<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Liquidmatrix Security Digest</title>
	
	<link>http://www.liquidmatrix.org/blog</link>
	<description>Bringing Fire To The Village: Your Source For Computer, Network &amp; Information Security News</description>
	<lastBuildDate>Tue, 15 May 2012 21:20:11 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/Liquidmatrix" /><feedburner:info uri="liquidmatrix" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><image><link>http://www.liquidmatrix.org/blog/</link><url>http://www.liquidmatrix.org/images/logoLSDsmall.jpg</url><title>Liquidmatrix Security Digest</title></image><feedburner:emailServiceId>Liquidmatrix</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item>
		<title>#FreeByron is no more, long live #ByronIsFree (UPDATED) (UPDATED AGAIN)</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/d64JfW5bhTE/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/05/15/freebyron-is-no-more-long-live-byronisfree/#comments</comments>
		<pubDate>Tue, 15 May 2012 16:12:25 +0000</pubDate>
		<dc:creator>James Arlen</dc:creator>
				<category><![CDATA[Crime]]></category>
		<category><![CDATA[Ethics]]></category>
		<category><![CDATA[Freedoms]]></category>
		<category><![CDATA[Hacker]]></category>
		<category><![CDATA[Hacktivism]]></category>
		<category><![CDATA[Headlines]]></category>
		<category><![CDATA[Legal Aspects]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[Ranting]]></category>
		<category><![CDATA[Risk]]></category>
		<category><![CDATA[Security Theatre]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Terrorism]]></category>
		<category><![CDATA[Threats]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12124</guid>
		<description><![CDATA[In a decision which will be scrutinized and used as case law for years, Byron Sonne was found not guilty on all charges today. There&#8217;s a long story to be told I&#8217;m sure, but the key point is that after TWO YEARS, the government has nothing but theatre to stand behind. I&#8217;ll follow this up [...]]]></description>
			<content:encoded><![CDATA[<p>In a decision which will be scrutinized and used as case law for years, Byron Sonne was found not guilty on all charges today.</p>
<p>There&#8217;s a long story to be told I&#8217;m sure, but the key point is that after TWO YEARS, the government has nothing but theatre to stand behind. </p>
<p>I&#8217;ll follow this up later with more. </p>
<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/05/free_byron-square-300.png" alt="" title="free_byron-square-300" width="300" height="266" class="aligncenter size-full wp-image-12125" /></p>
<p>UPDATES:</p>
<p>News:</p>
<ul>
<li><a href="http://www.thestar.com/news/article/1178575--byron-sonne-verdict-expected-today-in-g20-explosives-case">Byron Sonne not guilty on G20 explosives charges</a></li>
<li><a href="http://www.cp24.com/servlet/an/local/CTVNews/20120515/120515_sonne_trial/20120515/?hub=CP24Home">Sonne acquitted on explosives, mischief charges</a></li>
<li><a href="http://www.cp24.com/servlet/an/local/CTVNews/20120515/120515_sonne_trial/20120515/?hub=CP24Home">Freed G20 activist Sonne blasts &#8216;nanny state&#8217;</a></li>
<li><a href="http://www2.macleans.ca/2012/05/15/byron-sonne-acquitted-of-all-charges/">Byron Sonne cleared of all charges</a></li>
<li><a href="http://www.cbc.ca/video/#/Shows/1221254309/ID=2235106211">CBC Video of post-verdict scrum</a></li>
<li><a href="http://toronto.openfile.ca/toronto/text/byron-sonne-found-not-guilty-all-charges-has-plans-future">Byron Sonne, Found Not Guilty On All Charges, Has Plans For The Future</a></li>
<li><a href="http://toronto.openfile.ca/toronto/text/everything-you-need-know-about-bryon-sonne-trial-timeline">Everything You Need To Know About The Byron Sonne Trial: A Timeline</a></li>
<li><a href="https://www.youtube.com/watch?gl=US&#038;v=BFi6i6GwCZM">Raw Video of post-verdict scrum</a></li>
</ul>
<p>Court Documents:<br />
<a href="http://myrcurial.com/downloads/ByronSonneVerdict.pdf">Judge Spies Verdict (scan)</a></p>
<p>As many have noted, the current Canadian government is still not really paying attention to the rights of citizens. But at least this one is done.</p>
<p>As noted by Byron (at 1:16 in the Raw Video above) he is going to work on getting his certifications back. I have communicated the verdict to ISC2 Counsel and the response (as appropriate) was that there are privacy issues regarding the discussion with Byron which must occur. I believe that ISC2 will comply with their own statements (and ethics) regarding the notion of &#8220;innocent until proven guilty&#8221; and that re-instatement will be as quick as the suspension. Of course, if they don&#8217;t &#8211; well &#8211; that&#8217;ll be something to consider too. </p>

<p><a href="http://feedads.g.doubleclick.net/~a/AHlV7GWXRTXj0_QDdwpcZDku_6U/0/da"><img src="http://feedads.g.doubleclick.net/~a/AHlV7GWXRTXj0_QDdwpcZDku_6U/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/AHlV7GWXRTXj0_QDdwpcZDku_6U/1/da"><img src="http://feedads.g.doubleclick.net/~a/AHlV7GWXRTXj0_QDdwpcZDku_6U/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=d64JfW5bhTE:7linXOmVPnc:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=d64JfW5bhTE:7linXOmVPnc:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=d64JfW5bhTE:7linXOmVPnc:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=d64JfW5bhTE:7linXOmVPnc:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=d64JfW5bhTE:7linXOmVPnc:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=d64JfW5bhTE:7linXOmVPnc:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=d64JfW5bhTE:7linXOmVPnc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/d64JfW5bhTE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/05/15/freebyron-is-no-more-long-live-byronisfree/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/05/15/freebyron-is-no-more-long-live-byronisfree/</feedburner:origLink></item>
