<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>vanimpe.eu &#187; abuse</title>
	<atom:link href="http://www.vanimpe.eu/blog/category/abuse/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.vanimpe.eu/blog</link>
	<description>blog on linux, openbsd, webdesign, ..</description>
	<lastBuildDate>Tue, 25 May 2010 19:43:01 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Phishing notice from Deutsche Bank</title>
		<link>http://www.vanimpe.eu/blog/2010/05/02/phishing-notice-from-deutsche-bank/</link>
		<comments>http://www.vanimpe.eu/blog/2010/05/02/phishing-notice-from-deutsche-bank/#comments</comments>
		<pubDate>Sun, 02 May 2010 16:50:35 +0000</pubDate>
		<dc:creator>koen</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[mail]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2010/05/02/phishing-notice-from-deutsche-bank/</guid>
		<description><![CDATA[A couple of days back I received an e-mail from Deutsche Bank. I&#8217;m not a customer from DB. About a year ago I applied for some information and I guess my email addresses ended up in their mailinglist.
The mailing warns customers that there is a phishing attack ongoing. According to the mail, once infected, a [...]]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2010/05/02/phishing-notice-from-deutsche-bank/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Black Ops 2008 : It&#8217;s The End Of The Cache As We Know It</title>
		<link>http://www.vanimpe.eu/blog/2008/08/25/black-ops-2008-its-the-end-of-the-cache-as-we-know-it/</link>
		<comments>http://www.vanimpe.eu/blog/2008/08/25/black-ops-2008-its-the-end-of-the-cache-as-we-know-it/#comments</comments>
		<pubDate>Mon, 25 Aug 2008 19:57:17 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[internet]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2008/08/25/black-ops-2008-its-the-end-of-the-cache-as-we-know-it/</guid>
		<description><![CDATA[The video of the Dan Kaminsky presentation of the DNS cache bug is available on the Black Hat site. It&#8217;s a 100 MB download but it sure is worth it. There&#8217;s also an MP3-version.
]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2008/08/25/black-ops-2008-its-the-end-of-the-cache-as-we-know-it/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://www.blackhat.com/presentations/bh-usa-08/Kaminsky/08_bhb_od2_slides.m4v" length="0" type="video/mp4" />
<enclosure url="http://www.blackhat.com/presentations/bh-usa-08/Kaminsky/08_bhb_od2.mp3" length="0" type="audio/mpeg" />
		</item>
		<item>
		<title>Skynet / Belgacom abuse desk</title>
		<link>http://www.vanimpe.eu/blog/2008/08/07/skynet-belgacom-abuse-desk/</link>
		<comments>http://www.vanimpe.eu/blog/2008/08/07/skynet-belgacom-abuse-desk/#comments</comments>
		<pubDate>Thu, 07 Aug 2008 19:12:46 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[work]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2008/08/07/skynet-belgacom-abuse-desk/</guid>
		<description><![CDATA[Op m&#8217;n werk moet ik vrij regelmatig meldingen in verband met malware doorsturen naar de abusedesk van Skynet / Belgacom. De meldingen bevatten altijd de url met de malware, ip-adres van de machine, &#8216;n timestamp en tijdzone en &#8216;t type van malware. Veel meer kan je moeilijk aanleveren dacht ik.
Wat krijg je dan na 7 [...]]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2008/08/07/skynet-belgacom-abuse-desk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Multiple DNS implementations vulnerable to cache poisoning, getting time to patch</title>
		<link>http://www.vanimpe.eu/blog/2008/07/22/multiple-dns-implementations-vulnerable-to-cache-poisoning-getting-time-to-patch/</link>
		<comments>http://www.vanimpe.eu/blog/2008/07/22/multiple-dns-implementations-vulnerable-to-cache-poisoning-getting-time-to-patch/#comments</comments>
		<pubDate>Tue, 22 Jul 2008 10:38:52 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[internet]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2008/07/22/multiple-dns-implementations-vulnerable-to-cache-poisoning-getting-time-to-patch/</guid>
		<description><![CDATA[The DNS cache poisoning attacks (see VU#800113) / vulnerabilities that are going to be disclosed on the next Black Hat are attracting a lot of attention.
