Monday, November 10, 2003

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  FCC To Hold First VoIP Hearings; Rules in 2004
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
2.  MozillaZine: Pinstripe New Default Theme for Mozilla Firebird on Mac OS X.
3.  Reuters: Sony's User-Friendly Copy Block. Extra crap on a CD does not make up for the inconvenience of DRM. The fact that a Sony CD only works with Sony portable music players is not like the iTunes Music Store only working with the iPod, since people have expectations that they can legally rip their legally-purchased CDs however they want. Give me a CD or nothing.

11:21:37 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  FCC: Number-switching rules apply to all. The agency issues an order that requires all landline phone companies to allow customers to transfer their numbers to cell phones when signing up for new services.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  RedHat: ethereal Buffer overflow vulnerability
3.  Microsoft Internet Explorer Self Executing HTML Arbitrary Code Execution Vulnerability

10:21:15 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  InfiniBand company wins further funds. Topspin Communications won a third round of funding, $20 million it plans to use to expand sales and marketing of its gear based on the InfiniBand high-speed networking technology.
2.  SPI Dynamics tools aid security auditors
3.  McDonald's targets iPass customers. The fast-food chain announces that it expects its hot-spot suppliers to support iPass' specification for business-class service.
4.  Motorola buys high-speed wireless chipmaker. The purchase of XtremeSpectrum gives Motorola a product lead in ultrawideband chips, but could plunge the company into a heated standards battle.
5.  IBM Itanium servers push higher. Big Blue plans announces its second Itanium server, a more powerful machine that can accommodate as many as 16 of the high-end processors from Intel.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Belkin To Offer Firmware Fix For Router Hijacking
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
7.  Azureus is a BitTorrent implementation with some interesting extra features like file priorities and way-too-much-data mode.
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
8.  Vulnerabilities: Ethereal DCERPC Dissector Memory Allocation Vulnerability. Ethereal is a freely available, open source network traffic analysis tool. It is maintained by the Ethereal Project and is available for most Unix and Linux variants as w...
9.  Vulnerabilities: Ethereal OSI Dissector Buffer Overflow Vulnerability. Ethereal is a freely available, open source network traffic analysis tool. It is maintained by the Ethereal Project and is available for most Unix and Linux variants as w...
10.  Vulnerabilities: Ethereal SPNEGO Dissector Denial Of Service Vulnerability. Ethereal is a freely available, open source network traffic analysis tool. It is maintained by the Ethereal Project and is available for most Unix and Linux variants as w...
11.  Vulnerabilities: Ethereal TVB_GET_NSTRINGZ0() Memory Handling Vulnerability. Ethereal is a freely available, open source network traffic analysis tool. It is maintained by the Ethereal Project and is available for most Unix and Linux variants as w...
12.  Vulnerabilities: Ethereal Multiple Dissector String Handling Vulnerabilities. Ethereal is a freely available, open source network traffic analysis tool. It is maintained by the Ethereal Project and is available for most Unix and Linux variants as w...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
13.  Keeping an eye on security

9:20:57 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Sun seeks to gain from HP stumble. Hewlett-Packard delays one Unix server improvement and backs away from another, and Sun Microsystems responds with a promotion to try to lure customers affected by the situation.
2.  Time Warner delays cable play. The media giant puts off buying its stake in a cable joint venture with Comcast--despite continued hints that it wants to expand in the business.
3.  Sharp picks Linux for at-home fun
4.  Supreme Court to hear Intel-AMD document case. The U.S. Supreme Court agrees to decide whether a foreign governmental body can view documents that were provided to U.S. courts under confidentiality agreements.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
5.  Dow Closes Down 53, Nasdaq Declines 29 (AP). AP - Wall Street pulled back Monday as wary investors decided to cash in recent gains despite upbeat news on IBM Corp. and Intel Corp.
6.  Desktop Linux Believers Speak Out (PC World). PC World - OS will come to business desktops, but slowly, they say.
7.  FCC OKs Home-To-Cell Phone Number Rule (AP). AP - The days of having more than one phone number may be, well, numbered for many people. Federal regulators approved rules Monday making it easier for consumers to go totally wireless by allowing them to transfer their home number to their cell phone.
8.  Microsoft Launches Virtual PC Software (NewsFactor). NewsFactor - Microsoft (Nasdaq: MSFT) has taken the wraps off its Virtual PC technology, which is designed to enhance interoperability and to help business customers bring along outdated applications when they upgrade to Windows XP systems.
9.  Judge Won't Reinstate Online Pharmacy (AP). AP - A federal judge is refusing to reinstate a license yanked by the Drug Enforcement Administration from a pharmacy that filled online orders for prescription diet pills without a doctor's visit.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
10.  JBoss Queries Apache Geronimo Code Similarity
11.  Imagine A UN-Run Internet
12.  IE To Block Pop-Ups
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
13.  OS X Windows Media Player 9 released. Microsoft Corp. has released Windows Media Player 9 for Mac OS X.
14.  Microsoft wants Lindows claims rejected. Microsoft Corp. has asked a San Francisco court to instruct the administrator in a $1.1 billion California class-action settlement to reject claims filed through MSfreePC.com, a site run by Linux vendor Lindows.com Inc.
15.  Red Hat users balk at Enterprise Linux licensing. SAN FRANCISCO - Linux may be a free operating system, but the days of free copying may be numbered for Red Hat Inc. customers who, as of this spring, will no longer be able to receive support from Red Hat without purchasing a support license for every version of Red Hat's server software that they run.
16.  Homeland Security: Tech partners needed. WASHINGTON - Private companies can play a role in national security by pitching technology projects to the U.S. Department of Homeland Security (DHS) and other agencies, agency representatives said Monday.
17.  Kodiak enters push-to-talk market - Infoworld Staff. On Monday, Kodiak Networks, a startup in the telecommunications industry, will launch the only push-to-talk technology that leverages the wireless carriers' existing voice networks.

ADVERTISEMENT:

Never Lose Email! Storactive LiveServ for Exchange - Storactive LiveServýs continuous, zero-loss backup eliminates Exchange data vulnerabilities and ensures rapid recovery of individual emails on up to entire data stores. Enables full recovery of data up to the moment a loss occurred. Get free info!

