<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>ironcove.net</title>
	<atom:link href="http://www.ironcove.net/feed" rel="self" type="application/rss+xml" />
	<link>http://www.ironcove.net</link>
	<description>Promoting Open Source IT Security Solutions for ngo and nonprofit organisations in the pursuit of human rights for all.</description>
	<pubDate>Thu, 21 Aug 2008 23:25:01 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.1</generator>
	<language>en</language>
			<item>
		<title>Georgian Cyber Attacks from Russia?</title>
		<link>http://www.ironcove.net/archives/85</link>
		<comments>http://www.ironcove.net/archives/85#comments</comments>
		<pubDate>Thu, 21 Aug 2008 23:25:01 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/?p=85</guid>
		<description><![CDATA[More speculation about government sponsored cyber attacks. This time its in the Russia vs Georgia sphere.
Here is a copy of a post to the Shadowserver mailing list:

We wanted to give everyone an update on what we have been seeing in terms of
DDoS attacks against Georgian websites.  The last DDoS-related blog we had
in July involved [...]]]></description>
			<content:encoded><![CDATA[<p>More speculation about government sponsored cyber attacks. This time its in the Russia vs Georgia sphere.</p>
<p>Here is a copy of a post to the Shadowserver mailing list:</p>
<blockquote><p>
We wanted to give everyone an update on what we have been seeing in terms of<br />
DDoS attacks against Georgian websites.  The last DDoS-related blog we had<br />
in July involved the website for the President of Georgia.  In the last few<br />
days we have seen a resurgence in attacks against both the President of<br />
Georgia&#8217;s website and other Georgian targets - both government and<br />
non-government.  If you are interested you may read more at the following<br />
URL:</p></blockquote>
<p><a href="http://www.shadowserver.org/wiki/pmwiki.php?n=Calendar.20080811">http://www.shadowserver.org/wiki/pmwiki.php?n=Calendar.20080811</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/85/feed</wfw:commentRss>
		</item>
		<item>
		<title>Interesting articles on Surveillance and the Olympics</title>
		<link>http://www.ironcove.net/archives/84</link>
		<comments>http://www.ironcove.net/archives/84#comments</comments>
		<pubDate>Thu, 21 Aug 2008 23:16:53 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/?p=84</guid>
		<description><![CDATA[Just a quick one with a couple of interesting links:
The surveillance system allegely sold to China for monitoring the olympics
http://www.quintessenz.at/doqs/000100004315/2007_02_01,siemens_intelligence_platform.pdf
http://www.quintessenz.at/doqs/000100004353/2008_05_11_olympic_surveillance.pdf
And surveillance made easy -
http://technology.newscientist.com/channel/tech/mg19926705.900-surveillance-made-easy.html
]]></description>
			<content:encoded><![CDATA[<p>Just a quick one with a couple of interesting links:</p>
<p>The surveillance system allegely sold to China for monitoring the olympics</p>
<p><a href="http://www.quintessenz.at/doqs/000100004315/2007_02_01,siemens_intelligence_platform.pdf">http://www.quintessenz.at/doqs/000100004315/2007_02_01,siemens_intelligence_platform.pdf</a><br />
<a href="http://www.quintessenz.at/doqs/000100004353/2008_05_11_olympic_surveillance.pdf">http://www.quintessenz.at/doqs/000100004353/2008_05_11_olympic_surveillance.pdf</a></p>
<p>And surveillance made easy -<br />
<a href="http://technology.newscientist.com/channel/tech/mg19926705.900-surveillance-made-easy.html">http://technology.newscientist.com/channel/tech/mg19926705.900-surveillance-made-easy.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/84/feed</wfw:commentRss>
		</item>
		<item>
		<title>Opera 9.5 puts up a fight against malware</title>
		<link>http://www.ironcove.net/archives/83</link>
		<comments>http://www.ironcove.net/archives/83#comments</comments>
		<pubDate>Sat, 14 Jun 2008 08:29:01 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/?p=83</guid>
		<description><![CDATA[While we here at Ironcove.net are big fans of Linux on the desktop, we are also aware that it can be a scary proposition for those who have used Microsoft products for years. Running an alternative browser on your Windows platform is often a first step towards greater security against malware and getting away from [...]]]></description>
