Book Mark

Ike.ninja

Linux Fun
  • Home
  • How to
  • Reference Links
  • Categories
    • Releases
    • Plesk
    • Community
    • CMS
    • security
    • MYSQL
    • cPanel
  • Tools
    • IP Checker
    • Byte Converter
RSS

Red Hat: 2012:1364-01: bind97: Important Advisory

Oct16
by Ike on October 16, 2012 at 9:01 am
Posted In: Uncategorized

(Oct 12) Updated bind97 packages that fix one security issue are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having [More…]

└ Tags: Red Hat, security, update
 Comment 

Red Hat: 2012:1363-01: bind: Important Advisory

Oct16
by Ike on October 16, 2012 at 9:01 am
Posted In: Uncategorized

(Oct 12) Updated bind packages that fix one security issue are now available for Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this update as having [More…]

└ Tags: Red Hat, security, update
 Comment 

Domain Registration Risk Service now available

Oct15
by Ike on October 15, 2012 at 3:15 pm
Posted In: Netcraft Services

The Domain Registration Risk Calculator is a tool for domain registrars to
analyse the likelihood that new domains will be used for fraudulent activities. The
service identifies domains which are deceptively similar to legitimate websites run
by banks and other institutions commonly targeted by phishing attacks.

Since such registrations are often made using stolen credit cards,
there are significant advantages to the registrar in refusing them.

Netcraft has blocked well over five million phishing attacks since 2005, and our phishing feed
is used by all of the major web browsers, and also by leading anti-virus companies,
domain registrars, registries, certificate authorities and hosting companies.
Our extensive experience in identifying, validating and eliminating phishing sites has provided
us with a wealth of knowledge of the tricks that are used
by fraudsters to create a deceptive domain name. We analyse our database of over six thousand organisations
which have been targeted by
phishing attacks to extract a comprehensive set of homoglyphs that could be used to convert
bona fide domains to fraudulent ones. Example transformations are the corresponding
characters from an IDN alphabet, or ASCII character set substitutions such as replacing “o”
(letter O) with “0” (zero), or replacing “l” (lower-case letter l) with “1” (digit
one), or simply appending or prepending strings such as update or secure.

A Facebook phishing site, along with its Domain Registration Risk score

The service computes a registration risk score for a proposed domain, which gives a
measure of the likelihood that this candidate domain may be used to host a
phishing attack. We do this by using the results of two algorithms:

  • The first algorithm, Phish target score compares the candidate domain to each of the frequently-phished legitimate domains we have on record. This comparison is done on a per-character basis, and the score is formed by looking at the minimum set of edits required to map from one to the other.

    The algorithm recognises certain tricks commonly used in domain names to deceive victims, such as double letters (paaypal.com) or confusing characters or combinations of characters (paypa1.com). We also check against a list of deceptive prefixes and suffixes that are frequently used by phishing sites, including signin and verify.

    As well as using a set of fixed rules, this algorithm also retains the flexibility to match new mappings and edits that have not been seen before. Using the suggested cut-off of a minimum score of 5/10, this method identifies 278 (12.7%) out of the 2,191 phishing domains currently blocked by Netcraft.

  • The second algorithm, String entropy score, works entirely differently. Many phishing domains in our database are essentially random strings of alphanumeric digits, yet very few legitimate sites follow this pattern. The string entropy test looks to see if a domain looks like a combination of real dictionary words and plausible names, or whether it looks more like a randomised string. The higher the score, the more random a string appears to be.

    Although most dictionary strings score zero, the suggested cut-off is a minimum score of 5/10; any domain scoring higher than this is very likely to be random, but below this score false positives are increasingly likely.

    Using the suggested cut-off identifies 474 (21.6%) of the 2,191 identified phishing domains and these are substantially non-overlapping with those domains spotted by the first method.

These two methods work together to give sophisticated and largely
independent indicators of the likelihood that a candidate domain may be used
to host phishing attacks against a known legitimate target.
Using the overall risk rating produced by combining the two scores would
presently detect 742 (33.9%) of the 2,191 currently blocked phishing domains.

Example Domains

The domains in the table below have run phishing attacks and are shown together with their
domain registration risk.

Domain Target Registration Risk
hsbc-hk.biz hsbchk.com 10.00
activate-facebook-security-confirmation.tk facebook.com 10.00
xdzfhv.tk (none) 9.98
cimbclicksonline.com cimbclicks.com.my 9.10
jtlwm.com (none) 8.94
taobao581.cn taobao.com 8.84
halifaxinternational.org halifax.co.uk 8.67
skype-load.com skype.com 8.49
natwestt.co.uk natwest.co.uk 8.26
1tw1tter.com twitter.com 7.14
santadar.co.uk santander.co.uk 6.93
htmail.co.uk hotmail.co.uk 6.66
dhl-couriers.co.uk dhl.co.uk 5.54
sbo6666.com sbo666.com 5.64
alibabeexpress.com alibaba.com 5.07

The Interface

A web-based interface to the system is available for evaluation purposes and ad-hoc queries. For automated processes and bulk queries an API is available to return domain registration risk information in JSON format. Bespoke formats can be made available on request.

Entering the domain securepaypa1.com into the test system produces the report shown below:

More Information

Please get in touch
([email protected]) if you would like to
try out this service or for subscription information.