----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
18.  Virus writers dismiss Microsoft's bounty fund. Reward program is a marketing stunt that will have no deterrent effect
19.  Linux kernel attack thwarted. Attacker attempts to plant Trojan virus in Linux kernel

ADVERTISEMENT:

Get strong 128-bit SSL security for your online business - To secure your servers with 128-bit SSL encryption, download a copy of the free VeriSign Guide, "Securing Your Web site for Business." You'll learn everything you need to know about encrypting e-commerce transactions, securing corporate intranets, and authenticating your Web site.

20.  Homeland Security: Tech partners needed. Agency urges private companies to pitch it with technology projects
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
21.  Debian: epic4 Buffer overflow vulnerability
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
22.  Crypto System Promises Fiber-optic Security
23.  Security Incidents Are Holding Steady
24.  Trend Micro, Netscreen Team Up On Firewall/VPN Appliance
25.  Net Integration Launches Linux OS-On-A-Chip Software
26.  New Worm Using Pornographic Names

8:20:36 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  SSL networking heats up. The market is heating up for products that allow secure access to corporate networks based on a widely used browser security technology known as secure sockets layer encryption.
2.  3Com goes three-way on Wi-Fi. The networking gear maker says it will use a combination of all three Wi-Fi technologies--802.11 a, b and g--in its upcoming products, adding momentum to an industry trend.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Senate Still Talking of Internet Access Taxes (Reuters). Reuters - U.S. Senate lawmakers on Monday struggled to renew a ban on Internet access taxes as proponents offered to limit its scope in order to allay concerns that it could hurt state coffers.
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
4.  Vulnerabilities: Microsoft Windows DCOM RPC Interface Buffer Overrun Vulnerability. Microsoft Windows provides a DCOM (Distributed Component Object Model) interface to the RPC (Remote Procedure Call) protocol. A buffer overrun vulnerability has been rep...

7:20:16 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Risky business to top 2004 IT spending. Security and data disaster recovery rank among the top information technology priorities for next year, according to a Forrester Research report.
2.  Salesforce.com signs AMD, updates software. The software-as-a-service company makes one of its largest deals ever, taking on Advanced Micro Devices. It also plans to introduce a new version of its software by the end of the month.
3.  FCC: Number-switching rules apply to all. The agency issues an order that requires all landline phone companies to allow customers to transfer their numbers to cell phones when signing up for new services.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  AT&T Wireless Glitch Delays New Service (AP). AP - AT&T Wireless Services Inc. is struggling to activate wireless phone service for new customers after a software upgrade problem crippled its ability for a week to start the accounts.
5.  FCC Upholds Wireline to Wireless Moves (Reuters). Reuters - U.S. consumers will soon be able to switch their home telephone number to their wireless phone and vice-versa, U.S. regulators said on Monday, rejecting a request for a delay by some local telephone carriers like SBC Communications Inc. (SBC.N)
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Apple G5 Ads Banned In UK
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
7.  BugTraq: RE: POS#1 Self-Executing HTML: Internet Explorer 5.5 and 6.0 Part III. Sender: Evans, Arian [Arian dot Evans at fishnetsecurity dot com]
8.  BugTraq: Re: Six Step IE Remote Compromise Cache Attack. Sender: Steven M dot Christey [coley at mitre dot org]
9.  Vulnerabilities: TerminatorX Multiple Command-Line and Environment Buffer Overrun Vulnerabilities. terminatorX is a freely available, open source music manipulation program. It is available for the Linux platform.

It has been reported that TerminatorX may be prone to ...

10.  Vulnerabilities: TerminatorX Command-line Format String Vulnerability. TerminatorX is a freely available, open source music manipulation program. It is available for the Linux platform.

It has been reported that TerminatorX may be prone to ...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
11.  Aimster calls for Supreme Court showdown. Deep goes to Washington
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
12.  Columnists: Proposed: a Bounty for Bugs

6:20:08 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Verizon launches Samsung smart phone. U.S. cellular carrier Verizon Wireless begins selling a Samsung smart phone that uses an Intel processor and a Microsoft operating system.
2.  Search engines face drug test. Calls to curtail advertisements from allegedly illegal dealers point to growing pains for the Internet's newest marketing powerhouses.
3.  Akamai delivers Web services management tools
4.  Internet Explorer to stomp pop-ups. Microsoft plans to add pop-up blocking features to Internet Explorer next year as part of its update for Windows XP, a move that would go far toward stamping out the Web advertisements.
5.  Portal providers create 'portlet' library
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
6.  Mac OS X v10.3.1 improves FileVault, FireWire 800, more (MacCentral). MacCentral - Apple today released Mac OS X v10.3.1, an update to its recently released "Panther" operating system. The new version is available for download through the Software Update System Preferences pane.
7.  Microsoft, Lindows Face Off in Court (PC World). PC World - Software giant accuses Lindows of using antitrust ruling to market itself.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  Linux-Based Musical Keyboard Workstation Debuts
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
9.  BugTraq: Re: sql injection in phpbb. Sender: [telli at codezwiz dot com]
10.  BugTraq: Re: Six Step IE Remote Compromise Cache Attack. Sender: Byron Sonne [blsonne at rogers dot com]
11.  BugTraq: Symbol Technologies Default WEP KEYS Vulnerability. Sender: Michael Scheidell [scheidell at secnap dot net]
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
12.  Brit bosses get tough on Net abuse. Carrot and stick. Without the carrot

5:19:46 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  W3C criticizes antirobot tests. Citing difficulties for the visually impaired, the Web's leading standards group gives a thumbs-down to tests designed to prevent software robots from harvesting information for spam schemes.
2.  Briefly: Microprocessor revenue, prices on the up. Intel and Advanced Micro Devices benefit from an increase in shipments and average price of microprocessors, according to research firm IDC.
3.  FCC to begin VoIP inquiry. The Federal Communications Commission is set to start a yearlong investigation into the "appropriate regulatory environment" for Internet-based phoning services.
4.  Finding the magic formula
5.  The quest for better wireless security. Wireless security expert Leo Pluswick asks whether the emphasis on time to market and new features will undermine the pursuit of better mobile security.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
6.  Online Competition Hurts Adult Magazines (AP). AP - After 35 years in the business of titillating and offending, pornographer Al Goldstein says his magazine can't compete anymore. The audience is just as large, he says, but the Internet has transformed the product and its delivery.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  20th Anniversary Of Computer Viruses Commemorated
8.  The Ten Most Overpaid Jobs In The U.S.
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
9.  Experts disagree on how Congress can help IT security. Spam, viruses compared to SARS
10.  Virus writers dismiss Microsoft's bounty fund. Reward program is a marketing stunt that will have no deterrent effect

ADVERTISEMENT:

Get strong 128-bit SSL security for your online business - To secure your servers with 128-bit SSL encryption, download a copy of the free VeriSign Guide, "Securing Your Web site for Business." You'll learn everything you need to know about encrypting e-commerce transactions, securing corporate intranets, and authenticating your Web site.

