Gregg's Security News Aggregator

Currently, this "blog" is nothing more than a news aggregator which

gets security information from over 30 sources. As you'll note,

a number of the sources are not specific to security. Advanced

filtering is definitely needed.






Subscribe to "Gregg's Security News Aggregator" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Friday, April 23, 2004
 

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Trusted Computing/DMCA vs. Diebold Pentagon Paper
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
2.  California set to reject Diebold e-voting machines. ATM giant faces uphill battle By Andrew Orlowski .
3.  SEC rules drag reluctant Google to market. "And these little piggies forgot about their disclosure requirements…" By Andrew Orlowski .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  [waraxe-2004-SA#024 - XSS and full path disclosure in Network Query Tool 1.6]
5.  TROJ_GREENSTUF.B

11:21:04 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  US Senate Set to Take Up Internet-Access Tax Ban (Reuters). Reuters - The U.S. Senate will attempt next week to break a stalemate on Internet access taxes after months of inaction on the legislation, Senate aides said on Friday after a compromise measure emerged.
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
2.  IBM delivers SOA enablers. IBM is rolling out a series of software and services intended to help corporate users more efficiently create and deploy SOAs (service-oriented architectures) within their existing infrastructures.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
3.  BugTraq: [waraxe-2004-SA#024 - XSS and full path disclosure in Network Query Tool 1.6]. Sender: Janek Vind [come2waraxe at yahoo dot com]
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  Compromise Likely of Serious Windows SSL Vulnerability
5.  [waraxe-2004-SA#025 - Multiple vulnerabilities in Protector System 1.15b1 for PhpNuke]
6.  reset-tcp.c
7.  reset-tcp_rfc31337-c..>
8.  ttt-1.3r.tar.gz
9.  bgp-dosv2.pl
10.  Symantec Multiple Firewall TCP Options Denial of Service
11.  Symantec Firewall DOS Attacks possible

10:20:45 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  S. Korea drops Sun-only software mandate. The country reverses a decision to force cellular providers to use only Sun download software to sell ring tone, games or other features.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Google Appears Ready to File for IPO (AP). AP - Online search engine leader Google Inc. appears to be on the verge of pursuing its initial public offering of stock, ending months of breathless anticipation in Silicon Valley.
3.  Legislators Wary of Electronic Voting (AP). AP - A growing number of federal and state legislators are expressing doubts about the integrity of the ATM-like electronic voting machines that at least 50 million Americans will use to cast their ballots in November.
4.  TiVo Faces Off With Flattering Clones (AP). AP - Debra Baker tells people she has TiVo. But she really doesn't. The 33-year-old New York tax consultant has a variant — a digital video recorder offered through her cable company. She didn't know what "DVR" stood for until then.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  WormRadar Node Volunteers Help Graph Attacks
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
6.  This OS X bug is really bugging me: When I try to unmount my Firewire hard disk, the Finder says "The disk is in use and could not be ejected. Try quitting applications and try again." It turns out that quitting all my apps never helps, because the real culprit is the Finder itself. This is easily solved by force-quitting the Finder, but I feel sorry for any normal user who doesn't know how to do that.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  RE:[Full-Disclosure] EEYE: Symantec Multiple Firewall TCP Options Denial of Service
8.  SlippingInTheWindow_..>
9.  SlippingInTheWindow_..>
10.  Compromise Likely of Serious Windows SSL Vulnerability (Ziff Davis)
11.  The Next NetWare: Not Your Dad's NetWare
12.  Start-up Aims to Store Long-Term Data
13.  TCP catastrophe?
14.  Exclusive: Oblix's ShareID 2.0 a first-rate authentication middleman
15.  Libya missed, iPod dissed

