.com/search?q=site%3Aco.tv</a></p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/Fresh-PuTTY-1278826.html">Fresh PuTTY</a> &#8212; v0.61 finally supports Windows 7 and SSH-2 authentication</p>
<p style="padding-left: 30px;">In mid September, I will be in SF Bay area and, probably, in NY. Planning the trip. Anyone interested in meeting me? (you can <a href="http://www.unmaskparasites.com/contact/">contact</a> <a href="http://blog.unmaskparasites.com/contact/">me here</a>)</p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/07/18/tweet-week-july-11-17-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tweet Week: July 4-10, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/07/11/tweet-week-july-4-10-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/07/11/tweet-week-july-4-10-2011/#comments</comments>
		<pubDate>Mon, 11 Jul 2011 09:20:58 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[Image Search]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[mySql]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[phpMyAdmin]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=813</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

July 4, 2011
RT @wordpress: Are you ready for WordPress 3.2? Better check! &#8212; new minimum requirements
July 5, 2011
[sucuri.net] WordPress 3.2 and PHP support – Security effect &#8212; 15% of WP blogs won&#8217;t be able to upgrade to v3.2
[h-online.com] Vsftpd backdoor [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-813"></span><br />
<span style="color: #888888;"><strong>July 4, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/wordpress">@wordpress</a>: <a href="http://wordpress.org/news/2011/07/are-you-ready-for-wordpress-3-2/">Are you ready for WordPress 3.2?</a> Better check! &#8212; new minimum requirements</p>
<p><span style="color: #888888;"><strong>July 5, 2011</strong></span></p>
<p style="padding-left: 30px;">[sucuri.net] <a href="http://blog.sucuri.net/2011/07/wordpress-3-2-and-php-support-security-effect.html">WordPress 3.2 and PHP support – Security effect</a> &#8212; 15% of WP blogs won&#8217;t be able to upgrade to v3.2</p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/Vsftpd-backdoor-discovered-in-source-code-update-1272310.html">Vsftpd backdoor discovered in source code</a> &#8212; do your servers use recently installed vsftpd?</p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/Joomla-1-6-update-closes-security-holes-1269264.html">Joomla! 1.6 update closes security holes</a> &#8212; v1.6.4 closes 4 security holes. Update time!</p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/wordpress">@wordpress</a>: <a href="http://wordpress.org/news/2011/07/gershwin/">Introducing WordPress 3.2, Gershwin</a> &#8212; check new sys requirement before upgrading: PHP 5.2.4  mySql 5</p>
<p><span style="color: #888888;"><strong>July 6, 2011</strong></span></p>
<p style="padding-left: 30px;">[h-online.com] <a href="http://www.h-online.com/security/news/item/phpMyAdmin-updates-patch-critical-holes-1273593.html">phpMyAdmin updates patch critical holes</a> &#8212; that&#8217;s serious. I constantly see attacks against phpMyAdmin</p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/gcluley">@gcluley</a>: <a href="http://nakedsecurity.sophos.com/2011/07/06/unpatched-wordpress-installations-rife-with-malware/">Unpatched WordPress blogs rife with malware&#8230;</a> &#8212; Sophos&#8217; take on new WP minimum sys requirements</p>
<p><span style="color: #888888;"><strong>July 8, 2011</strong></span></p>
<p style="padding-left: 30px;">Yesterday&#8217;s <a href="http://www.reddit.com/r/IAmA/comments/ij5zt/iama_we_are_a_few_engineers_and_product_managers/">reddit discussion with Google Images team</a> &#8212; many comments about malware as a serious issue in Image search</p>
<p><span style="color: #888888;"><strong>July 9, 2011</strong></span></p>
<p style="padding-left: 30px;">RT <a rel="nofollow" href="http://twitter.com/stopbadware">@stopbadware</a>: RT <a rel="nofollow" href="http://twitter.com/GFILabs">@GFILabs</a>: <a href="http://sunbeltblog.blogspot.com/2011/07/interested-in-getting-porn-and-malware.html">Interested in getting porn and malware? Go to the Microsoft Safety and Security Center!</a></p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/07/11/tweet-week-july-4-10-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tweet Week: June 27 &#8211; July 3, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/07/04/tweet-week-june-27-july-3-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/07/04/tweet-week-june-27-july-3-2011/#comments</comments>
		<pubDate>Mon, 04 Jul 2011 21:20:31 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[Image Search]]></category>
		<category><![CDATA[milestone]]></category>
		<category><![CDATA[scareware]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=811</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

June 29, 2011
[reddit.com] Don&#8217;t trust Google Image Search &#8212; PC infection via poisoned Google image search results.