11.  Kaspersky Labs opens Paris virus center. Center to monitor viruses in Europe
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
12.  Kernel Breach Averted - Thanks to McVoy's Config Management System
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
13.  BugTraq: RE: POS#1 Self-Executing HTML: Internet Explorer 5.5 and 6.0 Part III. Sender: Robert C dot Auch [RAuch at totalnetsolutions dot net]
14.  Vulnerabilities: PHP emalloc() Unspecified Integer Overflow Memory Corruption Vulnerability. PHP is a freely available, open source web scripting language package. It is available for Microsoft Windows, Linux, and Unix operating systems.

A vulnerability has been...

15.  Vulnerabilities: Multiple Portable OpenSSH PAM Vulnerabilities. Multiple vulnerabilities have been reported to affect Portable OpenSSH with PAM support enabled. It has been reported that at least one of these vulnerabilities may be ex...
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
16.  LINX traffic tops 30Gbps. Transmission Vamp
17.  Penn State's pigopolist pork is not smelling sweet. RIAA fraternity
18.  CSC: delays dog FBI delivery. There may be troubles ahead
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
19.  Eyes Everywhere: Business activity monitoring offers a constant watch on business processes
20.  Wal-Mart suppliers shoulder burden of daunting RFID effort
21.  10 Nov Troj/BDSinit-A
22.  FBI on look-out for foreign government hackers
23.  1st Real Internet-Option Election in North America
24.  100,000 ballots to be cast online
25.  Spamhaus Guru Steve Linford Profiled
26.  Spammers Can Run but They Can't Hide
27.  Why Blacklisting Spammers Is A Bad Idea
28.  IBM Applies for Password Manager Patent
29.  DoS in PureFTPd
30.  [BUGZILLA] Security Advisory - information leak
31.  [SECURITY] [DSA 398-1] New conquest packages fix local conquest exploit
32.  nCUBE Server Manager
33.  [SECURITY] [DSA 399-1] New epic4 packages fix denial of service
34.  Re: POS#1 Self-Executing HTML: Internet Explorer 5.5 and 6.0 Part III
35.  SUSE Security Announcement: hylafax (SuSE-SA:2003:045)
36.  Directory traversal in The TelCondex SimpleWebserver 2.13.31027 Build 3289.
37.  [RHSA-2003:323-01] Updated Ethereal packages fix security issues
38.  Re: Six Step IE Remote Compromise Cache Attack
39.  DailyDose v 1.1
40.  Re: DoS in PureFTPd
41.  [SNS Advisory No.69] Eudora "Reply-To-All" Buffer Overflow Vulnerability
42.  A resource for the Fake players bug

4:19:37 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Computer-in-a-computer idea gains ground. Software giant Microsoft and start-up VMware are bringing closer to reality a technology for running multiple instances of an operating system on a single computer.
2.  IDC: Microprocessor revenue, prices on the up
3.  Lindows-Microsoft legal spat builds. Lindows.com reports that Microsoft proffered legal papers to disavow California class-action settlement claims submitted on the Lindows Web site.
4.  Clock ticks for Web on a wristwatch. Those who want to receive information from the Internet through a watch or fridge magnet may have to wait a little longer. Microsoft's SPOT service is still in testing.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  Microsoft Moving Into Chip Design With Xbox Next
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
6.  Vulnerabilities: OpenSSL Bad Version Oracle Side Channel Attack Vulnerability. It has been reported that OpenSSL (and possibly other implementations of SSL and TLS) are vulnerable to an information leakage when outputting error messages in response ...
7.  Vulnerabilities: Zlib Compression Library gzprintf() Buffer Overrun Vulnerability. A vulnerability has been reported in the zlib compression library. The problem occurs in the internal gzprintf() function, which is similar to fprintf().

The gzprintf() ...

8.  Vulnerabilities: CGI.pm Start_Form Cross-Site Scripting Vulnerability. CGI.pm is a module for Perl that allows for dynamic creation of web forms and parsing of CGI input.

CGI.pm is prone to cross-site scripting attacks under some circumstan...

9.  Vulnerabilities: Apache Web Server SSLCipherSuite Weak CipherSuite Renegotiation Weakness. Apache provides directives for supplying cipher suite specifications for SSL transactions. The cipher suite is negotiated with the client during the SSL handshake. Thes...
10.  Vulnerabilities: Apache Web Server Multiple Module Local Buffer Overflow Vulnerability. A vulnerability has been reported to exist in Apache that may allow a local attacker to gain unauthorized access by executing arbitrary code on a vulnerable system. The c...
11.  Vulnerabilities: PHP wordwrap() Heap Corruption Vulnerability. PHP is a freely available, open source web scripting language package. It is available for Microsoft Windows, Linux, and Unix operating systems.

A vulnerability has been...

----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
12.  Paper finds new wireless standard less secure
13.  HNS Newsletter issue 187 has been released
14.  Nessus scanning on Windows domain
15.  Crypto system promises security over fiber-optic lines
16.  As the season changes, so does spam
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
17.  Ignore standards for web services security
----------------------------------------------------------------------
Internet/Network Security
----------------------------------------------------------------------
18.  Book Review: Malware. Malware: Fighting Malicious Code by Ed Skoudis will be hitting a bookstore shelf near you sometime later this month. Ed Skoudis is already well-known for his book Counter Hack and his video CD tutorial The Hack Counter-Hack Training Course. He...

