Sunday, January 25, 2004

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Cutting the Cord With WiFi's Help (washingtonpost.com). washingtonpost.com - Charlene Mattson, hockey mom to 13-year-old Jessica, taps away on a laptop computer in the Ashburn Ice House pizza parlor amid the sounds of scraping ice and referees' whistles as she waits for practice to wrap up.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  TROJ_HTTPDOS.B
----------------------------------------------------------------------
Internet/Network Security
----------------------------------------------------------------------
3.  ISS Acquires Content Security Maker Cobion. Internet Security Systems, makers of the RealSecure product line and BlackICE personal firewall software, has acquired content security pioneer Cobion. Cobion is a leader in the content filtering arena, owning the world's largest spam and Web content filtering databases (four...

11:19:21 PM    

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  AOL Tests Sender Permitted From / E-mail Caller ID
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  W97M_TWOPEY.E
3.  WORM_PROTORIDE.A
4.  ISS et Nokia annoncent officiellement la fin de leur partenariat
5.  Gone Phishing
6.  Yahoo starts lab to improve services
----------------------------------------------------------------------
Internet/Network Security
----------------------------------------------------------------------
7.  Comodo Grows Faster Than Competition In 2003. With security being such a major consideration for most businesses using the Internet, SSL certificates are big business. Essentially, for John Doe Customer to trust that you say you are they want some means of validating your identity as a...

10:19:00 PM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Analysts Upbeat on Microsoft Earnings (Reuters). Reuters - A focus on Microsoft Corp.'s (MSFT.O) push to sign corporate customers onto long-term contracts and the way such sales are tracked in earnings is distracting investors from the strength in the software maker's underlying business, analysts say.
2.  ILife Bundles Sophisticated Tools for Manipulating Digital Media (washingtonpost.com). washingtonpost.com - When Apple chief executive Steve Jobs introduced iLife '04 early this month, he called this bundle of jukebox, photo-album, movie-editing, DVD-burning and music-recording programs "Microsoft Office for the rest of your life." The idea was that, just as Office handles the work you do at your office, iLife is ready for the digital-media fun at home.
3.  What Are Your Friends Searching For? (washingtonpost.com). washingtonpost.com - A strange mix of search engine and social club went online last week under the frivolous name Eurekster.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  Orkut Goes Dark, At Least For A Bit
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  W32.Dumaru.Z@mm
6.  Windows XP Explorer Executes Arbitrary Code in Folders

9:18:10 PM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Bill Gates to Receive Honorary Knighthood (AP). AP - Britain will give an honorary knighthood to Microsoft Corp. chairman Bill Gates in recognition of his contribution to enterprise in Britain, the government said Monday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  A First Look At Meridiani Planum
3.  Whose Desktop Would You Most Like To See?
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
4.  EU anti-spam laws are OK
5.  Linux threatens US security, SCO tells Congress
6.  SSL to be one of 2004’s bright spots
7.  Remembering Slammer on its anniversary
8.  An introduction to SQL injection attacks for Oracle developers
9.  Customize this feed. Add more items, descriptions, time stamps, select your version of RSS, aggregate several feeds... Check out NewsIsFree's premium syndication services! (05)

8:17:42 PM    

----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
1.  Vulnerabilities: McAfee ePolicy Orchestrator Agent HTTP POST Buffer Mismanagement Vulnerability. McAfee ePolicy Orchestrator (ePO) is a product designed to remotely manage various policies and antivirus products. It is available for the Microsoft Windows operating sy...