[milestone] This is my tweet #1000! Thanks to all followers who care about things that I write here!
Google reserves the right to take action [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-811"></span><br />
<span style="color: #888888;"><strong>June 29, 2011</strong></span></p>
<p style="padding-left: 30px;">[reddit.com] <a href="http://www.reddit.com/comments/ic2h4/dont_trust_google_image_search/">Don&#8217;t trust Google Image Search</a> &#8212; PC infection via poisoned Google image search results.</p>
<p style="padding-left: 30px;">[milestone] This is my tweet <strong>#1000</strong>! Thanks to all followers who care about things that I write here!</p>
<p style="padding-left: 30px;"><a href="https://plus.google.com/109412257237874861202/posts/eanXpZKMDSf ">Google reserves the right to take action on an entire freehost if it has a very large fraction of spam</a> &#8212; via @<a rel="nofollow" href="http://twitter.com/mattcutts">mattcutts</a></p>
<p style="padding-left: 30px;">[wordpress.org] <a href="http://wordpress.org/news/2011/06/wordpress-3-1-4/">WordPress 3.1.4 is available now</a> and is a maintenance and security update for all previous versions.</p>
<p style="padding-left: 30px;">Update on <a href="http://blog.unmaskparasites.com/2011/06/29/google-image-poisoning-whats-new-in-june/#update1">why malicious domains point to Google&#8217;s IP address</a> <a rel="nofollow" href="http://bit.ly/kZUMdU" target="_blank"></a>&#8211; any other ideas?</p>
<p><span style="color: #888888;"><strong>June 30, 2011</strong></span></p>
<p style="padding-left: 30px;">[wpmu.org] @<a rel="nofollow" href="http://twitter.com/SiobhanPMcKeown">SiobhanPMcKeown</a> interviewed me about <a href="http://wpmu.org/interview-denis-sinegubko-malware-researcher-and-unmask-parasites/">new minimal system requirements in WordPress 3.2 (security-wise) </a></p>
<p><span style="color: #888888;"><strong>July 1, 2011</strong></span></p>
<p style="padding-left: 30px;">[anniversary] <strong>3</strong> years ago today, I released the first public version of <a href="http://www.UnmaskParasites.com/">Unmask Parasites</a></p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/stopbadware">stopbadware</a>: <a href="http://www.seroundtable.com/co-cc-google-removal-13644.html">Google removes <strong>co. cc</strong> from search results</a> &#8212; UNI .CC and CZ .CC are still in search results</p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/Jindroush">Jindroush</a>: @<a rel="nofollow" href="http://twitter.com/unmaskparasites">unmaskparasites</a> @<a rel="nofollow" href="http://twitter.com/stopbadware">stopbadware</a> Also <strong>co.be</strong> got killed.</p>
<p style="padding-left: 30px;">[technologyreview.com] <a href="http://www.technologyreview.com/computing/37718/">The Perfect Scam</a> &#8212; very comprehensive article about fake antiviruses. <em>(It quotes my estimate on the number of poisoned Google Image search results)</em></p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/07/04/tweet-week-june-27-july-3-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Two Tweet Weeks: June 13-26, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/06/27/two-tweet-weeks-june-13-26-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/06/27/two-tweet-weeks-june-13-26-2011/#comments</comments>
		<pubDate>Mon, 27 Jun 2011 15:50:59 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[black hat seo]]></category>
		<category><![CDATA[CZ.CC]]></category>
		<category><![CDATA[Dropbox]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[WordPress]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=806</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

June 15, 2011
All sites on UNI.CC have been blocked by Google &#8212; free domain names come at a price
June 16, 2011
Google has unblocked the UNI.CC as well as CZ.CC, which was also blacklisted yesterday
[sucuri.net] Blackhat SPAM SEO From Joomlapoject.net – [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-806"></span><br />
