<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Web Security 101</title>
	<atom:link href="http://websecurity101.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://websecurity101.com</link>
	<description>Info, News and teaching you Web Security 1 on 1 ....</description>
	<pubDate>Fri, 07 Nov 2008 09:54:44 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6</generator>
	<language>en</language>
			<item>
		<title>Protect yourself from Phishers</title>
		<link>http://websecurity101.com/information/protect-yourself-from-phishers/</link>
		<comments>http://websecurity101.com/information/protect-yourself-from-phishers/#comments</comments>
		<pubDate>Tue, 07 Oct 2008 08:42:20 +0000</pubDate>
		<dc:creator>Jerson</dc:creator>
		
		<category><![CDATA[Information]]></category>

		<guid isPermaLink="false">http://websecurity101.com/?p=100</guid>
		<description><![CDATA[
 Image Source: identity20.com         
To protect yourself from phishers, there is an easy way that offers reliable phishing scams detection. Netcraft is one. It focuses on tracking down online technology. It is a toolbar available in Internet Explorer and Firefox. And it has a great community for [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://identity20.com/images/2007/11/phishing.png" alt="" /></p>
<p><em> Image Source: identity20.com      </em>   </p>
<p>To protect yourself from phishers, there is an easy way that offers reliable phishing scams detection. Netcraft is one. It focuses on tracking down <a href="http://dailyinternetjournal.com">online technology</a>. It is a toolbar available in Internet Explorer and Firefox. And it has a great community for user support. It protects you from phishing attacks. Another tool bar that offers phishing protection is the Yahoo Toolbar. You can rest assured your Paypal and eBay accounts are safe. And the number one way of prevention of phishing attacks is by doing away with greed. Greed for money or to make lot of them makes our senses lose its focus and we tend to separate ourselves from the reality. The phishers use this fault to get past our common sense. Check you emails and read them carefully. Analyze the content. If its too good to be true then  don not at any time entertain or respond to it. It is best to check on the main website of an account or bank rather than clicking on the links provided in the email, if you get important advisories from your accounts. There is no gold at the end of the rainbow and certainly, you will not win a lottery if you did not buy a ticket in the first place. So beware and never put your greed in the front.    </p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/protect-yourself-from-phishers/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Safer Computing Online</title>
		<link>http://websecurity101.com/network-security/safer-computing-online/</link>
		<comments>http://websecurity101.com/network-security/safer-computing-online/#comments</comments>
		<pubDate>Sun, 28 Sep 2008 08:54:14 +0000</pubDate>
		<dc:creator>Jerson</dc:creator>
		
		<category><![CDATA[Network Security]]></category>

		<category><![CDATA[online]]></category>

		<category><![CDATA[safety]]></category>

		<guid isPermaLink="false">http://websecurity101.com/?p=56</guid>
		<description><![CDATA[
Computer viruses threaten the user everyday. It gets more dangerous each day. One day they can tap into your personal information and steal your identity for criminal activities.
Tehre are free softwares  that unleashes spyware, trojans, or worms on your system. So dont go trying them all out because its free. Others install popups which [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.geeksontime.com/venusimages/IsItSafeCOMPRESSED.jpg" alt="" /></p>
<p><a href="http://everythingftp.com">Computer viruses</a> threaten the user everyday. It gets more dangerous each day. One day they can tap into your personal information and steal your identity for criminal activities.<br />
Tehre are free softwares  that unleashes spyware, trojans, or worms on your system. So dont go trying them all out because its free. Others install popups which always annoys the users.</p>
<p>Arm your computer and protect yourself against these potential attecks by installing a good antivirus software. Using the firewall greatly reduces the risk of hackers crawling into your system.<br />
Now adays, browsers are equipped with popup blockers, so you can enable this feature to ward of annoying popups while you view a certain page in your favorite site. Changing passwords regularly can be of good use. And dont forget to keep those passwords to yourself. Never indulge it to others, not even to your mother. </p>
<p>These are a few things that might protect you from becoming a victim.<br />
<em> Image Source:geeksontime       </em></p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/network-security/safer-computing-online/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Youtube is not safe too.</title>
		<link>http://websecurity101.com/information/youtube-is-not-safe-too/</link>
		<comments>http://websecurity101.com/information/youtube-is-not-safe-too/#comments</comments>
		<pubDate>Tue, 19 Aug 2008 12:50:51 +0000</pubDate>
		<dc:creator>Jerson</dc:creator>
		
