<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Secure SMS Today</title>
	<atom:link href="http://www.securesmstoday.com.au/feed" rel="self" type="application/rss+xml" />
	<link>http://www.securesmstoday.com.au</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Mon, 19 Sep 2011 23:11:08 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Timthumb WordPress Hack</title>
		<link>http://www.securesmstoday.com.au/security-alert-log/timthumb-wordpress-hack</link>
		<comments>http://www.securesmstoday.com.au/security-alert-log/timthumb-wordpress-hack#comments</comments>
		<pubDate>Mon, 19 Sep 2011 22:29:08 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Alert Log]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://www.securesmstoday.com.au/?p=1407</guid>
		<description><![CDATA[Many of the themes used with WordPress sites (the content management system in use on this web site) have used a popular image re-sizing script called Timthumb (http://www.binarymoon.co.uk/projects/timthumb/). This script is used by hundreds of thusands of sites and is quite popular in the WordPress theming community. It was discovered last month that a vulnerability [...]]]></description>
			<content:encoded><![CDATA[<h4>Many of the themes used with WordPress sites (the content management system in use on this web site) have used a popular image re-sizing script called Timthumb (<a class="ext-link" title="http://www.binarymoon.co.uk/projects/timthumb/ - Opens in a new window" href="http://www.binarymoon.co.uk/projects/timthumb/" target="_blank">http://www.binarymoon.co.uk/projects/timthumb/</a>).</h4>
<p>This script is used by hundreds of thusands of sites and is quite popular in the WordPress theming community. It was discovered last month that a vulnerability existed within certain versions of the script (<a class="ext-link" title="http://code.google.com/p/timthumb/issues/detail?id=212 - Opens in a new window" href="http://code.google.com/p/timthumb/issues/detail?id=212" target="_blank">http://code.google.com/p/timthumb/issues/detail?id=212</a>). If you are using a WordPress theme with your mobile WordPress web site then it is highly likely that the Timthumb WordPress Hack can be exploited on your site (depending on when you last updated your theme). The author of the Timthumb script has provided a fix that you should apply to your site now.</p>
<p><img class="size-full wp-image-1408 alignnone" title="Timthumb WordPress Hack" src="http://www.securesmstoday.com.au/wp-content/uploads/2011/09/hacked1.jpg" alt="Timthumb WordPress Hack" width="499" height="324" /></p>
<h3>It’s Not Personal</h3>
<p>Most hacked sites are just black hat SEO scam artists trying to increase their own site ranking for whatever purposes. It’s not personal so don’t panic if you find you have been hacked. Don’t take it personally, they are not out to get you in particular.</p>
<p>Sites being hacked have always been a problem, if yours has never been hacked then consider yourself to be lucky. You have to do your best to make sure this kind of thing doesn&#8217;t happen but it still can.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/security-alert-log/timthumb-wordpress-hack/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>British police seek Guardian&#8217;s hacking sources</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/british-police-seek-guardians-hacking-sources</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/british-police-seek-guardians-hacking-sources#comments</comments>
		<pubDate>Sat, 17 Sep 2011 20:11:03 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.abc.net.au/news/2011-09-18/british-police-seek-guardian27s-hacking-sources/2904542</guid>
		<description><![CDATA[British police are using the Official Secrets Act in an attempt to force The Guardian newspaper to reveal the name of the person who told them the mobile phone of a murdered schoolgirl Milly Dowler had been hacked.]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">British police are using the Official Secrets Act in an attempt to force The Guardian newspaper to reveal the name of the person who told them the mobile phone of a murdered schoolgirl Milly Dowler had been hacked.
</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/british-police-seek-guardians-hacking-sources/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Phone thief suspect sends victim a friend request</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/phone-thief-suspect-sends-victim-a-friend-request</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/phone-thief-suspect-sends-victim-a-friend-request#comments</comments>
		<pubDate>Sat, 17 Sep 2011 17:41:03 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.securesmstoday.com.au/?guid=acdba2937347896d0ba75b57cd4b1bc4</guid>
		<description><![CDATA[A Colorado man is accused of stealing a woman's cell phone and then sending her a friend request on Facebook.]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">A Colorado man is accused of stealing a woman&#8217;s cell phone and then sending her a friend request on Facebook.
</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/phone-thief-suspect-sends-victim-a-friend-request/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>JK Rowling to cross-examine hacking witnesses</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/jk-rowling-to-cross-examine-hacking-witnesses</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/jk-rowling-to-cross-examine-hacking-witnesses#comments</comments>
		<pubDate>Wed, 14 Sep 2011 21:33:06 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.abc.net.au/news/2011-09-15/jk-rowling-to-front-british-press-inquiry/2899842</guid>
		<description><![CDATA[JK Rowling will appear at a public inquiry into British press standards set up after the News of the World phone hacking scandal.]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">JK Rowling will appear at a public inquiry into British press standards set up after the News of the World phone hacking scandal.
