<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Azeem Personal play ground</title>
	<atom:link href="http://azimyasin.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://azimyasin.wordpress.com</link>
	<description>Technology Happens!</description>
	<lastBuildDate>Mon, 26 Dec 2011 06:33:00 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='azimyasin.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Azeem Personal play ground</title>
		<link>http://azimyasin.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://azimyasin.wordpress.com/osd.xml" title="Azeem Personal play ground" />
	<atom:link rel='hub' href='http://azimyasin.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Apropos to Habib Bank Limited (HBL) Internet Banking Security</title>
		<link>http://azimyasin.wordpress.com/2011/09/16/apropos-to-habib-bank-limited-hbl-internet-banking-security/</link>
		<comments>http://azimyasin.wordpress.com/2011/09/16/apropos-to-habib-bank-limited-hbl-internet-banking-security/#comments</comments>
		<pubDate>Fri, 16 Sep 2011 20:33:22 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=175</guid>
		<description><![CDATA[One good day i happen to get a link shared from one of my friend saying that you&#8217;re one of the developer various banks IB you should check this one out i responded back with my comments on that blog but soon i was moderated to respond on it and then a series of email [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=175&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>One good day i happen to get a link shared from one of my friend saying that you&#8217;re one of the developer various banks IB you should check this one out i responded back with my comments on that blog but soon i was moderated to respond on it and then a series of email exchange started between us .</p>
<p><span id="more-175"></span></p>
<p>Below is the email Chain</p>
<p>1st Email</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</p>
<p><span style="font-size:x-small;"><span style="font-family:'trebuchet ms', sans-serif;">So then you do concede that you or someone in your team has access to everyone&#8217;s plain-text passwords? Since HSM does have a key and someone knows that key. Is that correct?</span></span></p>
<div>
<div>
<div><span style="font-family:'trebuchet ms', sans-serif;">Aleem</span></p>
<div>On Thu, Sep 15, 2011 at 10:47 PM, Azeem &lt;<a href="mailto:wordpress@aleembawany.com" target="_blank">wordpress@aleembawany.com</a>&gt; wrote:</p>
<blockquote>
<div>New comment on your post &#8220;Habib Bank Limited (HBL) Internet Banking Security&#8221;<br />
Author : Azeem (IP: 202.142.176.163 , <a href="http://202-142-176-163.multi.net.pk/" target="_blank">202-142-176-163.multi.net.pk</a>)<br />
E-mail : <a href="mailto:azimyasin@gmail.com" target="_blank">azimyasin@gmail.com</a><br />
URL    : <a href="http://azimyasin.wordpress.com/" target="_blank">http://azimyasin.wordpress.com</a><br />
Whois  : <a href="http://whois.arin.net/rest/ip/202.142.176.163" target="_blank">http://whois.arin.net/rest/ip/202.142.176.163</a><br />
Comment:</div>
<p>&lt;p&gt;Dear Aleem, &lt;/p&gt;</p>
<p>&lt;p&gt;I would again say  &#8221;Neem Hakeem khatr-e-jaan&#8221; what you&#8217;re saying is that pins which are generated by HSM can be seen by anyone / every one , doesn&#8217;t that imply that ATM Pin codes that are generated via bank can be seen by bank employees and they can generate duplicate ATM cards and use your pin codes to withdraw your money . Spot on! (Y) You&#8217;re actually a geek and you have busted a secret out of banking industry please go on with suing all of those banks that uses partial password as their authentication methods which includes couple of ( swiss banks / world top notch banks ) <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  &lt;/p&gt;</p>
<p>&lt;p&gt;Regards,<br />
AAY!&lt;/p&gt;</p>
<div>You can see all comments on this post here:<br />
<a href="http://aleembawany.com/2011/09/10/habib-bank-limited-hbl-internet-banking-security/#comments" target="_blank">http://aleembawany.com/2011/09/10/habib-bank-limited-hbl-internet-banking-security/#comments</a></div>
</blockquote>
<blockquote><p>Permalink: <a href="http://aleembawany.com/2011/09/10/habib-bank-limited-hbl-internet-banking-security/#comment-44090" target="_blank">http://aleembawany.com/2011/09/10/habib-bank-limited-hbl-internet-banking-security/#comment-44090</a><br />
Trash it: <a href="http://aleembawany.com/wordpress/wp-admin/comment.php?action=trash&amp;c=44090" target="_blank">http://aleembawany.com/wordpress/wp-admin/comment.php?action=trash&amp;c=44090</a><br />
Spam it: <a href="http://aleembawany.com/wordpress/wp-admin/comment.php?action=spam&amp;c=44090" target="_blank">http://aleembawany.com/wordpress/wp-admin/comment.php?action=spam&amp;c=44090</a></p></blockquote>
<blockquote><p>My response 1</p></blockquote>
<blockquote><p>Dear Aleem,</p>
<div>You should go on with understanding  how Pin Mailer / HSM works no pin data are ever stored on any system . Upon initialization of an Alternative delivery channel HSM automatically generates a key and shares a public key with the delivery channel and then the ADC encrypts the pin with that public key and sends it back to HSM now that HSM have a key it stores the password no human intervention is involved neither any human have any access to any key. You should take a look at the product manual of an HSM provided on thales website <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </div>
<div>Regards</div>
<div>AAY!</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
<div>Second Email comes in</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
<div>
<div>As you said it uses a public/private key (asymmetric encryption). And it&#8217;s possible you encrypted the entire hard disk volume but either way you, or someone in your team has access to the private key which you can use to get access to the unencrypted volume. Is that correct?</div>
</div>
<div><span style="font-size:x-small;"><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></span><span style="color:#888888;"><span style="font-family:'trebuchet ms', sans-serif;">Aleem</span></span></div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</div>
<div>My Response 2</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</div>
<div>The answer is NO! Their is no way you can retrieve private keys out of an HSM . Otherwise the hardware wouldn&#8217;t cost in millions <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</blockquote>
<blockquote><p>Third Email</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p></blockquote>
<blockquote><p><span style="font-size:x-small;"><span style="font-family:'trebuchet ms', sans-serif;">Private key need not be a text based key. You can use a digital card or other hardware tokens. You can even have coupled tokens where two people need to insert their tokens to gain unencrypted access to the machines. So you are saying that no one can decrypt the data and you didn&#8217;t get any hardware tokens or similar with your HSM setup?</span></span></p>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div>
