<?xml version="1.0"?>
<rss version="2.0" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:yt="http://gdata.youtube.com/schemas/2007" xmlns:atom="http://www.w3.org/2005/Atom">
   <channel>
      <title>Gadi Evron - Professional Feed</title>
      <description>This feed combines my professional blog on Blogger, and my blog on Dark Reading.</description>
      <link>http://pipes.yahoo.com/pipes/pipe.info?_id=0eb81ab39e16cb5eabb9091d23acb70f</link>
      <atom:link rel="next" href="http://pipes.yahoo.com/pipes/pipe.run?_id=0eb81ab39e16cb5eabb9091d23acb70f&amp;_render=rss&amp;page=2"/>
      <pubDate>Thu, 01 Oct 2015 22:44:12 +0000</pubDate>
      <generator>http://pipes.yahoo.com/pipes/</generator>
      <item>
         <title>Cyber Security and Privacy News of the Week, 10 - 17 Feb 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/Xr9LA07UVxo/cyber-security-and-privacy-news-of-week_19.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;span class=&quot;userContent&quot;&gt;Cyber Security and Privacy News of the Week&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://3.bp.blogspot.com/-iLiwDEYG3ew/VOZTNUp1LkI/AAAAAAAAAVw/PxtPRMYUliA/s1600/10-17-feb-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://3.bp.blogspot.com/-iLiwDEYG3ew/VOZTNUp1LkI/AAAAAAAAAVw/PxtPRMYUliA/s1600/10-17-feb-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;Links to stories/ pictures:&lt;br /&gt; 1. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.reuters.com/article/2015/02/16/us-usa-cyberspying-idUSKBN0LK1QV20150216&quot;&gt;http://www.reuters.com/article/2015/02/16/us-usa-cyberspying-idUSKBN0LK1QV20150216&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt; 2. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.nytimes.com/2015/02/15/world/bank-hackers-steal-millions-via-malware.html&quot;&gt;http://www.nytimes.com/2015/02/15/world/bank-hackers-steal-millions-via-malware.htm&lt;span class=&quot;text_exposed_show&quot;&gt;l&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 3. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.invincea.com%2F2015%2F02%2Fchinese-espionage-campaign-compromises-forbes%2F&amp;amp;h=4AQFpyooo&amp;amp;enc=AZNOEiP8pVS6F45HKbFZXXV7AicHb-F1wP7V7s8GdAWyutEx1Rvlu0BDtTuiwWgZ_YnR9wsHTfXRV3bPu9VXsqWnRQvX7yOPNENO1QMXFc3BhRpHGWnvE0raOucZLftTH0K60DnXYnWYtEz-ayQPjZoV&amp;amp;s=1&quot;&gt;http://www.invincea.com/2015/02/chinese-espionage-campaign-compromises-forbes/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 4. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.gallup.com%2Fpoll%2F178856%2Fhacking-tops-list-crimes-americans-worry.aspx&amp;amp;h=UAQGO9KzF&amp;amp;enc=AZO1NF7vORc4dquxFkDFVOc13MXAVI-5HTW1F6dVShabAcZmSPSRUTYQP-0-ZWuDvu-HBzKEX8BqWrnFMkTt2b90x7sNYf9l8OJLK201OHS7CwaAb37zHh9M6Jed_U37xNGvvdUaRv5JMcl57B28LPoE&amp;amp;s=1&quot;&gt;http://www.gallup.com/poll/178856/hacking-tops-list-crimes-americans-worry.aspx&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 5. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.wired.com/2015/02/nsa-acknowledges-feared-iran-learns-us-cyberattacks/&quot;&gt;http://www.wired.com/2015/02/nsa-acknowledges-feared-iran-learns-us-cyberattacks/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 6. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.databreachtoday.com/ny-to-launch-cyber-exams-for-insurers-a-7901&quot;&gt;http://www.databreachtoday.com/ny-to-launch-cyber-exams-for-insurers-a-7901&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; Originally posted on Gadi Evron's blog, at: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fgadievron.blogspot.com%2F&amp;amp;h=8AQHIPTI_&amp;amp;enc=AZNreYlxd-Tj_q233vNpmQhxz5Xmp03JJMDwKF989glhieiHIz0CgczmJy3P9AwxJ1tcjLd3hl--8Tzuag2q1cF7r-PG-LoCQZKv1bSi94dEnkFuDifFs-RidWWsR59bdf7VklJIWOKN1TPajphXnZjH&amp;amp;s=1&quot;&gt;http://gadievron.blogspot.com/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt; Also on Facebook: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.facebook.com/gadioncyber&quot;&gt;http://www.facebook.com/gadioncyber&lt;/a&gt;&lt;br /&gt; And on Twitter: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;http://twitter.com/gadievron&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-390414988565217055</guid>
         <pubDate>Thu, 19 Feb 2015 21:19:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://3.bp.blogspot.com/-iLiwDEYG3ew/VOZTNUp1LkI/AAAAAAAAAVw/PxtPRMYUliA/s72-c/10-17-feb-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Cyber Security and Privacy News of the Week, 3 - 10 Feb 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/fDIa026i0b8/cyber-security-and-privacy-news-of-week_10.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;This Week in Cyber Security and Privacy&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://3.bp.blogspot.com/-kDwmJniCEwM/VNpNof3z1OI/AAAAAAAAATg/nv_TJoUivi4/s1600/03-10-feb-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://3.bp.blogspot.com/-kDwmJniCEwM/VNpNof3z1OI/AAAAAAAAATg/nv_TJoUivi4/s1600/03-10-feb-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Links to stories/ pictures:&lt;br /&gt;1. www.forbes.com/sites/thomasbrewster/2015/02/02/yet-another-adobe-flash-zero-day/&lt;br /&gt;&lt;br /&gt;2. http://www.theguardian.com/us-news/2015/feb/05/millions-of-customers-health-insurance-details-stolen-in-anthem-hack-attack&lt;br /&gt;&lt;br /&gt;3. http://www.reuters.com/article/2015/02/05/us-sony-pascal-idUSKBN0L92BG20150205&lt;br /&gt;&lt;br /&gt;4. https://nakedsecurity.sophos.com/2015/02/06/facebooks-deepface-facial-recognition-technology-has-human-like-accuracy/&lt;br /&gt;&lt;br /&gt;5. http://www.bbc.com/news/technology-31296188&lt;br /&gt;&lt;br /&gt;6. http://thenextweb.com/insider/2015/02/10/uber-reportedly-left-lost-found-items-log-exposed-online/&lt;br /&gt;&lt;br /&gt;Originally posted on Gadi Evron's blog, at: http://gadievron.blogspot.com/&lt;br /&gt;Also on Facebook: http://www.facebook.com/gadioncyber&lt;br /&gt;And on Twitter: http://twitter.com/gadievron&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-4890920332423047012</guid>
         <pubDate>Tue, 10 Feb 2015 18:28:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://3.bp.blogspot.com/-kDwmJniCEwM/VNpNof3z1OI/AAAAAAAAATg/nv_TJoUivi4/s72-c/03-10-feb-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Anthem and the stock market post breach</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/7whSoC_ZaLE/anthem-and-stock-market-post-breach.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;This was the pre-trading situation with Anthem yesterday. Impressive,  yet ups and downs are a regular thing, we'll see how they're doing in a  couple of weeks.&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://4.bp.blogspot.com/-tZy1PofJnMo/VNbqWR5IWmI/AAAAAAAAATE/vDc6INRGZgg/s1600/Anthem%2Bdrop.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://4.bp.blogspot.com/-tZy1PofJnMo/VNbqWR5IWmI/AAAAAAAAATE/vDc6INRGZgg/s1600/Anthem%2Bdrop.jpg&quot; height=&quot;320&quot; width=&quot;179&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;(via Ram Levi)&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8581558506759340812</guid>
         <pubDate>Sun, 08 Feb 2015 04:47:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://4.bp.blogspot.com/-tZy1PofJnMo/VNbqWR5IWmI/AAAAAAAAATE/vDc6INRGZgg/s72-c/Anthem%2Bdrop.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Cyber Security and Privacy News of the Week, 27 January - 3rd February, 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/JVFwDYntSKk/cyber-security-and-privacy-news-of-week.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;span class=&quot;userContent&quot;&gt;This Week in Cyber Security and Privacy&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://2.bp.blogspot.com/-WybbRJk3oAE/VNF7zjEkUmI/AAAAAAAAASo/b6JMSZKB08g/s1600/27-jan-3-feb-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://2.bp.blogspot.com/-WybbRJk3oAE/VNF7zjEkUmI/AAAAAAAAASo/b6JMSZKB08g/s1600/27-jan-3-feb-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt; Links to stories/ pictures:&lt;br /&gt; 1. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.scmagazine.com/report-most-us-weapons-programs-contain-significant-vulnerabilities/article/394499/&quot;&gt;http://www.scmagazine.com/report-most-us-weapons-programs-contain-significant-vulnerabilities/article/394499/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://element-y.com/wp-content/uploads/2013/01/pentagon.jpg&quot;&gt;http://element-y.com/wp-content/uploads/2013/01/pentagon.&lt;span class=&quot;text_exposed_show&quot;&gt;jpg&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;2. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.infosecurity-magazine.com/news/us-army-releases-cyberforensic/&quot;&gt;http://www.infosecurity-magazine.com/news/us-army-releases-cyberforensic/&lt;/a&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 3. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.cnet.com/news/chrome-becoming-tool-in-googles-push-for-encrypted-web/&quot;&gt;http://www.cnet.com/news/chrome-becoming-tool-in-googles-push-for-encrypted-web/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 4. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-0235&quot;&gt;https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-0235&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;https://www.facebook.com/l.php?u=https%3A%2F%2Fcve.mitre.org%2F&amp;amp;h=LAQEOEkfq&amp;amp;enc=AZP1_rHIHu0E8FAdVXw0eu4hDXIQm1nDDGz5GhlpzRxJW_Plwu5IPF-112bWq0niEYasLdJZnB3nyXtmuRpSjZRWDrMA-jbh8cFSo69bJjtAf16LjICAfthtgAOZq_WKmM-Ysa4x64M1gHFm7I2Nl72Q&amp;amp;s=1&quot;&gt;https://cve.mitre.org/&lt;/a&gt;&lt;br /&gt;5. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.spiegel.de/international/world/regin-malware-unmasked-as-nsa-tool-after-spiegel-publishes-source-code-a-1015255.html&quot;&gt;http://www.spiegel.de/international/world/regin-malware-unmasked-as-nsa-tool-after-spiegel-publishes-source-code-a-1015255.html&lt;/a&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 6. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.pcworld.com/article/2878437/bmw-cars-found-vulnerable-in-connected-drive-hack.html&quot;&gt;http://www.pcworld.com/article/2878437/bmw-cars-found-vulnerable-in-connected-drive-hack.html&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.autoblog.com/2015/02/03/bmws-connected-drive-feature-vulnerable-to-hackers/&quot;&gt;http://www.autoblog.com/2015/02/03/bmws-connected-drive-feature-vulnerable-to-hackers/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; Originally posted on Gadi Evron's blog, at: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gadievron.blogspot.com/&quot;&gt;http://gadievron.blogspot.com/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt; Also on Facebook: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.facebook.com/gadioncyber&quot;&gt;http://www.facebook.com/gadioncyber&lt;/a&gt;&lt;br /&gt; And on Twitter: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Ftwitter.com%2Fgadievron&amp;amp;h=rAQExqXlc&amp;amp;enc=AZNSvjafJvLePCS3ycQsWEIq5vsu89v1bEZFUhz3Pq3oFaZ1cuUgcDnssGO8kV7HLjMEjhabqZnS6VOIm3x2oY_PC9Gx9fV3tx7ob0ncHrfWB32Duk0WHI4eTStmAQgxUMc16IA9eW22NJNLWTUm40Kv&amp;amp;s=1&quot;&gt;http://twitter.com/gadievron&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-7573059778027472586</guid>
         <pubDate>Wed, 04 Feb 2015 01:55:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://2.bp.blogspot.com/-WybbRJk3oAE/VNF7zjEkUmI/AAAAAAAAASo/b6JMSZKB08g/s72-c/27-jan-3-feb-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Where did they go wrong?</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/HAzFueqstHo/where-did-they-go-wrong.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;span style=&quot;text-align:left;&quot;&gt;My experience was short lived but fascinating to me.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span style=&quot;text-align:left;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;I rang the bell. The receptionist came out through an open door, tried for this combo biometric plus code authentication device on the main door, failed, asked me to wait and went in through the other door, walked around and opened the door from the inside.&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://4.bp.blogspot.com/-6fypQyuDL0U/VNF6vIaii1I/AAAAAAAAASU/hPD2rRF9mdg/s1600/reader.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://4.bp.blogspot.com/-6fypQyuDL0U/VNF6vIaii1I/AAAAAAAAASU/hPD2rRF9mdg/s1600/reader.jpg&quot; height=&quot;320&quot; width=&quot;240&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Where did whoever designed this security go wrong? :)&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://4.bp.blogspot.com/-in1I4VDyyhI/VNF6uyTas0I/AAAAAAAAASQ/8Fe8K-ZpmeY/s1600/reader2.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://4.bp.blogspot.com/-in1I4VDyyhI/VNF6uyTas0I/AAAAAAAAASQ/8Fe8K-ZpmeY/s1600/reader2.jpg&quot; height=&quot;320&quot; width=&quot;240&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;div&gt;Gadi Evron.&lt;/div&gt;&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-5739968508191020534</guid>
         <pubDate>Wed, 04 Feb 2015 01:50:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://4.bp.blogspot.com/-6fypQyuDL0U/VNF6vIaii1I/AAAAAAAAASU/hPD2rRF9mdg/s72-c/reader.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Cyber Security and Privacy News of the Week, 20-27 January - 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/Iz2twsAoXEM/cyber-security-and-privacy-news-of-week.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;Cyber Security and Privacy News of the Week, 20-27 January - 2015&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://3.bp.blogspot.com/-mJHAxJ0owdc/VMp1A-DH5uI/AAAAAAAAAR0/ZHaIIKCVbTU/s1600/20-27-jan-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://3.bp.blogspot.com/-mJHAxJ0owdc/VMp1A-DH5uI/AAAAAAAAAR0/ZHaIIKCVbTU/s1600/20-27-jan-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;This Week in Cyber Security and Privacy&lt;br /&gt; &lt;br /&gt; Links to stories/ pictures:&lt;br /&gt; &lt;br /&gt; 1. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://kukuruku.co/hub/infosec/backdoor-in-a-public-rsa-key?ModPagespeed=noscript&quot;&gt;http://kukuruku.co/hub/infosec/backdoor-in-a-public-rsa-key?ModPagespeed=noscript&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;2. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.bbc.com%2Fnews%2Fuk-wales-south-west-wales-30898417&amp;amp;h=ZAQE-paI4&amp;amp;enc=AZNUv0z0vxtPomvc1JA6ockKuRSYtU4vELnSrlSG0t-fR8n9RTaMopzlHFsqsp9fUAr9qfZusniS7lUqNcviu2skEZIf6Qh7l2xo4BdjawgyDbG2jcvACZALdu5Fn3Go7wYGBrVHQ4RfFUbaVcZWKKCX&amp;amp;s=1&quot;&gt;http://www.bbc.com/news/uk-wales-south-west-wales-30898417&lt;/a&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 3. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.secretsofthefed.com/15-year-old-swatted-gamer-convicted-domestic-terrorism-25-years-life-federal-prison/&quot;&gt;http://www.secretsofthefed.com/15-year-old-swatted-gamer-convicted-domestic-terrorism-25-years-life-federal-prison/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;4. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;https://news.yahoo.com/kenya-govt-considers-request-repatriate-chinese-hackers-121447172.html&quot;&gt;https://news.yahoo.com/kenya-govt-considers-request-repatriate-chinese-hackers-121447172.html&lt;/a&gt;&lt;br /&gt;5. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://thehackernews.com/2015/01/progressive-snapshot-device-hacking-car.html&quot;&gt;http://thehackernews.com/2015/01/progressive-snapshot-device-hacking-car.htm&lt;/a&gt;&lt;br /&gt;6.&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;https://www.eff.org/who-has-your-back-government-data-requests-2014&quot;&gt;https://www.eff.org/who-has-your-back-government-data-requests-2014&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Originally posted on Gadi Evron's blog, at: http://gadievron.blogspot.com/&lt;br /&gt;Also on Facebook: http://www.facebook.com/gadioncyber&lt;br /&gt;And on Twitter: http://twitter.com/gadievron&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;br /&gt;&lt;div style=&quot;cursor:pointer;display:inline-block;height:16px;width:16px;&quot;&gt;&lt;/div&gt;&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-9172476100081343053</guid>
         <pubDate>Thu, 29 Jan 2015 18:00:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://3.bp.blogspot.com/-mJHAxJ0owdc/VMp1A-DH5uI/AAAAAAAAAR0/ZHaIIKCVbTU/s72-c/20-27-jan-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>This Week in Cyber Security and Privacy, 13-20 January 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/nxWe8TP_AnI/this-week-in-cyber-security-and-privacy_21.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;This Week in Cyber Security and Privacy, 5-12 January 2015.&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://1.bp.blogspot.com/-BMrK94Z4sTk/VL9g7NA8ClI/AAAAAAAAARU/AAffc-ifg_w/s1600/13-20-jan-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://1.bp.blogspot.com/-BMrK94Z4sTk/VL9g7NA8ClI/AAAAAAAAARU/AAffc-ifg_w/s1600/13-20-jan-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Links to stories/ pictures:&lt;br /&gt;&lt;br /&gt;1. http://www.gironsec.com/blog/2015/01/owning_modems_and_routers_silently/&lt;br /&gt;&lt;br /&gt;2. http://itinsight.hu/en/posts/articles/2015-01-28-android-bypass/&lt;br /&gt;&lt;br /&gt;3. http://thehackernews.com/2015/01/google-windows-vulnerability.html&lt;br /&gt;&lt;br /&gt;4. http://www.theregister.co.uk/2015/01/18/snowden_doc_leak_confirms_china_stole_f35_data/&lt;br /&gt;&lt;br /&gt;5. http://www.businessinsider.com/apple-touch-id-icloud-patent-2015-1&lt;br /&gt;&lt;br /&gt;6. http://thehackernews.com/2015/01/microsoft-windows-7-support.html&lt;br /&gt;&lt;br /&gt;Originally posted on Gadi Evron's blog, at: http://gadievron.blogspot.com/&lt;br /&gt;Also on Facebook: http://www.facebook.com/gadioncyber&lt;br /&gt;And on Twitter: http://twitter.com/gadievron&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-7857507073742541466</guid>
