<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>SecMusings</title>
	
	<link>http://shermansolutionsllc.com/secmusings</link>
	<description>Andy's Reflections on Technology and Security</description>
	<lastBuildDate>Mon, 27 Apr 2009 14:16:48 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<geo:lat>40.798502</geo:lat><geo:long>-73.96811</geo:long><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/Secmusings" type="application/rss+xml" /><feedburner:feedFlare href="http://add.my.yahoo.com/rss?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecmusings" src="http://us.i1.yimg.com/us.yimg.com/i/us/my/addtomyyahoo4.gif">Subscribe with My Yahoo!</feedburner:feedFlare><feedburner:feedFlare href="http://www.newsgator.com/ngs/subscriber/subext.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecmusings" src="http://www.newsgator.com/images/ngsub1.gif">Subscribe with NewsGator</feedburner:feedFlare><feedburner:feedFlare href="http://feeds.my.aol.com/add.jsp?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecmusings" src="http://o.aolcdn.com/favorites.my.aol.com/webmaster/ffclient/webroot/locale/en-US/images/myAOLButtonSmall.gif">Subscribe with My AOL</feedburner:feedFlare><feedburner:feedFlare href="http://www.bloglines.com/sub/http://feeds.feedburner.com/Secmusings" src="http://www.bloglines.com/images/sub_modern11.gif">Subscribe with Bloglines</feedburner:feedFlare><feedburner:feedFlare href="http://www.netvibes.com/subscribe.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecmusings" src="http://www.netvibes.com/img/add2netvibes.gif">Subscribe with Netvibes</feedburner:feedFlare><feedburner:feedFlare href="http://fusion.google.com/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FSecmusings" src="http://buttons.googlesyndication.com/fusion/add.gif">Subscribe with Google</feedburner:feedFlare><feedburner:feedFlare href="http://www.pageflakes.com/subscribe.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecmusings" src="http://www.pageflakes.com/ImageFile.ashx?instanceId=Static_4&amp;fileName=ATP_blu_91x17.gif">Subscribe with Pageflakes</feedburner:feedFlare><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
		<title>Cybersecurity Bill of 2009</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/QsLkLDjwePg/51</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/51#comments</comments>
		<pubDate>Mon, 27 Apr 2009 14:16:18 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Policy and Compliance]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=51</guid>
		<description><![CDATA[Steve Bellovin has an excellent analysis of the CyberSecurity Bill of 2009 on his blog.  It is a long and thoughtful piece that you should read for yourself rather than having me try to summarize it.



Share and Enjoy:


	
	
	
	
	
	
	
	
	
	
	
	
	
	