<span style="color: #888888;"><strong>June 15, 2011</strong></span></p>
<p style="padding-left: 30px;">All sites on <a href="http://www.google.com/safebrowsing/diagnostic?site=uni.cc" target="_blank">UNI.CC</a> have been blocked by Google &#8212; free domain names come at a price</p>
<p><span style="color: #888888;"><strong>June 16, 2011</strong></span></p>
<p style="padding-left: 30px;">Google has unblocked the UNI.CC as well as <a href="http://www.google.com/safebrowsing/diagnostic?site=cz.cc">CZ.CC</a>, which was also <a href="http://blog.sucuri.net/2011/06/google-blacklisted-all-the-cz-cc-domains.html">blacklisted yesterday</a></p>
<p style="padding-left: 30px;">[sucuri.net] <a href="http://blog.sucuri.net/2011/06/blackhat-spam-seo-from-joomlapoject-net-targeting-joomla.html">Blackhat SPAM SEO From Joomlapoject.net – Targeting Joomla</a> &#8212; I can see cloaked spam on affected sites now</p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/stopbadware">stopbadware</a>: @<a rel="nofollow" href="http://twitter.com/unmaskparasites">unmaskparasites</a> Looks like <a href="http://www.google.com/safebrowsing/diagnostic?site=http://cz.cc/" target="_blank">cz. cc</a> re-blocked<a rel="nofollow" href="http://t.co/lL2f8Cq" target="_blank"></a></p>
<p><span style="color: #888888;"><strong>June 21, 2011</strong></span></p>
<p style="padding-left: 30px;">WordPress 3.2-RC1 requires PHP 5.2.4+. Many servers that still use #PHP v4 and &lt;5.2.4 will be incompatible with new versions of @<a rel="nofollow" href="http://twitter.com/WordPress">WordPress</a>.</p>
<p style="padding-left: 30px;">I anticipate even more outdated WordPress blogs because of the PHP 5.2.4+ requirement.</p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/gcluley">gcluley</a>: <a href="http://nakedsecurity.sophos.com/2011/06/21/dropbox-lets-anyone-log-in-as-anyone/">Security screw-up at Dropbox allows anyone to login as you</a> – so check your files now!</p>
<p style="padding-left: 30px;">@<a rel="nofollow" href="http://twitter.com/danielcid">danielcid</a> I wonder if WP auto-upgdate tool will warn that a server may be incompatible with the new version</p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/mattcutts">mattcutts</a>: <a href="http://searchenginewatch.com/article/2080601/Google-Warns-WordPress-Site-Owners-To-Update">We&#8217;re alerting WordPress owners to out-of-date installs</a>: Sign up 4 email alerts in our webmaster console!</p>
<p><span style="color: #888888;"><strong>June 23, 2011</strong></span></p>
<p style="padding-left: 30px;">[wordpress.org] Recently updated AddThis, WPtouch and W3 Total Cache <a href="http://wordpress.org/news/2011/06/passwords-reset/">plugins might have backdoors</a>.</p>
<p><span style="color: #888888;"><strong>June 24, 2011</strong></span></p>
<p style="padding-left: 30px;"><a href="http://googleonlinesecurity.blogspot.com/2011/06/protecting-users-from-malware-hosted-on.html">Protecting users from malware hosted on bulk subdomain services</a> &#8212; the answer why CZ.CC and UNI.CC were blacklisted</p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/06/27/two-tweet-weeks-june-13-26-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Two Tweet Weeks: May 30 &#8211; June 12, 2011</title>
		<link>http://blog.unmaskparasites.com/2011/06/13/two-tweet-weeks-may-30-june-12-2011/</link>
		<comments>http://blog.unmaskparasites.com/2011/06/13/two-tweet-weeks-may-30-june-12-2011/#comments</comments>
		<pubDate>Mon, 13 Jun 2011 19:58:06 +0000</pubDate>
		<dc:creator>Denis</dc:creator>
				<category><![CDATA[Tweet Week]]></category>
		<category><![CDATA[black hat seo]]></category>
		<category><![CDATA[IPv6]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[safe browsing]]></category>
		<category><![CDATA[scareware]]></category>
		<category><![CDATA[StopBadware]]></category>

		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=801</guid>
		<description><![CDATA[Selected short messages and links you might have missed if you don’t follow me on Twitter.