3:19:17 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Informatica extends data management tool. The business software company aims to improve integration with other systems by supporting standards, including Web services.
2.  AOL finds Time for food. America Online has cooked up an agreement with sister company and magazine publisher Time to devote a portion of AOL's Web portal to eating.
3.  HP cushions handheld drop. Global shipments of PDAs fell yet again in the third quarter, although a surge by Hewlett-Packard helped stem the decline, according to a Gartner report.
4.  'Nanosprings' may help detect cancer. Scientists at Georgia Tech have developed a tiny "nanospring" structure that could be used to detect individual molecules, possibly creating a method of detecting cancer.
5.  Adobe buys XML software maker. The publishing software giant acquires Yellow Dragon Software, a privately held maker of XML software for messaging and managing metadata.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
6.  Microsoft Seeks Deal in EU Antitrust Case (AP). AP - Two days before key hearings, Microsoft Corp. said Monday it was still seeking a settlement of its antitrust case with the European Union. But the software giant struck a defiant tone in defending itself.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  Mastering Red Hat Linux 9
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
8.  Columnists: Proposed: a Bounty for Bugs. Instead of paying hard cash to punish computer criminals, vendors should reward grey hat hackers for responsibly finding and reporting the security holes that make cyber attacks possible.
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
9.  BugTraq: A resource for the Fake players bug. Sender: Luigi Auriemma [aluigi at altervista dot org]
10.  BugTraq: Re: Six Step IE Remote Compromise Cache Attack. Sender: Goetz Babin-Ebell [babin-ebell at trustcenter dot de]
11.  BugTraq: [RHSA-2003:323-01] Updated Ethereal packages fix security issues. Sender: [bugzilla at redhat dot com]
12.  BugTraq: Re: DoS in PureFTPd. Sender: Jedi/Sector One [j at pureftpd dot org]
13.  Vulnerabilities: Multiple Microsoft Internet Explorer Script Execution Vulnerabilities. Multiple issues have been reported in Microsoft Internet Explorer. Though these issues have been reported by a reliable source, communication issues have presented diffi...
14.  Vulnerabilities: IBM DB2 Multiple Command-line Format String Vulnerabilities. DB2 is the database implementation maintained and distributed by IBM. It is available for the UNIX, Linux, and Microsoft Windows platforms. The db2govd, db2start, and db2...
15.  Vulnerabilities: IBM DB2 Multiple Command-Line Argument Buffer Overflow Vulnerabilities. DB2 is the database implementation maintained and distributed by IBM. It is available for the UNIX, Linux, and Microsoft Windows platforms. The db2govd, db2start, and db2...
16.  Vulnerabilities: Cups Internet Printing Protocol Job Loop Denial Of Service Vulnerability. CUPS is a freely available, open source UNIX printing utility. It is freely available for the Unix and Linux platforms.

A problem has been identified in the handling of...

17.  Vulnerabilities: OpenBSD isakmpd Multiple IKE Payload Handling Security Weaknesses. isakmpd is the IKE key management dameon provided with OpenBSD. isakmpd is used when negotiating security associations in authenticated or encrypted network traffic and i...
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
18.  Penn State's pigopolist pork runs deep. RIAA fraternity

2:18:56 PM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  CodeCon CFP online. CodeCon, the real cheap P2P hacker convention that requires running code from all its presenters, has posted its call for papers:

All presentations must include working demonstrations, ideally open source. Presenters must be one of the active developers of the code in question. We emphasize that demonstrations be of *working* code.

CodeCon strongly encourages presenters from non-commercial and academic backgrounds to attend for the purposes of collaboration and the sharing of knowledge by providing free registration to workshop presenters and discounted registration to full-time students....

* community-based web sites - forums, weblogs, personals
* development tools - languages, debuggers, version control
* file sharing systems - swarming distribution, distributed search
* security products - mail encryption, intrusion detection, firewalls

Link

(via The Farm)

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
2.  Lindows-Microsoft legal spat builds. Lindows.com reports that Microsoft proffered legal papers to disavow California class-action settlement claims submitted on the Lindows Web site.
3.  Foundries' revenue heats up in October. The two Taiwanese chip manufacturers report double-digit gains in revenue for the month, a sign that better times may be ahead.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Sun, Red Hat Building Storage in the 'Open' (Ziff Davis). Ziff Davis - Solaris and Linux will get more storage tools.
5.  Judge Won't Reinstate Pharmacy License (AP). AP - A federal judge is refusing to reinstate a license yanked by the Drug Enforcement Administration from a pharmacy that filled online orders for prescription diet pills without a doctor's visit.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Simcity Microwave Power by 2050?
7.  Ars Technica Posts Panther Review
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
8.  Profile: Nessus Vulnerability Scanner
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
9.  BugTraq: [BUGZILLA] Security Advisory - information leak. Sender: David Miller [justdave at bugzilla dot org]
10.  BugTraq: [SECURITY] [DSA 398-1] New conquest packages fix local conquest exploit. Sender: [joey at infodrom dot org (Martin Schulze)]
11.  BugTraq: [SECURITY] [DSA 399-1] New epic4 packages fix denial of service. Sender: [joey at infodrom dot org (Martin Schulze)]
12.  BugTraq: SUSE Security Announcement: hylafax (SuSE-SA:2003:045). Sender: [krahmer at suse dot de (Sebastian Krahmer)]
13.  Vulnerabilities: Sun SUNWlldap Library Hostname Buffer Overflow Vulnerability. The SUNWlldap package, available for Sun Solaris, includes various LDAP clients and an LDAP client library used to provide programmatic access to the LDAP protocol.

The ...