└ Tags: Netcraft Services
 Comment 

Plesk Troubleshooters

Oct15
by Ike on October 15, 2012 at 7:49 am
Posted In: Plesk, Releases

Plesk Service Team is pleased to announce online Plesk Troubleshooters.
Plesk Troubleshooters help you diagnose and solve technical problems that are occurring with your Plesk server. When you start a troubleshooter, you should provide exact error message from Plesk or system log file related to the problem you are having. This information helps troubleshooter to find solution of problem.

Please share your opinion, experience, recommendations and so on here: http://forum.parallels.com/showthread.php?t=264029

Thank you for your cooperation!

└ Tags: forum, online, Plesk Service Team
 Comment 

WordPress 3.5 Beta 2

Oct13
by Ike on October 13, 2012 at 12:02 am
Posted In: Backups, CMS, PHP, Releases, security, Testing, Wordpress

Two weeks after the first beta, WordPress 3.5 Beta 2 is now available for download and testing.

This is software still in development, so we don’t recommend that you run it on a production site. Set up a test site to play with the new version. To test WordPress 3.5, try the WordPress Beta Tester plugin (you’ll want “bleeding edge nightlies”). Or you can download the beta here (zip).

For more, check out the extensive Beta 1 blog post, which covers what’s new in version 3.5 and how you can help. What’s new since beta 1? I’m glad you asked:

  • New workflow for working with image galleries, including drag-and-drop reordering and quick caption editing.
  • New user interface for setting static front pages for the Reading Settings screen. (#16379)
  • New image editing API. (#6821)

As always, if you think you’ve found a bug, you can post to the Alpha/Beta area in the support forums. Or, if you’re comfortable writing a reproducible bug report, file one on the WordPress Trac. There, you can also find a list of known bugs and everything we’ve fixed so far. Happy testing!

└ Tags: Releases, Testing
  • Page 2,806 of 2,975
  • « First
  • «
  • 2,804
  • 2,805
  • 2,806
  • 2,807
  • 2,808
  • »
  • Last »

What’s New?

  • Fedora 41: Apptainer CVE-2025-65105 Security Fix Advisory
  • Fedora 43: Apptainer 1.4.5 Important Fix CVE-2025-65105
  • Ubuntu 18.04: USN-7907-5 Linux Kernel Important Security Flaws
  • Debian: Chromium Important DSA-6080-1 Code Exec DoS Issues
  • Fedora 42: SingularityCE Important Upgrade 4.3.5 – FEDORA-2025-54d78b9fed
  • Fedora 43: perl-Alien-Brotli Critical Security DoS Fix 2025-d93200cf16
  • Fedora 42: Wireshark 4.6.1 Critical Issue Advisory – FEDORA-2025-f810869906
  • Fedora 42: yarnpkg Command Injection Fix CVE-2025-64756 Advisory
  • Ubuntu 25.10: Linux Kernel Critical Flaws Security Patch USN-7906-3
  • Ubuntu 22.04: USN-7889-6 Linux Kernel Important Security Patch
  • Ubuntu 22.04 LTS: Linux Kernel Critical Security Issues USN-7928-3
  • Ubuntu 22.04: 7928-2 Linux Kernel FIPS Security Updates
  • Ubuntu 22.04 LTS: USN-7928-1 Linux Kernel Critical Security Issues
  • Debian: Important DoS Vulnerabilities in FFmpeg DSA-6080-1 Advisory
  • Ubuntu 20.04 LTS: USN-7922-1 Linux Kernel Important Security Issues
  • Ubuntu 24.04 LTS: Kernel Important Security Fixes USN-7921-1 CVE-2025-39946
  • Debian: firefox-esr Critical Privilege Escalation DSA-6078-1 CVE-2025-14321
  • 2026 Global Partner Program Announcement
  • Debian: pdns-recursor Critical Denial of Service Vulnerability DSA-6077-1
  • Debian: libpng1.6 Critical Info Leak & DoS Vulnerabilities DSA-6076-1
  • Fedora 43: python3-docs Update 2025-e235793f10 – Maintenance Release
  • Fedora 43: python3.14 Critical Update Addresses Quadratic Complexity Bug
  • Debian: WordPress Important XSS and Info Disclosure DSA-6075-1
  • Ubuntu 22.04 LTS: fontTools Important Path Traversal Risk CVE-2025-66034
  • Debian: webkit2gtk Critical Info Exfiltration DSA-6074-1 CVE-2025-13947

Search

Translator

Tags

Business and industry code Community cPanel CVE Debian Debian Linux Distribution - Security Advisories Development Events Fedora Fedora Linux Distribution - Security Advisories General Hosting Important Advisory Linux Moderate Advisory Month in WordPress news Parallels Plesk Parallels Plesk Panel Performance PHP Plesk news and announcements Plesk Panel Podcast ProdDevSec Product and technology Products Project Release News Red Hat Red Hat Linux Distribution - Security Advisories Releases security Security Centre sensitive site Ubuntu Ubuntu Linux Distribution - Security Advisories update updates Various vulnerability Web Server Survey Wordpress wp-briefing

Posts

Helpful Links

  • Liquidweb.com
  • MYSQL Dev Documentation
  • Plugins
  • Source forge SED command
  • Themes
  • WordPress Documentation
  • You Tube
December 2025
M T W T F S S
« Nov    
1234567
891011121314
15161718192021
22232425262728
293031  
  • Google
  • Yahoo
  • Liquid Web
  • Storm
  • YouTube

©1999-2025 Ike.ninja | Powered by WordPress with Easel | Subscribe: RSS | Back to Top ↑

50 queries. 8.5 mb Memory usage. 0.457 seconds.