</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/jk-rowling-to-cross-examine-hacking-witnesses/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Android SpyEye Spitmo Discovered</title>
		<link>http://www.securesmstoday.com.au/security-alert-log/android-spyeye-spitmo-discovered</link>
		<comments>http://www.securesmstoday.com.au/security-alert-log/android-spyeye-spitmo-discovered#comments</comments>
		<pubDate>Tue, 13 Sep 2011 12:26:20 +0000</pubDate>
		<dc:creator>SmsMyCustomers FSecure</dc:creator>
				<category><![CDATA[Security Alert Log]]></category>
		<category><![CDATA[android]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://www.f-secure.com/weblog/archives/00002236.html</guid>
		<description><![CDATA[It was going to happen sooner or later&#8230;Trusteer reports that an Android variant of Spitmo (SpyEye for mobile) has been discovered.The methodology sounds familiar for those familiar with ZeuS Mitmo and SpyEye Spitmo: infected computers inject a m...]]></description>
			<content:encoded><![CDATA[<h4>It was going to happen sooner or later…</h4>
<p>Trusteer reports that an Android variant of <a class="ext-link" title="Spitmo - Opens in a new window" href="http://www.f-secure.com/weblog/archives/00002135.html" rel="nofollow" target="_blank">Spitmo</a> (SpyEye for mobile) has been discovered.</p>
<p><img style="border: 0pt none;" src="http://www.f-secure.com/weblog/archives/DriodOS_Spitmo.png" alt="DriodOS/Spitmo" width="410" height="285" border="0" /></p>
<p><span id="more-1385"></span>The methodology sounds familiar for those familiar with ZeuS Mitmo and SpyEye Spitmo: infected computers inject a message into targeted netbanks prompting their customers to install software on their phones. Once Spitmo is installed, the SpyEye attacker is able to monitor incoming SMS and to steal <a class="ext-link" title="MTAN - Opens in a new window" href="http://en.wikipedia.org/wiki/Transaction_authentication_number#Mobile_TAN_.28mTAN.29" rel="nofollow" target="_blank">MTAN</a> authentication messages.</p>
<p>More from Trusteer: <a class="ext-link" title="First SpyEye Attack on Android Mobile Platform now in the Wild - Opens in a new window" href="https://www.trusteer.com/blog/first-spyeye-attack-android-mobile-platform-now-wild" rel="nofollow" target="_blank">First SpyEye Attack on Android Mobile Platform now in the Wild</a></p>
<p>On 13/09/11 At 03:22 PM</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/security-alert-log/android-spyeye-spitmo-discovered/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>James Murdoch recalled to give hacking evidence</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/james-murdoch-recalled-to-give-hacking-evidence</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/james-murdoch-recalled-to-give-hacking-evidence#comments</comments>
		<pubDate>Tue, 13 Sep 2011 11:55:31 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.abc.net.au/news/2011-09-13/james-murdoch-recalled-to-give-hacking-evidence/2897960</guid>
		<description><![CDATA[British MPs say they will recall News Corporation's deputy chief operating officer, James Murdoch, to answer questions about what he knew about phone hacking at the News of the World newspaper.]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">British MPs say they will recall News Corporation&#8217;s deputy chief operating officer, James Murdoch, to answer questions about what he knew about phone hacking at the News of the World newspaper.
</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/james-murdoch-recalled-to-give-hacking-evidence/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Glowing cats new tool in AIDS research</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/glowing-cats-new-tool-in-aids-research</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/glowing-cats-new-tool-in-aids-research#comments</comments>
		<pubDate>Mon, 12 Sep 2011 05:45:03 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.abc.net.au/news/2011-09-12/glowing-cats-new-tool-in-aids-research/2880960</guid>
		<description><![CDATA[US scientists have made an advance in AIDS research by developing a strain of green-glowing cats with cells that resist infection from a virus that causes feline AIDS.]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">US scientists have made an advance in AIDS research by developing a strain of green-glowing cats with cells that resist infection from a virus that causes feline AIDS.
