<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Philosophically Secure</title>
	
	<link>http://eugk.net/wordpress</link>
	<description>Eugene Kogan's blog on all things relevant, especially information security and software engineering</description>
	<pubDate>Mon, 06 Oct 2008 11:30:17 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
	<language>en</language>
			<creativeCommons:license>http://creativecommons.org/licenses/by-sa/2.5/</creativeCommons:license><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/PhilosophicallySecure" type="application/rss+xml" /><item>
		<title>Python 2.6</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/414706158/</link>
		<comments>http://eugk.net/wordpress/2008/10/06/python-26/#comments</comments>
		<pubDate>Mon, 06 Oct 2008 11:28:42 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[development]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=160</guid>
		<description><![CDATA[If you&#8217;re a Python developer, you should really read about what&#8217;s new in Python 2.6, which was just released a few days ago. There are a number of significant changes and additions, so this is a long document, but it&#8217;s worth going through. Most importantly, 2.6 is a stepping stone to the upcoming 3.0 release, [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-medium wp-image-162" title="python-logo" src="http://eugk.net/wordpress/wp-content/uploads/2008/10/python-logo.gif" alt="" width="211" height="71" />If you&#8217;re a Python developer, you should really read about <a href="http://docs.python.org/whatsnew/2.6.html">what&#8217;s new in Python 2.6</a>, which was just released a few days ago. There are a number of significant changes and additions, so this is a long document, but it&#8217;s worth going through. Most importantly, 2.6 is a stepping stone to the upcoming 3.0 release, so it&#8217;s a great way to get used to the future of Python while still having the choice to use older syntax.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=sEP7m"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=sEP7m" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=W6aBM"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=W6aBM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=kQikM"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=kQikM" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/10/06/python-26/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/10/06/python-26/</feedburner:origLink></item>
		<item>
		<title>DojoSec miniconference</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/409996656/</link>
		<comments>http://eugk.net/wordpress/2008/10/02/dojosec-miniconference/#comments</comments>
		<pubDate>Fri, 03 Oct 2008 01:58:11 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[forensics]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=152</guid>
		<description><![CDATA[I attended the first ever DojoSec minicon tonight, put on free of charge by Sun Tzu Data. The idea behind DojoSec is to have top-notch information security presentations come to our local area for one night each month. It&#8217;s kind of like bringing a small part of a security conference to your backyard.
Both of tonight&#8217;s [...]]]></description>
			<content:encoded><![CDATA[<p>I attended the first ever <a href="http://www.suntzudata.com/dojosec.htm" target="_blank">DojoSec minicon</a> tonight, put on free of charge by Sun Tzu Data. The idea behind DojoSec is to have top-notch information security presentations come to our local area for one night each month. It&#8217;s kind of like bringing a small part of a security conference to your backyard.</p>
<p>Both of tonight&#8217;s talks were very good. The first one was a technical discussion about how skilled intruders expand their accesses into corporate (or government) networks, and how they maintain access even after being discovered. A lot of information was presented on how to use a more effective incident response procedure, especially focusing on how to accurate gauge the scope of an intrusion. The speakers (Chris Daywalt and Eoghan Casey) were knowledgeable and engaging.</p>
<p>The second presenter was Johnny Long, and he was as entertaining as always - even at 9:30 pm. Of course, I&#8217;ve already seen his No-Tech Hacking talk a couple of times, so it wasn&#8217;t exactly full of surprises for me. I would say he should update the slides and the examples he uses, but I think all his spare time goes to <a href="http://ihackcharities.org/" target="_blank">Hackers for Charity</a>, which he runs.</p>
<p>Overall, it was a great event, especially considering it was the first one ever. I hope it will continue to attract high quality speakers and grow in attendance.</p>
