<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>PHP User-Group Philippines Inc.</title>
	<atom:link href="http://phpugph.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://phpugph.com/blog</link>
	<description>Official Blog of the PHPUGPH</description>
	<lastBuildDate>Fri, 25 Mar 2011 19:13:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>A Few Good Hackers</title>
		<link>http://phpugph.com/blog/2011/03/25/a-few-good-hackers/</link>
		<comments>http://phpugph.com/blog/2011/03/25/a-few-good-hackers/#comments</comments>
		<pubDate>Fri, 25 Mar 2011 10:38:33 +0000</pubDate>
		<dc:creator>jryap</dc:creator>
				<category><![CDATA[Miscellaneous]]></category>
		<category><![CDATA[CEH]]></category>
		<category><![CDATA[CEHv7]]></category>
		<category><![CDATA[certified]]></category>
		<category><![CDATA[certified ethical hacker]]></category>
		<category><![CDATA[certified ethical hacking]]></category>
		<category><![CDATA[ec-council]]></category>
		<category><![CDATA[ethical]]></category>
		<category><![CDATA[hacking]]></category>

		<guid isPermaLink="false">http://phpugph.com/blog/?p=72</guid>
		<description><![CDATA[Nowadays, hackers all over the world have adopted the battle cry “let the hacking begin”.  This was popularized by Actor Jesse Eisenberg in his portrayal of Facebook Founder and CEO Mark Zuckerberg in the hit movie The Social Network.  This mantra has hence given Systems Administrators and Webmaster sleepless nights as they try to parry [...]]]></description>
			<content:encoded><![CDATA[<p>Nowadays, hackers all over the world have adopted the battle cry “let the hacking begin”.  This was popularized by Actor Jesse Eisenberg in his portrayal of Facebook Founder and CEO Mark Zuckerberg in the hit movie The Social Network.  This mantra has hence given Systems Administrators and Webmaster sleepless nights as they try to parry wannabe and serious hackers from invading and infesting their websites and networks.  It also encourages hackers to hack away fearlessly and feverishly.</p>
<p>To deter and/or weather these hacking onslaughts, it is best for one to understand how a hacker thinks and acts.  Information Security is not limited administrators alone; it also encompasses every Tom, Dick and Harry who even in his/her fleeting moment just happens to be “just passing by”.  The security ecosystem is an end-to-end process involving experts and consultants all the way down to the average employee and inquiring customer.</p>
<p>Typically, it takes Security Expert years or decades of trial and error before he can have the titled Consultant, Adviser and/or Certified attached to his/her name.  But thanks to the initiatives International Council of Electronic Commerce Consultants (EC-Council), an individual with a good background as a Systems Engineer or Network Analyst can level-up to Certified Ethical Hacker in a matter of 120 hours through the Certified Ethical Hacking (CEH) course.  It is now on its 7th edition since its inception around a decade ago.  As per the EC-Council web site, “the United States Department of Defense has included the CEH program into its Directive 8570, making it as one of the mandatory standards to be achieved by Computer Network Defenders Service Providers (CND-SP)”.</p>
<p>CEHv7 (https://www.eccouncil.org/certification/certified_ethical_hacker.aspx) was launched in the Philippines through an inaugural class of 12 students last March 14, 2011 by MISNet Education Inc.  The 5-day course also included EC-Council “ambassadors” who came from India, Pakistan and Dubai to participate and evaluate the course.  The instructor was a veteran Philippine IT Security Expert who has been teaching the course since CEHv2 back in 2002.  He is one of three Filipino certified CEH trainers.</p>
<p>Seven as the course has been nicknamed has 19 modules, namely Introduction to Ethical Hacking; Foot printing and Reconnaissance; Scanning Networks; Enumeration; System Hacking; Trojans and Backdoors; Viruses and Worms; Sniffers; Social Engineering; Denial of Service; Session Hijacking; Hacking Web Servers; Hacking Web Applications; SQL Injection; Hacking Wireless Networks; Evading IDS, Firewalls and Honeypots; Buffer Overflow; Cryptography; and Penetration Testing.  Course was also updated to encompass Windows Server 8 R2 with Hyper V.</p>