</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/glowing-cats-new-tool-in-aids-research/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Android Riskware</title>
		<link>http://www.securesmstoday.com.au/security-alert-log/new-android-riskware</link>
		<comments>http://www.securesmstoday.com.au/security-alert-log/new-android-riskware#comments</comments>
		<pubDate>Thu, 08 Sep 2011 08:46:10 +0000</pubDate>
		<dc:creator>SmsMyCustomers FSecure</dc:creator>
				<category><![CDATA[Security Alert Log]]></category>
		<category><![CDATA[android]]></category>
		<category><![CDATA[riskware]]></category>

		<guid isPermaLink="false">http://www.f-secure.com/weblog/archives/00002233.html</guid>
		<description><![CDATA[We have just encountered a number of Android riskware applications that target subscribers in the China region.  The suspect applications cover a variety of topics, including horoscopes, farm and pet games/info and the Chinese calendar, to name a few. ...]]></description>
			<content:encoded><![CDATA[<h4>We have just encountered a number of Android riskware applications that target subscribers in the China region.</h4>
<p>The suspect applications cover a variety of topics, including horoscopes, farm and pet games/info and the Chinese calendar, to name a few. Below is a screenshot of the permissions requested by one of these applications:</p>
<p><img src="http://www.f-secure.com/weblog/archives/riskware_android_mobiletx_a_permissions.png" alt="riskware_android_mobiletx_a_permissions (67k image)" width="300" align="middle" border="1" /></p>
<p><span id="more-1382"></span>However some of them do not even look like what they claim to be and eventually crash (probably bad programming):</p>
<p><img src="http://www.f-secure.com/weblog/archives/riskware_android_mobiletx_a_forceclose.png" alt="riskware_android_mobiletx_a_forceclose (27k image)" width="300" border="1" /></p>
<p>Before the application crashes however (and usually right after its execution), it will retrieve the phone&#8217;s International Mobile Subscriber Identity (IMSI) number, then attempts to connect to a remote site:</p>
<p>- h t t p://mobile.tx.com.cn:[...]/client.[...].do <br /> &#8211; h t t p://mobile.tx.com.cn:[...]/client/[...].do</p>
<p>to check if the phone&#8217;s IMSI already exists (at time of writing, the remote sites were still accessible).</p>
<p>If the application isn&#8217;t able to access the remote site, or the site somehow returns an error response, it will proceed to send out an SMS message.</p>
<p>The SMS sending component first determines the phone&#8217;s subscriber ID, then depending on the retrieved information, it will select a different recipient number that it will send the message to.</p>
<p>The SMS body contains the following format:</p>
<p>- 99# [ IMSI ]#android#[ app_specific_string ]</p>
<p>As of the moment, we&#8217;re still investigating the implications of the application&#8217;s behavior; this may or may not be another example of fraudulent SMS registration for services. Nevertheless, the fact that it automatically sends out an SMS with the phone&#8217;s IMSI ID without the user&#8217;s awareness or consent is something that is not very desirable.</p>
<p>This is aside from the possible charges incurred and and unwanted identification of the phone&#8217;s number (when the other party receives the message).</p>
<p>We will detect these applications as Riskware:Android/MobileTX.A.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/security-alert-log/new-android-riskware/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Facebook iPhone app gets major update</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/facebook-iphone-app-gets-major-update</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/facebook-iphone-app-gets-major-update#comments</comments>
		<pubDate>Wed, 07 Sep 2011 15:46:27 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.securesmstoday.com.au/?guid=71dd6485f080ef4ea792c4a2c9f0e599</guid>
		<description><![CDATA[Facebook has released a major update to its iOS app with version 3.5, which overhauls much of the user interface, as well as incorporates some much-needed privacy consistency between its web and mobile versions.]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">Facebook has released a major update to its iOS app with version 3.5, which overhauls much of the user interface, as well as incorporates some much-needed privacy consistency between its web and mobile versions.

</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/facebook-iphone-app-gets-major-update/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://l.yimg.com/bt/api/res/1.2/GHmooUFaVKQaGA.uPl_mWQ--/YXBwaWQ9eW5ld3M7Zmk9ZmlsbDtoPTg2O3E9ODU7dz0xMzA-/http://l.yimg.com/os/en_us/News/digitaltrends.com/deadline_facebook0511-625x344.jpg" length="" type="image/jpeg" />
		</item>
		<item>
		<title>iPhone 5 Sushi Snap? Apple Engineer&#8217;s Lunch Photo Fuels Speculation</title>
		<link>http://www.securesmstoday.com.au/in-the-news/syndicated-news/iphone-5-sushi-snap-apple-engineers-lunch-photo-fuels-speculation</link>
		<comments>http://www.securesmstoday.com.au/in-the-news/syndicated-news/iphone-5-sushi-snap-apple-engineers-lunch-photo-fuels-speculation#comments</comments>
		<pubDate>Wed, 07 Sep 2011 14:31:08 +0000</pubDate>
		<dc:creator>SmsMyCustomers</dc:creator>
				<category><![CDATA[Syndicated]]></category>

		<guid isPermaLink="false">http://www.securesmstoday.com.au/?guid=6f0669a89c41f254861d3012cf530788</guid>
		<description><![CDATA[[More from Mashable: Facebook for iPhone Gets Big Privacy Upgrade [PICS]]]]></description>
			<content:encoded><![CDATA[<p class="strip_tags">[More from Mashable: Facebook for iPhone Gets Big Privacy Upgrade [PICS]]
</p>]]></content:encoded>
			<wfw:commentRss>http://www.securesmstoday.com.au/in-the-news/syndicated-news/iphone-5-sushi-snap-apple-engineers-lunch-photo-fuels-speculation/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

