Gregg's Security News Aggregator

Currently, this "blog" is nothing more than a news aggregator which

gets security information from over 30 sources. As you'll note,

a number of the sources are not specific to security. Advanced

filtering is definitely needed.






Subscribe to "Gregg's Security News Aggregator" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Sunday, April 04, 2004
 

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  800,000 Cards Overcharged at Wal-Marts (AP). AP - A computer hardware problem caused more than 800,000 credit and debit card transactions to be double- or triple-billed last week at Wal-Mart stores nationwide, according to officials at First Data Corp., which handled the electronic payments.
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
2.  Customize this feed. Add more items, descriptions, time stamps, select your version of RSS, aggregate several feeds... Check out NewsIsFree's premium syndication services! (15)

11:13:34 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  States Link Databases to Find Tax Cheats
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
2.  Sun's Java prince refuses Redmond relocation. Exclusive Greener pastures

10:13:14 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  U.S. Betting on Land Mine Technology (AP). AP - The Bush administration's argument for shunning a global treaty on land mines rests largely on the U.S. military's use of "smart," self-destructing mines that don't linger after wars end to kill and maim civilians. But it has a quiet subtext: the expectation that future generations of mines will be so smart that soldiers can activate and deactivate entire mine fields by remote control.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
2.  Aussie firms fight to take biggest loss for music downloads. Cheapest tunes but at what cost
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Longhorn beta likely to slip into 2005
4.  FTE Command Line and Environment Variable Buffer Overflows May Let Local Users Gain Elevated Privileges

9:12:54 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Soap on the cellphone as TV goes tiny (AFP). AFP - The launch of TV's first-ever soap for the tiny mobile phone screen might not suit everyone's taste, but it is living proof that the TV and digital worlds are merging.
2.  Agatha Christie Heading to Computer Games (AP). AP - Enthusiasts of mystery fiction will have the chance to play detective when some of Agatha Christie's classic books are brought to interactive life in computer games.
3.  800,000 Cards Overcharged at Wal-Marts (AP). AP - A computer hardware problem caused more than 800,000 credit and debit card transactions to be double- or triple-billed last week at Wal-Mart stores nationwide, according to officials at First Data Corp., which handled the electronic payments.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  Invulnerable, Waterproof PDA

8:12:35 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Still More on Open Source Usability
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
2.  Looks like the UserLand server maintenance went pretty smoothly. (Oops, I spoke too soon; looks like it's still going on.)
3.  Out of perverse curiosity, I tried to install Fedora Core 2 test 2. It now supports my Radeon 9800 (even though Mike Harris threatened to not support it out of spite), but it doesn't see my hard drive.
4.  The Inquirer: Nforce3 Pro 250 2 processor pics revealed.
5.  The Register: Sony talks up PS3. Not too surprising that Sony's planning a PS3X or a super-cheap PS2 after PS3 comes out.
6.  The Register: Why Sun threw in the towel in Mankind vs. Microsoft.
7.  I never really got into LaunchBar, so I didn't expect to have any use for Quicksilver. But its clipboard history window comes in handy for blogging: to get the title and URL of a story into a post I can copy-copy-switch-drag-drag instead of copy-switch-paste-switch-copy-switch-paste.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
8.  Zone-H - Defacement: colchester.gov.uk

7:12:15 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Moore's Law Limits Pushed Back Again
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  Vulns: OpenBSD ISAKMPD Zero Payload Length Denial Of Service Vulnerability. isakmpd is the IKE key management daemon provided with OpenBSD. isakmpd is used when negotiating security associations in authenticated or encrypted network traffic and i...
3.  Vulns: OpenBSD ISAKMPD Malformed IPSEC SA Payload Denial Of Service Vulnerability. isakmpd is the IKE key management daemon provided with OpenBSD. isakmpd is used when negotiating security associations in authenticated or encrypted network traffic and i...
4.  Vulns: OpenBSD ISAKMPD Malformed CERT Request Payload Denial Of Service Vulnerability. isakmpd is the IKE key management daemon provided with OpenBSD. isakmpd is used when negotiating security associations in authenticated or encrypted network traffic and i...
5.  Vulns: OpenBSD ISAKMPD Delete Payload Denial Of Service Vulnerability. isakmpd is the IKE key management daemon provided with OpenBSD. isakmpd is used when negotiating security associations in authenticated or encrypted network traffic and i...
6.  Vulns: OpenBSD ISAKMPD Memory Leak Denial Of Service Vulnerability. isakmpd is the IKE key management daemon provided with OpenBSD. isakmpd is used when negotiating security associations in authenticated or encrypted network traffic and i...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  WORM_SOBER.F

