<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>neraliu&#039;s blog &#187; 電腦保安</title>
	<atom:link href="http://blog.neraliu.com/category/computer/computer-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.neraliu.com</link>
	<description>internet profession in between hongkong/china and silicon valley (no longer, but the world!)</description>
	<lastBuildDate>Tue, 07 Sep 2010 13:59:23 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>finally, somebody suggests a way to narrow down the guess of sesssion ID</title>
		<link>http://blog.neraliu.com/2010/08/30/finally-somebody-suggests-a-way-to-narrow-down-the-guess-of-sesssion-id/</link>
		<comments>http://blog.neraliu.com/2010/08/30/finally-somebody-suggests-a-way-to-narrow-down-the-guess-of-sesssion-id/#comments</comments>
		<pubDate>Mon, 30 Aug 2010 04:10:31 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[科技]]></category>
		<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[php session id]]></category>
		<category><![CDATA[proxy]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=3382</guid>
		<description><![CDATA["There are a ton of sites these days that use load-balancers in front of them. There’s a few ways they can be installed - completely transparent or acting more like a proxy. The proxy is the more common setup but it has one pretty huge negative side-effect, all the IP addresses come to the server [...]]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/08/30/finally-somebody-suggests-a-way-to-narrow-down-the-guess-of-sesssion-id/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>prototype is live</title>
		<link>http://blog.neraliu.com/2010/07/05/prototype-is-live/</link>
		<comments>http://blog.neraliu.com/2010/07/05/prototype-is-live/#comments</comments>
		<pubDate>Sun, 04 Jul 2010 16:20:29 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[aglie]]></category>
		<category><![CDATA[商業]]></category>
		<category><![CDATA[娛樂]]></category>
		<category><![CDATA[投資]]></category>
		<category><![CDATA[攝影]]></category>
		<category><![CDATA[流動科技]]></category>
		<category><![CDATA[生活]]></category>
		<category><![CDATA[科技]]></category>
		<category><![CDATA[筆記]]></category>
		<category><![CDATA[管理]]></category>
		<category><![CDATA[語言]]></category>
		<category><![CDATA[軟件]]></category>
		<category><![CDATA[遊戲設計]]></category>
		<category><![CDATA[閱讀]]></category>
		<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[電腦工程]]></category>
		<category><![CDATA[prototype]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=3298</guid>
		<description><![CDATA[]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/07/05/prototype-is-live/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>domain scan for pentest</title>
		<link>http://blog.neraliu.com/2010/06/22/domain-scan-for-pentest/</link>
		<comments>http://blog.neraliu.com/2010/06/22/domain-scan-for-pentest/#comments</comments>
		<pubDate>Mon, 21 Jun 2010 23:34:13 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[電腦工程]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[fierce2]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=3067</guid>
		<description><![CDATA[reference - http://trac.assembla.com/fierce]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/06/22/domain-scan-for-pentest/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>somebody is scanning alibaba.com.cn</title>
		<link>http://blog.neraliu.com/2010/06/20/somebody-is-scanning-alibaba-com-cn/</link>
		<comments>http://blog.neraliu.com/2010/06/20/somebody-is-scanning-alibaba-com-cn/#comments</comments>
		<pubDate>Sun, 20 Jun 2010 10:46:13 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=3059</guid>
		<description><![CDATA[somebody is scanning alibaba.com.cn, and my account is being scanned for password reset. i received the password reset email yesterday.]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/06/20/somebody-is-scanning-alibaba-com-cn/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>notes on doing some pentest on my isp</title>
		<link>http://blog.neraliu.com/2010/03/14/notes-on-doing-some-pentest-on-my-isp/</link>
		<comments>http://blog.neraliu.com/2010/03/14/notes-on-doing-some-pentest-on-my-isp/#comments</comments>
		<pubDate>Sun, 14 Mar 2010 07:19:52 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[電腦工程]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[scanning]]></category>
		<category><![CDATA[tcp]]></category>
		<category><![CDATA[udb]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=2616</guid>
		<description><![CDATA[it is just a sunday hacking... first i would like to use the traceroute to know the gateway of my isp, you can simply traceroute some well known portal, like www.yahoo.com. #traceroute www.yahoo.com traceroute: Warning: www.yahoo.com has multiple addresses; using 72.30.2.43 traceroute to any-fp.wa1.b.yahoo.com (72.30.2.43), 64 hops max, 40 byte packets 1 192.168.8.1 (192.168.8.1) 1.602 [...]]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/03/14/notes-on-doing-some-pentest-on-my-isp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>testing the udb awareness of the nmap 5.21</title>