         <pubDate>Wed, 21 Jan 2015 08:19:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://1.bp.blogspot.com/-BMrK94Z4sTk/VL9g7NA8ClI/AAAAAAAAARU/AAffc-ifg_w/s72-c/13-20-jan-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>This Week in Cyber Security and Privacy, 5-12 January 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/Ns-6T9QY5Bw/this-week-in-cyber-security-and-privacy_14.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;This Week in Cyber Security and Privacy, 5-12 January 2015.&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://2.bp.blogspot.com/-pQHojAyQ69Y/VLYxihfsrOI/AAAAAAAAAQ8/JZsOSXZuQ08/s1600/5-12-jan-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://2.bp.blogspot.com/-pQHojAyQ69Y/VLYxihfsrOI/AAAAAAAAAQ8/JZsOSXZuQ08/s1600/5-12-jan-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Links to stories/pictures:&lt;br /&gt;&lt;br /&gt;1. http://www.darkreading.com/attacks-breaches/banking-trojans-disguised-as-ics-scada-software-infecting-plants/d/d-id/1318542&lt;br /&gt;http://threatpost.com/is-it-time-for-certified-ics-security-specialists/104804&lt;br /&gt;2. https://privacyassociation.org/news/a/obama-announces-legislation-on-student-id-consumer-privacy/&lt;br /&gt;3. http://krebsonsecurity.com/2015/01/lizard-stresser-runs-on-hacked-home-routers/&lt;br /&gt;4. http://www.engadget.com/2015/01/02/google-posts-unpatched-microsoft-bug/&lt;br /&gt;5. http://motherboard.vice.com/read/you-can-now-install-the-north-korean-operating-system-redstar-30&lt;br /&gt;6. http://www.morganstanley.com/about/press/articles/7f189537-f51c-40b0-a963-fc0dc6c65861.html&lt;br /&gt;&lt;br /&gt;Originally posted on Gadi Evron's blog, at: http://gadievron.blogspot.com/&lt;br /&gt;Also on Facebook: http://www.facebook.com/gadioncyber&lt;br /&gt;And on Twitter: http://twitter.com/gadievron&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8981226972758255293</guid>
         <pubDate>Wed, 14 Jan 2015 09:06:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://2.bp.blogspot.com/-pQHojAyQ69Y/VLYxihfsrOI/AAAAAAAAAQ8/JZsOSXZuQ08/s72-c/5-12-jan-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>This Week in Cyber Security and Privacy, 28 Dec - 4 Jan 2015</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/gN6cy6YWBR0/this-week-in-cyber-security-and-privacy.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;This Week in Cyber Security and Privacy, 28 Dec - 4 Jan 2015&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://3.bp.blogspot.com/-O2Zvenu7DNk/VKtLQgCG9EI/AAAAAAAAAQc/jmJGHRd-I6s/s1600/28-4-jan-2015.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://3.bp.blogspot.com/-O2Zvenu7DNk/VKtLQgCG9EI/AAAAAAAAAQc/jmJGHRd-I6s/s1600/28-4-jan-2015.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Links to stories and photos:&lt;br /&gt;1. http://mashable.com/2014/12/31/sony-cyberattack-blackberrys/&lt;br /&gt;&lt;br /&gt;2. http://uk.businessinsider.com/report-angela-merkels-office-hit-by-cyber-attack-2014-12?r=US&lt;br /&gt;&lt;br /&gt;3. http://threatpost.com/cellular-privacy-ss7-security-shattered-at-31c3/110135&lt;br /&gt;&lt;br /&gt;4. http://www.reuters.com/article/2014/12/27/hacking-tool-idUSL1N0UB00U20141227&lt;br /&gt;&lt;br /&gt;5. http://venturebeat.com/2014/12/28/chaos-computer-club-claims-it-can-reproduce-fingerprints-from-peoples-public-photos/&lt;br /&gt;&lt;br /&gt;6. http://mobile.nytimes.com/blogs/dealbook/2014/12/22/entry-point-of-jpmorgan-data-breach-is-identified/?_r=2&amp;amp;referrer&lt;br /&gt;&lt;br /&gt;7. http://www.haaretz.com/news/diplomacy-defense/1.633119&lt;br /&gt;&lt;br /&gt;8. http://www.healthcareinfosecurity.com/nist-to-address-medical-device-security-a-7718&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;Originally posted on Gadi Evron's blog, at:&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gadievron.blogspot.com/&quot;&gt;http://gadievron.blogspot.com/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;Also on Facebook:&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.facebook.com/gadioncyber&quot;&gt;http://www.facebook.com/gadioncyber&lt;/a&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;And on Twitter:&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Ftwitter.com%2Fgadievron&amp;amp;h=ZAQGcMLPg&amp;amp;enc=AZPpkgVKDze5dWHhFuQYSw5kPMPikwlNjLV-zZANuURHoCYG5yudHKBOWydizfBqXipi_llDHXFutF5QM8yUISGZyS2wN54mzsZt4t7MXZunYc_nPWeE7Py2qxp0gZ0KeGpzn1ODaxx99m2Ojq17IaXb&amp;amp;s=1&quot;&gt;http://twitter.com/gadievron&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Gadi Evron.&lt;/div&gt;&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-1264216830283978133</guid>
         <pubDate>Tue, 06 Jan 2015 02:41:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://3.bp.blogspot.com/-O2Zvenu7DNk/VKtLQgCG9EI/AAAAAAAAAQc/jmJGHRd-I6s/s72-c/28-4-jan-2015.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>This Week in Cyber Security and Privacy, 21-27 December, 2014</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/T57Yc29Xe9Y/this-week-in-cyber-security-and-privacy.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;This Week in Cyber Security and Privacy's summary is released early this week, due to the holidays - with a personal message, on how cyber affects us personally. Merry Christmas! :)&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://1.bp.blogspot.com/-yjS0Fasag8g/VJnHM3EyNGI/AAAAAAAAAPo/dhxcXBdn5jQ/s1600/21-27-dec-2014.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://1.bp.blogspot.com/-yjS0Fasag8g/VJnHM3EyNGI/AAAAAAAAAPo/dhxcXBdn5jQ/s1600/21-27-dec-2014.jpg&quot; height=&quot;239&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Stories that didn't make it include hacking a skateboard, &lt;span class=&quot;text_exposed_show&quot;&gt;the FBI making &quot;Cyber&quot; a top priority, and the Kremlin announcing that Russia is on constant cyber alert.&lt;br /&gt; &lt;br /&gt; Links to stories:&lt;br /&gt; 1. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://m.nextgov.com/cybersecurity/2014/12/opm-alerts-feds-second-background-check-breach/101622/&quot;&gt;http://m.nextgov.com/cybersecurity/2014/12/opm-alerts-feds-second-background-check-breach/101622/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 2. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.reuters.com/article/2014/12/21/us-southkorea-nuclear-idUSKBN0JZ05120141221&quot;&gt;http://www.reuters.com/article/2014/12/21/us-southkorea-nuclear-idUSKBN0JZ05120141221&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.theguardian.com/world/2014/dec/22/south-korea-nuclear-power-cyber-attack-hack&quot;&gt;http://www.theguardian.com/world/2014/dec/22/south-korea-nuclear-power-cyber-attack-hack&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 3. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.threatconnect.com/news/operation-poisoned-helmand/&quot;&gt;http://www.threatconnect.com/news/operation-poisoned-helmand/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 4. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.itworld.com/article/2861675/cyberattack-on-german-steel-factory-causes-massive-damage.html&quot;&gt;http://www.itworld.com/article/2861675/cyberattack-on-german-steel-factory-causes-massive-damage.html&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.bbc.com%2Fnews%2Ftechnology-30575104&amp;amp;h=KAQFyBAIv&amp;amp;enc=AZPZV9-860H-OIXpnUGMo2MZ_QtFr25KwEYeQ3UeKKucYXfsMh1IpzOhgg9gpIvCc3ytOC1TiQ6WlHbkjuVE7cWplHDW2SNpkt34v-VvmYQ6hcqU1JIKBKSMqvPmkso4Lwu_olDqdZbbkQ7eaG_qUc9_&amp;amp;s=1&quot;&gt;http://www.bbc.com/news/technology-30575104&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 5. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.wired.com/2014/12/mathematicians-make-major-discovery-prime-numbers/&quot;&gt;http://www.wired.com/2014/12/mathematicians-make-major-discovery-prime-numbers/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; 6. &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.geekrepublic.org/tor-exit-node-cluster-shut-down/&quot;&gt;http://www.geekrepublic.org/tor-exit-node-cluster-shut-down/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt; Originally posted on Gadi Evron's blog, at: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gadievron.blogspot.com/&quot;&gt;http://gadievron.blogspot.com/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;Also on Facebook: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.facebook.com/gadioncyber&quot;&gt;http://www.facebook.com/gadioncyber&lt;/a&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;And on Twitter: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Ftwitter.com%2Fgadievron&amp;amp;h=ZAQGcMLPg&amp;amp;enc=AZPpkgVKDze5dWHhFuQYSw5kPMPikwlNjLV-zZANuURHoCYG5yudHKBOWydizfBqXipi_llDHXFutF5QM8yUISGZyS2wN54mzsZt4t7MXZunYc_nPWeE7Py2qxp0gZ0KeGpzn1ODaxx99m2Ojq17IaXb&amp;amp;s=1&quot;&gt;http://twitter.com/gadievron&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8263894505492616249</guid>
