Archive

Archive for September, 2010

505684-001 – $1795ea – QTY 10 Available

September 30th, 2010 No comments

HP Renew (Factory Sealed/Refurbished/FULL HP Warranty)

HP DL320 G6 E5530 2.4GHz 6GB 4LFF SATA/SAS P410/256mb RPS

Categories: HP Deals Tags: , ,

Veeam Wins Best of Show – Sets New Record with 4 Awards

September 17th, 2010 No comments

Congratulations to the Veeam Team for winning 4 awards at VMworld 2010 – the first company ever to do so! Read about our award winning entries and find out what makes these Veeam products so special!

For more information about Veeam Backup and Replication or other Veeam Virtualization solutions click here.

HP Refurbished Server Options – Memory and Hard Drives – Cheap!

September 17th, 2010 No comments

Incoming HP Proliant Renew Options
(HP Factory Sealed/HP Refurbished/FULL HP Warranty)

497767-b21  – $260ea  
HP 8GB (2×4GB)PC2-6400 800MHz DDR2 Registered ECC   

454146-b21   - $255ea
HP 1TB 7.2K rpm Hot Plug 3.5″ SATA Midline Hard Drive       

507632-B21    – $495ea
HP 2TB 3G SATA 7.2K RPM LFF (3.5-INCH) MIDLINE 1YR   

500658-b21    – $179ea
HP 4GB PC3-10600 DDR3 1333MHz 240-Pin REGISTERED DIMM  

507125-b21    – $225ea
HP 146GB 10K 600MBps 2.5″ SAS SFF Dual-Port Hard Drive           

504062-b21    -$299ea
HP 146GB 3G 15K 2.5″ SFF /SAS Hard Drive                               

397415-b21   - $345ea
HP 8GB(2×4GB) PC2-5300 FB-DIMM 240-pin DDR2 667MHz ECC   

Links for more Refurbished HP Inventory
refurbished hp computersrefurbished hp servers, refurbished hp server, refurbished hp laptop, refurbished hp notebook, refurbished hp towers, refurbished hp desktop, refurbished hp workstations, refurbished hp notebooks, refurbished hp switches, refurbished hp storage

Manual crawling with HTTP Sniffer Tool

September 15th, 2010 No comments

It is possible to manually crawl your website using a web browser. From these manually crawled links, then it is possible to build a website structure which the final scan will target.  This is useful when in some rare cases, certain web applications cannot be automatically crawled due to some strange coding ambiguities. The following procedure offers a reliable workaround.

1. Configure the web browser

Configure your web browser of choice to proxy all the traffic through the Acunetix WVS HTTP Sniffer tool, as shown in the above screen shot.  Presuming that the web browser is running on the same machine where Acunetix Web Vulnerability Scanner is installed, set the proxy server IP to 127.0.0.1 and the proxy server port to 8080.

2. Start the HTTP Sniffer and start browsing the website using the configured web browser.

HTTP Sniffer captured traffic

3. Once ready, stop the HTTP sniffer. Save captured data by selecting ‘Save Logs’ from the Actions drop down menu.

4. Import Logs to Crawler

In the Site Crawler node, click the ‘Build Structure from HTTP Sniffer log’ button (highlighted in the above screen shot) to import the captured data into the Site Crawler.

5. Save the crawler import results by selecting ‘Save Results’ from the Actions drop down menu.

6. Launch the Scan

Click on the New Scan button to launch the scan wizard.  In the first step of the Scan Wizard select the option ‘Scan using saved crawling results’ as highlighted in the above screen shot.  Proceed with completing the scan wizard to launch the automated scan against the manually browsed website.

Note: Only the links you’ve manually crawled will be automatically scanned.  Other pages in the website, even those linked from manually crawled pages will not be crawled or scanned.

September 15th, 2010 No comments

Creating custom vulnerability checks for Acunetix WVS Version 7

Submitted by Robert Abela on August 10, 2010 – 9:11 pm2 Comments

Vulnerability checks in Acunetix Web Vulnerability Scanner version 7 consists of two files;

  • *.script – The actual vulnerability check written in JavaScript.  Such scripts are stored in the ‘\Data\Scripts\’ sub directory in the Acunetix WVS installation directory.
  • *.xml – This file contains all the documentation related to the vulnerability description, such as vulnerability details, remediation, severity level and other details.  These XML files use VulnXML format and are stored in the ‘\Data\Scripts\XML’ sub directory in the Acunetix WVS installation directory.