14.  Vulnerabilities: Net-SNMP Unauthorized MIB Object Access Vulnerability. Net-SNMP is a freely available, open source implementation of the SNMP protocol. It was previously known as UCD-SNMP, and is available for the Unix and Linux operating sy...
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
15.  UK employers get tough on Net abuse. Carrot and stick, without the carrot
16.  FBI on look-out for foreign government hackers. Reveal yourselves, immediately
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
17.  Debian: epic4 Buffer overflow vulnerability
18.  Debian: conquest Buffer overflow vulnerability
19.  SuSE: hylafax Remote code execution vulnerability

1:18:37 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Computer-in-a-computer idea gains ground. Software giant Microsoft and start-up VMware are bringing closer to reality a technology for running multiple instances of an operating system on a single computer.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Oracle CFO collects gain of $5 million (SiliconValley.com). SiliconValley.com - Oracle Chief Financial Officer Jeffrey Henley collected a net gain of more than $5 million from exercising options and selling shares in the database-software giant's stock last month.
3.  With Linux, fisheries authority hauls in ROI (TechTarget). TechTarget - By adding a twist of Linux to a simple database upgrade, Sean Lincolne's IT team mixed up a tasty ROI martini. Lincolne -- systems manager for the Australian Fisheries Management Authority (AFMA) in Canberra -- describes the testing, implementation and results of an OpenIngres 1.2 and Linux migration, as he continues the story he began in part one of this interview. He also discusses future Linux migration plans. In part one, he described why NT was the wrong choice for AFMA's DBMS.
4.  Software to Do Event Planning the Easy Way (washingtonpost.com). washingtonpost.com - As any corporate event planner will attest, hosting a seminar or a business conference requires a lot more than just lining up speakers. And most of the work involved -- distributing invitations, documenting replies, following up with attendees -- is tedious.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  Napster and Gnutella Measurements
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
6.  Nokia mum on reports of buying Psion for Symbian stake. Nokia Corp. representatives declined to comment on reports Monday that the company is looking to up its stake in mobile phone software developer Symbian Ltd. by acquiring Psion PLC.
7.  VMware points users toward utility computing. With its Intel Corp. server farm growing relentlessly, news conglomerate Gannett Co. turned to virtual server company VMware Inc. to put multiple virtual machines on single physical boxes.
8.  IBM plots componentized app server - Infoworld Staff. IBM revealed that it is working on a componentized version of WebSphere that will enable users to mix and match functions from across IBM's complete portfolio of server applications.
9.  New software add-ons enhance, extend. Buying a software application alone is not enough: two companies are releasing add-ons that expand their applications with functions suited to particular vertical markets.
10.  Startup takes aim at document management. Startup PSS Systems Inc. this week unveiled its first product: software aimed at helping companies track and secure documents that are distributed inside and outside of corporate boundaries.
11.  Portal vendors unite behind standards - Infoworld Staff. Attempting to drive real-world deployments of standardized portlets, several competing enterprise portal vendors this week kicked off an open source site designed to let customers share portlets developed according to new standards.
12.  Verity KeyView unlocks data - Infoworld Staff. Enterprise search vendor Verity this week will launch Version 7.4 of its KeyView software development kits designed for exporting, viewing, and filtering data.
13.  Akamai builds on-demand strategy - Infoworld Staff. Adding a missing piece to the on-demand computing puzzle, Akamai Technologies this week will unwrap a set of tools and services for managing applications and content across the Internet.
14.  SAP drops European show, confirms U.S. event. In response to customer feedback, SAP AG has decided to drop its European Sapphire user conference and exhibition entirely and hold instead a string of local forums, said SAP spokeswoman Laurie Doyle Kelly.
15.  OS X Windows Media Player 9 released. Microsoft Corp. has released Windows Media Player 9 for Mac OS X.

ADVERTISEMENT:

VeriSign Security Intelligence and Control(SM) Services - VeriSign's Security Intelligence and Control(SM) Services let you focus on business initiatives, like record up-time and global VPNs, while VeriSign's experience helps you monitor and manage your security infrastructure.

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
16.  Cybercrime - it's the outsiders wot's to blame. Checking out the finances
17.  BT upfront about broadband progress. Debate hots ahead of MP enquiry
18.  London gets UK's first Wi-Fi 'hotzone'. Piccadilly Circus encircled

12:18:17 PM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Commentary: Novell gives Linux enterprise muscle. Novell's acquisition of SuSE Linux is a good deal for firms and governments that are looking for an open-source alternative to Unix and Windows.
2.  Dell widens its wireless array. The TrueMobile 5100 card, which uses GPRS cellular technology, is meant to give travelers backup Internet access when they're out of range of a Wi-Fi network.
3.  Office add-on makes a sales call. Microsoft releases one of the first "Solution Accelerator" packages for Office 2003, aimed at helping sales professionals create better proposals.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Retailers Get the Download Fever (washingtonpost.com). washingtonpost.com - Apple Computer's iTunes is turning into such an unequivocal success that it seems like other businesses can't help but try to take their own bite out of the company's share of the music download market.
5.  Microsoft Offers Virtual PC Bargain (PC World). PC World - 2004 version of the virtualization app is coming later this year.
6.  Time Inc, AOL Melt the Ice Dishing Up Food Online (Reuters). Reuters - Like family members who forget their differences as they sit down over dinner, two of Time Warner Inc.'s (TWX.N) corporate siblings have made food the centerpiece of a bid to thaw a sometimes chilly relationship.
7.  Sony Music Sings New Copy-Protection Tune (Reuters). Reuters - Sony Music (6758.T), home to such artists as Beyonce Knowles and Bruce Springsteen, on Monday said it plans to introduce new CD technology in Germany that prevents users from copying songs to file-sharing sites, but allows them to make copies for their personal use.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  Video Card History
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
9.  Infineon returns to profitability. German microchip maker Infineon edges into the black for the first time in over three years.
10.  Computer viruses now 20 years old. Computer viruses celebrate their twentieth birthday this week.
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
11.  Ignore standards for web services security
12.  Debian: conquest Buffer overflow vulnerability
13.  SuSE: hylafax Remote code execution vulnerability
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
14.  Elsewhere: Good things come in small packages. Keep it simple. That's the mantra for setting up a remote office. Unless, of course, as an information technology administrator you want to spend a lot of time traveling ...
15.  Elsewhere: Kaspersky Labs opens Paris virus center. Kaspersky Labs, a Moscow developer of data security software, Monday said it has opened a European computer virus center in Paris. The center will focus on real-time moni...
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
16.  Sun ups its Tru64 temptation. 50 wins and counting

11:17:56 AM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Kevin Sites' blog: How a "sojo" files a live report -- or doesn't.. Kevin Sites, blogger and NBC News correspondent in Iraq, has posted a fascinating account of the unbelievable lengths to which solo journalists must go to file live satellite transmissions from remote battlefields. Equipment breaks, unexpected technical snafus come up, but news has to get through. Sometimes, the means disassembling gear to make a temporary laptop modem out of a videophone. Sometimes, that means your dinner becomes a tripod.
"At left -- adjusting the camera. See that dirt berm? That's Syria on the other side. See that guy with a gun? That's a new Iraqi border guard. Nice pose, huh. See that guy in camo -- that's Lt. Col. Arnold (he's going to be bummed because he wanted to take off his cold weather gear before going on camera -- too late. It's an Army macho thing).