         <pubDate>Tue, 23 Dec 2014 19:51:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://1.bp.blogspot.com/-yjS0Fasag8g/VJnHM3EyNGI/AAAAAAAAAPo/dhxcXBdn5jQ/s72-c/21-27-dec-2014.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Cyber is not &quot;passwords&quot; - it's about YOU - Sony experience</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/D8C1Fh4vkRQ/cyber-is-not-passwords-its-about-you.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;span class=&quot;userContent&quot;&gt;Cyber is personal, it is about your life, your business - your kids.&lt;br /&gt; &lt;br /&gt; A story from an employee at Sony, following the hack. Worth reading:&lt;br /&gt; &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Ffortune.com%2F2014%2F12%2F20%2Fsony-pictures-entertainment-essay%2F&amp;amp;h=BAQECTNpz&amp;amp;s=1&quot;&gt;http://fortune.com/2014/12/20/sony-pictures-entertainment-essay/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;div style=&quot;cursor:pointer;display:inline-block;height:16px;width:16px;&quot;&gt;&amp;nbsp;&lt;/div&gt;&lt;div&gt;Gadi Evron.&lt;/div&gt;&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-6446015401684484788</guid>
         <pubDate>Mon, 22 Dec 2014 13:42:00 +0000</pubDate>
      </item>
      <item>
         <title>Sony and PRNK, still a better love story than...</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/h2mL8jsm2k4/sony-and-prnk-still-better-love-story.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;span class=&quot;userContent&quot;&gt;Gina from Cymmetria Research created another meme on Sony's incident.&amp;nbsp;&lt;i class=&quot;_4-k1 img sp_5Em_GKHOCoP sx_984323&quot;&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://3.bp.blogspot.com/-1IU7xUk5JNk/VJdnH6174AI/AAAAAAAAAO4/3KIYHpsQm9w/s1600/sony-2.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://3.bp.blogspot.com/-1IU7xUk5JNk/VJdnH6174AI/AAAAAAAAAO4/3KIYHpsQm9w/s1600/sony-2.jpg&quot; height=&quot;320&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-1107284626291189799</guid>
         <pubDate>Mon, 22 Dec 2014 00:35:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://3.bp.blogspot.com/-1IU7xUk5JNk/VJdnH6174AI/AAAAAAAAAO4/3KIYHpsQm9w/s72-c/sony-2.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Real damage, you say? SCADA is here.</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/h42FCqLT-xk/real-damage-you-say-scada-is-here.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;I'm often asked &quot;has cyber ever done any real damage?&quot; as if billions lost, lives ruined, and children harassed isn't enough. Cyber is not a separate entity - it's about living our lives and doing our business.&lt;br /&gt;&lt;br /&gt;Today, &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.itworld.com/article/2861675/cyberattack-on-german-steel-factory-causes-massive-damage.html&quot;&gt;this news story&lt;/a&gt; was published. A lot yet remains to be seen, but such case studies are exactly what we've been waiting for.&lt;br /&gt;&lt;br /&gt;Apparently, a steel factory in Germany suffered an attack, which resulted in an industrial attacks... or SCADA, cyber-physical, ICS, or whatever you want to call it - attack.&lt;br /&gt;&lt;br /&gt;I hope there will be more published on this.&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8805963485913561459</guid>
         <pubDate>Sat, 20 Dec 2014 22:11:00 +0000</pubDate>
      </item>
      <item>
         <title>Importance of intelligence :)</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/pQL7HN1y-co/importance-of-intelligence.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;According to &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://empirenews.net/bin-laden-shooter-rob-oneill-mistakenly-attacked-by-street-thugs-seeking-to-collect-debt-from-neighbor/&quot;&gt;this new story&lt;/a&gt;, streets thugs jumped the guy who shot Bin Laden, demonstrating the importance of collecting intelligence before an operation. ;)&lt;br /&gt;&lt;br /&gt;Too bad it's a satire. :)&lt;br /&gt;&lt;br /&gt;#darwinawards&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8184596763211768028</guid>
         <pubDate>Sat, 20 Dec 2014 14:20:00 +0000</pubDate>
      </item>
      <item>
         <title>Wasn't me!</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/0pG8eXoKHGo/we-didnt-want-to-stay-out-of-meme.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;We didn't want to stay out of the meme paradise this past week has offered. :)&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://4.bp.blogspot.com/-X4LXUiydHEo/VJVtYubXcSI/AAAAAAAAAOk/C-V08lJLb0E/s1600/sony-1.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://4.bp.blogspot.com/-X4LXUiydHEo/VJVtYubXcSI/AAAAAAAAAOk/C-V08lJLb0E/s1600/sony-1.jpg&quot; height=&quot;233&quot; width=&quot;400&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Meme created by Gina from Cymmetria Research.&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-4833191882797279452</guid>
         <pubDate>Sat, 20 Dec 2014 12:37:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://4.bp.blogspot.com/-X4LXUiydHEo/VJVtYubXcSI/AAAAAAAAAOk/C-V08lJLb0E/s72-c/sony-1.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>This Week in Cyber Security &amp; Privacy - 14-20 December, 2014</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/AusFvy7L98U/this-week-in-cyber-security-privacy-14.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;b&gt;This Week in Cyber Security and Privacy&lt;/b&gt;&lt;br /&gt;14-20 December, 2014&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class=&quot;separator&quot; style=&quot;clear:both;text-align:center;&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://3.bp.blogspot.com/-EZtFjQEWVMg/VJTRiiDNWTI/AAAAAAAAAOQ/C339BJu_yb8/s1600/14-20-dec-2014.jpg&quot; style=&quot;margin-left:1em;margin-right:1em;&quot;&gt;&lt;img border=&quot;0&quot; src=&quot;http://3.bp.blogspot.com/-EZtFjQEWVMg/VJTRiiDNWTI/AAAAAAAAAOQ/C339BJu_yb8/s1600/14-20-dec-2014.jpg&quot; height=&quot;240&quot; width=&quot;320&quot;/&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Links to stories:&lt;br /&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;- ICANN hacked:&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.theregister.co.uk/2014/12/17/icann_hacked_admin_access_to_zone_files/&quot;&gt;http://www.theregister.co.uk/2014/12/17/icann_hacked_admin_access_to_zone_files/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;- Oslo snooping mobile towers: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://rt.com/news/214327-snooping-mobile-towers-norway/&quot;&gt;http://rt.com/news/214327-snooping-mobile-towers-norway/&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;- &quot;Misfortune Cookie&quot; vulnerability: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.geekrepublic.org/millions-of-routers-from-different-vendors-are-vulnerable-to-misfortune-cookie-attacks/&quot;&gt;http://www.geekrepublic.org/millions-of-routers-from-different-vendors-are-vulnerable-to-misfortune-cookie-attacks/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;- Iranian hackers: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.foxbusiness.com%2Ftechnology%2F2014%2F02%2F12%2Fhackers-bust-las-vegas-sands-sites-in-cyber-attack%2F&amp;amp;h=jAQHfRp-D&amp;amp;enc=AZM2fs85A57hDe93JchAH02SHjP17k5pKpnHCPDDzFxK8IUk9ALlxS3DftUVvFrdBqqgyYa2IHZ_inssflFhcNY0mEVffAORLagg5ba4dzj6ZG_qKRDefY3wWeps5p1UrrXNsIjpOA6MrZVzdl65zLGf&amp;amp;s=1&quot;&gt;http://www.foxbusiness.com/technology/2014/02/12/hackers-bust-las-vegas-sands-sites-in-cyber-attack/&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;- Sheldon Adelson's casino attack attributed to Iranian hackers:&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.businessinsider.com%2Firanian-hackers-shut-down-sheldon-adelsons-casino-in-las-vegas-2014-12&amp;amp;h=rAQHMx3GJ&amp;amp;enc=AZNC8Omp8ZNocWBYgRZbf-ATXCYZ29xDYRtdxU8_EUjdVt3sbU3uMgei6kSQ5ihyd8crGjkq4D4mXctHWY8NQbhUt0d9J3wO-H7Vt9i8H8J0wofKJLnpe1zoYc3HLjYdyZYYllzjOPhBSN965stfRsVK&amp;amp;s=1&quot;&gt;http://www.businessinsider.com/iranian-hackers-shut-down-sheldon-adelsons-casino-in-las-vegas-2014-12&lt;/a&gt;&lt;br /&gt;- Linux: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwww.techworm.net%2F2014%2F12%2Fprivilege-escalation-vulnerability-in-linux-cve-2014-9322.html&amp;amp;h=2AQGzQSmX&amp;amp;enc=AZOWrncMWt92uZV6S3H99LqiX1qwgtQ5XGv5BhVav14GGnl6_SqOGB4X-cgcg4i_a_UYM2_8Tmh2YeuIwN3VIOnrYh8Y_qaRK4oH4qnZGhLqRUj5IGsrCGL08rwEZlw4xUS2tlfIkkekoqUoDaaT1eUt&amp;amp;s=1&quot;&gt;http://www.techworm.net/2014/12/privilege-escalation-vulnerability-in-linux-cve-2014-9322.html&lt;/a&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;- Git