		<item>
		<title>VMWare Vulnerability Security Advisory</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/dk14nJKD7r8/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/05/03/vmware-vulnerability-security-advisory/#comments</comments>
		<pubDate>Thu, 03 May 2012 20:58:32 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Vendor News]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12121</guid>
		<description><![CDATA[Heads up. A new VMWare vulnerability security advisory has been released. Problem Description a. VMware host memory overwrite vulnerability (data pointers) Due to a flaw in the handler function for RPC commands, it is possible to manipulate data pointers within the VMX process. This vulnerability may allow a guest user to crash the VMX process [...]]]></description>
			<content:encoded><![CDATA[<p>Heads up. A new VMWare vulnerability security advisory has been released.</p>
<blockquote><p> <b>Problem Description</b></p>
<p>a. VMware host memory overwrite vulnerability (data pointers)<br />
Due to a flaw in the handler function for RPC commands, it is possible to manipulate data pointers within the VMX process. This vulnerability may allow a guest user to crash the VMX process or potentially execute code on the host.</p>
<p><b>Workaround</b></p>
<p>Configure virtual machines to use less than 4 GB of memory. Virtual machines that have less than 4GB of memory are not affected.</p>
<p><b>Mitigation</b></p>
<p>Do not allow untrusted users access to your virtual machines. Root or Administrator level permissions are not required to exploit this issue.</p></blockquote>
<p>Source: <a href="http://www.vmware.com/security/advisories/VMSA-2012-0009.html">Article Link</a></p>

<p><a href="http://feedads.g.doubleclick.net/~a/5CWQlVEJHAY7gPNJ-Z0UwyfVWls/0/da"><img src="http://feedads.g.doubleclick.net/~a/5CWQlVEJHAY7gPNJ-Z0UwyfVWls/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/5CWQlVEJHAY7gPNJ-Z0UwyfVWls/1/da"><img src="http://feedads.g.doubleclick.net/~a/5CWQlVEJHAY7gPNJ-Z0UwyfVWls/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=dk14nJKD7r8:lhI2wNgczOY:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=dk14nJKD7r8:lhI2wNgczOY:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=dk14nJKD7r8:lhI2wNgczOY:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=dk14nJKD7r8:lhI2wNgczOY:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=dk14nJKD7r8:lhI2wNgczOY:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=dk14nJKD7r8:lhI2wNgczOY:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=dk14nJKD7r8:lhI2wNgczOY:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/dk14nJKD7r8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/05/03/vmware-vulnerability-security-advisory/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/05/03/vmware-vulnerability-security-advisory/</feedburner:origLink></item>
		<item>
		<title>Stupid Human Tricks: Security Job Interviews</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/yk9-fg7VuS8/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/30/stupid-human-tricks-security-job-interviews/#comments</comments>
		<pubDate>Mon, 30 Apr 2012 19:42:19 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Features]]></category>
		<category><![CDATA[Headlines]]></category>
		<category><![CDATA[Infosec HR]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12115</guid>
		<description><![CDATA[One of my frustrations over the years has been around interviewing candidates for security jobs. I recently had a doozy when a candidate asked &#8220;what do you guys do?&#8221; Starring blankly at the phone I had to fight to maintain my composure. I then started mentally thumbing through years of absurd responses from candidates. I [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/headasplode.jpg" alt="" title="headasplode" width="375" height="500" class="aligncenter size-full wp-image-12116" /></p>
<p>One of my frustrations over the years has been around interviewing candidates for security jobs. I recently had a doozy when a candidate asked &#8220;what do you guys do?&#8221; Starring blankly at the phone I had to fight to maintain my composure. I then started mentally thumbing through years of absurd responses from candidates. </p>
<p>I decided to ask the community to share their favourite security job interview question answers and wow&#8230;did that ever garner a response. </p>
<p>Opening statement on Twitter &#8220;I&#8217;m compiling a list of things NOT to say in an interview for a security job. Got any good ones?&#8221; </p>
<p>Here are 50(ish) responses in no particular order.  </p>
<p>Enjoy!</p>
<ol>
<li>I&#8217;m a thought leader</li>
<p></p>
<li>&#8220;What was this position again?&#8221;</li>
<p></p>
<li>&#8220;Does the workplace anti-drug policy apply to drugs I make myself?&#8221;</li>
<p></p>
<li>asking someone on the interview panel &#8220;hey so why did you leave your last gig???&#8221;</li>
<p></p>
<li>&#8220;Who is that bitch in the picture behind your desk, the one next to the picture of those three ugly kids.&#8221;</li>
<p></p>
<li>Sharepoint</li>
<p></p>
<li>I use [OSX/Linux] so I&#8217;m secure.</li>
<p></p>
<li>&#8220;How can it be secure if anyone can see the source?&#8221;</li>
<p></p>
<li>&#8220;Why wouldn&#8217;t you just use Telnet for that?&#8221;</li>
<p></p>
<li>&#8220;IT guys are dumb&#8221;; &#8220;Developers are dumb&#8221; &#8220;they expected me to work at 9pm&#8230;&#8221;</li>
