Wednesday, April 27, 2005

VACATION: Ah! At last!!!

Yo!

At last! VACATION IS COMING!

On the 1st of May, 2005, 11PM, I will fly away home (for the first time in more than 2 years).

WOW! So excited! Even my GF is happy indeed.

That would be all, folks!

Regards!

- ^NeO^

Saturday, April 16, 2005

Been wandering around Riyadh lately

Well,

A nice weekend (Thu and Fri) and I had been wandering around Riyadh. First, went on a friend's birthday party and eat some. Stayed late (actually started early 2am) at the Internet cafe to download SP2 via DSL to install and update some clients' XP BoX.

Friday, well, I just went to the City Center and bought something for my girlfriend. Well, I am really excited coming back home. I hope sooner... Just bought her some really cool stuff. And I had finished packing up my things. Ready to send some sea cargo boxes, just waiting eagerly for the Boss to arrive from his trip.

Not much, Saturday and starting the week of work again... Just updated some BoX with SP2 that I had downloaded. So far… Quite good. Just needs to run auto update.

Well, so much for now, catch you later. Just messing around also with my own BoX before I go vacation.

-^NeO^

Wednesday, April 13, 2005

I'll be out for a while...

YO YO YO!

I'll be out for a while... Preparing to go home very very soon. I wish I could stick ONLINE even if I am busy on my vacation! Yahoo! Summer time in the Philippines is quite nice... With all the beaches and stuff, I'll post some pictures in my web site...

Catch you later fellows!

ciao!

:D

- ^NeO^

Tuesday, April 12, 2005

CREDIT CARD TIPS

TIP posted Today 04:26 PM
(post #14)

linux1880,

quote:
I dunno who got the information and how it is stolen, but I am really freaked up to know that it is stolen, Is there any possibilty to save myself from future threat and track the stealer?
-In my case, I had done only one (1) online transaction with my CC that I badly needed. Since I am here abroad, I had made an ONLINE ORDER for some stuff that had been delivered to my friend back there in the Philippines. Carefully doing it, so far, it has been a safe transaction.

Some key points that I had considered before transacting ONLINE were:

1. Transaction is not available OVER-THE-COUNTER (since I am overseas).
2. The ONLINE STORE in which I transacted is really CERTIFIED SECURED (verified by Thawte, Verisign, etc.).
3. The BoX (PC) wherein you will transact should be secured enough, I prefer my own BoX since I am sure it is secured.
4. It is always a standard procedure to me (even if I don’t make ONLINE TRANSACTION) that I randomly checked with my CC’s status through the CC Company’s phone facility. But now that I am here abroad, I checked with my CC’s SECURED ONLINE FACILITY for my CC’s balance and status.

Tracking the stealer (since it already happened) is the job of the CC Company and the Authorities. About the instruction TO DESTROY YOUR CARD, just like Black Cluster and others had mentioned, how can you be sure it is the CC Company that had called you? Have you called your CC Company and inquired about this incident? You better be.

To save yourself from future threats, you should have changed your CC by now. Avoid making ONLINE TRANSACTION (even normal transactions) with un-trusted establishments. If your CC Company has SECURED ONLINE FACILITY for checking CC’s balance and status, use it. And before doing ONLINE TRANSACTION, make sure that your BoX is secure enough. Lastly, NEVER EVER REVEAL SENSITIVE INFORMATION WHEN SOMEBODY CALL YOU CLAIMING THEY ARE FROM CC COMPANY AND ASKING TO VERIFY SUCH CARD INFORMATION (IT COULD BE SOME SOCIAL ENGINEERING AND PHISHING SCHEMES).

*
Security Tips for the Web (Tip from Citibank)
http://www.citibank.com.ph/PHGCB/AP...ineSecurity.htm
*

Yo!

Monday, April 11, 2005

PGP Public Key

My PGP Public Key

Kindly download My Public Key - https://keyserver1.pgp.com/vkd/DownloadKey.event?keyid=0x4ACEB58A7A1E2F46

There you have it folks, you can start using PGP (www.PGP.com) and try to send protected sensitive info to my e-mail using my Public Key. And even better, learn to use CRYPTOGRAPHY and you will enjoy some of the benefits of securing your data the right way.

