<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Operation “Aurora” Hit Google, Others</title>
	<atom:link href="http://blogs.mcafee.com/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/feed" rel="self" type="application/rss+xml" />
	<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others</link>
	<description></description>
	<lastBuildDate>Tue, 29 Nov 2011 07:51:20 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Incidentresponder</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-172736</link>
		<dc:creator>Incidentresponder</dc:creator>
		<pubDate>Thu, 13 Oct 2011 13:19:30 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-172736</guid>
		<description>It&#039;s no wonder things don&#039;t ever get fixed. We can&#039;t even get the correct info! As &quot;ARealIncidentResponder&quot; stated below the actual folks who found this aren&#039;t even mentioned (for good reason actually) point is that until info within the security field is shared more openly atleast WITHIN the field then these things will continue to happen, propagate cause a whole host of problems. It doesn&#039;t help when alot of supposed security news sources have alot of way wrong info whether intentionally of not!</description>
		<content:encoded><![CDATA[<p>It&#8217;s no wonder things don&#8217;t ever get fixed. We can&#8217;t even get the correct info! As &#8220;ARealIncidentResponder&#8221; stated below the actual folks who found this aren&#8217;t even mentioned (for good reason actually) point is that until info within the security field is shared more openly atleast WITHIN the field then these things will continue to happen, propagate cause a whole host of problems. It doesn&#8217;t help when alot of supposed security news sources have alot of way wrong info whether intentionally of not!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Flavio Blanco</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3930</link>
		<dc:creator>Flavio Blanco</dc:creator>
		<pubDate>Tue, 29 Jun 2010 15:30:03 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3930</guid>
		<description>I d like to hear more about antihacker101s comments.  Can he provide better facts to support his conclusions, of being part of a botnet? What tools are helping his fight?  What technical advice can he pass along to detect worms that arent the decoys, botnets and more.  While I have often suspected some compromize of hardware firmware or motherboard chips is occuring, what evidence does he have to support this?  How can we recognize this kind of infection?  Whats the fix, flashing the bios?  What about deep hard disk sector infections that seemingly survive reformats?  Seen any of that?</description>
		<content:encoded><![CDATA[<p>I d like to hear more about antihacker101s comments.  Can he provide better facts to support his conclusions, of being part of a botnet? What tools are helping his fight?  What technical advice can he pass along to detect worms that arent the decoys, botnets and more.  While I have often suspected some compromize of hardware firmware or motherboard chips is occuring, what evidence does he have to support this?  How can we recognize this kind of infection?  Whats the fix, flashing the bios?  What about deep hard disk sector infections that seemingly survive reformats?  Seen any of that?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mike</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3929</link>
		<dc:creator>Mike</dc:creator>
		<pubDate>Mon, 21 Jun 2010 20:17:34 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3929</guid>
		<description>I love how all the &quot;leading&quot; security firms such as the one this site promots has to scramble but my &quot;firewall&quot; has been able to block this exploit since 2006.</description>
		<content:encoded><![CDATA[<p>I love how all the &#8220;leading&#8221; security firms such as the one this site promots has to scramble but my &#8220;firewall&#8221; has been able to block this exploit since 2006.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pander</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3927</link>
		<dc:creator>pander</dc:creator>
		<pubDate>Tue, 11 May 2010 16:51:22 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3927</guid>
		<description>Ok we know the problem right?  And we seem to know some of the fixes, correct?  Now I want to know, as do most business-minded folks, how do we profit from this threat?  Seems as though &quot;decoys&quot; can be valuable, as is unmined gold ore. But I wonder if they (decoys)can be used to reverse-infect the Chinese or any other origin? This may not be a cure. But it sure would be fun to know we scrambled their eggs for once, and we burned down their kitchens to do it! lol</description>
		<content:encoded><![CDATA[<p>Ok we know the problem right?  And we seem to know some of the fixes, correct?  Now I want to know, as do most business-minded folks, how do we profit from this threat?  Seems as though &#8220;decoys&#8221; can be valuable, as is unmined gold ore. But I wonder if they (decoys)can be used to reverse-infect the Chinese or any other origin? This may not be a cure. But it sure would be fun to know we scrambled their eggs for once, and we burned down their kitchens to do it! lol</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: smith</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3926</link>
		<dc:creator>smith</dc:creator>
		<pubDate>Wed, 28 Apr 2010 07:14:38 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3926</guid>
		<description>Hey folks,
Thanks a lot for sharing such a nice and informative article, i had gone through the article  and also the comments posts and i agree with the views of KARL. he had mentioned a very good views.


