<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Information Security Expert Blog</title>
	<atom:link href="http://blog.alijahangiri.org/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.alijahangiri.org</link>
	<description>Dr. Ali Jahangiri</description>
	<lastBuildDate>Mon, 30 Apr 2012 19:49:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>How to Test Snort with Penetration Testing Tools</title>
		<link>http://blog.alijahangiri.org/2012/04/how-to-test-snort-with-penetration-testing-tools/</link>
		<comments>http://blog.alijahangiri.org/2012/04/how-to-test-snort-with-penetration-testing-tools/#comments</comments>
		<pubDate>Mon, 30 Apr 2012 12:32:58 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Intrusion Detection]]></category>
		<category><![CDATA[Penetration Test]]></category>
		<category><![CDATA[CentOS 5.7]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Intrusion Detection System]]></category>
		<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Protocol Anomaly]]></category>
		<category><![CDATA[Snort]]></category>
		<category><![CDATA[Webshag]]></category>

		<guid isPermaLink="false">http://blog.alijahangiri.org/?p=269</guid>
		<description><![CDATA[Recently, I deployed Snort on a cloud-based network to act as an Intrusion Detection System (IDS). The installation process and compiling Snort on a cloud server with CentOS 5.7 is an adventure on its own! But testing it properly was my main challenge. The project&#8217;s team leader decided to use Snort IDS after my recommendation. [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2012/04/how-to-test-snort-with-penetration-testing-tools/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WordPress NextGEN Gallery Plugin; Directory Browsing Vulnerability</title>
		<link>http://blog.alijahangiri.org/2012/01/wordpress-nextgen-gallery-plugin-directory-browsing-vulnerability/</link>
		<comments>http://blog.alijahangiri.org/2012/01/wordpress-nextgen-gallery-plugin-directory-browsing-vulnerability/#comments</comments>
		<pubDate>Mon, 30 Jan 2012 19:08:26 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Directory Browsing Vulnerability]]></category>
		<category><![CDATA[NextGEN Gallery]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.alijahangiri.org/?p=254</guid>
		<description><![CDATA[I came across this vulnerability at the weekend. The vulnerubility has been reportd to US-Cert and the author of the plugin. Over View: NextGEN Gallery plugin for WordPress allows remote directory browsing and unauthorized access to the gallery contents. Description: NextGEN Gallery plugin for WordPress does not prevent directory browsing and allows remote attackers to [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2012/01/wordpress-nextgen-gallery-plugin-directory-browsing-vulnerability/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Koobface Gangs Investigative Report</title>
		<link>http://blog.alijahangiri.org/2012/01/koobface-gangs-investigative-report/</link>
		<comments>http://blog.alijahangiri.org/2012/01/koobface-gangs-investigative-report/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 12:12:25 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Cyberforensic]]></category>
		<category><![CDATA[Cyber Forensic Investigation]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[Koobface]]></category>
		<category><![CDATA[Sophos]]></category>

		<guid isPermaLink="false">http://blog.alijahangiri.org/?p=250</guid>
		<description><![CDATA[Sophos has published details, on its Naked Security Blog, of an investigativereport about the Koobface gang who infected thousands of PCs with malware via Facebook and, according to NewYorkTimes, gained millions of dollars in doing so. The investigation was carried out by Jan Drömer, an independent researcher, and Dirk Kollberg from SophosLabs between October 2009 [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2012/01/koobface-gangs-investigative-report/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloud Storage and its Security Implications</title>
		<link>http://blog.alijahangiri.org/2012/01/cloud-storage-and-its-security-implications/</link>
		<comments>http://blog.alijahangiri.org/2012/01/cloud-storage-and-its-security-implications/#comments</comments>
		<pubDate>Thu, 19 Jan 2012 19:10:53 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Cloud Storage]]></category>
		<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[cloud storage]]></category>
		<category><![CDATA[DropBox]]></category>
		<category><![CDATA[Nessus]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[vulnerability scanner]]></category>

		<guid isPermaLink="false">http://blog.alijahangiri.org/?p=247</guid>
		<description><![CDATA[Instant messaging (IM) programs such as Yahoo Messenger, Google Talk and ICQ have been a challenge for IT security professionals for many years. Personally, I have dealt with IM and P2P file-sharing security issues in many different environments, from educational institutions to large corporates. I have tried to control them using different security appliances and [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2012/01/cloud-storage-and-its-security-implications/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IACR Video Lectures and Paper Database</title>
		<link>http://blog.alijahangiri.org/2012/01/iacr-video-lectures-and-paper-database/</link>
		<comments>http://blog.alijahangiri.org/2012/01/iacr-video-lectures-and-paper-database/#comments</comments>
		<pubDate>Mon, 09 Jan 2012 22:50:22 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[cryptography]]></category>
		<category><![CDATA[IACR]]></category>
		<category><![CDATA[video lectures]]></category>

		<guid isPermaLink="false">http://blog.alijahangiri.org/?p=242</guid>
		<description><![CDATA[International Association for Cryptology Research (IACR) has published some of its video lectures at the IACR YouTube Channel. Further, some of the videos have been incorporated with IACR paper database at http://www.iacr.org/cryptodb/ which is very useful for the students and researchers.]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2012/01/iacr-video-lectures-and-paper-database/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ali Jahangiri: Happy New Year</title>
		<link>http://blog.alijahangiri.org/2012/01/ali-jahangiri-happy-new-year/</link>
		<comments>http://blog.alijahangiri.org/2012/01/ali-jahangiri-happy-new-year/#comments</comments>
		<pubDate>Fri, 06 Jan 2012 23:38:23 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Ali Jahangiri]]></category>
		<category><![CDATA[Dr. Ali Jahangiri]]></category>

