[funsec] U.S. Attorney's office tells employees not to log on to Drudge Report

2009-05-15 Thread Larry Seltzer
spokeswoman, said it was because "a malicious code was found contained in a Web ad on Drudge."" How come only the DOJ knows about this and nobody else? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ <http://

Re: [funsec] U.S. Attorney's office tells employees not to log on to Drudge Report

2009-05-15 Thread Larry Seltzer
Has it? I'd like to learn more but nobody's reporting any details. What was the malware? Is it still on the network? I've seem malware through ad networks lots of times; are there other domains besides Drudge that they're not allowed to view at DOJ? Larry Seltzer Contributing

Re: [funsec] U.S. Attorney's office tells employees not to log on to Drudge Report

2009-05-15 Thread Larry Seltzer
to ban anything, ban the domains of the ad networks. But what really has me concerned here is that the Justice Department's malware management technique is to tell their users not to surf to a specific web site. That can't be an effective answer. They can't deal with this at the gatew

[funsec] infecting browsers

2009-05-19 Thread Larry Seltzer
-writeable folder. I guess it's only somewhat easier, but with Firefox you might have the added barrier of privilege elevation. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ <http://blogs.pcmag.com/secur

Re: [funsec] So, let's have fun and infect Paul Boutin...

2009-05-22 Thread Larry Seltzer
disable AV though. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Alex Eckelberry Sent: Friday, May 22, 2009 2:22 PM To: Funsec Subject

Re: [funsec] British Television

2009-06-01 Thread Larry Seltzer
MPFS ran 69-74. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Steve Pirk Sent: Monday, June 01, 2009 3:37 AM To

Re: [funsec] British Television

2009-06-01 Thread Larry Seltzer
I Guess that should be MPFC Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Larry Seltzer Sent: Monday, June 01, 2009

Re: [funsec] British Television

2009-06-01 Thread Larry Seltzer
I have fond memories of Blake's 7, which I must have seen around '82 Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Martin Hep

Re: [funsec] British Television

2009-06-01 Thread Larry Seltzer
The BBC has a page on Blake's 7 with clips: http://www.bbc.co.uk/cult/classic/blakes7/ 3rd link on Bing search of "Blakes's 7" - http://www.bing.com/search?q=Blake%27s+7&mkt=en-us&FORM=IE8SRC Larry Seltzer Contributing Editor, PC Magazine larry_

Re: [funsec] Capital One Says Its e-Mail 'Too Important to be Spam'

2009-06-10 Thread Larry Seltzer
>> Because Capital One has an established business relationship with Kevin, it has the right to contact him via e-mail under the terms of the CAN-SPAM Act. This is true, but I think CAN-SPAM still allows Kevin (who sounds a little OCD to me) to opt out. Larry Seltzer Contributing Edit

[funsec] The trouble with Kevin, the Capital One customer

2009-06-10 Thread Larry Seltzer
that there’s not enough resources to enforce it, and that so many of the actors are beyond the reach of the law, Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: Brian Andrews [mailto:newslet...@capetownlife.co.za] Sent

Re: [funsec] Real Spam

2009-06-10 Thread Larry Seltzer
ot the Yahoo toolbar. (Shouldn't that be the Bing Toolbar by now?) Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of

Re: [funsec] Real Spam

2009-06-10 Thread Larry Seltzer
Apple Software Update is probably in the Programs menu off Start Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Rob

Re: [funsec] Real Spam

2009-06-14 Thread Larry Seltzer
On what platform? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: Jon Kibler [mailto:jon.kib...@aset.com] Sent: Sunday, June 14, 2009 11:03 AM To: Larry Seltzer; funsec@linuxbox.org Subject: Re

[funsec] Windows Live profile spam

2009-06-14 Thread Larry Seltzer
I’ve never before received anything like this for Windows Live. I got a second invite just like this through Live Messenger. (Soon this will be changing to Bing profile spam) Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch

Re: [funsec] Finnish ISP delivered USB modems infected with Conficker

2009-06-16 Thread Larry Seltzer
USB modems running Windows? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Juha-Matti Laurio Sent: Tuesday, June 16

Re: [funsec] Finnish ISP delivered USB modems infected withConficker

2009-06-16 Thread Larry Seltzer
I ran this through Google Translate and it looks to me like it's USB sticks, not modems. Still a big mistake for an ISP. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbo

Re: [funsec] I'm stranded in London! Send money!