By the way for more information on Security Courses check this link:  http://www.eccouncil.org/certification.aspx</description>
		<content:encoded><![CDATA[<p>Hey folks,<br />
Thanks a lot for sharing such a nice and informative article, i had gone through the article  and also the comments posts and i agree with the views of KARL. he had mentioned a very good views.</p>
<p>By the way for more information on Security Courses check this link:  http://www.eccouncil.org/certification.aspx</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Open Source GPL WordPress Themes</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3925</link>
		<dc:creator>Open Source GPL WordPress Themes</dc:creator>
		<pubDate>Thu, 08 Apr 2010 15:16:06 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3925</guid>
		<description>We need security indeed, but unfortunately we still need Windows more. I try switching to other OS but it always make me come back to Windows. Sadly isn\&#039;t?</description>
		<content:encoded><![CDATA[<p>We need security indeed, but unfortunately we still need Windows more. I try switching to other OS but it always make me come back to Windows. Sadly isn\&#8217;t?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: webcertain</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3924</link>
		<dc:creator>webcertain</dc:creator>
		<pubDate>Thu, 18 Mar 2010 12:13:43 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3924</guid>
		<description>Surely Windows is a flawed system, but I found that AVG is a good antivirus. It also has lots of free products, and it&#039;s easy to use. Worth a try!</description>
		<content:encoded><![CDATA[<p>Surely Windows is a flawed system, but I found that AVG is a good antivirus. It also has lots of free products, and it&#8217;s easy to use. Worth a try!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SimonR</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3923</link>
		<dc:creator>SimonR</dc:creator>
		<pubDate>Thu, 18 Feb 2010 16:44:57 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3923</guid>
		<description>@Hindsight. Not sure anyone is expecting perfection. I run a dev org and at least we make an effort to run some reasonable security checks before we release. We also beleave in continuous improvement, not cutting corners. I will have to say that the focus/importance placed on security is really driven by the culture of the org. I can say from experience that security is more important in orgs that focus on customer satisfaction vs. org that focus on the next big sale.</description>
		<content:encoded><![CDATA[<p>@Hindsight. Not sure anyone is expecting perfection. I run a dev org and at least we make an effort to run some reasonable security checks before we release. We also beleave in continuous improvement, not cutting corners. I will have to say that the focus/importance placed on security is really driven by the culture of the org. I can say from experience that security is more important in orgs that focus on customer satisfaction vs. org that focus on the next big sale.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rotundo Pierluigi</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3922</link>
		<dc:creator>Rotundo Pierluigi</dc:creator>
		<pubDate>Thu, 11 Feb 2010 13:44:43 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3922</guid>
		<description>I think we have to reengineer the way to look at operating systems now...


--
Rotundo Pierluigi</description>
		<content:encoded><![CDATA[<p>I think we have to reengineer the way to look at operating systems now&#8230;</p>
<p>&#8211;<br />
Rotundo Pierluigi</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: antihacker101</title>
		<link>http://blogs.mcafee.com/corporate/cto/operation-%e2%80%9caurora%e2%80%9d-hit-google-others/comment-page-3#comment-3921</link>
		<dc:creator>antihacker101</dc:creator>
		<pubDate>Wed, 03 Feb 2010 08:35:31 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com?p=1847#comment-3921</guid>
		<description>false security is all that is happening.  i been fighting the botnet longer than anyone.  not only was it being built in my machines(and other hardware and servies), but i just learned that i am the command and control center of the botnet.  i have info on the worm and hackers.
if you want to really make a secure full working detectory, you need the info i have.  example.  the worm loves decoys.  conficters were made detectable on purpose.  the main worm gets in by injecting radio packets into a stream that is picked up by chips on the motherboard and also a hardware exploit from your network connection.

the main work hijacks what it refers to as global.
the worm works in layers.  they keep monitoring eachother.  the hackers are not the main hackers.  the original hackers attempted to remove the worm a week after april first after i succeeded in sending a message to a comunity site revealing the source.  it backfired and used kid hackers(given info) to set authoritys away from them.  parts of the main worm just started to get addressed in novemeber.  the hacker did something to the worm nov 17 by altering display/lan/audio drivers and then the ports used changed to port 445 instead of the normal high ports(linked as commands using parsing injections).</description>
		<content:encoded><![CDATA[<p>false security is all that is happening.  i been fighting the botnet longer than anyone.  not only was it being built in my machines(and other hardware and servies), but i just learned that i am the command and control center of the botnet.  i have info on the worm and hackers.<br />
if you want to really make a secure full working detectory, you need the info i have.  example.  the worm loves decoys.  conficters were made detectable on purpose.  the main worm gets in by injecting radio packets into a stream that is picked up by chips on the motherboard and also a hardware exploit from your network connection.</p>
<p>the main work hijacks what it refers to as global.<br />
the worm works in layers.  they keep monitoring eachother.  the hackers are not the main hackers.  the original hackers attempted to remove the worm a week after april first after i succeeded in sending a message to a comunity site revealing the source.  it backfired and used kid hackers(given info) to set authoritys away from them.  parts of the main worm just started to get addressed in novemeber.  the hacker did something to the worm nov 17 by altering display/lan/audio drivers and then the ports used changed to port 445 instead of the normal high ports(linked as commands using parsing injections).</p>
]]></content:encoded>
	</item>
</channel>
</rss>