7:47:31 PM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  France Pledges Tougher Net Piracy Fight (AP). AP - France's culture minister plans to press for stronger laws to fight Internet music-swapping, saying Sunday that he believes downloading tunes illegally is equivalent to shoplifting.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Shawn Fanning's New Venture
3.  Announcing Cooperative Linux
----------------------------------------------------------------------
[O.S.S.R]
----------------------------------------------------------------------
4.  Adobe Slips Anticounterfeiting Code Into Apps
5.  Microsoft flip flops - Older Windows versions win renewed support
6.  Security firms make January 15th 'Personal Firewall Day'
7.  Mozilla 1.6 Released
8.  Major pedophile bust leads to credit card company getting busted
9.  Spam With Trojan Horse Attacks eBay Users
10.  Virus alert: Beware of dodgy Bagle
11.  Top Networking Technologies for 2004
12.  Top Networking Technologies for 2004 - Part II
13.  2004:Online fraud, ID theft soars
----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
14.  Vulnerabilities: Linux Kernel do_brk Function Boundary Condition Vulnerability. do_brk() is a function called indirectly by a number of kernel procedures, including the brk() system call and the ELF and a.out loading mechanisms. The do_brk() function...
15.  Vulnerabilities: Linux Kernel do_mremap Function Boundary Condition Vulnerability. A vulnerability involving the do_mremap system function has been reported in the Linux kernel, allowing for local privilege escalation.

The mremap(2) system call is used...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
16.  BAT_CARAGA.A
17.  PE_ELPMIS.A

6:37:07 PM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Get Your State of the Union On.

Get Your Warn On tackles the State of the Union speech.

Link

(via Electrolite)


----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
2.  Cooperative Linux is a scary hack that loads the Linux kernel into the NT kernel as a driver so that they can both run in ring 0 at the same time, allowing Linux apps to run full speed on Windows without porting.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
3.  Windows for Welsh speakers. Iechyd Da

5:36:47 PM    

----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
1.  Vulnerabilities: Native Solutions TBE Banner Engine Server Side Script Execution Vulnerability. Native Solutions TBE Banner Engine is a software written in PHP. It is used to created banners.

A vulnerability has been reported to exist in the software that may allo...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  W32.Dumaru.Y@mm

4:36:27 PM    

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Recent Apt-Gettable Goodness From Ark, Conectiva
----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
2.  Vulnerabilities: Acme thttpd CGI Test Script Cross-Site Scripting Vulnerability. thttpd is an HTTP server implementation that is maintained by Acme. It is intended to run on Unix/Linux variants.

thttpd is prone to a cross-site scripting vulnerabili...

3.  Vulnerabilities: Netbus Directory Listings Disclosure and File Upload Vulnerability. Netbus is a backdoor program that allows remote administration of a compromised system. It is available for Microsoft Windows operating systems. Netbus can be configured...

3:36:06 PM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Napster, iTunes European Debut Held Up by Red Tape (Reuters). Reuters - Old-fashioned red tape is delaying the eagerly awaited European launches for iTunes and Napster, the two popular online music stores said on Saturday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  freedesktop.org xlibs 1.0 Released
----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
3.  Vulnerabilities: Apache mod_perl Module File Descriptor Leakage Vulnerability. Apache is a freely available, open source web server software package. It is distributed and maintained by the Apache Group. mod_perl is an Apache module that provides fo...

2:35:46 PM    

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Et Cetera: Weekends should really be longer. Round up including Microsoft news, more lawsuits, a new Google enterprise, and more. By Ken "Caesar" Fisher.
----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
2.  100 reasons abstinence is doomed. Guideposts For Teens, a pro-abstinence org, has posted a list of 100 things for teens to do instead of savagely shagging one another. It is a very, very lame list.

6. Play hide-and-seek in a cornfield... (if a body meet a body comin' through the rye)

9. Pray together. (Jesus Jesus Jesus, don't stop)

10. Do a crossword puzzle... (What's a four-letter word for -- oh, nevermind)

21. Watch your favorite Disney movie... (Dude, this is totally one of my major turn-ons)

34. Color eggs -- even if it isn't Easter... (yes, that's right, encourage them to fetishize the reproductive cells of chickens)

100. Wash your parent's cars. (Ohhhhh, soapy t-shirts)

Link

(Thanks, justpat!)