<p></p>
<li>&#8220;when nobody is looking I change the homepage to meatspin&#8221;</li>
<p></p>
<li>&#8220;This one time when I hacked _ &#8230;&#8221;</li>
<p></p>
<li>Q: Describe a TCP handshake. A: I can&#8217;t. <i>NB: self declared network expert</i></li>
<p></p>
<li>Yeah, I&#8217;ve already been in your systems and, whew, I gotta say, you really need help.</li>
<p></p>
<li>&#8220;I don&#8217;t do documentation&#8221;</li>
<p></p>
<li> I only use Cisco security devices, because security begins with trusting yr vendor, and everyone<br />
trusts CSCO (Look at their stock!)</li>
<p></p>
<li>If an app has Common Criteria certification, you know it&#8217;s secure</li>
<p></p>
<li>&#8220;I broke into x, y and z sites&#8221;</li>
<p></p>
<li>You know, I hacked your company&#8217;s network once. Made a fortune off of the credit card data.</li>
<p></p>
<li>I had someone interview for a management position with a book full of documents created for previous employer</li>
<p></p>
<li>This job can be done by monkeys. Yes, I actually heard that one from a candidate.</li>
<p></p>
<li>&#8220;There&#8217;s this thing called APT.&#8221;</li>
<p></p>
<li>Do you want my Facebook username and password now?</li>
<p></p>
<li>&#8220;I know this guy Greg Evans who can be contacted for referral if needed&#8221;</li>
<p></p>
<li>I use the same password everywhere</li>
<p></p>
<li>&#8220;Admin for everybody works best.&#8221;</li>
<p></p>
<li>&#8220;I think Facebook&#8217;s handling for privacy matters is the bomb.&#8221;</li>
<p></p>
<li>mentioning a CISSP at all or citing military experience and having zero actual security experience</li>
<p></p>
<li>&#8230;and that guy with my name, yeah, that wasn&#8217;t me selling those secrets to China.</li>
<p></p>
<li>don&#8217;t speak of known security issues or problems in your existing org, if you&#8217;ll cheat on them, you&#8217;ll cheat on them</li>
<p></p>
<li>&#8220;Auditing? Naw, I&#8217;m not into the whole &#8216;logging&#8217; thing.&#8221;</li>
<p></p>
<li>What do you mean compliance != security?</li>
<p></p>
<li>Gave a guy a scenario to work through once, dude got mad, lost his temper, described people in the situation as idiots, etc.</li>
<p></p>
<li>&#8220;Will this position look good as I&#8217;m interviewing for my next gig?&#8221;</li>
<p></p>
<li>I make sure to use a complex alphanumeric+special 8+ characters password for all critical systems: passw0rd!</li>
<p></p>
<li>Turn to the CTO (Jeremiah Grossman) and ask, &#8220;What do you do here?&#8221;</li>
<p></p>
<li>&#8220;I don&#8217;t think you&#8217;ve got anything a criminal would want&#8221;</li>
<p></p>
<li>&#8220;Why infosec? One word: misanthropy. BTW, can I telecommute?&#8221;</li>
<p></p>
<li>&#8220;everything I learned about security I learned from the compliance manager at my previous Job&#8221;</li>
<p></p>
<li>&#8220;In my last job I used Nexxus a lot&#8221;</li>
<p></p>
<li>do you have flexible office hours? I usually work from my home office lab, can you pay for my internet?</li>
<p></p>
<li>&#8220;Sorry I&#8217;m late. I misplaced the printout of the email setting up the interview.&#8221;</li>
<p></p>
<li>&#8220;Why, yes, An*nym*us *was* my idea&#8230;&#8221;</li>
<p></p>
<li>Lulzsec, that was also my idea.</li>
<p></p>
<li>I&#8217;m perfect for security, because I love telling people NO!</li>
<p></p>
<li>&#8220;Can I connect my {insert droid phone brand} to your network?&#8221;</li>
<p></p>
<li>&#8220;home labs are for geeks, that&#8217;s just pointless&#8221;</li>
<p></p>
<li>How would you describe diversity? >I eat lots of Chinese and Italian foods. >Could u elaborate more? > They all taste great. #real</li>
<p></p>
<li>&#8220;I&#8217;m just applying for the job so I can keep getting my unemployment check.&#8221; (true story)</li>
<p></p>
<li>&#8220;This is a 9-5 gig, right?&#8221;</li>
<p></p>
<li>&#8220;I just read SANS Newsbites and that&#8217;s pretty much how I keep up with everything in infosec&#8221;</li>
<p></p>
<li>Worst was clothing, not comment. Kid showed up wearing a &#8220;Bart Simpson, underachiever and proud of it&#8221; t-shirt for interview.</li>
<p></p>
<li>All of my past bosses were assholes, I hope you aren&#8217;t. (paraphrasing actual interview)</li>
<p>&#8230;and the winner in my books<br />
</p>
<li>Yes. I was security lead at Sony in 2010 and 2011</li>
</ol>
<p>I received over 250 responses. Thanks everyone for contributing. Got more? Feel free to leave a comment.</p>
<p> <img src='http://www.liquidmatrix.org/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/ced/6965857205/sizes/m/in/photostream/">Ced</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/xMpKXKXkcBZNSyNlQIuo89IObzY/0/da"><img src="http://feedads.g.doubleclick.net/~a/xMpKXKXkcBZNSyNlQIuo89IObzY/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/xMpKXKXkcBZNSyNlQIuo89IObzY/1/da"><img src="http://feedads.g.doubleclick.net/~a/xMpKXKXkcBZNSyNlQIuo89IObzY/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=yk9-fg7VuS8:MWuUpjEHfoA:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=yk9-fg7VuS8:MWuUpjEHfoA:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=yk9-fg7VuS8:MWuUpjEHfoA:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=yk9-fg7VuS8:MWuUpjEHfoA:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=yk9-fg7VuS8:MWuUpjEHfoA:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=yk9-fg7VuS8:MWuUpjEHfoA:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=yk9-fg7VuS8:MWuUpjEHfoA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/yk9-fg7VuS8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/30/stupid-human-tricks-security-job-interviews/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/30/stupid-human-tricks-security-job-interviews/</feedburner:origLink></item>
