<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:yt="http://gdata.youtube.com/schemas/2007" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" version="2.0">
   <channel>
      <title>Remove reviews</title>
      <description>Pipes Output</description>
      <link>http://pipes.yahoo.com/pipes/pipe.info?_id=duu98WR83hGPulUQ_vrsUA</link>
      <pubDate>Tue, 29 Dec 2009 19:29:15 -0800</pubDate>
      <generator>http://pipes.yahoo.com/cdman/hypefreereviewsfiltered/</generator>
      <atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/Hype-free" /><creativeCommons:license>http://creativecommons.org/licenses/by/2.0/</creativeCommons:license><feedburner:emailServiceId xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">Hype-free</feedburner:emailServiceId><feedburner:feedburnerHostname xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">http://feedburner.google.com</feedburner:feedburnerHostname><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
         <title>How to save/restore iptables rules on Ubuntu?</title>
         <link>http://hype-free.blogspot.com/2009/12/how-to-saverestore-iptables-rules-on.html</link>
         <description>&lt;p&gt;This might be an obvious thing to old Linux-heads out there, but it sure caught me off-guard, so there might be some use in spelling it out:&lt;/p&gt; &lt;p&gt;&lt;strong&gt;&lt;code&gt;iptables-save&lt;/code&gt; and &lt;code&gt;iptables-restore&lt;/code&gt; do not actually save/load the iptables rules to/from an external file. You are responsible for redirecting the output of &lt;code&gt;iptables-save&lt;/code&gt; to a file and modifying the interface-up scripts such that it is loaded before the given interface comes up.&lt;/strong&gt;&lt;/p&gt; &lt;p&gt;The &lt;a rel="nofollow" target="_blank" href="https://help.ubuntu.com/community/IptablesHowTo#Saving%20iptables"&gt;Ubuntu documentation tells you how&lt;/a&gt; (although, it also was the source of my confusion) - the following commands should be executed as root, so don't forget to &lt;code&gt;sudo su&lt;/code&gt; first:&lt;/p&gt; &lt;ol&gt;
&lt;li&gt;Save your rules in a file: &lt;code&gt;iptables-save &amp;gt;/etc/iptables.rules&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;Edit your interfaces file (substitute your own favorite editor here): &lt;code&gt;nano /etc/network/interfaces&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;Add a pre-up command to restore the saved rule. The fully configured file should look similar to this (the bold line is the one added):
&lt;pre&gt;
auto eth0
iface eth0 inet dhcp &lt;strong&gt;pre-up iptables-restore &amp;lt; /etc/iptables.rules&lt;/strong&gt;
&lt;/pre&gt;&lt;/li&gt;
&lt;/ol&gt; &lt;p&gt;HTH. And remember - security is a process / mindset, not a state. Always test the configuration changes you've done, don't just assume that everything went ok because you didn't receive error messages.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-2467742755139440419?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=iXrAcCW7eJ0:4FGVZ-6ZGHI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=iXrAcCW7eJ0:4FGVZ-6ZGHI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=iXrAcCW7eJ0:4FGVZ-6ZGHI:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=iXrAcCW7eJ0:4FGVZ-6ZGHI:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=iXrAcCW7eJ0:4FGVZ-6ZGHI:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-2467742755139440419</guid>
         <pubDate>Mon, 28 Dec 2009 05:01:00 -0800</pubDate>
      </item>
      <item>
         <title>How eco-friendly is a BMW?</title>
         <link>http://hype-free.blogspot.com/2009/12/how-eco-friendly-is-bmw.html</link>
         <description>&lt;div style="float:right;margin:5px;"&gt;&lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/maazbot/218926578/" title="I WANT A BMW ISETTA! by maazbot, on Flickr"&gt;&lt;img src="http://farm1.static.flickr.com/77/218926578_b24658ed93.jpg" width="250" height="250" alt="I WANT A BMW ISETTA!"/&gt;&lt;/a&gt;&lt;/div&gt;&lt;p&gt;The short answer is: I don't know :-)&lt;/p&gt; &lt;p&gt;While I was watching National Geographic, I caught a glimpse of the BMW "Efficient Dynamic" advertisement campaign. The claims made by this campaign were quite extraordinary and - being the cynic that I am - I thought: hang on, this sounds too good to be true. The claims as I recall were:&lt;/p&gt; &lt;ul&gt;
&lt;li&gt;BMW reduced fuel consumption by 16%&lt;/li&gt;
&lt;li&gt;This reduction is more than twice the reduction achieved by the next premium segment competitor&lt;/li&gt;
&lt;li&gt;This reduction is more than twice the average reduction obtained by the industry&lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;Being an aspiring skeptic I decided to look into these claims, but being the lazy ass that I am, quickly gave up after making a mental list of what would be involved (finding out what they mean by "premium segment" and who their competitor were, finding a reliable source of data, etc). So, instead, I turned to math to see if all these claims can be true at once. So, in math-talk we have the following data:&lt;/p&gt; &lt;ul&gt;
&lt;li&gt;BMW = 16&lt;/li&gt;
&lt;li&gt;Lets suppose that we have three competitors A, B and C with A being the closes to BMW&lt;/li&gt;
&lt;li&gt;A, B and C are in the interval [0, 100]&lt;/li&gt;
&lt;li&gt;BMW &amp;gt;= 2*A&lt;/li&gt;
&lt;li&gt;BMW &amp;gt;= 2 * AVG(BMW, A, B, C)&lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;Then I turned to the &lt;a rel="nofollow" target="_blank" href="http://wiki.services.openoffice.org/wiki/Documentation/OOo3_User_Guides/Calc_Guide/Solver"&gt;OpenOffice Solver&lt;/a&gt; which promptly came up with an answer: A=8, B=0, C=0. Starting from this I came up with a more plausible-looking solution: A=7, B=5, C=5.&lt;/p&gt; &lt;p&gt;What does this mean? That - mathematically speaking - the claims made might be true. As always - trust, but verify. These simple mathematical tools are available to everyone and can be used to unmask the more extreme false claims (of course, just because a claim is mathematically possible, it doesn't make it necessarily true). Go search for information. You should find it - since it wants to be free!&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/maazbot/"&gt;maazbot's photostream&lt;/a&gt; with permission.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-5956115348622623011?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=AM71fsSpitk:AR4CNimbYrs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=AM71fsSpitk:AR4CNimbYrs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=AM71fsSpitk:AR4CNimbYrs:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=AM71fsSpitk:AR4CNimbYrs:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=AM71fsSpitk:AR4CNimbYrs:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-5956115348622623011</guid>
         <pubDate>Sat, 26 Dec 2009 14:06:00 -0800</pubDate>
      </item>
      <item>
         <title>Recouping your data from a hung program</title>
         <link>http://hype-free.blogspot.com/2009/12/recouping-your-data-from-hung-program.html</link>
         <description>&lt;p&gt;Scenario: you are typing away in your blog editor on Ubuntu doing a (somewhat) Flash-heavy post. You make the mistake of hitting "Preview" and the blogging software hangs. How can you get your post out?&lt;/p&gt; &lt;ol&gt;
&lt;li&gt;Find the PID of your blogging software&lt;/li&gt;
&lt;li&gt;Coredump it (&lt;code&gt;gcore [PID]&lt;/code&gt; - this will create a file called &lt;code&gt;core.[PID]&lt;/code&gt; in the current directory) - sidenote: interestingly, coredumping doesn't actually kill the application - this makes me wonder about thread safety... What guarantees does gcore make about the consistency of the dumped state? Probably none... This isn't important in this case, since the program is hung for good.&lt;/li&gt;
&lt;li&gt;Use a hex editor (&lt;a rel="nofollow" target="_blank" href="http://live.gnome.org/Ghex"&gt;GHex&lt;/a&gt; for example) and search for a part of the blogpost. You will probably find it multiple times, but you can easily identify one occurrence which has a complete copy.&lt;/li&gt;
&lt;li&gt;Copy the blogpost from the hexeditor&lt;/li&gt;
&lt;li&gt;Profit!&lt;/li&gt;
&lt;/ol&gt; &lt;p&gt;Hope this saves somebody from retyping their text!&lt;/p&gt; &lt;p&gt;PS. This can be applied to other programs too where the storage format is "human readable" (like text editors - as opposed to spreadsheet editors). An other trick you might try is to search for the string as Unicode (since more international-aware programs might store it as that). While GHex doesn't support this directly, you can manually insert the 00 bytes between the Latin characters. An other option would be to run strings on the coredump file with different &lt;code&gt;--encoding&lt;/code&gt; options.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-4703759463499359098?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=_VHm2m4-DU4:q7MLnkI-4yw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=_VHm2m4-DU4:q7MLnkI-4yw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=_VHm2m4-DU4:q7MLnkI-4yw:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=_VHm2m4-DU4:q7MLnkI-4yw:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=_VHm2m4-DU4:q7MLnkI-4yw:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-4703759463499359098</guid>
         <pubDate>Sat, 26 Dec 2009 13:15:00 -0800</pubDate>
      </item>
      <item>
         <title>Congratulation to AV-Comparatives!</title>
         <link>http://hype-free.blogspot.com/2009/12/congratulation-to-av-comparatives.html</link>
         <description>&lt;p&gt;AV-Comparatives is an independent, well-known and well respected testing organization in the AV/Anti-Malware field. They recently published two reports and one meta-report:&lt;/p&gt; &lt;ul&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://www.av-comparatives.org/comparativesreviews/dynamic-tests"&gt;Whole Product Dynamic Test&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://www.av-comparatives.org/comparativesreviews/performance-tests"&gt;Performance Test&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://www.av-comparatives.org/comparativesreviews/main-tests/summary-reports"&gt;Summary Reports &lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;Go read them if you have questions like "which product is the best for me?". Thank you Andreas for providing a great and impartial service.&lt;/p&gt; &lt;p&gt;PS. One surprising thing for me was the high detection rates in the dynamic test - upward of 90%. This indicates that either I'm too much of a cynic or that their crawler system still has room to improve - I would expect AV products to be around 60-70% effective against new threats.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-3286852489247178829?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uS_besdS9Ig:QX_51SVJgVg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uS_besdS9Ig:QX_51SVJgVg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uS_besdS9Ig:QX_51SVJgVg:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=uS_besdS9Ig:QX_51SVJgVg:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uS_besdS9Ig:QX_51SVJgVg:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-3286852489247178829</guid>