<p><img class="alignnone size-medium wp-image-158" title="dojosec_banner" src="http://eugk.net/wordpress/wp-content/uploads/2008/10/dojosec_banner.jpg" alt="" width="280" height="60" /></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=eJp6m"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=eJp6m" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=Ygl0M"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=Ygl0M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=HzjjM"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=HzjjM" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/10/02/dojosec-miniconference/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/10/02/dojosec-miniconference/</feedburner:origLink></item>
		<item>
		<title>Does the government fear innovation?</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/409996657/</link>
		<comments>http://eugk.net/wordpress/2008/10/01/does-the-government-fear-innovation/#comments</comments>
		<pubDate>Thu, 02 Oct 2008 01:34:06 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[development]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=144</guid>
		<description><![CDATA[Yes, of course they do. They&#8217;re the government. Nothing moves quickly, and innovation is stifled 95% of the time. But alas, even Uncle Sam can&#8217;t hide under the information technology of the 90&#8217;s forever. As the web begins talk of Web 3.0 (whatever that really means), the federal government is beginning to look into taking [...]]]></description>
			<content:encoded><![CDATA[<p>Yes, of course they do. They&#8217;re the government. Nothing moves quickly, and innovation is stifled 95% of the time. But alas, even Uncle Sam can&#8217;t hide under the information technology of the 90&#8217;s forever. As the web begins talk of Web 3.0 (whatever that really means), the federal government is beginning to look into taking advantage of some of the Web 2.0 technology that has been around for a couple of years.</p>
<p>The launch of <a href="http://www.fcw.com/online/news/153673-1.html" target="_blank">A-Space, &#8220;MySpace for the intelligence community,&#8221;</a> was very publicly announced as a new attempt to foster information sharing and collaboration across agencies. But whenever you deal with sensitive or classified data, security becomes a major hurdle to data sharing.</p>
<p><a href="http://eugk.net/wordpress/wp-content/uploads/2008/10/cover_fcw.jpg"><img class="alignleft size-medium wp-image-145" title="cover_fcw" src="http://eugk.net/wordpress/wp-content/uploads/2008/10/cover_fcw.jpg" alt="" width="164" height="201" /></a>Anyway, this Federal Computer Week article, <a href="http://www.fcw.com/print/22_32/features/153910-1.html?page=1" target="_blank">&#8220;Play it safe on the interactive Web,&#8221;</a> caught my attention. It attempts to give tips to federal IT-types on how to avoid taking any risks while trying out some of the latest Web 2.0 tech. I couldn&#8217;t help but feel that the author misses the point of interactive, collaborative, service-based systems. It seems more like a list of how to safely give the appearance of venturing into these new technologies.</p>
<p>The very first suggestion is to isolate new cutting edge initiatives from the rest of the organization. Well, doesn&#8217;t that defeat a lot of the point? You can&#8217;t create a great new interactive, web-based analyst interface to query multiple, disparate databases across various agencies if you are going to keep things isolated (as an example). Tip number two: &#8220;keep an eye on XML.&#8221; Sorry, but XML is not some newfangled thing that might be useful. I&#8217;m positive that it&#8217;s already all over government IT systems. Sure, it can present new challenges in sharing data, but it also allows for new, innovative solutions to old problems. (Just remember that XML is not always the right tool for the job.)</p>
<p>I must say, the article isn&#8217;t all bad. It does bring out some issues with Web 2.0-type systems, such as the need to really validate untrusted user input. And I can&#8217;t argue with the last tip of embedding security into the development process. But overall, I think the government should be more aggressive in adopting new ideas and software technologies. Security should be included, but not a roadblock.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=UfCnm"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=UfCnm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=H6CCM"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=H6CCM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=lGcGM"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=lGcGM" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/10/01/does-the-government-fear-innovation/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/10/01/does-the-government-fear-innovation/</feedburner:origLink></item>
		<item>
		<title>45th and 46th Mersenne prime numbers discovered</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/409996658/</link>
		<comments>http://eugk.net/wordpress/2008/09/27/mersenne-prime-number-discovered/#comments</comments>
		<pubDate>Sat, 27 Sep 2008 19:37:43 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[encryption]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=139</guid>