 

Creating a new vulnerability check

1. Writing the Vulnerability check script

To write a new vulnerability check script, you can use any text editor of your choice, or else WVS Scripting tool which is available for free.

The tool and detailed Acunetix WVS scripting reference can be downloaded from the following URL; http://www.acunetix.com/download/tools/Acunetix_SDK.zip.  We recommend you use our tool since it is specifically designed to assist you in writing Acunetix WVS Vulnerability Checks.  It also includes a number of functions to help you test your scripts.

2. Writing the vulnerability XML file (VulnXML format)

To create a new XML file using VulnXML format, use Acunetix WVS Vulnerability Editor which is available from the Acunetix Web Vulnerability Scanner Program Group.

Follow the below procedure to create a new VulnXML file for a custom vulnerability check;

  1. Right Click the VulnXML node and select ‘Add Vulnerability’.
  2. Specify the VulnXML filename and also specify if you want to use the default template.
  3. Specify all the required details to populate the VulnXML vulnerability file.  For a detailed description of all fields available refer to the following list;
    1. Name -The name of the vulnerability (e.g., could be the same as the name given to the VulnXML file.)
    2. Version – Test Version number
    3. Released – Date when Test/Vulnerability was created (yyyy/mm/dd)
    4. Updated - Date of last time this Vulnerability was updated (yyyy/mm/dd)
    5. Severity - Defines the vulnerability level e.g. high severity indicates that if this test generates failures, the target being scanned has a severe vulnerability
    6. Alert – Defines if the alert is to be triggered on success or failure of the test
    7. Type – Select the type of vulnerability from the drop down menu, e.g. parameter manipulation, canonicalization etc
    8. Affects - Defines which components of the target is affected by such vulnerability, e.g. server, directory etc
    9. Description – This field should contain a description of the vulnerability
    10. Impact – This field should contain information on the impact generated if such vulnerability is exploited
    11. Recommendation – This field should contain a number of recommendations to help the developer eliminate the reported vulnerability
    12. Detailed Information – This field should contain a detailed technical description of the reported vulnerability
    13. Tags – tags related to the vulnerability.

In the ‘References’ tab you can specify links to additional information about the vulnerability (e.g., cause and related fix).  You can add additional references by right clicking and selecting ‘Add reference’.

  1. Database - Specify the Link heading/title of the article/information
  2. URL – Contains the URL.

Modifying Vulnerability check

Note: The built-in vulnerability checks cannot be modified.  Onlly their VulnXML files (vulnerability details) can be modified.

Modifying a custom vulnerability check

To modify a custom vulnerability check, open the script in the WVS Scripting tool and proceed with the desired changed.  The WVS Scripting tool and detailed scripting reference are available from; http://www.acunetix.com/download/tools/Acunetix_SDK.zip.

Modifying the vulnerability VulnXML file

To modify an existing vulnerability check, open Acunetix Vulnerability Editor and select the script to edit from the VulnXML node.  Click on the section which you would like to edit and proceed with the text changes.  Once ready click on the ‘Save’ icon (first icon) in the top left corner or the Vulnerability Editor.

HP Notebook Closeouts – 8530p, 6930p, 2730p, 8730p, 8530w, 5310m

September 13th, 2010 No comments

HP OVERSTOCK DEAL!  Everything is new/factory sealed

MFG P/N Description List Price Approved Pricing
AS726US#ABA 8530p $2,191 $1,394
SG437UP#ABA 6930p $1,712 $1,189
AT786US#ABA 2730p $2,498 $1,399
WZ284UA#ABA 6930p $1,923 $1,389
WZ285UA#ABA 6930p $1,953 $1,389
WZ286UA#ABA 6930p $1,983 $1,389
AZ058US#ABA 6930p $1,828 $1,299
AR218US#ABA 8730w $2,877 $1,379
AS770US#ABA 8530p $2,010 $1,259
AV652US#ABA 8530w $2,907 $1,529
FM997UT#ABA 5310m $899 $789
FN007UT#ABA 4310s $999 $969
FM996UT#ABA 5310m $699 $629
FM998UT#ABA 5310m $999 $799
FN098UT#ABA 5102 $399 $399
FN011UT#ABA 4415s $625 $589
FN012UT#ABA 4415s $699 $629
FN092UT#ABA 8440w $1,425 $1099

New Inventory of HP Elitebook 8540w! – SUPER DEALS! – Save up to 40%!!!

September 9th, 2010 No comments

HP Elitebook 8540w

Just arrived – Factory Sealed/Refurbished/1 year HP Warranty – Save up to 40%!!!