         <pubDate>Fri, 25 Dec 2009 12:06:00 -0800</pubDate>
      </item>
      <item>
         <title>Don't listen alone!</title>
         <link>http://hype-free.blogspot.com/2009/12/don-listen-alone.html</link>
         <description>&lt;p&gt;Do you like Linux? Do you listen to podcasts? If you've answered yes to both of those questions, you should know what LUG Radio is (if not, do &lt;a rel="nofollow" target="_blank" href="http://www.lugradio.org/"&gt;a quick checking&lt;/a&gt; - I promise you that it will be worth it!).&lt;/p&gt; &lt;p&gt;The bad news? They stopped it in 2008. The good news? A documentary titled "Don't listen alone!" - a great title if I may say so - about it just came out! So watch it below (sorry for splitting it up into 10 minute segments, but YouTube limits you to this):&lt;/p&gt; &lt;center&gt;&lt;iframe class="embeddedvideo" src="http://www.youtube.com/p/F4B2E3619B9D2E49&amp;amp;hl=en_US&amp;amp;fs=1" type="application/x-shockwave-flash" width="480" height="385"&gt;&lt;/iframe&gt;&lt;/center&gt; &lt;p&gt;Or go over to Jono's site &lt;a rel="nofollow" target="_blank" href="http://www.jonobacon.org/2009/11/04/dont-listen-alone-the-lugradio-documentary-now-available-online/"&gt;and watch it from blip.tv&lt;/a&gt; (my problem with blip.tv is that their delivery method seems to be much less bandwidth friendly - I've got constant "buffering" even on connections where YouTube HQ clips play fine) or &lt;a rel="nofollow" target="_blank" href="http://www.archive.org/details/Dont_Listen_Alone"&gt;download it from archive.org&lt;/a&gt;. You can also read up on how the documentary was created (on Linux!) &lt;a rel="nofollow" target="_blank" href="http://tonywhitmore.co.uk/blog/2009/11/04/dont-listen-alone/"&gt;here&lt;/a&gt;.&lt;/p&gt; &lt;p&gt;Finally, if you still miss their voices (as I do), head over to &lt;a rel="nofollow" target="_blank" href="http://shotofjaq.org/"&gt;ShotOfJaq&lt;/a&gt; or to &lt;a rel="nofollow" target="_blank" href="http://www.twit.tv/FLOSS"&gt;FLOSS weekly&lt;/a&gt; and you will be pleasantly surprised!&lt;/p&gt; &lt;p&gt;PS. Offtopic rant: I'm all for open formats and such, but when - after days of searching! - I can't find a tool which supports the OGV container (or the Theora codec for that matter) properly, I'm tempted to give up on them! On the AVI/XVID/h264 side there is &lt;a rel="nofollow" target="_blank" href="http://hype-free.blogspot.com/2009/02/free-open-source-cross-platform.html"&gt;Avidemux&lt;/a&gt; for example... Finally I had to re-encode the whole video into AVI/XVID just be able to chomp it into 10 minute segments.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-421677530114547396?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=zbG98MuGQl0:bZFDz40JLTg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=zbG98MuGQl0:bZFDz40JLTg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=zbG98MuGQl0:bZFDz40JLTg:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=zbG98MuGQl0:bZFDz40JLTg:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=zbG98MuGQl0:bZFDz40JLTg:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-421677530114547396</guid>
         <pubDate>Fri, 25 Dec 2009 11:47:00 -0800</pubDate>
      </item>
      <item>
         <title>delicious/cdman83</title>
         <link>http://hype-free.blogspot.com/2009/12/deliciouscdman83.html</link>
         <description>&lt;p&gt;A long overdue "linky" post:&lt;/p&gt; &lt;style type="text/css"&gt;h1 a:hover {background-color:#888;color:#fff important;}div#emailbody table#itemcontentlist tr td div ul {list-style-type:square;padding-left:1em;}div#emailbody table#itemcontentlist tr td div blockquote {padding-left:6px;border-left:6px solid #dadada;margin-left:1em;}div#emailbody table#itemcontentlist tr td div li {margin-bottom:1em;margin-left:1em;}table#itemcontentlist tr td a:link, table#itemcontentlist tr td a:visited, table#itemcontentlist tr td a:active, ul#summarylist li a {color:#000099;font-weight:bold;text-decoration:none;}img {border:none;}&lt;/style&gt;&lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.dyn.com/internetguide"&gt;Internet Guide | dyn.com&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 22 Oct 2009 04:55 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Dyn (of DynDNS) is also getting in the internet content filtering business.&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.fitbit.com/product"&gt;About the Fitbit&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 23 Oct 2009 11:10 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.reputationauthority.org/"&gt;BorderWare ReputationAuthority&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 23 Oct 2009 12:09 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://blog.backblaze.com/2009/09/01/petabytes-on-a-budget-how-to-build-cheap-cloud-storage/"&gt;Petabytes on a budget: How to build cheap cloud storage | Backblaze Blog&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 22 Oct 2009 11:25 PM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="4" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://sucuri.net/"&gt;Sucuri information security (BETA)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 22 Oct 2009 11:16 PM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Via &lt;a rel="nofollow" target="_blank" href="http://evilfingers.blogspot.com/2009/10/sucuri-information-security.html"&gt;http://evilfingers.blogspot.com/2009/10/sucuri-information-security.html&lt;/a&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="5" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.imdb.com/title/tt0094291/"&gt;Wall Street (1987)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 22 Oct 2009 11:04 PM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.teamviewer.com/index.aspx"&gt;TeamViewer - Free Remote Access and Remote Desktop Sharing over the ...&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 24 Oct 2009 02:21 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://people.csail.mit.edu/rahimi/helmet/"&gt;On the Effectiveness of Aluminium Foil Helmets: An Empirical Study&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 26 Oct 2009 11:05 PM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Via &lt;a rel="nofollow" target="_blank" href="http://sunbeltblog.blogspot.com/2009/10/tinfoil-hat-time-us-spy-agencies-buy.html"&gt;http://sunbeltblog.blogspot.com/2009/10/tinfoil-hat-time-us-spy-agencies-buy.html&lt;/a&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.brightcloud.com/webalerts.asp"&gt;BrightCloud - OEM Hosted Security Services&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 26 Oct 2009 08:47 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.imdb.com/title/tt0096928/"&gt;Bill &amp;amp; Ted's Excellent Adventure (1989)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 26 Oct 2009 08:07 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/dp/0596515170/?tag=codinghorror-20"&gt;Amazon.com: Masterminds of Programming: Conversations with the Creators of Major Programming Languages (Theory in Practice (O'Reilly)) (9780596515171): Federico Biancuzzi, Shane Warden: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:20 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/dp/1556152116/?tag=codinghorror-20"&gt;Amazon.com: Programmers at Work: Interviews With 19 Programmers Who Shaped the Computer Industry (Tempus) (9781556152115): Susan Lammers: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:20 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/dp/1430219483/?tag=codinghorror-20"&gt;Amazon.com: Coders at Work (9781430219484): Peter Seibel: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:19 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="4" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/Mobile-Malware-Attacks-Defense-Dunham/dp/1597492981?&amp;camp=212361&amp;linkCode=wey&amp;tag=extreme04-20&amp;creative=380733"&gt;Amazon.com: Mobile Malware Attacks and Defense (9781597492980): Ken Dunham: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:19 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="5" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/Crimeware-Understanding-Attacks-Defenses-Symantec/dp/0321501950?&amp;camp=212361&amp;linkCode=wey&amp;tag=extreme04-20&amp;creative=380733"&gt;Amazon.com: Crimeware: Understanding New Attacks and Defenses (9780321501950): Markus Jakobsson, Zulfikar Ramzan: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:19 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="6" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.catonmat.net/blog/ldd-arbitrary-code-execution/"&gt;ldd arbitrary code execution - good coders code, great reuse&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:19 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="7" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/HACKING-EXPOSED-MALWARE-ROOTKITS-Michael/dp/0071591184?&amp;camp=212361&amp;linkCode=wey&amp;tag=extreme04-20&amp;creative=380733"&gt;Amazon.com: HACKING EXPOSED MALWARE AND ROOTKITS (9780071591188): Michael Davis, Sean Bodmer, Aaron LeMasters: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:19 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="8" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/Malware-Forensics-Investigating-Analyzing-Malicious/dp/159749268X?&amp;camp=212361&amp;linkCode=wey&amp;tag=extreme04-20&amp;creative=380733"&gt;Amazon.com: Malware Forensics: Investigating and Analyzing Malicious Code (9781597492683): Cameron H. Malin, Eoghan Casey, James M. Aquilina: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 08:18 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="9" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://blogs.msdn.com/oldnewthing/archive/2009/10/29/9914426.aspx"&gt;The Old New Thing : What this batch file needs is more escape characters&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 30 Oct 2009 01:55 AM PDT&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Much like the universe, if anyone ever does fully come to understand Batch then the language will instantly be replaced by an infinitely weirder and more complex version of itself. This has obviously happened at least once before ;)&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.reddit.com/r/ReverseEngineering/comments/9zq58/eric_filiol_analyzing_word_and_excel_encryption/"&gt;Eric Filiol - Analyzing Word and Excel Encryption [PDF] : ReverseEngineering&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 02 Nov 2009 01:40 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;This is very cool! It demonstrates how security is based on some basic assumptions (ie. consecutive versions overwrite each-other) and when those assumptions are broken (you can recover multiple versions), the security itself is compromised. Ergo, you must make as few assumptions as possible and check them as thoroughly as possible. Paranoia helps!