<p>Upon completing the course, the attendee is encouraged to take the CEHv7 Exam (Ethical Hacking and Countermeasures v7) which has 150 questions and is good for 4 hours.  The passing score is 70 percent.  Although it is a difficult exam, the CEHv7 training course prepares the attendee thoroughly with a battery of classroom lectures, field work and laboratory hands-on.  One of the attendees even took the exam prior to the course’s end, and passed it with a score of 76 percent.</p>
<p>Although the course is typically attended by Systems and Network people, it is also recommended for programmers who develop applications that are exposed externally.  These programs are often exposed to attacks like SQL Injection, Port Scanning and Worms to name a few.  A small opening or loophole is precisely what a hacker needs to bring down any application or system, whether is protected by state of the art devices or software.</p>
<p>The course is also a good springboard for careers in Penetration Testing, Security Analyst and Forensic Investigator.  It is also well-recommended for one involved in security, from business owners to IT executives.  Even students or someone with a good IT knowledge can attend the course.</p>
<p>The hands-on lab exercises include Google Hacking; War-Driving, WEP Cracking, SQL Injection; Web Vulnerability Scanning, OS Fingerprinting and Sniffing.  They were executed using off-the-shelf hardware and software running under the Windows and Linux platforms.  As such, attendees were required to fill-up a Non-Disclosure Agreement (NDA) with some “ethical hacking” manifesto prior to the start of the course.  Talk about top secret.</p>
<p>CEHv7 course participants were often quizzed by the instructor on past lessons and reminded to put time for lab work to prepare them for the exam.  He would also give examples or share insights specific to programmers, administrators, and IT specialists.  Hacking gadgets and paraphernalia were also shown to the class for better appreciation.</p>
<p>MISNet Education on the other hand made sure the training venue was very conducive to learning.  They paraded state-of-the-art equipment and training methodologies.  Attendees were also provided a sumptuous buffer lunch and heavy AM and PM snacks.  An after-training social was held on the last day together with simple awarding ceremony where the attendees, EC-Council Ambassadors and Technical Press were recognized by MISNet Education headed by its President, Arnold Cruz.</p>
<p>EC-Council also offers a Master of Security Science who those interested to complete the Security track.  Some of their courses include Cyber Marketing; Wireless Network Architect; Network Security Design; E-Business Design; Cyber Law; Disaster Recovery; E-Commerce Architect; E-business Security; Customer Relationship Management; Supply Chain Management; Enterprise Resource Planning; Project Management; and Knowledge Management.</p>
<p>Certifications include Computer Hacking Forensic Investigator (C|HFI); Certified E-Business Associate (C|EA); Certified E-Business Professional (C|EP); EC-Council Certified Security Analyst (E|CSA); Licensed Penetration Tester (L|PT); Certified E-Business Consultant (C|EC); and Certified Technical Consultant (E++|TC).  Visit the EC-Council site at http://www.eccouncil.org to learn more.</p>
<p>If you wish to learn more about the CEHv7 course or other trainings from EC-Council and Microsoft, kindly contact MISNet Education at +63(2) 846-8300, and look for their Sales Team (Janice Layug, Tina Mendoza or Vzel Bartolome).  You may also visit www.misnet-education.com/learning to know more about their company.  You may also like them on Facebook (www.facebook.com/misnet.education) and follow them on Twitter (www.twitter.com/MISNetEducation).</p>
<p>As the CEHv7 marketing materials would say “Defend your Network against Hackers.  Master the Hacking Technologies. Become a Certified Ethical Hacker.”</p>
]]></content:encoded>
			<wfw:commentRss>http://phpugph.com/blog/2011/03/25/a-few-good-hackers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PHP Developers Summit 2010</title>
		<link>http://phpugph.com/blog/2009/12/23/php-developers-summit-2010/</link>
		<comments>http://phpugph.com/blog/2009/12/23/php-developers-summit-2010/#comments</comments>
		<pubDate>Wed, 23 Dec 2009 03:59:57 +0000</pubDate>
		<dc:creator>garri</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[2010]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[globe labs]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[phpugph]]></category>