See that guy behind the camera? That's me. See that tripod? It's a piece of crap -- one of the legs fell off en route to the border and will never be found. See that box of MRE's (Meals Ready to Eat)? That's my new tripod leg. See the Colonel's helmet? That's the counterweight that keeps the camera from tipping over. It's amazing how desperation can push you to new levels of creativity in the middle of the desert."

Link (note: this round of photos shot by Joe Raedle of Getty Images)
----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
2.  Comcast to distribute Real's Rhapsody. The giant U.S. broadband company backs digital music, as Best Buy launches a new music download store.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Stocks Narrowly Mixed in Early Trading (AP). AP - Wall Street stalled Monday as investors refrained from major buying despite upbeat news on IBM Corp. and Intel Corp. Stocks were virtually unchanged.
4.  New Software Add-Ons Enhance, Extend (PC World). PC World - FileMaker, Microsoft Office get accessories for vertical applications.
5.  Microsoft: Virtual PC Will Run Linux (Ziff Davis). Ziff Davis - Microsoft, which is announcing it has released its Virtual PC technology to manufacturing and will ship the final product by year's end, claims there has been a misunderstanding: "You absolutely can run Linux in Virtual PC."
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  NVRAM With Disordered Assemblies (Smaller/Cheaper)
7.  O'Reilly On What Happened To BountyQuest
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
8.  Apple will 'make RIAA beg for mercy' - readers. Letters Jobs to see off Sony, Beatles, large buildings etc
9.  Palm Zire 21. Reg Review The perfect beginner's PDA?
10.  KPN flogs 3G UK share to Hutch. Row over, no court battle
11.  KPN resumes dividends. i-mode still struggles

10:17:45 AM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Zantaz upgrades data retrieval. In the latest storage industry move to help companies comply with regulations, e-mail archiving company Zantaz announces tools for better data retrieval.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  1st Real Internet-Option Election in North America
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
3.  New warning on credit card fraud. Fraudsters steal about £800 a minute from people's credit and debit cards, a watchdog warns.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
4.  Linksys WRT54g 802.11g access point. An ideal office Wi-Fi system? Not quite...
5.  Palm Zire 21. Reg Review The perfect beginners' PDA?
6.  IBM's Itanium server just got bigger. Searching for a sweet spot
7.  IP VPN: compelling savings - compelling performance?. Briefing Securing the future
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
8.  Check Point Experience, le 25 et 26 Novembre
9.  BITDEFENDER pour Linux

9:17:26 AM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Singapore calls for global Internet chatroom crackdown (AFP). AFP - Singapore urged Internet access providers to follow Microsoft's lead in clamping down on unregulated chatrooms to prevent them from becoming havens for sex predators.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  The Best of What's New From Popular Science
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
3.  QXL trims losses. Online auction site QXL Ricardo turns in narrower losses and says it expects sales to pick up in the months ahead.
4.  Work and play make a good mix. Playing computer games at work could help increase job satisfaction and productivity, suggests research.
5.  Firms face up to internet abuse. New survey shows that staff misuse of the internet is a big problem for firms, with a third dealing with five cases in the last year.
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
6.  Salesforce.com raises hosted CRM stakes - Infoworld Staff. Ratcheting ratcheting up its customization capabilities, Salesforce.com will use its inaugural Dreamforce User & Developer Conference this week to launch the Winter 04 release of its hosted CRM service.
7.  Iomega plans 35G-byte removable storage in 2004. Iomega Corp. is planning to launch two removable magnetic-based storage formats in the first half of next year, one aimed at small and medium enterprises and the other at consumer users, company executives said Monday.

ADVERTISEMENT:

Need a MS Exchange Spam Filter?? - Spam sucks. Your life shouldn't. iHateSpam SE was uniquely developed to be both user- and admin-friendly. Control spam according to the needs of your company and users. V5.5, 2000, Exchange 2003, and Gateway.

----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
8.  US Congress' role in IT security debated
9.  The quest for better wireless security
10.  Another Look at Quantum Crypto
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
11.  Eminister to address broadband conference. Other bigwigs too
12.  Infineon back in the black in Q4. Not for the full year, though
13.  ICANN board squatter dies. Rest in peace Hans Kraaijenbrink

8:17:07 AM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Connecting the hot spots. T-Mobile USA operates the largest number of public hot spots in the country. But the industry is changing and Joe Sims wants to point the network in a new direction.
2.  Microsoft moves into chip world with Xbox. The software giant will more actively participate in the creation of the chips that go inside the next version of its Xbox gaming console.
3.  The Massachusetts Internet tax mystery. CNET News.com's Declan McCullagh explains how state tax collectors learned the identities of residents who bought cigarettes over the Web.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Software to Do Event Planning the Easy Way (washingtonpost.com). washingtonpost.com - As any corporate event planner will attest, hosting a seminar or a business conference requires a lot more than just lining up speakers. And most of the work involved -- distributing invitations, documenting replies, following up with attendees -- is tedious.
5.  Stiff competition, new technology mean great gadget deals (USATODAY.com). USATODAY.com - There has never been a better time to be a tech-gadget lover — and bargain hunter.
6.  Marsh offers online health insurance shopping (USATODAY.com). USATODAY.com - Marsh (MMC), one of the largest health benefit consulting firms, is targeting a largely untapped market — companies that do business as franchises or employ a high percentage of contract workers — with a Web site offering a variety of health plans.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  iTunes Music Store - 'Coolest Invention of 2003'
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
8.  Firms face up to internet abuse. New survey shows that staff misuse of the internet is now a major problem for firms, with one in three having to deal with five cases in the last year.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
9.  Shoppers warned of £110m card not present fraud. Precautionary tale
10.  Nokia ponders Psion purchase - report. Juicier gains to be made than Symbian
11.  Nokia batteries not safe either - Belgian watchdog. Oops! It blew up again
12.  Kimble/ Schmitz charged with embezzlement. The Return of The Hoaxter Hacker

7:16:46 AM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Swedish woodlands butter-footgear shock horror. Swedish hikers discovered 70 pairs of shoes in the woods, each pair filled with butter. No word on whether it was the very best butter.