&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.zoomorama.com/01-2477f0e8b447bb6570493cdac464c41f"&gt;Zoomorama - Tech Crunch Web Trends&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 02 Nov 2009 01:20 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/Things-Every-Software-Architect-Should/dp/059652269X/ref=sr_1_1?ie=UTF8&amp;s=books&amp;qid=1257735535&amp;sr=8-1"&gt;Amazon.com: 97 Things Every Software Architect Should Know (9780596522698): Richard Monson-Haefel: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Nov 2009 10:00 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.educatedguesswork.org/2009/11/c_horrorshow.html"&gt;C++ horrorshow - Educated Guesswork&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Nov 2009 10:21 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;This is why I do Java and not C++ - because I&amp;#039;m not smart enough to comprehend such stuff.&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://beatrix2004.free.fr/BeaEngine/download1.php"&gt;Welcome to the BeaEngine Sweet Home - x86 x86-64 disassembler library - (IA-32 &amp;amp; Intel64)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Nov 2009 10:01 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://slopeofhope.com/2009/11/the-periodic-table-of-bloggers.html?utm_source=feedburner&amp;utm_medium=email"&gt;The Periodic Table of Bloggers - Slope Of Hope with Tim Knight&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 12 Nov 2009 03:56 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Via &lt;a rel="nofollow" target="_blank" href="http://www.nakedcapitalism.com/2009/11/links-111009.html"&gt;http://www.nakedcapitalism.com/2009/11/links-111009.html&lt;/a&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://wallpapers.x3studios.com/?utm_source=feedburner&amp;utm_medium=email"&gt;Create your own Wallpaper - X3 Studios&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 12 Nov 2009 03:15 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Via &lt;a rel="nofollow" target="_blank" href="http://www.nerdlogger.com/2009/11/make-your-own-cool-abstract-wallpaper.html"&gt;http://www.nerdlogger.com/2009/11/make-your-own-cool-abstract-wallpaper.html&lt;/a&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://achmadz.blogspot.com/2009/11/simple-report-on-this-month-google.html?utm_source=feedburner&amp;utm_medium=email"&gt;Achmad Z's Archives: Simple report on this month's Google Pagerank update&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 12 Nov 2009 03:10 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Yet an other Google PR widget. Nice one, since it only includes a link.&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://blogs.msdn.com/oldnewthing/archive/2009/11/10/9919908.aspx?utm_source=feedburner&amp;utm_medium=email"&gt;The Old New Thing : Little-known command line utility: clip&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 12 Nov 2009 11:45 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;It&amp;#039;s official! Perl rocks if even Raymond Chen uses it :-)&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.dealextreme.com/details.dx/sku.8422?utm_source=feedburner&amp;utm_medium=email"&gt;DealExtreme: $12.99 Bluetooth 2.0 A2DP AVRCP Stereo Music Receiver and Handsfree (Black)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 14 Nov 2009 10:56 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Recommended by Geourge Ou&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://eol.ovh.org/winexe/index.php?utm_source=feedburner&amp;utm_medium=email"&gt;winexe homepage&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 13 Nov 2009 11:48 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;PSExec for Linux - no Samba needed either!&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.sampsonuk.net/B3TA/TrojanHorse.jpg?utm_source=feedburner&amp;utm_medium=email"&gt;TrojanHorse.jpg (JPEG Image, 700x558 pixels)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 17 Nov 2009 02:57 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Via Schneier: &lt;a rel="nofollow" target="_blank" href="http://www.schneier.com/blog/archives/2009/11/anti-malware_de.html"&gt;http://www.schneier.com/blog/archives/2009/11/anti-malware_de.html&lt;/a&gt;&lt;p&gt;This posting includes an audio/video/photo media file: &lt;a rel="nofollow" target="_blank" href="http://www.sampsonuk.net/B3TA/TrojanHorse.jpg"&gt;Download Now&lt;/a&gt; &lt;/p&gt; &lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://browsingprotection.f-secure.com/swp/?utm_source=feedburner&amp;utm_medium=email"&gt;F-Secure Browsing Protection Portal&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 19 Nov 2009 10:08 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://people.planetpostgresql.org/andrew/index.php?%2Farchives%2F51-Oh%2C-the-irony.html&amp;utm_source=feedburner&amp;utm_medium=email"&gt;Oh, the irony - Andrew's PostgreSQL blog&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 20 Nov 2009 03:40 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.youtube.com/watch?v=Im1GAaJAn_s&amp;feature=quicklist&amp;utm_source=feedburner&amp;utm_medium=email"&gt;YouTube - Umbrella Timpuri Noi&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Dec 2009 10:32 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.youtube.com/watch?v=MKbzQIWzCjc&amp;utm_source=feedburner&amp;utm_medium=email"&gt;YouTube - Timpuri noi - Emigrant USA[1992]&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Dec 2009 10:31 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.youtube.com/watch?v=gN5xNN7R9CM&amp;utm_source=feedburner&amp;utm_medium=email"&gt;YouTube - Timpuri Noi Victoria with Lyrics&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Dec 2009 10:31 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="4" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.trilulilu.ro/mottanu/1b7d84264f766d?utm_source=feedburner&amp;utm_medium=email"&gt;Timpuri Noi - Tata - Trilulilu Video Muzica&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Dec 2009 10:29 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="5" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://developer.yahoo.com/yui/theater/video.php?v=crockford-yuiconf2009-state&amp;utm_source=feedburner&amp;utm_medium=email"&gt;Video: Douglas Crockford &amp;mdash; The State and Future of JavaScript (YUI Theater)&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 08 Dec 2009 10:29 PM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/dp/0740785788?tag=tholneth-20&amp;utm_source=feedburner&amp;utm_medium=email"&gt;Amazon.com: The Customer Is Not Always Right: Hilarious and Horrific Tales of Customers Gone Wrong (9780740785788): A.J. Adams: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 10 Dec 2009 10:28 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/gp/product/0452295645?ie=UTF8&amp;tag=portableaudio-20&amp;linkCode=as2&amp;camp=1789&amp;creative=390957&amp;creativeASIN=0452295645&amp;utm_source=feedburner&amp;utm_medium=email"&gt;Amazon.com: Why We Suck: A Feel Good Guide to Staying Fat, Loud, Lazy and Stupid (9780452295643): Dr. Denis Leary: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 10 Dec 2009 10:07 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.amazon.com/gp/product/1606991582?ie=UTF8&amp;tag=portableaudio-20&amp;linkCode=as2&amp;camp=1789&amp;creative=390957&amp;creativeASIN=1606991582&amp;utm_source=feedburner&amp;utm_medium=email"&gt;Amazon.com: Everybody is Stupid Except for Me (9781606991589): Peter Bagge: Books&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 10 Dec 2009 10:06 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="4" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://beta.parleys.com/?utm_source=feedburner&amp;utm_medium=email#st=1"&gt;Parleys.com -- Home&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 10 Dec 2009 09:38 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="5" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="https://submit.symantec.com/whitelist/?utm_source=feedburner&amp;utm_medium=email"&gt;Software White-Listing Request&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 10 Dec 2009 09:35 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="6" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://prezi.com/?utm_source=feedburner&amp;utm_medium=email"&gt;Prezi - The zooming presentation editor&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 10 Dec 2009 04:38 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.makershed.com/?utm_source=feedburner&amp;utm_medium=email"&gt;Maker SHED from MAKE Magazine, craftzine.com, and Maker Faire&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 13 Dec 2009 11:25 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://www.zoneedit.com/?utm_source=feedburner&amp;utm_medium=email"&gt;Free DNS service - Easy, web-based domain manager - ZoneEdit.com&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 13 Dec 2009 02:07 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://phpadvent.org/2009/json-gotchas-by-christian-wenz?utm_source=feedburner&amp;utm_medium=email"&gt;PHP Advent 2009 / JSON Gotchas&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 15 Dec 2009 02:03 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Loved the pun: "eval has the same metaphone key as evil"&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://dnshistory.org/?utm_source=feedburner&amp;utm_medium=email"&gt;DNS History&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 18 Dec 2009 05:54 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt; &lt;table id="itemcontentlist"&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="1" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://blogs.msdn.com/tess/archive/2009/12/21/high-cpu-in-net-app-using-a-static-generic-dictionary.aspx?utm_source=feedburner&amp;utm_medium=email"&gt;If broken it is, fix it you should : High CPU in .NET app using a static Generic.Dictionary&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 21 Dec 2009 07:56 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;.NET version of ConcurrentModificationException: consuming 100% CPU :-)&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="2" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://cmp.ly/?utm_source=feedburner&amp;utm_medium=email"&gt;Comply&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 21 Dec 2009 02:04 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;Via &lt;a rel="nofollow" target="_blank" href="http://twit.tv/twil41"&gt;http://twit.tv/twil41&lt;/a&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="3" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://ejohn.org/apps/learn/?utm_source=feedburner&amp;utm_medium=email"&gt;Learning Advanced JavaScript&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 21 Dec 2009 01:58 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="4" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://hivelogic.com/articles/top-10-programming-fonts?utm_source=feedburner&amp;utm_medium=email"&gt;Hivelogic - Top 10 Programming Fonts&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 21 Dec 2009 01:44 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td style="margin-bottom:0;line-height:1.4em;"&gt; &lt;p style="margin:1em 0 3px 0;"&gt; &lt;a rel="nofollow" name="5" style="font-family:Arial, Helvetica, sans-serif;font-size:18px;" target="_blank" href="http://globaleconomicanalysis.blogspot.com/2009/12/oh-cre-holiday-parody-to-tune-of-o.html?utm_source=feedburner&amp;utm_medium=email"&gt;Mish's Global Economic Trend Analysis: Oh, CRE: Holiday parody of the song O Christmas Tree&lt;/a&gt; &lt;/p&gt; &lt;p style="font-size:13px;color:#555;margin:9px 0 3px 0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;"&gt; &lt;span&gt;Posted:&lt;/span&gt; 21 Dec 2009 01:42 AM PST&lt;/p&gt; &lt;div style="margin:0;font-family:Georgia, Helvetica, Arial, Sans-Serif;line-height:140%;font-size:13px;color:#000000;"&gt;&lt;/div&gt; &lt;/td&gt; &lt;/tr&gt; &lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-8133805635334482192?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=06gYw5X85Yc:JneNrBrYuSk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=06gYw5X85Yc:JneNrBrYuSk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=06gYw5X85Yc:JneNrBrYuSk:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=06gYw5X85Yc:JneNrBrYuSk:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=06gYw5X85Yc:JneNrBrYuSk:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-8133805635334482192</guid>