9:20:24 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Google opens Tokyo research lab. The company hopes the lab will bolster its technical expertise in four countries.
2.  Briefly: Google opens Tokyo research lab. Plus: DCML seeks broader standards support...Microsoft delays IM software...Scalix raises $6 million.
3.  PCI subsystem gets third major update. The new version supports several variants of conventional PCI connections.
4.  IBM storage software extends reach. Big Blue unveils an upgrade to its storage management software designed to handle boxes from rival EMC. But EMC suggests the technology is flawed.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  Clones Are Overwhelming TiVo
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
6.  JetBrains storms into easy-to-use Java tools fray. Looking to make inroads in the market for easy-to-use Java tools, JetBrains this week launched an Early Access Program for JetBrains Fabrique, a RAD framework for building custom Web and enterprise applications.
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
7.  TCP catastrophe?. Last week's announcement hit the security community like a love tap from a sumo wrestler. Nearly every router on the Internet, even those only distantly connected, was vulnerable to a potential exploit that could shut down whole sections of a network and maybe even the Internet itself. Worse, the vulnerability was something so basic -- the design of TCP itself -- that the problem touches everyone. (You can find a detailed, very technical description at Cisco.)
8.  Exclusive: Oblix’s ShareID 2.0 a first-rate authentication middleman. Although it’s not common practice for a company to grant internal network-resource access to employees of another company, it’s not unheard of either. The problem with the practice lies in authentication management. When a business partner requires access to certain resources, the unfortunately common solution is to create accounts for specific employees of the partner within the local directory. Although there are ways to manage this access, maintaining these user accounts is not in the best interest of any IT department, for both security and maintenance reasons. Oblix has just announced ShareID 2.0, a product that aims to fill this gap by providing a means for managing resource access between cooperating entities without the risks.
9.  Libya missed, iPod dissed. I’ve figured out how to make my fortune. I’ll invent a technology, let Microsoft “borrow” it, and then sue them for patent infringement. (I’m thinking of a SnarkBar plug in: Highlight text in any Word document and it inserts a smartass comment.) Hey, why not? I could use a spare $440 million.
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
10.  News: U.S. defends cybercrime treaty. Critics contend an international treaty aimed at catching computer criminals anywhere in the world could be abused by repressive governments.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
11.  BugTraq: [waraxe-2004-SA#025 - Multiple vulnerabilities in Protector System 1.15b1 for PhpNuke]. Sender: Janek Vind [come2waraxe at yahoo dot com]
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
12.  EEYE: Symantec Multiple Firewall TCP Options Denial of Service
13.  Network Associates Is Now McAfee
14.  Cisco's Rumored IOS Update Welcomed
15.  Network Associates Is Now McAfee

8:20:08 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Et Cetera: Friday sledgehammer. Friday round up with more than you can believe. Just a ton of stuff, all fresh, all certified organic. By Ken "Caesar" Fisher.
----------------------------------------------------------------------
Penny Arcade!
----------------------------------------------------------------------
2.  A Matter Of Life And Death.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
3.  IPO day may be approaching for Google. Securities law requires companies that meet certain criteria to file quarterly financial data with the SEC. For Google, that deadline is next week.
4.  Nanosys files papers for IPO. The reigning celebrity of the nanotechnology market files preliminary documents for an initial public offering, in what will likely be a closely watched saga.
5.  Autonomy to power Olympic surveillance. Software from the company will help Greek security forces look for terrorists at this summer's games.
6.  DCML seeks broader standards support. The DCML Organization is seeking to partner or merge completely with established standards groups to gain broader industry acceptance.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
7.  Lindows Expands with Digital Audio, Photo Apps (Ziff Davis). Ziff Davis - At the Desktop Linux Summit, the Linux OS vendor releases its new Lsong software for digital audio and demonstrates a digital photo application to follow on its heels.
8.  CEO: Netflix Plans to Deliver Films Via Web in 2005 (Reuters). Reuters - Movie rental service Netflix Inc. (NFLX.O) plans to do next year what its name has always promised: deliver a movie via the Internet.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
9.  Military Develops Liquid Body Armor
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
10.  Siebel expands its scope. Siebel Systems is setting its sights beyond CRM, landing a banking software acquisition and an alliance with analytics vendor Teradata. Siebel last week also released a major update to its Siebel 7 product line.
11.  No timetable set for Sun-Microsoft interoperability. SAN DIEGO -- Sun Microsystems Inc. will be "uniquely advantaged" by its interoperability agreement with Microsoft Corp., said Sun CEO Scott McNealy. But when any advantages will become available to users isn't yet clear.
12.  NetBeans IDE 3.6 touts windowing, J2EE 1.4. NetBeans IDE 3.6, a major revision to the open source platform, is now available, adding improved windowing, debugging, and backing for J2EE 1.4.
13.  HP launches four-way Opteron system. On the first birthday of AMD's Opteron, Hewlett-Packard has become the first major vendor to offer a four-processor server based on the 64-bit chip.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
14.  BugTraq: EEYE: Symantec Multiple Firewall TCP Options Denial of Service. Sender: Derek Soeder [dsoeder at eeye dot com]
15.  BugTraq: RE: [Full-Disclosure] EEYE: Symantec Multiple Firewall TCP Options Denial of Service. Sender: Sym Security [secure at symantec dot com]
16.  Vulns: BEA WebLogic Server/Express EJB Object Removal Denial Of Service Vulnerability. WebLogic Server and WebLogic Express are enterprise application server products distributed by BEA Systems.