		<category><![CDATA[zend]]></category>

		<guid isPermaLink="false">http://www.phpugph.com/blog/?p=51</guid>
		<description><![CDATA[When: 8:00 AM &#8211; 5:00 PM &#8211; January 30, 2010, Saturday Where: Hotel Rembrandt &#8211; 26 Tomas Morato Extension Quezon City, Philippines Google Map Location In partnership with Microsoft Philippines, PHP User Group Philippines presents PHP Developers Summit 2010. We are inviting you to come and join us in this gathering of the country&#8217;s best [...]]]></description>
			<content:encoded><![CDATA[<p>When: 8:00 AM &#8211; 5:00 PM &#8211; January 30, 2010, Saturday<br />
Where: <strong>Hotel Rembrandt</strong> &#8211; 26 Tomas Morato Extension Quezon City, Philippines<br />
<a href="http://maps.google.com/maps/place?cid=13146968077348134590&amp;q=hotel%2Brembrandt%2Bquezon%2Bcity%2Baddress">Google Map Location</a></p>
<p>In partnership with <a href="http://www.microsoft.com/Philippines/">Microsoft Philippines</a>, <a href="http://www.phpugph.com">PHP User Group Philippines</a><br />
presents <a href="http://www.phpugph.com/blog/2009/12/23/php-developers-summit-2010/">PHP Developers Summit 2010</a>. We are inviting you to come and join us in this gathering of the country&#8217;s best tech-talents, professionals and web developers promoting the use of PHP and open source solutions in the enterprise and schools. Free flowing coffee with lots of freebies and raffle prizes! So what are you waiting for?</p>
<p>Registration starts at 8:00 AM. See you all there! ^_~</p>
<p><strong>Speakers:</strong></p>
<ul>
<ol>
<strong>Dominick Nowell A. Danao</strong> (CEO of Happy Mobile Inc.) &#8211; Former VASHead of Sun Cellular.  Founder of Pinoymail which he sold to Smart&#8217;s Orlando Vea for P100M back in the early 2000s.  He is also a Palanca Awardee.  He will discuss PHP Development with Yahoo Developer&#8217;s Network.  He recently won in the Yahoo Open Hack&#8217;s Day in Indonesia.
</ol>
<ol>
<strong>Bing Bryan Tan</strong> (President and CEO of Brewed Concepts) &#8211; Keynote Speaker
</ol>
<ol>
<strong>Paolo Alexis Falcone</strong> (Senior Developer, Friendster Inc.) &#8211; Will discuss PHP Scaling
</ol>
<ol>
<strong>Alezandra Nicholas</strong> (Microsoft Developer Evangelist) &#8211; Website spark and Bizspark
</ol>
<ol>
<strong>Rodney Jao</strong> (MCP) &#8211; PHP in IIS7 (using Fast CGI) and about PHP and ASP.NET interop via SOAP
</ol>
<ol>
<strong>Rick Bahague, Jr.</strong> (Computer Professionals&#8217; Union) &#8211; Windows Cache Extension for PHP
</ol>
<ol>
<strong>Globe Labs</strong> &#8211; Globe Labs API
</ol>
</ul>
<p><strong>Sponsors:</strong></p>
<p><a href="http://www.microsoft.com/Philippines/"><strong>Microsoft Philippines</strong></a><br />
<a href="http://www.zend.com/"><strong>Zend</strong></a><br />
<a href="http://www.globelabs.com.ph/"><strong>Globe Labs</strong></a></p>
<p><strong>Limited Special Offer</strong></p>
<blockquote><p>If you register early and pay within the year 2009, you&#8217;ll get a<br />
ticket for only Php 1,000.00 and we&#8217;ll give you One (1) FREE Microsoft<br />
limited edition thumb drive.</p></blockquote>
<p><strong>Registration and Ticket Payment Instructions</strong></p>
<p>Online registration website is currently being tested right now. In<br />
the mean time, you could pre-register by sending your name, position,<br />
company and contact details to chean [ at ] phpugph [ dot ] com and by settling your<br />
ticket payment through bank deposit:</p>
<p>Bank Name: Banco de Oro (BDO)<br />
Account Name: PHP User Group Philippines Inc.<br />
Savings Account No. 290226988<br />
Branch: San Juan Branch</p>
<p>To all who would pay for the event tickets, kindly send me a scanned<br />
copy of the deposit slip for payment confirmation.</p>
<p>Thank you very much.</p>
<p>Truly yours,<br />
Cherrie Ann B. Domingo<br />
President<br />
PHP User Group Philippines Inc.</p>
<p>Email: chean [ at ] phpugph [ dot ] com<br />
Web: <a href="http://www.phpugph.com">http://www.phpugph.com</a><br />
Mobile: +63917.865.2412<br />
Phone: (02) 975.6976</p>
]]></content:encoded>
			<wfw:commentRss>http://phpugph.com/blog/2009/12/23/php-developers-summit-2010/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Update: PHPUGPH&#8217;s SMF maliciously attacked. Now back online</title>
