<?xml version="1.0" encoding="iso-8859-1"?>


	<!DOCTYPE rss PUBLIC "-//Netscape Communications//DTD RSS 0.91//EN"

	"http://my.netscape.com/publish/formats/rss-0.91.dtd">


	<rss version="0.91">


	<channel>

        <title>Echo Research and Development Center - News</title>

	<link>http://e-rdc.org/</link>

	<description></description>
<item>

        <pubDate>June 23 2009 09:47:34</pubDate>

	<title>idsecconf 2009 Call For Paper</title>

	<link>http://e-rdc.org/v1/news.php?readmore=138</link>

	<description>Kami dari komite &lt;a href='http://idsecconf.org' target='_blank'&gt;idsecconf2009&lt;/a&gt; memberi kesempatan pada rekan-rekan penggiat keamanan komputer di seluruh Indonesia untuk berpartisipasi lewat penyerahan paper. Topik yang kami cari adalah seperti di bawah ini:&lt;br /&gt;
&lt;br /&gt;
- Web hacking&lt;br /&gt;
- Wireless hacking&lt;br /&gt;
- Metode Penetration testing&lt;br /&gt;
- Forensic dan Anti Forensic&lt;br /&gt;
- Kriptografi&lt;br /&gt;
- Fuzzing&lt;br /&gt;
- Exploit writing&lt;br /&gt;
- System hardening&lt;br /&gt;
- Lock Picking&lt;br /&gt;
- Open Hardware Implementation&lt;br /&gt;
&lt;br /&gt;
Jika anda memiliki judul paper diluar cakupan topik diatas, kami masih terbuka untuk mempertimbangkannya selama masih berkaitan dengan security.&lt;br /&gt;
</description>

	</item>

<item>

        <pubDate>June 09 2009 05:23:16</pubDate>

	<title>[ECHO_ADV_110$2009] Firefox (GNU/Linux version) &amp;lt;= 3.0.10 Denial Of Services</title>

	<link>http://e-rdc.org/v1/news.php?readmore=137</link>

	<description>Affected software description:&lt;br /&gt;
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~&lt;br /&gt;
Firefox is a popular Internet browser from the Mozilla Corporation. &lt;br /&gt;
&lt;br /&gt;
Application	: Firefox for GNU/linux&lt;br /&gt;
version		: Firefox/3.0.10 (X11; Linux i686; U; en)&lt;br /&gt;
                  Also affected for lower version (tested for version 3.0.8 at&lt;br /&gt;
                  Ubuntu 9.0.4)&lt;br /&gt;
			&lt;br /&gt;
URL		: http://firefox.com&lt;br /&gt;
Bugzilla entry  : https://bugzilla.mozilla.org/show_bug.cgi?id=496265&lt;br /&gt;
&lt;br /&gt;
Description 	:&lt;br /&gt;
&lt;br /&gt;
Firefox 3.0.10 (previous version) for GNU/Linux Operating systems are unable to &lt;br /&gt;
handle GIF images when it becomes a body backgrounds.&lt;br /&gt;
</description>

	</item>

<item>

        <pubDate>June 01 2009 15:59:19</pubDate>

	<title>echo zine volume 07 issue 21 CFP</title>

	<link>http://e-rdc.org/v1/news.php?readmore=136</link>

	<description>echo|zine, Vol 7 Issue 21&lt;br /&gt;
&lt;br /&gt;
* /CALL /FOR /PAPERS * /CALL /FOR /PAPERS * /CALL /FOR /PAPERS *&lt;br /&gt;
* /CALL /FOR /PAPERS * /CALL /FOR /PAPERS * /CALL /FOR /PAPERS *&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Hail Hackers !!!!&lt;br /&gt;
&lt;br /&gt;
Kami, echo|staff, yang sedang mempersiapkan echo|zine, Vol 7 Issue 21&lt;br /&gt;
mengajak Anda semua untuk dapat berpartisipasi dengan mengirimkan&lt;br /&gt;
artikel seputar:&lt;br /&gt;
&lt;br /&gt;
* hacking&lt;br /&gt;
* security&lt;br /&gt;
* phreaking&lt;br /&gt;
* forensics&lt;br /&gt;
* carding&lt;br /&gt;
* electronics&lt;br /&gt;
* cryptography&lt;br /&gt;
* local underground news&lt;br /&gt;
&lt;br /&gt;
Panduan menulis artikel dapat dibaca kembali pada echo|zine, Vol 3&lt;br /&gt;
Issue 11 [http://ezine.echo.or.id/ezine11/echo11-003.txt]&lt;br /&gt;
&lt;br /&gt;
Para kontributor dihimbau untuk mengirimkan artikel sedini mungkin&lt;br /&gt;
untuk menghindari konflik pemilihan topik dan memudahkan editor&lt;br /&gt;
memandu dan mengoreksi artikel. Selain itu, artikel yang dikirimkan&lt;br /&gt;
diharapkan bukan merupakan artikel terjemahan/saduran dan belum pernah&lt;br /&gt;
dimuat di media lain.&lt;br /&gt;
&lt;br /&gt;
Kami juga menerima usulan interview untuk komunitas, lengkapnya silahkan&lt;br /&gt;
baca di http://ezine.echo.or.id/interview-komunitas.txt&lt;br /&gt;
&lt;br /&gt;
Usulan artikel harus dikirimkan ke ezine@echo.or.id&lt;br /&gt;
================&lt;br /&gt;
&lt;br /&gt;
Important dates:&lt;br /&gt;
* submission deadline ......................... 19 Agustus 2009&lt;br /&gt;
* author release .............................. 02 September 2009&lt;br /&gt;
* public release .............................. 09 September 2009&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Salam,&lt;br /&gt;
&lt;br /&gt;
echo|zine editor-in-chief®</description>