		<guid isPermaLink="false">http://blog.alijahangiri.org/?p=237</guid>
		<description><![CDATA[It has been more than six months since I have written in my blog. I was busy with a long project in 2011 in addition to many small and medium size projects. Hopefully, I will have more time in 2012 to add posts to my blog. Have a blessed New Year!]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2012/01/ali-jahangiri-happy-new-year/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Live Hacking V1.3</title>
		<link>http://blog.alijahangiri.org/2011/04/live-hacking-v1-3/</link>
		<comments>http://blog.alijahangiri.org/2011/04/live-hacking-v1-3/#comments</comments>
		<pubDate>Thu, 21 Apr 2011 13:48:27 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Live Hacking]]></category>
		<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[Ali Jahangiri]]></category>
		<category><![CDATA[Dr. Ali Jahangiri]]></category>
		<category><![CDATA[Live DVD]]></category>
		<category><![CDATA[live hacking]]></category>
		<category><![CDATA[Open Source]]></category>

		<guid isPermaLink="false">http://www.alijahangiri.org/blog/?p=233</guid>
		<description><![CDATA[I am pleased to announce an updated version of Live Hacking’s free Linux distribution designed for penetration testing and ethical hacking. V1.3 has updated over 140 packages including Metasploit and Firefox. New in this release is Metasploit Framework 3.6 which now comes with post-exploitation modules that can be run on exploited systems to perform actions [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2011/04/live-hacking-v1-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>European Security Agency Publishes Report About the Security Risks of Smartphones</title>
		<link>http://blog.alijahangiri.org/2010/12/european-security-agency-publishes-report-about-the-security-risks-of-smartphones/</link>
		<comments>http://blog.alijahangiri.org/2010/12/european-security-agency-publishes-report-about-the-security-risks-of-smartphones/#comments</comments>
		<pubDate>Tue, 14 Dec 2010 02:36:14 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Smartphone]]></category>
		<category><![CDATA[ENISA]]></category>
		<category><![CDATA[Gartner]]></category>

		<guid isPermaLink="false">http://www.alijahangiri.org/blog/?p=229</guid>
		<description><![CDATA[With the smartphones becoming more and more part of our daily lives, the European Network and Information Security Agency (ENISA) has published a new report detailing the top security risks of smartphone use and gives practical security advice for businesses, consumers and governments. Read the full story here.]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2010/12/european-security-agency-publishes-report-about-the-security-risks-of-smartphones/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacker Creates Modified Symbian S60 Firmware with Hidden Back Door</title>
		<link>http://blog.alijahangiri.org/2010/12/hacker-creates-modified-symbian-s60-firmware-with-hidden-back-door/</link>
		<comments>http://blog.alijahangiri.org/2010/12/hacker-creates-modified-symbian-s60-firmware-with-hidden-back-door/#comments</comments>
		<pubDate>Sat, 11 Dec 2010 02:34:07 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Smartphone]]></category>
		<category><![CDATA[Symbian]]></category>
		<category><![CDATA[Symbian backdoor]]></category>

		<guid isPermaLink="false">http://www.alijahangiri.org/blog/?p=227</guid>
		<description><![CDATA[Professional security researcher, hacker and MalCon speaker Atul Alex has analyzed the firmware for the Symbian S60 smartphone (which also runs on the Nokia 5800, Nokia X6, Nokia 5530XM, Sony Ericsson Satio and Sony Ericsson Vivaz) and created a modified firmware with a back door which allows a 3rd party to record telephone calls and [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2010/12/hacker-creates-modified-symbian-s60-firmware-with-hidden-back-door/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Variant of GpCode Back – Still Demanding Ransom Money to Free Your Data</title>
		<link>http://blog.alijahangiri.org/2010/12/new-variant-of-gpcode-back-%e2%80%93-still-demanding-ransom-money-to-free-your-data/</link>
		<comments>http://blog.alijahangiri.org/2010/12/new-variant-of-gpcode-back-%e2%80%93-still-demanding-ransom-money-to-free-your-data/#comments</comments>
		<pubDate>Sat, 04 Dec 2010 02:31:09 +0000</pubDate>
		<dc:creator>Ali Jahangiri</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[AES-256]]></category>
		<category><![CDATA[GpCode trojan]]></category>
		<category><![CDATA[hard disk encryption trojan]]></category>
		<category><![CDATA[Ransom.Win32.GpCode.ax]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[RSA-1024]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Trojan.PGPCoder]]></category>
		<category><![CDATA[Virus.Win32.Gpcode]]></category>

		<guid isPermaLink="false">http://www.alijahangiri.org/blog/?p=225</guid>
		<description><![CDATA[A new variant of the troublesome and harmful GpCode trojan has been detected by Kaspersky Lab. Tagged as Trojan-Ransom.Win32.GpCode.ax this trojan, which spreads via malicious websites and P2P networks, encrypts files on the infected computer and then asks for money in order to decrypt the files. Such trojans are of known as ransomware or cryptovirology. [...]]]></description>
		<wfw:commentRss>http://blog.alijahangiri.org/2010/12/new-variant-of-gpcode-back-%e2%80%93-still-demanding-ransom-money-to-free-your-data/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