]]></description>
			<content:encoded><![CDATA[<p>Steve Bellovin has an excellent analysis of the <a href="http://www.cs.columbia.edu/~smb/blog/2009-04/2009-04-12.html">CyberSecurity Bill of 2009</a> on his blog.  It is a long and thoughtful piece that you should read for yourself rather than having me try to summarize it.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Cybersecurity%20Bill%20of%202009&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;t=Cybersecurity%20Bill%20of%202009" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Cybersecurity%20Bill%20of%202009%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=Steve%20Bellovin%20has%20an%20excellent%20analysis%20of%20the%20CyberSecurity%20Bill%20of%202009%20on%20his%20blog.%20%20It%20is%20a%20long%20and%20thoughtful%20piece%20that%20you%20should%20read%20for%20yourself%20rather%20than%20having%20me%20try%20to%20summarize%20it." title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009&amp;bodytext=Steve%20Bellovin%20has%20an%20excellent%20analysis%20of%20the%20CyberSecurity%20Bill%20of%202009%20on%20his%20blog.%20%20It%20is%20a%20long%20and%20thoughtful%20piece%20that%20you%20should%20read%20for%20yourself%20rather%20than%20having%20me%20try%20to%20summarize%20it." title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009&amp;notes=Steve%20Bellovin%20has%20an%20excellent%20analysis%20of%20the%20CyberSecurity%20Bill%20of%202009%20on%20his%20blog.%20%20It%20is%20a%20long%20and%20thoughtful%20piece%20that%20you%20should%20read%20for%20yourself%20rather%20than%20having%20me%20try%20to%20summarize%20it." title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009&amp;annotation=Steve%20Bellovin%20has%20an%20excellent%20analysis%20of%20the%20CyberSecurity%20Bill%20of%202009%20on%20his%20blog.%20%20It%20is%20a%20long%20and%20thoughtful%20piece%20that%20you%20should%20read%20for%20yourself%20rather%20than%20having%20me%20try%20to%20summarize%20it." title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Cybersecurity%20Bill%20of%202009&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;title=Cybersecurity%20Bill%20of%202009" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F51&amp;submitHeadline=Cybersecurity%20Bill%20of%202009&amp;submitSummary=Steve%20Bellovin%20has%20an%20excellent%20analysis%20of%20the%20CyberSecurity%20Bill%20of%202009%20on%20his%20blog.%20%20It%20is%20a%20long%20and%20thoughtful%20piece%20that%20you%20should%20read%20for%20yourself%20rather%20than%20having%20me%20try%20to%20summarize%20it.&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=QsLkLDjwePg:3yqhGCnkyus:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/51/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/51</feedburner:origLink></item>
		<item>
		<title>Devolution</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/_xlmg81SSyo/46</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/46#comments</comments>
		<pubDate>Thu, 23 Apr 2009 03:14:56 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[We can't make this stuff up]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=46</guid>
		<description><![CDATA[A hat tip to Bruce Schneir for spotting this one.  The BBC is reporting that the NHS Central Lancashire backed up health data on 6,360 prisoners and ex-prisoners by copying it on to a USB stick.  They even encrypted the data.
Then they lost the stick.
With a yellow sticky attached to it with the password.
We [...]]]></description>
			<content:encoded><![CDATA[<p>A hat tip to <a href="http://www.schneier.com/blog/archives/2009/04/lessons_in_key.html">Bruce Schneir</a> for spotting this one.  The <a href="http://news.bbc.co.uk/1/hi/england/lancashire/8003757.stm">BBC</a> is reporting that the NHS Central Lancashire backed up health data on 6,360 prisoners and ex-prisoners by copying it on to a USB stick.  They even encrypted the data.</p>
<p>Then they lost the stick.</p>
<p>With a yellow sticky attached to it with the password.</p>
<p>We really can&#8217;t make this stuff up.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Devolution&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;t=Devolution" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Devolution%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=A%20hat%20tip%20to%20Bruce%20Schneir%20for%20spotting%20this%20one.%C2%A0%20The%20BBC%20is%20reporting%20that%20the%20NHS%20Central%20Lancashire%20backed%20up%20health%20data%20on%206%2C360%20prisoners%20and%20ex-prisoners%20by%20copying%20it%20on%20to%20a%20USB%20stick.%20%20They%20even%20encrypted%20the%20data.%0D%0A%0D%0AThen%20they%20lost%20the%20s" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution&amp;bodytext=A%20hat%20tip%20to%20Bruce%20Schneir%20for%20spotting%20this%20one.%C2%A0%20The%20BBC%20is%20reporting%20that%20the%20NHS%20Central%20Lancashire%20backed%20up%20health%20data%20on%206%2C360%20prisoners%20and%20ex-prisoners%20by%20copying%20it%20on%20to%20a%20USB%20stick.%20%20They%20even%20encrypted%20the%20data.%0D%0A%0D%0AThen%20they%20lost%20the%20s" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution&amp;notes=A%20hat%20tip%20to%20Bruce%20Schneir%20for%20spotting%20this%20one.%C2%A0%20The%20BBC%20is%20reporting%20that%20the%20NHS%20Central%20Lancashire%20backed%20up%20health%20data%20on%206%2C360%20prisoners%20and%20ex-prisoners%20by%20copying%20it%20on%20to%20a%20USB%20stick.%20%20They%20even%20encrypted%20the%20data.%0D%0A%0D%0AThen%20they%20lost%20the%20s" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution&amp;annotation=A%20hat%20tip%20to%20Bruce%20Schneir%20for%20spotting%20this%20one.%C2%A0%20The%20BBC%20is%20reporting%20that%20the%20NHS%20Central%20Lancashire%20backed%20up%20health%20data%20on%206%2C360%20prisoners%20and%20ex-prisoners%20by%20copying%20it%20on%20to%20a%20USB%20stick.%20%20They%20even%20encrypted%20the%20data.%0D%0A%0D%0AThen%20they%20lost%20the%20s" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Devolution&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;title=Devolution" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F46&amp;submitHeadline=Devolution&amp;submitSummary=A%20hat%20tip%20to%20Bruce%20Schneir%20for%20spotting%20this%20one.%C2%A0%20The%20BBC%20is%20reporting%20that%20the%20NHS%20Central%20Lancashire%20backed%20up%20health%20data%20on%206%2C360%20prisoners%20and%20ex-prisoners%20by%20copying%20it%20on%20to%20a%20USB%20stick.%20%20They%20even%20encrypted%20the%20data.%0D%0A%0D%0AThen%20they%20lost%20the%20s&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=_xlmg81SSyo:ezDtZmKYKiE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/46/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/46</feedburner:origLink></item>
		<item>
		<title>Captcha? Gotcha</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/NBRIJ9958Yw/36</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/36#comments</comments>
		<pubDate>Mon, 06 Apr 2009 13:04:09 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Random Musings]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=36</guid>
		<description><![CDATA[Beware of security questions that you didn&#8217;t create!  From XKCD (http://xkcd.com/565/)




Share and Enjoy:


	
	
	
	
	
	
	
	
	
	
	
	
	
	