Part Number Description Price
536370R-999-CYHF HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 16GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $2,449
Buy Now
536370R-999-CYJ6 HP 8540w W7P-64 i7 820QM 1.73GHz 300GB 16GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $2,399
Buy Now
536370R-999-CZ96 HP 8540w W7P-64 i7 820QM 1.73GHz 300GB 16GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $2,399
Buy Now
BS317US#ABA HP 8540w W7P-64 i7 720QM 1.6GHz 320GB 16GB DVDRW(LS) 15.6FHD(1920×1080) WLAN BT 1GB Cam Rmkt NB PC $2,199
Buy Now
536370R-999-CYJD HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 8GB BluRay-DVDRW 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $2,099
Buy Now
536370R-999-CYHR HP 8540w W7P-64 i7 820QM 1.73GHz 160GB 8GB DVDRW(LS) 15.6HD+(1600×900) WLAN ATI M5800 1GB Rmkt NB PC $2,049
Buy Now
536370R-999-CZ8S HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 8GB DVDRW(LS) 15.6HD+(1600×900) FX 880M 1GB Cam Rmkt NB PC $2,049
Buy Now
536370R-999-CYHX HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 8GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1800M 1GB Cam Rmkt NB PC $2,049
Buy Now
536370R-999-CYT8 HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 8GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $2,049
Buy Now
536370R-999-CYH1 HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 8GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX 1800M 1GB Rmkt NB PC $2,049
Buy Now
BW278US#ABA HP 8540w W7P-64 i7 720QM 1.6GHz 160GB SSD 8GB DVDRW(LS) 15.6FHD(1920×1080) WLAN BT 1GB Rmkt NB PC $1,999
Buy Now
536370R-999-CYHS HP 8540w W7P-64 i7 820QM 1.73GHz 250GB 8GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,949
Buy Now
536370R-999-CYJ2 HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 4GB BluRay-DVDRW 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,899
Buy Now
536370R-999-CZN7 HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,899
Buy Now
BR120US#ABA HP 8540w W7P-64 i7 720QM 1.6GHz 320GB SATA 8GB DVDRW(LS) 15.6FHD(1920×1080) WLAN BT 1GB Cam Rmkt NB $1,799
Buy Now
536370R-999-CYHT HP 8540w W7P-64 i7 820QM 1.73GHz 300GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,799
Buy Now
536370R-999-CYHL HP 8540w W7P-64 i7 820QM 1.73GHz 160GB 2GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,749
Buy Now
536370R-999-CZ6F HP 8540w W7P-64 i7 820QM 1.73GHz 500GB 2GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,749
Buy Now
536370R-999-CYHM HP 8540w W7P-64 i7 820QM 1.73GHz 250GB 2GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,549
Buy Now
WH137AW#ABA HP 8540w W7P-64 i7 620M 2.66GHz 320GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN BT 1GB Cam Rmkt NB PC $1,379
Buy Now
536369R-999-CYG6 HP 8540w W7P-64 i7 620M 2.66GHz 300GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX 880M 1GB Rmkt NB PC $1,279
Buy Now
536369R-999-CYG2 HP 8540w W7P-64 i7 620M 2.66GHz 300GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX880M 1GB Cam Rmkt NB PC $1,279
Buy Now
FN095UT#ABA HP 8540w XP7 i7 620M 2.66GHz 320GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN NVIDIA 1GB Cam Rmkt NB PC $1,279
Buy Now
536369R-999-CZ7X HP 8540w W7P-64 i5 540M 2.53GHz 250GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX880M 1GB Cam Rmkt NB PC $1,249
Buy Now
536369R-999-CYST HP 8540w W7P-64 i7 620M 2.66GHz 250GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX880M 1GB Cam Rmkt NB PC $1,249
Buy Now
536369R-999-CYSG HP 8540w W7P-64 i5 540M 2.53GHz 250GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX 880M 1GB Rmkt NB PC $1,229
Buy Now
536369R-999-CYFY HP 8540w W7P-64 i7 620M 2.66GHz 250GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN FX 880M 1GB Rmkt NB PC $1,229
Buy Now
BS516US#ABA HP 8540w XP7 i7 620M 2.66GHz 250GB SATA 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Rmkt NB PC $1,229
Buy Now
536369R-999-CZ7S HP 8540w W7P-64 i7 620M 2.66GHz 160GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN M5800 1GB Cam Rmkt NB PC $1,209
Buy Now
536369R-999-CYFR HP 8540w W7P-64 i5 540M 2.53GHz 160GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,179
Buy Now
536369R-999-CYFS HP 8540w W7P-64 i5 520M 2.4GHz 250GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN 1GB Cam Rmkt NB PC $1,129
Buy Now
FN094UT#ABA HP 8540w XP7 i5 520M 2.4GHz 320GB 2GB DVDRW(LS) 15.6HD+(1600×900) WLAN BT NVIDIA 1GB Cam Rmkt NB PC $1,129
Buy Now
FN095UT#ABA-S HP 8540w XP7 i7 620M 2.66GHz 320GB 4GB DVDRW(LS) 15.6HD+(1600×900) WLAN NVIDIA 1GB Cam Rmkt NB PC $1,129
Buy Now
FN094UA#ABA HP 8540w XP7 i5 520M 2.4GHz 320GB 2GB DVDRW(LS) 15.6HD+(1600×900) WLAN BT NVIDIA 1GB Cam Rmkt NB PC $1,079
Buy Now