<div>
<div>
<div><span style="color:#888888;"><span style="font-family:'trebuchet ms', sans-serif;">Aleem</span></span></div>
</div>
</div>
</div>
</blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p></blockquote>
<blockquote><p>My Response 3</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</p></blockquote>
<blockquote><p>HSM are booted by Hardware tokens . That hardware tokens are not used as a private key of ADC&#8217;s don&#8217;t you feel one can achieve the same task with a normal PC if it was that easy to access all the data? why to buy a 5/6 million hardware you can do it in a 25k MS SQL Server <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p></blockquote>
<blockquote><p>Fourth Email</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p></blockquote>
<blockquote>
<div>
<div><span style="font-family:'trebuchet ms', sans-serif;">&gt; </span>Their is no way you can retrieve private keys out of an HSM</div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
</div>
<div><span style="font-family:'trebuchet ms', sans-serif;">As a matter of fact, HSMs even allow you to backup the private key through smartcards or tokens.</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">What I said was that authorized persons can get access to the data as and when they please. The same tokens are also used for making backups.</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">And on the other hand what you are suggesting is that once the data goes into the data store, there is no way to get it out? Only to verify that it using yes/no responses?</span></div>
</blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</p></blockquote>
<blockquote><p>My Response 4</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p></blockquote>
<blockquote><p>Yes that remains a fact. In case an anomaly occurs or an organization needs to fetch that data out of an HSM they need to contact back the vendor of HSM i.e. Safenet or thales and then only they can provide the actual buyer with the hardware key that be the private key and on most of the cases it remains with the actual vendor and it&#8217;s the contractual obligation of the HSM providing vendor to keep those keys safe once they sends back the private key to the real consumer the contract goes null and void i.e. that Hardware which costs in millions is no longer the safest place to keep pins  .</p>
<div>If getting private keys was that easy all ATM Pins would compromise with one person knowing pin codes of all consumer.</div>
</blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p></blockquote>
<blockquote><p>Fifth Email</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p></blockquote>
<blockquote>
<div>If you never need to decrypt the data you don&#8217;t need asymmetric keys. You do understand how asymmetric keys work don&#8217;t you?</div>
<div>The key you are referring to may be the root key or some such key. The HSM does actually provide an API to generate keys to decrypt data. Anyone with sufficient privileges in your team can decrypt the data.</div>
<div>That&#8217;s why you are using asymmetric keys. To be able to get back out what you put in.</div>
<div>Otherwise you would use a one-way cryptographic hash. That&#8217;s why hackers use brute force dictionaries. I don&#8217;t think you really understand this concept.</div>
<div>You should consult your team lead or something and read up on the matter. If you are in IT operations (which it sounds like you might be), I would suggest you consult your software dev lead instead.</div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="color:#888888;"><span style="font-family:'trebuchet ms', sans-serif;">Aleem</span></span></div>
</div>
</div>
</div>
</div>
</div>
</div>
</blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p></blockquote>
<blockquote><p>My response 5</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p></blockquote>
<blockquote><p>Dear Aleem ,</p>
<div>I do lead a team of 5 devs here <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> . Asymmetric keys are used by HSM to do processing within it self.</div>
<div>Below is the overview of what actually happens</div>
<div>1. Upon initialization of a ATD i.e. ( POS,InternetBanking,ATM)  an ATD sends in a Init message(Initialization) to HSM</div>
<div>2. HSM Generates Public/Private key pair and stores it on a keyindex and sends in Public key as a response to this message .<strong> Only Keyindex / Public key are accsesible in HSM</strong> and no private key data is ever shown.</div>
<div>3. The ATD stores that Public key in its database or in-memory</div>
<div>4. Now lets say a user comes in and register his self on Internet banking . The IB Generates a random password encrypts it with Public key sent by HSM and send it back to HSM . HSM Responds with success / fail . If success HSM stores that pin in its database . If the ATD receive backs Success it sends that pin to consumer via email/sms what ever the organization decides.</div>
<div>5. Now when the user comes in to authenticate a pin verification message is sent to HSM in case of partial password a sentinel value is set i.e. if the password is abcdef123 and abcd is taken as an input from user abcd$$$$$ is sent to HSM  by encrypting it with public key of HSM .</div>
<div>6. HSM decrypts it and only check the password positions which are not sentinel values</div>
<div>7. If the pin validates HSM responds back with success  and only then the user is able to login .</div>
<div>If you still don&#8217;t understand this discussion will never end. I still don&#8217;t think it&#8217;s wise to say the bank have stored the password in a MYSQL/MSSQL/ORACLE database in plain text format.</div>
<div>Regards,</div>
<div>AAY!</div>
</blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</p></blockquote>
<blockquote><p>Sixth Email</p></blockquote>
<blockquote><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</p></blockquote>
