Live data from Hacker News

Viewing profile — rudhir-secpanel

rudhir-secpanel

HN member
Joined
Mon, Oct 03, 2011, 7:10 PM UTC
HN karma
43
Public activity
26 items

About rudhir-secpanel

No profile information was provided.

Recent public activity

  1. comment
    Comment #5820652

    Texas has been a magnet for data centers for years.

  2. story
  3. comment
    Comment #4320641

    So, does this mean that I can use my existing IP hard phones and control them via plivo cloud?

  4. comment
    Comment #4315056

    Yes. When one is logged in as a gmail user, any google search is done as that user. Therefore the requests will carry session information just as if one were using gmail with http.…

  5. comment
    Comment #4314990

    The google search tab on the right top in Safari/iPad is what a user tends to search in, instead of opening up a new browser tab. This opens up http://google.com , which is the iss…

  6. story
  7. story
  8. comment
    Comment #4108722

    http://www.webmin.com/cgi-bin/search_third.cgi?recent=1 Secpanel added as a webmin module

  9. story
  10. comment
    Comment #4007359

    They claim it was a social engineering attack. Their entire database has been compromised and put on pastebin. This is just months after the Local file disclosure vulnerability and…

  11. story
  12. story
  13. story
  14. comment
    Comment #3943024

    http://www.behind-the-enemy-lines.com/2012/04/google-attack-... Interesting post which showed how badly configured linkages between private google docs and S3 caused an accidental …

  15. comment
    Comment #3940691

    Backtrack is used to install/host metasploit. If you find Metasploit daunting then you could use Armitage - a gui interface for metasploit.

  16. story
  17. story
  18. comment
    Comment #3261740

    Thank you for your comments. I am always learning and take this opportunity to do that as well from someone with a better insight and experience. On the specific points raised here…

  19. comment
    Comment #3259782

    we have been working on this and have had some success in detecting and stopping an attack. would be glad to share more details, if you want

  20. comment
    Comment #3259778

    Thanks for you 'vote' :). I have responded to the issue of nginx vs os

  21. comment
    Comment #3259760

    the attack was done with slow http traffic. the delay effect on an apache server on the same os(centos) was different than was on nginx(again on centos). also i have been able to c…

  22. story
  23. comment
    Comment #3119779

    @jayesheg - I tested LDoS on nginx. It easily crashes it within a few seconds.

  24. story
  25. comment
    Comment #3075149

    nginx should also be vulnerable, though one has better control over it, relatively. I have not yet tested full bloodedly against nginx, yet though. I will do that soon and publish.…