         <pubDate>Fri, 25 Dec 2009 11:30:00 -0800</pubDate>
      </item>
      <item>
         <title>Schneier videos</title>
         <link>http://hype-free.blogspot.com/2009/12/schneier-videos.html</link>
         <description>&lt;p&gt;Bruce Schneier is always fun, and together with Markus Ranum he is extra fun (sidenote: although it is title "face-off", they agree more than they disagree):&lt;/p&gt; &lt;ul&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://searchsecurity.techtarget.com/video/0,297151,sid14_gci1376072,00.html"&gt;Schneier-Ranum face-off, part1: The future of information security&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://searchsecurity.techtarget.com/video/0,297151,sid14_gci1376098,00.html"&gt;Schneier-Ranum face-off, part 2: Social networking&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://searchsecurity.techtarget.com/video/0,297151,sid14_gci1376215,00.html"&gt;Schneier-Ranum face-off, part 3: Compliance and security&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://searchsecurity.techtarget.com/video/0,297151,sid14_gci1376222,00.html"&gt;Schneier-Ranum face-off, part 4: Cybersecurity coordinator&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://searchsecurity.techtarget.com/video/0,297151,sid14_gci1376274,00.html"&gt;Schneier-Ranum face-off part 5: Security metrics&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://searchsecurity.techtarget.com/video/0,297151,sid14_gci1376328,00.html"&gt;Schneier-Ranum face-off part 6: Audience questions&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;And here are some Schneier only videos (the first video has some audio problems in the first 3 minutes, but it gets better afterwards):&lt;/p&gt; &lt;center&gt;&lt;iframe class="embeddedvideo" src="http://vimeo.com/moogaloop.swf?clip_id=8053634&amp;amp;server=vimeo.com&amp;amp;show_title=1&amp;amp;show_byline=1&amp;amp;show_portrait=0&amp;amp;color=&amp;amp;fullscreen=1" type="application/x-shockwave-flash" width="400" height="227"&gt;&lt;/iframe&gt;&lt;p&gt;&lt;a rel="nofollow" target="_blank" href="http://vimeo.com/8053634"&gt;Open Rights Group: Bruce Schneier Security Talk&lt;/a&gt; from &lt;a rel="nofollow" target="_blank" href="http://vimeo.com/user1287766"&gt;Open Rights Group&lt;/a&gt; on &lt;a rel="nofollow" target="_blank" href="http://vimeo.com"&gt;Vimeo&lt;/a&gt;.&lt;/p&gt;&lt;/center&gt; &lt;center&gt;&lt;iframe class="embeddedvideo" src="http://vimeo.com/moogaloop.swf?clip_id=8062617&amp;amp;server=vimeo.com&amp;amp;show_title=1&amp;amp;show_byline=1&amp;amp;show_portrait=0&amp;amp;color=&amp;amp;fullscreen=1" type="application/x-shockwave-flash" width="400" height="227"&gt;&lt;/iframe&gt;&lt;p&gt;&lt;a rel="nofollow" target="_blank" href="http://vimeo.com/8062617"&gt;Open Rights Group: Bruce Schneier Security Talk (Q&amp;A)&lt;/a&gt; from &lt;a rel="nofollow" target="_blank" href="http://vimeo.com/user1287766"&gt;Open Rights Group&lt;/a&gt; on &lt;a rel="nofollow" target="_blank" href="http://vimeo.com"&gt;Vimeo&lt;/a&gt;.&lt;/p&gt;&lt;/center&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-8673219218835842948?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uCG_K2DNhrM:PYlqXsHYMjg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uCG_K2DNhrM:PYlqXsHYMjg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uCG_K2DNhrM:PYlqXsHYMjg:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=uCG_K2DNhrM:PYlqXsHYMjg:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=uCG_K2DNhrM:PYlqXsHYMjg:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-8673219218835842948</guid>
         <pubDate>Mon, 21 Dec 2009 09:36:00 -0800</pubDate>
      </item>
      <item>
         <title>New challenges</title>
         <link>http://hype-free.blogspot.com/2009/12/new-challenges.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="2925822482_8c27197ba5_b" border="0" alt="2925822482_8c27197ba5_b" align="right" src="http://lh3.ggpht.com/_hrvCBhtWhJ4/SyuqlwjkhhI/AAAAAAAACEc/3mu45Ht8PYo/2925822482_8c27197ba5_b%5B2%5D.jpg?imgmax=800" width="244" height="164"/&gt;After missing &lt;a rel="nofollow" target="_blank" href="http://forensicscontest.com/2009/10/10"&gt;the announcement for the second part of the Network Forensics Puzzle&lt;/a&gt; (yes, I’m subscribed the feed now!) I would like to regain your trust by bringing two other contests to your attention:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://www.ethicalhacker.net/content/view/285/2/"&gt;Miracle on Thirty-Hack Street&lt;/a&gt; from ethicalhacker.net&lt;/li&gt; &lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://argolith.ms/?p=sevenfour"&gt;the sevenfour challenges&lt;/a&gt; (a “keygen-me” type of challenge)&lt;/li&gt; &lt;/ul&gt; &lt;p&gt;Bonus content:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://www.t2.fi/2009/12/17/merry-xmas-and-happy-new-year/"&gt;t2’09 challenge solutions&lt;/a&gt; (via the &lt;a rel="nofollow" target="_blank" href="http://www.reddit.com/r/ReverseEngineering/comments/afvn4/t209_challenge_solutions_two_pdfs_by_author_and/"&gt;Reverse Engineering Reddit&lt;/a&gt;)&lt;/li&gt; &lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://www.raulsiles.com/downloads/Hacking-Challenges_RaulSiles_Dec09.pdf"&gt;Hacking Challenges: Have Fun Improving Your Skills! [PDF]&lt;/a&gt; – presentation from &lt;a rel="nofollow" target="_blank" href="http://www.radajo.com/2009/12/hacking-challenges-have-fun-improving.html"&gt;the RaDaJo guys&lt;/a&gt;&lt;/li&gt; &lt;/ul&gt; &lt;p&gt;Have fun!&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/chrisdag/"&gt;ChrisDag's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-4937751955865431679?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=r6eusdZdiaI:VjFmbew7Umk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=r6eusdZdiaI:VjFmbew7Umk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=r6eusdZdiaI:VjFmbew7Umk:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=r6eusdZdiaI:VjFmbew7Umk:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=r6eusdZdiaI:VjFmbew7Umk:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-4937751955865431679</guid>
         <pubDate>Fri, 18 Dec 2009 10:15:00 -0800</pubDate>
      </item>
      <item>
         <title>A game of Chinese whispers</title>
         <link>http://hype-free.blogspot.com/2009/12/game-of-chinese-whispers.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="3558167656_06bb48a9f9_o" border="0" alt="3558167656_06bb48a9f9_o" align="right" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/SyuecGfIRhI/AAAAAAAACEU/MTAu2Yt9-2E/3558167656_06bb48a9f9_o%5B2%5D.jpg?imgmax=800" width="184" height="244"/&gt;Yet an other example of real-life Chinese whispers in the security journalism:&lt;/p&gt; &lt;p&gt;A Hungarian online news site published an article titled “&lt;a rel="nofollow" target="_blank" href="http://hirek.prim.hu/cikk/75929/"&gt;Hackers tried to steal user data from Amazon&lt;/a&gt;” (here is &lt;a rel="nofollow" target="_blank" href="http://translate.google.com/translate?js=y&amp;amp;prev=_t&amp;amp;hl=en&amp;amp;ie=UTF-8&amp;amp;layout=1&amp;amp;eotf=1&amp;amp;u=http%3A%2F%2Fhirek.prim.hu%2Fcikk%2F75929%2F&amp;amp;sl=hu&amp;amp;tl=en"&gt;a somewhat usable automatic translation&lt;/a&gt; for the non-Hungarian speakers). I assume that the information went like this:&lt;/p&gt; &lt;p&gt;What happened –&amp;gt; What the security company has written up about it –&amp;gt; What the “journalist” understood –&amp;gt; What s/he actually wrote.&lt;/p&gt; &lt;p&gt;What actually happened is that an Amazon EC2 &lt;em&gt;rented to a third party&lt;/em&gt; &lt;a rel="nofollow" target="_blank" href="http://blogs.ict-forward.eu/forward/zeus-botnets-cc-through-amazon-ec2/"&gt;was being used as a C&amp;amp;C server for a botnet&lt;/a&gt;. No Amazon user data compromise here, move along (also, &lt;a rel="nofollow" target="_blank" href="http://blog.scansafe.com/journal/2009/12/17/amazon-cloud-has-rained-malware-before.html"&gt;this isn’t a new phenomenon at all&lt;/a&gt;).&lt;/p&gt; &lt;p&gt;To top it off, the article talks about the security issues involved in cloud computing. Surely they are paid by buzzwords / paragraph :-p.&lt;/p&gt; &lt;p&gt;As if you needed further proof that a large percentage of the news out there is false, even when there is no intent to “spin” it. Newer attribute to malice what can be explained by stupidity I suppose... &lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/59999295@N00/"&gt;bignoseduglyguy's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-3135151420457526284?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=9dszrzlpGG4:Mx80AT9txA0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=9dszrzlpGG4:Mx80AT9txA0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=9dszrzlpGG4:Mx80AT9txA0:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=9dszrzlpGG4:Mx80AT9txA0:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=9dszrzlpGG4:Mx80AT9txA0:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-3135151420457526284</guid>
         <pubDate>Fri, 18 Dec 2009 09:23:00 -0800</pubDate>
      </item>
      <item>
         <title>Twitter hacked</title>
         <link>http://hype-free.blogspot.com/2009/12/twitter-hacked.html</link>