]]></description>
			<content:encoded><![CDATA[<p>Beware of security questions that you didn&#8217;t create!  From XKCD (http://xkcd.com/565/)</p>
<p><img class="alignnone" title="Security Question" src="http://imgs.xkcd.com/comics/security_question.png" alt="" width="459" height="133" /></p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Captcha%3F%20Gotcha&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;t=Captcha%3F%20Gotcha" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Captcha%3F%20Gotcha%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=Beware%20of%20security%20questions%20that%20you%20didn%27t%20create%21%C2%A0%20From%20XKCD%20%28http%3A%2F%2Fxkcd.com%2F565%2F%29%0D%0A%0D%0A" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha&amp;bodytext=Beware%20of%20security%20questions%20that%20you%20didn%27t%20create%21%C2%A0%20From%20XKCD%20%28http%3A%2F%2Fxkcd.com%2F565%2F%29%0D%0A%0D%0A" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha&amp;notes=Beware%20of%20security%20questions%20that%20you%20didn%27t%20create%21%C2%A0%20From%20XKCD%20%28http%3A%2F%2Fxkcd.com%2F565%2F%29%0D%0A%0D%0A" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha&amp;annotation=Beware%20of%20security%20questions%20that%20you%20didn%27t%20create%21%C2%A0%20From%20XKCD%20%28http%3A%2F%2Fxkcd.com%2F565%2F%29%0D%0A%0D%0A" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Captcha%3F%20Gotcha&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;title=Captcha%3F%20Gotcha" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F36&amp;submitHeadline=Captcha%3F%20Gotcha&amp;submitSummary=Beware%20of%20security%20questions%20that%20you%20didn%27t%20create%21%C2%A0%20From%20XKCD%20%28http%3A%2F%2Fxkcd.com%2F565%2F%29%0D%0A%0D%0A&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=NBRIJ9958Yw:C9-zsAJzLI8:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/36/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/36</feedburner:origLink></item>
		<item>
		<title>Not out of the Conficker woods yet</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/rPkrQ8E3Zlk/33</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/33#comments</comments>
		<pubDate>Sun, 05 Apr 2009 15:12:21 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=33</guid>
		<description><![CDATA[Dan Kaminsky has a very good call for continued vigilance against Conficker. Entitled &#8220;A Marathon, Not a Sprint&#8221; he writes:
Of course, you may be thinking:  The world didn&#8217;t come to an end.  Clearly, this whole thing was just a Y2K hypefest.  I&#8217;m sorry the bad guys aren&#8217;t quite the eschatologists some people would like them [...]]]></description>
			<content:encoded><![CDATA[<p>Dan Kaminsky has a very good <a href="http://www.doxpara.com/?p=1300/trackback/">call for continued vigilance against Conficker.</a> Entitled &#8220;A Marathon, Not a Sprint&#8221; he writes:</p>
<blockquote><p>Of course, you may be thinking:  The world didn&#8217;t come to an end.  Clearly, this whole thing was just a Y2K hypefest.  I&#8217;m sorry the bad guys aren&#8217;t quite the eschatologists some people would like them to be, but <em>somebody&#8217;s</em> been investing extraordinary amounts of resources making a worm very difficult to kill.  It&#8217;s not like there was a contingent of rogue coders, sitting around figuring out where they could put two-character date fields after January 1st, 2001.  There&#8217;s a bad guy out there, and while we shouldn&#8217;t panic, we shouldn&#8217;t quite ignore the situation either.</p></blockquote>
<p>I agree with his advice.  Don&#8217;t panic, but don&#8217;t drop your guard either.  Now that network based scanners can spot this, the owners of enterprise networks should be scanning and cleaning up.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;t=Not%20out%20of%20the%20Conficker%20woods%20yet" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Not%20out%20of%20the%20Conficker%20woods%20yet%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=Dan%20Kaminsky%20has%20a%20very%20good%20call%20for%20continued%20vigilance%20against%20Conficker.%20Entitled%20%22A%20Marathon%2C%20Not%20a%20Sprint%22%20he%20writes%3A%0D%0AOf%20course%2C%20you%20may%20be%20thinking%3A%C2%A0%20The%20world%20didn%27t%20come%20to%20an%20end.%C2%A0%20Clearly%2C%20this%20whole%20thing%20was%20just%20a%20Y2K%20hypefest.%C2%A0%20I%27m" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;bodytext=Dan%20Kaminsky%20has%20a%20very%20good%20call%20for%20continued%20vigilance%20against%20Conficker.%20Entitled%20%22A%20Marathon%2C%20Not%20a%20Sprint%22%20he%20writes%3A%0D%0AOf%20course%2C%20you%20may%20be%20thinking%3A%C2%A0%20The%20world%20didn%27t%20come%20to%20an%20end.%C2%A0%20Clearly%2C%20this%20whole%20thing%20was%20just%20a%20Y2K%20hypefest.%C2%A0%20I%27m" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;notes=Dan%20Kaminsky%20has%20a%20very%20good%20call%20for%20continued%20vigilance%20against%20Conficker.%20Entitled%20%22A%20Marathon%2C%20Not%20a%20Sprint%22%20he%20writes%3A%0D%0AOf%20course%2C%20you%20may%20be%20thinking%3A%C2%A0%20The%20world%20didn%27t%20come%20to%20an%20end.%C2%A0%20Clearly%2C%20this%20whole%20thing%20was%20just%20a%20Y2K%20hypefest.%C2%A0%20I%27m" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;annotation=Dan%20Kaminsky%20has%20a%20very%20good%20call%20for%20continued%20vigilance%20against%20Conficker.%20Entitled%20%22A%20Marathon%2C%20Not%20a%20Sprint%22%20he%20writes%3A%0D%0AOf%20course%2C%20you%20may%20be%20thinking%3A%C2%A0%20The%20world%20didn%27t%20come%20to%20an%20end.%C2%A0%20Clearly%2C%20this%20whole%20thing%20was%20just%20a%20Y2K%20hypefest.%C2%A0%20I%27m" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;title=Not%20out%20of%20the%20Conficker%20woods%20yet" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F33&amp;submitHeadline=Not%20out%20of%20the%20Conficker%20woods%20yet&amp;submitSummary=Dan%20Kaminsky%20has%20a%20very%20good%20call%20for%20continued%20vigilance%20against%20Conficker.%20Entitled%20%22A%20Marathon%2C%20Not%20a%20Sprint%22%20he%20writes%3A%0D%0AOf%20course%2C%20you%20may%20be%20thinking%3A%C2%A0%20The%20world%20didn%27t%20come%20to%20an%20end.%C2%A0%20Clearly%2C%20this%20whole%20thing%20was%20just%20a%20Y2K%20hypefest.%C2%A0%20I%27m&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=rPkrQ8E3Zlk:sYmijJ5Jol4:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/33/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/33</feedburner:origLink></item>
