Follow Slashdot blog updates by subscribing to our blog RSS feed

 



Forgot your password?
typodupeerror
×

Comment Re:Shashib (Score 2, Interesting) 70

Nah - those that did it were eventually caught (after about a 6mo to a year) and they were terminated. Besides, even if I could do it, I wouldn't know what to do with the info afterward.

My main point is that the security holes at NetSol is akin to a block of Swiss Cheese. And in most cases the security breaches and Malware placed on their system go unnoticed for long periods of time.

Comment Re:Shashib (Score 5, Informative) 70

Shashi B,

Give me a break! - I too worked for Network Solutions as Level II support - I know all about the bullshit story lines in order to save face. iframe exploits throughout the customers sites, issues not followed through on, the denial of New Ventures having -any- affiliation with NetSol. The ease of gaining access.

In fact while I worked there, several Tech's uploaded basic http shell emulators onto their sites and all had root level access within minutes.

Your infrastructure was and still is seriously flawed and appears that it always will be - I know first hand!

I'll file this under TasteButDontSwallow

Comment Re:Not true - I call Bullshit (Score 4, Informative) 70

I call Bullshit, and with due reason. I worked for Network Solutions as Level II support - handling anything from programming to server issues.

I know for a fact that they do store credit cards - regardless of what they may or may not claim.

One billing application that allow you to search ALL historical purchases, what, when, card #, address, services etc...

The second for more recent purchases.

Primarily we used a single application - and that application gave you access to the entire database which included minor and major information, such as Name, Address, phone#, email, Your Challenge Question, the HINT tot eh challenge question, CC number, billing cycle and history, DNS, smtp, database passwords (if you host with NetSol), all email users and their passwords under that domain, ftp passwords, website passwords for the GUI designer and much much more!

If you have a domain with them that has other email address setup through the NetSol site, simply login and look at those accounts. Each of those users can change the oringial password you set for them once they log into their online mail. But you will always see the passwords as ****, but don't fret if you forgot one (or they changed it) and want to log into the email account of that user, pull up the source code - they are all in plain text (as of 1 year ago anyway).

They have certain "servers" that handle routing and other processes that are no more than a laptop - that's right, not a server - a laptop.

Oh and your cost of thousands of dollars to buy back your domain name - here is a little bit of info. Many users were irate about New Ventures grabbing doamins faster than anyone else when they expired, sometimes before it was to be released (grace period for renewal after it expired). All employees were told to let the customers know that we were not, nor were we affiliated with New Ventures. A month later at a financial meeting, it was announced that we've been making leaps and bounds in revenues and recently sold a domain name for nearly a million dollars!. A few of us started looking into this as NetSol is a registar supposedly with a set fee for domains. As it turns out New Ventures is in fact a part of NetSol - They're scamming everyone.

When I began working for NetSol, I was happy as a lark - until I got settled in and started digging into the processes, support and resolution chain and blatant lies were were telling people, I was so disappointed. I left not being able to stand the lies anymore. We'd tell people that their issue would have a resolution in 3 days, but they'd never hear from anyone. And in fact when someone would ask for someone higher up the chain of command, (ie: supervisor, etc) the supervisors would tell us to tell them they can't be transferred, get the number and the supervisor will call them in 5-10 minutes... would they be home? Issue is that they would never get a call back... only to call in again and be transferred to level II support once more and talk to yourself again, or a fellow Level II support person near you. We would all talk and discuss the deflection process. At that time their website were also riddled with iframe exploits, constantly being hacked and defaced for over a year and a half.

Unless anyone here actually works for NetSol - no one really knows what I know for a fact that goes on there. Given there history with customers and such, They've probably know about this for a long time.

Comment Contacting him (Score 1) 130

Personally I'd like to know how to contact someone like this in regards to presenting an idea. Business plans are not somethign that is easily done, and I've always been better at a verbal pitch, but gettign the opportunity to talk or coorespond via email with someone that has the power to make a decision is neearly impossible. I've emailed every address on the planet that I could find for News Corp, initially wanting to pitch the idea to them. But you don't even get a reponse back of any kind. wtf - I mean I know there are crack-pots out there, but not evryone that has an idea is going to pitch you something absurd.