         <description>&lt;div style="float:right;"&gt;&lt;/div&gt;&lt;div style="float:right;clear:right;margin-top:1em;"&gt;&lt;a rel="nofollow" class="DiggThisButton"&gt;&lt;img src="http://digg.com/img/diggThis.png" height="80" width="52" alt="DiggThis"&gt;   &lt;/a&gt;  &lt;/div&gt;&lt;p&gt;It had to happen, didn’t it? I’ve fired up &lt;a rel="nofollow" target="_blank" href="http://www.pidgin.im/"&gt;Pidgin&lt;/a&gt; with the &lt;a rel="nofollow" target="_blank" href="http://code.google.com/p/microblog-purple/"&gt;microblog-purple&lt;/a&gt; plugin, only to get an “invalid certificate” error for twitter. I’ve quickly became nervous, since a quick digging indicated that I was getting the wrong IP address for the domain twitter.com. &lt;/p&gt; &lt;p&gt;My first thought was: “I’ve been compromised”. After quickly verifying my hosts file and my DNS entry, all seemed fine on the surface. My second thought was: “my DNS server was compromised”, so I’ve done the same lookup using OpenDNS and the new Google DNS, both coming up with different (but wrong) answers. Finally I’ve checked out a couple of other HTTPS sites and they seemed fine. So I took a deep breath and (putting my faith in &lt;a rel="nofollow" target="_blank" href="http://noscript.net/"&gt;NoScript&lt;/a&gt; and &lt;a rel="nofollow" target="_blank" href="http://www.requestpolicy.com/"&gt;RequestPolicy&lt;/a&gt;) visited twitter.com to find the following page:&lt;/p&gt; &lt;p&gt;&lt;img style="border-right-width:0px;display:block;float:none;border-top-width:0px;border-bottom-width:0px;margin-left:auto;border-left-width:0px;margin-right:auto;" title="twitter_hack" border="0" alt="twitter_hack" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/SyssNIUA3aI/AAAAAAAACEE/XW1kUzm_yg4/twitter_hack%5B6%5D.png?imgmax=800" width="585" height="768"/&gt; &lt;/p&gt; &lt;p&gt;Quick analysis:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;This seems to be a “good old” defacement &lt;/li&gt; &lt;li&gt;A very likely scenario is that they somehow compromised the DNS registrar account (phising, dumb password reset, etc) and changed it to point to an other IP. &lt;/li&gt; &lt;li&gt;Currently I’m seeing a couple of different IPs out there for the twitter.com domain: &lt;ul&gt; &lt;li&gt;My DNS server (and OpenDNS) returns &lt;a rel="nofollow" target="_blank" href="http://domaintools.com/66.147.242.88"&gt;66.147.242.88&lt;/a&gt; &lt;/li&gt; &lt;li&gt;Google DNS returns &lt;a rel="nofollow" target="_blank" href="http://whois.domaintools.com/74.217.128.160"&gt;74.217.128.160&lt;/a&gt; &lt;/li&gt; &lt;/ul&gt; &lt;/li&gt; &lt;li&gt;The correct address seems to be &lt;a rel="nofollow" target="_blank" href="http://whois.domaintools.com/twitter.com"&gt;168.143.171.84&lt;/a&gt;, so if you put the following line in your host file, thing should start working again (you might need to do an &lt;code&gt;ipconfig /flushdns&lt;/code&gt; if you're on Windows): &lt;pre&gt;168.143.171.84 twitter.com&lt;/pre&gt; &lt;/li&gt; &lt;li&gt;The above is a hackish solution, and I would recommend using it only in life-and-death situations :-p. It is the best to let Twitter handle the incident and make sure that everything is cleaned up. &lt;/li&gt; &lt;li&gt;It is unclear when exactly the defacement happened, but it must have been in the last 10 hours or so. It might have been specifically targeted so that it is late in the day in the USA so that the reaction is delayed. &lt;/li&gt; &lt;li&gt;&lt;del&gt;According to &lt;a rel="nofollow" target="_blank" href="http://translate.google.com/#"&gt;Google Translate&lt;/a&gt; (&lt;a rel="nofollow" target="_blank" href="http://babelfish.yahoo.com/"&gt;Babelfish&lt;/a&gt; doesn’t know Arabic unfortunately) the text below the picture says:&lt;/del&gt;
&lt;p&gt;Ok, so I'm a big ignorant idiot. The official language of Iran is &lt;a rel="nofollow" target="_blank" href="http://en.wikipedia.org/wiki/Persian_language"&gt;Persian&lt;/a&gt; (also known as Farsi or Parsi), not Arabic. Thank you to Anonymous for pointing it out. According to &lt;a rel="nofollow" target="_blank" href="http://www.mirror.co.uk/news/top-stories/2009/12/18/twitter-hacked-by-iranian-protesters-115875-21907173/"&gt;this article&lt;/a&gt; the text in the picture says:&lt;/p&gt; &lt;blockquote&gt;This site has been hacked by the Iranian Cyber Army (on the flag)&lt;/blockquote&gt; and &lt;blockquote&gt;The USA thinks they control and manage internet access, but they don't. We control and manage the internet with our power, so do not try to incite the Iranian people (under the picture)&lt;/blockquote&gt; Some people also seem to have screenshots with English texts on them. &lt;/li&gt; &lt;li&gt;The rogue server doesn’t seem to respond to any Twitter API requests, so it doesn’t seem to be that they were going after usernames and passwords (which they very well might have done, considering the number of users who click trough SSL certificate warnings), but just to be on the safe side, &lt;em&gt;change your password&lt;/em&gt; and &lt;em&gt;don’t use the same password on all the sites&lt;/em&gt;! &lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;&lt;em&gt;Update&lt;/em&gt;: As of now all seems to be back to normal and all the DNS servers return the correct IP address. I’m waiting for an explanation in Twitter (mostly because I’m interested in how it happened :-)).&lt;/p&gt; &lt;p&gt;&lt;em&gt;Update&lt;/em&gt;: &lt;a rel="nofollow" target="_blank" href="http://blog.twitter.com/2009/12/dns-disruption.html"&gt;Twitter acknowledges the hack&lt;/a&gt; on their blog and say that they will provide more information as it becomes available (however they erroneously affirm that the API were working correctly – they weren’t, since they used the same DNS record to contact Twitter – in fact this is how I’ve became aware of the hack).&lt;/p&gt; &lt;p&gt;Bonus: what sources can you use to investigate such incidents?&lt;/p&gt; &lt;ul&gt; &lt;li&gt;First of all, be suspicious of SSL certificate errors! I know that they (sadly) are quite common these days, but be vigilant! &lt;/li&gt; &lt;li&gt;Check that the problem is not at your end. Check that you have the correct DNS server (there are a couple of malware families out there which set a custom DNS server for the machine to control the users browsing destinations). Check that the given hostname is not present in your hosts file (again, there are a couple of malware families using this method to misdirect users) &lt;/li&gt; &lt;li&gt;Check what the IP address should be, by using &lt;a rel="nofollow" target="_blank" href="http://whois.domaintools.com/twitter.com"&gt;domaintools&lt;/a&gt; for example (and looking at the server stats page) &lt;/li&gt; &lt;li&gt;Try looking up the DNS name using several DNS servers (this might not work if your network filters DNS queries): &lt;pre&gt;# nslookup
&amp;gt; set type=ANY
&amp;gt; twitter.com
...
&amp;gt; server 8.8.8.8
&amp;gt; twitter.com
...
&amp;gt; server 208.67.222.222
&amp;gt; twitter.com
...&lt;/pre&gt; &lt;/li&gt; &lt;li&gt;An other option is to use the &lt;a rel="nofollow" target="_blank" href="http://vurl.mysteryfcm.co.uk/?url=1160923"&gt;vURL service&lt;/a&gt; to fetch the suspicious webpage from different location and compare the results with what you are seeing.&lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;Using these methods you can quickly ascertain with pretty good accuracy where the fault lies and take appropriate action. Have a safe holiday everybody!&lt;/p&gt; &lt;p&gt;&lt;em&gt;Update&lt;/em&gt;:&lt;/p&gt; &lt;ul&gt;
&lt;li&gt;Read about the subject on &lt;a rel="nofollow" target="_blank" href="http://countermeasures.trendmicro.eu/twitter-not-hacked-by-iranian-cyber-army/"&gt;the TrendMicro Countermeasures Blog&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;Some more links to information and the source of the defaced webpage at &lt;a rel="nofollow" target="_blank" href="http://news.ycombinator.com/item?id=1002640"&gt;Hacker News&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;SANS &lt;a rel="nofollow" target="_blank" href="https://isc.sans.org/diary.html?storyid=7774"&gt;posted about in issue&lt;/a&gt; in the diary.&lt;/li&gt;
&lt;li&gt;I've update the translations, thanks to Anonymous&lt;/li&gt;
&lt;li&gt;Twitter &lt;a rel="nofollow" target="_blank" href="http://blog.twitter.com/2009/12/update-on-last-nights-dns-disruption.html"&gt;posted an update&lt;/a&gt; about the issue. It doesn't many more details, it does however give a timeframe for the problem: between 21:46 and 23:00 PST . There are some rumors out there that somehow (phising?) the correct password to the DNS management interface was obtained and it was used to modify the records. Twitter still has the original blogpost up saying that API's were not affected, but &lt;em&gt;this is not true&lt;/em&gt;! If you've used a third party Twitter client and you've clicked trough the certificate warning (or maybe it doesn't use TLS at all), your password might have been compromised. Currently there is no evidence that the rogue server was logging passwords, but until the time some forensics is done on it, there is no sure way to tell if this was the case (since it is trivial to configure a webserver such that it responds with a 404 error, while still logging the details of the request).&lt;/li&gt;
&lt;li&gt;Arbor Networks &lt;a rel="nofollow" target="_blank" href="http://asert.arbornetworks.com/2009/12/your-dns-is-an-asset-twitter-dns-woes/"&gt;posted a related article&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;Sucuri has also &lt;a rel="nofollow" target="_blank" href="http://blog.sucuri.net/2009/12/twitter-defacement.html"&gt;posted about the issue&lt;/a&gt;. They have a nice little network monitoring / alerting system. You can also use them as &lt;a rel="nofollow" target="_blank" href="http://sucuri.net/index.php?page=scan&amp;scan=www.twitter.com"&gt;a third-party information source&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;ISS X-Force (part of IBM) has also &lt;a rel="nofollow" target="_blank" href="http://blogs.iss.net/archive/dnsresolution.html"&gt;a nice writeup about the incident&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;Brian Krebs has &lt;a rel="nofollow" target="_blank" href="http://voices.washingtonpost.com/securityfix/2009/12/twittercom_hijacked_by_iranian.html?wprss=securityfix"&gt;an informative writeup&lt;/a&gt; on the SecurityFix blog about the issue which quotes Dyn's (the host for the Twitter DNS) CTO as saying: "Someone logged in who purported to be a legitimate user of their [DNS] platform account and started making changes", further strengthening the probability that a Twitter employee's email account was broken into via some mechanism.&lt;/li&gt;
&lt;li&gt;There is also a lot of confusion out there, as it always is the case with (security) news. I've heard someone saying that "why did the DNS host allow the redirection of Twitter to a host in Iran?" - just to clarify: even though the hack was claimed by the "Iranian Cyber Army" (which might not mean anything! it could be your nerdy neighbor), the server it was redirected to was in the US.&lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:block;float:none;margin-left:auto;border-top:0px;margin-right:auto;border-right:0px;" title="3036343674_54b4674f93_b" border="0" alt="3036343674_54b4674f93_b" src="http://lh6.ggpht.com/_hrvCBhtWhJ4/SytP_Yh5udI/AAAAAAAACEM/HwP5a7SjhWw/3036343674_54b4674f93_b%5B7%5D.jpg?imgmax=800" width="260" height="175"/&gt; &lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/25636851@N03/"&gt;pugetsoundphotowalks' photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-7879862906043367058?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=pQ--BnLdPWA:4IJNAhfnVaQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=pQ--BnLdPWA:4IJNAhfnVaQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=pQ--BnLdPWA:4IJNAhfnVaQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=pQ--BnLdPWA:4IJNAhfnVaQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=pQ--BnLdPWA:4IJNAhfnVaQ:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-7879862906043367058</guid>
         <pubDate>Fri, 18 Dec 2009 05:16:00 -0800</pubDate>
      </item>
      <item>
         <title>I’m the spam killa’</title>