Cheers!

Yo!

PGP

Started again using PGP (Pretty Good Privacy)

Hello guys!

I missed ENCRYTION! Cryptography! Well, just testing again the capabilities of newer version of this program (PGP) and well, I’ve already posted my public key. If you want to send an important e-mail and want it to be secured, you can contact me about it first before you send, or I will post my public key later on this BLOG and tell you more about it. For more introduction and information on securing your data (especially when sending it via e-mail if it is really really important), try visiting www.pgp.com.

Have a nice secured day to all of you!

Yo!

NeO

Saturday, April 09, 2005

Weekends

Ahhhh… Weekends…

It’s been a long weekend… Not much surfing but more chatting with my girl friend yesterday (Saturday). Hmmm, Sunday is not much a busy day. Been doing the normal stuff in the office. Getting bored here in Riyadh. Ah, I’ve talk to my mother yesterday just to say Hi! And to my sister today to ask what the heck is the problem with my PC back there in RP.

Well, like I told you, not much to say within this week. I’m still waiting for my BOSS to arrive from his business trip in Amman, Jordan. I need to go to VACATION!!!

And one important thing, I’ve watched this movie Stuart Little (1 & 2), it touches my heart somewhat especially in the FAMILY thing. Wow, discussed it with my GF via Txt msg, and both of us agreed it’s an ideal family thing. Happy to say, I love her, and having common ideas about life makes us stronger each day.

On a side note: Farewell, Pope John Paul II.

Well, that’s all folks!

Catch you later.

Yo!

^NeO^

Wednesday, April 06, 2005

Symbian OS - More Trojan Bad New

Symbian OS - More Trojan Bad New posted Today 10:07 AM
(post #1)

More BAD NEWS for Symbian OS

quote:
Trojan horse takes down smart phones
By Richard Shim, CNET News.com
Published on ZDNet News: April 6, 2005, 5:10 PM PT
A Trojan horse has been created that causes smart phones to crash, security software maker F-Secure has warned.
The Finnish company posted details of the Trojan horse, which they've named Fontal.A, on Wednesday. Fontal.A affects Nokia Series 60 handsets running the Symbian operating system. The advisory did not say whether any infections had been reported…
…Fontal.A does not propagate over Bluetooth wireless networking connections or Multimedia Message Service, which is a mobile technology for sending text messages that can also include images, audio or video. Instead, it is distributed via file-sharing or IRC (Internet relay chat).
Complete story here ZDNet News - http://news.zdnet.com/2100-1009_22-5657724.html

quote:
Fontal.A tries to install a corrupted file, called "Kill Saddam By OID500.sis," into the infected device, causing it to fail at the next reboot, F-Secure said. If the handset is rebooted, it gets stuck and can't be used until it is disinfected.

- If only users know how to re-format the mobile in-case they cannot solve the problem, also there is a safe-mode in Symbian Mobile, maybe it can temporarily solve the boot failure. I have done it before in solving conflicts with my phone wherein SW that I tried corrupts my phone and seems to be useless. While this is not the real solution, it could at least help in temporarily solving the problem.

Ow, I never tried IRC via my Mobile. I never actually tried MMS and other data services yet. At least mine is safe for now.

Yo!

Google unveils satellite map feature

Google unveils satellite map feature posted Today 08:35 PM
(post #1)

Guy!

Talk about "ENEMY OF THE STATE" style of viewing Streets!

quote:
Google unveils satellite map feature
Source here from CNN - http://www.cnn.com/2005/TECH/intern...s.ap/index.html
Tuesday, April 5, 2005 Posted: 4:56 PM EDT (2056 GMT)
SAN FRANCISCO, California (AP) -- Online search engine leader Google Inc. has unveiled a new feature that will enable its users to zoom in on homes and businesses using satellite images, an advance that may raise privacy concerns as well as intensify the competitive pressures on its rivals.