BEA has reported a vulnerability in both WebLogic Server and ...

17.  Vulns: BEA WebLogic Server and WebLogic Express Illegal URI Pattern Potential Bypass Vulnerability. WebLogic/WebLogic Express are enterprise application server products distributed by BEA Systems.

A vulnerability has been identified in the WebLogic/WebLogic Express th...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
18.  IBM infiltrates EMC's storage systems. API swap pays off By Ashlee Vance .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
19.  Zone-H Defacement: greenpeace.ca
20.  Phoney captain fools RAF base for five months

7:19:45 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Jetsonian relic: the Ready Lady Chair. ladychairDan sez: "This chair is straight out of a "house of the future" cartoon. It is upholstered in a silky beige vinyl and has a Velcro sealed back flap that opens to reveal a fold-out ironing board, an iron, and a GE hair dryer (the kind with the bag that you put over your head - and the bag is connected by a plastic tube to the hair dryer). There is a label on the inside of the back flap identifying the chair as being a "Ready Lady Chair" made by Castro Convertibles." Link
2.  A New Pentagon Papers Case - Newspapers, Blogs and the Diebold/Jones Day Memos. Ernest Miller sez: Last Tuesday it was revealed that Diebold was informed by its lawyers that using uncertified e-voting software in California was probably illegal. Where did this information come from? Leaked legal memos from Diebold's law firm, Jones Day. Last Tuesday afternoon a judge ordered that all documents not already published on the internet be returned to Jones Day. But, if you can't stop newspapers from publishing the Pentagon Papers, why can you stop a newspaper from publishing memos dealing with important issues regarding voting equipment? Perhaps the lesson for newspapers is that if you think the public should be informed, publish as much as possible and don't try to hold back information for 'exclusives.'" Link
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Ericsson Reports $390M in 1Q Earnings (AP). AP - Wireless equipment maker LM Ericsson posted an unexpectedly large first-quarter profit Friday, citing increasing demand from mobile phone operators expanding their networks.
4.  PC Makers Sued Over JPEG Use (PC World). PC World - Forgent claims the image compression technology infringes on its patent.
5.  Google Appears Ready to File for IPO (AP). AP - Online search engine leader Google Inc. appears to be on the verge of pursuing its initial public offering of stock, ending months of breathless anticipation in Silicon Valley.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Video Projector for Home Theater?
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
7.  Compuware, Segue smooth out apps management. Compuware and Segue Software next week are bolstering their application management wares, with Compuware finding ways to boost performance without increasing a user’s equipment expenses and Segue managing application quality.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
8.  Exploit found for Net flaw, but risks remote
9.  TCP Connection Reset Remote Exploit
10.  Linux Kernel CPUFREQ Proc Handler Kernel Memory Disclosure
11.  IRC_RANDON.CB
12.  23 Apr Troj/Banker-S
13.  Network Associates New Look Reflects Changing Market
14.  California Electronic Voting Crisis
15.  How quickly can your unix react to the tcp/ip flaw? NetBSD wins! (updated)
16.  TCP Reset Attacks: Paper and Code Now Availble
17.  Netegrity SiteMinder Affiliate Agent Cookie Overflow
18.  Potential Microsoft PCT worm (MS04-011)

6:19:24 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Net's 'savior' sets the record straight. Delivering a presentation at a security confab in Canada, researcher Paul Watson, "The Man Who Saved the Internet," says it was nothing. Really.
2.  Attorney: More disclosure will end GPL case. Dutch company Sitecom can get itself out of legal hot water if it releases all the necessary software to comply with the General Public License, an attorney says.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Senate Set to Take Up Internet-Access Tax Ban (Reuters). Reuters - The U.S. Senate will attempt next week to break a stalemate on Internet access taxes after months of inaction on the legislation, Senate aides said on Friday after a compromise measure emerged.
4.  Senate Revives Ban on Taxing Internet (AP). AP - Sen. John McCain worked Friday to revive a bill banning taxes on Internet connections, a measure that bogged down last year amid worries that state and local governments could lose billions in tax revenue.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  iPod Mini Hits The 'Sweet Spot'?
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
6.  DOJ sweep targets Internet piracy. The U.S. Department of Justice (DOJ) and law enforcement officials from 10 other nations seized more than 200 computers this week in an Internet piracy sweep.
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
7.  Phoney captain fools RAF base for five months
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
8.  BugTraq: Potential Microsoft PCT worm (MS04-011). Sender: advisories [advisories at corsaire dot com]
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
9.  US trade pressure kills China's home-grown tech. 3G angst By Andrew Orlowski .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
10.  Network Associates Restructuring Reflects Changing Security Market
11.  Watching the Network Traffic Flow
12.  Next-Generation Serial ATA Spec Finalized
13.  Blog :: Hacking PDAs
14.  DOJ sweep targets Internet piracy