         <link>http://hype-free.blogspot.com/2009/11/im-spam-killa.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="SONY DSC" border="0" alt="SONY DSC" align="right" src="http://lh6.ggpht.com/_hrvCBhtWhJ4/Swu95pxAjxI/AAAAAAAACC8/Ru09p5JcgdA/2473407468_e4549a83bd_o%5B2%5D.jpg?imgmax=800" width="163" height="244"/&gt;I’m happy to announce that I’m one of two “spam killers” on the &lt;a rel="nofollow" target="_blank" href="http://www.se-radio.net/"&gt;Software Engineering radio website&lt;/a&gt;. Spam was starting to run rampant on their site, so they asked for help and I responded. It is so simple to donate your time to a worthy cause. You to can do it, it takes just a couple of minutes per day!&lt;/p&gt; &lt;p&gt;PS: If you are interested in software development / design, this is definitely a podcast you should give a listen.&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/sd-6/"&gt;Manuel_Marin's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-4703112506457996432?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=YbrAj4did2E:9nTBisEGlsg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=YbrAj4did2E:9nTBisEGlsg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=YbrAj4did2E:9nTBisEGlsg:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=YbrAj4did2E:9nTBisEGlsg:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=YbrAj4did2E:9nTBisEGlsg:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-4703112506457996432</guid>
         <pubDate>Tue, 24 Nov 2009 05:05:00 -0800</pubDate>
      </item>
      <item>
         <title>Screenshot forensics</title>
         <link>http://hype-free.blogspot.com/2009/11/screenshot-forensics.html</link>
         <description>&lt;p&gt;&lt;img style="border-right-width:0px;display:inline;border-top-width:0px;border-bottom-width:0px;margin-left:0px;border-left-width:0px;margin-right:0px;" title="2390570910_09a697ffee_o" border="0" alt="2390570910_09a697ffee_o" align="right" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/Swu6EThb0wI/AAAAAAAACC4/2uFGOxI_L0I/2390570910_09a697ffee_o%5B2%5D.jpg?imgmax=800" width="184" height="244"/&gt;One of the interesting thing I like to do when reading (security) blog posts, is to try to deduce details about the machine setup used. You can find some very interesting tidbits of information, like &lt;a rel="nofollow" target="_blank" href="http://hype-free.blogspot.com/2008/01/sunbelt-is-using-symantec-in-house.html"&gt;Sunbelt using Symantec AV on some of their machines&lt;/a&gt;.&lt;/p&gt; &lt;p&gt;A couple of current examples:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;&lt;a rel="nofollow" target="_blank" href="http://community.ca.com/blogs/securityadvisor/archive/2009/11/22/spam-spam-beware-of-latest-spam-attacks.aspx"&gt;a CA researcher uses Office 2007 and Google Chrome&lt;/a&gt; &lt;/li&gt; &lt;li&gt;a &lt;a rel="nofollow" target="_blank" href="http://www.sophos.com/blogs/sophoslabs/?p=7548"&gt;Sophos researcher seems to prefer Ubuntu&lt;/a&gt;, or at least a Gnome based desktop &lt;/li&gt; &lt;/ul&gt; &lt;p&gt;If you want to avoid exposing such details, try the following:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;Crop the screenshot as much as possible. This has other advantages as well (smaller image size which leads to quicker display for example) &lt;/li&gt; &lt;li&gt;Remember that identification can be done in any number of ways: &lt;/li&gt; &lt;ul&gt; &lt;li&gt;Using prominent OS features (like the Mac OS X dock or the Windows start menu)&lt;/li&gt; &lt;li&gt;Using window “chrome” (title bar, frames, buttons on them, their color, etc)&lt;/li&gt; &lt;li&gt;Colors and fonts&lt;/li&gt; &lt;li&gt;Metadata in the image (if it was edited with &lt;a rel="nofollow" target="_blank" href="http://www.getpaint.net/"&gt;Paint .NET&lt;/a&gt; for example, it is very probable that it happened on a Windows machine)&lt;/li&gt; &lt;li&gt;Never use “blur” or similar effects to hide information, since they can be reversed (given that they are completely deterministic)&lt;/li&gt; &lt;/ul&gt; &lt;/ul&gt; &lt;p&gt;If you are really paranoid, you might want to consider taking the screenshot on an entirely different OS (&lt;a rel="nofollow" target="_blank" href="http://www.haiku-os.org/"&gt;Haiku&lt;/a&gt; for example :-).&lt;/p&gt; &lt;p&gt;Got fun “screenshot archeology” findings? Share them in the comments!&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/8363028@N08/"&gt;DeusXFlorida's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-164982314786638444?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=0r-tSbOszCs:qvlcPwUzUcE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=0r-tSbOszCs:qvlcPwUzUcE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=0r-tSbOszCs:qvlcPwUzUcE:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=0r-tSbOszCs:qvlcPwUzUcE:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=0r-tSbOszCs:qvlcPwUzUcE:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-164982314786638444</guid>
         <pubDate>Tue, 24 Nov 2009 04:48:00 -0800</pubDate>
      </item>
      <item>
         <title>Plugging a good friend of mine (not in a sexual way! :-P)</title>
         <link>http://hype-free.blogspot.com/2009/11/plugging-good-friend-of-mine-not-in.html</link>
         <description>&lt;p&gt;A talented photographer with a lot of beautiful images. Check them out below or on his &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/operabilus/"&gt;flickr stream&lt;/a&gt;. Go OPE!&lt;/p&gt; &lt;center&gt;   &lt;iframe class="embeddedvideo" type="application/x-shockwave-flash" src="http://www.flickr.com/apps/slideshow/show.swf?v=71649" width="400" height="300"&gt;&lt;/iframe&gt;&lt;/center&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-3192571330516547326?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Yj4Z0KUUtwY:wwwfPwd3XHY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Yj4Z0KUUtwY:wwwfPwd3XHY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Yj4Z0KUUtwY:wwwfPwd3XHY:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=Yj4Z0KUUtwY:wwwfPwd3XHY:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Yj4Z0KUUtwY:wwwfPwd3XHY:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-3192571330516547326</guid>
         <pubDate>Mon, 23 Nov 2009 09:45:00 -0800</pubDate>
      </item>
      <item>
         <title>Today’s fudbuster</title>
         <link>http://hype-free.blogspot.com/2009/11/todays-fudbuster.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="4039543987_2ea3fb6e8b_b" border="0" alt="4039543987_2ea3fb6e8b_b" align="right" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/SwqpLZeEVUI/AAAAAAAACCw/qS2sB2IDnN8/4039543987_2ea3fb6e8b_b%5B2%5D.jpg?imgmax=800" width="244" height="243"/&gt;We begin today’s FUD-buster with – applause please – cyberterorism via an “article”: &lt;a rel="nofollow" target="_blank" href="http://www.infosecurity-magazine.com/view/5217/cyberterrorism-a-look-into-the-future/"&gt;Cyberterrorism: A look into the future&lt;/a&gt;. The article talks about Estonia (which is the poster-child for “cyber” incidents these days) and says the following thing (amongst others equally high-quality content) – emphasis added:&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;“The three-week cyberattack on Estonia threatened to black out the country's digital infrastructure, &lt;em&gt;infiltrating the websites of the nation’s banks and political institutions”&lt;/em&gt;&lt;/p&gt; &lt;/blockquote&gt; &lt;p&gt;The article cites as source (hey, at least they cite sources) an equally &lt;a rel="nofollow" target="_blank" href="http://www.telegraph.co.uk/comment/personal-view/3640255/Cyber-terrorism-is-real---ask-Estonia.html"&gt;“well researched” piece from the Telegraph.co.uk&lt;/a&gt; which says almost the same thing. Now I seem to remember that the Estonia incident was just a large scale DDoS attack, so I’ve looked around for more reliable sources, like this article on Dark Reading &lt;a rel="nofollow" target="_blank" href="http://www.darkreading.com/blog/archives/2009/03/authoritatively.html?cid=ref-true"&gt;Authoritatively, Who Was Behind The Estonian Attacks?&lt;/a&gt; by &lt;a rel="nofollow" target="_blank" href="http://www.lifeboat.com/ex/bios.gadi.evron"&gt;Gadi Evron&lt;/a&gt; (or see &lt;a rel="nofollow" target="_blank" href="http://docs.google.com/gview?a=v&amp;amp;q=cache:byUMj6Djlb8J:www.ciaonet.org/journals/gjia/v9i1/0000699.pdf+gadi+evron+estonia+cert&amp;amp;hl=en&amp;amp;pid=bl&amp;amp;srcid=ADGEESh8wErGTDd40wtemXK4abbPY9bDAvS3H8CjDInhuu6a1FmG7mbL00j8MksD5sE6tEaNDaUHKEnTbWaVHNFxGW7xZMvBmdNJAvkQrQXxumlS_6pwleWZkauM566sE2C_0vEQwQ2R&amp;amp;sig=AFQjCNFc48jxFw9j87PpP5lSFb91RF2KIA"&gt;this other article&lt;/a&gt;). This confirms what I was remembering: it was a large scale DDoS attack with some minor defacements, but in no way were they “infiltrating the websites”.&lt;/p&gt; &lt;p&gt;The second (unrelated, other than the fact that it is an overstatement) quote comes from &lt;a rel="nofollow" target="_blank" href="http://www.viruslist.com/en/weblog?weblogid=208187902"&gt;the Kaspersky blog&lt;/a&gt;, where we can read that:&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;“a vast amount of pirate software nowadays contains trojans, both for the PC and Mac”&lt;/p&gt; &lt;/blockquote&gt; &lt;p&gt;This depends very much on your interpretation of “vast amount” (as me how I know :-P). Of the actual pirated software shared in limited networks like college campuses, very little is infected. What are extremely likely to be malicious are the crack / keygen websites. Either they contain exploits directly or they bundle malware with the downloads. An other sneaky way, seen on P2P networks like Gnutella or eDonkey, is to run bots which respond to any search with an executable that contains the keywords in the name and is – of course – malicious. So, depending on your interpretation of “vast amount”, this doesn’t hold up.&lt;/p&gt; &lt;p&gt;The conclusion, as always: do your own research!&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/11600215@N02/"&gt;cooljinny's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-6329172807173371057?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=mtxHCbAn8Xo:V-YYGNQEZc8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=mtxHCbAn8Xo:V-YYGNQEZc8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=mtxHCbAn8Xo:V-YYGNQEZc8:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=mtxHCbAn8Xo:V-YYGNQEZc8:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=mtxHCbAn8Xo:V-YYGNQEZc8:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-6329172807173371057</guid>
         <pubDate>Mon, 23 Nov 2009 09:24:00 -0800</pubDate>
      </item>
      <item>
         <title>To my dear wife</title>
         <link>http://hype-free.blogspot.com/2009/11/to-my-dear-wife.html</link>
         <description>&lt;center&gt;&lt;iframe class="embeddedvideo" src="http://listen.grooveshark.com/songWidget.swf" type="application/x-shockwave-flash" width="460" height="40"&gt;     &lt;/iframe&gt;&lt;/center&gt;&lt;p&gt;If you are viewing this from the RSS feed: please visit the blog to see the embed. Many RSS readers filter out embed codes.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-5386315922300802705?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=o78viu0y6O8:vcJGZO1BMPs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=o78viu0y6O8:vcJGZO1BMPs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=o78viu0y6O8:vcJGZO1BMPs:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=o78viu0y6O8:vcJGZO1BMPs:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=o78viu0y6O8:vcJGZO1BMPs:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-5386315922300802705</guid>