3.  Table Hockey documentary premiere today at 1PM in Canada. My friend Thor's documentary -- TABLE HOCKEY (the movie) -- about the passions of 'international men of table hockey', is airing across Canada on CTV, at 1:00 PM local time today. (Check local listings) These guys are good, really good. They even have a school. Link
4.  If IKEA was a video game. Treating spousally mandated IKEA visits as a video-game seems like a pretty good coping strategy, especially when you've got a walk-through to crib from. This is a screamingly funny piece from The Morning News.

You start this world armed only with a UNIVERSAL FURNITURE-ASSEMBLY ALLEN WRENCH. This is the weakest weapon in IKEA: You will have to hit a person 16 times with it to kill them. So your primary goal in this level is to find more lethal means of dispatching your enemies.

As you enter the SHOWROOM, perform a rolling dodge to the left. Grab a free PAPER TAPE MEASURE and a handful of IKEA EMBLAZONED GOLF PENCILS from the kiosk near the entryway. The PENCILS serve quite well as ranged weapons, but it will take some time to master their use. Before venturing further in the world, stand at the kiosk and practice hurling GOLF PENCILS at patrons as they enter the SHOWROOM. Remember: Hitting the eyes does triple damage.

Link

(via Dive Into Mark)

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
5.  Simplicity Not Standard for New Gadgets (AP). AP - Not only are the latest high-tech gadgets packed with more features than ever, they're also harder than ever to figure out.
6.  France Joins U.S., Britain Against Song Swappers (Reuters). Reuters - Add the French to the war on Internet song swappers.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  Gabriel and Eno Start Digital Music Artist Union
----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
8.  Vulnerabilities: EA Black Box Need For Speed Hot Pursuit 2 Game Client Remote Buffer Overflow Vulnerability. Electronic Arts Black Box Need for Speed Hot Pursuit 2 is a game distributed by Electronic Arts and maintained/developed by Electronic Arts Black Box. It includes feature...

1:35:28 PM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  New Technology Reduces PC Boot Times (AP). AP - Booting up and waiting has become a fact of life with computing, but that doesn't have to remain the case with a crop of home entertainment PCs reaching the market.
2.  Group Backs Off DVD Encryption Lawsuit (AP). AP - In a rare retreat, a film industry coalition has dropped its trade secret court battle against a San Francisco computer programmer who in 1999 posted on the Internet code that cracks movie copy-protection technology.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  FFII vs. Amazon Gift Ordering Patent
----------------------------------------------------------------------
SecurityFocus Vulnerabilities
----------------------------------------------------------------------
4.  Vulnerabilities: SuSE Multiple Scripts Insecure Temporary File Handling Symbolic Link Vulnerabilities. fvwmbug is a helper shell script to allow a user to compose and email bug-reports that concern FVWM. wm-oldmenu2new is used to convert from an old-style WindowMaker menu ...
5.  Vulnerabilities: OpenSSH Buffer Mismanagement Vulnerabilities. A buffer mismanagement vulnerability has been reported in OpenSSH. This issue exists in the 'buffer.c' source file.

The source of a problem is that a buffer structure...

6.  Vulnerabilities: TCPDump ISAKMP Decoding Routines Multiple Remote Buffer Overflow Vulnerabilities. tcpdump is a freely available open source network monitoring tool. It is available for the Unix, Linux, and Microsoft Windows operating systems.

Multiple buffer overflo...

7.  Vulnerabilities: lftp Try_Netscape_Proxy Buffer Overflow Vulnerability. lftp is a command-line file transfer client supporting FTP and HTTP.

It has been reported that the lftp file transfer client is vulnerable to a remotely exploitable buff...

8.  Vulnerabilities: lftp Try_Squid_Eplf Buffer Overflow Vulnerability. lftp is a command-line file transfer client supporting FTP and HTTP.

It has been reported that the lftp file transfer client is vulnerable to a remotely exploitable buff...


12:35:06 PM    

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  What Are Your Friends Searching For? (washingtonpost.com). washingtonpost.com - A strange mix of search engine and social club went online last week under the frivolous name Eurekster.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Darl & SCO Overview
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
3.  FBI arrests Oscar movie 'pirate'. The FBI arrests a man in the US who allegedly distributed preview tapes of films over the internet.