5:19:10 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Ad Standards Agency sez: video pirates are terrorists!. The Advertising Standards Agency was asked to investigate the anti-piracy ads that run before the UK's movies, in which a link between terrorism and DVD bootlegging is asserted.

The advertisers said the commercial had been given a "U" certificate by the British Board of Film Classification; they believed it did not appeal to fear unduly or without good reason. They said they could not send all the substantiation they held about the link between piracy and terrorism because it was confidential. The advertisers sent a report, published on the European Union website, that stated "Terrorist groups also commonly become involved in counterfeiting and piracy as a mean of financing their activities". They sent the Executive Summary of a report, by the Alliance Against Counterfeiting and Piracy, entitled "Proving the Connection"; that report claimed "There is evidence of proscribed groups in Northern Ireland using intellectual property fraud as a fund raising activity for their criminal activities.

Link

(via NTK)

2.  Mystery meat haute cuisine. Slate reviews The Whole Beast: Nose to Tail Eating, a trendy new English cookbook devoted to the preparation of offcuts, snouts, rectii, marrow, and bladders of all description.

One reason seems to be the frisson of naughtiness associated with eating such things. Due to the crackdown on the consumption of various meat byproducts in a post-mad cow U.K., lambs' brains are still illegal in England. (But this hasn't stopped Henderson from jotting down a few recipes, "so that when lamb's brain is freed from its sentence we shall be ready to celebrate its liberty.") Wondering about the legality of lambs' brains—given that I'd eaten them, or at any rate trace quantities of them, at Babbo—I went to Ottomanelli's butcher shop in Manhattan's Greenwich Village. Frank Ottomanelli told me that lambs' brains are legal in America. "What happens is you buy the whole head, and then I'll get the brains out for you, as a courtesy," he smiled. I ran through a list of other Henderson ingredients I was curious about: pig's head? pig's spleen? pig's feet? "The only thing on the pig that we don't have is the squeal," Frank said. So, tally your ingredients, intrepid chefs, and get thee to a butcher shop. And for those of adventurous tastes but milder temperament, just head to your local restaurant. I hear the Testa's good.

Link

(via Megnut)