         <pubDate>Sat, 21 Nov 2009 01:54:00 -0800</pubDate>
      </item>
      <item>
         <title>Calls to action</title>
         <link>http://hype-free.blogspot.com/2009/11/calls-to-action.html</link>
         <description>&lt;p&gt;With the motto “better late than never” here are some calls to action:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;Vote for your favorite podcast on the &lt;a rel="nofollow" target="_blank" href="http://www.podcastawards.com/"&gt;Podcast Awards&lt;/a&gt; website. Votes are open until November the 30th and you can vote once per day (after you vote, you can an email with a link, which you must click on to validate your vote – this is to reduce the number of “fake” votes). If you are unsure for which podcast to vote, here are some suggestions: in the “Best Video Podcast” category I would recommend &lt;a rel="nofollow" target="_blank" href="http://www.cnet.com/buzz-out-loud-podcast/?tag=bc"&gt;Buzz out loud&lt;/a&gt; – it is a very good (informative and fun) daily tech-news podcast. In the “Business” category I would recommend &lt;a rel="nofollow" target="_blank" href="http://manager-tools.com/podcasts/career-tools"&gt;Career Tools&lt;/a&gt;- it (together with its sister podcast &lt;a rel="nofollow" target="_blank" href="http://manager-tools.com/"&gt;Manager Tools&lt;/a&gt;) is a great resource. In the Technology category I would recommend &lt;a rel="nofollow" target="_blank" href="http://twit.tv/FLOSS"&gt;FLOSS Weekly&lt;/a&gt; – it is a superb podcast for all people interested in free / libre / open-source software. And it would be a great gift for them for the 100th episode which is quickly approaching. And besides – TWIT already won a couple of times :-). So go ahead my &lt;del&gt;minions&lt;/del&gt; readers, fly like the wind and vote! &lt;/li&gt; &lt;li&gt;And here is &lt;a rel="nofollow" target="_blank" href="http://szabgab.com/blog/2009/11/1258270637.html"&gt;a second poll related to Perl IDE’s&lt;/a&gt;: &lt;a rel="nofollow" target="_blank" href="http://perlide.org/poll200911/"&gt;What other technologies, languages, templating systems are you using besides Perl?&lt;/a&gt; &lt;/li&gt; &lt;/ul&gt; &lt;p&gt;After you have done your deed :-D, you can relax with two fun flash games: &lt;a rel="nofollow" target="_blank" href="http://www.fastgames.com/littlewheel.html"&gt;Little Wheel&lt;/a&gt;, a fun old-school point-and-click adventure game with very nice artwork (including an interesting soundtrack). Or play &lt;a rel="nofollow" target="_blank" href="http://www.fastgames.com/billiardblitz3-nineball.html"&gt;nine-balls&lt;/a&gt;. Let the lightning be with you!&lt;/p&gt; &lt;center&gt;&lt;a rel="nofollow" target="_blank" href="http://www.fastgames.com/littlewheel.html"&gt;&lt;img alt="Little Wheel" src="http://www.fastgames.com/images/littlewheel.jpg"/&gt; &lt;br /&gt;Little Wheel&lt;/a&gt;&lt;/center&gt;&lt;center&gt;&lt;a rel="nofollow" target="_blank" href="http://www.fastgames.com/billiardblitz3-nineball.html"&gt;&lt;img alt="Billiard Blitz 3 - Nine Ball" src="http://www.fastgames.com/images/billiardblitz3-nineball.jpg"/&gt; &lt;br /&gt;Billiard Blitz 3 - Nine Ball&lt;/a&gt;&lt;/center&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-8753401190283349841?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=jdpKlZZE7so:xkmF7hftTzI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=jdpKlZZE7so:xkmF7hftTzI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=jdpKlZZE7so:xkmF7hftTzI:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=jdpKlZZE7so:xkmF7hftTzI:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=jdpKlZZE7so:xkmF7hftTzI:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-8753401190283349841</guid>
         <pubDate>Tue, 17 Nov 2009 10:41:00 -0800</pubDate>
      </item>
      <item>
         <title>Surprising numbers</title>
         <link>http://hype-free.blogspot.com/2009/11/surprising-numbers.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="2801309954_3af91bf56b_o" border="0" alt="2801309954_3af91bf56b_o" align="right" src="http://lh5.ggpht.com/_hrvCBhtWhJ4/SwLJy7iPZgI/AAAAAAAACCM/AWEHSS94Wr8/2801309954_3af91bf56b_o%5B2%5D.jpg?imgmax=800" width="244" height="134"/&gt;I was reading the latest FudSec piece (&lt;a rel="nofollow" target="_blank" href="http://fudsec.com/generating-a-false-sense-of-insecurity"&gt;Generating a False Sense of Insecurity&lt;/a&gt;) where I found the following statement (emphasis added):&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;Facebook now has 300 million users. Let’s assume that each user has at least one piece of user-generated content on their Facebook page cause, well, it’s a very user-content driven site. That means that of the 300 million home pages on Facebook that 95% (285 million) has either a malicious link or other insecure content. Conversely that means that 5% (15 million) are clean, uninfected, safe pages.&lt;/p&gt; &lt;p&gt;The average Facebook user has 120 friends or 281 friends, depending on which news article you might be reading. Let’s just assume for mathematical purposes that the number is somewhere in the middle, at about 200 friends per user. Let’s pretend, too, that you visit every friend’s page in a single day. Because it’s your day off, of course, you wouldn’t actually do that at work.&lt;/p&gt; &lt;p&gt;&lt;em&gt;The mathematical likelihood that one of your 200 friends is one of the 95% that is infected is infinitesimal.&lt;/em&gt;&lt;/p&gt; &lt;/blockquote&gt; &lt;p&gt;This statement seemed a little off. After all, we are selecting 200 pages out of 300 million where 275 million are infected. The chance to get to an infected / malicious page can’t be that low, right? Wrong! The problem as stated is known in mathematics (probability theory to be more precise) as the “drawing without replacement” and apparently the scientific name is &lt;a rel="nofollow" target="_blank" href="http://en.wikipedia.org/wiki/Hypergeometric_distribution"&gt;hypergeometric distribution&lt;/a&gt;. Long story short, Wikipedia pointed me to &lt;a rel="nofollow" target="_blank" href="http://pcarvalho.com/things/hypegeocalc/publish.htm"&gt;a calculator&lt;/a&gt; which says that – given the parameters quoted above – you have a 99.9999608980365% chance that all of your friends will be clean / non-malicious! Talk about counter-intuitive!&lt;/p&gt; &lt;p&gt;Conclusion? First of all, trust but verify. If you hear something which sounds “off”, try to verify the information from multiple sources. Then again, our brains don’t seem to be wired to evaluate probabilities “heuristically”, so one should always sit down and work out the exact math (there are a lot of free tools on the Internet which can help you) before making important decisions.&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/eraphernalia_vintage/"&gt;EraPhernalia Vintage's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-4321323521638338660?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Wu18Z3Vyxfc:acr8GbwjLpA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Wu18Z3Vyxfc:acr8GbwjLpA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Wu18Z3Vyxfc:acr8GbwjLpA:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=Wu18Z3Vyxfc:acr8GbwjLpA:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=Wu18Z3Vyxfc:acr8GbwjLpA:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-4321323521638338660</guid>
         <pubDate>Tue, 17 Nov 2009 10:05:00 -0800</pubDate>
      </item>
      <item>
         <title>The leaked Microsoft COFEE product</title>
         <link>http://hype-free.blogspot.com/2009/11/leaked-microsoft-cofee-product.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="176571915_de1226bb5d_b" border="0" alt="176571915_de1226bb5d_b" align="right" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/SvgGe3EUOPI/AAAAAAAACCE/TI_dnPcCqMA/176571915_de1226bb5d_b%5B2%5D.jpg?imgmax=800" width="244" height="184"/&gt;So, the Microsoft COFEE (Computer Online Forensic Evidence Extractor) tool was leaked. I took a quick look at it, and – as expected – there is nothing “magical”, “secret” or “backdoorish” about it (even though I &lt;em&gt;love&lt;/em&gt; the picture which comes with &lt;a rel="nofollow" target="_blank" href="http://gizmodo.com/5399377/microsoft-cofee-some-of-the-most-illegal-software-you-can-pirate"&gt;the Gizmodo article&lt;/a&gt;, the text itself is complete and utter BS – COFEE isn’t a tool “that helps law enforcement grab data from password protected or encrypted sources” as the article claims).&lt;/p&gt; &lt;p&gt;So what &lt;em&gt;is&lt;/em&gt; Microsoft COFEE?&lt;/p&gt; &lt;ul&gt; &lt;li&gt;it is a collection of information gathering tools which are either built into Windows (ie. net, arp, ipconfig) or can be freely downloaded from the Microsoft website (ie. pslist)&lt;/li&gt; &lt;li&gt;it contains a simple case-management software which helps users prepare a USB stick that need to be inserted in the target computer and manage the collected information&lt;/li&gt; &lt;li&gt;the software on the USB stick is executed either using the autorun mechanism or by manually launching it. &lt;em&gt;There is no built-in functionality to bypass passwords or other protection mechanisms&lt;/em&gt;&lt;/li&gt; &lt;li&gt;It also contains a detailed analysis of the registry / filesystem fingerprint of each tool (this is important if the other party argues that running the tool caused modifications on the system which are pertinent to the case)&lt;/li&gt; &lt;/ul&gt; &lt;p&gt;Conclusion: there is no magical pixie dust here, move along! (in fact, it is quite similar with the &lt;a rel="nofollow" target="_blank" href="http://metasploit.com/svn/framework3/trunk/scripts/meterpreter/winenum.rb"&gt;winenum Metasploit script&lt;/a&gt;).&lt;/p&gt; &lt;p&gt;&lt;em&gt;PS/Update&lt;/em&gt;: regarding the "defense" against these tools: first of all, they all seem to be user-mode tools. This means that they probably have limited capability of detecting kernel-mode rootkits. Also - from what I've seen - they are all public tools, so there is a good chance that there exists malware out there there which "defends" itself against these software. Again, no magic.&lt;/p&gt; &lt;p&gt;Now before you conclude that this is utterly useless - if I were a IT forensicator :-p, I would prefer having this data compared to no data at all. It will give you some basic idea of the system (or the network for that matter if ran on every PC) which may enable you to come back with a very precise target in mind.&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/raddaqii/"&gt;raddaqii's photostream&lt;/a&gt; with permission.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-5864080662280896670?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=EmnR2TDcpvk:ZfT_h1Du5A8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=EmnR2TDcpvk:ZfT_h1Du5A8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=EmnR2TDcpvk:ZfT_h1Du5A8:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=EmnR2TDcpvk:ZfT_h1Du5A8:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=EmnR2TDcpvk:ZfT_h1Du5A8:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-5864080662280896670</guid>