<blockquote><p><span style="font-size:x-small;"><span style="font-family:'trebuchet ms', sans-serif;">Actually, it&#8217;s not that complex and I do understand what you are saying. Appears your HSM implementation is different and it doesn&#8217;t make all that much sense that you have entrusted your private key to another entity.</span></span></p>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">And you are mimicking one-way encryption by keeping the PK completely concealed. There is a reason why they invented one-way encryption functions. There&#8217;s also a reason why entire PHDs have been done on the same and why HSMs have encryption accelerators built into it.</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">Not to mention all other security considerations with essentially 4-letter passwords (brute forcing it would be trivial).</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">It might be useful for ATM and pins, but not for user passwords as such. One-way encryption algorithms achieve the same.</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">Also, I suspect that your SKU might be different, but a quick Google search shows that HSM APIs allow you to get the private key&#8211;maybe in your case they just stifled it. Either way, partial passwords are probably better done by generating one-way hashes of possible combinations and keeping the encrypted letter count high enough to avoid brute force (GPU based brute force attack would take a matter of hours if not days).</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">The analogy is that you have a really secure locker so you are storing everything in it (all your eggs in one basket). With each password individually encrypted using one-way functions, each password is it&#8217;s own unique locker. That&#8217;s common practise so a compromise doesn&#8217;t divulge every password or a brute force doesn&#8217;t screw things up. I still see this is as a big gap, though you have taken other measures against CSRF and two-factor auth.</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;">If you just did a one-way encryption, you&#8217;d get the same functionality without an HSM (for this specific purpose) and would make it more secure. I am too lazy to find references, but this is also required for regulatory compliance. HSM might be entirely okay for storing other sensitive user data and key financial data or even ATM pins. But the very ethos of asymmetric keys is that you can encrypt and decrypt data. You are using it incorrectly.</span></div>
<div><span style="font-family:'trebuchet ms', sans-serif;"><br />
</span></div>
<div>
<div>Aleem</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</div>
<div>My response 6</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</div>
<div>Partial passwords are used to secure no-voice user from giving away their complete password in a keylogger/hacked machine</p>
<div>Regarding your other doubts that a 4 letter passwords is prone to brute force attack after 3 un-successful login attempt the account of the user is locked and the user have to visit the bank in order to reactivate their password.</div>
<div>You have agreed to the fact that the implementation i have mentioned in my reply makes it nearly impossible for any one to see what the user password is and now you&#8217;re arguing on the fact that you should have done one way hashing because you say so.</div>
<div>You do realize that it would have been impossible to do partial password authentication in case of one way hashing  and the users would have been more prone to keylogger based fraud/scams ? isn&#8217;t it ?</div>
<div>Either way your post saying HBL /MCB or any other bank have stored plain text password is plain wrong. I have worked for multiple banks within Pakistan/Middle east region and i can bet you on the fact that no bank would be fool enough to do what you have just said in your post its just that you don&#8217;t know how they have implemented their solution and you&#8217;re &#8220;assuming&#8221;. Moreover no compliance explicitly specify hashing as their recommended way of doing things they do however explicitly specify to not to store any sensitive data in any database/logs at least PA-DSS/ PCI-DSS doesn&#8217;t which is a industry standard.</div>
<div>I hope you would write a <a>a corrigendum within your article of HBL using plain-text to store passwords.</a></div>
<div><a><br />
</a></div>
<div><a>Regards,</a></div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</div>
<div>Another response of mine prior to receiving his response</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</div>
<div>Between your claim that SHA1 and md5 being the more secure way of storing password is again your opinion</p>
<div>put e5e9fa1ba31ecd1ae84f75caaa474f3a663f05f4 at  <a href="http://www.md5decrypter.co.uk/" target="_blank">http://www.md5decrypter.co.uk/</a> and you will get your hashed password in this case secret</div>
<div>Imagine storing hashes in database and some one with access to the db or some one invading an application and having access to thousands of hashes <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </div>
<div>Regards,</div>
<div>AAY!</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</div>
<div>Seventh Email</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</div>
<div>Are you saying SHA1 is insecure? Really? Do you even know how that website works (I haven&#8217;t looked but I have a good guess).</div>
<div><span class="Apple-style-span" style="font-family:'trebuchet ms', sans-serif;">Brute force is not meant for online attempts. It&#8217;s for when your password bank gets compromised. You have a long way to go before you understand encryption. You have been given a password vault that you bought off the market and you are simply using that blindly after reading the manual. Doesn&#8217;t mean you really know the choice of encryption. Ignorance really is bliss.</span></div>
<div>
<div><span style="font-family:'trebuchet ms', sans-serif;">&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</span></div>
</div>
<div>His 8th Email before reciving my response</div>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
<div>Also, you can do partial auth with one-way. Read up on it.</div>
</div>
<div>====================</div>
<div>My final response</div>
<div>====================</div>
<div>You simply fail to realize that the encryption scheme.I provided in the algorithm doesn&#8217;t leak any information and no one get to know about any sensitive data. Rather you&#8217;re crying on the fact that i know better then you and you should follow me rather following any industry standard.</p>
<div>&#8220;HBL Stores plain text password&#8221; is a joke and you yourself are now telling me their are ways to store partial passwords without knowing them <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<div>P.S. Calling your self a security geek doesn&#8217;t makes you one make sure you secure the /pics/ folder at your website adding .htpasswd would be a good idea <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </div>
</div>
</div>
</div>
</div>
</blockquote>
<div>
<div>
<div>
<div>For those who think private keys are accessible in HSM can take a look at <a href="http://forums.adobe.com/thread/831450">http://forums.adobe.com/thread/831450</a>  or <a href="http://www.openmpe.com/cslproceed/HPW04CD/papers/3327.pdf">http://www.openmpe.com/cslproceed/HPW04CD/papers/3327.pdf</a> or you can refer to the HSM product manuals.</div>