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
3.  Infineon to boost memory-making capacity. The German chipmaker will add a new RAM-manufacturing line to its Richmond, Va., facility, as part of a $1 billion expansion.
4.  AT&T Wireless readies recovery strategy. CEO John Zeglis outlines the troubled wireless carrier's plans to rebound from one of its worst financial quarters ever.
5.  Microsoft delays IM software. The software giant postpones the release of MSN Messenger 6.2 until next week.
6.  For AT&T, Baby Bells, the real fight begins. Telecommunications players are divided over the meaning of an FCC ruling that says AT&T must pay Verizon fees to complete long-distance calls that are routed, in part, over the Internet.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
7.  IBM Jumps Into Search-Technology Fracas (NewsFactor). NewsFactor - IBM (NYSE: IBM) is set to unveil an upgraded version of its enterprise-level search technology. Code-named "Masala," the new software is an improvement on Big Blue's DB2 Information Integrator released last year. It is expected to enable simultaneous search of the Web, internal applications and corporate databases.
8.  Network Associates Is Now McAfee (NewsFactor). NewsFactor - Network Associates (NYSE: NET) is going back to the future, changing the corporate moniker back to McAfee and spinning off a company division as part of a strategy to focus more tightly on security products and services.
9.  Sun To Sell Java Desktops via Wal-Mart Site (NewsFactor). NewsFactor - Sun says it has finalized its agreement with Microtel Computer Systems to sell machines loaded with Sun's Java Desktop System on Walmart.com. And Sun is confident that its JDS version 2.0 will be another nibble toward its goal of taking a big bite out of Microsoft's (Nasdaq: MSFT) Windows dominance.
10.  Activism Goes Digital (PC World). PC World - From e-mail to meet-ups, women's march organizers extend their reach online to plan this weekend's event.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
11.  Satellites Show That Earth Has a Fever
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
12.  E-marketplaces make a comeback. Quadrem, a global marketplace for industrial MRO (Maintenance, Repair, and Operations) products for the mining and metal industry, announced this week that it expects a 100 percent increase in revenues and a doubling of the number of transactions over 2003.
13.  CA said to appoint Kenneth Cron interim CEO. Computer Associates International Inc. (CA) board member Kenneth Cron has been asked to be the company's interim chief executive officer (CEO), according to articles Friday in several publications.
14.  Infineon increases capacity at US chip fab. DÜSSELDORF, GERMANY - In a move to meet growing demand for memory chips, German semiconductor manufacturer Infineon Technologies AG has decided to ramp up capacity at its U.S. plant to produce advanced DRAM (dynamic RAM) chips on 300 millimeter wafers beginning early next year, the Munich company said Friday.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
15.  BugTraq: TCP Reset Attacks: Paper and Code Now Availble. Sender: [sullo at cirt dot net]
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
16.  JPEG patent holder renews royalty offensive. 'We will never Forgent' By Andrew Orlowski .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
17.  Security holes force firms to rethink coding processes
18.  Mandrake: xchat Improper execution vulnerability
19.  Debian: ident2 Buffer overflow vulnerability
20.  Red Hat: kernel Buffer overflow vulnerability
21.  Mandrake: utempter Update to patch MDKSA-2004:031
22.  Red Hat: IA64 kernel Multiple vulnerabilities
23.  Red Hat: XFree86 Denial of service vulnerability
24.  Trustix: kernel Integer overflow vulnerability
25.  Fedora: kernel Multiple vulnerabilities
26.  Red Hat: kernel Privilege escalation vulnerabilities
27.  Openwall: kernel Privilege escalation vulnerability
28.  Elsewhere: Expert: Gaps still pain Bluetooth security
29.  Elsewhere: Taking a Second Shot at Spammers
30.  News: Network Associates sells Sniffer

4:18:51 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Feds Sweep Out Internet Pirates (PC World). PC World - 200 computers seized as officials crack down on illegal trade of movies and music.
2.  Why Windows Won't Always Dominate (PC World). PC World - New devices will shrink Microsoft's OS market share, researcher predicts.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Lip Sync Problems with New Digital Displays?
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
4.  Forgent sues PC makers over JPEG patent claims. Forgent Networks Inc. sued 31 companies Thursday for allegedly infringing on a patent for a data compression technique used in the JPEG standard for digital images.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
5.  Vulns: RhinoSoft Serv-U FTP Server LIST Parameter Buffer Overflow Vulnerability. RhinoSoft Serv-U is commercially available FTP Server designed for use with Microsoft Windows operating systems.

Reportedly Serv-U is affected by a remote buffer overflo...

6.  Vulns: Microsoft Visual Studio .NET Debugger Privilege Enforcement Weakness. The Microsoft Visual Studio .NET Debugger that is included with Microsoft Office XP includes the Microsoft Script Editor; allowing for on-the-fly JavaScript debugging and...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  Hard disk 'speed limit' found
8.  Network Associates sells Sniffer
9.  Chinese SARS cases traced to lab
10.  Taking a Second Shot at Spammers
11.  Expert: Gaps still pain Bluetooth security
12.  XML Encryption Added to Apache Project
13.  BIND 9.3 Offers More Security, Support
14.  Houdini's lessons on breaking corporate security

3:18:29 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Monster snaps up German job site. The parent company of Monster.com acquires JobPilot to strengthen its presence in Europe.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Customers Hang Up on AT&T Wireless (Reuters). Reuters - AT&T Wireless Services Inc. (AWE.N) on Friday posted its second straight quarterly loss as customers fled after the mobile operator's reputation sunk amid earlier technical problems and merger related uncertainty.
3.  GPS chip maker Sirf will go public today (SiliconValley.com). SiliconValley.com - Sirf Technology, a San Jose developer of chips embedded in devices that pinpoint their location anywhere in the world, is positioned to make a strong start when it goes public today after a fumbled effort at the beginning of the technology bust 3 1/2 years ago.
4.  Legislators Wary of Electronic Voting (AP). AP - A growing number of federal and state legislators are expressing doubts about the integrity of the ATM-like electronic voting machines that at least 50 million Americans will use to cast their ballots in November.
5.  TiVo Faces Off With Flattering Clones (AP). AP - Debra Baker tells people she has TiVo. But she really doesn't.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Listen to Internet Radio over Wifi
7.  Hardware Hacking
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
8.  Vulns: NcFTP Local Information Disclosure Vulnerability. NcFTP is a File Transfer Protocol (FTP) client for UNIX systems.