vulnerability: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://l.facebook.com/l.php?u=http%3A%2F%2Fwptavern.com%2Fcritical-git-vulnerability-patched-update-your-git-clients-immediately&amp;amp;h=YAQG1ZOpZ&amp;amp;enc=AZPW_RvEKqVKga_Hy2FC8GGaGK4biEwJQ1cR7-z1DEedy9wedqrxRr76Nkscpmh2kPv3Ti05IyPJL7IRKQjTeRhtRBnxUNM-OyYJISbCAzbR8AOKGLPnE3YjhULrZ0m7JPdkj47LHCeFzg3ePF2A9JAP&amp;amp;s=1&quot;&gt;http://wptavern.com/critical-git-vulnerability-patched-update-your-git-clients-immediately&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class=&quot;userContent&quot;&gt;&lt;span class=&quot;text_exposed_show&quot;&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;https://github.com/blog/1938-vulnerability-announced-update-your-git-clients&quot;&gt;https://github.com/blog/1938-vulnerability-announced-update-your-git-clients&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;- Sony breach:&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.csoonline.com/article/2859535/business-continuity/breach-insurance-might-not-cover-losses-at-sony-pictures.html&quot;&gt;http://www.csoonline.com/article/2859535/business-continuity/breach-insurance-might-not-cover-losses-at-sony-pictures.html&lt;/a&gt;&lt;span class=&quot;userContent&quot;&gt;- NIST revision: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.nist.gov/itl/csd/sp8000-53a-121614.cfm&quot;&gt;http://www.nist.gov/itl/csd/sp8000-53a-121614.cfm&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;Originally posted on Gadi Evron's blog, at: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gadievron.blogspot.com/&quot;&gt;http://gadievron.blogspot.com/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Also on Facebook:&amp;nbsp;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.facebook.com/gadioncyber&quot;&gt;http://www.facebook.com/gadioncyber&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;And on Twitter: &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;http://twitter.com/gadievron&lt;/a&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Gadi Evron.&lt;/div&gt;&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-107834946483065181</guid>
         <pubDate>Sat, 20 Dec 2014 01:36:00 +0000</pubDate>
         <media:thumbnail height="72" url="http://3.bp.blogspot.com/-EZtFjQEWVMg/VJTRiiDNWTI/AAAAAAAAAOQ/C339BJu_yb8/s72-c/14-20-dec-2014.jpg" width="72" xmlns:media="http://search.yahoo.com/mrss/"/>
      </item>
      <item>
         <title>Sony is interesting, but not in what people speak of</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/Au9EvivFCAI/sony-is-interesting-but-not-in-what.html</link>
         <description>&lt;div dir=&quot;ltr&quot; style=&quot;text-align:left;&quot;&gt;Some interesting things happening at Sony - and they are the ones deserving of our attention. Not this attribution nonsense.&lt;br /&gt;&lt;br /&gt;Was it N. Korea behind the Sony attacks? Why? Why not? Fact is, nobody knows. It just happened 30 seconds ago. Speak about something important instead - like how to do better.&lt;br /&gt;&lt;br /&gt;Honestly, if I was still a CISO, with today's horrible state of cyber security's systematic failure - I'd not be sleeping at night.&lt;br /&gt;I like to avoid FUD and speak facts and measurements - I'm mentioning such &quot;scare talk&quot; as, honestly - would you be sleeping at night if you were a CISO?&lt;br /&gt;&lt;br /&gt;That said, here are some interesting tangential stories to follow on this:&lt;br /&gt;&lt;br /&gt;Geo-politics are warming up to something... but what? I am slightly concerned by this message from Obama, and yet it makes me wonder if he knows something we don't, or just responds to the public to instill calm... or?&lt;br /&gt;&lt;br /&gt;&lt;u&gt;Story: Obama vows US response to Sony hack&lt;/u&gt;&lt;br /&gt;http://www.bbc.co.uk/news/world-us-canada-30555997&lt;br /&gt;&lt;br /&gt;Cyber insurance is being put to its first major test. I'll be following this story closely.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;Story: Breach insurance might not cover losses at Sony Pictures&lt;/u&gt;&lt;br /&gt;http://www.csoonline.com/article/2859535/business-continuity/breach-insurance-might-not-cover-losses-at-sony-pictures.html&lt;br /&gt;&lt;br /&gt;Sony is not making a very good job at incident response, and in fact, is making a bad show of it - doing what the attackers want, lashing out at file sharers, etc. But knowing they are vulnerable right now and can't do much about it - what would you have done differently? I can't really judge them.&lt;br /&gt;&lt;br /&gt;That said, it will be interesting to watch how the movie's numbers do, now that it gains the &quot;forbidden fruit&quot; infamy.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;Story: Sony pulls movie &quot;The Interview&quot;&lt;/u&gt;&lt;br /&gt;http://www.theguardian.com/film/2014/dec/18/sony-pictures-the-interview-north-korea&lt;br /&gt;&lt;br /&gt;Gadi Evron.&lt;/div&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8098324203157332831</guid>
         <pubDate>Fri, 19 Dec 2014 22:01:00 +0000</pubDate>
      </item>
      <item>
         <title>Using Laser To Fingerprint Paper</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/RI1iX5Q2JOc/using-laser-to-fingerprint-paper.html</link>
         <description>I like it when old technologies and known scientific facts are used in a new way that makes them &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://nanotechwire.com/news.asp?nid=2254&quot;&gt;pure genius&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;A discovery of old, which will change the future.&lt;br /&gt;&lt;blockquote&gt;Ingenia Technology Limited today launches an exciting breakthrough proprietary technology, developed by Imperial College London and Durham University - the Laser Surface Authentication system (LSA). The LSA system recognises the inherent 'fingerprint' within all materials such as paper, plastic, metal and ceramics.&lt;br /&gt;&lt;br /&gt;The LSA system is a whole new approach to security and could prove valuable in the war against terrorism through its ability to make secure the authenticity of passports, ID cards and other documents such as birth certificates.&lt;br /&gt;&lt;br /&gt;This technological breakthrough has been masterminded by Professor Russell Cowburn, Professor of Nanotechnology in the Department of Physics at Imperial College London.&lt;br /&gt;&lt;br /&gt;Every paper, plastic, metal and ceramic surface is microscopically different and has its own 'fingerprint'. Professor Cowburn's LSA system uses a laser to read this naturally occurring 'fingerprint'. The accuracy of measurement is often greater than that of DNA with a reliability of at least one million trillion.&lt;br /&gt;&lt;br /&gt;The inherent 'fingerprint' is impossible to replicate and can be easily read using a low-cost portable laser scanner. This applies to almost all paper and plastic documents, including passports, credit cards and product packaging.&lt;/blockquote&gt;More on the science behind this:&lt;br /&gt;&lt;blockquote&gt;&quot;A unique 'fingerprint' is formed by microscopic surface imperfections on almost all paper documents, plastic cards and product packaging. That is what makes it possible to develop a much cheaper system to combat fraud. This inherent identity code is virtually impossible to modify. It can easily be read using a low-cost portable laser scanner.&lt;br /&gt;&lt;br /&gt;&quot;Since all non-reflective surfaces have naturally occurring roughness that is a source of physical randomness, our technology can provide in-built security for a range of objects such as passports, ID and credit cards and pharmaceutical packaging. It can be cheaper and more reliable than current methods such as holograms and security ink.&lt;br /&gt;&lt;br /&gt;&quot;Our research team used the optical phenomenon of 'laser speckle' to examine the fine structure of different surfaces using a focused laser.&lt;br /&gt;&lt;br /&gt;&quot;We tried the technique on a variety of materials including matt-finish plastic cards, identity cards and coated paperboard packaging. The result was a clear recognition between the samples. This continued even after they were subjected to rough handling, including submersion in water, scorching, scrubbing with an abrasive cleaning pad and being scribbled on with thick black marker.&lt;br /&gt;&lt;br /&gt;&quot;The beauty of this system is that we do not need to modify the item being protected in any way with tags, chips or ink - it is as if documents and packaging had their own unique DNA. This makes protection secret, simple to integrate into the manufacturing process and immune to attack.&lt;br /&gt;&lt;br /&gt;&quot;It can be applied retrospectively and is no threat to personal privacy.&quot;&lt;/blockquote&gt;Look for this at the immigration desk verifying your passport, five years from now.&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-3243620411761763852</guid>
         <pubDate>Thu, 18 Mar 2010 14:56:00 +0000</pubDate>
      </item>
      <item>
         <title>An interesting day in information security</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/BfvMQxuBpuI/interesting-day-in-information-security.html</link>