Buy Now
or call 888-891-8885 option 2

Factory Sealed/Refurbished/FULL HP WARRANTY!

Alliance Technology Partners is a leading reseller of HP Factory Refurbished products including Refurbished Proliant Servers, Refurbished Procurve Networking Products, Refurbished HP Notebooks, Refurbished HP Computers, Refurbished HP Workstations, and more!

Categories: HP Deals Tags:

Security vulnerabilities in Pligg CMS version 1.0.4

September 3rd, 2010 No comments

Submitted by Bogdan Calin on September 3, 2010 – 8:09 pm

While beta testing the latest version of Acunetix WVS v7, we found a large number of security vulnerabilities in various web applications. In the following days we will publish some of these vulnerabilities.  Note that we will not publish vulnerabilities found in applications that are not commonly used or in beta stage.

One of the tested web applications is Pligg;

Pligg is an open source CMS (Content Management System) that you can download and use for free. Pligg CMS provides social publishing software that encourages visitors to register on your website so that they can submit content and connect with other users.

The following web vulnerabilities were found in Pligg CMS Version 1.0.4;

  1. SQL injection in “/pliggcms_1_0_4/login.php“, parameter “email“.
  2. Cross-site Scripting vulnerability in “/pliggcms_1_0_4/user.php“, parameter “category“.

Technical details about each web vulnerability are below;

1. SQL injection in “/pliggcms_1_0_4/login.php“, parameter “email“.

Source file: /var/www/pliggcms_1_0_4/libs/db.php line: 222

Additional details:

SQL query:

1 SELECT * FROM `pligg_users` where `user_email` = '1ACUSTART'"*/rn     ACUEND' AND user_level!='Spammer'

“mysql_query” was called.

Stack trace:

1 1. ezSQL_mysql::query([string] "SELECT * FROM `pligg_users` where `user_email` = '1ACUSTART'"*/rn     ACUEND' AND user_level!='Spammer'")
2 2. ezSQLcore::get_row([string] "SELECT * FROM `pligg_users` where `user_email` = '1ACUSTART'"*/rn     ACUEND' AND user_level!='Spammer'")

Sample HTTP Request:

01 POST /pliggcms_1_0_4/login.php HTTP/1.1
02 Acunetix-Aspect-Password: 082119f75623eb7abd7bf357698ff66c
03 Acunetix-Aspect: enabled
04 Content-Length: 68
05 Content-Type: application/x-www-form-urlencoded
06 Cookie: PHPSESSID=4c7d8e111f3ec5e90e664e26f365cc04; mnm_user=tmp; mnm_key=dG1wOjIyZkpqa1BveUhCVFE6NWY1YTg5NTJkYzUzODI4NGYwOTA0Y2Q0NTUzNzk5NDE%3D; template=wistie
07 Host: webapps7:80
08 Connection: Keep-alive
09 Accept-Encoding: gzip,deflate
10 User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; .NET CLR 1.1.4322)
11   
12 email=sql'injection&processlogin=3&return=%2fpliggcms_1_0_4%2f

acunetix wvs sql injection pligg cms

sql injection pligg

2. Cross-site Scripting vulnerability in “/pliggcms_1_0_4/user.php”, parameter “category”.

Attack details

URL encoded GET input categorywas set to ” onmouseover=prompt(938687) bad=”
The input is reflected inside a tag element between double quotes.
The input is reflected inside a tag element between single quotes.

