<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>farscan blogs &#187; Blog</title>
	<atom:link href="http://www.farscan.com/blogs/category/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.farscan.com/blogs</link>
	<description>technology, innovation &#38; real-world expertise</description>
	<lastBuildDate>Wed, 09 Feb 2011 18:41:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>The 6 Best Social Media Plugins for WordPress</title>
		<link>http://www.webreference.com/authoring/wordpress-social-media-plugins/</link>
		<comments>http://www.webreference.com/authoring/wordpress-social-media-plugins/#comments</comments>
		<pubDate>Mon, 22 Nov 2010 23:46:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Open Source]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Check out these six very useful social plugins for the WordPress platform.]]></description>
			<content:encoded><![CDATA[Check out these six very useful social plugins for the WordPress platform.]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2010/11/the-6-best-social-media-plugins-for-wordpress/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Farscan to launch its 2nd Development Center in India</title>
		<link>http://www.farscan.com/blogs/2010/10/farscan-to-launch-its-2nd-development-center-in-india/</link>
		<comments>http://www.farscan.com/blogs/2010/10/farscan-to-launch-its-2nd-development-center-in-india/#comments</comments>
		<pubDate>Sat, 02 Oct 2010 20:42:12 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.farscan.com/blogs/?p=5684</guid>
		<description><![CDATA[Farscan has finalized plans for its 2nd office in India. The new facility will be located at the Pent house in Penta Menaka building  on Marine Drive in Kochi, India. This new facility is expected to be fully operational by December and will focus exclusively on Mobile application development. This software facility will cater exclusively [...]]]></description>
			<content:encoded><![CDATA[<p>Farscan has finalized plans for its 2nd office in India. The new facility will be located at the Pent house in <a href="http://wikimapia.org/304375/Penta-Menaka" target="_blank">Penta Menaka</a> building  on <a href="http://en.wikipedia.org/wiki/Marine_Drive,_Kochi" target="_blank">Marine Drive</a> in Kochi, India. This new facility is expected to be fully operational by December and will focus exclusively on Mobile application development. This software facility will cater exclusively to Farscan&#8217;s international clients and provide training support services in addition to development.</p>
<p>Please <a href="http://www.farscan.com/index_sub2.html">contact</a> your farscan service partner for more details.</p>
<p><img class="alignright size-medium wp-image-5686" title="Farscan, Kochi" src="http://www.farscan.com/blogs/wp-content/upLoads/P1000640-300x273.jpg" alt="Farscan, Kochi" width="200" height="182" /><img class="size-full wp-image-5690 alignleft" title="P1000637-2" src="http://www.farscan.com/blogs/wp-content/upLoads/P1000637-2.jpg" alt="P1000637-2" width="200" height="182" /></p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fwww.farscan.com%2Fblogs%2F2010%2F10%2Ffarscan-to-launch-its-2nd-development-center-in-india%2F&amp;title=Farscan%20to%20launch%20its%202nd%20Development%20Center%20in%20India"><img src="http://www.farscan.com/blogs/wp-content/plugins/add-to-any/share_save_120_16.png" width="120" height="16" alt="Share"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2010/10/farscan-to-launch-its-2nd-development-center-in-india/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>One good reason for not Jail-Breaking an iPhone: FlexiSpy</title>
		<link>http://www.farscan.com/blogs/2009/07/one-good-reason-for-not-jail-breaking-an-iphone-flexispy/</link>
		<comments>http://www.farscan.com/blogs/2009/07/one-good-reason-for-not-jail-breaking-an-iphone-flexispy/#comments</comments>
		<pubDate>Mon, 27 Jul 2009 22:15:11 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>

		<guid isPermaLink="false">http://www.farscan.com/blogs/?p=3467</guid>
		<description><![CDATA[iPhone spying tool from FlexiSpy may put jailbroken iPhones at the risk of snooping.]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.flexispy.com/index.html">Flexispy</a> Ltd &#8211; A Seychelles based company, just launched an iPhone version of their flagship product intended to facilitate spying on unsuspecting mobile users.</p>