         <description>A Mafia boss was caught because of his &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://abcnews.go.com/International/facebook-finds-mafia-boss/story?id=10124958&quot;&gt;using Facebook&lt;/a&gt;, while unrelated to that the EFF released the result of their Freedom of Information request for material on how &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.eweek.com/c/a/Security/Social-Network-Privacy-Concerns-Raised-by-Undercover-Police-Tactics-409306/&quot;&gt;law enforcement uses social networking&lt;/a&gt; to investigate suspects. &quot;under cover&quot;.&lt;br /&gt;&lt;br /&gt;The SEC moved to freeze portfolios and accounts following attacks by a Russian hacker, &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.wired.com/threatlevel/2010/03/manipulated-stock-prices/&quot;&gt;who manipulated stocks&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;InfoSecurity magazine has a story on &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.infosecurity-magazine.com/view/8033/espionage-in-sport/&quot;&gt;espionage in sport&lt;/a&gt;, mentioning how where there's a motive, cyber-crime follows.&lt;br /&gt;&lt;br /&gt;And of course, the leading story (which I discovered thanks to a post on Facebook by Dave Aitel) is how an hacker (if that is a descriptive word in this case) b&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.wired.com/threatlevel/2010/03/hacker-bricks-cars/&quot;&gt;roke into 100 cars&lt;/a&gt; to cause inconvenience, such as honking, or immobilizing customer the cars.&lt;br /&gt;&lt;br /&gt;He hijacked the remote control system (&quot;web-based vehicle-immobilization system normally used to get the attention of consumers delinquent in their auto payments&quot;) by logging on with an account of an employee. He used to be an employee himself, until fired later on.&lt;br /&gt;&lt;br /&gt;Also, check out this extremely interesting paper from Cormac Herley at Microsoft Research on why people reject security advice:&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://research.microsoft.com/en-us/um/people/cormac/papers/2009/SoLongAndNoThanks.pdf&quot;&gt;So Long, And No Thanks for the Externalities&lt;/a&gt;: &lt;br /&gt;The Rational Rejection of Security Advice by Users&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-5242890246519172616</guid>
         <pubDate>Thu, 18 Mar 2010 14:10:00 +0000</pubDate>
      </item>
      <item>
         <title>Email Portability Approved by Knesset Committee</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/8Rxv81q-JFc/email-portability-approved-by-knesset.html</link>
         <description>The email portability bill has just been approved by the Knesset's committee for legislation, sending it on its way for the full legislation process of the Israeli parliament.&lt;br /&gt;&lt;br /&gt;While many users own a free email account, many in Israel still make use of their ISP's email service.&lt;br /&gt;&lt;br /&gt;According to this proposed bill, when a client transfers to a different ISP the email address will optionally be his to take along, &quot;just like&quot; mobile providers do today with phone numbers.&lt;br /&gt;&lt;br /&gt;This new legislation makes little technological sense, and will certainly be a mess to handle operationally as well as beurocratically, but it certainly is interesting, and at least the notion is beautiful.&lt;br /&gt;&lt;br /&gt;The proposed bill can be found here [Doc, Hebrew]:&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://my.ynet.co.il/pic/computers/22022010/mail.doc&quot;&gt;http://my.ynet.co.il/pic/computers/22022010/mail.doc&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Linked to from this ynet (leading Israeli news site) story, here:&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.ynet.co.il/articles/0,7340,L-3852744,00.html&quot;&gt;http://www.ynet.co.il/articles/0,7340,L-3852744,00.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-2086751118893907074</guid>
         <pubDate>Mon, 22 Feb 2010 15:06:00 +0000</pubDate>
      </item>
      <item>
         <title>Chuck Norris Botnet and Broadband Routers</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/02RbuB-0JFU/chuck-norris-botnet-and-broadband.html</link>
         <description>Last week &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://praguemonitor.com/2010/02/16/czech-experts-uncover-global-virus-network&quot;&gt;Czech researchers&lt;/a&gt; released information on a new worm which exploits CPE devices (broadband routers) by means such as default passwords, constructing a large DDoS botnet. Today this story hit &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.pcworld.com/businesscenter/article/189868/chuck_norris_botnet_karatechops_routers_hard.html&quot;&gt;international news&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;When I raised this issue before in 2007 on the NANOG mailing list, some other vetted mailing lists and on CircleID &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.circleid.com/posts/broadband_routers_botnets/&quot;&gt;here&lt;/a&gt; and &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.circleid.com/posts/broadband_router_insecurity/&quot;&gt;here&lt;/a&gt;, the consensus was that the vendors will not change their position on default settings unless &quot;something happens&quot;, I guess this is it, but I am not optimistic on seeing activity from vendors on this now, either.&lt;br /&gt;&lt;br /&gt;The spread of insecure broadband modems (DSL and Cable) is extremely wide-spread, with numerous ISPs, large and small, whose entire (read significant portions of) broadband population is vulnerable. In tests Prof. Randy Vaughn and I conducted with some ISPs in 2007-8 the results have not been promising.&lt;br /&gt;&lt;br /&gt;Further, many of these devices world wide serve as infection mechanisms for the computers behind them, with hijacked DNS that points end-users to malicious web sites.&lt;br /&gt;&lt;br /&gt;On the ISPs end, much like in the early days of botnets, many service providers did not see these devices as their responsibility -- even though in many cases they are the providers of the systems, and these posed a potential DDoS threat to their networks. As a mind-set, operationally taking responsibility for devices located at the homes of end users made no sense, and therefore the stance ISPs took on this issue was understandable, if irresponsible.&lt;br /&gt;&lt;br /&gt;As we can't rely on the vendors, ISPs should step up, and at the very least ensure that devices they provide to their end users are properly set up (a significant number of iSPs already pre-configure them for support purposes).&lt;br /&gt;&lt;br /&gt;The Czech researchers have done a good job and I'd like to thank them for sharing their research with us.&lt;br /&gt;&lt;br /&gt;In &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.pcworld.com/businesscenter/article/189868/chuck_norris_botnet_karatechops_routers_hard.html&quot;&gt;this article&lt;/a&gt; by Robert McMillan, some details are shared in English:&lt;br /&gt;&lt;blockquote&gt;Discovered by Czech researchers, the botnet has been spreading by taking advantage of poorly configured routers and DSL modems, according to Jan Vykopal, the head of the network security department with Masaryk University's Institute of Computer Science in Brno, Czech Republic.&lt;br /&gt;&lt;br /&gt;The malware got the Chuck Norris moniker from a programmer's Italian comment in its source code: &quot;in nome di Chuck Norris,&quot; which means &quot;in the name of Chuck Norris.&quot; Norris is a U.S. actor best known for his martial arts films such as &quot;The Way of the Dragon&quot; and &quot;Missing in Action.&quot;&lt;br /&gt;&lt;br /&gt;Security experts say that various types of botnets have infected millions of computers worldwide to date, but Chuck Norris is unusual in that it infects DSL modems and routers rather than PCs.&lt;br /&gt;&lt;br /&gt;It installs itself on routers and modems by guessing default administrative passwords and taking advantage of the fact that many devices are configured to allow remote access. It also exploits a known vulnerability in D-Link Systems devices, Vykopal said in an e-mail interview.&lt;br /&gt;&lt;br /&gt;A D-Link spokesman said he was not aware of the botnet, and the company did not immediately have any comment on the issue.&lt;br /&gt;&lt;br /&gt;Like an earlier router-infecting botnet called Psyb0t, Chuck Norris can infect an MIPS-based device running the Linux operating system if its administration interface has a weak username and password, he said. This MIPS/Linux combination is widely used in routers and DSL modems, but the botnet also attacks satellite TV receivers.&lt;/blockquote&gt;Read more, &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.pcworld.com/businesscenter/article/189868/chuck_norris_botnet_karatechops_routers_hard.html&quot;&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-5386703276962194081</guid>
