<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Online Security &#187; Site Updates</title>
	<atom:link href="http://hackertarget.com/category/site-updates/feed/" rel="self" type="application/rss+xml" />
	<link>http://hackertarget.com</link>
	<description>Vulnerability Scanning and Assessments</description>
	<lastBuildDate>Sun, 05 Feb 2012 12:11:42 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Top 100K Sites WordPress Usage Infographic</title>
		<link>http://hackertarget.com/2011/08/top-100k-sites-wordpress-usage-infographic/</link>
		<comments>http://hackertarget.com/2011/08/top-100k-sites-wordpress-usage-infographic/#comments</comments>
		<pubDate>Mon, 22 Aug 2011 13:08:12 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>
		<category><![CDATA[infographic]]></category>
		<category><![CDATA[visualization]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=1555</guid>
		<description><![CDATA[WordPress.org have a post up detailing the &#8220;state of the word&#8221;. Around the same time we have been putting a wordpress infographic that highlights some of the findings from our analysis of wordpress usage among the top 100K sites (as rated by Alexa). WordPress Usage in the Top 100K Infographic<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/08/top-100k-sites-wordpress-usage-infographic/' addthis:title='Top 100K Sites WordPress Usage Infographic '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>WordPress.org have a <a href="http://wordpress.org/news/2011/08/state-of-the-word/" title="State of the Word" target="_blank">post</a> up detailing the &#8220;state of the word&#8221;. </p>
<p>Around the same time we have been putting a wordpress <a href="http://www.good.is/infographics" title="What is an Infographic?" target="_blank">infographic</a> that highlights some of the findings from our analysis of wordpress usage among the top 100K sites (as rated by Alexa).</p>
<p><a href="http://hackertarget.com/wordpress-infographic/" title="WordPress Usage Statistics Infographic">WordPress Usage in the Top 100K Infographic</a></p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/08/top-100k-sites-wordpress-usage-infographic/' addthis:title='Top 100K Sites WordPress Usage Infographic '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/08/top-100k-sites-wordpress-usage-infographic/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Winter Updates</title>
		<link>http://hackertarget.com/2011/07/winter-updates/</link>
		<comments>http://hackertarget.com/2011/07/winter-updates/#comments</comments>
		<pubDate>Wed, 13 Jul 2011 03:49:10 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=1383</guid>
		<description><![CDATA[Being mid-winter down here in Sydney, its been a time to hunker down and drink copious amounts of coffee. While doing that we have also pushed out many changes and updates to the scanning system and site. If you find any bugs, drop us a line.<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/07/winter-updates/' addthis:title='Winter Updates '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>Being mid-winter down here in Sydney, its been a time to hunker down and drink copious amounts of coffee.</p>
<p>While doing that we have also pushed out many changes and updates to the scanning system and site.</p>
<div class="shortcode-unorderedlist star"></p>
<ul>
<li>Backend, bug fixes in some of the backend scans. Improvements to other scans including improved results layout and more security checks.</li>
<li>Theme Refresh, we have stuck with the same Wootheme but have tidied up and done some updates. Hopefully the options and information is now clearer making it easier for you to get on with scanning and securing your systems.</li>
<li>Look out for upcoming exploitation demonstration posts and tutorials for the security newbies.</li>
</ul>
<p></div>

<p>If you find any bugs, drop us a line.</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/07/winter-updates/' addthis:title='Winter Updates '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/07/winter-updates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Secure WordPress</title>
		<link>http://hackertarget.com/2011/05/secure-wordpress/</link>
		<comments>http://hackertarget.com/2011/05/secure-wordpress/#comments</comments>
		<pubDate>Thu, 26 May 2011 00:18:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=1043</guid>