		<link>http://phpugph.com/blog/2009/06/24/update-phpugphs-smf-maliciously-attacked-now-back-online/</link>
		<comments>http://phpugph.com/blog/2009/06/24/update-phpugphs-smf-maliciously-attacked-now-back-online/#comments</comments>
		<pubDate>Wed, 24 Jun 2009 15:33:46 +0000</pubDate>
		<dc:creator>aj</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[krisbarteo]]></category>
		<category><![CDATA[phpugph]]></category>
		<category><![CDATA[smf]]></category>

		<guid isPermaLink="false">http://www.phpugph.com/blog/?p=49</guid>
		<description><![CDATA[I&#8217;ve done an audit on the files of phpugph.com&#8217;s SMF board and found that a certain user who&#8217;s only identity is krisbarteo@gmail.com using the IP 94.142.129.147 appended spam links to the Settings.php of SMF. I&#8217;m no security expert, but I think what he did was he uploaded an avatar with a PHP code inside it, [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve done an audit on the files of phpugph.com&#8217;s SMF board and found that a certain user who&#8217;s only identity is krisbarteo@gmail.com using the IP <a href="http://www.stopforumspam.com/ipcheck/94.142.129.147">94.142.129.147</a> appended spam links to the Settings.php of SMF.</p>
<p>I&#8217;m no security expert, but I think what he did was he uploaded an avatar with a PHP code inside it, found a server/script exploit and ran it. I opened up the avatar (after looking for it for hours) and found this code (see below screenshot). Then he launched the attack from there appending malicious links on a file that is being included everytime SMF draws a page.</p>
<p><img class="alignnone" title="1" src="http://www.phpugph.com/blog/wp-content/uploads/2009/06/1.jpg" alt="" width="400" height="246" /></p>
<p><img class="alignnone" title="2" src="http://www.phpugph.com/blog/wp-content/uploads/2009/06/2.jpg" alt="" width="400" height="98" /></p>
<p>A quick Diff on SMF&#8217;s base files and our SMF files revealed that a new readme.php was created. And it contained the following:</p>
<p><img class="alignnone" title="3" src="http://www.phpugph.com/blog/wp-content/uploads/2009/06/3.jpg" alt="" width="400" height="299" /></p>
<p>Decoding that garbled texts reveals that readme.php was run on the browser and that was the main cause of appending links on the Settings.php.</p>
<p>I am still baffled by the fact that some people would do such things. Disrupt service for profit? Well, as for  krisbarteo, yes you&#8217;ve succeeded in doing that. Then what? Happy now? If you only have used that smarts and skills on the good stuff, you&#8217;d probably be rich by now.</p>
<p>To all PHPugers, we hope that this thing doesn&#8217;t happen again even if we all know that the Internet isn&#8217;t safe from these crackers. It&#8217;s all good. For now.</p>
]]></content:encoded>
			<wfw:commentRss>http://phpugph.com/blog/2009/06/24/update-phpugphs-smf-maliciously-attacked-now-back-online/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>Mployd.ph Offers PHPUGPH Members 1-Year Free Subscription</title>
		<link>http://phpugph.com/blog/2008/10/17/mploydph-offers-phpugph-members-1-year-free-subscription/</link>
		<comments>http://phpugph.com/blog/2008/10/17/mploydph-offers-phpugph-members-1-year-free-subscription/#comments</comments>
		<pubDate>Fri, 17 Oct 2008 03:51:03 +0000</pubDate>
		<dc:creator>aj</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Miscellaneous]]></category>
		<category><![CDATA[mployd]]></category>
		<category><![CDATA[offer]]></category>
		<category><![CDATA[phpugph]]></category>

		<guid isPermaLink="false">http://www.phpugph.com/blog/?p=47</guid>
		<description><![CDATA[If you are a member of PHPUGph.com, you are entitled to a 1 year free account subscription at Mployd.ph. The account subscription is worth Php 10,000 approx. ($250). Login to PHPUGPH now and grab the exclusive promo code. Hurry! This offer expires October 31, 2008 is extended till the end of the year!]]></description>
			<content:encoded><![CDATA[<p>If you are a member of <a href="http://phpugph.com">PHPUGph.com</a>, you are entitled to a 1 year free account subscription at <a href="http://mployd.ph">Mployd.ph</a>. The account subscription is worth Php 10,000 approx. ($250).</p>
<p><a href="http://phpugph.com/talk">Login to PHPUGPH now</a> and grab the exclusive promo code. Hurry! This offer expires <span style="text-decoration: line-through;">October 31, 2008</span> is extended till the end of the year!</p>