<div>Moral of the story  &#8221;Neem hakeem khatr-e-jaan&#8221; <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/175/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/175/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/175/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/175/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/175/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/175/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/175/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/175/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=175&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2011/09/16/apropos-to-habib-bank-limited-hbl-internet-banking-security/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>Hacking into .NET Applications a newbie guide</title>
		<link>http://azimyasin.wordpress.com/2011/08/25/hacking-into-net-applications-a-newbie-guide/</link>
		<comments>http://azimyasin.wordpress.com/2011/08/25/hacking-into-net-applications-a-newbie-guide/#comments</comments>
		<pubDate>Thu, 25 Aug 2011 19:56:11 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Codes]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[Code]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[.NET]]></category>
		<category><![CDATA[ASP.NET]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=147</guid>
		<description><![CDATA[As always .. its been a long time since i blogged about any thing .. I was bored today had nothing good to do so i thought of writing a blog entry to boost traffic of this freaky blog a little bit. Ever since i got a job i have been forced to transform from [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=147&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>As always .. its been a long time since i blogged about any thing .. I was bored today had nothing good to do so i thought of writing a blog entry to boost traffic of this freaky blog a little bit.</p>
<p>Ever since i got a job i have been forced to transform from a typical *nix geek to a .Netter.. Sad though but it&#8217;s a fact.</p>
<p>Invading an application code that&#8217;s written in *nix require a hell lot of debugging experience + playing with registers of system however with the ease of programming that is provided by .NET comes in pitfalls of it their are couple of  companies developing a very professional reflector for all versions of .NET . Most of the production environment code  that  is out their doesn&#8217;t contain any form of obfuscation hence are very prone to cracking/hacking. I would be giving a demo as to how to invade into a simple .NET Application</p>
<p>So we will Write One Console application that will in-term calls a DLL ( Dynamic Link Library  ) to perform certain task .<br />
As i have been working for banking industry let us call our console application to be a service that triggers a Funds transfer from One banking account to some other banking account.</p>
<p><span id="more-147"></span></p>
<p><pre class="brush: csharp;">
using System;
using System.Collections.Generic;
using System.Text;
using FTLibrary;

namespace PaymentExecutor
{
    class Program
    {
        static void Main(string[] args)
        {

            Console.WriteLine(&quot;Starting Our Executor&quot;);

            Console.WriteLine(&quot;Initiating FT Class&quot;);
            FTClass tempObj = new FTClass();
            tempObj.DoFundsTransfer(&quot;123&quot;, &quot;234&quot;);

            Console.ReadLine();

        }
    }
}

</pre></p>
<p>Ok the above code is basically a Payment Executor which do funds transfer from Account &#8220;123&#8243; to &#8220;234&#8243;<br />
Our FT Class looks some thing like this</p>
<p><pre class="brush: csharp;">
using System;
using System.Collections.Generic;
using System.Text;

namespace FTLibrary
{
    public class FTClass
    {

        public bool DoFundsTransfer(string sFromAccount, string sToAccount)
        {
            string tempFrom = sFromAccount;
            string tempTo = sToAccount;

            Console.WriteLine(&quot;Ok Going to do fundstransfer from &quot; + sFromAccount + &quot;  to  &quot; + sToAccount);
            Console.WriteLine(&quot;This is where fundstransfer from &quot; + sFromAccount + &quot; to &quot; + sToAccount);
            Console.WriteLine(&quot;Execution ends here&quot;);
            return true;

        }
    }
}
</pre></p>
<p>Now that we have our code compiled the above code would generate a bin folder that would look some thing like this<br />
<a href="http://azimyasin.files.wordpress.com/2011/08/capture-bin.png"><img class="alignleft size-full wp-image-153" title="Capture-Bin" src="http://azimyasin.files.wordpress.com/2011/08/capture-bin.png?w=497&#038;h=98" alt="" width="497" height="98" /></a></p>
<p>Imagine you have deployed the same code in some production environment taking out its code would be a piece of cake for anyone with a little experience of Redgate Reflector (Previously available for free) free trial is available though . I tried generating code from the Exe and here is what i have got out of it.</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/capture-executor1.png"><img class="alignleft size-medium wp-image-155" title="Capture-Executor1" src="http://azimyasin.files.wordpress.com/2011/08/capture-executor1.png?w=300&#038;h=160" alt="" width="300" height="160" /></a></p>
<p>The code that is generated by reflector is a near identical copy of the main class. Moving forward the reflector generated code of FTClass looks something like this.</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/capture-ft.png"><img class="size-medium wp-image-156 alignleft" title="Capture-FT" src="http://azimyasin.files.wordpress.com/2011/08/capture-ft.png?w=300&#038;h=150" alt="" width="300" height="150" /></a></p>
<p>Fair enough. Now that i can see the code one thing i could to do is to create another project and generate an exe but that&#8217;s tricky on most of the system that involves fairly complex library are not that easy to compile we need a simple way to hack in to this dll and modify the transferring account with ours.</p>
<p>A typical output of the above written program would be some thing like this.</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/typical-output.png"><img class="alignleft size-medium wp-image-166" title="Typical output" src="http://azimyasin.files.wordpress.com/2011/08/typical-output.png?w=300&#038;h=200" alt="" width="300" height="200" /></a></p>
<p>This is where Reflexil do the charms its a (Open source ) utility that can be used in conjunction with the Redgate Reflector to modify the instruction set directly in the library for that you will have to go through this <a title="link" href="http://en.csharp-online.net/CIL_Instruction_Set" target="_blank">link<br />
</a><br />
Opening up Reflector + Reflexil for the above program and navigate to the Instruction set tab of it.</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/maincalling.png"><img class="alignleft size-full wp-image-167" title="MainCalling" src="http://azimyasin.files.wordpress.com/2011/08/maincalling.png?w=497&#038;h=179" alt="" width="497" height="179" /></a></p>