The satellite technology, which Google began offering late Monday at http://maps.google.com/ , is part of the package that the Mountain View-based company acquired when it bought digital map maker Keyhole Corp. for an undisclosed amount nearly six months ago…
…Google believes most people will like the convenience of generating a satellite image with a few clicks of a computer mouse. The company envisions people using the service as a way to scout a hotel's proximity to the beach for a possible vacation or size up the neighborhood where an apartment is for rent.
Google's free satellite maps initially will be limited to North America, with images covering roughly half the United States, Hanke said.
- Searching from MID-AIR? Nah, this TECHNOLOGY (Digital Map) could have a promising future especially with SEARCH GIANT like Google. Now, in some part of the US, soon, I hope worldwide.
Visit http://maps.google.com/ , search your street, once found, click the Satellite(new) link on the upper right corner of the page. Some North American residents, check your street!

Yo!

__________________
"Life without FREEDOM is no life at all". - William Wallace
MyhomE MyboX StealtH (loop n. see loop.)

3 things made me CooL yesterday

There are 3 things made me feel CooL yesterday and the previous days!

1. I just bought a NEW EXTERNAL HARD DRIVE (Toshiba 40Gb). Well so far I'm messing up with what to put. Bringing it where ever I go. The cafe, my office, anywhere. Even plug it into my friends (VER) laptop. As soon as I go back home, I'll mess more on it. Might plan to buy my own Laptop soon (I HOPE SOONER).

2. I had setup a Gmail account 2 days ago (Thanks to MIR) and still having fun watching the STORAGE increasing each passing second. Still needs to learn more about the catch in Google's *FREE E-mail service.

3. Due to the information given by a friend, I had tried to sign-up for a FREE DOMAIN (again). Now, it is called www.ORLY.fil.ph. Need to learn things here then maybe, just maybe I will start my ORLY 3 (Release 3 - I would love to call it REVOLUTION). I am also planning to use PHP and MySQL (hopefully). Then, I will make it SUPER-DUPER-INTERRACTIVE (WAHAHAHAH!) I love web design as well as web coding.

So, I hope fun and exciting things like this will never end soon.

Oh, I need to go home...

Yo!

- ^NeO^

Tuesday, April 05, 2005

Just posted on a VERY IMPORTANT update about Firefox

Just posted on a VERY IMPORTANT THREAD: Update about Firefox

Exclamation Just in time: SELF-TESTING posted Today 05:18 PM
(post #13)

SELF-TESTING

quote:
Like maybe...say....passwords?! eek


Just about time to post this, ric-o.

For you guys who want to test the script! (Take extreme precautions!).

I am curious for the source of the testing page facilitated for this vulnerability. I checked it (not being scriptkiddie or something), just plain curiousity, I extracted the most important part of the script just to find out what is really happening.

First, try the attached html (crash_JS_FF.html in zip file [crash_JS_FF.zip] --extract it first) and try it on a testing BoX (remember, testing BoX).

Here are the observations:

- Using Firefox, I run the HTML.
- Clicking the “Test Now - Left Click On This Link” each time reveals somewhat random data extracted from the memory. This is exciting to explore. I’ve come across this “LOAD_DOCUMENT_URI LOAD_RETARGETED_DOCUMENT_URI LOAD_REPLACE LOAD_INITIAL_DOCUMENT_URI LOAD_TARGETED - - userPass username password hostPort asciiSpec asciiHost”. Not yet scary huh!

Note that it crashes on my TEST BOX after clicking 3 times or more (never crashed lower than 3 clicks)… Randomly observe how many clicks you can possibly do before it crashes. I am still observing when would sensitive info like user and password could show up. Still not came across that severity. But one thing for sure, with the random exposure of memory content, too many sensitive information about your BoX and activities could be revealed. Whew. For those who want to try this (in a TEST BoX), please have your feedback on it. And just an added observation, check the task manager how it reacts every time you click. The Memory usage for some program changes in my BoX. *(XP Pro) ?

*
Need to add that in IE (latest), nothing happens except for showing the XXXXXXXXXXX... Not crashing. LoLz
*

Just to share some curiosity and observation. Remember, TAKE NECESSARY PRECAUTIONS BEFORE DOING THIS, BE SURE YOU KNOW WHAT TO DO!

Cheers!

Yo!


Attachment:

crash_js_ff.zip
This has been downloaded 3 time(s).
Who Downloaded This Attachment?

