Cookies

Cookies.

I am not talking about the kind you get from visiting web sites which can be misused to track your activities on the Internet. I use program such as Spybot – Search & Destroy and SpywareBlaster to keep my computer a bit safer.

I am talking about tasty cookies, the one you can eat.

Dreamhost forces password reset due to security issue.

Security advisory from Dreamhost from January 20th, 2012: Changing Shell/FTP Passwords due to Security Issue

Last night we detected some unauthorized activity within one of our databases. While we don’t have evidence that customer passwords were taken at this time, we’re forcing a change out of caution.

If you are Dreamhost customer, you should change your password on the side of caution.

On related note, Dreamhost apparently saves password in clear text.

 

More info on LinkedIn spam.

We received more informations on the spam purporting from LinkedIn. It is obvious the emails do not come from LinkedIn. Email sender can easily be spoofed.

From the email headers:

Received: from static.3.100.40.188.clients.your-server.de ([188.40.100.3])

Received: from titan361.startdedicated.com ([62.75.229.17])

Received: from mx.silentpro.de ([212.12.114.235])

Received: from kultserver.de ([46.163.74.103])

Received: from ks35158.kimsufi.com ([213.251.184.181])

The spam even dares to say:

Stop spamming me!

If you see any mails purporting from LinkedIn, do not click on any of the links. As a matter of fact, make it a habit not to click on any links in emails.