A provincial spokesman says the buttered footwear ranges from sneakers to boots. There are even butter-filled high heels and tap shoes. Each contains about a pound of butter.

The province spokesman says they'd like to catch the person who did it and make them clean it up. He says it's going to create quite a mess when the butter starts to spoil.

Link

(via JWZ)

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  EU likely to stall Oracle deal (The Daily Deal). The Daily Deal - But European regulators are ultimately expected to approve the $7.3 billion purchase of software maker PeopleSoft.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
3.  Microsoft: if you can't buy them, beat them. New graphics and animation toolset a Flash-killer?
4.  Telefonica Moviles: domestic bliss. Beats expectations
5.  Cisco: brand loyalty. CEO disappointed with SAN progress
6.  Enjoy online delights this Xmas at Debenhams. "Christmas surprise" a real stocking-filler
7.  When is a speed camera not a speed camera?. When the government says so, of course
8.  Nvidia Q3 income dips despite sales gains. Quarter on quarter decline
9.  Shoppers warned of £110m Internet fraud. Precautionary tale
10.  Intel buys WLAN chip maker Mobilian. Bluetooth to become part of Centrino?
----------------------------------------------------------------------
Wired News
----------------------------------------------------------------------
11.  Tech Summit to Tackle Net Issues. World leaders from 56 nations will attend the first U.N. confab on information technology to discuss such questions as who governs the Internet and free speech guidelines for the global medium. President Bush is not among them.
12.  Is It On? Building Silent PCs. The demand for quiet computers is growing, especially as people use them to play music or stream video. Several companies build them from scratch or modify boxes from the big computer makers, and it doesn't cost much to lower the decibels.
13.  Clark Campaign to Debut Big Blog. The presidential campaign of Wesley Clark understands the power of blogs. That's why the candidate will debut a big community site that centralizes the personal blogs of his supporters and offers grassroots tools. By Chris Ulbrich.
14.  A Peek Inside the Secret World. Technological innovation owes a debt to that earliest of the early adopters: the spy. A new museum in Washington, D.C., celebrates spies, their gadgetry and the shadow world they inhabit. Michelle Delio reports from Washington.
15.  MusicNow Offers Songs for a Buck. MusicNow, previously a subscription-only music service, now offers a la carte downloads for 99 cents. The company is working with Best Buy to promote the service. By Katie Dean.
16.  Rage Against the (Chess) Machine. Chess champion Garry Kasparov battles a computerized foe named Fritz in the latest installment of man versus silicon beast. By Leander Kahney.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
17.  Windows 2000/XP RPCSS Libc Buffer Overrun
18.  IBM DB2 Multiple Local Security Vulnerabilities
19.  GOOLE TRICKS AND HACKS

6:16:27 AM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Software Users Hit a Rough Patch (PC World). PC World - Keeping up with the latest security updates is a full-time job.
2.  Telematics takes a different direction (FT.com). FT.com - Since it became possible to link the mobile phone networks with the global positioning system a few years ago, companies have been trying to find a profitable use for the technology that has become known as telematics.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Spamhaus Guru Steve Linford Profiled

5:16:06 AM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Hill of Crosses.

Amazing photos of the Hill of Crosses in Siauliai, Lithuania, a small hill where hundreds of thousands of crosses have been deposited by pilgrims since the town was raided by Teutonic Knights in the 14th Century.

Link

(via Geisha Asboi)


2.  Sweidsh woodlands butter-footgear shock horror. Swedish hikers discovered 70 pairs of shoes in the woods, each pair filled with butter. No word on whether it was the very best butter.

A provincial spokesman says the buttered footwear ranges from sneakers to boots. There are even butter-filled high heels and tap shoes. Each contains about a pound of butter.

The province spokesman says they'd like to catch the person who did it and make them clean it up. He says it's going to create quite a mess when the butter starts to spoil.

Link

(via JWZ)

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Comcast to offer Rhapsody in Real Deal (PC World). PC World - RealNetworks promotes online music service through more ISPs, hardware.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  QXL trims losses. Online auction site QXL Ricardo turns in narrower losses and says it expects sales to pick up in the months ahead.
5.  Users face malicious web attacks. Virus attacks which use web formatting in e-mails and websites are set to increase, says a security expert.
6.  New warning on credit card fraud. Fraudsters steal about £800 a minute using credit cards over the internet, phone or by fax, consumers are warned.
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
7.  Security: From Theory to Practice
----------------------------------------------------------------------
SecurityFocus
----------------------------------------------------------------------
8.  Vulnerabilities: PostgreSQL To_Ascii() Buffer Overflow Vulnerability. PostgreSQL is a freely distributed Object-Relational DBMS. It is available for a number of platforms including Unix and Linux variants and Microsoft Windows operating sys...

4:15:54 AM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Infinitely expressive smileys.

This highly tweakable smiley-generator is part of a computational semiotics project to refine the expressivity of machine-mediated communications.

Link

(Thanks, Hamish!)


2.  Captchas as random poetry.

Patrick Swieskowski has written a scraper that sucks in four random captcha words from AOL Instant Messenger's sign-up screen and arranges them as serindipitous, random poetry.

Link (Thanks, Patrick!)