		<item>
		<title>Conficker “doomsday” passes without incident</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/yh_gxlXDjfw/24</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/24#comments</comments>
		<pubDate>Thu, 02 Apr 2009 19:24:50 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=24</guid>
		<description><![CDATA[Security Wire Daily (among many other sources) reports that the April 1st detonation date for the Conficker / Downadup worm passed without incident. For those who have not been paying attention, Conficker is a worm that exploits a vulnerability in the Microsoft Windows RPC code to install itself.  The payload is aimed at forming a [...]]]></description>
			<content:encoded><![CDATA[<p>Security Wire Daily (among many other sources) <a href="http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1352618,00.html/trackback">reports</a> that the April 1st detonation date for the Conficker / Downadup worm passed without incident. For those who have not been paying attention, Conficker is a worm that exploits a vulnerability in the Microsoft Windows RPC code to install itself.  The payload is aimed at forming a large (between 9 and 15 million hosts so far) botnet.  The command and control channel is an outbound connection to a host selected from a pool of domain names generated by algorithm.  Largely due to the efforts of the <a href="http://www.confickerworkinggroup.org/wiki/">Conficker Working Group</a> the domain generation algorithm was cracked and registrars cooperated to prevent (or revoke) registration of those domains.  Thanks to that effort, very few of those millions of computers were actually able to reach an update server, which has kept these machines from getting instructions to do anything nastier than spreading.</p>
<p>The Conficker Working Group is a (rare) collaboration among a broad spectrum of technology companies and organizations including Microsoft, Afilias, ICANN, Neustar, Verisign, CNNIC, Public Internet Registry, Global Domains International, Inc., M1D Global, AOL, Symantec, F-Secure, ISC, researchers from Georgia Tech, The Shadowserver Foundation, Arbor Networks and Support Intelligence. Their work was aimed at both detection (hence the AV companies) and keeping the worm from phoning home (the registrars and ICANN).</p>
<p>Reports are that some small percentage of infected machines did manage to connect to an update server, but did not immediately change their behavior.  This has led some to speculate that the April 1 date was a blind and the worst may be yet to come.  Certainly, it is no time for complacency, and organizations should remain vigilant in detecting and cleaning up Conficker-infected machines.</p>
<p>The most interesting work actually came over the weekend on the detection front.  Dan Kaminsky <a href="http://www.doxpara.com/?p=1285/trackback">reports on work</a> he did jointly with Tillman Werner and Felix Leder of <a href="http://www.honeynet.org/">The Honeynet Project</a> to detect infected machines from the network rather than the host. The authors of Conficker want to protect their botnet from poaching, so after they own a host they patch the buffer overflow that let them in.  Werner and Leder exploited the differences between the Conficker patch and the official Microsoft patch to develop a malformed RPC request that will elicit different responses from healthy and infected machines, allowing detection.  This is vital to remediating infections because the worm disables Windows update and any security software it finds on the machine to avoid detection.</p>
<p>In an amazing piece of coordination, the group figured this out last Friday and working code was in the major vulnerability scanners by Monday.  I don&#8217;t impress easily, but I&#8217;m impressed.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;t=Conficker%20%22doomsday%22%20passes%20without%20incident" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Conficker%20%22doomsday%22%20passes%20without%20incident%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=Security%20Wire%20Daily%20%28among%20many%20other%20sources%29%20reports%20that%20the%20April%201st%20detonation%20date%20for%20the%20Conficker%20%2F%20Downadup%20worm%20passed%20without%20incident.%20For%20those%20who%20have%20not%20been%20paying%20attention%2C%20Conficker%20is%20a%20worm%20that%20exploits%20a%20vulnerability%20in%20th" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;bodytext=Security%20Wire%20Daily%20%28among%20many%20other%20sources%29%20reports%20that%20the%20April%201st%20detonation%20date%20for%20the%20Conficker%20%2F%20Downadup%20worm%20passed%20without%20incident.%20For%20those%20who%20have%20not%20been%20paying%20attention%2C%20Conficker%20is%20a%20worm%20that%20exploits%20a%20vulnerability%20in%20th" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;notes=Security%20Wire%20Daily%20%28among%20many%20other%20sources%29%20reports%20that%20the%20April%201st%20detonation%20date%20for%20the%20Conficker%20%2F%20Downadup%20worm%20passed%20without%20incident.%20For%20those%20who%20have%20not%20been%20paying%20attention%2C%20Conficker%20is%20a%20worm%20that%20exploits%20a%20vulnerability%20in%20th" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;annotation=Security%20Wire%20Daily%20%28among%20many%20other%20sources%29%20reports%20that%20the%20April%201st%20detonation%20date%20for%20the%20Conficker%20%2F%20Downadup%20worm%20passed%20without%20incident.