May 30, 2011
#GoogleImagePoisoning update: new malicious domain eozljijd .co.cc (not blacklisted yet) and new img URL pattern
May 31, 2011
RT @gcluley: See how scareware criminals disguise their latest attacks as a Firefox malware warning
[threatstop.com] IP Reputation to Reduce the Risk of [...]]]></description>
			<content:encoded><![CDATA[<p><em><span style="color: #888888;">Selected short messages and links you might have missed if you don’t <a href="http://twitter.com/unmaskparasites">follow me</a> on Twitter.</span></em></p>
<p><span id="more-801"></span><br />
<span style="color: #888888;"><strong>May 30, 2011</strong></span></p>
<p style="padding-left: 30px;">#GoogleImagePoisoning <a href="http://blog.unmaskparasites.com/2011/05/08/imgaaa-net-and-other-blacklisted-domains-used-in-google-image-search-poisoning/#update4">update</a>: new malicious domain eozljijd .co.cc (not blacklisted yet) and new img URL pattern</p>
<p><span style="color: #888888;"><strong>May 31, 2011</strong></span></p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/gcluley">gcluley</a>: See how <a href="http://nakedsecurity.sophos.com/2011/05/30/fake-firefox-warnings-lead-to-scareware/">scareware criminals disguise their latest attacks as a Firefox malware warning</a></p>
<p style="padding-left: 30px;">[threatstop.com] <a href="http://blog.threatstop.com/2011/05/31/ip-reputation-to-reduce-the-risk-of-being-hacked/">IP Reputation to Reduce the Risk of Being Hacked</a></p>
<p><span style="color: #888888;"><strong>June 2, 2011</strong></span></p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/threatpost">threatpost</a>:<a href="http://www.f-secure.com/weblog/archives/00002175.html"> (#Mac Market Share)x(#Google Images SEO Poisoning)=Gold Rush</a> video with @<a rel="nofollow" href="http://twitter.com/mikkohypponen">mikkohypponen</a> &amp; @<a rel="nofollow" href="http://twitter.com/FSLabsAdvisor">FSLabsAdvisor</a></p>
<p style="padding-left: 30px;">VirusTotal Faceoff: FakeAV <a href="http://www.virustotal.com/file-scan/report.html?id=a16767ae76fe6e09bdb73319fc7e5153aa30e9d9239e15c2ad67df66de4baac4-1307028057">Mac</a> vs <a href="http://www.virustotal.com/file-scan/report.html?id=d8e431d34e89ea9e138d902f80741b9a7c655d8664f0dc9c667e71ba670445d0-1307028328">PC</a> (this hour downloads) &#8212; PC wins: only 3 detections</p>
<p style="padding-left: 30px;">Only Sophos and F-Secure detected both Mac and PC fakeAV (see my previous tweet)</p>
<p><span style="color: #888888;"><strong>June 7, 2011</strong></span></p>
<p style="padding-left: 30px;">Ready for the World IPv6 Day, June 8? <a rel="nofollow" href="http://ipv6test.google.com/" target="_blank">http://ipv6test.google.com/</a></p>
<p style="padding-left: 30px;">Mozilla has finally approved my &#8220;Readable SafeBrowsing&#8221; add-on for Firefox 4+. You can get it here: <a href="https://addons.mozilla.org/en-US/firefox/addon/readable-safebrowsing/">https://addons.mozilla.org/en-US/firefox/addon/readable-safebrowsing/</a></p>
<p><span style="color: #888888;"><strong>June 10, 2011</strong></span></p>
<p style="padding-left: 30px;">[securelist.com] <a href="http://www.securelist.com/en/blog/208188101/Dangerous_whitespaces">Dangerous whitespaces</a> &#8212; rogue CoreLibrariesHandler() function uses whitespaces as a cipher</p>
<p><span style="color: #888888;"><strong>June 12, 2011</strong></span></p>
<p style="padding-left: 30px;">RT @<a rel="nofollow" href="http://twitter.com/stopbadware">stopbadware</a>: StopBadware happily announces <a href="http://www.businesswire.com/news/home/20110608005140/en/StopBadware-releases-report-state-badware">the public debut of our first State of #Badware report</a>!</p>
<p>If you want more real-time experience, you can follow <a href="http://twitter.com/unmaskparasites">@UnmaskParasites</a> on Twitter.</p>
<p><span style="color: #888888;"><strong>Related posts:</strong></span></p>
<ul>
<li> <a href="http://blog.unmaskparasites.com/category/tweet-week/">Previous Tweet Weeks</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blog.unmaskparasites.com/2011/06/13/two-tweet-weeks-may-30-june-12-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