<p>Looking on the above instruction set and going through the CIL Instruction set provided in the given link one can easily make-out before the call of DoFundsTransfer stack is empted first and then two strings are loaded into it.</p>
<p>Now moving to actual FT Class below is the snap of its instructions.</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/ft-inst.png"><img class="alignleft size-full wp-image-168" title="FT-Inst" src="http://azimyasin.files.wordpress.com/2011/08/ft-inst.png?w=497&#038;h=175" alt="" width="497" height="175" /></a></p>
<p>So This is where the funds transfer happens let us add our own instructions with-in it .</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/capture-mod.png"><img class="alignleft size-full wp-image-169" title="Capture-mod" src="http://azimyasin.files.wordpress.com/2011/08/capture-mod.png?w=497&#038;h=171" alt="" width="497" height="171" /></a></p>
<p>So a tricky bit here is that i did ldstr instead of ldarg save the dll from within reflexil menu and replace it with existing now the output looks some thing like this.</p>
<p><a href="http://azimyasin.files.wordpress.com/2011/08/hacked-dll.png"><img class="alignleft size-full wp-image-170" title="hacked-dll" src="http://azimyasin.files.wordpress.com/2011/08/hacked-dll.png?w=497&#038;h=266" alt="" width="497" height="266" /></a></p>
<p>tadda&#8230;. sweet isn&#8217;t it. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  P.S. the step by step guide is made just to make people aware of the potential security risks i have been into one of the &#8220;Secure Coding Technique&#8221; guide sorta thing and &#8221; i personally think they are of no use&#8221; and are typically bookish . The above guide is a some what practical  example of hacking . If you have a little sense of security you can combined the above explained steps with some basic privilege escalation exploits i.e (local root) you can make a huge impact without leaving a single foot print .</p>
<p>Anyways guys Eid mubarak in advance to all of you ! until my next blog post which is not coming any time soon tc tata Byebye ALLAH HAFIZ <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/147/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/147/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/147/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/147/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/147/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/147/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/147/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/147/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=147&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2011/08/25/hacking-into-net-applications-a-newbie-guide/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/capture-bin.png" medium="image">
			<media:title type="html">Capture-Bin</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/capture-executor1.png?w=300" medium="image">
			<media:title type="html">Capture-Executor1</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/capture-ft.png?w=300" medium="image">
			<media:title type="html">Capture-FT</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/typical-output.png?w=300" medium="image">
			<media:title type="html">Typical output</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/maincalling.png" medium="image">
			<media:title type="html">MainCalling</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/ft-inst.png" medium="image">
			<media:title type="html">FT-Inst</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/capture-mod.png" medium="image">
			<media:title type="html">Capture-mod</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2011/08/hacked-dll.png" medium="image">
			<media:title type="html">hacked-dll</media:title>
		</media:content>
	</item>
		<item>
		<title>PHP/MYSQL Database Tuning/Optimizing</title>
		<link>http://azimyasin.wordpress.com/2009/12/26/phpmysql-database-tuningoptimizing/</link>
		<comments>http://azimyasin.wordpress.com/2009/12/26/phpmysql-database-tuningoptimizing/#comments</comments>
		<pubDate>Sat, 26 Dec 2009 21:56:01 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[APACHE MYSQL PHP]]></category>
		<category><![CDATA[Code]]></category>
		<category><![CDATA[Codes]]></category>
		<category><![CDATA[LAMP]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[mysqldump]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[optimization]]></category>
		<category><![CDATA[searching php table]]></category>
		<category><![CDATA[Table Search]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=142</guid>
		<description><![CDATA[Hey there all ssup! my xams are over now .. though there had been quite couple of things going around with my lyfe i finally took out some spare time to write a blog entry.. Well quite recently i have encountered a problem which is quite weird i have setup a small site with a [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=142&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Hey there all ssup! my xams are over now .. though there had been quite couple of things going around with my lyfe i finally took out some spare time to write a blog entry.. Well quite recently i have encountered a problem which is quite weird i have setup a small site with a huge data set.. really huge&#8230; My DB Structure was fairly simple 3 tables were there for illustrative purpose i will name them</p>
<p>Table_A<br />
Table_B<br />
Table_A_B (Relation ship of A and B )</p>
<p>Table A contained Lots and lots of data where as table B have relatively small number of data in it.</p>
<p>In my interface application there was an option of Search in which i was fetching out data from Table_A with relationship of Table_A_B</p>
<p>the query i used to fetch out rows was like</p>
<p>SELECT col1,col2<br />
FROM Table_A WHERE id_TableA IN (</p>
<p>SELECT TableA_id<br />
FROM Table_A_B<br />
WHERE Table_Bid =1<br />
)<br />
AND Col1 Like (&#8216;%query%&#8217;);</p>
<p>With a data set of 300000 it took 2 minutes to retrieve the search result out of it. That was really pissing me off.</p>
<p>After executing the same query with Explain i found out only one index was being hit which was one of the reason of query taking so long Now i have to make indexes.</p>
<p>Then i Google around and found that i could make Full-text search index on the col1 But guess what Mysql Only supports Full Text search indexes on MyISAM Tables and i had InnoDB Tables which cannot be transformed into MyISAM due to constraints.. Shit Happens.. Nevertheless so Now in this case what i did was to replicate the tables and set my default table type to MyISAM this was easy</p>
<p>Create Table Table_A_Copy SELECT * From Table_A</p>
<p>After doing that you will have a copy of the Table_A however no indexes / Primary key/ FK Constraints  would be there you have to make a primary key plus indexes and now this time you can make Full Text Indexes.</p>
