<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>sysmonk blog &#187; IT</title>
	<atom:link href="http://www.fw.lt/category/it/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.fw.lt</link>
	<description>me and my big mouth</description>
	<lastBuildDate>Tue, 17 Nov 2009 10:49:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Photo gallery?</title>
		<link>http://www.fw.lt/2009/10/27/photo-gallery/</link>
		<comments>http://www.fw.lt/2009/10/27/photo-gallery/#comments</comments>
		<pubDate>Tue, 27 Oct 2009 16:42:24 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[life]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=105</guid>
		<description><![CDATA[Anyone knows any decent and good photo gallery software, or a photo gallery service? Picasa is really nice, but it has a limit of 100 Mb which is really small. Gallery 2, last time i checked, was a lot-of-stuff-in-one-place-with-difficult-and-crappy-code-inside kind of project. I&#8217;ll take a look if it got better recently. P.S. Perl/php/c/c++ prefered. Java/Ruby/python [...]]]></description>
			<content:encoded><![CDATA[<p>Anyone knows any decent and good photo gallery software, or a photo gallery service?</p>
<p><a href="http://picasa.google.com">Picasa</a> is really nice, but it has a limit of 100 Mb which is really small.</p>
<p>Gallery 2, last time i checked, was a lot-of-stuff-in-one-place-with-difficult-and-crappy-code-inside kind of project. I&#8217;ll take a look if it got better recently.</p>
<p>P.S. Perl/php/c/c++ prefered. Java/Ruby/python isn&#8217;t prefered either (could be the client part, but not the server part).</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2009/10/27/photo-gallery/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New notebook!</title>
		<link>http://www.fw.lt/2008/11/10/new-notebook/</link>
		<comments>http://www.fw.lt/2008/11/10/new-notebook/#comments</comments>
		<pubDate>Mon, 10 Nov 2008 19:31:13 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[life]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=96</guid>
		<description><![CDATA[So, after a few months of not having a good place to work at home, i finally bought a new notebook! It&#8217;s a MacBook! Yes, yes, a MacBook. It&#8217;s a white 13&#8243;, 2.4 GHz Core 2 Duo with 2 GB of RAM, 160 GB SATA 5.4k rpm&#8217;s, a 8x superdrive and Intel GMA x3100 144 [...]]]></description>
			<content:encoded><![CDATA[<p>So, after a few months of not having a good place to work at home, i finally bought a new notebook!</p>
<p>It&#8217;s a MacBook! Yes, yes, a MacBook.</p>
<p>It&#8217;s a white 13&#8243;, 2.4 GHz Core 2 Duo with 2 GB of RAM, 160 GB SATA 5.4k rpm&#8217;s, a 8x superdrive and Intel GMA x3100 144 MB video card.</p>
<p>Almost everybody who i&#8217;ve told that i bought a Mac asked me what OS will i be using&#8230;</p>
<p>Mostly, i use FreeBSD (yes, on desktop/laptop), but this time i&#8217;m trying to stick to Mac OS. It&#8217;s quite nice, stable, and almost usable&#8230; although there are still some little things i have to get used to.</p>
<p>If i won&#8217;t like it, i&#8217;ll try get back to FreeBSD, but so far i&#8217;m liking it.</p>
<p>Oh, and also, now when i have a new laptop &#8211; maybe i&#8217;ll be writing more posts to my blog <img src='http://www.fw.lt/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  (famous last words).</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/11/10/new-notebook/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>If you support Open Source software you support terrorism</title>
		<link>http://www.fw.lt/2008/10/05/if-you-support-open-source-software-you-support-terrorism/</link>
		<comments>http://www.fw.lt/2008/10/05/if-you-support-open-source-software-you-support-terrorism/#comments</comments>
		<pubDate>Sun, 05 Oct 2008 13:06:28 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[fun]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=93</guid>
		<description><![CDATA[I&#8217;ve stumbled upon this picture today. That&#8217;s all, i&#8217;m removing all my non-windows systems ( that is, ALL systems) and installing windblows there! Ok, ok, just joking. But the banner is really funny.]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve stumbled upon this picture today. That&#8217;s all, i&#8217;m removing all my non-windows systems ( that is, ALL systems) and installing windblows there! <img src='http://www.fw.lt/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Ok, ok, just joking. But the banner is really funny.</p>