		<description><![CDATA[WordPress Scanner is the latest tool added to our kit. It can be used to test the security of your wordpress installation from an external perspective. No plugin installation is required, our systems will do an external passive analysis of your wordpress installation and highlight wordpress security issues along with recommendations to improve the security [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/05/secure-wordpress/' addthis:title='Secure WordPress '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p><a title="WordPress Scanner to Test Security of Installations" href="http://hackertarget.com/wordpress-security-scan">WordPress Scanner</a> is the latest tool added to <a title="Online Security Scan" href="http://hackertarget.com/">our kit</a>. It can be used to test the security of your <a href="http://wordpress.org">wordpress</a> installation from an external perspective. No plugin installation is required, our systems will do an external passive analysis of your wordpress installation and highlight wordpress security issues along with recommendations to improve the security of your installation.</p>
<p>Did you know that wordpress is the most popular web publishing platform? When looking at the Top 1 Million sites it is well ahead of other big players such as the Google owned <a href="http://www.blogger.com">Blogger</a> and open source frameworks such as <a href="http://www.joomla.org">Joomla</a> and <a href="http://www.drupal.org">Drupal</a>. In March <a href="http://hackertarget.com/2011/03/web-tech-2011-report/">HackerTarget.com produced a report</a> on the popularity of technologies in the Alexa Top 1 Million Sites.</p>
<p>Operating a secure WordPress installation is not a difficult task, it does require a small amount of work to stay on top of things, afterall with WordPress being so popular the security is constantly being tested.</p>
<blockquote><h3>Tips for securing your WordPress CMS</h3>
<ul>
<li> Back It Up &#8211; Be ready to lose it all at anytime. If you have an up to date backup restoring is much easier</li>
</ul>
<ul>
<li> Keep WordPress System up to date</li>
</ul>
<ul>
<li>Keep all Plugins up to date</li>
</ul>
<ul>
<li> Beware of untrusted Themes</li>
</ul>
<ul>
<li> Rename admin account to a non-generic name</li>
</ul>
<ul>
<li> Use strong passwords ( a dictionary word with a number after it is not a strong password! )</li>
</ul>
<ul>
<li> Keep your password safe! Do not re-use it on other sites.</li>
</ul>
<ul>
<li> Ensure you have up to date AV on your Windows Machine. Malware collects passwords.</li>
</ul>
<ul>
<li> The underlying server must be well managed and in a secure state</li>
</ul>
<ul>
<li> VPS or Dedicated server? Set up server monitoring (<a href="http://www.ossec.net" title="Host Based Log and IDS Analyser">ossec.net</a> is a good start)</li>
</ul>
</blockquote>
<p>There are a multitude of guides to securing your WordPress installation, in the mean time why not test your sites security now with our easy to use <a title="WordPress Scanner to Test Security of Installations" href="http://hackertarget.com/wordpress-security-scan">online scanner</a>.</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/05/secure-wordpress/' addthis:title='Secure WordPress '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/05/secure-wordpress/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New OpenVas Report Option</title>
		<link>http://hackertarget.com/2011/05/new-openvas-report-option/</link>
		<comments>http://hackertarget.com/2011/05/new-openvas-report-option/#comments</comments>
		<pubDate>Thu, 05 May 2011 03:14:54 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>
		<category><![CDATA[openvas]]></category>
		<category><![CDATA[security reporting]]></category>
		<category><![CDATA[vulnerability scan]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=1008</guid>
		<description><![CDATA[OpenVas is one the most popular tools we have online, and is an excellent way to perform a thorough vulnerability scan of a system to determine if there are any security issues or holes present. We have in the past couple of weeks added a new &#8220;Enhaned PDF&#8221; reporting option to our scanner, that is [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/05/new-openvas-report-option/' addthis:title='New OpenVas Report Option '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.openvas.org" title="OpenVas Scanner">OpenVas</a> is one the most popular tools we <a href="http://hackertarget.com/openvas-scan/" title="online vulnerability scan">have online</a>, and is an excellent way to perform a thorough vulnerability scan of a system to determine if there are any security issues or holes present.</p>
<p>We have in the past couple of weeks added a new &#8220;Enhaned PDF&#8221; reporting option to our scanner, that is a simple wrapper script around the html report. The idea is that it provides an easy to read and more understandable format for some of our less technical users, or those who would like to pass the report with the nice charts onto management.</p>
<p>In addition it does some basic data and geoip collection around the IP address and includes this in a map format.</p>