]]></content:encoded>
			<wfw:commentRss>http://phpugph.com/blog/2008/10/17/mploydph-offers-phpugph-members-1-year-free-subscription/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Globe Innovation Convention: Globe Labs Launch &#8211; &#8220;Enriching lives through Innovative Communications&#8221;</title>
		<link>http://phpugph.com/blog/2008/07/23/globe-innovation-convention-globe-labs-launch-enriching-lives-through-innovative-communications/</link>
		<comments>http://phpugph.com/blog/2008/07/23/globe-innovation-convention-globe-labs-launch-enriching-lives-through-innovative-communications/#comments</comments>
		<pubDate>Wed, 23 Jul 2008 02:46:05 +0000</pubDate>
		<dc:creator>aj</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[Miscellaneous]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[globe labs]]></category>
		<category><![CDATA[phpugph]]></category>

		<guid isPermaLink="false">http://www.phpugph.com/blog/?p=45</guid>
		<description><![CDATA[Spreading the news Date: August 7, 2008 (Thursday) Time: 7:30 AM &#8211; 5:00 PM Venue: Isla Ballroom, Tower Wing, EDSA Shangrila Globe Labs is a new organization within Globe Telecom whose mission is to help bring in the newest future technology services at the earliest market-relevant time. We explore new and future technologies, and partner [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Spreading the news</strong></p>
<p><strong>Date: </strong>August 7, 2008 (Thursday)<br />
<strong>Time: </strong>7:30 AM &#8211; 5:00 PM<br />
<strong>Venue:</strong> Isla Ballroom, Tower Wing, EDSA Shangrila</p>
<p><a href="http://www.globelabs.com.ph/">Globe Labs</a> is a new organization within Globe Telecom whose mission is to help bring in the newest future technology services at the earliest market-relevant time. We explore new and future technologies, and partner with developers to create new Internet, wired and wireless applications.</p>
<p><em>What Globe have in store for you: Learn, Build, Compete and Succeed</em></p>
<ul>
<li>Discover the different opportunities with Globe Labs</li>
<li>Learn how to use Telco tools and various development platforms to build innovative applications</li>
<li>Join the Globe Labs Challenge and compete amongst the best</li>
</ul>
<p><a href="http://phpugph.com/">PHP User Group Philippines, Inc.</a>, being one of the institution partners of Globe Labs, has been given 200 SLOTS for this upcoming big event.</p>
<p>We are inviting PHPUGPH members to attend. T-SHIRTS designed for PHPUGPH would be given away as freebies plus exciting raffle prizes awaits you…</p>
<p><em>***FIRST 300 individual registrants gets a GIFT***</em></p>
<p><strong>Below are some links of articles regarding the event:</strong><br />
From Businessworld (Entreprenews)<br />
<a href="http://entreprenews.com.ph/main.php?id=062508.gonzalez">http://entreprenews.com.p…in.php?id=062508.gonzalez</a><br />
From the Inquirer:<br />
<a href="http://technology.inquirer.net/infotech/infotech/view/20080625-144726/Globe-Labs-targets-3G-mobile-developers">http://technology.inquire…gets-3G-mobile-developers</a><br />
From the Manila Times:<br />
<a href="http://www.manilatimes.net/national/2008/june/27/yehey/techtimes/20080627tech5.html">http://www.manilatimes.ne…htimes/20080627tech5.html</a><br />
From Manila Bulletin:<br />
<a href="http://www.mb.com.ph/INFO20080627128372.html">http://www.mb.com.ph/INFO20080627128372.html</a><br />
From PCWorld:<br />
<a href="http://www.pcworld.com.ph/?_s=7&amp;_ss=P&amp;P=3&amp;PN=7313&amp;L=H&amp;II=485&amp;ID=H,485,PWP,PWP-16">http://www.pcworld.com.ph…5&amp;ID=H,485,PWP,PWP-16</a><br />
From Yugatech:<br />
<a href="http://www.yugatech.com/blog/telecoms/gt-opens-globe-labs-division/">http://www.yugatech.com/b…pens-globe-labs-division/</a><br />
From Globe Labs website:<br />
<a href="http://www.globelabs.com..../News/Forms/AllItems.aspx">http://www.globelabs.com…./News/Forms/AllItems.aspx</a></p>
<p><a href="../../talk/index.php/topic,5998.msg49415.html#msg49415">More information here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://phpugph.com/blog/2008/07/23/globe-innovation-convention-globe-labs-launch-enriching-lives-through-innovative-communications/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
	</channel>
</rss>