<p><a href="http://www.fw.lt/wp-content/uploads/2008/10/linuxusageamongterrorisvv8.gif"><img class="aligncenter size-medium wp-image-94" title="linuxusageamongterrorisvv8" src="http://www.fw.lt/wp-content/uploads/2008/10/linuxusageamongterrorisvv8.gif" alt="" width="300" height="250" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/10/05/if-you-support-open-source-software-you-support-terrorism/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco &#8211; what the hell happened with you?!</title>
		<link>http://www.fw.lt/2008/09/25/cisco-what-the-hell-happened-with-you/</link>
		<comments>http://www.fw.lt/2008/09/25/cisco-what-the-hell-happened-with-you/#comments</comments>
		<pubDate>Thu, 25 Sep 2008 18:13:25 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=84</guid>
		<description><![CDATA[I&#8217;m really disappointed in Cisco today&#8230;. Today they had a major bug on their website &#8211; the webmaster must have done a s/t//g over the main website, resulting in all t&#8216;s disappearing on the website, which resulted in css and javascript not displaying at all. They fixed it in about 2 hours. Quite long for [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m really disappointed in Cisco today&#8230;.</p>
<p>Today they had a major bug on their website &#8211; the webmaster must have done a s/t//g over the main website, resulting in all <em>t</em>&#8216;s disappearing on the website, which resulted in css and javascript not displaying at all.</p>
<p>They fixed it in about 2 hours. Quite long for <strong>_such_</strong> a company. But hey, shit happens to everybody! So i&#8217;m not blaming them&#8230;</p>
<p>And now, the same day, <a title="cisco IOS multiple vulnerabilities" href="http://secunia.com/Advisories/31990/">security advisory for Cisco</a> with 12 (yes, TWELVE!!!!) security vulnerabilities for cisco IOS&#8217;es.</p>
<p>WHAT THE ******?!</p>
<p>I mean, really&#8230; Cisco, what happened with you?!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/09/25/cisco-what-the-hell-happened-with-you/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Houston, we have a problem&#8230; My ThinkPad R52 is down :(</title>
		<link>http://www.fw.lt/2008/08/29/houston-we-have-a-problem-my-thinkpad-r52-is-down/</link>
		<comments>http://www.fw.lt/2008/08/29/houston-we-have-a-problem-my-thinkpad-r52-is-down/#comments</comments>
		<pubDate>Fri, 29 Aug 2008 07:08:23 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[notebook]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=66</guid>
		<description><![CDATA[I usually don&#8217;t shutdown any of my computers, except when my girlfriend sleeps at my place. Yesterday was that kind of day, so i shutdown my notebook not to distract her sleeping. In the morning, when she asked me to look when her bus leaves, i have powered up my notebook&#8230;and&#8230;. nothing&#8230; What the f*ck?!?!! [...]]]></description>
			<content:encoded><![CDATA[<p>I usually don&#8217;t shutdown any of my computers, except when my girlfriend sleeps at my place. Yesterday was that kind of day, so i shutdown my notebook not to distract her sleeping.</p>
<p>In the morning, when she asked me to look when her bus leaves, i have powered up my notebook&#8230;and&#8230;. nothing&#8230;</p>
<p>What the f*ck?!?!!</p>
<p><span id="more-66"></span></p>
<p>I can hear the hard drive do some stuff, i can hear the fans, i can feel the heat coming, but there&#8217;s nothing on the display.</p>
<p>After a minute or two i hear BIOS screaming BEEEEEEEEEEEEEEEEEEEP, BEEP BEEP&#8230;.. Woops &#8230; something IS wrong.</p>
<p>I&#8217;ve taken my girlfriend to the bus station, and went to google for BIOS beep codes. The first match told me &#8211; 1 long beep and 2 short beeps is video/monitor problem, in the second place is the dram problem, third place &#8211; motherboard problem.</p>
<p>Fuck. I don&#8217;t have any tools to open up my notebook at home, but even if i had, i don&#8217;t know what i can do with it as it is 99% a hardware problem, and i suck at hardware.</p>