		<item>
		<title>You Lose America. CISPA Passes 248-168</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/xXE6NPo_Wpg/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/26/you-lose-america-cispa-passes-248-168/#comments</comments>
		<pubDate>Fri, 27 Apr 2012 01:15:42 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Freedoms]]></category>
		<category><![CDATA[Headlines]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12110</guid>
		<description><![CDATA[In a rather bizarre twist today the vote on the CIPSA bill was moved forward and hurriedly pushed through. First off, what is the Cyber Intelligence Sharing and Protection Act or CISPA? From Wikipedia (yes, I quoted Wikipedia, get over it): The bill would allow the voluntary sharing of attack and threat information between the [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/cispa-scope.jpg" alt="" title="cispa-scope" width="450" height="337" class="aligncenter size-full wp-image-12112" /></p>
<p>In a rather bizarre twist today the vote on the CIPSA bill was moved forward and hurriedly pushed through.</p>
<p>First off, what is the Cyber Intelligence Sharing and Protection Act or CISPA?</p>
<p>From <a href="http://en.wikipedia.org/wiki/Cyber_Intelligence_Sharing_and_Protection_Act">Wikipedia</a> <i>(yes, I quoted Wikipedia, get over it)</i>: </p>
<blockquote><p>The bill would allow the voluntary sharing of attack and threat information between the U.S. government and security cleared technology and manufacturing companies to ensure the security of networks against patterns of attack;[5][dead link] the most recent version of the CISPA bill may remove any reference to intellectual property.[6][clarification needed] Several commentators have distinguished CISPA from the controversial Stop Online Piracy Act (SOPA) bill.[7][8][clarification needed] CISPA was reported out of committee on December 1, 2011.[9] CISPA has been criticized by advocates of Internet privacy and neutrality, such as the Electronic Frontier Foundation and Avaaz.org, because they feel it contains too few limits on how and when the government may monitor private information when it might become collaterally entangled in the process of passing threat information, and too few safeguards with respect to how the data may be used; they fear that such new powers may be used to find and punish file sharers and copyright infringers rather than the stated foreign spies or hackers.</p></blockquote>
<p>OK, got it. That sounds less than appealing.</p>
<p>From Computer World:</p>
<blockquote><p>Civil liberties groups, including the Center for Democracy and Technology and the American Civil Liberties Union, have opposed the bill, saying it would open up Internet communications to snooping by government agencies, including the U.S. National Security Agency.</p></blockquote>
<p>It is a bill that does smell rather foul. Earlier revisions of the bill were less insidious but, there were multiple amendments tacked onto the bill just prior to voting today. </p>
<p>Example from <a href="http://www.techdirt.com/articles/20120426/14505718671/insanity-cispa-just-got-way-worse-then-passed-rushed-vote.shtml">Techdirt</a>:</p>
<blockquote><p>Previously, CISPA allowed the government to use information for &#8220;cybersecurity&#8221; or &#8220;national security&#8221; purposes. Those purposes have not been limited or removed. Instead, three more valid uses have been added: investigation and prosecution of cybersecurity crime, protection of individuals, and <b>protection of children</b>. Cybersecurity crime is defined as any crime involving network disruption or hacking, plus any violation of the CFAA.</p></blockquote>
<p>Oh lovely&#8230;there it is again. Invoking the &#8220;protect kids&#8221; angle. This is a puerile ploy on the part of legislators to push through unsavoury legislation. <i>&#8220;Well, if you don&#8217;t support this bill you support child molesters&#8221;</i>. This of course is NOT the case. Sadly, too many voters happily gobble up the pablum they&#8217;ve been served.</p>
<p>Then there are the supporters&#8230;</p>
<blockquote><p>But supporters argued the bill is needed to help private companies and government agencies fight cyberattacks. &#8220;There are people today who are literally robbing the future of America&#8221; by attacking U.S. companies, said Representative Mike Rogers, a Michigan Republican and lead sponsor of CISPA. <b>&#8220;This is the one small thing we get to do to prepare for a bunch of folks who want to bring us down.&#8221;</b></p></blockquote>
<p>I&#8217;m sorry but, I&#8217;ll just say it&#8230; <b>COMPLETE BULLSHIT</b>.</p>
<p>A doctoral dissertation on that matter would not encompass the depth my sentiment any better than that.</p>
<p>So, who did vote in favour of this piece of legislation? Here is the <a href="http://clerk.house.gov/evs/2012/roll192.xml#Y">list of Congress critters</a> that voted yes on CISPA. </p>
<p>Pull your ankles up to your chest America. </p>
<p>This is gonna sting.</p>