<p><img class="aligncenter size-full wp-image-3468" title="FlexiSpy for iPhone" src="http://www.farscan.com/blogs/wp-content/upLoads/iphone_use.jpg" alt="FlexiSpy for iPhone" width="470" height="140" /></p>
<p>The company claims its iPhone version of the software supports</p>
<ul>
<li><span>SMS Logging to intercept</span> all incoming and outgoing SMS messages.</li>
<li><span>Reviewing</span> Call History &amp; Sent Emails</li>
<li><span>GPS Location monitoring<br />
</span></li>
<li><span>Remote Control u</span>sing SMS commands</li>
<li>Monitoring via secretly calling the iPhone and listening in using the iPhone&#8217;s Microphone</li>
<li><span>Remotely uninstalling the software</span></li>
<li><span>&#8230; and more</span></li>
</ul>
<p>The company sells five flavors of its software varying in features and prices that start from USD 39.00.</p>
<p>Luckily, the product only works on Jail-Broken iPhones for now. Physical access to install the spying software is also needed. However, once installed FlexiSpy can hide all signs of the phone being jail-broken.  The best defense against FlexiSpy at this time seems to be physical security controls.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2009/07/one-good-reason-for-not-jail-breaking-an-iphone-flexispy/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Study shows CEO &amp; Executive disconnect on Security</title>
		<link>http://www.farscan.com/blogs/2009/07/study-shows-ceo-executive-disconnect-on-security/</link>
		<comments>http://www.farscan.com/blogs/2009/07/study-shows-ceo-executive-disconnect-on-security/#comments</comments>
		<pubDate>Mon, 20 Jul 2009 19:19:18 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.farscan.com/blogs/?p=3410</guid>
		<description><![CDATA[Survey findings from a recent study on how CEOs &#038; top executives see information security threats, counter measures and future evolution]]></description>
			<content:encoded><![CDATA[<p>According to a recent survey of 30 CEOs and 183 of their top  executives over a six month period by the <a href="http://www.ponemon.org">Ponemon</a> Institute, CEOs &amp; their top executives seem to be at a disconnect about security measures and risk exposure at their companies. The survey queried 213 senior executives including chief operating officers, division presidents, and chief information officers about their awareness on data security and threat at their companies.</p>
<p>Among the CEOs surveyed, 53 percent responded the chief information officer is accountable for data protection, while only 25 percent of senior executives sided with that opinion. However, nearly 85 percent of executives felt that a failure to prevent security breaches during their tenure would not jeopardize their job.</p>
<div id="attachment_3411" class="wp-caption aligncenter" style="width: 510px"><img class="size-full wp-image-3411" title="responsibleentity" src="http://www.farscan.com/blogs/wp-content/upLoads/responsibleentity.png" alt="Who is responsible for security in your organization" width="500" height="284" /><p class="wp-caption-text">Who is responsible for security in your organization</p></div>
<p style="text-align: center;"><em><span style="color: #888888;">[Source: Business Case for Data Protection - Study of CEO and other C-level Executives, Ounce Labs]</span></em></p>
<p>Only 3% of the CEOs responded that they perceived cyber crimes to be the the source of greatest risk to their data security, while the majority of CEOs &#8211; 31% &#8211; believed stolen or lost laptops and data storage devices to be the greatest risk.</p>
<p style="text-align: center;"><img class="aligncenter size-full wp-image-3412" title="sourceofattack" src="http://www.farscan.com/blogs/wp-content/upLoads/sourceofattack.png" alt="sourceofattack" width="500" height="296" /><span style="color: #c0c0c0;"><em>[Source: Business Case for Data Protection - Study of CEO and other C-level Executives, Ounce Labs]</em></span></p>
<p>The survey also showed a great gap between measures that should be used versus those that are currently used to measure the effectiveness of data protection efforts. Respondents felt asset protection and reputation management measures should be used more.</p>
<p style="text-align: center;">