<p>If you have any further ideas or comments let us know.</p>
<p><a href="http://hackertarget.com/openvas-scan/">Online OpenVas Scan</a></p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/05/new-openvas-report-option/' addthis:title='New OpenVas Report Option '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/05/new-openvas-report-option/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>sqlmap 0.9 added to online security scans</title>
		<link>http://hackertarget.com/2011/04/sqlmap-0-9-added-to-online-security-scans/</link>
		<comments>http://hackertarget.com/2011/04/sqlmap-0-9-added-to-online-security-scans/#comments</comments>
		<pubDate>Wed, 20 Apr 2011 09:22:39 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=912</guid>
		<description><![CDATA[Latest update to the site tools is the addition of the new SqlMap 0.9 release to the sql injection test page. This is a tool that takes SQL Injection to the next level and beyond. While our online scan tests for Sql Injection in HTTP GET requests, this is only the beginning. This tool can [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/04/sqlmap-0-9-added-to-online-security-scans/' addthis:title='sqlmap 0.9 added to online security scans '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>Latest update to the site tools is the addition of the new SqlMap 0.9 release to the <a title="Free SQL Injection Scan Online" href="http://hackertarget.com/free-sql-scan/">sql injection test page</a>.</p>
<p>This is a tool that takes SQL Injection to the next level and beyond. While our online scan tests for Sql Injection in HTTP GET requests, this is only the beginning. This tool can exploit sql injection to give the tester an full operating system access either via an inserted shell or by external command execution. Does not matter if you are on Windows or Linux it can do both.</p>
<p>All the details are on the <a title="SQLmap - sql injection test site" href="http://sqlmap.sourceforge.net/">main site</a>. Or here is a quick list of improvements:</p>
<div>
<ul>
<li>Full support for <strong>MySQL</strong>, <strong>Oracle</strong>, <strong>PostgreSQL</strong>, <strong>Microsoft SQL Server</strong>, <strong>Microsoft Access</strong>, <strong>SQLite</strong>, <strong>Firebird</strong>, <strong>Sybase</strong> and <strong>SAP MaxDB</strong> database management systems.</li>
<li>Full support for five SQL injection techniques: <strong>boolean-based blind</strong>, <strong>time-based blind</strong>, <strong>error-based</strong>, <strong>UNION query</strong> and <strong>stacked queries</strong>.</li>
<li>Support to <strong>directly connect to the database</strong> without passing via a SQL injection, by providing DBMS credentials, IP address, port and database name.</li>
<li>Support to enumerate <strong>database users</strong>, <strong>users&#8217; password hashes</strong>, <strong>users&#8217; privileges</strong>, <strong>users&#8217; roles</strong>, <strong>databases</strong>, <strong>tables</strong> and <strong>columns</strong>.</li>
<li>Automatic recognition of password hashes format and support to <strong>crack them with a dictionary-based attack</strong>.</li>
<li>Support to <strong>dump database tables</strong> entirely, a range of entries or specific columns as per user&#8217;s choice. The user can also choose to dump only a range of characters from each column&#8217;s entry.</li>
<li>Support to <strong>search for specific database names, specific tables across all databases or specific columns across all databases&#8217; tables</strong>. This is useful, for instance, to identify tables containing custom application credentials where relevant columns&#8217; names contain string like <em>name</em> and <em>pass</em>.</li>
<li>Support to <strong>download and upload any file</strong> from the database server underlying file system when the database software is MySQL, PostgreSQL or Microsoft SQL Server.</li>
<li>Support to <strong>execute arbitrary commands and retrieve their standard output</strong> on the database server underlying operating system when the database software is MySQL, PostgreSQL or Microsoft SQL Server.</li>
<li>Support to <strong>establish an out-of-band stateful TCP connection between the attacker machine and the database server</strong> underlying operating system. This channel can be an interactive command prompt, a Meterpreter session or a graphical user interface (VNC) session as per user&#8217;s choice.</li>
<li>Support for <strong>database process&#8217; user privilege escalation</strong> via Metasploit&#8217;s <code>getsystem</code> command which inclhttp://testphp.vulnweb.com/artists.php?artist=2ude, among others, the  <a href="http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0346.html">kitrap0d</a> technique ( <a href="http://www.microsoft.com/technet/security/bulletin/ms10-015.mspx">MS10-015</a>).</li>
