<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: (Final Update) The hackers strike again but MindaNews online again</title>
	<atom:link href="http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/feed/" rel="self" type="application/rss+xml" />
	<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/</link>
	<description>Walter I. Balane's Notes on Life and Living in Mindanao</description>
	<pubDate>Thu, 28 Aug 2008 19:45:24 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Eko</title>
		<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-32765</link>
		<dc:creator>Eko</dc:creator>
		<pubDate>Thu, 22 May 2008 13:59:41 +0000</pubDate>
		<guid isPermaLink="false">http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-32765</guid>
		<description>Spyd3r - no way it was the plugins.  And RFI hacking is already outdated.</description>
		<content:encoded><![CDATA[<p>Spyd3r - no way it was the plugins.  And RFI hacking is already outdated.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SpYd3R</title>
		<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-30547</link>
		<dc:creator>SpYd3R</dc:creator>
		<pubDate>Wed, 19 Dec 2007 06:38:09 +0000</pubDate>
		<guid isPermaLink="false">http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-30547</guid>
		<description>I believe it was the plugins that causes the site to be hacked I would suggest to double check the compatibility issues and to see whether the plugins installed on joomla powered site is updated and bugs are already fix before applying it to your site.  Have you heard about RFI hacking tricks?  (Remote File Inclusion) hacking method????  Well, you should know about it guys... rampant nowadays.</description>
		<content:encoded><![CDATA[<p>I believe it was the plugins that causes the site to be hacked I would suggest to double check the compatibility issues and to see whether the plugins installed on joomla powered site is updated and bugs are already fix before applying it to your site.  Have you heard about RFI hacking tricks?  (Remote File Inclusion) hacking method????  Well, you should know about it guys&#8230; rampant nowadays.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: drw</title>
		<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-18106</link>
		<dc:creator>drw</dc:creator>
		<pubDate>Mon, 23 Jul 2007 08:02:57 +0000</pubDate>
		<guid isPermaLink="false">http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-18106</guid>
		<description>hackers can gain access through site by using joomla plugins installed in your site. so just be sure that you uninstall plugins that are unsecure or update those plugins you have if you can find any exploit in it. and ftp are somewhat dangerous so make your ftp access more secure. like blocking access to ftp after how many times of incorrect password entered, then return access after how many minutes or an hour.</description>
		<content:encoded><![CDATA[<p>hackers can gain access through site by using joomla plugins installed in your site. so just be sure that you uninstall plugins that are unsecure or update those plugins you have if you can find any exploit in it. and ftp are somewhat dangerous so make your ftp access more secure. like blocking access to ftp after how many times of incorrect password entered, then return access after how many minutes or an hour.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tolitz</title>
		<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-18003</link>
		<dc:creator>tolitz</dc:creator>
		<pubDate>Sun, 22 Jul 2007 08:48:35 +0000</pubDate>
		<guid isPermaLink="false">http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-18003</guid>
		<description>thx for the info bro...</description>
		<content:encoded><![CDATA[<p>thx for the info bro&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mindanaw</title>
		<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-17955</link>
		<dc:creator>mindanaw</dc:creator>
		<pubDate>Sun, 22 Jul 2007 00:39:05 +0000</pubDate>
		<guid isPermaLink="false">http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-17955</guid>
		<description>Thanks Jun,
I'll forward this comment from yours. You could surmise from my post I don't really know the technical side of the hack, hehe. But yes I heard one of our KL-based consultants on Joomla telling us about that.
Big tango!</description>
		<content:encoded><![CDATA[<p>Thanks Jun,<br />
I&#8217;ll forward this comment from yours. You could surmise from my post I don&#8217;t really know the technical side of the hack, hehe. But yes I heard one of our KL-based consultants on Joomla telling us about that.<br />
Big tango!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jun Macarambon</title>
		<link>http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-17952</link>
		<dc:creator>Jun Macarambon</dc:creator>
		<pubDate>Sun, 22 Jul 2007 00:13:18 +0000</pubDate>
		<guid isPermaLink="false">http://istambay.wordpress.com/2007/07/21/the-hacking-is-there-again/#comment-17952</guid>
		<description>its not a target nor specific hack on mindanews. its more of a random hack. this kind of hackers scan the internet looking for specific vulnerable of joomla. from what i see... mindanews.com joomla file -&#62; configuration.php was carelessly has a 777 file permission nor in laymans term... configuration.php writeable even by the public. joomla current version 1.0.12 is stable and this hack was due to carelessly setting configuration.php writable. i believe the database is intack. 

nangyari sa akin din to....when im so lazy after configuring joomla powered sites i forgot a 777 permision mode of configuration.php to change it to 644 mode.

just restore the old configuration.php ... hope you still remember the db name, db user, db password ... this is the fast fix.</description>
		<content:encoded><![CDATA[<p>its not a target nor specific hack on mindanews. its more of a random hack. this kind of hackers scan the internet looking for specific vulnerable of joomla. from what i see&#8230; mindanews.com joomla file -&gt; configuration.php was carelessly has a 777 file permission nor in laymans term&#8230; configuration.php writeable even by the public. joomla current version 1.0.12 is stable and this hack was due to carelessly setting configuration.php writable. i believe the database is intack. </p>
<p>nangyari sa akin din to&#8230;.when im so lazy after configuring joomla powered sites i forgot a 777 permision mode of configuration.php to change it to 644 mode.</p>
<p>just restore the old configuration.php &#8230; hope you still remember the db name, db user, db password &#8230; this is the fast fix.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