<p>And off course you have to change your code/Query  to use the new tables there would be a marginal increase in searching after doing this <img src='http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  the query would look some thing like this<br />
SELECT col1,col2<br />
FROM Table_A WHERE id_TableA IN (</p>
<p>SELECT TableA_id<br />
FROM Table_A_B<br />
WHERE Table_Bid =1<br />
)<br />
AND Match(col1) AGAINST(&#8216;&#8221;search query&#8221;&#8216; IN BOOLEAN MODE)</p>
<p>Mysql Reference manual for Full text search can be found out <a href="http://dev.mysql.com/doc/refman/5.0/en/fulltext-search.html" target="_blank">here</a></p>
<p>see ya folks and a very happy new year to all of ya <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/142/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=142&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2009/12/26/phpmysql-database-tuningoptimizing/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>Google ad @ Gmail.</title>
		<link>http://azimyasin.wordpress.com/2009/06/02/google-ad-gmail/</link>
		<comments>http://azimyasin.wordpress.com/2009/06/02/google-ad-gmail/#comments</comments>
		<pubDate>Tue, 02 Jun 2009 17:57:13 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Life..!]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=138</guid>
		<description><![CDATA[Well this was all of the sudden i looked at my inbox and was laughing like hell! man it reminds me of good old days when i use to travel in wagons and coaches ! ROFL!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=138&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div id="attachment_139" class="wp-caption aligncenter" style="width: 1376px"><a href="http://azimyasin.files.wordpress.com/2009/06/inbox.jpg"><img class="size-full wp-image-139" title="Email" src="http://azimyasin.files.wordpress.com/2009/06/inbox.jpg?w=497" alt="Inbox"   /></a><p class="wp-caption-text">Inbox</p></div>
<p>Well this was all of the sudden i looked at my inbox and was laughing like hell! man it reminds me of good old days when i use to travel in wagons and coaches ! ROFL!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/138/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/138/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/138/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/138/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/138/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/138/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/138/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/138/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=138&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2009/06/02/google-ad-gmail/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>

		<media:content url="http://azimyasin.files.wordpress.com/2009/06/inbox.jpg" medium="image">
			<media:title type="html">Email</media:title>
		</media:content>
	</item>
		<item>
		<title>Random Rantings!</title>
		<link>http://azimyasin.wordpress.com/2009/03/22/random-rantings/</link>
		<comments>http://azimyasin.wordpress.com/2009/03/22/random-rantings/#comments</comments>
		<pubDate>Sun, 22 Mar 2009 20:02:14 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Life..!]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=136</guid>
		<description><![CDATA[Write now am pissed !! And Where else to go with your frustrations !! Offcourse your blog ! &#8211; When some random friend of your&#8217;s talk shit ! What would u do ! Slap the shit out of him/her ?! Or say him/her  to fuck off ! Well the things are pretty straight if you [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=136&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Write now am pissed !! And Where else to go with your frustrations !! Offcourse your blog !</p>
<p>&#8211; When some random friend of your&#8217;s talk shit ! What would u do ! Slap the shit out of him/her ?! Or say him/her  to fuck off !</p>
<p>Well the things are pretty straight if you do what i just said above.! But you simply can&#8217;t on times you can&#8217;t!</p>
<p>Then what are the ways to topify ! or to say things indirectly!</p>
<p>1. Simply stop talking with him/her. ! ( The best way though they GAY one )!.</p>
<p>2. Be Quick Pick up a phone call some one who&#8217;s your friend and his/her friend as well go on with your pitty story and in the end when the guy asks you why are you telling him all the shit simply ask him to call back that shit hoe and say him/her to fuckk off from your side.</p>
<p>3. Be nice be gently give a smile and with all the emotions filled over your face ask him ! Is it that what you deserve.! and if he/she reply back with yes ! this is what you deserve see the line starting with &#8220;&#8211;&#8221; .</p>
<p>4. Put your self in his/her place ask yourself a question that &#8220;what if &#8221; at his place and if still the things look wierd go to line starting with  &#8220;&#8211;&#8221;</p>
<p>Well this is it from me but you guys can add up what ever you think in it .. to make the list more comprehensive.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/136/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=136&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2009/03/22/random-rantings/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>Post the T-F-26-09</title>
		<link>http://azimyasin.wordpress.com/2009/02/26/post-the-t-f-26-09/</link>
		<comments>http://azimyasin.wordpress.com/2009/02/26/post-the-t-f-26-09/#comments</comments>
		<pubDate>Thu, 26 Feb 2009 18:33:42 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Life..!]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=134</guid>
		<description><![CDATA[&#8220;It&#8217;s being a while i blogged about any thing&#8221;  &#60; &#8212;  Repeated again! Any ways i just visited my own blog after hell lot of tyme ! why ? usually  my lyfe loops(work -&#62; home -&#62; movie -&#62; sleep -&#62; work ) around any ways i just found Nadia,Bina tagged me so this post would [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=134&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>&#8220;It&#8217;s being a while i blogged about any thing&#8221;  &lt; &#8212;  Repeated again!<br />
Any ways i just visited my own blog after hell lot of tyme ! why ? usually  my lyfe loops(work -&gt; home -&gt; movie -&gt; sleep -&gt; work ) around any ways i just found Nadia,Bina tagged me so this post would be about this taggnig stuff</p>
<p><span style="font-size:100%;"><span style="font-family:verdana;text-decoration:underline;">Tag:</span></p>
<p><span style="font-family:verdana;">6 weird habits/things about yourself</span></p>
<p><span style="font-family:verdana;text-decoration:underline;">Rules:</span></p>
<p><span style="font-family:verdana;">The initial player of this “game” starts with the topic “6 weird habits/things about yourself” and people who get tagged need to write a journal about their 6 weird habits/things as well as state this rule clearly. </span></span><br />