NcFTP has been reported prone to a local information disclosure vulnerability. The issue presents itself...

9.  Vulns: MySQL Aborted Bug Report Insecure Temporary File Creation Vulnerability. MySQL includes a bug reporting utility (mysqlbug), which opens a text editor to permit a user to submit bug reports to the vendor. A vulnerability related to insecure te...
10.  Vulns: MySQL MYSQLD_Multi Insecure Temporary File Creation Vulnerability. mysqld_multi is a script that is distributed with MySQL. The script is used to manage multiple sqld processes.

mysqld_multi is reported prone to insecure temporary file ...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
11.  Advanced Guestbook 2.2 SQL Injection Exploit Vulnerability
12.  Unreal Engine UMOD Arbitrary File Overwriting Vulnerability
13.  ShadowStor Releases ShadowUser Pro For Maintaining PCs
14.  Netegrity SiteMinder Affiliate Agent Buffer Overflow in SMPROFILE Cookie Lets Remote Users Execute Arbitrary Code
15.  Boffins test voice-activated secure credit card
16.  sa11464.txt
17.  Vulnérabilité dans le firewall personnel Symantec

2:18:10 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Follow-up: FBI raids part of worldwide antipiracy sweep. The raid on Wednesday which targeted the offices of an Arizona school district were part of a worldwide crackdown on piracy rings. Hardware and software valued at US$50 million was seized in 11 countries. By Eric Bangeman.
----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
2.  Steam Boy Trailer. Scott sez: "Steam Boy, the long awaited and highly anticipated Anime film from Akira creator Katsuhiro Otomo is finally nearing completion and is slated for release later this year. The trailer is up on the Japanese site and looks damn cool. From what I can see Otomo has once again created dazzling visuals -- the lush Victorian interiors and the elegance of the mechanical designs (Steam Punk, anyone?) should leave everyone in awe. The film cost 2.4 billion Yen (US$20.2m) to produce, just a few dollars short of the 2.4 billion Yen that it cost to produce Spirited Away, the most expensive Anime feature ever. In contrast, Steam Boy comprises 180 000 cels, 1.5 times as many as Spirited Away." Link
3.  BBC's disgust survey. Test your disgust threshold by taking this photo survey. Before you look, know that you may consider some of these pictures to be disgusting. Link
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
4.  Week in review: Net threat--or not. The Internet is vulnerable to collapse due to a protocol flaw--or not--depending on whom you believe.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  California Panel Recommends Dumping Diebold
6.  Secret Repairs Preceded TCP Flaw Release
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
7.  DOJ sweep targets Internet piracy. The U.S. Department of Justice (DOJ) and law enforcement officials from 10 other nations seized more than 200 computers this week in an Internet piracy sweep.
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
8.  Security holes force firms to rethink coding processes
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
9.  Vulns: Cisco CatOS CiscoView HTTP Server Buffer Overflow Vulnerability. CatOS is the operating system used on Cisco Catalyst switches, which are commercial-grade network switches.

Certain versions of Cisco CatOS ship with an embedded HTTP se...

10.  Vulns: Multiple IDS Vendor Encoded IIS Attack Detection Evasion Vulnerability. Many intrusion detection systems attempt to detect attack signatures in network traffic. Web requests can be encoded, possibly obfuscating any present attack signatures....
11.  Vulns: Kinesphere Corporation Exchange POP3 Remote Buffer Overflow Vulnerability. eXchange POP3 is a an e-mail gateway server that is able to download messages from Internet mailboxes and relay outbound mail as well.