2009-06-22 Thread Larry Seltzer
Meng Wong got this a week ago: http://mengwong.livejournal.com/73172.html Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf

Re: [funsec] weirdo warning

2009-07-13 Thread Larry Seltzer
I think I used to work for this guy... Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Gadi Evron Sent: Monday, July

Re: [funsec] press trickery of the worst kind

2009-07-16 Thread Larry Seltzer
basic competitive pressures and the same pretentions about mission. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://linuxbox.or

Re: [funsec] Bank security

2009-07-22 Thread Larry Seltzer
OMFG Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Drsolly Sent: Wednesday, July 22, 2009 4:44 AM To: funsec

Re: [funsec] Rage against spammers and telemarketers

2009-07-22 Thread Larry Seltzer
> The real wonder, to me, is that more people who can relatively easily > flee the USA aren't. It's not as easy as it seems. The secret police are everywhere. I'll probably be dragged to some gulag, never to be seen again, just for posting this message. Fucking

Re: [funsec] Rage against spammers and telemarketers

2009-07-22 Thread Larry Seltzer
BTW, "making terroristic threats" is a very old term of crime, not at all connected to any recent hysterias. What this guy did sounds to me like it should be treated as a serious crime. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs

Re: [funsec] Bank security

2009-07-22 Thread Larry Seltzer
You didn't need to go to that trouble. Next time just ask me and I'll send them an e-mail from you. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: Drsolly [mailto:drsol...@drsolly.

Re: [funsec] Rage against spammers and telemarketers

2009-07-23 Thread Larry Seltzer
upied: my money's on >> the wolves, but I'll admit that's somewhat a sentimental pick. >> >No, God will just create another bunch of people. At least we know we don't die off in a flood, because God promised not to do that again. He wasn't so explicit about

Re: [funsec] Rage against spammers and telemarketers

2009-07-24 Thread Larry Seltzer
>> Actually, Athens was a REAL democracy. Every *citizen* could vote. This obviously led to groups of power which may have well have been oligarchy. Meaning men who were not slaves. Did they restrict to property owners? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdav

Re: [funsec] Fwd: [Dataloss] Network Solutions was PCI compliantbefore breach

2009-07-27 Thread Larry Seltzer
Do we know if they were saying that the merchant systems were compliant, or is it possible that they're talking (out of their ass) about their own commerce systems? Would an audit of Netsol necessarily extend to their hosted merchant systems? Larry Seltzer Contributing Editor, PC Mag

Re: [funsec] Well... that... was... different...

2009-07-28 Thread Larry Seltzer
Where are they running this ad? I'm not sure the Russia/China combo would sell well in the US. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec

Re: [funsec] DON'T DO STUPID THINGS!

2009-08-26 Thread Larry Seltzer
I was about to ask "what's 'conkers'?", but that's what Wikipedia is for: http://en.wikipedia.org/wiki/Conker Here in America things are simpler. Kids just throw rocks at each other. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http:/

Re: [funsec] Presidential Internet Kill Switch

2009-09-22 Thread Larry Seltzer
>>"Switches", in this context, are as likely as monkeys flying out of Gadi's posterior. Starting up Photoshop... Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___

Re: [funsec] Presidential Internet Kill Switch

2009-09-23 Thread Larry Seltzer
>From one of his many movies. I'd like to them, but it's a premium site. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of M

Re: [funsec] Presidential Internet Kill Switch

2009-09-23 Thread Larry Seltzer
cut. Let's hope Al-Qaeda never finds it! Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Adriel T. Desautels Sent: Wed

[funsec] "File server blew up over the weekend. Over 1000 SQL backup job failures in the inbox this morning. "

2009-10-05 Thread Larry Seltzer
Many tweets with this message in the last 24 hours or so. Any guess at what it's about? http://twitter.com/home#search?q=SQL%20backup%20job%20failures%20 <http://twitter.com/home#search?q=SQL%20backup%20job%20failures%20> Larry Seltzer Contributing Editor, PC Magazine

Re: [funsec] dumb. Comcast pop-ups

2009-10-10 Thread Larry Seltzer
quot;clean" network with rules like this would there be any value to opting in to it? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT

Re: [funsec] dumb. Comcast pop-ups

2009-10-11 Thread Larry Seltzer
ne day when that happens it will be a problem. In the meantime this is a fairly unobtrusive way for Comcast to communicate with users. When it's blocked they'll have to find another. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziff

[funsec] Public Policy and Consumer ISP Hygiene (was Comcast pop-ups)

2009-10-11 Thread Larry Seltzer
to get a lot of it done. Not perfect of course, but it gives users a real incentive to keep their systems clean. Local consultants and security software companies should make out like bandits. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatc

Re: [funsec] Public Policy and Consumer ISP Hygiene (was Comcast pop-ups)

2009-10-12 Thread Larry Seltzer
t been getting the job done. >>2) Replacing SMTP with something sane and secure. SMTP has got to be IETF's biggest failure. Serious efforts at that many years ago (MARID) essentially failed. >>3) Doing what we can to develop and increase our participation in a public key infrastru

Re: [funsec] dumb. Comcast pop-ups

2009-10-12 Thread Larry Seltzer
agination. It's why they're so far ahead of us and pulling further away every day. What do you actually expect Comcast to do by themselves, while still serving a broad market of clueless average users? They're in a tough spot and broad condescension like this doesn't contribute any

[funsec] Microsoft patches x.509 null-truncation attack

2009-10-13 Thread Larry Seltzer
http://www.microsoft.com/technet/security/Bulletin/MS09-056.mspx Dan - Why do they thank you for reporting this bug and not Moxie Marlinspike? I thought it was his. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ <h

Re: [funsec] Microsoft patches x.509 null-truncation attack

2009-10-13 Thread Larry Seltzer
You need to work on your self-promotion buddy. I had no idea. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: Dan Kaminsky [mailto:d...@doxpara.com] Sent: Tuesday, October 13, 2009 2:24 PM To: Larry Seltzer Cc

Re: [funsec] Public Policy and Consumer ISP Hygiene (was Comcastpop-ups)

2009-10-17 Thread Larry Seltzer
sn't seem to have changed things much. Would authenticating down to the sender level really improve things? (I hate it when I talk defeatist, but that's how I feel about this issue.) Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://bl

Re: [funsec] Public Policy and Consumer ISP Hygiene (wasComcastpop-ups)

2009-10-19 Thread Larry Seltzer
That is a big threat. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note: funsec

Re: [funsec] Public Policy and Consumer ISP Hygiene(was Comcastpop-ups)

2009-10-19 Thread Larry Seltzer
Peace Prize Committee, to rise to ever-higher levels of competence and dedication to the vision of an Internet free from the exploitation of the innocent. I expect Chinese and east European computer criminals to vide this video and see the folly of their ways. Larry Seltzer Contributing Editor, PC

Re: [funsec] Public Policy and Consumer ISP Hygiene(was Comcastpop-ups)

2009-10-19 Thread Larry Seltzer
utation and accreditation services. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note

Re: [funsec] Goodbye GeoCities

2009-10-26 Thread Larry Seltzer
Check out the tribute on www.xkcd.com Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Juha-Matti Laurio Sent: Monday

[funsec] House staffer accidentally leaks ethics document using home P2P software

2009-10-30 Thread Larry Seltzer
and several aides was exposed on a public network because of "...the use of peer-to-peer file sharing software on the personal computer of a junior staffer, who is no longer employed by the committee, while working from home." Larry Seltzer Contributing Editor, PC Magazine

[funsec] ICANN Approves Non-Latin Domain Name Characters

2009-10-31 Thread Larry Seltzer
http://www.pcmag.com/article2/0,2817,2355068,00.asp?kc=PCRSS05079TX1K992 So have the security implications of these new domain names really been thought through? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch

Re: [funsec] ICANN Approves Non-Latin Domain Name Characters

2009-10-31 Thread Larry Seltzer
Oh I know all this, just looking for quotes. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: Paul Ferguson [mailto:fergdawgs...@gmail.com] Sent: Saturday, October 31, 2009 9:35 AM To: Larry

Re: [funsec] ICANN Approves Non-Latin Domain Name Characters

2009-10-31 Thread Larry Seltzer
ng officialized like > this. They have a test root servers that I know they've used to test DNSSEC and other such things. I assume they've been using them for this. How much testing can they really do in such an environment? Larry Seltzer Contributing Editor, PC Magazine larry_selt.