<p>Now i have to use my workstation which i don&#8217;t usually use as i don&#8217;t have a comfortable table and chair.</p>
<p>I&#8217;ll try taking the notebook to my work on monday to see if the local guys can help me out somehow, but if not &#8230;. uff&#8230; R.I.P my sweet notebook <img src='http://www.fw.lt/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
<p>P.S. Maybe anyone has any ideas about this problem and how i can fix it?</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/08/29/houston-we-have-a-problem-my-thinkpad-r52-is-down/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>WordPress Automatic Upgrade bugs &#8211; information disclosure</title>
		<link>http://www.fw.lt/2008/08/21/wordpress-automatic-upgrade-bugs-information-disclosure/</link>
		<comments>http://www.fw.lt/2008/08/21/wordpress-automatic-upgrade-bugs-information-disclosure/#comments</comments>
		<pubDate>Thu, 21 Aug 2008 14:13:23 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[plugin]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=55</guid>
		<description><![CDATA[On August 15 WordPress 2.6.1 was released &#8211; i haven&#8217;t updated my blog because the update didn&#8217;t have any improvements i needed. A few days ago, some guy in #wordpress @freenode mentioned a WordPress Automatic Upgrade plugin &#8211; so i thought i&#8217;ll give it a try and update my blog using it. Downloading and installing [...]]]></description>
			<content:encoded><![CDATA[<p>On August 15 WordPress 2.6.1 was released &#8211; i haven&#8217;t updated my blog because the update didn&#8217;t have any improvements i needed.</p>
<p>A few days ago, some guy in #wordpress @<a title="Freenode network" href="http://freenode.net">freenode</a> mentioned a <a title="WordPress Automatic Upgrade plugin" href="http://wordpress.org/extend/plugins/wordpress-automatic-upgrade/">WordPress Automatic Upgrade plugin</a> &#8211; so i thought i&#8217;ll give it a try and update my blog using it.</p>
<p><span id="more-55"></span></p>
<p>Downloading and installing the plugin was easy ( as it always is ). The plugin offered me to upgrade my wordpress install from 2.6.0 to 2.6.1 &#8211; i&#8217;ve agreed.</p>
<p>WPAU (WordPress Automatic Upgrade) backuped the files and database, and offered me to download it &#8211; good.</p>
<p>Then it downloaded the update, put the website into maintenance mode, disabled all plugins, upgraded the install, and re-activated the plugins.</p>
<p>The update went smooth. Everything works! WPAU also offered to remove the backups &#8211; and, from my personal experience, i know that not everybody chooses to remove the backups. That&#8217;s where the problem starts&#8230;</p>
<p>WPAU generates a random file name for backups in wpau-backup directory &#8211; that&#8217;s fine. But if you have directory indexing turned on ( default in most of the places ) &#8211; everyone who will go to your blog&#8217;s wpau-backup directory will see the backup files, and will be able to download them! That&#8217;s bad.</p>
<p>Now, what&#8217;s in the backups ? Backups have your blog&#8217;s root directory with all kind of stuff, but most interesting is wp-config.php &#8230; which has your MySQL&#8217;s database password inside &#8230;</p>
<p>As most sites have phpMyAdmin available for maintenance &#8211; you can use that stuff to create new wordpress user with admin privileges, change the admins password/email, change the content of the blog &#8211; in other words, almost anything.</p>
<p>If the site doesn&#8217;t have phpMyAdmin or remote MySQL access &#8211; you will get the database backup, with all the useful information inside, all the password-protected posts and etc.</p>
<p>Next thing, if you do have directory indexes OFF &#8211; then there&#8217;s another problem &#8211; WPAU leaves a file behind it with lots of useful information, and the file is accessible to everybody. Filename won&#8217;t be published here, but it&#8217;s not a big deal to find out which file it is.</p>
<p>That file has plenty of nice useful information:</p>
<ul>
<li>file system paths to your blog installation</li>
<li>file list in your blog directory</li>
<li>ful list of enabled WordPress plugins</li>
<li>path to the random file name having your WordPress backups!</li>
</ul>