A vulnerability has been identifie...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
12.  Boffins test voice-activated secure credit card. Give me the bl**dy money! By John Leyden .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
13.  Panel Says 'Nay' To Computerized Voting Machines
14.  China Downplays Wireless Concessions
15.  L'infogérance de la sécurité démarre difficilement ?
16.  Netsky-Z greift Webseiten an
17.  Rechnung für Serviceleistung nicht bezahlen
18.  RIAA-Website erneut wegen Wurm offline
19.  Fahndung weltweit: Die Virenjäger von Kaspersky im Einsatz
20.  Fusion News Input Validation Flaw in 'fullnews.php' Lets Remote Users Conduct Cross-Site Scripting Attacks
21.  [MAJ] Déni de service sur les connexions persistantes dans TCP
22.  Vulnérabilité dans McAfee ePolicy Orchestrator
23.  [MAJ] Vulnérabilité dans la gestion des messages SNMP des routeurs Cisco
24.  Buffer overflow dans Affiliate Agent de SiteMinder (Netegrity)

1:17:50 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  HP remains top chip buyer. Hewlett-Packard tops the list of chip buyers in 2003 as PC sales began picking up again, according to market researcher iSuppli.
2.  Graphics patent suit targets Dell, others. Forgent Networks targets 31 computer and electronics vendors, seeking damages related to its claim to technology underlying the widespread JPEG file format.
3.  Scalix raises $6 million. The software maker receives $6 million in second-round funding from Mohr Davidow Ventures.
4.  Briefly: Scalix raises $6 million. Plus: Microsoft names new pricing chief...Amazon gets into jewelry business...AMD joins Linux lab.
5.  HP goes green with handheld discount. The device maker says it will offer discounts of $50 on Pocket PCs, if customers return their old PDAs for recycling.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
6.  Can You Get an eMac for $25? (PC World). PC World - Japanese Web site mistakenly offers Apple's computers at a steep discount.
7.  China's TCL Probed for Proposed Spin Off (AP). AP - Chinese electronics maker TCL Corp., a partner with France's Thomson in the world's biggest television set production venture, said Friday that stock market regulators investigating the disclosure of the company's plan to spin off its mobile phone business.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  Postfix 2.1 Released
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
9.  Family's text lifeline. An 81 year-old man has taught himself to text so he can communicate with his disabled daughter.
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
10.  Elsewhere: Expert: Gaps still pain Bluetooth security. VANCOUVER, British Columbia--The latest specification of Bluetooth, a popular short-range wireless technology, has left serious security issues unfixed, according to a wi...
11.  Elsewhere: Taking a Second Shot at Spammers. Spammers who get caught flooding American inboxes with junk mail could find themselves facing prosecution twice -- once at the federal level and once at the state level -...
12.  News: Network Associates sells Sniffer. The Register By John Leyden [john dot leyden at theregister dot co dot uk]
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
13.  Vulns: CiscoSecure ACS for Windows NT Buffer Overflow Vulnerability. Depending on the data entered, CiscoSecure ACS for Windows NT can be made to crash or arbitrary code execution can be made possible if an unusually long packet is sent to...
14.  Vulns: Cisco Catalyst Memory Leak Denial of Service Vulnerability. Cisco Catalyst is a high speed switch implemented in local area networks.

The telnet server that is built into the Catalyst firmware for remote administration contains...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
15.  Spiders inspire eight-legged Post-it notes. Arachnid molecular adhesion By Lucy Sherriff .
16.  Telescopes at the ready, it's Astronomy Day. Stargazing extravanganza By Lucy Sherriff .
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
17.  Network Associates adopts new name
18.  Linux/Windows security debate rolls on
19.  Hacker profile: Peiter Mudge Zatko
20.  Spamhaus breaches great firewall of China
21.  Code exists to exploit TCP flaw
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
22.  Who Should Keep Out The Hackers?
23.  Linux Advisory Watch - April 23rd 2004
24.  Widely used method not best way to judge computer security
25.  Your Next Mission-Critical Application
26.  Installing Nessus 2.0 on SuSE 9.0 Pro with KDE 3.1
27.  Reducing Spam
28.  Super worms on the way?
29.  Network Associates adopts new name
30.  Linux/Windows security debate rolls on
31.  Hacker profile: Peiter Mudge Zatko
32.  Spamhaus breaches great firewall of China
33.  Code exists to exploit TCP flaw

12:17:29 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Wacked MP3: Murray Saul "It's Friday!". BoingBoing reader Keith points us to an entry on a very cool underground MP3 blog, which I won't name here because I don't want to kill them with a traffic flood.

[They posted a link to an MP3 of] the lunatic radio ravings of a guy named Murray Saul, who is just SO GODDAMNED HAPPY that it's Friday! I dare you to listen to him scream about the "CHOCOLATE COVERED WEEKEND!" and not immediately feel happier to just be alive.