%20For%20those%20who%20have%20not%20been%20paying%20attention%2C%20Conficker%20is%20a%20worm%20that%20exploits%20a%20vulnerability%20in%20th" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;title=Conficker%20%22doomsday%22%20passes%20without%20incident" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F24&amp;submitHeadline=Conficker%20%22doomsday%22%20passes%20without%20incident&amp;submitSummary=Security%20Wire%20Daily%20%28among%20many%20other%20sources%29%20reports%20that%20the%20April%201st%20detonation%20date%20for%20the%20Conficker%20%2F%20Downadup%20worm%20passed%20without%20incident.%20For%20those%20who%20have%20not%20been%20paying%20attention%2C%20Conficker%20is%20a%20worm%20that%20exploits%20a%20vulnerability%20in%20th&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=yh_gxlXDjfw:wwOx9Pd1tcA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/24/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/24</feedburner:origLink></item>
		<item>
		<title>Things that make you go … “Why??”</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/hPWbM0eJKlI/20</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/20#comments</comments>
		<pubDate>Fri, 27 Mar 2009 15:10:41 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[General Technology]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=20</guid>
		<description><![CDATA[InfoWorld reports that datacenter software vendor Mantissa has released a product that allows you to run Microsoft Windows under z/OS on a mainframe. Their product z/VOS provides a hypervisor and hardware abstraction layer for the Intel platform, so that any Intel based operating system can run underneath it.  According to Mantissa, &#8220;users will be able [...]]]></description>
			<content:encoded><![CDATA[<p>InfoWorld reports that datacenter software vendor Mantissa has released a product that allows you to <a href="http://www.infoworld.com/article/09/03/04/Mantissa_puts_Microsoft_Windows_on_a_mainframe_2.html">run Microsoft Windows under z/OS on a mainframe</a>. Their product <a href="http://www.mantissa.com/products/UV/zvos-for-schools">z/VOS</a> provides a hypervisor and hardware abstraction layer for the Intel platform, so that any Intel based operating system can run underneath it.  According to Mantissa, &#8220;users will be able to create a PC in 15 seconds, have it operational in 15 minutes, and                            use it once or have it permanently without worrying about depreciation of hardware.&#8221;</p>
<p>While my initial reaction was &#8220;Why?&#8221;, that&#8217;s really the wrong question.  The question is really when it makes sense.  Mantissa claims that a single mainframe can run thousands of virtual PCs.  So as large enterprises consider moving to virtual desktops (accessed by thin clients) it becomes a question of cost effectiveness. Which is more economical, a bunch of VMware or Windows servers hosting virtual PCs or a single mainframe?  I have no gut feeling right now.  It will be interesting to see how it shakes out.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;t=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=InfoWorld%20reports%20that%20datacenter%20software%20vendor%20Mantissa%20has%20released%20a%20product%20that%20allows%20you%20to%20run%20Microsoft%20Windows%20under%20z%2FOS%20on%20a%20mainframe.%20Their%20product%20z%2FVOS%20provides%20a%20hypervisor%20and%20hardware%20abstraction%20layer%20for%20the%20Intel%20platform%2C%20so%20" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;bodytext=InfoWorld%20reports%20that%20datacenter%20software%20vendor%20Mantissa%20has%20released%20a%20product%20that%20allows%20you%20to%20run%20Microsoft%20Windows%20under%20z%2FOS%20on%20a%20mainframe.%20Their%20product%20z%2FVOS%20provides%20a%20hypervisor%20and%20hardware%20abstraction%20layer%20for%20the%20Intel%20platform%2C%20so%20" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;notes=InfoWorld%20reports%20that%20datacenter%20software%20vendor%20Mantissa%20has%20released%20a%20product%20that%20allows%20you%20to%20run%20Microsoft%20Windows%20under%20z%2FOS%20on%20a%20mainframe.%20Their%20product%20z%2FVOS%20provides%20a%20hypervisor%20and%20hardware%20abstraction%20layer%20for%20the%20Intel%20platform%2C%20so%20" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;annotation=InfoWorld%20reports%20that%20datacenter%20software%20vendor%20Mantissa%20has%20released%20a%20product%20that%20allows%20you%20to%20run%20Microsoft%20Windows%20under%20z%2FOS%20on%20a%20mainframe.%20Their%20product%20z%2FVOS%20provides%20a%20hypervisor%20and%20hardware%20abstraction%20layer%20for%20the%20Intel%20platform%2C%20so%20" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;title=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F20&amp;submitHeadline=Things%20that%20make%20you%20go%20...%20%22Why%3F%3F%22&amp;submitSummary=InfoWorld%20reports%20that%20datacenter%20software%20vendor%20Mantissa%20has%20released%20a%20product%20that%20allows%20you%20to%20run%20Microsoft%20Windows%20under%20z%2FOS%20on%20a%20mainframe.%20Their%20product%20z%2FVOS%20provides%20a%20hypervisor%20and%20hardware%20abstraction%20layer%20for%20the%20Intel%20platform%2C%20so%20&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=hPWbM0eJKlI:cHbL7NHXSPQ:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/20/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/20</feedburner:origLink></item>
		<item>
		<title>Teaser: SQL Injection — Not just for kids anymore</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/hhlkroBWzb8/9</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/9#comments</comments>
		<pubDate>Mon, 23 Mar 2009 20:28:18 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=9</guid>
		<description><![CDATA[While I&#8217;m still preparing new material, amuse yourselves with my favorite XKCD cartoon (at http://xkcd.com/327/):
 