<p>So, even if You have indexing turned off &#8211; full url to your backups is available to everybody.</p>
<p>So, the minimum information disclosure WPAU does is paths to your blog installation, maximum &#8211; full access to your database or even ftp account.</p>
<p>So, for a PoC let&#8217;s see what information does WPAU authors <a title="WPAU authors homepage" href="http://techie-buzz.com">home page</a> give out.</p>
<p>So, the full path to the blog is: /home/.anubis/keithdsouza/techie-buzz.com</p>
<p>The full list of activated plugins follows:</p>
<p>404-notifier/404-notifier.php<br />
MyAvatars/myavatars.php<br />
ST_AddRelated2Feed.php<br />
adsense-injection.php<br />
akismet/akismet.php<br />
all-in-one-seo-pack/all_in_one_seo_pack.php<br />
better-comments-manager/better-comments-manager.php<br />
better-tags-manager/better-tags-manager.php<br />
brianslatestcomments.php<br />
briansthreadedcomments.php<br />
cforms/cforms.php<br />
comment-relish.php<br />
diggthis1.1.3.php<br />
download-counter.php<br />
easygravatars/easygravatars.php<br />
feedburner_feedsmith_plugin_2.2/FeedBurner_FeedSmith_Plugin.php<br />
full-text-feed/full_feed.php<br />
future_calendar.php<br />
google-analyticator/google-analyticator.php<br />
google-sitemap-generator/sitemap.php<br />
increase-sociability/increase-sociability.php<br />
kb-robotstxt/kb-robots-txt.php<br />
kontera/kontera.php<br />
live-comment-preview/live-comment-preview.php<br />
loginlockdown/loginlockdown.php<br />
math-comment-spam-protection/math-comment-spam-protection.php<br />
mydashboard/mydashboard.php<br />
no-self-ping/no-self-pings.php<br />
notify-unconfirmed-subscribers/notify-unconfirmed-subscribers.php<br />
ozh-better-feed/wp_ozh_betterfeed.php<br />
plugin-central/plugin-central.php<br />
pmetrics-wordpress.php<br />
popularity-contest/popularity-contest.php<br />
psychic-search/psychic-search.php<br />
recent-posts/recent-posts.php<br />
related-posts.php<br />
runPHP/runPHP.php<br />
seo-title-tag/seo-title-tag.php<br />
show_top_commentators.php<br />
simple-forum/sf-control.php<br />
sitemap-generator/sitemap-generator.php<br />
srg_clean_archives.php<br />
stats/stats.php<br />
subscribe-to-comments/subscribe-to-comments.php<br />
subscriber-gadget.php<br />
techie-social/techie-social.php<br />
technorati-rank/technorati-rank.php<br />
top10.php<br />
tpbc.php<br />
what_would_seth_godin_do.php<br />
wp-admin-fluency/wp-admin-fluency.php<br />
wp-cache/wp-cache.php<br />
wp-contact-form/wp-contactform.php<br />
wp-db-backup/wp-db-backup.php<br />
wp-page-numbers/wp-page-numbers.php<br />
wp-reinvigorate.php<br />
wp-subscribed.php</p>
<p>The random filename for database backup is: wpau-db-backupHmttozkA.zip</p>
<p>The random filename for files backup is: wpau-files-bak-wfxtiEGj.zip</p>
<p>Although, the file doesn&#8217;t exist (it was cleaned up), but if it would  exist and directory indexing would be off &#8211; you could download the database backup directly.</p>
<p>Tried to use this stuff on a few blogs and 30% of them didn&#8217;t have the backup files removed, and i could download them using the random file name i&#8217;ve got from wpau&#8217;s leftover files.</p>
<p>The author of the plugin was informed about this on 2008-08-18.</p>
<p>This was fixed on 2008-08-21 with WordPress Automatic Upgrade 1.2.2</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/08/21/wordpress-automatic-upgrade-bugs-information-disclosure/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Happy SysAdmin day!!!</title>
		<link>http://www.fw.lt/2008/07/25/happy-sysadmin-day/</link>
		<comments>http://www.fw.lt/2008/07/25/happy-sysadmin-day/#comments</comments>
		<pubDate>Fri, 25 Jul 2008 10:38:57 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[life]]></category>
		<category><![CDATA[sysadmin]]></category>
		<category><![CDATA[sysadminday]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=49</guid>
		<description><![CDATA[Last Friday of July is the international System Administrators Appreciation Day. So, I want to congratulate all the geeks on the internet and wish you a good sysadmin day! For everybody else &#8211; if you have a sysadmin friend &#8211; congratulate him! Even better, buy him a gift, a beer, a new 23&#8243; LCD display [...]]]></description>