<p>Source: <a href="http://www.computerworld.com/s/article/9226639/House_passes_CISPA_cyberthreat_sharing_bill_despite_privacy_concerns">Article Link</a></p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/27384147@N02/6899911172/">Ano Lobb</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/EMj596N7tS1ULf5bnMzHd2PL8Is/0/da"><img src="http://feedads.g.doubleclick.net/~a/EMj596N7tS1ULf5bnMzHd2PL8Is/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/EMj596N7tS1ULf5bnMzHd2PL8Is/1/da"><img src="http://feedads.g.doubleclick.net/~a/EMj596N7tS1ULf5bnMzHd2PL8Is/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=xXE6NPo_Wpg:soA3RTPYZHw:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=xXE6NPo_Wpg:soA3RTPYZHw:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=xXE6NPo_Wpg:soA3RTPYZHw:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=xXE6NPo_Wpg:soA3RTPYZHw:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=xXE6NPo_Wpg:soA3RTPYZHw:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=xXE6NPo_Wpg:soA3RTPYZHw:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=xXE6NPo_Wpg:soA3RTPYZHw:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/xXE6NPo_Wpg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/26/you-lose-america-cispa-passes-248-168/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/26/you-lose-america-cispa-passes-248-168/</feedburner:origLink></item>
		<item>
		<title>Onion Browser For iOS Private Browsing</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/IFwxCnNYMsc/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/26/onion-browser-for-ios-private-browsing/#comments</comments>
		<pubDate>Thu, 26 Apr 2012 14:37:34 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Headlines]]></category>
		<category><![CDATA[Mobile]]></category>
		<category><![CDATA[Web Security]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12107</guid>
		<description><![CDATA[OK, this is rather interesting. An app that provides private browsing on your iOS device. The Onion Browser for iOS private browsing provides, potentially, for a safe browsing experience in the event that your phone gets pinched by border agents. From Lifehacker: We&#8217;ve talked about ways to Tor in Chrome and Firefox before, and Onion [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/thinkclick.jpg" alt="" title="thinkclick" width="374" height="500" class="aligncenter size-full wp-image-12108" /></p>
<p>OK, this is rather interesting. An app that provides private browsing on your iOS device. The Onion Browser for iOS private browsing provides, potentially, for a safe browsing experience in the event that your phone gets pinched by border agents.</p>
<p>From Lifehacker:</p>
<blockquote><p>We&#8217;ve talked about ways to Tor in Chrome and Firefox before, and Onion Browser uses the same basic premise. It tunnels your browsing through a Tor proxy server so websites don&#8217;t see your IP address and it encrypts all of your information before it leaves your device. Loading pages in Onion Browser takes a lot longer than normal, but you&#8217;ll be completely anonymous when you&#8217;re doing it. Onion Browser is a 99¢ download for iPhone and iPad.</p></blockquote>
<p>Please note that this isn&#8217;t an endorsement of this particular app as we have not had a chance to test it just yet.</p>
<p>Source: <a href="http://lifehacker.com/5905305/onion-browser-is-an-encrypted-mobile-browser-for-ios">Article Link</a></p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/shifted/5558658910/sizes/m/in/photostream/">The Shifted Librarian</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/tFUT4e01wNKgAVf88uYVS5Q8Cbc/0/da"><img src="http://feedads.g.doubleclick.net/~a/tFUT4e01wNKgAVf88uYVS5Q8Cbc/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/tFUT4e01wNKgAVf88uYVS5Q8Cbc/1/da"><img src="http://feedads.g.doubleclick.net/~a/tFUT4e01wNKgAVf88uYVS5Q8Cbc/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=IFwxCnNYMsc:bQZKoenYDno:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=IFwxCnNYMsc:bQZKoenYDno:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=IFwxCnNYMsc:bQZKoenYDno:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=IFwxCnNYMsc:bQZKoenYDno:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=IFwxCnNYMsc:bQZKoenYDno:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=IFwxCnNYMsc:bQZKoenYDno:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=IFwxCnNYMsc:bQZKoenYDno:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/IFwxCnNYMsc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/26/onion-browser-for-ios-private-browsing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/26/onion-browser-for-ios-private-browsing/</feedburner:origLink></item>
		<item>
		<title>EU Parliament To Turn Over Passenger Data To US</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/zdJ89mgjM3M/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/23/eu-parliament-to-turn-over-passenger-data-to-us/#comments</comments>
		<pubDate>Mon, 23 Apr 2012 19:31:20 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Airline Security]]></category>
		<category><![CDATA[Headlines]]></category>
		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12101</guid>
		<description><![CDATA[So, it appears that the EU Parliament is going to turn over traveler data to the US. Not sure if they really gave this a lot of thought before pulling out the rubber stamp. One question I have is, will the US reciprocate? From BBC: The European Parliament has adopted a controversial bill clarifying US [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/freestamp.jpg" alt="" title="freestamp" width="450" height="337" class="aligncenter size-full wp-image-12102" /></p>
<p>So, it appears that the EU Parliament is going to turn over traveler data to the US. Not sure if they really gave this a lot of thought before pulling out the rubber stamp. One question I have is, will the US reciprocate?</p>
<p>From BBC:</p>
<blockquote><p>The European Parliament has adopted a controversial bill clarifying US access to personal data about airline passengers in the EU.</p>
<p>MEPs agreed by 409 votes to 226 to let the US Department of Homeland Security see data on the Passenger Name Record (PNR) , <b>under strict controls</b>.</p>