		<description><![CDATA[A distributed computing project known as GIMPS (The Great Internet Mersenne Prime Search) was used to discover the 45th and 46th Mersenne prime numbers. These are huge numbers, with way more digits than the human mind can really grasp the size of. Every time something like this happens, I&#8217;m reminded of the incredible reliance of [...]]]></description>
			<content:encoded><![CDATA[<p>A distributed computing project known as <a href="http://www.mersenne.org/" target="_blank">GIMPS (The Great Internet Mersenne Prime Search)</a> was used to discover the 45th and 46th Mersenne prime numbers. These are huge numbers, with way more digits than the human mind can really grasp the size of. Every time something like this happens, I&#8217;m reminded of the incredible reliance of cryptography on prime numbers. Obviously, numbers this big are not exactly useful, but the process of discovering them could teach us something about primes in general. In any case, it&#8217;s an interesting mathematical achievement.</p>
<p>Some of the press coverage I&#8217;ve seen has been wrong, giving credit to UCLA mathematicians, when it was really just a computer that happened to be in UCLA, which was connected to the GIMPS network. GIMPS has thousands of computers from volunteers all over the world working on the problem simultaneously.</p>
<h3 style="text-align: center;"><span style="color: #800000;">(2<sup>37156667</sup>-1)  and  (2<sup>43112609</sup>-1)  are both prime!</span></h3>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=xwRRm"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=xwRRm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=B2WcM"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=B2WcM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=jg74M"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=jg74M" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/09/27/mersenne-prime-number-discovered/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/09/27/mersenne-prime-number-discovered/</feedburner:origLink></item>
		<item>
		<title>Django from the ground up</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/404088547/</link>
		<comments>http://eugk.net/wordpress/2008/09/26/django-from-the-ground-up/#comments</comments>
		<pubDate>Fri, 26 Sep 2008 19:54:38 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[development]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=131</guid>
		<description><![CDATA[I love learning new technologies by first getting a quick overview, and then looking at lots of examples. This method usually gets me up and running fast, and helps me know what to focus on when I do further reading to go in depth. Nowadays, screencasts are the trendy way of doing demos, and they&#8217;re [...]]]></description>
			<content:encoded><![CDATA[<p>I love learning new technologies by first getting a quick overview, and then looking at lots of examples. This method usually gets me up and running fast, and helps me know what to focus on when I do further reading to go in depth. Nowadays, screencasts are the trendy way of doing demos, and they&#8217;re really quite good at helping people understand how something is done.</p>
<p>In this case, I&#8217;m talking more about programming - in particular with Django (the Python-based web framework). <a href="http://thisweekindjango.com/screencasts/" target="_blank">This Week in Django</a>, which I had never heard of previously, has created an awesome series of screencasts to help users hit the ground running. They cover the basics, like installation and project creation, all the way to user authentication and the forms library.</p>
<p><a href="http://thisweekindjango.com/screencasts/">The series is worth checking out</a> even if you already know how to use Django in general. You might pick up a few tips, or discover a better way of doing something.</p>
<p><a href="http://eugk.net/wordpress/wp-content/uploads/2008/07/django.gif"><img class="alignnone size-medium wp-image-95" title="django" src="http://eugk.net/wordpress/wp-content/uploads/2008/07/django.gif" alt="" width="117" height="41" /></a></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=kq1Rl"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=kq1Rl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=XBxqL"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=XBxqL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=3rXKL"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=3rXKL" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/09/26/django-from-the-ground-up/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/09/26/django-from-the-ground-up/</feedburner:origLink></item>
		<item>
		<title>Sarah Palin E-Mail Hacked</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/396418080/</link>
		<comments>http://eugk.net/wordpress/2008/09/18/sarah-palin-e-mail-hacked/#comments</comments>
		<pubDate>Thu, 18 Sep 2008 17:46:43 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[hacking]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/2008/09/18/sarah-palin-e-mail-hacked/</guid>
		<description><![CDATA[I know this sucks when it happens to you, especially if you&#8217;re famous, but it really is kind of funny how easy it was.