]]></description>
			<content:encoded><![CDATA[<p>While I&#8217;m still preparing new material, amuse yourselves with my favorite XKCD cartoon (at <a href="http://xkcd.com/327/">http://xkcd.com/327/</a>):</p>
<p> </p>
<p><img class="aligncenter" src="http://imgs.xkcd.com/comics/exploits_of_a_mom.png" alt="\" /></p>
<p>This is, of course, SQL injection as we fondly remember it &#8212; one person <em>mano y mano</em> against the database.  More on how the world has changed in a future post.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;t=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=While%20I%27m%20still%20preparing%20new%20material%2C%20amuse%20yourselves%20with%20my%20favorite%20XKCD%20cartoon%20%28at%20http%3A%2F%2Fxkcd.com%2F327%2F%29%3A%0D%0A%0D%0A%C2%A0%0D%0A%0D%0A" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;bodytext=While%20I%27m%20still%20preparing%20new%20material%2C%20amuse%20yourselves%20with%20my%20favorite%20XKCD%20cartoon%20%28at%20http%3A%2F%2Fxkcd.com%2F327%2F%29%3A%0D%0A%0D%0A%C2%A0%0D%0A%0D%0A" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;notes=While%20I%27m%20still%20preparing%20new%20material%2C%20amuse%20yourselves%20with%20my%20favorite%20XKCD%20cartoon%20%28at%20http%3A%2F%2Fxkcd.com%2F327%2F%29%3A%0D%0A%0D%0A%C2%A0%0D%0A%0D%0A" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;annotation=While%20I%27m%20still%20preparing%20new%20material%2C%20amuse%20yourselves%20with%20my%20favorite%20XKCD%20cartoon%20%28at%20http%3A%2F%2Fxkcd.com%2F327%2F%29%3A%0D%0A%0D%0A%C2%A0%0D%0A%0D%0A" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;title=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F9&amp;submitHeadline=Teaser%3A%20SQL%20Injection%20--%20Not%20just%20for%20kids%20anymore&amp;submitSummary=While%20I%27m%20still%20preparing%20new%20material%2C%20amuse%20yourselves%20with%20my%20favorite%20XKCD%20cartoon%20%28at%20http%3A%2F%2Fxkcd.com%2F327%2F%29%3A%0D%0A%0D%0A%C2%A0%0D%0A%0D%0A&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=hhlkroBWzb8:J4pYH_OQrrA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/9/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/9</feedburner:origLink></item>
		<item>
		<title>Okay, I’m back!</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/ZiBkQ8aleI4/13</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/13#comments</comments>
		<pubDate>Sun, 22 Mar 2009 15:43:40 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=13</guid>
		<description><![CDATA[This blog has been dormant way too long.  I&#8217;m back and will be putting up some provacative posts soon.  Stay tuned&#8230;