	</item>

<item>

        <pubDate>May 21 2009 21:29:03</pubDate>

	<title>[ECHO_ADV_109$2009] Miniweb 2.0 (Publisher) Blind Sql Injection Vulnerability</title>

	<link>http://e-rdc.org/v1/news.php?readmore=135</link>

	<description>Vulnerability:&lt;br /&gt;
~~~~~~~~~~~~~~&lt;br /&gt;
&lt;br /&gt;
Input passed to the &quot;historymonth&quot; parameter in index.php page is not properly verified before being used &lt;br /&gt;
into sql queries.This vulnerability can be exploited to manipulate SQL queries by injecting arbitrary SQL code.</description>

	</item>

<item>

        <pubDate>April 08 2009 23:11:41</pubDate>

	<title>Himbauan Menyukseskan Pemilu 2009</title>

	<link>http://e-rdc.org/v1/news.php?readmore=134</link>

	<description>Pemilu merupakan kegiatan akbar penyaluran aspirasi politik yang menentukan kemajuan bangsa Indonesia sehingga seluruh rakyat berkepentingan mendukung suksesnya pelaksanaan Pemilu 2009.&lt;br /&gt;
&lt;br /&gt;
Dengan berbagai keterbatasan yang ada, rekan-rekan BPPT (sebagai Tim TI KPU) dan ID-SIRTII, bersama-sama dengan berbagai komunitas yang berhubungan dengan keamanan informasi, antara lain: Coder, Echo, Jasakom, Komunitas Keamanan Informasi (KKI), Virologi, dan komunitas lainnya berusaha meningkatkan keamanan TI Pemilu 2009 sesuai dengan kapasitas masing-masing.</description>

	</item>

<item>

        <pubDate>April 06 2009 08:46:05</pubDate>

	<title>Please Welcome our New Staff</title>

	<link>http://e-rdc.org/v1/news.php?readmore=133</link>

	<description>&lt;a style=&quot;&quot; href=&quot;http://2.bp.blogspot.com/_bg8hoEiJFV8/Rpxi3V3SpjI/AAAAAAAAAYc/cwpW5BnKPbg/s1600-h/echoerz.jpg&quot; onblur=&quot;try {parent.deselectBloggerImageGracefully();} catch(e) {}&quot;&gt;&lt;/a&gt; Dear all, we are gladly inform you that after yesterdays &lt;a href=http://echo.or.id&gt;echo&lt;/a&gt;staff annual meetings, we'd like to proudly introduce you all to our new echo staff. Perhaps some of you already know her, she already contribute to our latest &lt;a href=http://ezine.echo.or.id&gt;echo magazine issue&lt;/a&gt;. and within age that is still very young, then we are hoping that there will be more knowledge that she can share with echo, and perhaps also the more knowledge that she could gather.</description>

	</item>

<item>

        <pubDate>March 31 2009 00:20:29</pubDate>

	<title>[ECHO_ADV_108$2009] JobHut &amp;lt;= 1.2 (pk) Remote Sql Injection Vulnerability</title>

	<link>http://e-rdc.org/v1/news.php?readmore=132</link>

	<description>Vulnerability:&lt;br /&gt;
~~~~~~~~~~~~~~&lt;br /&gt;
Input passed to the &quot;pk&quot; parameter in browse.php page is not properly verified before being used &lt;br /&gt;
into sql queries.This vulnerability can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;
</description>

	</item>

<item>

        <pubDate>March 16 2009 18:10:58</pubDate>

	<title>[ECHO_ADV_107$2009] FubarForum &amp;lt;= 1.6 Critical File Disclosure Vulnerability</title>

	<link>http://e-rdc.org/v1/news.php?readmore=131</link>

	<description>Vulnerability:&lt;br /&gt;
~~~~~~~~~~~~~~&lt;br /&gt;
Critical user.tsv file in db's folder are vulnerable to direct access to view 'critical' information about username and md5hash password from users.</description>

	</item>

<item>

        <pubDate>March 16 2009 18:09:53</pubDate>

	<title>[ECHO_ADV_106$2009] FireAnt &amp;lt;= 1.3 Critical File Disclosure Vulnerability</title>

	<link>http://e-rdc.org/v1/news.php?readmore=130</link>

	<description>Vulnerability:&lt;br /&gt;
~~~~~~~~~~~~~~&lt;br /&gt;
Critical user.tsv file in db's folder are vulnerable to direct access to view 'critical' information about username and md5hash password from users.</description>

	</item>

<item>

        <pubDate>March 16 2009 18:08:26</pubDate>

	<title>[ECHO_ADV_105$2009] chaozzDB &amp;lt;= 1.2 Critical File Disclosure Vulnerability</title>

	<link>http://e-rdc.org/v1/news.php?readmore=129</link>

	<description>Vulnerability:&lt;br /&gt;
~~~~~~~~~~~~~~&lt;br /&gt;
Critical user.tsv file in db's folder are vulnerable to direct access to view 'critical' information about username and md5hash password from users.&lt;br /&gt;
</description>

	</item>

</channel>
	</rss>