As detailed in the postings, the Palin hack didn&#8217;t require any real skill. Instead, the hacker simply reset Palin&#8217;s password using her birthdate, ZIP code and information about where she met her [...]]]></description>
			<content:encoded><![CDATA[<p>I know this sucks when it happens to you, especially if you&#8217;re famous, but it really is kind of funny how easy it was.</p>
<blockquote><p>As detailed in the postings, the Palin hack didn&#8217;t require any real skill. Instead, the hacker simply reset Palin&#8217;s password using her birthdate, ZIP code and information about where she met her spouse &#8212; the security question on her Yahoo account, which was answered (Wasilla High) by a simple Google search. [<a href="http://blog.wired.com/27bstroke6/2008/09/palin-e-mail-ha.html">Threat Level from Wired.com</a>]</p></blockquote>
<p>This definitely makes a good case for <a href="http://searchsecurity.techtarget.com/sDefinition/0,,sid14_gci992919,00.html" target="_blank">two-factor authentication</a>. That way just having the password would not be good enough to log in to her account - you would also need the physical token (like a SecurID) that she would own.</p>
<p><img class="alignnone" title="Sarah Palin" src="http://www.extrememortman.com/wp-content/uploads/2008/06/Sarah%20Palin%20Alaska%20from%20Patriot%20Room.JPG" alt="" width="194" height="254" /></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=xCKgl"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=xCKgl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=NjG1L"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=NjG1L" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=R7JHL"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=R7JHL" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/09/18/sarah-palin-e-mail-hacked/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/09/18/sarah-palin-e-mail-hacked/</feedburner:origLink></item>
		<item>
		<title>iPhones have Eyes</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/390602526/</link>
		<comments>http://eugk.net/wordpress/2008/09/12/iphones-have-eyes/#comments</comments>
		<pubDate>Fri, 12 Sep 2008 11:55:41 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[apple]]></category>

		<category><![CDATA[forensics]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/2008/09/12/iphones-have-eyes/</guid>
		<description><![CDATA[Here&#8217;s an interesting story of unintended consequences. iPhone users, you know how when you press the Home button, the screen you&#8217;re looking at shrinks away as the main menu comes up? Well, that&#8217;s a pretty simple graphics trick to do, but it does require treating the current screen as an image. So, each time the [...]]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s an interesting story of unintended consequences. iPhone users, you know how when you press the Home button, the screen you&#8217;re looking at shrinks away as the main menu comes up? Well, that&#8217;s a pretty simple graphics trick to do, but it does require treating the current screen as an image. So, each time the iPhone needs to perform that user interface magic, it takes a screen shot of whatever you happen to be doing.</p>
<p>That basically means that there is a pretty good record of all your activity throughout the iPhone, including stuff you do in Safari, Mail, or any other apps. In theory, the screen shots are only temporary and get deleted automatically. But just like on any other computer storage device, deleting data usually does not really mean it&#8217;s gone.</p>
<p>The article below talks about how computer forensics investigators have been using this unintended consequence to their advantage. It&#8217;s actually helped them discover critical evidence in some pretty serious cases.</p>
<p>But from a personal privacy stand point, this kinda sucks. Assuming Apple wants to keep this pretty feature around, one solution would be to securely wipe the screen shot as soon as it&#8217;s done being used. Another possibility is to make sure that the image is always written to the same file and location on disk, so that you can only easily recover the most recent one. Anyway, I have a feeling this issue will stick around for a while, so just be aware of the consequence.</p>
<p><a href="http://blog.wired.com/gadgets/2008/09/hacker-says-sec.html">IPhone Takes Screenshots of Everything You Do | Gadget Lab from Wired.com</a>.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=7cpBl"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=7cpBl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=0G1nL"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=0G1nL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=YGZVL"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=YGZVL" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/09/12/iphones-have-eyes/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/09/12/iphones-have-eyes/</feedburner:origLink></item>
		<item>
		<title>Python gives you wings</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/366298756/</link>
		<comments>http://eugk.net/wordpress/2008/08/15/python-gives-you-wings/#comments</comments>
		<pubDate>Sat, 16 Aug 2008 01:16:37 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[development]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=103</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p><a href="http://xkcd.com/463/" target="_self"><img src="http://imgs.xkcd.com/comics/python.png" alt="" /></a></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=FdW6Bk"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=FdW6Bk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=M5l64K"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=M5l64K" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=eGYISK"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=eGYISK" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/08/15/python-gives-you-wings/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/08/15/python-gives-you-wings/</feedburner:origLink></item>
		<item>
		<title>CloudAV prototypes anti-virus scanning via cloud computing</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/363562835/</link>
		<comments>http://eugk.net/wordpress/2008/08/11/cloudav-prototypes-anti-virus-scanning-via-cloud-computing/#comments</comments>
		<pubDate>Mon, 11 Aug 2008 23:09:19 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[networking]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[tech]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/2008/08/11/cloudav-prototypes-anti-virus-scanning-via-cloud-computing/</guid>
		<description><![CDATA[This is interesting research, but is it something you would use?
The researchers&#8217; new approach, called CloudAV, moves antivirus functionality into the &#8220;network cloud&#8221; and off personal computers. CloudAV analyzes suspicious files using multiple antivirus and behavioral detection programs simultaneously.