         <pubDate>Mon, 22 Feb 2010 14:09:00 +0000</pubDate>
      </item>
      <item>
         <title>Mozilla Add-on Policies and Spyware Surprises</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/_6uKIHNnKyk/mozilla-add-on-policies-and-spyware.html</link>
         <description>Following up on my previous post, I wrote a full accounting of how I discovered FlashGot illegitimate behavior, as well as how Mozilla's policies work on such issues:&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.darkreading.com/blog/archives/2010/02/mozillas_addon.html&quot;&gt;http://www.darkreading.com/blog/archives/2010/02/mozillas_addon.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;&lt;/b&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-3269666848922638765</guid>
         <pubDate>Thu, 18 Feb 2010 04:16:00 +0000</pubDate>
      </item>
      <item>
         <title>Flashgot Firefox Plugin Now Spyware</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/gEht8vqIdnY/flashgot-firefox-plugin-now-spyware.html</link>
         <description>FlashGot Firefox plugin, a long-time download assistant, now acts like spyware.&lt;br /&gt;&lt;br /&gt;It gives you recommendations IN Google search to another search site, according to your searches.&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;&lt;/b&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8090103525912366768</guid>
         <pubDate>Tue, 16 Feb 2010 07:45:00 +0000</pubDate>
      </item>
      <item>
         <title>Personal Story, Tactical Communication and Conversation Manipulation</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/10a-dxoWjFE/personal-story-tactical-communication.html</link>
         <description>[syndicated from my personal blog, &lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gevron.livejournal.com/40376.html&quot;&gt;here&lt;/a&gt;]&lt;br /&gt;&lt;br /&gt;Going back home from meeting friends for a beer, I was excited. It's not often that I encounter something cool to do which also appeals to my youth's old tactical nature. When I do, I jump it! This is a story of how someone tried to manipulate me, and how I countered.&lt;br /&gt;&lt;br /&gt;The two friends with me discussed a fascinating topic I didn't even know existed, and simply because I saw that I could do so, I decided to bring this topic to a larger audience, creating a mini-conference on the subject.&lt;br /&gt;&lt;br /&gt;First on my list was to find a location, so I sent an email to a local academic who could be a good partner for this, and called a couple of other friends to get them on board, arranged for speakers, PR and other necessities.&lt;br /&gt;&lt;br /&gt;The next day I received an answer with a phone number, and within a few hours had the academic in question on my cell phone. He asked me to call his land line, and I did. Our conversation was very easy-going and friendly in tone. Smiles splattered on our faces.&lt;br /&gt;&lt;br /&gt;I told him I am excited to speak with him, as he obviously has more experience on this particular subject. I was differential as academic ego demands, showing him the respect he deserves, but in tone -- I remained an equal.&lt;br /&gt;&lt;br /&gt;I made my case, and he cut in, asking &quot;Can you explain what you have in mind? We ran a conference on this four years ago. Do you have something new to warrant an event?&quot;&lt;br /&gt;&lt;br /&gt;&quot;No,&quot; I answered honestly in an &lt;i&gt;interrupt&lt;/i&gt; of my own. He apparently didn't expect that, so I asked to continue my pitch, and then did.&lt;br /&gt;&lt;br /&gt;A lot changed in the last four years, and even if not, in a university environment four years ia an eternity -- with many new students who would appreciate this event. I had better arguments than these, and as my purpose was cooperation rather than confrontation, I preferred to move on.&lt;br /&gt;&lt;br /&gt;I explained how this topic is exciting, how it has direct impact on both higher education as well as real implications for daily life, governance, and the economy. I used two anecdotal examples to illustrate this, and my excitement probably dripped all over him, even over the phone.&lt;br /&gt;&lt;br /&gt;&quot;Well,&quot; he responded, &quot;let me tell you about an idea I had.&quot;&lt;br /&gt;&lt;br /&gt;&lt;i&gt;DING DING DING DING DING&lt;/i&gt;&lt;br /&gt;Warning bells sounded in my head. &quot;Happily, what's your idea?&lt;br /&gt;&lt;br /&gt;He told me about an event he thought of, which sounded interesting. As he spoke I got about three ideas running in my head on the subject, but I listened quietly. &quot;I would like to work with you, and if you can take some time to think of ideas for what we can do at this event, I'd appreciate us talking about them.&quot;&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Stay on message&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&quot;Of course,&quot; I said, &quot;I'd be more than happy to.&quot; And I was. &quot;However&quot;, I continued with the same breath, &quot;this conversation is about the first idea, so while I'd definitely like to discuss this with you further later, let's stick to the first one for now.&quot;&lt;br /&gt;&lt;br /&gt;&quot;Alright.&quot; he said, and we discussed a bit further, at which point he said &quot;well, last year we ran a small event on this topic, and there was real innovation there which we could showcase. What will be new here?&quot;&lt;br /&gt;&lt;br /&gt;I explained a bit more on why I am excited, and why the topic is relevant, and how such an event can be beneficial. Then I decided to change tactics to show my resolve.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Stay on message, clarify position&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&quot;As you know, I am a security professional.&quot;&lt;br /&gt;&lt;br /&gt;&quot;Yes, that is where I know you from. Security, Internet, Cyber Warfare... Why does this subject interest you?&quot;&lt;br /&gt;&lt;br /&gt;&quot;Truth be told,&quot; I happily jumped in, &quot;I am excited. I learned to be a strategic person, but at heart, I am a tactical person, energized by excitement. I am excited about this topic, and I am willing to put the time into making this event happen. I will make it happen, but as I know of your vast expertise, I decided I must approach you first.&quot;&lt;br /&gt;&lt;br /&gt;After more deliberation he asked me &quot;What do you think of my event idea? I'd appreciate your opinion on ideas for it, and we can get back together on this after you think about it.&quot;&lt;br /&gt;&lt;br /&gt;&lt;i&gt;DING DING DING DING DING&lt;/i&gt;&lt;br /&gt;Alarm bells rang again.&lt;br /&gt;&lt;br /&gt;&quot;I already thought about it, and have three ideas so far.&quot;&lt;br /&gt;&lt;br /&gt;&quot;Oh, great! What are your ideas?&quot;&lt;br /&gt;&lt;br /&gt;I shared two, as my short-term memory had already erased the third. I told him as much, and I think he believed me, but it could be seen as a lure or a trick. We were extremely friendly. He asked me to email him the third one if I remember it. I promised to do so.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Stay on message&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&quot;I'd like however, to finish our discussion of my idea for now, as there is a time constraint.&quot;&lt;br /&gt;&lt;br /&gt;When he heard I want to get it done within a month rather than a year, he was shocked. I told him how excited I am about the specific speakers I want to bring, and how one of them is leaving the country to join his new wife, and he is a major source of my energy for this. I mentioned how I understand if his events schedule is already closed for the coming year, but wanted to make sure and contact him first.&lt;br /&gt;&lt;br /&gt;It wasn't my intention to go cold on him or play &quot;girl negotiation&quot; by appearing not interested, but rather to give him  way out. But whether it was my excitement or the &quot;girl tactic&quot;, or even the ego massage, it seemed to work.&lt;br /&gt;&lt;br /&gt;He got excited about this speaker as well, and asked about getting him on video before he leaves. Then....&lt;br /&gt;&lt;br /&gt;&lt;i&gt;BANG BANG BANG BANG BANG&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;A trick I've never seen before, which unlike the ones used up to now, is purely manipulative from whatever perspective you may look at it.&lt;br /&gt;&lt;br /&gt;&quot;How about we both take a couple of days to think of our two ideas, then get back together and pick one?&quot;&lt;br /&gt;&lt;br /&gt;This is wrong on so many levels. To begin with, his idea is not on the agenda. Second, he assumes I am willing to give up on my idea. Third, he assumes it's one or the other, this is a false choice logical fallacy.