			<content:encoded><![CDATA[<p>While we here at <a href="http://www.ironcove.net">Ironcove.net</a> are big fans of <a href="http://www.ubuntu.com">Linux on the desktop</a>, we are also aware that it can be a scary proposition for those who have used Microsoft products for years. Running an alternative browser on your Windows platform is often a first step towards greater security against malware and getting away from the control that Microsoft exerts through its dominance. <a href="http://www.opera.com/">Opera</a> have an alternative browser to <a href="www.mozilla.com">Firefox</a> and Internet Explorer, and the latest version has some great anti-malware features that could be an excellent defense against malware based attacks.</p>
<p>A good review of the <a href="http://www.desktoplinux.org/news/NS9484574306.html">new version of Opera 9.5 is over at Linuxdesktop.org</a></p>
<blockquote><p>The centerpiece of version 9.5 is a security package based on technology from Haute Secure, Netcraft, and PhishTank, that the Norway-based Opera Software calls &#8220;Opera Fraud Protection.&#8221; The anti-malware feature from Haute Secure automatically blocks offending Web pages to protect against malware and other security threats. The browser queries Opera&#8217;s servers when a user requests a new webpage and then checks it against the HauteSecure list of blacklisted pages in the same domain. Meanwhile, verson 9.5 continues to update anti-phishing features from PhishTank, which were introduced in Opera 9.1 back in December 2006.</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/83/feed</wfw:commentRss>
		</item>
		<item>
		<title>When Dragons Attack - Tibetan Hacking Review Paper</title>
		<link>http://www.ironcove.net/archives/82</link>
		<comments>http://www.ironcove.net/archives/82#comments</comments>
		<pubDate>Thu, 24 Apr 2008 23:55:05 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[papers]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/?p=82</guid>
		<description><![CDATA[Over the past two months there has been a significant increase in targeted malware and other attacks against the Tibetan Community and its supporters. Ironcove.net has put together a paper that covers the various attacks and looks into the possibility and extent of Chinese Government involvement in those attacks. We have also highlighted the fact [...]]]></description>
			<content:encoded><![CDATA[<p>Over the past two months there has been a significant increase in targeted malware and other attacks against the Tibetan Community and its supporters. <a href="http://www.ironcove.net">Ironcove.net</a> has put together a paper that covers the various attacks and looks into the possibility and extent of Chinese Government involvement in those attacks. We have also highlighted the fact that many of these attacks would be ineffective against an Ubuntu Desktop operating system.</p>
<p>It is the recommendation of <a href="http://www.ironcove.net">ironcove.net</a> that human rights groups around the world should start to seriously look at the benefits of running a free and open operating system such as Ubuntu Linux. Today a new release of <a href="http://www.ubuntu.com" target="_blank">Ubuntu</a> has been launched, it is a great time to sample the power of Open Source.</p>
<p><a href='http://www.ironcove.net/papers/whendragonsattack.pdf' >When Dragons Attack (PDF)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/82/feed</wfw:commentRss>
		</item>
		<item>
		<title>HackerTarget.com offering Free Nessus Scanning to Non-profits</title>
		<link>http://www.ironcove.net/archives/80</link>
		<comments>http://www.ironcove.net/archives/80#comments</comments>
		<pubDate>Thu, 24 Apr 2008 22:50:57 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/?p=80</guid>
		<description><![CDATA[Our friends over at HackerTarget.com have recently started offering free Nessus Vulnerability Scanning to non-profit organisations. Nessus is the worlds leading vulnerability scanning solution. It is a tool that scans an IP address for vulnerabilities so that they can then be acted upon and fixed. In some ways it is a simulated hacker attack against [...]]]></description>