I removed in the End part because it sounds more like Yeh Email 5 aur ko forward karain nahi to bohat bura hoga raat mein tumhain Babar-shair kha jayega lol!</p>
<p>1st. I talk loud ! even on the places where i am not supposed to <img src='http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>2nd. I can go to sleep while talking over phone at night.</p>
<p>3rd.  I can get tensed very easily</p>
<p>4th.  I Sleep less then 5 hours daily :p</p>
<p>5th.  I google alot.! More then what you can imagine.</p>
<p>6th.  I am a opportunist. <img src='http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/134/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=134&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2009/02/26/post-the-t-f-26-09/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>Random Stuff</title>
		<link>http://azimyasin.wordpress.com/2009/01/15/random-stuff/</link>
		<comments>http://azimyasin.wordpress.com/2009/01/15/random-stuff/#comments</comments>
		<pubDate>Thu, 15 Jan 2009 17:37:05 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Life..!]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/2009/01/15/random-stuff/</guid>
		<description><![CDATA[I could have annihilated all the Jews in the world, but I left some of them so you will know why I was killing them. [Adlof Hitler]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=133&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I could have annihilated all the Jews in the world, but I left some of them so you will know why I was killing them. [Adlof Hitler]</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/133/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=133&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2009/01/15/random-stuff/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>EH and Comments.!</title>
		<link>http://azimyasin.wordpress.com/2008/11/20/eh-and-comments/</link>
		<comments>http://azimyasin.wordpress.com/2008/11/20/eh-and-comments/#comments</comments>
		<pubDate>Thu, 20 Nov 2008 17:06:53 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[.NET]]></category>
		<category><![CDATA[ASP.NET]]></category>
		<category><![CDATA[Codes]]></category>
		<category><![CDATA[C++]]></category>
		<category><![CDATA[Exception handling]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=131</guid>
		<description><![CDATA[Exception Handling plays an important rule in Commercial enviroment where un certainity of input is common you cannot imagine of writing a code that lacks exception handling apparently comments play an important part as well. Logging exceptions of every kind and having logs of every event is very necessary when you&#8217;re working with systems which [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=131&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Exception Handling plays an important rule in Commercial enviroment where un certainity of input is common you cannot imagine of writing a code that lacks exception handling apparently comments play an important part as well. Logging exceptions of every kind and having logs of every event is very necessary when you&#8217;re working with systems which does Financial transactions . This post is not about how to do exception handling or how to write comments in your code. But its all about what msg to pass on exception handling ! Lets say you are working on a project which is deployed on a server which is being monitored by a Certified System administrator and the client you&#8217;re working for is very decent they sent you out logs as-it-is  from the server by the Server Administrator. Then you should write a code like</p>
<p>void myFunction(string someparameter)</p>
<p>{</p>
<p>try {</p>
<p>// some code here.</p>
<p>}</p>
<p>catch(Exception ex) {</p>
<p>throw new Exception(&#8220;There was an exception Processing myFunction Source = &#8221; + ex.Source + &#8221; Error Message = &#8221; + ex.Message);</p>
<p>}</p>
<p>}</p>
<p>Now Lets take a case where you are working on a project which is deployed on a Server with no authenticated Server Admin and all of the sudden you get an phone from a moron which happens to be a server admin showing you entire stack trace and yelling that your application lacks logics and all ! and after looking in to logs you find that Problem really doesn&#8217;t exists on your side but on some other system. The criteria of handling exception changes not in code though but the msg !</p>
<p>void myFunction(string someparameter)</p>
<p>{</p>
<p>try {</p>
<p>// some code here.</p>
<p>}</p>
<p>catch(Exception ex) {</p>
<p>throw new Exception(&#8220;OMG OMG OMG WTF WTF WTF !! SOME THING IS REALLY BITCHIN myFunction UP! FUCK IT AM NOT PLAYING ANY MORE !  &#8220;+ ex.Message);</p>
<p>}</p>
<p>}</p>
<p>Some of you might ask me why this well a good answer to the question is that the Moron looking Server admin would never call you up and tell you the entire stack trace he would basically mail you up the entire logs voluntarily  !</p>
<p>It works! Not necessarily all time Why ! ? the moral of people varies if the above thrown exception doesn&#8217;t work out for you i would recommend to slightly change the message or include some phrases like &#8220;I M GAYLORD&#8221; it might work out for you.</p>
<p>I usually comment my code a lot the reason behind it is not that i love to comment or its a good coding practice no way ! but the fact is that i don&#8217;t my self remember what i wrote an hour back comments like</p>
<p>// ALAAAAAAT! PAPU !! AGAYA !</p>
<p>// LOCHA HERE !! FIX IT AFTER LUNCH OR FUCK IT!</p>
<p>// YEAH BABY YEH !</p>
<p>the rest are censored. Comments are basically made for the convenience of a programmer and i feel like what i comment on my code can be easily understood by any typical karachite and believe me its fun to read my code :p .</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/131/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=131&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2008/11/20/eh-and-comments/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>Some Ground Realities.</title>
		<link>http://azimyasin.wordpress.com/2008/11/09/some-ground-realities/</link>
		<comments>http://azimyasin.wordpress.com/2008/11/09/some-ground-realities/#comments</comments>
		<pubDate>Sun, 09 Nov 2008 12:30:58 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Life..!]]></category>
		<category><![CDATA[gang war]]></category>
		<category><![CDATA[jango group]]></category>
		<category><![CDATA[karachi]]></category>
		<category><![CDATA[karachi gang war]]></category>
		<category><![CDATA[Lyari]]></category>
		<category><![CDATA[rehman dakait]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=127</guid>