<div id="attachment_3413" class="wp-caption aligncenter" style="width: 510px"><img class="size-full wp-image-3413" title="measuresused" src="http://www.farscan.com/blogs/wp-content/upLoads/measuresused.png" alt="The effectiveness of data protection efforts" width="500" height="292" /><p class="wp-caption-text">The effectiveness of data protection efforts</p></div>
<p style="text-align: center;"><span style="color: #888888;"><em>[Source: Business Case for Data Protection - Study of CEO and other C-level Executives, Ounce Labs]</em></span></p>
<p>Over all, the survey concluded that C-level executives understand the need for good data protection measures. Even though they might be driven by regulatory and compliance needs, a rising majority understands the need for data protection practices that address reputation protection and customer trust and loyalty. The complete research report can be downloaded from <a href="http://www.ouncelabs.com​/PonemonStudy2009">Ounce Labs</a> &#8211; the sponsor for the survey.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2009/07/study-shows-ceo-executive-disconnect-on-security/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Security Audit tool of the month: sqlmap</title>
		<link>http://www.farscan.com/blogs/2009/04/security-audit-tool-of-the-month-sqlmap/</link>
		<comments>http://www.farscan.com/blogs/2009/04/security-audit-tool-of-the-month-sqlmap/#comments</comments>
		<pubDate>Thu, 30 Apr 2009 19:56:57 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Review]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Open Source]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.farscan.com/blogs/?p=1985</guid>
		<description><![CDATA[A brief review of sqlmap: A SQL injection vulnerability / exploit tool.]]></description>
			<content:encoded><![CDATA[<p>One of the most common and dangerous web application vulnerabilities revolve around unsafe SQL (Structured Query Language) handling in applications. SQL injection is a type of security exploit in which the attacker inserts SQL code to a Web form input box to gain access to resources or make changes to data.</p>
<p>Successful SQL injection attempts can cause an attacker to not only steal data from a database, but also modify and/or delete it. Certain SQL Servers may also contain Stored and Extended Procedures (database server functions). If an attacker can obtain access to these Procedures it may be possible to compromise the entire system and through it, access other systems on the network.</p>
<p>Testing for SQL injection vulnerabilities is often a tedious and labor intensive process. Sqlmap is a powerful tool that aid in this test process. Currently at version 0.7 release candidate 1, sqlmap is a command-line automatic SQL Injection tool developed in python. </p>
<p>Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to retrieve remote DBMS databases, user names, tables, columns, enumerate entire DBMS, read system files and much more taking advantage of web application programming security flaws that lead to SQL injection vulnerabilities.</p>
<p>sqlmap implements multiple techniques to attempt and exploit a SQL injection vulnerability. Inferential blind SQL injection, also known as boolean based blind SQL injection, UNION query (inband) SQL injection, also known as full UNION query SQL injection and Batched (stacked) queries support, also known as multiple statements support.</p>
<p>In addition to the common input sources, the tool can also test cookies. Since many applications store their session information using a cookie, this is a common practice during SQL injection attempts — one that most penetration tests often overlook.</p>
<p>Sqlmap excels more at exploiting an identified SQL injection vulnerability than finding it. Even with the high degree of automation, it still takes some time to identify vulnerabilities and requires some knowledge of SQL injection techniques. </p>
<p>Latest version of sqlmap is available at <a href="http://sqlmap.sourceforge.net/">sourceforge</a>. For information on preventing SQL injection vulnerabilities, refer to this <a href="http://www.owasp.org/index.php/SQL_Injection_Prevention_Cheat_Sheet">cheat sheet</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.farscan.com/blogs/2009/04/security-audit-tool-of-the-month-sqlmap/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