		<category><![CDATA[Hacks]]></category>

		<category><![CDATA[Info]]></category>

		<category><![CDATA[Information]]></category>

		<category><![CDATA[Network Security]]></category>

		<category><![CDATA[Prevention]]></category>

		<guid isPermaLink="false">http://websecurity101.com/?p=61</guid>
		<description><![CDATA[
Image source:www.youtubeic.com
Remember what your computer teachers or anyone good enough, told you not to tell your “secret words” (Meaning, not just your passwords) to anyone? Well, some hackers send malicious softwares or malwares to capture your keystrokes, copy your precious data, or even control your computer to hack another person. Okay, maybe you know about [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://websecurity101.com/wp-content/uploads/2008/10/images.jpg"><img src="http://websecurity101.com/wp-content/uploads/2008/10/images.jpg" alt="" title="images" width="125" height="94" class="alignnone size-medium wp-image-62" /></a><br />
Image source:www.youtubeic.com<br />
Remember what your computer teachers or anyone good enough, told you not to tell your “secret words” (Meaning, not just your passwords) to anyone? Well, some hackers send <a href="http://websecuritytips.net">malicious softwares or malwares to capture your keystrokes</a>, copy your precious data, or even control your computer to hack another person. Okay, maybe you know about that too, and even the “hackers use websites for these purposes” thing. But! Did you know that Youtube is not that different from these sites? That’s right. Youtube has these links, and you might just open these things since these links looks trust worthy, and your “friend” sent this link. In short, Youtube is not different from Myspace now. Well, to save yourself from these hackers, just use the search engine in Youtube, or if the link is not in youtube, copy the link and paste it to yahoo or google, and their protection might show the true face of that page. But if you think that its such a hassle, then just don’t open it.</p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/youtube-is-not-safe-too/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Web vulnerabilities</title>
		<link>http://websecurity101.com/web-security/web-vulnerabilities/</link>
		<comments>http://websecurity101.com/web-security/web-vulnerabilities/#comments</comments>
		<pubDate>Tue, 08 Jul 2008 02:52:06 +0000</pubDate>
		<dc:creator>Jerson</dc:creator>
		
		<category><![CDATA[Hacks]]></category>

		<category><![CDATA[Info]]></category>

		<category><![CDATA[Threats]]></category>

		<category><![CDATA[Web Security]]></category>

		<guid isPermaLink="false">http://websecurity101.com/web-security/web-vulnerabilities/</guid>
		<description><![CDATA[
Top Ten Reasons why Websites Get Hacked
Experts say most Web applications can be hacked. Here are the top ten vulnerabilities that could put your Web site at risk.
   1. Cross site scripting
   2. Injection flaws
   3. Malicious file execution
   4. Insecure direct object reference
   5. [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://rbytes.net/software/acunetix-web-vulnerability-scanner-review/"><img src="/wp-content/uploads/scraped/13.jpg"/></a>
<p>Top Ten Reasons why Websites Get Hacked</p>
<p>Experts say most Web applications can be hacked. Here are the top ten vulnerabilities that could put your Web site at risk.</p>
<p>   1. Cross site scripting<br />
   2. Injection flaws<br />
   3. Malicious file execution<br />
   4. Insecure direct object reference<br />
   5. Cross site request forgery<br />
   6. Information leakage and improper error handling<br />
   7. Broken authentication and session management<br />
   8. Insecure cryptographic storage<br />
   9. Insecure communications<br />
  10. Failure to restrict URL access</p>
<p>SOURCE: OWASP (the Open Web Application Security Project)</p>
<p>Related Links For added reading : <a href="http://www.networkworld.com/news/2007/100407-web-site-vulnerabilities.html">NetworkWorld.com</a></p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/web-security/web-vulnerabilities/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Types of Network/Internet Security Incidents</title>
		<link>http://websecurity101.com/web-security/types-of-networkinternet-security-incidents/</link>
		<comments>http://websecurity101.com/web-security/types-of-networkinternet-security-incidents/#comments</comments>
		<pubDate>Sat, 07 Jun 2008 14:28:45 +0000</pubDate>
		<dc:creator>Jerson</dc:creator>
		