Share and Enjoy:


	
	
	
	
	
	
	
	
	
	
	
	
	
	


]]></description>
			<content:encoded><![CDATA[<p>This blog has been dormant way too long.  I&#8217;m back and will be putting up some provacative posts soon.  Stay tuned&#8230;</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Okay%2C%20I%27m%20back%21&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;t=Okay%2C%20I%27m%20back%21" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Okay%2C%20I%27m%20back%21%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=This%20blog%20has%20been%20dormant%20way%20too%20long.%C2%A0%20I%27m%20back%20and%20will%20be%20putting%20up%20some%20provacative%20posts%20soon.%C2%A0%20Stay%20tuned..." title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21&amp;bodytext=This%20blog%20has%20been%20dormant%20way%20too%20long.%C2%A0%20I%27m%20back%20and%20will%20be%20putting%20up%20some%20provacative%20posts%20soon.%C2%A0%20Stay%20tuned..." title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21&amp;notes=This%20blog%20has%20been%20dormant%20way%20too%20long.%C2%A0%20I%27m%20back%20and%20will%20be%20putting%20up%20some%20provacative%20posts%20soon.%C2%A0%20Stay%20tuned..." title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21&amp;annotation=This%20blog%20has%20been%20dormant%20way%20too%20long.%C2%A0%20I%27m%20back%20and%20will%20be%20putting%20up%20some%20provacative%20posts%20soon.%C2%A0%20Stay%20tuned..." title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Okay%2C%20I%27m%20back%21&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;title=Okay%2C%20I%27m%20back%21" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F13&amp;submitHeadline=Okay%2C%20I%27m%20back%21&amp;submitSummary=This%20blog%20has%20been%20dormant%20way%20too%20long.%C2%A0%20I%27m%20back%20and%20will%20be%20putting%20up%20some%20provacative%20posts%20soon.%C2%A0%20Stay%20tuned...&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=ZiBkQ8aleI4:M0asIPBLv0w:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/13/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/13</feedburner:origLink></item>
		<item>
		<title>Happy Independence Day</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/Hc0h39n8Auk/10</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/10#comments</comments>
		<pubDate>Thu, 03 Jul 2008 16:40:57 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Random Musings]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=10</guid>
		<description><![CDATA[OK, this post is not about either security or technology, it&#8217;s about the 4th of July.  My two favorite secular holidays are Thanksgiving and Independence Day.  Happily, Independence Day retains much of its original meaning, as well as its original date (rather than the closest Monday).
July 4th is a day for remembering the founding of [...]]]></description>
			<content:encoded><![CDATA[<p>OK, this post is not about either security or technology, it&#8217;s about the 4th of July.  My two favorite secular holidays are Thanksgiving and Independence Day.  Happily, Independence Day retains much of its original meaning, as well as its original date (rather than the closest Monday).</p>
<p>July 4th is a day for remembering the founding of this country and the lofty ideals of those who founded it.  It is also a time to reflect on the words of Thomas Jefferson, one of the sharpest minds and greatest writers of that period.  Consider the soaring prose of &#8220;all men are created equal and endowed by their Creator with certain inalienable rights, among them being life, liberty, and the pursuit of happiness.&#8221;  Part of the brilliance of the Declaration was Jefferson&#8217;s morphing of Locke&#8217;s &#8220;life, liberty and the pursuit of property&#8221; to something accessible by everybody, happiness, rather than just the landed gentry, property.</p>
<p>I hope that everybody, regardless of political orientation, will take some time to celebrate the American experiment.  We have our ups and downs, and plenty of imperfections, but it&#8217;s still descended from the ideals on which it was founded.</p>
<p>A famous quote from Winston Churchill come to mind.  &#8220;It has been said that democracy is the worst form of government except all the others that have been tried&#8221;.  He also thought that the fourth was a holiday for Englishmen, since it recalled the fight by Englishmen for their rights as Englishmen against a German king.</p>
<p>Happy holiday, everybody.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Happy%20Independence%20Day&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;t=Happy%20Independence%20Day" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Happy%20Independence%20Day%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=OK%2C%20this%20post%20is%20not%20about%20either%20security%20or%20technology%2C%20it%27s%20about%20the%204th%20of%20July.%C2%A0%20My%20two%20favorite%20secular%20holidays%20are%20Thanksgiving%20and%20Independence%20Day.%C2%A0%20Happily%2C%20Independence%20Day%20retains%20much%20of%20its%20original%20meaning%2C%20as%20well%20as%20its%20original%20" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day&amp;bodytext=OK%2C%20this%20post%20is%20not%20about%20either%20security%20or%20technology%2C%20it%27s%20about%20the%204th%20of%20July.%C2%A0%20My%20two%20favorite%20secular%20holidays%20are%20Thanksgiving%20and%20Independence%20Day.%C2%A0%20Happily%2C%20Independence%20Day%20retains%20much%20of%20its%20original%20meaning%2C%20as%20well%20as%20its%20original%20" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day&amp;notes=OK%2C%20this%20post%20is%20not%20about%20either%20security%20or%20technology%2C%20it%27s%20about%20the%204th%20of%20July.%C2%A0%20My%20two%20favorite%20secular%20holidays%20are%20Thanksgiving%20and%20Independence%20Day.%C2%A0%20Happily%2C%20Independence%20Day%20retains%20much%20of%20its%20original%20meaning%2C%20as%20well%20as%20its%20original%20" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day&amp;annotation=OK%2C%20this%20post%20is%20not%20about%20either%20security%20or%20technology%2C%20it%27s%20about%20the%204th%20of%20July.%C2%A0%20My%20two%20favorite%20secular%20holidays%20are%20Thanksgiving%20and%20Independence%20Day.%C2%A0%20Happily%2C%20Independence%20Day%20retains%20much%20of%20its%20original%20meaning%2C%20as%20well%20as%20its%20original%20" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Happy%20Independence%20Day&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;title=Happy%20Independence%20Day" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F10&amp;submitHeadline=Happy%20Independence%20Day&amp;submitSummary=OK%2C%20this%20post%20is%20not%20about%20either%20security%20or%20technology%2C%20it%27s%20about%20the%204th%20of%20July.%C2%A0%20My%20two%20favorite%20secular%20holidays%20are%20Thanksgiving%20and%20Independence%20Day.%C2%A0%20Happily%2C%20Independence%20Day%20retains%20much%20of%20its%20original%20meaning%2C%20as%20well%20as%20its%20original%20&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=Hc0h39n8Auk:gQhOkP0VIgk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/10/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/10</feedburner:origLink></item>
		<item>
		<title>Automated Lockouts: Just Say No!</title>
		<link>http://feedproxy.google.com/~r/Secmusings/~3/yeXltv_EPyc/5</link>
		<comments>http://shermansolutionsllc.com/secmusings/archives/5#comments</comments>
		<pubDate>Wed, 18 Jun 2008 21:44:31 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Unconventional Wisdom]]></category>