</ul>
<p>Have a look at the help file on the <a title="Free SQL Scanner" href="http://hackertarget.com/free-sql-scan/">scan page</a> for a sample run against the <a title="Acunetix Web Application Home Page" href="http://www.acunetix.com/">Acunetix</a> <a title="Acunetix Test Site" href="http://testphp.vulnweb.com/artists.php?artist=2">Test Site</a>.</p>
</div>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/04/sqlmap-0-9-added-to-online-security-scans/' addthis:title='sqlmap 0.9 added to online security scans '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/04/sqlmap-0-9-added-to-online-security-scans/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Web Tech 2011 &#8211; Part 2</title>
		<link>http://hackertarget.com/2011/04/web-tech-2011-part-2/</link>
		<comments>http://hackertarget.com/2011/04/web-tech-2011-part-2/#comments</comments>
		<pubDate>Thu, 07 Apr 2011 06:42:21 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>
		<category><![CDATA[fortune 1000]]></category>
		<category><![CDATA[mail hosting comparison]]></category>
		<category><![CDATA[web hosting]]></category>
		<category><![CDATA[web server survey]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=878</guid>
		<description><![CDATA[google.load("visualization", "1", {packages:["corechart"]}); google.setOnLoadCallback(drawChart); function drawChart() { var data = new google.visualization.DataTable(); data.addColumn('string', 'Type'); data.addColumn('number', 'Top 1 million'); data.addColumn('number', 'Netcraft'); data.addColumn('number', 'Fortune 1K'); data.addRows([ ['Apache', 66.3, 60.1, 28.5], ['IIS', 17.3, 20.0, 55.1], ['nginx', 7.5, 7.6, 0.5], ['Google', 3.0, 5.1, 0.1], ['LiteSpeed', 1.1, 0, 0], ['lighttpd', 0.5, 0.7, 0.1], ['IBM HTTP', 0.3, 0, 7.7], ]); var [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/04/web-tech-2011-part-2/' addthis:title='Web Tech 2011 &#8211; Part 2 '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p><script type="text/javascript" src="https://www.google.com/jsapi"></script><br />
<script type="text/javascript">
google.load("visualization", "1", {packages:["corechart"]});
google.setOnLoadCallback(drawChart);
function drawChart() {
var data = new google.visualization.DataTable();
data.addColumn('string', 'Type');
data.addColumn('number', 'Top 1 million');
data.addColumn('number', 'Netcraft');
data.addColumn('number', 'Fortune 1K');
data.addRows([
['Apache', 66.3, 60.1, 28.5],
['IIS', 17.3, 20.0, 55.1],
['nginx', 7.5, 7.6, 0.5],
['Google', 3.0, 5.1, 0.1],
['LiteSpeed', 1.1, 0, 0],
['lighttpd', 0.5, 0.7, 0.1],
['IBM HTTP', 0.3, 0, 7.7],
]);
var chart = new google.visualization.BarChart(document.getElementById('chart_div'));
chart.draw(data, {width: 550, height: 400, title: 'Web Server Comparison (% in use)', legend: 'bottom',
vAxis: {title: 'Web Server', titleTextStyle: {color: 'grey'}
}
});
}
</script><br />
Now available is Part 2 of our Web Tech Report 2011 data mining project. We have compared the results of the <a href="http://hackertarget.com/2011/03/web-tech-2011-report/" title="most popular web servers, operating systems and technologies">most popular web technologies of the Top 1 Million Web Sites</a> with the most popular Technologies in use by the Forbes Fortune 1000 US Corporations.</p>
<p>There is a clear preference by the largest corporations to build systems around proprietary technology, as opposed to top million where the preference is for open source based solutions. See the full reports for details.</p>
<div id="chart_div"></div>
<p>See the following chart for a comparison of our numbers comparing the results from the <a href="http://hackertarget.com/2011/03/web-tech-2011-report/">Alexa Top 1 Million Survey</a>, the results from this report and the results from the ongoing web server report from <a href="http://news.netcraft.com/archives/2011/">Netcraft</a>.</p>
<p>Full details are in the linked report:<br />
<strong>Download from</strong> <a href="http://hackertarget.com/whitepapers/web-tech-2011-top-1000-corporations.pdf">HackerTarget.com</a><br />
or<br />
<strong>View online at</strong> <a href="http://www.scribd.com/doc/52468434/Web-Tech-2011-Top-1000-Corporations">Scribd</a></p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/04/web-tech-2011-part-2/' addthis:title='Web Tech 2011 &#8211; Part 2 '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/04/web-tech-2011-part-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Web Tech 2011 Report</title>
		<link>http://hackertarget.com/2011/03/web-tech-2011-report/</link>
		<comments>http://hackertarget.com/2011/03/web-tech-2011-report/#comments</comments>
		<pubDate>Mon, 28 Mar 2011 10:27:02 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>