Re: [funsec] ICANN Approves Non-Latin Domain Name Characters

2009-10-31 Thread Larry Seltzer
question: Is it possible that there are buffer overflows out there just from all the extra bytes in domain names? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mail

Re: [funsec] ICANN Approves Non-Latin Domain Name Characters

2009-10-31 Thread Larry Seltzer
se languages. What is the user experience like for such users? Gadi, how do you switch between typing Hebrew and English and whatever else you type? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message---

Re: [funsec] RIP str0ke

2009-11-04 Thread Larry Seltzer
This is a clue: http://twitter.com/str0ke/status/5422531377 Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Jon Kibler

Re: [funsec] RIP str0ke

2009-11-04 Thread Larry Seltzer
He has hacked deth and we shall worship him. All hail Plankton! I mean /str0ke! Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: Adriel T. Desautels [mailto:ad_li...@netragard.com] Sent

Re: [funsec] RIP str0ke

2009-11-04 Thread Larry Seltzer
Ahh, the perils of eponymity. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Drsolly Sent: Wednesday, November 04

Re: [funsec] [cisspforum] SSL/TLS broken?

2009-11-10 Thread Larry Seltzer
n then there are limits to what you can accomplish. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman

Re: [funsec] SSL/TLS broken?

2009-11-10 Thread Larry Seltzer
IBM: You can relax about the SSL break, mostly. http://blogs.iss.net/archive/sslmitmiscsrf.html Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun

[funsec] WARNING!

2009-11-14 Thread Larry Seltzer
There's a really bad virus going around on the Internet. Don't read anything, click on anything or do anything. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ <http://blogs.pcmag.com/

[funsec] Oooohhhh....

2009-11-14 Thread Larry Seltzer
Is this an old one? http://www.moanmyip.com/ Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ <http://blogs.pcmag.com/securitywatch/> ___ Fun and Misc security discussi

Re: [funsec] whitehouse cyber strategy review

2009-11-14 Thread Larry Seltzer
with, to my knowledge, no real success. As with Afghanistan, Obama is finding out that solutions that will work and gain political acceptance in the real world aren't as simple as his very clear campaign promises. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@zif

Re: [funsec] whitehouse cyber strategy review

2009-11-14 Thread Larry Seltzer
>> Don't run Windows, morons. Most of us have wondered for years what it would take for the malware community to pay attention to non-Windows platforms. This would do it. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/se

Re: [funsec] whitehouse cyber strategy review

2009-11-14 Thread Larry Seltzer
ised to in the campaign they're making it report to two different white house officials with vastly different priorities. That's why only a sucker would take it. Although for $120K and the exposure I'll put up with some failure for a while. Larry Seltzer Contributing Edito

Re: [funsec] whitehouse cyber strategy review

2009-11-14 Thread Larry Seltzer
Hey, maybe they'll hire Gadi. Several years ago the governor of New Jersey (my state) hired his Israeli gay lover as a security advisor. The guy had a marketing degree I think. It led to the Governor's resignation. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis

Re: [funsec] whitehouse cyber strategy review

2009-11-14 Thread Larry Seltzer
Not that I'm making any implications about Gadi, unless he's particularly intimate with Obama. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message----- From: Larry Seltzer Sent: Saturday, November 1

Re: [funsec] whitehouse cyber strategy review

2009-11-15 Thread Larry Seltzer
track here, but your experience is, at best, many years out of date. And you might have noticed that even when problems are fixed in the kernel the fixes often don't make it out to distributions for a while. And by "Don't run Windows" you meant "Run some UNIX variant"

[funsec] FW: Bruce Schneier Action Figure

2009-11-15 Thread Larry Seltzer
mail the company if you're interested, and if they get enough interest they'll do a bulk order. http://www.thatsmyface.com/f/bruce_schneier Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___

Re: [funsec] NASA on 2012 crap - excellent

2009-11-17 Thread Larry Seltzer
n 6 days (and then went down the shore for a day). Just 10 years ago many people believed the world would go to hell because of date bugs in software. Is there really any more belief in 2012 than the usual crackpot elements? Why would anyone stupid enough to believe it be persuaded by anything wri

Re: [funsec] So maybe the SSL bug is a non-issue ...