		<category><![CDATA[Network Security]]></category>

		<category><![CDATA[Web Security]]></category>

		<guid isPermaLink="false">http://websecurity101.com/web-security/types-of-networkinternet-security-incidents/</guid>
		<description><![CDATA[
Probe : Unusual attempts to gain access or discover something about system.
Scan : Many probes done using an automated tool.
Account Compromise : Unauthorized use of a computer account by someone other than the account owner.
Root Compromise : Similar to an account compromise, except that the account that has been compromised has special privileges on the [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.iwar.org.uk/comsec/resources/canada-ia/infosecawareness.htm"><img src="/wp-content/uploads/scraped/6.jpg"/></a>
<p><strong>Probe</strong> : Unusual attempts to gain access or discover something about system.</p>
<p><strong>Scan</strong> : Many probes done using an automated tool.</p>
<p><strong>Account Compromise</strong> : Unauthorized use of a computer account by someone other than the account owner.</p>
<p><strong>Root Compromise</strong> : Similar to an account compromise, except that the account that has been compromised has special privileges on the system.</p>
<p><strong>Packet Sniffer </strong>: A program that captures data from information packets as they travel over the network.</p>
<p><strong>Denial of Service</strong> : The goal of denial-of-service attacks is to prevent legitimate users of a service from using it.</p>
<p><strong>Exploitation of Trust</strong> : Computers on networks often have trust relationships with one another. For example, before executing some commands, the computer checks a set of files that specify which other computers on the network are permitted to use those commands. If attackers can forge their identity, appearing to be using the trusted computer, they may be able to gain unauthorized access to other computers.</p>
<p><strong>Malicious Code</strong> : Programs like viruses, worms and Trojan horses.</p>
<p><strong>Internet Infrastructure Attacks</strong> : Rare attacks on network name servers, network access providers, and large archive sites.</p>
<p><a href="http://www.clearleadinc.com/site/internet_security.html">Source</a></p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/web-security/types-of-networkinternet-security-incidents/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Google adds Web Security</title>
		<link>http://websecurity101.com/information/google-adds-web-security/</link>
		<comments>http://websecurity101.com/information/google-adds-web-security/#comments</comments>
		<pubDate>Tue, 27 May 2008 18:01:12 +0000</pubDate>
		<dc:creator>editor</dc:creator>
		