			<content:encoded><![CDATA[<p>Our friends over at <a href="http://www.hackertarget.com">HackerTarget.com</a> have recently started offering free <a href="http://www.nessus.org">Nessus</a> Vulnerability Scanning to non-profit organisations. Nessus is the worlds leading vulnerability scanning solution. It is a tool that scans an IP address for vulnerabilities so that they can then be acted upon and fixed. In some ways it is a simulated hacker attack against your server - so that when you do get scanned by hackers, your security holes have already been fixed. If you run any internet connected server it is a good idea to test it for security problems on a regular basis.</p>
<p><a href="http://hackertarget.com/nonprofit">Free Vulnerability Scanning for Nonprofits</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/80/feed</wfw:commentRss>
		</item>
		<item>
		<title>Further Cyber Attacks on the Tibetan Community</title>
		<link>http://www.ironcove.net/archives/79</link>
		<comments>http://www.ironcove.net/archives/79#comments</comments>
		<pubDate>Wed, 16 Apr 2008 13:57:55 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/?p=79</guid>
		<description><![CDATA[The Register has a summary of more targeted malware attacks against the Tibetan Community and Supporters. The attack involves an email that when the flash movie is viewed it will install a keylogger on the computer. The keylogger will then record all keystrokes on the computer and send the details to a server in China.
Now [...]]]></description>
			<content:encoded><![CDATA[<p>The Register has a summary of more targeted malware attacks against the Tibetan Community and Supporters. The attack involves an email that when the flash movie is viewed it will install a keylogger on the computer. The keylogger will then record all keystrokes on the computer and send the details to a server in China.</p>
<p>Now I am not going to point fingers and I would like to do some more research into these attacks and the possible origins. Remember just because it appears the attacks are coming from China nothing is certain, as this could as easily be a bored teenager in the USA who compromised a server in China or it could be something more sinister.</p>
<p>It does highlight however the importance of secure internet and computing facilities in any organization or movement.</p>
<p>Read the article <a href="http://www.theregister.co.uk/2008/04/15/pro_tibet_trojan/">here for a summary</a> and there is a good technical blog with <a href="http://www.avertlabs.com/research/blog/index.php/2008/04/14/is-malware-writing-the-next-olympic-event">more details here</a>.</p>
<blockquote><p>Executing the file, called RaceForTibet.exe, shows a cartoon with a very skilled Chinese gymnast performing some amazingly convoluted exercise on a “vaulting Bbox” for which the jury immediately scored her a shocking 0! Whilst the gymnast’s performance is “re-wound,” a number of fairly stark photographs of real events, taking place throughout China and Tibet, are shown as a flashback.</p></blockquote>
<p><a href="http://www.theregister.co.uk/2008/04/15/pro_tibet_trojan/">http://www.theregister.co.uk/2008/04/15/pro_tibet_trojan/</a><br />
<a href="http://www.avertlabs.com/research/blog/index.php/2008/04/14/is-malware-writing-the-next-olympic-event">http://www.avertlabs.com/research/blog/index.php/2008/04/14/is-malware-writing-the-next-olympic-event</a><br />
<a href="http://www.avertlabs.com/research/blog/index.php/2008/03/11/social-engineering-tricks-use-tibet-to-lure-victims/">http://www.avertlabs.com/research/blog/index.php/2008/03/11/social-engineering-tricks-use-tibet-to-lure-victims/</a><br />
<a href="http://www.avertlabs.com/research/blog/index.php/2008/04/10/friebet-attacking-your-backend-database-from-your-backyard//">http://www.avertlabs.com/research/blog/index.php/2008/04/10/friebet-attacking-your-backend-database-from-your-backyard/</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/79/feed</wfw:commentRss>
		</item>
		<item>
		<title>China cracks down on insider cyber hacking</title>
		<link>http://www.ironcove.net/archives/78</link>
		<comments>http://www.ironcove.net/archives/78#comments</comments>
		<pubDate>Mon, 07 Apr 2008 06:12:53 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/archives/78</guid>
		<description><![CDATA[China is still in the news with Cyber Attacks making headlines. Political hacking by government and non-government organisations seems to becoming a hot topic.
