Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ddbb
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
27 ms
·
1.
▲
by
ddbb
16y ago
Much needed for WP :) But I am biased, since I helped with this work...
2.
▲
Success Magazine Blog Hit With Malware/Spam
(blog.sucuri.net)
1 points
by
ddbb
16y ago
|
0 comments
3.
▲
by
ddbb
16y ago
To summarize: Thesis integrates with Wordpress, it is not derivative from it. Same way Linux modules integrate with the Linux kernel (and many of them are closed source). If someone is using a public/open API, and not distributing any part
4.
▲
GPL and the Wordpress x Thesis theme issue (Why Chris is right)
(fseek.me)
18 points
by
ddbb
16y ago
|
20 comments
5.
▲
by
ddbb
16y ago
http://sucuri.net is a good one :) (by fellow HN members)
6.
▲
Brazilian Government web sites hacked with spam
(blog.sucuri.net)
2 points
by
ddbb
16y ago
|
0 comments
7.
▲
The 1000 most-visited sites on the web (by Google)
(fseek.me)
52 points
by
ddbb
16y ago
|
52 comments
8.
▲
SEO SPAM network - Details of a mass attack (many .gov, .com and .edus hacked)
(blog.sucuri.net)
29 points
by
ddbb
16y ago
|
16 comments
9.
▲
Anonymity system for Google called GoogleSharing
(googlesharing.net)
49 points
by
ddbb
17y ago
|
10 comments
10.
▲
by
ddbb
17y ago
You know, lots of people talk about using keys instead of passwords... By doing that if you box is compromised, the attacker will get access to ALL your boxes. So, the best option is to use an encrypted ssh key (so you have the type the pas
11.
▲
by
ddbb
17y ago
Make sense... I was just looking at the bottom and couldn't find your answer :)
12.
▲
by
ddbb
17y ago
Good job researching those pesky brute force scans. Is there anyway you can post the complete list with all the data collected instead of just the top 50?
13.
▲
by
ddbb
17y ago
You mean at the top?
14.
▲
by
ddbb
17y ago
That is what I love about PHP... Always making my life easier.
15.
▲
Interview with Automattic CEO, Toni Schneider
(wpvibe.com)
2 points
by
ddbb
17y ago
|
0 comments
16.
▲
by
ddbb
17y ago
I was going to say the same thing... I expected a scan to go through the site looking at every possible bug, not just that 200/300 checks. Looking at the full disclosure archives, lots of users mentioned that it is actually common for web s
17.
▲
by
ddbb
17y ago
I agree with you. But beginners need to learn from somewhere and most advanced programmers are busy at work and not writing articles :) Plus, did you ever read a PHP book? Most of them give bad examples and bad code practices too... I just
18.
▲
by
ddbb
17y ago
The reason they write poor code is because they are beginners and beginners always make mistakes, use functions incorrectly, etc. In any language they code, not just PHP. PHP is often more visible because it is more used and easier to write
19.
▲
Security Flaw Makes It Easy To Bypass Verizon Droid Screen Lock
(techcrunch.com)
1 points
by
ddbb
17y ago
|
0 comments
20.
▲
by
ddbb
17y ago
Interesting discussion in there, but I think the PHP guys are right on this one. You should never rely on undefined behavior of any API for mission critical code. Always use what is documented so you don't have to cry later..
21.
▲
VMware insecure file creation
(blog.sucuri.net)
1 points
by
ddbb
17y ago
|
0 comments
22.
▲
by
ddbb
17y ago
Some details in here too: http://blog.sucuri.net/2009/12/twitter-defacement.html Seems a DNS hijacking for sure.
23.
▲
by
ddbb
17y ago
Some details in here too: http://blog.sucuri.net/2009/12/twitter-defacement.html
24.
▲
by
ddbb
17y ago
Using OSSEC (open source). Seriously, it puts rkhunter, logcheck and all these old tools in their toes.. Check http://www.ossec.net It monitors your logs, file changes, etc all by default, simple to install, etc.. I love it.
25.
▲
Which Tweets Matter ?
(blogmaverick.com)
2 points
by
ddbb
17y ago
|
0 comments
26.
▲
Security vs. Usability
(schneier.com)
1 points
by
ddbb
17y ago
|
0 comments
27.
▲
by
ddbb
17y ago
Good stuff, but you need to add OAuth in there... Not everyone likes to post their twitter pass onto other sites.
28.
▲
by
ddbb
17y ago
Who says it was a 0-day attack? Looking at the output,it seems they brute force the password of user adam... So yes, even the pros sometimes can make mistake.
29.
▲
Ultimate htaccess Examples
(evolt.org)
1 points
by
ddbb
17y ago
|
0 comments
30.
▲
Simplicity
(imgs.twittch.com)
3 points
by
ddbb
17y ago
|
1 comments
More ›