<p>Supporters say this is a vital step in the fight against terrorism.</p></blockquote>
<p>Of course it is&#8230;at least they refrained from claiming it was in order to battle kiddie porn this time. </p>
<p>So, what are these strict controls? What guarantees do EU passengers have that their information will be used to thwart evil and nothing else? </p>
<p>*crickets*</p>
<p>This stirs up a hornets nest of privacy concerns. </p>
<blockquote><p>The BBC&#8217;s Imogen Foulkes in Strasbourg says many questions remain about how the information will be used, how long the US will keep it, and who else might have access to it.</p>
<p>Some MEPs fear the deal sets a precedent and ask how the EU would respond if China or Russia asked for the same information</p></blockquote>
<p>Yeah, that&#8217;s kind what I was afraid of.</p>
<p>Source: <a href="http://m.bbc.co.uk/news/world-europe-17764365">Article Link</a></p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/bstabler/770416963/sizes/m/in/photostream/">Brad Stabler</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/4icm6NJOTO1sC0z3XAXSLP8ITg8/0/da"><img src="http://feedads.g.doubleclick.net/~a/4icm6NJOTO1sC0z3XAXSLP8ITg8/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/4icm6NJOTO1sC0z3XAXSLP8ITg8/1/da"><img src="http://feedads.g.doubleclick.net/~a/4icm6NJOTO1sC0z3XAXSLP8ITg8/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=zdJ89mgjM3M:tuqBbZhAC8I:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=zdJ89mgjM3M:tuqBbZhAC8I:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=zdJ89mgjM3M:tuqBbZhAC8I:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=zdJ89mgjM3M:tuqBbZhAC8I:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=zdJ89mgjM3M:tuqBbZhAC8I:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=zdJ89mgjM3M:tuqBbZhAC8I:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=zdJ89mgjM3M:tuqBbZhAC8I:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/zdJ89mgjM3M" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/23/eu-parliament-to-turn-over-passenger-data-to-us/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/23/eu-parliament-to-turn-over-passenger-data-to-us/</feedburner:origLink></item>
		<item>
		<title>Iran Says It’s Building A Drone Aircraft Copy</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/XE3kPjbkjHk/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/23/iran-says-its-building-a-drone-aircraft-copy/#comments</comments>
		<pubDate>Mon, 23 Apr 2012 18:49:28 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Headlines]]></category>
		<category><![CDATA[Military]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12097</guid>
		<description><![CDATA[The saga of the downed US drone aircraft in Iranian hands has found its way back into the head lines again. Now, the Iranians claim to have puzzled out the &#8220;many codes and characters&#8221;. From Nextgov: The chief of the aerospace division of the Iranian Revolutionary Guards, Gen. Amir Ali Hajizadeh, told state television that [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/decoder.jpg" alt="" title="decoder" width="450" height="449" class="aligncenter size-full wp-image-12098" /></p>
<p>The saga of the downed US drone aircraft in Iranian hands has found its way back into the head lines again. Now, the Iranians claim to have puzzled out the &#8220;many codes and characters&#8221;.</p>
<p>From Nextgov:</p>
<blockquote><p>The chief of the aerospace division of the Iranian Revolutionary Guards, Gen. Amir Ali Hajizadeh, told state television that the captured drone is a &#8220;national asset&#8221; for Iran. &#8220;There is almost no part hidden to us in this aircraft. We recovered part of the data that had been erased. There were many codes and characters. But we deciphered them by the grace of God,&#8221; Hajizadeh said.</p></blockquote>
<p>We have <b>exclusive pictures</b> of the Iranian drone prototype. It&#8217;s smaller than we imagined and not expected to do very well at high altitude or in hotter climates. No word on the nature of the revolutionary material they&#8217;re using in it&#8217;s construction.</p>
<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/drone.jpg" alt="" title="drone" width="450" height="275" class="aligncenter size-full wp-image-12099" /></p>
<p>Source: <a href="http://www.nextgov.com/nextgov/ng_20120423_1003.php">Article Link</a></p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/von_hedwig/4876606280/sizes/o/in/photostream/">Steampunk Family the von Hedwigs</a></i>)</p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/pedrovezini/6511231369/sizes/m/in/photostream/">Pedro Vezini</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/64NdNSJzrpbBf3rS8YAUM6HLRHk/0/da"><img src="http://feedads.g.doubleclick.net/~a/64NdNSJzrpbBf3rS8YAUM6HLRHk/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/64NdNSJzrpbBf3rS8YAUM6HLRHk/1/da"><img src="http://feedads.g.doubleclick.net/~a/64NdNSJzrpbBf3rS8YAUM6HLRHk/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=XE3kPjbkjHk:f7lbghqKcVw:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=XE3kPjbkjHk:f7lbghqKcVw:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=XE3kPjbkjHk:f7lbghqKcVw:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=XE3kPjbkjHk:f7lbghqKcVw:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=XE3kPjbkjHk:f7lbghqKcVw:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=XE3kPjbkjHk:f7lbghqKcVw:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=XE3kPjbkjHk:f7lbghqKcVw:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/XE3kPjbkjHk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/23/iran-says-its-building-a-drone-aircraft-copy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/23/iran-says-its-building-a-drone-aircraft-copy/</feedburner:origLink></item>