Politically motivated external attacks have been rife in the past few weeks.
Members of the Save Darfur coalition told the Washington Post last week that their server had been attacked by hackers traced [...]]]></description>
			<content:encoded><![CDATA[<p>China is still in the news with Cyber Attacks making headlines. Political hacking by government and non-government organisations seems to becoming a hot topic.</p>
<blockquote><p>Politically motivated external attacks have been rife in the past few weeks.</p>
<p>Members of the Save Darfur coalition told the Washington Post last week that their server had been attacked by hackers traced to computers in China.</p>
<p>And several pro-Tibet groups reported receiving email viruses ­ although IP addresses have yet to be traced.</p>
<p>Last summer also saw allegations of cyber espionage attacks on Whitehall departments, as well as a warning to UK businesses from MI5 that Chinese hackers were looking to infiltrate their networks.</p></blockquote>
<p><a href="http://www.whatpc.co.uk/computing/analysis/2213355/china-cracks-insider-cyber-3925005">China cracks down on insider cyber hacking </a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/78/feed</wfw:commentRss>
		</item>
		<item>
		<title>Cyber attacks on Tibetan Community and NGO&#8217;s</title>
		<link>http://www.ironcove.net/archives/77</link>
		<comments>http://www.ironcove.net/archives/77#comments</comments>
		<pubDate>Wed, 26 Mar 2008 09:18:49 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/archives/77</guid>
		<description><![CDATA[Over the past few days there have been a number of reports in the mainstream media about targetted Information Warfare attacks against the Tibetan NGO community. These attacks are attempts by a third party (I wonder who that could be) to send malicious emails to various members of these communites. If these attacks succeed then [...]]]></description>
			<content:encoded><![CDATA[<p>Over the past few days there have been a number of reports in the mainstream media about targetted Information Warfare attacks against the Tibetan NGO community. These attacks are attempts by a third party (I wonder who that could be) to send malicious emails to various members of these communites. If these attacks succeed then the victim&#8217;s computer could end up with Keyloggers and other trojans that would allow the third party access to everything typed on the infected system and full control of the PC.</p>
<p>The <a href="http://isc.sans.org">Sans Internet Storm Centre</a> has a <a href="http://isc.sans.org/diary.html?storyid=4176&#038;rss">good technical summary</a> and <a href="http://isc.sans.org/diary.html?storyid=4177">another here</a>, while other news agencies such as the <a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/03/21/AR2008032102605.html">Washington Post</a> and <a href="http://www.theregister.co.uk/2008/03/22/pro_tibetan_groups_targeted/">the Register</a> have more general information.</p>
<p>I urge all NGO&#8217;s to be aware of the dangers of having an insecure computer and policies.</p>
<p>Things you can do stay secure:</p>
<p>* Always update your software (Update Operating Systems and Applications), everything from Ubuntu updates, Windowsupdate to Adobe Reader updates and flash player updates. All your software needs to stay updated. Now if this means buying new licenses please consider the <a href="http://www.ubuntulinux.org">alternatives</a>.<br />
* Beware of opening attachments - are you expecting it if not use caution. Even if they appear to come from someone you know.<br />
* Use strong passwords on all your systems and websites and try not to use the same password everywhere!<br />
* Use virus scanning software and keep it updated (especially important if you use the Microsoft Windows Operating System</p>
<p><a href="http://isc.sans.org">Sans Internet Storm Centre - Article 1</a><br />
<a href="http://isc.sans.org/diary.html?storyid=4177">Sans Internet Storm Centre - Article 2</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/77/feed</wfw:commentRss>
		</item>
		<item>
		<title>OLPC on the ground in Peru - Astounded in Arahuay</title>
		<link>http://www.ironcove.net/archives/76</link>
		<comments>http://www.ironcove.net/archives/76#comments</comments>
		<pubDate>Sun, 23 Mar 2008 00:07:12 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/archives/76</guid>
		<description><![CDATA[Peru are implementing One Laptop Per Child program that will distribute laptops to 260&#8242;000 school children. A pilot project involved 50 laptops being sent to a remote village. Read the article for a fascinating and surprising look into the results.