		<category><![CDATA[Information]]></category>

		<category><![CDATA[google]]></category>

		<category><![CDATA[Web Security]]></category>

		<guid isPermaLink="false">http://websecurity101.com/uncategorized/google-adds-web-security/</guid>
		<description><![CDATA[
by: Djai Tanji
Google is now adding Web security for net surfing and remote workers to its Google Apps set of office tools. Google Web Security for Enterprise comprising real time malware protection and URL filtering with policy implementation and reporting and this was made possible by Postini, which was last year’s acquisition of security vendor. [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.thetechherald.com/article.php/200827/1394/Google-releases-ratproxy-passive-security-assessment-tool"><img src="/wp-content/uploads/scraped/53.jpg"/></a>
<p>by: Djai Tanji</p>
<p>Google is now adding Web security for net surfing and remote workers to its Google Apps set of office tools. Google Web Security for Enterprise comprising real time malware protection and URL filtering with policy implementation and reporting and this was made possible by Postini, which was last year’s acquisition of security vendor. There is an additional feature that extends the same protections to users who works remotely on laptops in cafes, hotels, restaurants and guest networks. This allows companies to protect their networks from Web-based malware , implement internet use policies at the user, company level and workgroup, and Google Web security will receive comprehensible reporting on all web activities.</p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/google-adds-web-security/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Yahoo Team and McAfee: Web Security</title>
		<link>http://websecurity101.com/information/yahoo-team-and-mcafee-web-security/</link>
		<comments>http://websecurity101.com/information/yahoo-team-and-mcafee-web-security/#comments</comments>
		<pubDate>Fri, 23 May 2008 18:00:12 +0000</pubDate>
		<dc:creator>editor</dc:creator>
		
		<category><![CDATA[Information]]></category>

		<category><![CDATA[mcAfee]]></category>

		<category><![CDATA[Yahoo]]></category>

		<guid isPermaLink="false">http://websecurity101.com/uncategorized/yahoo-team-and-mcafee-web-security/</guid>
		<description><![CDATA[
by: Djai Tanji
McAfee and Yahoo announced their partnership on Web’s security wherein Yahoo’s search engine is making available to users the warnings about unnecessary and malicious code on Web sites that will be detected through McAfee’s security technology. McAfee calls the technology, SiteAdvisor and this has been integrated into Yahoo’s search engine mechanism making a [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.techshout.com/internet/2007/17/security-flaw-in-yahoo-messenger-web-chat-discovered-by-mcafee/"><img src="/wp-content/uploads/scraped/52.jpg"/></a>
<p>by: Djai Tanji</p>
<p>McAfee and Yahoo announced their partnership on Web’s security wherein Yahoo’s search engine is making available to users the warnings about unnecessary and malicious code on Web sites that will be detected through McAfee’s security technology. McAfee calls the technology, SiteAdvisor and this has been integrated into Yahoo’s search engine mechanism making a user, after performing a search, obtain the flagged sites after clicking “searchscan.” However, no Yahoo advertisers will be picked up and flagged in the SiteAdvisor. The yahoo security warning system does not block users from accessing the page but will recommend to avoid the flagged content. With all this preclusion of users from visiting malicious websites, yahoo will lessen the channels obtainable for spam, adware, malware and phishing to spread.</p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/yahoo-team-and-mcafee-web-security/feed/</wfw:commentRss>
		</item>
		<item>
		<title>How websites deal with SQL injection</title>
		<link>http://websecurity101.com/information/how-websites-deal-with-sql-injection/</link>
		<comments>http://websecurity101.com/information/how-websites-deal-with-sql-injection/#comments</comments>
		<pubDate>Tue, 20 May 2008 17:59:29 +0000</pubDate>
		<dc:creator>editor</dc:creator>
		