		<category><![CDATA[cms]]></category>
		<category><![CDATA[cms popular]]></category>
		<category><![CDATA[cms review]]></category>
		<category><![CDATA[cms security]]></category>
		<category><![CDATA[content management system comparison]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[web server]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=832</guid>
		<description><![CDATA[The HackerTarget.com Web Tech 2011 Report has just been released. This is the first edition of the report and aims to provide insight into the web technologies in use by the worlds most popular websites. Based on the Alexa top 1 million sites; content management system popularity, web servers, server side scripting, web development frameworks, [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/03/web-tech-2011-report/' addthis:title='Web Tech 2011 Report '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>The <a href="http://hackertarget.com" title="Vulnerability Assessment Services">HackerTarget.com</a> Web Tech 2011 Report has just been released. This is the first edition of the report and aims to provide insight into the web technologies in use by the worlds most popular websites. Based on the <a href="http://www.alexa.com" title="Alexa Web Metrics">Alexa</a> top 1 million sites; content management system popularity, web servers, server side scripting, web development frameworks, client side scripting and other detected technologies have all been assessed.</p>
<p>Data was collected by running <a href="http://hackertarget.com/whatweb-scan/">whatweb</a> from <a href="http://www.morningstarsecurity.com/research/whatweb" target="_blank">morningstar security</a> against the Alex 1 million top sites.</p>
<p><em>* Note the report was updated on 7/4/11 due to a data parsing error that resulted in some sites with no English characters in the Title having some data missed. Links below have been updated.</em></p>
<p>Full details are in the linked report:<br />
<strong>Download from</strong> <a href="http://hackertarget.com/whitepapers/web-tech-2011.pdf" title="Web Technology Survey 2011">HackerTarget.com</a><br />
or<br />
<strong>View online at</strong> <a href="http://www.scribd.com/doc/51690209/web-tech-2011" target="_blank">Scribd</a>.</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/03/web-tech-2011-report/' addthis:title='Web Tech 2011 Report '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/03/web-tech-2011-report/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>dnsdumpster.com launched for osint recon</title>
		<link>http://hackertarget.com/2011/02/dnsdumpster-com-launched-for-osint-recon/</link>
		<comments>http://hackertarget.com/2011/02/dnsdumpster-com-launched-for-osint-recon/#comments</comments>
		<pubDate>Tue, 08 Feb 2011 02:34:56 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=762</guid>
		<description><![CDATA[DNSDumpster.com is the latest reporting tool from HackerTarget.com. We have built an open source intelligence gathering tool that will profile a domain name and produce an easy to read report about related systems and publicly available information about that domain. If you want more information have a look at the about page; otherwise head over [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/02/dnsdumpster-com-launched-for-osint-recon/' addthis:title='dnsdumpster.com launched for osint recon '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.dnsdumpster.com">DNSDumpster.com</a> is the latest reporting tool from <a href="http://www.hackertarget.com">HackerTarget.com</a>. We have built an open source intelligence gathering tool that will profile a domain name and produce an easy to read report about related systems and publicly available information about that domain.</p>
<p>If you want more information have a look at the <a href="http://dnsdumpster.com/about.html">about page</a>; otherwise <a href="http://www.dnsdumpster.com">head over and give it a spin</a>!</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/02/dnsdumpster-com-launched-for-osint-recon/' addthis:title='dnsdumpster.com launched for osint recon '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/02/dnsdumpster-com-launched-for-osint-recon/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ubuntu 10.04 LTS Apache to Nginx and other updates</title>
		<link>http://hackertarget.com/2011/02/ubuntu-10-04-lts-apache-to-nginx-and-other-updates/</link>
		<comments>http://hackertarget.com/2011/02/ubuntu-10-04-lts-apache-to-nginx-and-other-updates/#comments</comments>
		<pubDate>Tue, 08 Feb 2011 02:25:10 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=759</guid>