		<item>
		<title>Aviva Fires 1,300 Via Email…By Accident</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/RToTiy0f3Q0/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/23/aviva-fires-1300-via-email-by-accident/#comments</comments>
		<pubDate>Mon, 23 Apr 2012 17:57:03 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Email]]></category>
		<category><![CDATA[Headlines]]></category>
		<category><![CDATA[Legal Aspects]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12094</guid>
		<description><![CDATA[There are times when an unbelievable oops hits the headlines. This is one of those times. Apparently the insurance provider Aviva managed to fire 1,300 staffers via email From ZDNet: In an age of lacking inter-personal relations and working from home, it should come as no surprise to learn that many employees do still get [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/facepalm.jpg" alt="" title="facepalm" width="450" height="337" class="aligncenter size-full wp-image-12095" /></p>
<p>There are times when an unbelievable oops hits the headlines. This is one of those times. Apparently the insurance provider Aviva managed to fire 1,300 staffers via email </p>
<p>From ZDNet:</p>
<blockquote><p>In an age of lacking inter-personal relations and working from home, it should come as no surprise to learn that many employees do still get the boot by email.</p>
<p>But there is no excuse for Aviva in this case, however, as despite its decentralised nature, someone surely could have approached the soon-to-be former employee. Under European employment and labour laws, one can’t just sack someone for the living hell of it. There are processes, procedures — and ultimately tribunals — for when it goes does go wrong.</p>
<p>Still, a jerk move is a jerk move. Aviva, with all its wealth, importance, and ‘modern attitude’ to its workforce, should never have sacked someone by email.</p></blockquote>
<p>I could not agree more. This type of practice for terminating an employee is complete cowardice on the part of the employer. I hope that they&#8217;re made to explain their actions. </p>
<p>Source: <a href="http://www.zdnet.com/blog/london/aviva-mistakenly-sacks-1300-employees-by-email/4309">Article Link</a></p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/striatic/2192192956/sizes/m/in/photostream/">striatic</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/_0UWCaw4AbUaigSTAec6ZSHP_q0/0/da"><img src="http://feedads.g.doubleclick.net/~a/_0UWCaw4AbUaigSTAec6ZSHP_q0/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/_0UWCaw4AbUaigSTAec6ZSHP_q0/1/da"><img src="http://feedads.g.doubleclick.net/~a/_0UWCaw4AbUaigSTAec6ZSHP_q0/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=RToTiy0f3Q0:fgVbvNpNlAQ:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=RToTiy0f3Q0:fgVbvNpNlAQ:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=RToTiy0f3Q0:fgVbvNpNlAQ:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=RToTiy0f3Q0:fgVbvNpNlAQ:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=RToTiy0f3Q0:fgVbvNpNlAQ:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=RToTiy0f3Q0:fgVbvNpNlAQ:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=RToTiy0f3Q0:fgVbvNpNlAQ:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/RToTiy0f3Q0" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/23/aviva-fires-1300-via-email-by-accident/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/23/aviva-fires-1300-via-email-by-accident/</feedburner:origLink></item>
		<item>
		<title>Mercedes Adds Remote Updates</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/exVWi7_apso/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/09/mercedes-adds-remote-updates/#comments</comments>
		<pubDate>Mon, 09 Apr 2012 11:52:48 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Crime]]></category>
		<category><![CDATA[Hardware]]></category>
		<category><![CDATA[Headlines]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12088</guid>
		<description><![CDATA[Mercedes has been rolling out updates to it&#8217;s vehicles onboard systems at a rate that has proven unmanageable with USB drives. So, they have switched it out in favour of remote updates that are seamless to the vehicle owner. From Txchnologist: This new system upgrades on the fly, he said, the first such in-car application [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2012/04/mercedes.jpg" alt="" title="mercedes" width="450" height="320" class="aligncenter size-full wp-image-12089" /></p>
<p>Mercedes has been rolling out updates to it&#8217;s vehicles onboard systems at a rate that has proven unmanageable with USB drives. So, they have switched it out in favour of remote updates that are seamless to the vehicle owner. </p>
<p>From Txchnologist:</p>
<blockquote><p>This new system upgrades on the fly, he said, the first such in-car application to do so. “It’s seamless to the customer,” Link said. “I have a friend who was excited about his system upgrade, which required him to plug in his stick and leave his car running for 45 minutes. Who wants to do that? In a process called ‘reflashing,’ the Mercedes system can turn on the car operating system (CU), download the new application, then cut itself off. It doesn’t require you to do anything at all.”</p></blockquote>
<p>Um, yeah. While in principle I can see the appeal of a set up like that I&#8217;m curious as to how security is being handled. With access from 3G or 4G networks can the vehicles be reached by other parties or are these updates pulled from the vehicle onboard systems? I can&#8217;t help but think of the security in vehicles when I look back to 2006 when David Beckham had his <a href="http://arstechnica.com/old/content/2006/05/6750.ars">vehicle stolen</a> from a busy street in Spain with nothing more than a laptop.</p>
