One of the details that emerged from Curt's monitoring of the Invita
Security network involved a password used by Alexey Ivanov. When
accessing one of his drop sites, Alexey's FTP password was
www.pidor.com (Internet Archive available). Think of what an unwary
analyst might do with that information. Only someone who is monitoring
Alexey's actions might know about www.pidor.com. Say that unwary
analyst decides to visit www.pidor.com to learn more about the
site. If Alexey or a friend is monitoring Web accesses to
www.pidor.com, they could learn that they are being monitored. This
case demonstrates how important it is for analysts to not "touch"
remote or foreign sites involved in intrusions. You may tip your hand
to the attacker and ruin an investigation or recovery effort.
I have moved my blogging software from Wordpress to Serendipity. It was able to import the
entries from Wordpress without any problem. I needed to create 3
additional files to make the transition complete i.e. wp-atom.php,
wp-rss.php, wp-rss2.php . These were needed so that people who were
using the rss feeds from the Wordpress did not have to change their
feeds again.
These files do nothing more than redirecting the users to the new
feed url. For example, the content of the file wp-rss2.php is just
<?php
// For redirecting users who are lost
header("Location: http://rajshekhar.net/blog/feeds/index.rss2");
?>
Beyond this customization, I did not have to do any more labor to
migrate to Serendipity