&lt;br /&gt;&lt;br /&gt;More importantly, with this trick he can potentially achieve four immediately obvious things. First, wipe the slate clean to run his arguments by me again. Second, put distance between the chats so that I have time to move from my strong position, and consider his, perhaps feeling uncomfortable turning him down again. Third, it puts the subject on the agenda. And fourth, potentially try to wear me down, as most people won't call again in two days, or in two months. &lt;br /&gt;&lt;br /&gt;I didn't miss a beat.&lt;br /&gt;&lt;br /&gt;&quot;I would be happy to discuss your idea separately, it sounds very interesting and I'd be happy to work with you on it. However, my resources are limited and at this time I am only interested in working on this one.&quot;&lt;br /&gt;&lt;br /&gt;I added my winning argument: &quot;I believe that I can get very good PR coverage for this mini-event, and get cooperation with Famous-Non-Profit which will also be happy to cover a part of the costs.&quot;&lt;br /&gt;&lt;br /&gt;He lighted up at the mention of PR. We spoke for a bit and he asked me for a few days to speak with his boss. A few days when I have only a month to get things going are critical, so I wasn't happy about it. But the request was reasonable. He threw the ball into my court though, so when I got off the phone, I sent him an email.&lt;br /&gt;&lt;br /&gt;I detailed five good ideas for his event, mentioned I was happy to talk with him, and was looking forward to hear from him soon. I also attached my phone number.&lt;br /&gt;&lt;br /&gt;As I said when I started this post, he really is a good guy, and very friendly. But he is also a politician. He is an expert communicator who interviewed people live for a decade as a journalist. So while I dislike manipulative behavior I recognize that for some, such behavior is more than acceptable. In fact, it is regular m.o. and needs to be expected as part of the game.&lt;br /&gt;&lt;br /&gt;Thing is, even just a few years ago I would have gotten stuck after his first &lt;i&gt;interrupt&lt;/i&gt;, and either ended up working on his event without realizing it -- or by being too friendly. Worse still, I could have mishandled the communication in a potentially offensive fashion. Some years ago more, and I wouldn't have been able to play the game, and would have taken offense.&lt;br /&gt;&lt;br /&gt;Being able to switch gears into &quot;I'm being manipulated&quot;, think fast on my feet with my responses, and keep the conversation on track for my purposes (also the stated agenda of the call) -- all while keeping the rapport going without losing one heart beat, got me very excited. The content of the call was suddenly secondary.&lt;br /&gt;&lt;br /&gt;While I am extremely straight-forward and honest in my communication style to a point of bluntness, I am a work in progress and am always learning. And I must admit, when two professionals meet, the conversation is happening on a completely different level. I am just surprised he didn't read through me that I was on to every single trick, when I was able to deflect them all. Or maybe he did and kept throwing them at me anyway to try and outwit me?&lt;br /&gt;&lt;br /&gt;The cynic in me may in retrospect reconsider the first thing he ever said to me, to call him back on land line, as a manipulative gesture to get me in a compliant mood. But that would be too paranoid -- wouldn't it?&lt;br /&gt;&lt;br /&gt;&lt;u&gt;There are a few issues to consider about this encounter&lt;/u&gt;:&lt;br /&gt;&lt;br /&gt;1. What was his motive? Perhaps he confused me for a hungry young hot shot, and wanted to use my excitement for his own ends. Perhaps a clear-cut switch-a-roo to get me to work on his event, &quot;stealing&quot; me from mine. Thus, bringing the conversation to where he wants it.&lt;br /&gt;&lt;br /&gt;Then again, maybe he was just trying to end the conversation non-confrontationally.&lt;br /&gt;&lt;br /&gt;2. His main tricks, in order were: change subject, switch-a-roo, get back together in 2 days.&lt;br /&gt;&lt;br /&gt;3. What can you do to counter such tricks? After all, you may not always have a quick wit about you, or know the specific tricks.&lt;br /&gt;&lt;br /&gt;The answer is similar to holding your own in politics: Stay on message. Know what your message is and stick to it. Others may try to confuse you, throw you off, and introduce a red-herring such as sending it for discussion in committee. Stay on message.&lt;br /&gt;&lt;br /&gt;4. More importantly, the conversation made it clear it is quite possible he has no political power on this front, and thus can't give me what I want anyway.&lt;br /&gt;&lt;br /&gt;Which brings us to...&lt;br /&gt;&lt;br /&gt;5. What is your goal?&lt;br /&gt;I kept going as I wanted to convince him, and after a fashion, I did get the best possible alternative result. But why keep at it if it won't achieve my goal?&lt;br /&gt;&lt;br /&gt;Two tricks such as he used can be excuses as part of natural discussion, at the third, why keep at it? By this time it is clear to both sides what's going on and no positive result can come out of it.&lt;br /&gt;&lt;br /&gt;More importantly, my purpose is to achieve a goal, and if I am not going to, why stay on a call that is probably uncomfortable for at least one of the sides, and as sure as the sky is blue, wastes my time?&lt;br /&gt;&lt;br /&gt;If my purpose is not adversarial, why treat the situation as a battle? Cooperative discussion is a much better approach. As no cooperation was likely to happen, keeping the discussion going was pointless.&lt;br /&gt;&lt;br /&gt;In summary, it didn't work out. But you should not get me wrong, I have a lot of respect for the guy. But it was one of the more fascinating five minutes in my life these past few months.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;Here are some articles I wrote on similar experiences I had&lt;/u&gt;:&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gevron.livejournal.com/11841.html&quot;&gt;I'm interested, but in you&lt;/a&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gevron.livejournal.com/32719.html&quot;&gt;Snap! Jazz music and mass hypnosis&lt;/a&gt;&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://gevron.livejournal.com/29557.html&quot;&gt;WTF! Or, wow, this never happened to me before!&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;&lt;/b&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-8671023777522844640</guid>
         <pubDate>Sun, 14 Feb 2010 16:52:00 +0000</pubDate>
      </item>
      <item>
         <title>Case study: undetected malware</title>
         <link>http://feedproxy.google.com/~r/MusingsOfAnOver-grownDwarf/~3/oS6Y_KMwbds/case-study-undetected-malware.html</link>
         <description>&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.cyberwart.com/blog/2010/01/09/undetected-malware-case-study-jan2010-01/&quot;&gt;&lt;img src=&quot;http://www.cyberwart.com/blog/wp-content/uploads/2010/01/010910_0402_UndetectedM12.png&quot;&gt;&lt;/a&gt;&lt;br /&gt;In this case study from The George Washington University, researchers Sara Laughlin and Matthew Wollenweber released their work on previously undetected malware they discovered via their IDS system. Unknown to most anti virus products, and proceeded to analyze it:&lt;br /&gt;&lt;blockquote&gt;On January 7th, 2010 GWU ISS Security identified a potential threat by a signature alert on a network sensor. Later analysis confirmed a security threat not currently detected by most antivirus products. This report details how the malware was detected and the analysis of the threat. Additionally, we hope this informs readers of a current threat.&lt;/blockquote&gt;This report underscores how anti virus products while a critical part of any computer's security, are insufficient by themselves, and inherently incomplete as a reactive solution.&lt;br /&gt;&lt;br /&gt;I applaud the good work from the researchers, and even more, the fact they took the time to write and to release this report. These are barely ever public, and they earned my respect.&lt;br /&gt;&lt;br /&gt;You can read the complete article here:&lt;br /&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://www.cyberwart.com/blog/2010/01/09/undetected-malware-case-study-jan2010-01/&quot;&gt;http://www.cyberwart.com/blog/2010/01/09/undetected-malware-case-study-jan2010-01/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Gadi Evron,&lt;br /&gt;ge@linuxbox.org.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;a rel=&quot;nofollow&quot; target=&quot;_blank&quot; href=&quot;http://twitter.com/gadievron&quot;&gt;Follow me on twitter! http://twitter.com/gadievron&lt;/a&gt;&lt;/b&gt;</description>
         <author>noreply@blogger.com (Gadi Evron)</author>
         <guid isPermaLink="false">tag:blogger.com,1999:blog-22537170.post-7295801068363910400</guid>
         <pubDate>Sun, 14 Feb 2010 07:17:00 +0000</pubDate>
      </item>
   </channel>
</rss>
<!-- fe2.yql.bf1.yahoo.com compressed/chunked Thu Oct  1 22:44:11 UTC 2015 -->