People are commenting (here and here) whether or not the cat has been let out of the bag or not. The exploit has been out there all the time &#8230; [...]]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2008/07/22/multiple-dns-implementations-vulnerable-to-cache-poisoning-getting-time-to-patch/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kutkunst</title>
		<link>http://www.vanimpe.eu/blog/2007/10/19/kutkunst/</link>
		<comments>http://www.vanimpe.eu/blog/2007/10/19/kutkunst/#comments</comments>
		<pubDate>Fri, 19 Oct 2007 14:19:58 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[abuse]]></category>
		<category><![CDATA[arty]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2007/10/19/kutkunst/</guid>
		<description><![CDATA[Alles voor de kunst. Ook het goed fatsoen door de afvoer me dunkt.
]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2007/10/19/kutkunst/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Passive Monitoring of DNS Anomalies</title>
		<link>http://www.vanimpe.eu/blog/2007/07/13/passive-monitoring-of-dns-anomalies/</link>
		<comments>http://www.vanimpe.eu/blog/2007/07/13/passive-monitoring-of-dns-anomalies/#comments</comments>
		<pubDate>Thu, 12 Jul 2007 22:27:15 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[conferences]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2007/07/13/passive-monitoring-of-dns-anomalies/</guid>
		<description><![CDATA[Op Dimva 2007 een heel interessante lezing gevolgd van Bojan Zdrnja. Hij vertelde op&#8217;n heel simpele manier hoe hij aan de hand van de queries op DNS-servers het gedrag van botnets (en malware in het algemeen onderzocht).
&#8230; later meer &#8230;
Powered by ScribeFire.
]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2007/07/13/passive-monitoring-of-dns-anomalies/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ARP Cache Poisoning Incident</title>
		<link>http://www.vanimpe.eu/blog/2007/07/05/arp-cache-poisoning-incident/</link>
		<comments>http://www.vanimpe.eu/blog/2007/07/05/arp-cache-poisoning-incident/#comments</comments>
		<pubDate>Thu, 05 Jul 2007 13:13:12 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[microsoft]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2007/07/05/arp-cache-poisoning-incident/</guid>
		<description><![CDATA[Op de blog van Neil Carpenter, een medewerker van Microsoft van het PSS Security Support Team, valt er een interessant artikel te lezen over een ARP Cache Poisoning Incident.
De auteur beschrijft een situatie waarbij bij welke web-request een iframe werd ingevuld. Na hun onderzoek kwamen ze er op uit dat de invoegingen gebeurden via&#8217;n gehackte [...]]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2007/07/05/arp-cache-poisoning-incident/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>RFC 2142 &#8211; Mailbox Names for Common Services, Roles and Functions</title>
		<link>http://www.vanimpe.eu/blog/2007/05/18/rfc-2142-mailbox-names-for-common-services-roles-and-functions/</link>
		<comments>http://www.vanimpe.eu/blog/2007/05/18/rfc-2142-mailbox-names-for-common-services-roles-and-functions/#comments</comments>
		<pubDate>Fri, 18 May 2007 22:06:50 +0000</pubDate>
		<dc:creator></dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[abuse]]></category>
		<category><![CDATA[geek]]></category>

		<guid isPermaLink="false">http://www.vanimpe.eu/blog/2007/05/18/rfc-2142-mailbox-names-for-common-services-roles-and-functions/</guid>
		<description><![CDATA[Beroepshalve spendeer ik heel wat tijd met het doorsturen van computerbeveiligingsincidenten (phishing, botnetcontrollers, open relays, &#8230;). Wanneer het om ip&#8217;s in onze eigen (klanten)range gaat dan kan ik terugvallen op een interne  database van contactpersonen en is het over het algemeen heel eenvoudig om de juiste persoon te bereiken.
Oh ramp als er iemand &#8220;extern&#8221; [...]]]></description>
		<wfw:commentRss>http://www.vanimpe.eu/blog/2007/05/18/rfc-2142-mailbox-names-for-common-services-roles-and-functions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