3.  Well, helloooo, Fleshbot..

A new web magazine in blogtrepreneur Nick Denton's growing Gawker Media portfolio launches today. Fleshbot promises "all the porn that digital technology and distribution has made possible:" CGI, amateur girls, webcam guys, sex blogs, and plenty more juicy, geeky, NSFW goodies. Notably, the site combines gay and straight smut: will the unusual decision to mix genres tittilate or alienate? Either way, it's a ballsy move. From the FAQ:

"Q: I like straight porn. What's with all the gay stuff?
A: Fleshbot does not believe in the balkanization of pornographic desire. Fleshbot seeks to address and stimulate all varieties of tastes and sexualities. If you don't like what you see on the main page, simply use the text and graphic buttons in the sidebar to filter the content which most interests you."

Link

4.  Disney aping Pixar, going all-digital. Here's a great Slashdot article and discussion thread about Disney's abandonment of traditional, hand-drawn animation (which Disney has sworn, for years, it would never give up), in favor of 3D, computer-generated work.

Supposedly, all of their animators-- even staunch traditionalists such as Glenn Keane-- are being trained on 3D computer animation techniques. The last hand-drawn high-budget Disney feature scheduled for release is Home on the Range, which is due out next April. It appears that Disney is bowing to the supposed pressures of the market, even though the hand-drawn Lilo and Stitch was considered a success and the all-CG Dinosaur (done at Disney's now-defunct FX house The Secret Lab) was not. However, I believe there's another factor at work: Pixar's contract with Disney is set to expire soon, and the revered CG house has been making their own demands of Disney for the contract's renewal.

Link

5.  Merkins for virtual people. If your morph-porn is perfect save for the pubes, the virtual merkin is an $8 library that you can use to generate picture-perfect thatches.

This is a smart prop and it was formed to fit Victoria's default mesh with the Pubic Detail Dial set to 1.000...

3 Morphs are applied, which can be mixed as you like
- Mid Noise (default set to 1.000) allows you to control the roughness of the middle plane. Thus the look can be improoved when viewing the prop from side angles.
- Top Noise (default set to 1.000) does the same for the top plane.
- Gen Ctrl allows you to adjust the shape for existing genitals on the hip texture map.

Link

(via Fleshbot)

6.  SMS road-killer walks. A Sydney motorist who killed a cyclist while she was distracted with composing an SMS has been given a suspended sentence.

"It is tragic that a man's life was lost in these circumstances but this case should serve as a stark warning to all that the risk is very real and with the extended use of mobile phones generally more public attention should be drawn to this risk," Judge Cohen said.

However she said she took into account Ciach's guilty plea, her excellent character and the fact the dead man's parents did not wish her to be imprisoned.

Link

----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
7.  Linux Security Week - November 10th 2003
8.  Linux Security Week - November 10th 2003

3:15:36 AM    

----------------------------------------------------------------------
New York Times: Technology
----------------------------------------------------------------------
1.  RealNetworks in a Venture With Comcast. Comcast Cable is set to announce that it will offer the Rhapsody online music service from RealNetworks to its nearly 5 million subscribers. By John Schwartz.
2.  Pointing the Car Toward Mecca. A navigational system for automobiles points the way to Mecca and plays calls to prayers. By Teresa Riordan.
3.  Unspeakable Secrets in a Haunted House and Cyberspace. Peter Straub's latest novel is an unusually taut, dynamic, spooky display of horror expertise, and its story is deftly told. By Janet Maslin.
4.  3 Autoimmune Diseases Share a Genetic Defect, Scientists Find. Scientists have found an unexpected genetic link among three common autoimmune diseases: psoriasis, rheumatoid arthritis and systemic lupus erythematosus. By Nicholas Wade.
5.  Predict the Future of Technology and Win a Plasma TV. Online markets that trade predictions about the future are popping up everywhere. One sponsored by M.I.T.'s Technology Review magazine is offering a plasma TV to winners. By Barnaby J. Feder.
6.  Machine Politics in the Digital Age. Diebold Inc. has stirred controversy because of security issues with its touch-screen voting machines and the political activities of its executives. By Melanie Warner.
----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
7.  NBC, Overture sign search deal. The television network on Monday is expected to announce a two-year partnership with Overture for sponsored search, the latest Web publisher to lace query results with ads.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  Disney Does Digital, Ditches Drawings

2:15:17 AM    

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  SCO: Ethereal Multiple vulnerabilities
2.  Conectiva: ethereal Multiple vulnerabilities
3.  Debian: postgresql Remote buffer overflow vulnerability
4.  SCO: ucd-snmp Remote heap overflow

1:14:57 AM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Adult magazines screwed by the Internet?. Interesting AP story about the web's impact on the economics of adult print magazines:

After 35 years in the business of titillating and offending, pornographer Al Goldstein says his magazine can't compete anymore. The audience is just as large, he says, but the Internet has transformed the product and its delivery. Just over a month ago, Goldstein stopped publishing Screw magazine and filed for Chapter 11 bankruptcy, giving him a chance to cut costs, relaunch the magazine and refocus attention on his Web site.

Goldstein said circulation woes throughout the field show "we are an anachronism; we are dinosaurs; we are elephants going to the bone cemetery to die. ... The delivery system has changed, and we have to change with it if we want to survive."

Link (Thanks, JP!)
----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
2.  Start-up aims for instant, easier networks. PacketHop says it will unveil plans to deliver software-based mesh networking technology for mobile devices and computers.
3.  Computer-in-a-computer idea gains ground. Software giant Microsoft and start-up VMware are bringing closer to reality a technology for running multiple instances of an operating system on a single computer.
4.  Office add-on makes a sales call. Microsoft is set to release one of the first "Solution Accelerator" packages for Office 2003, aimed at helping sales professionals create better proposals.
5.  Zantaz to upgrade data retrieval. In the latest storage industry move to help companies comply with regulations, e-mail archiving company Zantaz is announcing tools for better data retrieval.
6.  Comcast to distribute Real's Rhapsody. The biggest U.S. broadband company backs digital music, as Best Buy launches a new music download store.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  Captured! By Robots - A Musical/Mechanical Marvel?
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
8.  Customize this feed. Add more items, descriptions, time stamps, select your version of RSS, aggregate several feeds... Check out NewsIsFree's premium syndication services! (46)

12:14:46 AM