6:11:54 PM    comment []

----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
1.  Why did people think Gmail was a joke? It makes perfect sense.
2.  Kevin Gerich: Pinstripe Thunderbird has landed! Only took 'em what, five years to get it to look right?
3.  Tom's Networking: Review: Linksys Wireless-G Broadband Router with SpeedBooster (WRT54GS). So 54Mbps really means 24Mbps and 125Mbps really means 36Mbps. Got it?
4.  The Guardian: Citizen Kubrick.
5.  IGN: Sony Looks to Blu-Ray for PS3. It makes sense to me. Hopefully it will also have a native resolution of 1080p.
6.  EE Times: Internet movies not ready for prime time. There may be some hope for this market in the form of Akimbo; you just have to think outside the Web.
7.  EE Times: Set-top boxes may put a lid on rewritable DVDs. Of course, a 3DES-encrypted DVD is technically not a DVD at all.
8.  EE Times: Lucky warns of end-user broadband expectations. He sort of gets it and sort of doesn't. If Skype is free, who will pay for the Internet backbone? The users, of course, who have already proved willing to pay for broadband. And expectations of free app-layer services will just drive those services to become purely decentralized; if there are no centralized costs then the system is sustainable with no revenue.

5:11:35 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Advanced Mobile Phone Tech in Japan

4:11:14 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Computerized Time Clocks Susceptible to 'Manager Attack'
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
2.  Looks like the UserLand server maintenance went pretty smoothly. (Oops, I spoke too soon; looks like it's still going on.)
3.  Out of perverse curiosity, I tried to install Fedora Core 2 test 2. It now supports my Radeon 9800 (even though Mike Harris threatened to not support it out of spite), but it doesn't see my hard drive.
4.  The Inquirer: Nforce3 Pro 250 2 processor pics revealed.
5.  The Register: Sony talks up PS3. Not too surprising that Sony's planning a PS3X or a super-cheap PS2 after PS3 comes out.
6.  The Register: Why Sun threw in the towel in Mankind vs. Microsoft.
7.  I never really got into LaunchBar, so I didn't expect to have any use for Quicksilver. But its clipboard history window comes in handy for blogging: to get the title and URL of a story into a post I can copy-copy-switch-drag-drag instead of copy-switch-paste-switch-copy-switch-paste.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
8.  Vulns: IMGSVR Remote File Download Vulnerability. ImgSvr is a server that allows remote users to browse and share image files. It is freely available under the GNU Public License for Linux and Microsoft Windows.

A vuln...

9.  Vulns: IMGSVR Remote Directory Listing Vulnerability. ImgSvr is a server that allows remote users to browse and share image files. It is freely available under the GNU Public License for Linux and Microsoft Windows.

A vul...

10.  Vulns: Microsoft Internet Explorer HTML Form Status Bar Misrepresentation Vulnerability. A vulnerability has been identified in Microsoft Internet Explorer that allows an attacker to misrepresent the status bar in the browser, allowing vulnerable users to be ...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
11.  The Register: Bug hunters go open source "The Open Source Vulnerability Database (OSVDB) aims to...