		<description><![CDATA[It has been a busy week here; firstly we have migrated our main web site hosting from Slicehost to Linode. Better price and performance being the main reason. I have had no problems with Slicehost having been with them since before the Rackspace takeover. On the other hand I have heard only good things from [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/02/ubuntu-10-04-lts-apache-to-nginx-and-other-updates/' addthis:title='Ubuntu 10.04 LTS Apache to Nginx and other updates '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>It has been a busy week here; firstly we have migrated our main web site hosting from <a href="http://www.slicehost.com">Slicehost</a> to <a href="http://www.linode.com/">Linode</a>. Better price and performance being the main reason. I have had no problems with <a href="http://www.slicehost.com">Slicehost</a> having been with them since before the <a href="http://www.rackspace.com">Rackspace</a> takeover. On the other hand I have heard only good things from Linode and you get more bang for buck memory wise over at <a href="http://www.linode.com/">Linode</a>.</p>
<p>As part of the move in a bid to squeeze more performance out of our <a href="http://www.wordpress.org">WordPress</a> front end, we have moved from ubuntu 8.04 LTS to ubuntu 10.04 LTS and from <a href="http://www.apache.org">Apache</a> to <a href="http://wiki.nginx.org/Main">Nginx</a> with php-fast-cgi. After reading up on the differences, performance wise <a href="http://wiki.nginx.org/Main">nginx</a> seems to give a significant boost.</p>
<p>There was no outage to our scanning services or web site during the move. For those interested this guide came in handy <a href="http://library.linode.com/lemp-guides/ubuntu-10.04-lucid/">http://library.linode.com/lemp-guides/ubuntu-10.04-lucid/</a>, a few tweaks to the server config files and we were off and running.</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/02/ubuntu-10-04-lts-apache-to-nginx-and-other-updates/' addthis:title='Ubuntu 10.04 LTS Apache to Nginx and other updates '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/02/ubuntu-10-04-lts-apache-to-nginx-and-other-updates/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Hack your org in 60 minutes</title>
		<link>http://hackertarget.com/2011/01/hack-your-org-in-60-minutes/</link>
		<comments>http://hackertarget.com/2011/01/hack-your-org-in-60-minutes/#comments</comments>
		<pubDate>Thu, 06 Jan 2011 04:30:22 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Site Updates]]></category>
		<category><![CDATA[methodology]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=724</guid>
		<description><![CDATA[Often times the users of HackerTarget.com are not experts in the realm of vulnerability assessments. In fact many are not sure where to start and are confronted with a bunch of free tools available online for immediate use. The tools have a variety of different uses leaving beginners unsure of where to begin. I have [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/01/hack-your-org-in-60-minutes/' addthis:title='Hack your org in 60 minutes '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>Often times the users of <a href="http://www.hackertarget.com">HackerTarget.com</a> are not experts in the realm of vulnerability assessments. In fact many are not sure where to start and are confronted with a bunch of free tools available online for immediate use. The tools have a variety of different uses leaving beginners unsure of where to begin.</p>
<p>I have put together a quick flow of the general process that one would follow to assess a domain name. This will you to discover various systems associated with the domain name, and assuming you have permission each of those can be assessed for security issues by following this flow.</p>
<p>If you are interested in a more comprehensive security vulnerability assessment methodology we highly recommended the recently released version 3 of the <a href="http://www.isecom.org/osstmm/" target="_blank">OSTMM &#8211; Open Source Security Testing Methodology Manual</a>.</p>
<p>For those who want to dig in and get a quick overview of the security of their organisation, have a look at this flowchart, hit our scan pages and get hacking. <img src='http://hackertarget.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
<a href="http://hackertarget.com/wp-content/uploads/2011/01/60_minute_vulnerability_assessment.png"><img src="http://hackertarget.com/wp-content/uploads/2011/01/60_minute_vulnerability_assessment.png" height="420" width="450"></a> </p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://hackertarget.com/2011/01/hack-your-org-in-60-minutes/' addthis:title='Hack your org in 60 minutes '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/2011/01/hack-your-org-in-60-minutes/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