<p>Come to think of it, I could use a new ride <img src='http://www.liquidmatrix.org/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Source: <a href="http://www.txchnologist.com/2012/new-york-auto-show-upgrading-auto-software-in-a-flash">Article Link</a></p>
<p>(<i>Image used under CC from <a href="http://www.flickr.com/photos/desertspotter/4435805973/sizes/m/in/photostream/">desertspotter</a></i>)</p>

<p><a href="http://feedads.g.doubleclick.net/~a/88U4FMxjDNO_PX8stogTz3qL06Q/0/da"><img src="http://feedads.g.doubleclick.net/~a/88U4FMxjDNO_PX8stogTz3qL06Q/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/88U4FMxjDNO_PX8stogTz3qL06Q/1/da"><img src="http://feedads.g.doubleclick.net/~a/88U4FMxjDNO_PX8stogTz3qL06Q/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=exVWi7_apso:ONLSEqTz0MY:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=exVWi7_apso:ONLSEqTz0MY:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=exVWi7_apso:ONLSEqTz0MY:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=exVWi7_apso:ONLSEqTz0MY:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=exVWi7_apso:ONLSEqTz0MY:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=exVWi7_apso:ONLSEqTz0MY:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=exVWi7_apso:ONLSEqTz0MY:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/exVWi7_apso" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/09/mercedes-adds-remote-updates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/09/mercedes-adds-remote-updates/</feedburner:origLink></item>
		<item>
		<title>Link: Apple holds the master decryption key when it comes to iCloud security, privacy</title>
		<link>http://feedproxy.google.com/~r/Liquidmatrix/~3/8_WHydHXUwk/</link>
		<comments>http://www.liquidmatrix.org/blog/2012/04/05/link-apple-holds-the-master-decryption-key-when-it-comes-to-icloud-security-privacy/#comments</comments>
		<pubDate>Thu, 05 Apr 2012 05:34:22 +0000</pubDate>
		<dc:creator>Dave Lewis</dc:creator>
				<category><![CDATA[Quick One]]></category>

		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/?p=12085</guid>
		<description><![CDATA[From Ars Technica: Ars recently attempted to delve into the inner workings of the security built into Apple&#8217;s iCloud service. Though we came away reasonably certain that iCloud uses industry best practices that Apple claims it uses to protect data and privacy, we warned that your information isn&#8217;t entirely protected from prying eyes. At the [...]]]></description>
			<content:encoded><![CDATA[<p>From Ars Technica:</p>
<blockquote><p>Ars recently attempted to delve into the inner workings of the security built into Apple&#8217;s iCloud service. Though we came away reasonably certain that iCloud uses industry best practices that Apple claims it uses to protect data and privacy, we warned that your information isn&#8217;t entirely protected from prying eyes. At the heart of the issue is the fact that Apple can, at any time, review the data synced with iCloud, and under certain circumstances might share that information with legal authorities.</p>
<p>We consulted several sources to understand the implications of iCloud&#8217;s security and encryption model, and to understand what types of best practices could maximize the security and privacy of user data stored in increasingly popular cloud services like iCloud</p></blockquote>
<p>Read on.</p>
<p>Source: <a href="http://arstechnica.com/apple/news/2012/04/apple-holds-the-master-key-when-it-comes-to-icloud-security-privacy.ars">Article Link</a></p>

<p><a href="http://feedads.g.doubleclick.net/~a/sMUnZYRN4ibvEunlpHczb0td5nA/0/da"><img src="http://feedads.g.doubleclick.net/~a/sMUnZYRN4ibvEunlpHczb0td5nA/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/sMUnZYRN4ibvEunlpHczb0td5nA/1/da"><img src="http://feedads.g.doubleclick.net/~a/sMUnZYRN4ibvEunlpHczb0td5nA/1/di" border="0" ismap="true"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=8_WHydHXUwk:0z9fFmnQWkk:j9gXZds__18"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=j9gXZds__18" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=8_WHydHXUwk:0z9fFmnQWkk:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?i=8_WHydHXUwk:0z9fFmnQWkk:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=8_WHydHXUwk:0z9fFmnQWkk:I9og5sOYxJI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=I9og5sOYxJI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=8_WHydHXUwk:0z9fFmnQWkk:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=cGdyc7Q-1BI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=8_WHydHXUwk:0z9fFmnQWkk:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Liquidmatrix?a=8_WHydHXUwk:0z9fFmnQWkk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Liquidmatrix?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/8_WHydHXUwk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.liquidmatrix.org/blog/2012/04/05/link-apple-holds-the-master-decryption-key-when-it-comes-to-icloud-security-privacy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.liquidmatrix.org/blog/2012/04/05/link-apple-holds-the-master-decryption-key-when-it-comes-to-icloud-security-privacy/</feedburner:origLink></item>
	</channel>
</rss><!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using disk: basic
Database Caching 1/3 queries in 0.032 seconds using disk: basic
Object Caching 2625/2626 objects using disk: basic

Served from: www.liquidmatrix.org @ 2012-05-16 02:41:32 -->