			<content:encoded><![CDATA[<p>Last Friday of July is the international System Administrators Appreciation Day.</p>
<p>So, I want to congratulate all the geeks on the internet and wish you a good sysadmin day!</p>
<p>For everybody else &#8211; if you have a sysadmin friend &#8211; congratulate him! Even better, buy him a gift, a beer, a new 23&#8243; LCD display or anything like that!</p>
<p>If not sysadmins, then you wouldn&#8217;t be reading this blog at all, if not sysadmins &#8211; you couldn&#8217;t make a phone call, if not sysadmins &#8211; you wouldn&#8217;t be able to do most of the things that &#8220;just work&#8221; for you.</p>
<p>If not sysadmins &#8211; there wouldn&#8217;t be any internet or any network at all!</p>
<p>So, go run to the nearest shop, buy a six-pack and go congratulate your sysadmin <img src='http://www.fw.lt/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>Oh, and by the way, the lithuanian sysadmin day contest is over, and the winner is already known (but it&#8217;s not published yet), but i want to congratulate him and thank all the other sysadmins who took a part in this contest &#8211; it was a pleasure to look how you guys dealt with all the tasks, and was a bit sad to know that 3 or 4 out of 16 tasks weren&#8217;t completed at all <img src='http://www.fw.lt/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
<p>Those tasks were really hard, though. So, that&#8217;s not a big problem that nobody completed them, don&#8217;t cry! <img src='http://www.fw.lt/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/07/25/happy-sysadmin-day/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Hostex SysAdminDay begins</title>
		<link>http://www.fw.lt/2008/07/23/hostex-sysadminday-begins/</link>
		<comments>http://www.fw.lt/2008/07/23/hostex-sysadminday-begins/#comments</comments>
		<pubDate>Wed, 23 Jul 2008 07:12:08 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[sysadminday]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=46</guid>
		<description><![CDATA[Hostex&#8217;s SysAdminDay begins. The tasks where just uploaded to the website and people can already view it here. I&#8217;m one of the guys who get the answers to all the tasks and rate them, so i&#8217;m very interested in how will people do them! The tasks are really interesting, and i really wouldn&#8217;t like if [...]]]></description>
			<content:encoded><![CDATA[<p>Hostex&#8217;s SysAdminDay begins.</p>
<p>The tasks where just uploaded to the website and people can already view it <a title="sysadminday 2008 tasks" href="http://www.sysadminday.lt/page7.php">here</a>.</p>
<p>I&#8217;m one of the guys who get the answers to all the tasks and rate them, so i&#8217;m very interested in how will people do them! The tasks are really interesting, and i really wouldn&#8217;t like if somebody would cheat. It&#8217;s all about the process, not about the result!</p>
<p>So, anyway, have a nice game guys!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/07/23/hostex-sysadminday-begins/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>sysadminday 2008 is comming!</title>
		<link>http://www.fw.lt/2008/07/19/sysadminday-2008-is-comming/</link>
		<comments>http://www.fw.lt/2008/07/19/sysadminday-2008-is-comming/#comments</comments>
		<pubDate>Fri, 18 Jul 2008 22:09:15 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>
		<category><![CDATA[life]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=32</guid>
		<description><![CDATA[Hooray, next Friday is the System Administrator Appreciation Day (or just Sysadmin Day). Hostex, one of Lithuania&#8217;s biggest hosting and data-center companies, announced the already annual sysadminday contest (3rd year in a row). System administrators all over Lithuania are welcome to join this contest. It will start on Wednesday (July 23th), at 10:00 am. The [...]]]></description>
			<content:encoded><![CDATA[<p>Hooray, next Friday is the System Administrator Appreciation Day (or just Sysadmin Day).</p>
<p>Hostex, one of Lithuania&#8217;s biggest hosting and data-center companies, announced the already annual sysadminday contest (3rd year in a row).</p>
<p><span id="more-32"></span></p>
