<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/css" media="screen" href="http://s2.wp.com/wp-content/themes/vip/newyorkobserver/stylesheets/rss.css"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Betabeat &#187; Hacker Tells Yahoo About a Worm and Gets Snubbed. Now He&#8217;s Getting Even With a Second One</title>
	<atom:link href="http://betabeat.com/2011/05/hacker-tells-yahoo-about-a-worm-and-gets-snubbed-now-hes-getting-even-with-a-second-one/feed/" rel="self" type="application/rss+xml" />
	<link>http://betabeat.com</link>
	<description>Just another WordPress.com site</description>
	<lastBuildDate>Tue, 21 May 2013 18:50:42 +0000</lastBuildDate>
	<language></language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='betabeat.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Betabeat &#187; Hacker Tells Yahoo About a Worm and Gets Snubbed. Now He&#8217;s Getting Even With a Second One</title>
		<link>http://betabeat.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://betabeat.com/osd.xml" title="Betabeat" />
	<atom:link rel='hub' href='http://betabeat.com/?pushpress=hub'/>
		<item>
				
		<title>Hacker Tells Yahoo About a Worm and Gets Snubbed. Now He&#8217;s Getting Even With a Second One</title>

		<comments>http://betabeat.com/2011/05/hacker-tells-yahoo-about-a-worm-and-gets-snubbed-now-hes-getting-even-with-a-second-one/#comments</comments>
		<pubDate>Tue, 17 May 2011 13:14:23 -0400</pubDate>
					<link>http://betabeat.com/2011/05/hacker-tells-yahoo-about-a-worm-and-gets-snubbed-now-hes-getting-even-with-a-second-one/</link>
			<dc:creator>Adrianne Jeffries</dc:creator>
				
		<guid isPermaLink="false">http://www.betabeat.com/?p=7598</guid>
		<description><![CDATA[<p><div id="attachment_7600" class="wp-caption alignnone" style="width: 650px"><img class="size-full wp-image-7600" title="paxno worm" src="http://nyobetabeat.files.wordpress.com/2011/05/paxno-worm.jpg" alt="" width="640" height="425" /><p class="wp-caption-text">A photo Pax says is him demonstrating the hack to Yahoo officials at the Bucharest hackathon.</p></div></p>
<p>There's a second part to the story of a hacker who <a href="http://pastebin.com/7beywhqc">built a malicious worm</a> at a Yahoo-sponsored hackathon in Bucharest that exploits a vulnerability in a Yahoo developer service. The hacker, who goes by Pax, was offended when the hackathon organizers cut short his time on stage due and failed to give him due respect for a clever (though malicious) hack, or thank him and his team partner for exposing a security hole. "They were/are complete assholes," he <a href="http://twitter.com/#!/paxnwo/status/70061497962868736">said</a> on Twitter after someone commented that the officials' reaction had turned a white hat effort into a grudge.<!--more--></p>
<p>So he found a second security hole in another version of the same service, wrote a second virus, and announced he is selling the code.</p>
<p>From the ad:</p>
<blockquote><p>Selling Yahoo Self Spread XSS Worm</p>
<p>About the worm :</p>
<p>The worm self spreads via instant messaging and email.<br />
The worm steals cookies from Yahoo users and uses them to authenticate itself in order to send spam to the contacts of the victim. The spammed contacts recive an 'interesting' URL. If they click it, their cookies will be stolen and send to the worm for instant or later use ( depending of config ). It supports proxies ( format check, avaiability check, type check ). The emails and IMs also bypass spam checkers.</p></blockquote>
<p>He doesn't name a price, but specifies that the buyer must use Western Union and promise not to disclose the worm to Yahoo. "IF YOU ARE YAHOO, SUCK ME!" he wrote in the <a href="http://pastebin.com/Wg5UkMnZ">ad</a>.</p>
<p>A Yahoo security researcher attempted to get more details about the new worm from Pax via Twitter, to <a href="http://twitter.com/#!/paxnwo/status/70399624761982976">no avail</a>.</p>
<p>"We have learnt an important lesson about disclosure," Pax <a href="http://twitter.com/#!/paxnwo/status/70089545974157313">tweeted</a>. "Don't disclose! Exploit!"</p>
]]></description>
		<content:encoded><![CDATA[<p><div id="attachment_7600" class="wp-caption alignnone" style="width: 650px"><img class="size-full wp-image-7600" title="paxno worm" src="http://nyobetabeat.files.wordpress.com/2011/05/paxno-worm.jpg" alt="" width="640" height="425" /><p class="wp-caption-text">A photo Pax says is him demonstrating the hack to Yahoo officials at the Bucharest hackathon.</p></div></p>
<p>There's a second part to the story of a hacker who <a href="http://pastebin.com/7beywhqc">built a malicious worm</a> at a Yahoo-sponsored hackathon in Bucharest that exploits a vulnerability in a Yahoo developer service. The hacker, who goes by Pax, was offended when the hackathon organizers cut short his time on stage due and failed to give him due respect for a clever (though malicious) hack, or thank him and his team partner for exposing a security hole. "They were/are complete assholes," he <a href="http://twitter.com/#!/paxnwo/status/70061497962868736">said</a> on Twitter after someone commented that the officials' reaction had turned a white hat effort into a grudge.<!--more--></p>
<p>So he found a second security hole in another version of the same service, wrote a second virus, and announced he is selling the code.</p>
<p>From the ad:</p>
<blockquote><p>Selling Yahoo Self Spread XSS Worm</p>
<p>About the worm :</p>
<p>The worm self spreads via instant messaging and email.<br />
The worm steals cookies from Yahoo users and uses them to authenticate itself in order to send spam to the contacts of the victim. The spammed contacts recive an 'interesting' URL. If they click it, their cookies will be stolen and send to the worm for instant or later use ( depending of config ). It supports proxies ( format check, avaiability check, type check ). The emails and IMs also bypass spam checkers.</p></blockquote>
<p>He doesn't name a price, but specifies that the buyer must use Western Union and promise not to disclose the worm to Yahoo. "IF YOU ARE YAHOO, SUCK ME!" he wrote in the <a href="http://pastebin.com/Wg5UkMnZ">ad</a>.</p>
<p>A Yahoo security researcher attempted to get more details about the new worm from Pax via Twitter, to <a href="http://twitter.com/#!/paxnwo/status/70399624761982976">no avail</a>.</p>
<p>"We have learnt an important lesson about disclosure," Pax <a href="http://twitter.com/#!/paxnwo/status/70089545974157313">tweeted</a>. "Don't disclose! Exploit!"</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2011/05/hacker-tells-yahoo-about-a-worm-and-gets-snubbed-now-hes-getting-even-with-a-second-one/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://2.gravatar.com/avatar/becf95fa833b8aeb13f7720732bd6dc6?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">jhanasobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2011/05/paxno-worm.jpg" medium="image">
			<media:title type="html">paxno worm</media:title>
		</media:content>
	</item>
	</channel>
</rss>