		<description><![CDATA[It&#8217;s being long since i posted some worth reading stuff and i still don&#8217;t know if this post would be worth reading or not.. anyways quite loads of things happening and that too very fast. Politically i am a very moderate personality i don&#8217;t like Paki Politics it sucks ! We aren&#8217;t democratic in any [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=127&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s being long since i posted some worth reading stuff and i still don&#8217;t know if this post would be worth reading or not.. anyways quite loads of things happening and that too very fast. Politically i am a very moderate personality i don&#8217;t like Paki Politics it sucks ! We aren&#8217;t  democratic in any sense. Couple of weeks back our house was robbed we weren&#8217;t in the house and some one intruded while i went out to get police if found an SHO of God knows what area on my way i told him the story of us being robbed and he was like &#8220;Why do you have to leave your house locked up don&#8217;t you know how dangerous it&#8217;s to leave the house locked up now a days&#8221; . I was amused by his reply ! Inside i felt like i should tell him &#8220;TO FUCK OFF!&#8221; though the circumstances didn&#8217;t allowed me to we got back home they investigated my home fortunately SHO Of my locality came in as well a young guy with a dashing personality he was an totally different form that Jackass a person who you can talk with very helpful guy and he helped me up with every thing he could. Though this post is not about Police being jerk or helpful its about the Peace of Karachi getting worst and worst i just came to know that one of my relative was gun shot for not giving the &#8220;bhatta&#8221; a new tradition of &#8220;parchi&#8221; is on the boom if  you go to the area&#8217;s in Karachi south i.e. ( Tower,Kharadar,Nayabad,Moosalane,Lee-market,Lyari and other areas that comes in Karachi South. ) I happen to have a chat with my relative he told me the story of the &#8220;Parchi&#8221; A guy would come up at your shop a baloch mostly and would hand you out an envelope with an amount written on it and on the same day you will get a call on how to deliver that amount if you manage to say no get ready for the first episode .. that would be a firing at your workplace/shop and if you happen to face the first episode you will get a call on the same day weather u still want to resist or not and mostly u will not but if u manage to resist still your family would happen to get your dead body quite soon they happen to know each and every thing about you there are three man groups active in there Jango,Rehman Dakait , Arshad Pappu . Rehman and Arshad Control there every day works from with in the jail how ever Jango is being ruled by some unknown sources.</p>
<p>There is being a recent loot in Iqbal Market robbing 40 Shops at a single time by one of the group the people of these localities are no more secure in any way i would say musharaf period was way too good because there&#8217;s being rumors that Rehman is one of the great follower/Supporter of bhutoo. Government should take some bold step to wipe these terrorists out of the country rather then going for international terrorism Pakistan itself is being very unfair with these people ? You people might say why the fuck did you said that ? Well they people were the first to come here Karachi was the place of &#8220;Machaira&#8217;s&#8221;  and before any one here they were here and they are still there being &#8220;Machairas&#8221; Every one except them got flourish in karachi government should gave them opportunities and make them stand out in a suitable place as to wipe off these issues. anyways.. that&#8217;s my opinion what do you guys think ? <img src='http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>Some vidz i came across.</p>
<p style="text-align:center;"><span style="text-align:center; display: block;"><a href="http://azimyasin.wordpress.com/2008/11/09/some-ground-realities/"><img src="http://img.youtube.com/vi/V1PUWnak7HY/2.jpg" alt="" /></a></span></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/127/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/127/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/127/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/127/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/127/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/127/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/127/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/127/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=127&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2008/11/09/some-ground-realities/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
		<item>
		<title>This is place is not dead yet!</title>
		<link>http://azimyasin.wordpress.com/2008/10/30/this-place-is-not-dead/</link>
		<comments>http://azimyasin.wordpress.com/2008/10/30/this-place-is-not-dead/#comments</comments>
		<pubDate>Thu, 30 Oct 2008 16:11:27 +0000</pubDate>
		<dc:creator>azimyasin</dc:creator>
				<category><![CDATA[Life..!]]></category>

		<guid isPermaLink="false">http://azimyasin.wordpress.com/?p=125</guid>
		<description><![CDATA[Its being long since i blogged about any thing there&#8217;s being quite alot happening around me ! My house got robbed :/ !! trying to tackle out hell loads of stuff at home! Got my degree in hands yay! finally no more clearance and all.. Coding at it max..i would be writing an article about [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=125&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Its being long since i blogged about any thing there&#8217;s being quite alot happening around me ! My house got robbed :/ !! trying to tackle out hell loads of stuff at home! Got my degree in hands yay! finally no more clearance and all.. Coding at it max..i would be writing an article about how to invade an acadmic server lol!! when i get time got so much ppl requesting it :p buwahahah any ways ! guys pray for my mom she aint feelin well now a days !</p>
<p>peace.</p>
<p>Azeem.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/azimyasin.wordpress.com/125/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/azimyasin.wordpress.com/125/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/azimyasin.wordpress.com/125/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/azimyasin.wordpress.com/125/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/azimyasin.wordpress.com/125/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/azimyasin.wordpress.com/125/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/azimyasin.wordpress.com/125/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/azimyasin.wordpress.com/125/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=azimyasin.wordpress.com&amp;blog=906513&amp;post=125&amp;subd=azimyasin&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://azimyasin.wordpress.com/2008/10/30/this-place-is-not-dead/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6b18085b9a37da4ee1123eca0853be57?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">azimyasin</media:title>
		</media:content>
	</item>
	</channel>
</rss>
