Recent Updates RSS Hide threads | Keyboard Shortcuts

  • Enumeration

    Admin 4:51 am on 13 March 2010 | 0 Permalink

    This morning, i taught about Enumeration in CEH class. I used Windows 2000 for the target as it exploited null session vulnerability existed in Windows 2000 which can be used to see users, shares, and many other computer information via NetBios.

    According to several resources, null session exploits only works in Windows 2000 and not found in newer version of Windows, but when i tried it this morning, it still works in XP and 2003.

    You may read this article for more information about how to restrict anonymous access for NULL session and it's implication (most security countermeasures have side impact for convenience).
     
  • English Language

    Admin 6:19 am on 12 March 2010 | 0 Permalink

    Since few semester ago, i started to change how i make my material. I started to use English language instead of Indonesian for my material. There were several reason to do this:
    1. Some statement will lost it's meaning or become ambiguous when translated to Indonesian
    2. English phrases are often shorter than Indonesian
    3. To practice English (for me and for the students)
    Some students didn't have problem with this, but the rest complained at the end of the semester when they were asked to give feedback about how a lecturer taught for the whole semester.

    I'm a little bit surprised to see that they were having problems with English language, even though it's being used in most of the textbooks that are used in the class and also they had some basic English training since high school (or even elementary school now held an English or Chinese class). I don't want them to get spoiled, so i asked them to read the English version (the original version, not the translated version), since sometimes first problem did appeared when we used the translated version.

    Come on guys/gals... you are a college students, no longer a six years kids anymore. Grow up and be realistics. If you can't even learn English, how will you survive in the real world where language become a critical element of success?
     
  • Installing suPHP on Centos 5

    Markus 10:31 pm on 11 March 2010 | 0 Permalink

    suPHP is a tool that allows PHP scripts to be executed with the permissions of their owners. By not running PHP script using web server’s user rights, suPHP increase the server security. First install httpd-devel and compiler tools: yum install httpd-devel gcc gcc-c++ make Download suPHP source code and extract it wget http://www.suphp.org/download/suphp-0.7.1.tar.gz tar -xvzf suphp-0.7.1.tar.gz cd suphp-0.7.1 Now we compile suPHP ./configure [...]
     
  • One Down, Two More

    Admin 5:14 am on 11 March 2010 | 0 Permalink

    I'm done for this week. What i mean is the mid test. The students has taken the mid test yesterday and today and what's next is to marks them. This is the hard part, since there are so many of them.

    Today i have finished marking the first assignment and now two mid test course are waiting for Gym
     
  • Heavy Rain

    Admin 4:50 am on 10 March 2010 | 0 Permalink

    There was a heavy rain at evening. I was at my campus during the rain and the sound of the thunder was so loud. The students were having their test and suddenly the light goes out and ten seconds later, it went on again.

    This morning, i watched Percy Jackson: Lightning Thief. The story is almost the same what i experienced in the evening, lots of water and thunder, except that there are no fire at all lmao
     
  • OpenSSH 5.4 Released

    Admin 4:57 am on 9 March 2010 | 0 Permalink

    OpenSSH 5.4 has been released today and this is a major upgrade. It will be listed on several mirrors shortly, so it's better to wait for local mirror to catch up with the update.

    This version will disable SSH Protocol 1 by default, so if you are still using it (it's a bad decision), you will have to enable it explicitly on your sshd_config configuration file. Another protection is all SSH Protocol 2 private keys will be protected by AES-128 instead of 3DES algorithm. You can get this when updating your passphrase or creating new keys.

    Read the full announcement and visit the official website to get it.
     
  • Getting Slow Again

    Admin 6:10 am on 8 March 2010 | 0 Permalink

    Today, i experienced a slow Internet connection again. I believe it's related to rain which caused the connection got dropped very low. When it stopped, it's getting normal again.
     
  • Google + DocVerse = Better Office Interoperation

    Admin 3:22 pm on 6 March 2010 | 0 Permalink

    Google has announced that they have acquired DocVerse (announcement), a small team of talented developers who have worked towards MS Office files in the past. With this collaboration, Google Docs will have better interoperability towards MS Office files (doc, xls, ppt).

    I believe Google's idea of having a cloud computing environment are getting closer and closer to reality. Many of their applications are ready for production use and many individuals or companies has started to use them. I can't wait for the next update of Google Docs after this process.

    No wonder if Google has been nominated as one of the best company in the world. Their ideas are fantastic, just like Apple who achieved the same nomination.
     
  • PHP 5.3.2 Released

    Admin 12:14 am on 6 March 2010 | 0 Permalink

    After long development time, finally PHP 5.3.2 has been released by PHP Team, following the previous stable version 5.2.13. The Changelog gives you a detailed changes in this release (which as usual, contains many fixes along with any security fixes).

    I'm compiling it right now and since it has been patched to work with libpng-1.4, i shouldn't get any problem compiling this version on my Slackware Banana Cool
     
  • Slackware-Current on Laptop

    Admin 6:15 am on 5 March 2010 | 0 Permalink

    OK, now my laptop has been running Slackware-Current, except that it still uses the old XOrg Server packages, due to problem with the KMS (i hate this). I have installed the kernel module which will enables me to disable the NVidia Card since it's not yet supported (GPU Switching). I hope it will be available on Linux Kernel 2.6.34, which has been started by Linus few days ago by releasing 2.6.33 and that means opening a merge window for 2.6.34.

    I also compiled a new kernel 2.6.31.12, since i had problems with 2.6.31.7. It has a very low performance on copying files to another flash disk on EXT4. When i saw the Changelog for 2.6.31.8, i realized that this version has a lot of bugs in EXT4 file system, so i decided to get the latest one for 2.6.31.x version. Why wouldn't i go straight to 2.6.32 which is newer or 2.6.33 which is the latest? Based on review, 2.6.32 suffers more EXT4 problems, so i decided to avoid it. While for 2.6.33, it's too early to use that (even though Slackware-Current has started to use it for the default kernel stock currently). I will wait until -Stable release has been released by Greg.
     
c
compose new post
j
next post/next comment
k
previous post/previous comment
r
reply
e
edit
o
show/hide comments
t
go to top
esc
cancel