3:10:55 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  US stamp of Bucky Fuller. Bucky Fuller stampIn July, the US Post Office will issue a Buckminster Fuller stamp featuring an old Time magazine cover illustration by the late great Boris Artzybasheff. Link
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Cell Phone Is Next Webcam Destination (washingtonpost.com). washingtonpost.com - Big Brother may turn out to be your little sister or even your best friend in the brave new world of mobile communications.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  A Completely Separate Ecosystem on Earth

2:10:34 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Japan, China, SKorea join to develop Windows contender (AFP). AFP - Japan, China and South Korea have agreed to jointly develop a new computer operating system based on Linux as an alternative to the dominant Windows by Microsoft.
2.  Portable Game Players to Test Video Appeal (Reuters). Reuters - For handheld video game makers like Nintendo, a popular TV character like SpongeBob SquarePants may be cute, but he's no moneymaking match for video game heavyweights such as Super Mario or Donkey Kong.
3.  Microsoft Makes Peace with Sun, Its Loudest Critic (Reuters). Reuters - To some analysts, it's the computer equivalent of the rapprochement between Mikhael Gorbachev and Ronald Reagan that ended the Cold War. To others, it's like competing warlords agreeing to share their spoils.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  3D, FPS File Manager

1:10:15 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  DARPA Grand Challenge robot snapshots. BoingBoing reader Rupert Scammell says:

I was a volunteer in the video editing and media production center at the recent DARPA Grand Challenge autonomous robot ground vehicles event, held in the Mojave desert between Barstow,CA and Primm, NV. I got many great pictures of the various robot vehicles and participants during the four days I was there, and wanted to share them with my fellow BoingBoingers. The images are all under a Creative Commons license. Enjoy!
Link
2.  Paris subway panorama photos. Panoramic views of Parisian subways stations from an amateur photographer in France. *Not* QTVRs, just JPEGs with a wide aspect ratio.
Link (thanks, Jean-Luc)
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  New Wave of Web Ads?
4.  Searching by Shape...
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
5.  Vulns: Ethereal Multiple Vulnerabilities. Ethereal 0.10.3 has been released to address multiple vulnerabilities. These issues include:

- Thirteen stack-based buffer overruns in various protocol dissectors (NetF...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  Aborior Encore Web Forum Input Validation Flaw in 'display.cgi' Lets Remote Users Execute Arbitrary Commands

12:09:54 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Linux 2.6.5 is Released
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  WORM_ANTINNY.D

10:33:39 AM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Week ahead: Yahoo earnings on tap. Yahoo plans to announce its quarterly earnings in the coming week, marking one of the more notable events in an extremely quiet week.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Japan, China, SKorea to jointly develop new cellular phone system (AFP). AFP - Japan, China and South Korea have agreed to jointly develop communications technologies for fourth-generation cellular phones to be introduced in the three countries in six years.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Nvidia Drivers Enforce Macrovision's Rules

9:33:20 AM    comment []

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  WORM_ANTINNY.D

8:32:58 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  XPde 0.5 - A Linux Desktop for Windows Users

7:32:38 AM    comment []

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  Gates on Winsecurity
2.  US Expands Fingerprint and Mugshot Program for Visitors
3.  US fingerprints 'allied' visitors
4.  U.S. to Fingerprint More Foreigners
5.  reset all your clocks

6:32:18 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Academy of Art University: Free speech chickenshits. Neil Gaiman forwarded this note from Daniel "Lemony Snicket" Handler:

The Academy of Art University here in San Francisco - the biggest art school in the country - recently expelled a student for writing a violent short story, and then fired his instructor for teaching a story by David Foster Wallace the administration also found offensive.

As this story broke in the press the school has responded by announcing stringent policies regarding the content of students' artwork (writing, visual art, film, video game design, etc.), what can be taught in the classroom, and who is allowed to speak on campus.  This was brought home to me when an instructor at the college invited me to speak to his class (along with the fired teacher and a representative of the First Amendment Project) and I was physically barred from entering the building.

Link

(Thanks, Neil!)

2.  Free Culture distributed audiobook jukebox. Here's a Web-based jukebox containing streaming MP3s of various bloggers reading Lessig's Free Culture. As soon as I have ten minutes to catch my breath, I'm definitely contributing a chapter to this.