         <pubDate>Mon, 09 Nov 2009 06:09:00 -0800</pubDate>
      </item>
      <item>
         <title>What VirusTotal is not</title>
         <link>http://hype-free.blogspot.com/2009/11/what-virustotal-is-not.html</link>
         <description>&lt;p&gt;&lt;img style="border-bottom:0px;border-left:0px;display:inline;margin-left:0px;border-top:0px;margin-right:0px;border-right:0px;" title="2139429_dedfc5706f_b" border="0" alt="2139429_dedfc5706f_b" align="right" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/Svf-VEd4lrI/AAAAAAAACB8/A2MEjuzcJ64/2139429_dedfc5706f_b%5B2%5D.jpg?imgmax=800" width="184" height="244"/&gt;Since its inception &lt;a rel="nofollow" target="_blank" href="http://www.virustotal.com/"&gt;VirusTotal&lt;/a&gt; has been used by people to compare different AV products (just in case you don’t know: VirusTotal is great free service which scans the uploaded file with 40 AV engines currently and reports back the results). The AV industry has objected to this practice because of a couple of reasons, some more valid than others IMHO.&lt;/p&gt; &lt;p&gt;Today however I want to talk about the practice of saying “(only) X% of AV detect this” and then giving a VirusTotal link. Two recent examples: &lt;a rel="nofollow" target="_blank" href="http://blog.mxlab.eu/2009/11/07/facebook-updated-account-agreement-email-contains-sasfis-trojan/"&gt;here&lt;/a&gt; and &lt;a rel="nofollow" target="_blank" href="http://securitylabs.websense.com/content/Alerts/3501.aspx"&gt;here&lt;/a&gt; (to be clear: I don’t have anything against the particular blogs / companies / authors – there are many more examples of this practice, these are just two recent ones which came to my attention). &lt;/p&gt; &lt;p&gt;Why is this percentage meaningless and serves only to perpetuate FUD?&lt;/p&gt; &lt;ul&gt; &lt;li&gt;As I first argument I could mention all the discussion about AV engine configuration (this is frequently raised in discussion regarding the detection discussion, so I won’t dissect it further). A very thoroughly discussed argument is also that VT results represent a “point in time” rather than “now” (ie. detections since the scanning might have changed). &lt;/li&gt; &lt;li&gt;The second argument would be: VirusTotal goes for quantity not necessarily quality. Ie. the fact that a given engine is included in the list of engines used by VirusTotal isn’t a statement about the engine resource use, detection rate or false positive rate. Again, this doesn’t mean that the engines used are of low quality, it just means that VirusTotal isn’t in the AV engine testing business. It doesn’t say anything about the market share of the product either.&lt;/li&gt; &lt;li&gt;This means that the affirmation “X% of the engines detect a given file on VT” isn’t equivalent with the affirmation “X% of the users using AV are protected” or “AV software is X% effective”. However these are the thoughts which appear (by association) in a readers mind when seeing the initial affirmation.&lt;/li&gt; &lt;li&gt;Furthermore, some engines appear in multiple products (for example &lt;a rel="nofollow" target="_blank" href="http://www.bitdefender.com/site/view/strategic-relationships.html"&gt;GData integrates BitDefender&lt;/a&gt; – amongst others) while other engines appear “split” (for example the McAfee desktop product contains both the “classical” and “cloud” engine, however on VT they appear as two separate entries “McAfee” and “McAfee+Artemis” respectively). If these relations are not considered (and I’m almost sure that they aren’t – given that these relations are not always publicly documented and they can change over time), the results come out skewed.&lt;/li&gt; &lt;/ul&gt; &lt;p&gt;Conclusion: please &lt;em&gt;never, ever&lt;/em&gt; take the VT result page and copy-paste the percentage from it! &lt;em&gt;Do&lt;/em&gt; provide permalinks to the result pages and you can even make some sensible general statements (like “most of the major AV vendors detect this threat” or “this threat is not well detected by the smaller, Asian AV companies, but given its reliance on the English language for social engineering, it might not be such a big threat”). However, giving percentage wreaks of FUD and smells of negative propaganda (do we really want to be at each-others throat, analyzing which vendor doesn’t detect what? – there would be no winners in such a discussion). Lets concentrate on giving sensible security advice to users instead.&lt;/p&gt; &lt;p&gt;Picture taken from &lt;a rel="nofollow" target="_blank" href="http://www.flickr.com/photos/peterkaminski/"&gt;Peter Kaminski's photostream&lt;/a&gt; with permission.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-5190588507800659636?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=14xPRPGejXw:CC89FUtyAHY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=14xPRPGejXw:CC89FUtyAHY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=14xPRPGejXw:CC89FUtyAHY:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=14xPRPGejXw:CC89FUtyAHY:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=14xPRPGejXw:CC89FUtyAHY:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-5190588507800659636</guid>
         <pubDate>Mon, 09 Nov 2009 05:34:00 -0800</pubDate>
      </item>
      <item>
         <title>Grooveshark VIP member</title>
         <link>http://hype-free.blogspot.com/2009/11/grooveshark-vip-member.html</link>
         <description>&lt;p&gt;&lt;img style="border-right-width:0px;display:block;float:none;border-top-width:0px;border-bottom-width:0px;margin-left:auto;border-left-width:0px;margin-right:auto;" title="grooveshark_ui" border="0" alt="grooveshark_ui" src="http://lh3.ggpht.com/_hrvCBhtWhJ4/Su7rM-blczI/AAAAAAAACB0/Y-qigKxS4S0/grooveshark_ui%5B7%5D.png?imgmax=800" width="640" height="463"/&gt; &lt;/p&gt;&lt;p&gt;I’ve &lt;a rel="nofollow" target="_blank" href="http://hype-free.blogspot.com/2009/10/grooveshark.html"&gt;written about Grooveshark&lt;/a&gt; in the past, however I want to mention them again for a couple of reasons:&lt;/p&gt; &lt;p&gt;First of all, they introduced a new user interface, which works great. More than that, you can now seek in the songs! This means that Grooveshark directly addresses three out of the five methods of music use which I’ve enumerated in &lt;a rel="nofollow" target="_blank" href="http://hype-free.blogspot.com/2009/10/grooveshark.html"&gt;my original post&lt;/a&gt;. There are some small quirks (I don’t really like the popup-type controls, where you first have to hover over it for the useful part to appear), but those are just a matter of personal taste. They’ve also made it available as a desktop application via Adobe Air (currently available only for VIP subscribers).&lt;/p&gt; &lt;p&gt;Which brings me nicely to my second point: I’ve subscribed to their VIP services. I thought that I’ve been using them for a month now and I’m satisfied, so I should give something back aka. “Vote with my money”. So, as of today, I’m a Grooveshark subscriber. A couple of things I didn’t like about the subscription process: there is an additional tax of 15% to the advertised 3 USD monthly price. Also, the subscription payment is set as recurring by default. You can deactivate it later, but even so, it made me feel a little uneasy. Still, I decided to give them some of my money. Hopefully I won’t regret it.&lt;/p&gt; &lt;p&gt;As of now, I can only recommend Grooveshark to everybody! If something happens, I will update this blogpost.&lt;/p&gt; &lt;p&gt;PS. I’ve also removed the last.fm widget from my blog. Currently Grooveshark seems to be a much better deal than last.fm for approximately the same amount of money.&lt;/p&gt; &lt;p&gt;&lt;em&gt;Disclaimer: I don’t receive anything from Grooveshark, I’m just a happy subscriber.&lt;/em&gt;&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-6605655725184417834?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=vJV--ZHdSuk:1jQ0sSJVgZI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=vJV--ZHdSuk:1jQ0sSJVgZI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=vJV--ZHdSuk:1jQ0sSJVgZI:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=vJV--ZHdSuk:1jQ0sSJVgZI:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=vJV--ZHdSuk:1jQ0sSJVgZI:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-6605655725184417834</guid>
         <pubDate>Mon, 02 Nov 2009 08:22:00 -0800</pubDate>
      </item>
      <item>
         <title>How to generate a stackdump with GDB</title>
         <link>http://hype-free.blogspot.com/2009/10/how-to-generate-stackdump-with-gdb.html</link>
         <description>&lt;p&gt;&lt;a rel="nofollow" target="_blank" href="http://lh4.ggpht.com/_hrvCBhtWhJ4/SusGRj3WkMI/AAAAAAAACBQ/1x-Ca2yjupg/s1600-h/4054760074_609af75332_o2.gif"&gt;&lt;img style="display:block;float:right;" title="4054760074_609af75332_o" alt="4054760074_609af75332_o" src="http://lh4.ggpht.com/_hrvCBhtWhJ4/SusGSK3A40I/AAAAAAAACBU/DYg-8FCkbxw/4054760074_609af75332_o_thumb.gif?imgmax=800" width="121" height="121"/&gt;&lt;/a&gt;I’m not a big GDB guy, but &lt;a rel="nofollow" target="_blank" href="http://forums13.itrc.hp.com/service/forums/questionanswer.do?admit=109447627+1256915915603+28353475&amp;amp;threadId=1005951"&gt;Google always helps&lt;/a&gt;:&lt;/p&gt; &lt;ul&gt; &lt;li&gt;Create a textfile with the following content: &lt;pre&gt;set height 0
thread apply all bt
detach
quit&lt;/pre&gt; &lt;/li&gt; &lt;li&gt;Run the following command: &lt;pre&gt;gdb $EXE -pid $PID -command $TEXTFILE &amp;gt; $OUTPUTFILE&lt;/pre&gt;
where: &lt;ul&gt; &lt;li&gt;$EXE is the path to the executable &lt;/li&gt; &lt;li&gt;$PID is the PID it is running under &lt;/li&gt; &lt;li&gt;$TEXTFILE is the file where your've saved the previous commands &lt;/li&gt; &lt;li&gt;$OUTPUTFILE is the file where you would like your stackdump to be saved. &lt;/li&gt; &lt;/ul&gt; &lt;/li&gt;
&lt;/ul&gt; &lt;p&gt;The cool little crawling logo was taken from &lt;a rel="nofollow" target="_blank" href="http://www.h-i-r.net/2009/10/hack-o-lantern.html"&gt;HiR&lt;/a&gt;, head over there for an explanation.&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/35005627-6241651382873586671?l=hype-free.blogspot.com' alt=''/&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=kUFihtfnXhw:81U8ExTwC9E:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=kUFihtfnXhw:81U8ExTwC9E:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=kUFihtfnXhw:81U8ExTwC9E:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?i=kUFihtfnXhw:81U8ExTwC9E:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/Hype-free?a=kUFihtfnXhw:81U8ExTwC9E:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/Hype-free?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
         <author>cdman83</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-35005627.post-6241651382873586671</guid>
         <pubDate>Fri, 30 Oct 2009 10:29:00 -0700</pubDate>
      </item>
   </channel>
</rss><!-- fe6.pipes.re3.yahoo.com uncompressed/chunked Tue Dec 29 19:29:15 PST 2009 -->