I wanted to know what the laptops had done for the kids. I told them I’m [...]]]></description>
			<content:encoded><![CDATA[<p>Peru are implementing <a href="http://www.laptop.org">One Laptop Per Child</a> program that will distribute laptops to 260&#8242;000 school children. A pilot project involved 50 laptops being sent to a remote village. Read the <a href="http://radian.org/notebook/astounded-in-arahuay">article</a> for a fascinating and surprising look into the results.</p>
<blockquote><p>I wanted to know what the laptops had done for the kids. I told them I’m not a reporter, I don’t answer to the Ministry, and — an important disclaimer for an overpoliticized country like Peru — I don’t pander to bullshit politics. I wanted to hear if they thought the laptops were helping.</p>
<p>After looking at me blankly for a good half-minute, Mr. Navarro shot back with “evidentemente”, “obviously”, and palpably left off “you idiot” from the end of the sentence. I appreciated the small courtesy and asked a more specific question: what changed in the 8 months since the laptops arrived?</p></blockquote>
<p><a href="http://radian.org/notebook/astounded-in-arahuay">Astound in Arahuay</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/76/feed</wfw:commentRss>
		</item>
		<item>
		<title>Cuban Internet Access is limited, so alternatives are used</title>
		<link>http://www.ironcove.net/archives/75</link>
		<comments>http://www.ironcove.net/archives/75#comments</comments>
		<pubDate>Sat, 08 Mar 2008 00:44:25 +0000</pubDate>
		<dc:creator>Administrator</dc:creator>
		
		<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.ironcove.net/archives/75</guid>
		<description><![CDATA[Due to restrictions with access to the internet in Cuba based around cost and control, the younger generation are passing around memory sticks containing the media they crave. An interesting article from the NYTimes.
HAVANA — A growing underground network of young people armed with computer memory sticks, digital cameras and clandestine Internet hookups has been [...]]]></description>
			<content:encoded><![CDATA[<p>Due to restrictions with access to the internet in Cuba based around cost and control, the younger generation are passing around memory sticks containing the media they crave. An interesting article from the NYTimes.</p>
<blockquote><p>HAVANA — A growing underground network of young people armed with computer memory sticks, digital cameras and clandestine Internet hookups has been mounting some challenges to the Cuban government in recent months, spreading news that the official state media try to suppress.</p></blockquote>
<blockquote><p>Last month, students at a prestigious computer science university videotaped an ugly confrontation they had with Ricardo Alarcón, the president of the National Assembly.</p>
<p>Mr. Alarcón seemed flummoxed when students grilled him on why they could not travel abroad, stay at hotels, earn better wages or use search engines like Google. The video spread like wildfire through Havana, passed from person to person, and seriously damaged Mr. Alarcón’s reputation in some circles. </p></blockquote>
<p><a href="http://www.nytimes.com/2008/03/06/world/americas/06cuba.html?ex=1362546000&#038;en=eff6155b2c2d280d&#038;ei=5124&#038;partner=permalink&#038;exprod=permalink" target="_blank">Cyber-Rebels in Cuba Defy State’s Limits</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ironcove.net/archives/75/feed</wfw:commentRss>
		</item>
	</channel>
</rss>