Link

(via Lessig)

3.  Is there room for some-rights-reserved speakers at Copyright Awareness Week?. It's Copyright Awareness Week! The Copyright Society of America is looking for "members of the Copyright Society and other interested professionals in the copyright fields the opportunity to speak in local schools, universities, associations and other venues about the importance of copyright to the creative arts." I'd love to hear about the Society's response to some-rights-reserved creators of art and software who ask to be given an opportunity to speak about how reduced copyright regimes enable their creativity.

Link

(Thanks, Michael!)

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Circle of Friends (TechWeb). TechWeb - Social networking with software: It can be positive, but not as a goal in itself.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
5.  Jordan's king puts faith in hi-tech. King Abdullah of Jordan explains to the BBC how he is looking to technology to develop his nation.

5:32:00 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Digital timeclocks being doctored by chain-store managers. Managers at chain stores across America are protecting their bottom-line-dependant jobs by secretly changing timeclock records, so that their workers aren't paid for their time.

In the punch-card era, managers would have had to conspire with payroll clerks or accountants to manipulate records. But now it is far easier for individual managers to accomplish this secretly with computers, payroll experts say.

Mr. Pooters, a father of five who left the Air Force in 1997 for a career in retailing, talks with disgust about photocopied Toys "R" Us records that he said showed how his manager made it appear that he had clocked out much earlier than he had.

"Unless you keep track of your time and keep records of when you punch in and punch out, there's no way to stop this," he said.

Link

(via Dan Gillmor)

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
2.  Dilbert for 04 Apr 2004.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Canadian Minister Promises to Fix Copyright Law
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  Jordan's king puts faith in hi-tech. King Abdullah of Jordan explains how he is looking to technology to develop his nation.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  eMule DecodeBase16() Stack Overflow Lets Remote Users Execute Arbitrary Code

4:31:39 AM    comment []

----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
1.  Why did people think Gmail was a joke? It makes perfect sense.
2.  Kevin Gerich: Pinstripe Thunderbird has landed! Only took 'em what, five years to get it to look right?
3.  Tom's Networking: Review: Linksys Wireless-G Broadband Router with SpeedBooster (WRT54GS). So 54Mbps really means 24Mbps and 125Mbps really means 36Mbps. Got it?
4.  The Guardian: Citizen Kubrick.
5.  IGN: Sony Looks to Blu-Ray for PS3. It makes sense to me. Hopefully it will also have a native resolution of 1080p.
6.  EE Times: Internet movies not ready for prime time. There may be some hope for this market in the form of Akimbo; you just have to think outside the Web.
7.  EE Times: Set-top boxes may put a lid on rewritable DVDs. Of course, a 3DES-encrypted DVD is technically not a DVD at all.
8.  EE Times: Lucky warns of end-user broadband expectations. He sort of gets it and sort of doesn't. If Skype is free, who will pay for the Internet backbone? The users, of course, who have already proved willing to pay for broadband. And expectations of free app-layer services will just drive those services to become purely decentralized; if there are no centralized costs then the system is sustainable with no revenue.

3:31:19 AM    comment []

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  Calif. Mob Tries to Create Supercomputer
2.  Judge Drops Internet Defamation Suit
3.  Product Profile: Mandrakelinux 10.0 Community

1:07:59 AM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  New EMC disk storage mimics tape. The data storage specialist plans to announce a new hard drive-based device that serves the same back-up role as tape products but offers faster performance.
2.  eMachines debuts peppy spring lineup. Introducing its first new models since being acquired by Gateway, the budget PC maker beefs up its processing power.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Grand Challenge Videos Posted
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  W32.Blackmal.B@mm
5.  MSBlast epidemic far larger than believed
6.  Free Open Source Vulnerability Database Opens for Business
7.  Gentoo Linux: Your Friendly Quick Installation Guide
8.  Feds tell states 'VoIP is ours'

12:21:29 AM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Gregg Doherty.
Last update: 5/3/2004; 12:26:29 AM.
This theme is based on the SoundWaves (blue) Manila theme.
April 2004
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30  
Mar   May