__________________
"Life without FREEDOM is no life at all". - William Wallace
MyhomE MyboX StealtH (loop n. see loop.)

Last edited by scratchONtheBOX on Today at 05:45 PM

*added

Monday, April 04, 2005

Been discussing work-related matters (Phils.) in AO

Here is my post about work-related matters in the Philippines

AO Post

Work Work Work posted Yesterday 07:07 PM
(post #26)

Work Work Work

Job in the Philippines? Let me see… There should be a lot of scenario that I could visualize related to this during my working days back there.

Company 1 – there is this particular department (since I am working in a “Group of Company”), wherein they were just spending the remaining days of their work doing personal chatting in IM. But still they have this style of doing it during break-time (12NN-1PM) while the others sleep (including me). The point is, IM is actually allowed by the MIS Dept., since they use it to communicate with customers and other entities, but for personal use - should not be obvious. Because once the DEPARTMENT BOSS found it out, will screw them all perhaps.

In the scenario wherein the OP presented, I think the problem is (maybe), the BOSS catches the employee one time of doing IMing while waiting for a very important report that is URGENTLY needed. The employee is VERY important to the BOSS since she is capable of doing the JOB (that is why the BOSS don’t want to TELL to STOP IMing directly or personally because maybe the EMPLOYEE will think of this approach as STRICT and may change the attitude of EMPLOYEE including the TEAM once directly told that it is prohibited. The fact is EMPLOYEES are VIGILANT and reacts very NEGATIVELY especially if there are no known POLICIES aside from, let’s say START - DO YOUR WORK - FINISH IT – STOP.


Company 2 – In my last company there that I am working, IM is allowed again. I think the question falls in the ABUSE section. We are in the TECHNICAL SUPPORT environment and IM comes in handy especially when we have SATELLITE OFFICES and PEOPLE on the move. We use IM primarily to communicate with our MOBILE TEAM. FROM-IM-TO-CELLPHONE type of communication. It is FREE and very USEFUL in a fast-phase environment. But about ABUSE of use, we have a RULE for that one. Before we use specific services and facilities in the workplace, the ADMIN should know it. PERSONAL reasons can be tolerated as long as it is not ABUSIVE. Who will decide? Think of it as a mutual understanding between each member of the team. WORK-LOAD is one factor, since we are people on the move, staying in chat for a long time may never occur. Phone ringing here, server needs to be checked there, need to assist the DB ADMIN. Keep the employees busy while enjoying their type of work could solve the issue. The reason why they are there is work. And the reason why they use IM should be related to work.


Company 3 – My job here in KSA. As a secretary, I am allowed to use IM. Even the BOSS see me chatting with our supplier about important matters. The use of such service falls again to the ABUSE section.

In one-way or the other, the BOSS should re-think of the ideas about preventing EMPLOYEES about such SERVICE. If your company is customer-service oriented, perhaps having a POLICY about using the Internet or IM should be moderated but not prohibited. IM could be of use the same way we use it in our company. You can also present to EMPLOYEES about being aware of using IM or the Internet. A good presentation as well as the goal of not abusing such would enlighten them (not scare them). As an Admin, it is your primary goal to secure the network. IM could be dangerous if not properly used.

And at the end, remember that WORK is still WORK, abusive employees even though they are considered as assets could jeopardize the company’s operation if they continue to abuse something.


Yo!

--- Sometimes it gives me relief explaining something in the forum of things I experienced and learned. Opinion of course, but it has sense somehow.

- NeO

Day2Day 2005 - Blog Continues

Well, to change the way I place my Blog, now I started a really Day2Day (not the same I posted before which I only added comments after comments on the ORIGINAL Day2Day which started way back October 2004.

Now, starting it (again) or at least it is safe to say continuing my Day2Day Blog... My bad... LoLz.

Now it will be Day2Day from now on (I hope I won't skip). Just been pasting my posts in AO (AntiOnline) here to keep an update to my opinions and whatnot, especially the possibility of helping fellow AO members and learning as well (for sure). Oh, now I am an AO member (jumped one step forward from AO junior). :D

Please try to visit AO (www.antionline.com) and learn.

Have a nice Day2Day!

Yo!