		<link>http://blog.neraliu.com/2010/03/07/testing-the-udb-awareness-of-the-nmap-5-21/</link>
		<comments>http://blog.neraliu.com/2010/03/07/testing-the-udb-awareness-of-the-nmap-5-21/#comments</comments>
		<pubDate>Sun, 07 Mar 2010 07:56:23 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[udb awareness]]></category>
		<category><![CDATA[udb scanning]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=2584</guid>
		<description><![CDATA[for a typically network scanner, when it is going to scan the udb services available on the hosts, it simply sends the udb packets without knowing the exact content of the specific services. when the hosts receive the packet, there are few things possible happen. if the hosts do not listen on that port, it [...]]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/03/07/testing-the-udb-awareness-of-the-nmap-5-21/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>a recent phishing email i got &#8211; hey dudes, this is maggie tam!</title>
		<link>http://blog.neraliu.com/2010/02/22/a-recent-phishing-email-i-got-hey-dudes-this-is-maggie-tam/</link>
		<comments>http://blog.neraliu.com/2010/02/22/a-recent-phishing-email-i-got-hey-dudes-this-is-maggie-tam/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 05:05:49 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[msn]]></category>
		<category><![CDATA[phishing]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=2564</guid>
		<description><![CDATA[recently, i got a phishing email which made me stop and think who this guy is, below is the content i got hey guys, I haven't seen or talked to some of you for ages, but how are all of you doing??? hope you guys are having fun at casterton (for those still there) and [...]]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/02/22/a-recent-phishing-email-i-got-hey-dudes-this-is-maggie-tam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>old news, just a screenshot of how twitter being phished recently</title>
		<link>http://blog.neraliu.com/2010/02/05/old-news-just-a-screenshot-of-how-twitter-being-phished-recently/</link>
		<comments>http://blog.neraliu.com/2010/02/05/old-news-just-a-screenshot-of-how-twitter-being-phished-recently/#comments</comments>
		<pubDate>Thu, 04 Feb 2010 23:27:42 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[twitter]]></category>
		<category><![CDATA[科技]]></category>
		<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[phishing]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=2517</guid>
		<description><![CDATA[reference - http://blog.twitter.com/2009/01/gone-phishing.html]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/02/05/old-news-just-a-screenshot-of-how-twitter-being-phished-recently/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>battlenet warning on account theft</title>
		<link>http://blog.neraliu.com/2010/02/03/battlenet-warning-on-account-theft/</link>
		<comments>http://blog.neraliu.com/2010/02/03/battlenet-warning-on-account-theft/#comments</comments>
		<pubDate>Wed, 03 Feb 2010 14:58:43 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[科技]]></category>
		<category><![CDATA[電腦]]></category>
		<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[blizzard]]></category>
		<category><![CDATA[security advice]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=2513</guid>
		<description><![CDATA[hm... when you read the new security portal provided by blizzard, to an internet security professional, things are very basic to defend your online asset being phished or hacked.]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/02/03/battlenet-warning-on-account-theft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>understanding the aurora attack in ie</title>
		<link>http://blog.neraliu.com/2010/02/01/2327/</link>
		<comments>http://blog.neraliu.com/2010/02/01/2327/#comments</comments>
		<pubDate>Mon, 01 Feb 2010 00:00:25 +0000</pubDate>
		<dc:creator>nera</dc:creator>
				<category><![CDATA[電腦保安]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[aurora]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[zero day vulnerability]]></category>

		<guid isPermaLink="false">http://blog.neraliu.com/?p=2327</guid>
		<description><![CDATA[as the source code of exploit is being out, i can reproduce the ie aurora exploit by using the metasploit, dumping my peers screen out, it is really terrible. (note: my testing platform is ie6 running on xp) metasploit user guide - http://www.metasploit.com/documents/users_guide.pdf blog articles - http://blog.metasploit.com/2010/01/reproducing-aurora-ie-exploit.html news reference - http://blogs.zdnet.com/security/?p=5250&#38;utm_source=feedburner&#38;utm_medium=feed&#38;utm_campaign=Feed%3A+zdnet%2Fsecurity+%28ZDNet+Zero+Day%29 news reference - http://www.securityfocus.com/brief/1063 [...]]]></description>
		<wfw:commentRss>http://blog.neraliu.com/2010/02/01/2327/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