11:34:46 AM    

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Bill Gates to be Knighted

10:34:26 AM    

----------------------------------------------------------------------
CNET News.com - Front Door
----------------------------------------------------------------------
1.  Week ahead: Oracle AppsWorld, PeopleSoft earnings. Oracle AppsWorld dominates the trade show circuit, as PeopleSoft, Amazon.com, Texas Instruments and others steal some of the show with their quarterly earnings.
2.  Competing spam 'solutions'. Legislation and technology are being turned against spam--but to what effect? Knowledge@Wharton offers a status report.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  BAT_ALADINZ.G
4.  BKDR_ALADINZ.G
5.  Personal Firewalls: Norton Personal Firewall 2004; ZoneAlarm Pro 4.0

9:34:06 AM    

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Four Linux Live CDs, The Executive Summary
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  WORM_AGOBOT.FQ
3.  Book Review: Designing Network Security - 2nd Edition

8:33:46 AM    

----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
1.  Book Review: Designing Network Security - 2nd Edition

7:33:26 AM    


6:33:07 AM    

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
1.  Sound future for home cinema. Movies, rather than music, is fuelling the drive towards high-end audio systems in the home.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  IntraForum Input Validation Flaw Permits Cross-Site Scripting Attacks
3.  Borland Web Server Input Validation Flaw Discloses Files to Remote Users
4.  Serv-U FTP Server 'site chmod' Stack Overflow Lets Remote Users Execute Arbitrary Codee
5.  Reptile Web Server HTTP Request Flaw Lets Remote Users Deny Service
6.  "There is a bomb in my bag."
7.  Live Talk: Stupid Security
8.  Outsourcing and American Job Loss - Welcome to the 80s

5:32:46 AM    

----------------------------------------------------------------------
Boing Boing Blog
----------------------------------------------------------------------
1.  Life on the pro Dance Dance Revolution circuit. Yoz has posted a great account of his encounter with a touring clade of pan-European Dance Dance Revolution obsessives:

"We're a group of DDR players in Norway." Do they play other bemani games? "No, just DDR." He points to the guy he was playing with, now off the machine and chatting to his girlfriend. "He's from Sweden, he has a DDR group there too." The machine is now in the control of the third chap, a large-ish bloke with shoulder-length hair. "He has a group in France, but they play all kinds of music games." Do you guys play competitively? "Sometimes... like tomorrow. It's why we're all here - there's a big contest at the Namco arcade in Westminster. There'll be players from four different countries. It's pretty big."

Link

2.  100 reasons abstinence is doomed. Guideposts For Teens, an abstinence-promotion org, has posted a list of 100 things for teens to do instead of savagely shagging one another. It is a very, very lame list.

6. Play hide-and-seek in a cornfield... (if a body meet a body comin' through the rye)

9. Pray together. (Jesus Jesus Jesus, don't stop)

10. Do a crossword puzzle... (What's a four-letter word for -- oh, nevermind)

21. Watch your favorite Disney movie... (Dude, this is totally one of my major turn-ons)

34. Color eggs -- even if it isn't Easter... (yes, that's right, encourage them to fetishize the reproductive cells of chickens)

100. Wash your parent's cars. (Ohhhhh, soapy t-shirts)

Link

(Thanks, justpat!)

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
3.  Dilbert for 25 Jan 2004.
----------------------------------------------------------------------
User Friendly
----------------------------------------------------------------------
4.  User Friendly for 25 Jan 2004.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
5.  Parents in China fear online love games make children grow up too fast (AFP). AFP - Parents in China have voiced fears that Internet love games give children a premature interest in adult family life.

4:32:27 AM    

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Mars Rover Opportunity Lands Safely
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
2.  Gates forecasts victory over spam. The Microsoft boss says spam e-mail will soon be a thing of the past, and praises rival Google at the WEF in Davos.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  WORM_STUPLO.A

3:32:07 AM    


2:31:47 AM    

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Macintosh 2004 Case Mod
2.  Han Solo in Lego Carbonite

1:31:26 AM    


12:31:06 AM