Sample HTTP Request:

01 POST /pliggcms_1_0_4/user.php?category=%22%20onmouseover%3dprompt%28938687%29%20bad%3d%22&id=&keyword=Search..&login=&module=&page=&search=&view=search HTTP/1.1
02 Content-Length: 9
03 Content-Type: application/x-www-form-urlencoded
04 Cookie: PHPSESSID=4c7d8e111f3ec5e90e664e26f365cc04; mnm_user=tmp; mnm_key=dG1wOjIyZkpqa1BveUhCVFE6NWY1YTg5NTJkYzUzODI4NGYwOTA0Y2Q0NTUzNzk5NDE%3D; template=wistie
05 Host: webapps7:80
06 Connection: Keep-alive
07 Accept-Encoding: gzip,deflate
08 User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; .NET CLR 1.1.4322)
09   
10 username=

xss pligg

These vulnerabilities were reported to the Pligg team on 22/7/2010 via the contact form from their website and they were fixed in latest version of Pligg.  If you are using Pligg, download the latest version from their website.

Acunetix 7 makes web application security checking easier and more cost effective

September 3rd, 2010 No comments

New scanning engine with improved vulnerability detection AND verification makes finding and fixing security issues in web applications easier.

September 1, 2010 – Acunetix, a market leader in web application security scanning technology, today announced version 7 of its popular Web Vulnerability Scanner. With the new human like vulnerability verifying techniques, revolutionary scanning engine and support for a wider variety of web applications, Acunetix re-establishes its technology lead in web application security. Acunetix WVS Version 7 also features improved performance, less false positives and detection of a wide range of new web vulnerability types.

“With Acunetix WVS v7 we focused on finding more vulnerabilities, reducing false positives, and on improving scanner performance,” said Robert Abela, Acunetix Technical Manager. “As a result, Acunetix 7 is now 300% faster, can reduce false positives up to 50% and detects new vulnerabilities such as stored directory traversal. This helps businesses reduce the time and resources needed to secure their web applications significantly.”

Unique vulnerability verifying technique reduces false positives
Acunetix v7 includes new advanced vulnerability verifying techniques which result in much less false positives, and thus saves time of security administrators trying to reproduce such situations. Such accuracy is achieved by sending a number of test inputs to the web application, and depending on the response, Acunetix v7 will automatically determine which web vulnerability checks to launch against the web application.

New faster scanning engine reduces time to scan a website by up to 300%
Acunetix Web Vulnerability Scanner Version 7 includes a new fast multi-threaded scanner that can scan on more threads at a time and more efficiently. Scans that could take hours to complete now can be done in minutes, depending on website structure and web applications.

Acunetix 7 reduces time needed to fix security vulnerabilities

When a web security threat is discovered, Acunetix WVS Version 7 presents the developers with a more precise and understandable technical and vulnerability remediation information, to help them fix the issue in a much shorter time. To improve understanding, different variants of the vulnerability are gathered in one detailed vulnerability report. Acunetix v7 can also re-check a fix for a particular vulnerability, without having to rescan the entire website.

Detect more web vulnerabilities

Thanks to the new revolutionary scanning engine and website crawler, Version 7 is able to find much more vulnerabilities than ever before. The new site crawler’s in-depth analysis of the website presentation layer discovers more website parameters and inputs. Acunetix 7 is therefore capable of finding many more vulnerabilities in a larger variety of different web applications.

Scan a wider range of web applications
Acunetix v7 is also able to crawl and scan a wider variety of web technologies. Support for Web 2.0 applications has been improved, and also session handling. All of the advanced penetration testing tools have been rewritten to support Web 2.0 requests, such as JSON, XML and more.

HTTP authentication
Acunetix WVS v7 now supports more than a single pair of HTTP credentials for the same host. Thanks to the new HTTP authentication settings node, one can pre-define credentials per host, directory and even file.

Easily create your own vulnerability checks

Acunetix v7 now has improved support for creating custom vulnerability checks. Vulnerability checks are written in JavaScript, the most popular scripting language with web developers, and can thus be easily adjusted or extended. A scripting tool and SDK are also available to assist developers in writing custom web vulnerability and security checks.

Lower cost subscription licenses

Subscription based licenses now also include the maintenance agreement and are thus significantly cheaper. In addition free support and free version upgrades are included.

Other Features

■New graphical scan status interface shows more information about a web scan in progress
■Avoid the lengthy process of manually analyzing the code by specifying the label or tag instead of actual parameter name
■Verify that AcuSensor Technology is correctly installed with a simple click of a button
■During a scan, less bandwidth is consumed and less stress is put on the server thanks to improved network traffic handling
■A number of new network security checks have been added and other ones improved.

Acunetix WVS Trial Edition
Download Acunetix Web Vulnerability Scanner v7 trial edition from here