		<category><![CDATA[Information]]></category>

		<category><![CDATA[SQL injection]]></category>

		<guid isPermaLink="false">http://websecurity101.com/uncategorized/how-websites-deal-with-sql-injection/</guid>
		<description><![CDATA[
by: Djai Tanji
The substantial SQL injection attacks that struck Microsoft-based websites claimed as one of its victims Autoweb which is a U.K. based advertising and marketing site. The continuous attack that hits Autoweb exploited susceptibility in a single line of code in the web application to cut through the company’s Microsoft SQL database and knock [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://4xsecurityteam.blogspot.com/2008/07/sql-injection-exploits-wimbledon-tennis.html"><img src="/wp-content/uploads/scraped/51.jpg"/></a>
<p>by: Djai Tanji</p>
<p>The substantial SQL injection attacks that struck Microsoft-based websites claimed as one of its victims Autoweb which is a U.K. based advertising and marketing site. The continuous attack that hits Autoweb exploited susceptibility in a single line of code in the web application to cut through the company’s Microsoft SQL database and knock the site offline. Autoweb’s IT staff then realized that database tables which stores content provided by car dealers had been overwritten with a 30-character script and that gave them a window of opportunity. Autoweb blocked the attacks by looking at log files which originated from IP addresses in China. Autoweb did an everyday backing up and asked assistance from Secerno, a U.K. based firm to build a database security appliance.</p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/how-websites-deal-with-sql-injection/feed/</wfw:commentRss>
		</item>
		<item>
		<title>ScanSafe’s “Web Security as a Service”</title>
		<link>http://websecurity101.com/information/scansafe%e2%80%99s-%e2%80%9cweb-security-as-a-service%e2%80%9d/</link>
		<comments>http://websecurity101.com/information/scansafe%e2%80%99s-%e2%80%9cweb-security-as-a-service%e2%80%9d/#comments</comments>
		<pubDate>Fri, 16 May 2008 17:58:50 +0000</pubDate>
		<dc:creator>editor</dc:creator>
		
		<category><![CDATA[Information]]></category>

		<category><![CDATA[ScanSafe’s “Web Security as a Service”]]></category>

		<guid isPermaLink="false">http://websecurity101.com/uncategorized/scansafe%e2%80%99s-%e2%80%9cweb-security-as-a-service%e2%80%9d/</guid>
		<description><![CDATA[
by: Djai Tanji
ScanSafe offers a “Web Security as a Service” when report presents state of global information security threats. This offer by ScanSafe provides a managed service which means that there is nothing for customers to install or maintain on-premise, routing its clients’ web traffic by secure proxies to scan content in real-time that will [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.scansafe.com/resources/total_cost_of_ownership"><img src="/wp-content/uploads/scraped/50.jpg"/></a>
<p>by: Djai Tanji</p>
<p>ScanSafe offers a “Web Security as a Service” when report presents state of global information security threats. This offer by ScanSafe provides a managed service which means that there is nothing for customers to install or maintain on-premise, routing its clients’ web traffic by secure proxies to scan content in real-time that will secure them from malware and also give a way for them to impose acceptable web usage policies.  They were able to scan more than 80 billion web requests and blocked more than 800 million web threats in 2007 on behalf of corporate customers in more than 50 countries. And password stealing malware was the most frequent type of attacks in the blocked events which was about 37% of total attacks.</p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/scansafe%e2%80%99s-%e2%80%9cweb-security-as-a-service%e2%80%9d/feed/</wfw:commentRss>
		</item>
		<item>
		<title>All about IP Address</title>
		<link>http://websecurity101.com/information/all-about-ip-address/</link>
		<comments>http://websecurity101.com/information/all-about-ip-address/#comments</comments>
		<pubDate>Sat, 10 May 2008 17:57:07 +0000</pubDate>
		<dc:creator>editor</dc:creator>
		
		<category><![CDATA[Information]]></category>

		<category><![CDATA[IP address]]></category>

		<guid isPermaLink="false">http://websecurity101.com/uncategorized/all-about-ip-address/</guid>
		<description><![CDATA[
by: Djai Tanji
When you connect to the internet, IP address will be used to identify your PC which means that your IP address is public. So if you do not use security, your IP address will be used to access your computer from the outside world. Bad news is, if you have a fixed IP [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.crypton.co.uk/"><img src="/wp-content/uploads/scraped/49.jpg"/></a>
<p>by: Djai Tanji</p>
<p>When you connect to the internet, IP address will be used to identify your PC which means that your IP address is public. So if you do not use security, your IP address will be used to access your computer from the outside world. Bad news is, if you have a fixed IP address, internet crackers can have a lot of time to search for entrances in your computer and have access to your unprotected private data. But if you are using a modem with a dial-up connection, you will get new IP addresses each time you connect to the net. DSL and internet cables are mere samples of fixed internet connections.</p>
]]></content:encoded>
			<wfw:commentRss>http://websecurity101.com/information/all-about-ip-address/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