Comment Let the media host it (Score 1) 471

Post the story to a few high traffic forum site, let the viewers copy and paste it into other forums and email forwards. Next drop a few anon emails to cnn, fox etc - pointing them to these articles. Once the media grabs a hold of the story, all the website could dry up over night, but News Reports will be on it like leeches.
It's funny.  Laugh.

Apple Introduces "MacBook Wheel" Screenshot-sm 268

CommonCents noted an Apple announcement a few hours before the anticipated keynote. He says "Apples' latest must have gadget does away with the keyboard. With the new MacBook Wheel, Apple has replaced the traditional keyboard with a giant wheel."
Digital

Submission + - Polaroid another casualty?

rockwood writes: With the economy in such a fallen state, has the recession taken yet another 'old school' company and chipped away at its foundation. CNN reports that Polaroid has filed for Chapter 11. Or is the recession causing the recent surge in corruption? Since at the same time Polaroid says "The group's founder and other employees are under investigation for fraud." So is the lack of sales hitting the pocketbook of the business that hard that it requires cut backs and Chapter 11's? Or is it the bigwigs that are folding under pressure and bringing the company down with it?
Security

Huge iPhone Cut-and-Paste Tool Security Flaw 85

Harry writes "I'm using Pastebud, the new third-party copy-and-paste solution for the iPhone. It's extremely clever, using a Web-based clipboard to get around the fact that Apple doesn't provide one on the phone. Unfortunately, it seems to be giving users access to e-mails that other Pastebud users send to their clipboards. This has happened to me repeatedly and is being reported by other users in Pastebud's Get Satisfaction support forum. Pastebud is operational and still doing this as I write, even though a message at Get Satisfaction says they're working on the problem."
Image

Musicians Protest Use Of Songs By US Jailers Screenshot-sm 210

The guy who wrote the Barney "I love you" song, and other musicians are banding together to protest the US military using their songs as weapons. The campaign has brought together groups including Massive Attack and musicians such as Tom Morello, who played with Rage Against the Machine and Audioslave. It will feature minutes of silence during concerts and festivals, said Chloe Davies of the British law group Reprieve, which represents dozens of Guantanamo Bay detainees and is organizing the campaign.
The Media

Reuters Pulls Out of Second Life, Army Heads In 77

A little over two years ago, Reuters made headlines by setting up a reporter as a go-between for Second Life and the real world. Now, they've evidently decided that the buzz is no longer there, so they've ended the virtual-reporting experiment. The reporter, Eric Krangel, offered his own take on the situation, and what he thinks Linden Labs could do to make Second Life a better place. Whether or not the advice is taken, the US Army has decided to carve out its own presence in the virtual world by setting up a pair of islands that will function as recruiting tools. An article at Massively suggests that interest in Second Life is still high among a variety of organizations, saying, "at present it appears that more businesses are coming in than going out."
Announcements

Submission + - .tel Approved by ICANN

rockwood writes: This morning emails from Network Solutions were deployed, i s a first attempt at pushing the recently approved .tel. The top-lewvel domain .tel was approved by ICANN as a sponsored TLD launching on Wednesday, December 3, 2008[1] to trademark owners of national effect and on February 3, 2009 to anyone who wishes to apply. Its main purpose is as a single management and publishing point for "internet communication" services, providing a global contacts directory service by housing all types of contact information directly in the DNS. It is sponsored by Telnic Limited. In May 2006, it was approved to be added to the DNS root zone by ICANN. The TLD was added to the DNS root zone on March 2, 2007 [excerpt from wiki] — full .tel wiki article
Editorial

Proprietary Blobs and the Pursuit of a Free Kernel 405

jammag writes "Ever since the GNewSense team pointed out that the Linux kernel contains proprietary firmware blobs, the question of whether a given distro is truly free software has gotten messier, notes Linux pundit Bruce Byfield. The FSF changed the definition of a free distribution, and a search for how to respond to this new definition is now well underway. Who wins and what solutions are implemented could have a major effect on the future of free and open source software. Debian has its own solution (by allowing users to choose their download), as do Ubuntu and Fedora (they include the offending firmware by default but make it possible to remove it). Meanwhile, the debate over firmware rages on. What resolves this issue?"

Slashdot Top Deals

HELP!!!! I'm being held prisoner in /usr/games/lib!

Working...