2009-11-17 Thread Larry Seltzer
ulnerability (which I think Twitter has fixed already) what could you do in a Twitter SSL session? I guess you could tweet, follow, etc. I don't know enough about the vocabulary of the API to know if you can do that on the current session without a handle of some kind. Larry Seltzer Contri

Re: [funsec] Microsoft predicts end of world in 2099!

2009-11-18 Thread Larry Seltzer
The system clock in Vista also maxes out at 2099. Outlook 2007 goes to the end of August, 4500. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun

Re: [funsec] Microsoft predicts end of world in 2099!

2009-11-18 Thread Larry Seltzer
ion tears For what he never knew Now man's reign is through But through the eternal night The twinkling of starlight So very far away Maybe it's only yesterday In the year 2525 If man is still alive If woman can survive They may find In the year 3535 Ain't gonna need to tell the trut

Re: [funsec] Microsoft predicts end of world in 2099!

2009-11-18 Thread Larry Seltzer
>> >> In The Year 2525 >> They don't make records like that any more So what would the hip-hop version or the Hannah Montana version of this song be like? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.

Re: [funsec] hacking ring steals 9 million from ATMs globally

2009-11-19 Thread Larry Seltzer
so many people and think you'll get away with it? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/li

Re: [funsec] Rethinking FUNSEC

2009-11-19 Thread Larry Seltzer
Chill Barry. Everyone back to work. Nothing to see here. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Barry

Re: [funsec] Rethinking FUNSEC

2009-11-19 Thread Larry Seltzer
I don't have a column anymore. Nowadays I copy funsec and paste it into Word and sell it as white papers to vendors. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: funsec-boun...@linuxbox.org [mailto:funsec

Re: [funsec] Rethinking FUNSEC

2009-11-19 Thread Larry Seltzer
No, but I guess I'm qualified. Anyone have a resume I can copy and send on to them? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: Alex Eckelberry [mailto:al...@sunbelt-software.com] Sent: Thursday, Novemb

Re: [funsec] Was the ClimateGate Hacker Justified? Join the Debate!

2009-11-27 Thread Larry Seltzer
e given as a justification. We're entitled to a full examination of the science and how it was approached and these e-mails are revealing in that regard. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ PS - If you haven'

Re: [funsec] finally! Re: Was the ClimateGate Hacker Justified? Join the Debate!

2009-11-27 Thread Larry Seltzer
>>> The hacker is wrong - ethically, morally and legally. > Thank you for answering the question actually asked. I agree. Was Daniel Ellsberg ethically, legally or morally wrong for leaking the Pentagon Papers? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdav

Re: [funsec] Family tech support

2009-11-29 Thread Larry Seltzer
t do? One answer could be whitelisting; it's becoming a reasonable solution in managed networks, but for consumers it's not clear who manages the list. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message---

Re: [funsec] Family tech support

2009-11-29 Thread Larry Seltzer
it succumb to a social engineering attack to lower their defenses. But you're right, you can avoid malware by using an unpopular platform for which it largely isn't written. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blog

Re: [funsec] Family tech support

2009-11-29 Thread Larry Seltzer
with netbooks shows that your experience is atypical. Netbooks were widely available with Linux and users rejected them in droves, demanding (!) Windows XP instead. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ __

Re: [funsec] Family tech support

2009-11-29 Thread Larry Seltzer
d be a reason to write malware for it. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/fun

Re: [funsec] Actual Climate Change Thread

2009-11-29 Thread Larry Seltzer
>> So during the last ice age, what did the global average temperature do? There's no way of knowing. What are you doing to do, take ice cores from Manhattan, Mexico, the Sahara and other spots around the world? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavi

Re: [funsec] Actual Climate Change Thread

2009-12-01 Thread Larry Seltzer
icult. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of Martin Tomasek Sent: Tuesday, December 01, 2009 6:47 AM To: valdis.kletni...@vt.e

Re: [funsec] History Chanel

2009-12-01 Thread Larry Seltzer
Didn't Nostradamus predict both the formation of the Grand Canyon and global warming? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec

Re: [funsec] use condoms, that will insure less climate change

2009-12-01 Thread Larry Seltzer
You don't provide it for trust, you provide it for encryption. Why does your site need encrypted transfers? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc sec

Re: [funsec] Why it sucks to live in Southern Chile

2009-12-02 Thread Larry Seltzer
>> They're probably just manipulating the data to further their agenda. This makes sense to me, but why would they have an agenda to promote bad hair? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/se

Re: [funsec] Why it sucks to live in Southern Chile

2009-12-02 Thread Larry Seltzer
Maybe the answer's in their source code comments. I'll go fake up some mail logs and post them via an open Russian proxy. >>> They're probably just manipulating the data to further their agenda. > > This makes sense to me, but why would they have an agenda to

Re: [funsec] Black screen

2009-12-03 Thread Larry Seltzer
They didn't say they have no idea, it's most likely malware. But it's not a common problem. Black screen bugs are old stuff in Windows for a variety of reasons. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.co

Re: [funsec] Black screen

2009-12-03 Thread Larry Seltzer
And the company that issued the alert has issued a groveling apology since Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On

Re: [funsec] Dr Solly triumphant

2009-12-05 Thread Larry Seltzer
Hip hip hoorah for the Doctor! Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of David Harley Sent: Saturday, December 05

Re: [funsec] simple question

2009-12-07 Thread Larry Seltzer
d as unicorns who died in the flood. Let's think Occam's Razor folks! Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ ___ Fun and Misc security discussion for OT posts. https://lin

[funsec] Who hacked... or was it leaked... the ClimateGate files?

2009-12-08 Thread Larry Seltzer
http://www.smalldeadanimals.com/FOIA_Leaked/ "The details of the files tell a story that FOIA2009.zip was compiled internally and most likely released by an internal source." Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/sec

Re: [funsec] maybe it's not over- climategate

2009-12-09 Thread Larry Seltzer
Gray's for real, but nothing in WorldNetDaily is worth reading Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ From: funsec-boun...@linuxbox.org [mailto:funsec-boun...@linuxbox.org] On Behalf Of RandallM Sent: Wedn

Re: [funsec] climate gate and programming bugs

2009-12-09 Thread Larry Seltzer
the leaked e-mails and documents they would not have agreed to release their data and code. I'll go one step further: No science is "settled" if nobody has even had the opportunity to replicate the work. Larry Seltzer Contributing Editor, PC Magazine larry_selt...

Re: [funsec] maybe it's not over- climategate

2009-12-09 Thread Larry Seltzer
WND was at the heart of all the birther trash. It's safe for everyone to suspect their motives and dismiss anything they put out. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/security

Re: [funsec] climate gate and programming bugs

2009-12-09 Thread Larry Seltzer
often? No, not at all. That's as may be. If we're expected to impose massive taxes and regulations on the economy based on this supposedly settled science we need to expect more in the way of proof. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com h

Re: [funsec] ram scraper

2009-12-10 Thread Larry Seltzer
For this approach to work the malware has to install on the system as a privileged process. Once that happens almost any conceivable defense is compromised. The mistake is that the system was left open to the malware. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com

Re: [funsec] climate gate and programming bugs

2009-12-10 Thread Larry Seltzer
Anybody would prefer an affordable Tesla. The problem is that they're not, and they won't be any time soon. Do you think the solution is to make gasoline-based cars unaffordable as well? Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs

Re: [funsec] climate gate and programming bugs

2009-12-10 Thread Larry Seltzer
would be ruined. That's one reason it's a good thing that this will take a while to happen. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- From: Michael Collins [mailto:mcoll...@aleae.com] Se

Re: [funsec] climate gate and programming bugs

2009-12-10 Thread Larry Seltzer
A Tesla costs a 100 fucking thousand dollars, and I'm sure they're losing money on every car. It's not a matter of convenience. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com http://blogs.pcmag.com/securitywatch/ -Original Message- Fr

Re: [funsec] ram scraper

2009-12-10 Thread Larry Seltzer
;t that running XP is a bad thing, but that running any system improperly configured is a bad idea. Pretty touch screens are not incompatible with good system configuration. Larry Seltzer Contributing Editor, PC Magazine larry_selt...@ziffdavis.com

  1   2   3   4   5   6   7   >