		<guid isPermaLink="false">http://shermansolutionsllc.com/secmusings/?p=5</guid>
		<description><![CDATA[This is another post in the &#8220;Unconventional Wisdom&#8221; series.  I will try not to make it a rant.  
Another of those security &#8220;rules of thumb&#8221; that people accept without a lot of critical thought is the notion that you should lock user accounts after some (small) number of consecutive bad passwords.  Auditors, [...]]]></description>
			<content:encoded><![CDATA[<p>This is another post in the &#8220;Unconventional Wisdom&#8221; series.  I will try not to make it a rant. <img src='http://shermansolutionsllc.com/secmusings/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Another of those security &#8220;rules of thumb&#8221; that people accept without a lot of critical thought is the notion that you should lock user accounts after some (small) number of consecutive bad passwords.  Auditors, regulators, and (to my surprise) even a fair number of security professionals will cite automated lockouts as a best practice.</p>
<p>In a recent thread on the CISSP® forum, a mailing list comprised entirely of people with  CISSP certification, somebody posed the question &#8220;where did the standard of 3 attempts come from?&#8221; because he had been asked it in a job interview.  I was rather appalled at the number of responses that accepted the premise that locking out after 3 tries was a standard.</p>
<p>In fact, locking out after 3 tries is in most situations a really bad idea, and certainly not something you should do without a careful risk assessment.  Automated lockouts are meant to prevent password guessing attacks.  However, what they really do is deny service to legitimate users and keep your security staff chasing non-events.</p>
<p>As we demand increasing levels of password complexity, and more frequent changes (see <a href="http://www.cerias.purdue.edu/site/blog/post/password-change-myths/" target="_blank">spaf&#8217;s blog</a> to learn why <em>that</em> is a bad idea) it becomes much easier for users to mistype their passwords quite a few times in a row.  After a password change, I&#8217;ve been known to fat finger the new one 4 or 5 times in a row.  With automated lockouts, I&#8217;d be locked out and in need of (costly) service from the help desk.  So, for starters, we know that lockouts lead to accidental denial of service.<a href="http://www.cerias.purdue.edu/site/blog/post/password-change-myths/"><br />
</a></p>
<p>Even nastier is that lockouts enable a denial of service attack that requires no privilege elevation to mount.  This is no trivial concern. In environments without lockouts, DoS attacks against user&#8217;s ability to log in are novel enough to be the stuff of tabletop exercises and after-hours discussions at security meetings.  These attacks require a lot of privilege to mount, and (fortunately) rogue system administrators don&#8217;t come along all that often.</p>
<p>Lockouts change all that — the bar is lowered to the point that anybody with access to your login prompt can mount a DoS attack and keep your users off the air.  For example, a disgruntled trader could take out his or her entire trading desk in minutes just before resigning — no privilege or hacking credentials required.</p>
<p>That&#8217;s the risk you take on from an automated lockout, especially one with a low threshold.  What&#8217;s the benefit?  I would say little or none.  What are the attacks that lockouts are designed to prevent?  Most commonly, lockouts are used to prevent password guessing attacks.  But let&#8217;s think about how password guessing attacks are mounted.  They either come from a human user typing guesses or an automated attack.</p>
<p>Human attackers are most likely to use social engineering techniques to get your password.  If they are any good, they do not need more than one try.  They got your password from you or somebody you trust, either by being plausible on the telephone or by phishing for it with a clever email.  A three-strikes lockout does nothing to stop that attack; only good user training will.</p>
<p>Automated attacks come in two flavors, offline and online attacks.  A successful offline attack will give the attacker the right password before they log in, so again a lockout does nothing to prevent that attack. The way to prevent offline attacks is to protect your store of hashed passwords so that it can&#8217;t be stolen.  This means locking down anonymous FTP areas, using shadow password files (or better still, Kerberos) and other means that keep password hashes out of public circulation.</p>
<p>Online password guessing attacks can be stymied by a lockout, but then the attacker knows that you&#8217;ve discovered their activities, limiting your ability to investigate the attack and deal with the attacker.  My recommended solution is to monitor and alert on failed password authentications.  Set a high threshold, say in the hundreds, so that you really know that your are dealing with an automated attack.  This will save your response team having to follow up users (like me) with fat fingers and will let them focus their response on attacks in progress.</p>
<p>You will notice a strong bias towards preventing denial of service attacks.  That&#8217;s because in the industry in which I toiled for 15 years the ability of legitimate users to log in was nearly sacrosanct. The risks associated with having a trader unable to trade on an active day are costly, which means there is a strong bias towards mitigating them.  Which gets us back to what I said at the start — lockouts should only be considered after a careful risk analysis.  There may be some cases were the DoS risk is cheap and risks that can be prevented with a lockout are higher.  In that case go for it, but I&#8217;m sure those cases are few and far between.  As I&#8217;ve tried to show here, automated lockouts don&#8217;t really solve the problem that the conventional wisdom intends for them to solve.</p>
<p>Let me just add one more note that may make me seem inconsistent.  I <em>do</em> support the feature in portable devices, such as Blackberries, that wipes the device clean after 10 bad passwords.  First of all, 10 is a much bigger number than  3 and is unlikely to be a set of consecutive typos.  Second, that control is aimed at lost devices, in which case the users have already denied service to themselves, and protecting private data on the device becomes the paramount concern.</p>
<p>But that is the exceptional case.  In the end, there is only one word to say in response to a request to implement automated lockouts: &#8220;No!&#8221;</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://www.feedburner.com/fb/a/emailFlare?itemTitle=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;uri=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5" title="E-mail this story to a friend!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.printfriendly.com/print?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;partner=sociable" title="Print this article!"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/printfriendly.png" title="Print this article!" alt="Print this article!" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;t=Automated%20Lockouts%3A%20Just%20Say%20No%21" title="Facebook"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=Automated%20Lockouts%3A%20Just%20Say%20No%21%20-%20http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5" title="Twitter"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;source=SecMusings+Andy%27s+Reflections+on+Technology+and+Security&amp;summary=This%20is%20another%20post%20in%20the%20%22Unconventional%20Wisdom%22%20series.%20%20I%20will%20try%20not%20to%20make%20it%20a%20rant.%20%3A%29%0D%0A%0D%0AAnother%20of%20those%20security%20%22rules%20of%20thumb%22%20that%20people%20accept%20without%20a%20lot%20of%20critical%20thought%20is%20the%20notion%20that%20you%20should%20lock%20user%20accounts%20afte" title="LinkedIn"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;bodytext=This%20is%20another%20post%20in%20the%20%22Unconventional%20Wisdom%22%20series.%20%20I%20will%20try%20not%20to%20make%20it%20a%20rant.%20%3A%29%0D%0A%0D%0AAnother%20of%20those%20security%20%22rules%20of%20thumb%22%20that%20people%20accept%20without%20a%20lot%20of%20critical%20thought%20is%20the%20notion%20that%20you%20should%20lock%20user%20accounts%20afte" title="Digg"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://delicious.com/post?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;notes=This%20is%20another%20post%20in%20the%20%22Unconventional%20Wisdom%22%20series.%20%20I%20will%20try%20not%20to%20make%20it%20a%20rant.%20%3A%29%0D%0A%0D%0AAnother%20of%20those%20security%20%22rules%20of%20thumb%22%20that%20people%20accept%20without%20a%20lot%20of%20critical%20thought%20is%20the%20notion%20that%20you%20should%20lock%20user%20accounts%20afte" title="del.icio.us"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5" title="Technorati"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;annotation=This%20is%20another%20post%20in%20the%20%22Unconventional%20Wisdom%22%20series.%20%20I%20will%20try%20not%20to%20make%20it%20a%20rant.%20%3A%29%0D%0A%0D%0AAnother%20of%20those%20security%20%22rules%20of%20thumb%22%20that%20people%20accept%20without%20a%20lot%20of%20critical%20thought%20is%20the%20notion%20that%20you%20should%20lock%20user%20accounts%20afte" title="Google Bookmarks"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21" title="Live"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21" title="StumbleUpon"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5" title="Slashdot"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.blogospherenews.com/submit.php?url=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;title=Automated%20Lockouts%3A%20Just%20Say%20No%21" title="Blogosphere News"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/blogospherenews.png" title="Blogosphere News" alt="Blogosphere News" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://buzz.yahoo.com/submit/?submitUrl=http%3A%2F%2Fshermansolutionsllc.com%2Fsecmusings%2Farchives%2F5&amp;submitHeadline=Automated%20Lockouts%3A%20Just%20Say%20No%21&amp;submitSummary=This%20is%20another%20post%20in%20the%20%22Unconventional%20Wisdom%22%20series.%20%20I%20will%20try%20not%20to%20make%20it%20a%20rant.%20%3A%29%0D%0A%0D%0AAnother%20of%20those%20security%20%22rules%20of%20thumb%22%20that%20people%20accept%20without%20a%20lot%20of%20critical%20thought%20is%20the%20notion%20that%20you%20should%20lock%20user%20accounts%20afte&amp;submitCategory=science&amp;submitAssetType=text" title="Yahoo! Buzz"><img src="http://shermansolutionsllc.com/secmusings/wp-content/plugins/sociable/images/yahoobuzz.png" title="Yahoo! Buzz" alt="Yahoo! Buzz" class="sociable-hovers" /></a>


<br/><br/><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Secmusings?a=yeXltv_EPyc:2CbEF2YpKXE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Secmusings?d=yIl2AUoC8zA" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://shermansolutionsllc.com/secmusings/archives/5/feed</wfw:commentRss>
		<slash:comments>8</slash:comments>
		<feedburner:origLink>http://shermansolutionsllc.com/secmusings/archives/5</feedburner:origLink></item>
	</channel>
</rss>