<p>System administrators all over Lithuania are welcome to join this contest. It will start on Wednesday (July 23th), at 10:00 am. The tasks and questions will be published on the website (sysadminday.lt). People will have 34 hours to complete the tasks.</p>
<p>Each task gives some points, and only the first submitted answer is correct. The first person who submits an answer for some of the tasks gets more points. So, you have to be correct and fast too!</p>
<p>The winner of the contest is a person who gets most points and will get a 2500 litas worth trip to any country he wishes. There will be prizes for some specific tasks too, but that information isn&#8217;t published yet.</p>
<p>Also, everyone who will register for the event (and atleast try to solve some tasks) will be invited to a party which will take place on Friday, July 25th ( the sysadminday itself ) in some local Vilnius club. I wonder if beer will be free out there? <img src='http://www.fw.lt/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> </p>
<p>Also, i am one of the few guys who creates the tasks. And, what can i say &#8211; few of them i like very much, few of them i don&#8217;t, but it still will be really great. If you&#8217;re a sysadmin, a dba, a network admin or any other admin from Lithuania &#8211; register for event, it&#8217;ll be great (and you won&#8217;t loose anything if you won&#8217;t solve any tasks)!</p>
<p>P.S. you can find tasks from the last sysadminday 2007 contest <a title="sysadminday 2007 tasks" href="http://www.sysadminday.lt/uzduotys07.php" target="_blank">here</a> just to get an idea of how it looks.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/07/19/sysadminday-2008-is-comming/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>pigu.lt security check</title>
		<link>http://www.fw.lt/2008/07/18/pigult-security-check/</link>
		<comments>http://www.fw.lt/2008/07/18/pigult-security-check/#comments</comments>
		<pubDate>Fri, 18 Jul 2008 08:18:46 +0000</pubDate>
		<dc:creator>alex</dc:creator>
				<category><![CDATA[IT]]></category>

		<guid isPermaLink="false">http://www.fw.lt/?p=30</guid>
		<description><![CDATA[After the Russians attacked Lithuanian governmental institution websites, pigu.lt, a Lithuanian e-shop (something like amazon.com), announced a security contest. In time period of one week ( since July 9th till July 15th ) anyone could try and hack pigu.lt, and wouldn&#8217;t be sued for that (if he won&#8217;t make any real damage). For anyone who [...]]]></description>
			<content:encoded><![CDATA[<p>After the Russians attacked Lithuanian governmental institution websites, <a title="pigu.lt" href="http://pigu.lt" target="_blank">pigu.lt</a>, a Lithuanian e-shop (something like amazon.com), announced a security contest.</p>
<p>In time period of one week ( since July 9th till July 15th ) anyone could try and hack pigu.lt, and wouldn&#8217;t be sued for that (if he won&#8217;t make any real damage).</p>
<p>For anyone who could successfully exploit their website, pigu.lt team would give you 1024 piguLitas ( about 500$ ) discount in their e-shop.</p>
<p><span id="more-30"></span></p>
<p>Sadly enough, i only got to know about this on July 15th night ;(</p>
<p>Because the time period was over already, i only tried to look at their web page &#8216;softly&#8217;. After a hour or so of browsing i&#8217;ve found a few non-critical bugs. When i contacted their team in the morning, the bugs were already fixed! They checked the logs and saw my actions and fixed them, great job guys!</p>
<p>Anyway, the biggest hole which was found was a 3rd party support app. Staff has left the installation files in the default place, and the attacker used them to re-install the app again (but used his own database). That way, their support page was compromised, but clients information wasn&#8217;t leaked.</p>
<p>The winner of the contest was DI security, some local lithuanian team (never heard of them). You can read about the contest results more <a title="pigu.lt" href="http://pigu.blogas.lt/402556/uz-pigult-papuosima--1024-lt.html" target="_blank">here</a> (lt).</p>
<p>Oh, and by the way, pigu.lt team gave me a 100 piguLitas discount for the non-critical bugs i found, thanks guys! <img src='http://www.fw.lt/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://www.fw.lt/2008/07/18/pigult-security-check/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