In general, that&#8217;s not a bad idea. It might save a few CPU cycles on your local [...]]]></description>
			<content:encoded><![CDATA[<p>This is interesting research, but is it something you would use?</p>
<blockquote><p>The researchers&#8217; new approach, called CloudAV, moves antivirus functionality into the &#8220;network cloud&#8221; and off personal computers. CloudAV analyzes suspicious files using multiple antivirus and behavioral detection programs simultaneously.</p></blockquote>
<p>In general, that&#8217;s not a bad idea. It might save a few CPU cycles on your local workstation by not having to directly virus scan files. Then again, you have to use network resources uploading each file to the cloud, where it is scanned for you.</p>
<blockquote><p>Each time a computer or device receives a new document or program, that item is automatically detected and sent to the antivirus cloud for analysis.</p></blockquote>
<p>The privacy concerns here are obvious. Would you trust CloudAV to receive a copy of every file you want to virus scan? How sure can you be that they don&#8217;t use the contents for something else, or accidentally leak private information?</p>
<p>I think this idea has more merit as an internal virus scanning system for a large organization. That way sensitive data doesn&#8217;t have to leave the corporate boundary, or be sent to a third party. The benefit is that you have a more thorough and updated virus scanning engine, possibly using several different products at once.</p>
<p><a href="http://www.ns.umich.edu/htdocs/releases/story.php?id=6666">Researchers develop next-generation antivirus system</a>.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=BbCQsk"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=BbCQsk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=s9zlHK"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=s9zlHK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=rWzdRK"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=rWzdRK" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/08/11/cloudav-prototypes-anti-virus-scanning-via-cloud-computing/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/08/11/cloudav-prototypes-anti-virus-scanning-via-cloud-computing/</feedburner:origLink></item>
		<item>
		<title>Big Doings with Little Languages</title>
		<link>http://feeds.feedburner.com/~r/PhilosophicallySecure/~3/360702186/</link>
		<comments>http://eugk.net/wordpress/2008/08/09/big-doings-with-little-languages/#comments</comments>
		<pubDate>Sun, 10 Aug 2008 00:43:26 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
		
		<category><![CDATA[development]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=97</guid>
		<description><![CDATA[I recently started reading Dr. Dobb&#8217;s Journal again, and quickly came across this article on Ruby. It goes beyond just talking about how Ruby is really gaining momentum as a serious enterprise programming language, especially for dynamic web apps. The article also mentions two supposed new technologies from Microsoft: APAX and ARAX. Yep, that&#8217;s basically [...]]]></description>
			<content:encoded><![CDATA[<p>I recently started reading Dr. Dobb&#8217;s Journal again, and quickly came across <a href="http://www.ddj.com/web-development/209900551?cid=RSSfeed_DDJ_All" target="_blank">this article on Ruby</a>. It goes beyond just talking about how Ruby is really gaining momentum as a serious enterprise programming language, especially for dynamic web apps. The article also mentions two supposed new technologies from Microsoft: A<strong>P</strong>AX and A<strong>R</strong>AX. Yep, that&#8217;s basically A<strong>J</strong>AX with <strong>P</strong>ython or <strong>R</strong>uby instead of the <strong>J</strong>avaScript. Unfortunately, I haven&#8217;t really seen anything official about either APAX or ARAX, except maybe <a href="http://community.research.microsoft.com/blogs/savasweblog/archive/2008/06/06/arax-vs-ajax-and-the-unfortunate-perception-towards-microsoft.aspx" target="_blank">this post from Savas</a> (a Microsoft engineer). As a Python fan, I&#8217;m looking forward to more information becoming available.</p>
<p>On a side note, I recently learned that Ruby treats zero as a true value. I find that rather irritating.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=z582Lk"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=z582Lk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=j5KxoK"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=j5KxoK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/PhilosophicallySecure?a=GhMhNK"><img src="http://feeds.feedburner.com/~f/PhilosophicallySecure?i=GhMhNK" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://eugk.net/wordpress/2008/08/09/big-doings-with-little-languages/feed/</wfw:commentRss>
		<feedburner:origLink>http://eugk.net/wordpress/2008/08/09/big-doings-with-little-languages/</feedburner:origLink></item>
	</channel>
</rss>