You can learn more about Murray Saul, an eccentric Ohio salesman and radio announcer, here. Our friend Leonard Lin has kindly offered to host the file on a BoingBoingable server, so have at it. It's pretty goddamned funny. I think some of it might be obliquely pornographic. It's just off the hook. Link.
2.  Nanowire nanomemory. nanomemoryThis image depicts a novel design for a nanomemory device that its inventors believe can store 40 gigabits of data per square centimeter. Developed by scientists at the University of Southern California and the NASA Ames Research Center, the self-assembled molecular memory consists of a nanowire coated with a layer of transistors. In traditional computer memory chips, each transistor holds one bit of information. The beauty of this nano-enabled approach is that the transistors can be put in three distinct states depending on the voltage applied. That means each "memory cell" can hold three bits of data. Link
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Microsoft, Amazon results brighten sentiment on Wall Street (AFP). AFP - Microsoft shares were surging in pre-opening Wall Street trade after the world's biggest software firm beat analysts' profit expectations with sales that rose a better-than-expected 17 percent.
4.  Amazon Says France Probing Its DVD Sales Practices (Reuters). Reuters - U.S. online retailer Amazon.com Inc. (AMZN.O) said on Friday that French authorities are probing its sales practices of DVDs in France.
5.  Telmex to Launch Online Gaming Service with Microsoft (Reuters). Reuters - Mexico's leading telephone company, Telmex (TMX.N) (TELMEXL.MX), said on Friday it plans to launch an online gaming service with Microsoft in a move to boost broadband usage.
6.  Army Confronts Enemies Within in Cyber War Game (Reuters). Reuters - The mission: to secure an entire computer network for the United States and its allies against a vague enemy force.
7.  Man Pleads Innocent to Internet Stalking (AP). AP - A South Carolina man arrested on an Internet stalking charge has pleaded innocent in U.S. District Court.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  Ethanol From Waste Straw
9.  The Woz to Keynote at Next HOPE Conference
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
10.  Linux Advisory Watch - April 23rd 2004
11.  Linux Advisory Watch - April 23rd 2004
12.  Widely used method not best way to judge computer security
13.  Your Next Mission-Critical Application
14.  Installing Nessus 2.0 on SuSE 9.0 Pro with KDE 3.1
15.  Reducing Spam
16.  Red Hat: kernel Privilege escalation vulnerabilities
17.  Openwall: kernel Privilege escalation vulnerability
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
18.  Vulns: Linux Kernel Samba Share Local Privilege Elevation Vulnerability. A local privilege escalation vulnerability has been reported to affect the 2.6 Linux kernel.

The issue appears to exist due to a lack of sufficient sanity checks perform...

19.  Vulns: Xine Bug Reporting Script Insecure Temporary File Creation Vulnerability. xine is a multimedia player for Unix/Linux variants.

The xine bug reporting scripts (xine-bugreport and xine-check) create temporary files in an insecure manner.

The ...

20.  Vulns: Softwin BitDefender AvxScanOnlineCtrl COM Object Remote File Upload And Execution Vulnerability. BitDefender is a freely available web based virus scanning application. It is designed to run on Microsoft Windows systems through the Internet Explorer web browser.

Re...

21.  Vulns: Softwin BitDefender AvxScanOnlineCtrl COM Object Information Disclosure Vulnerability. BitDefender is a freely available web based virus scanning application. It is designed to run on Microsoft Windows systems through the Internet Explorer web browser.

Re...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
22.  Swazi King gives PM SMS order of boot. U R sakd, now push off m8 By Tim Richardson .
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
23.  Super worms on the way?
24.  Network Associates adopts new name
25.  Linux/Windows security debate rolls on
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
26.  Oplichter heeft goudvoorraad voor weeshuis
27.  Nieuwste specificatie Bluetooth nog steeds lek
28.  Super worms on the way?
29.  Network Associates adopts new name
30.  Linux/Windows security debate rolls on
31.  NetSky.Z valt educatieve websites aan
32.  Fusion news "id" Cross Site Scripting Vulnerability
33.  artmedic hpmaker Arbitrary File Inclusion Vulnerability

11:17:10 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Photo-Journey through Buddhist Hell.

BoingBoing reader Juergen points us to:

"Photo documentation of dioramas depicting the 6 different buddhist hells. Contains abused people, chopped off limbs and pee filled ponds. Of course this place is in Japan, where else can you find something like this?"


Link

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Ericsson Posts Unexpectedly Large Profit (AP). AP - Wireless equipment maker LM Ericsson posted an unexpectedly large first-quarter profit Friday, citing increasing demand from mobile phone operators expanding their networks.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Factory Testing of Airborne Laser Cannon Completed
4.  EU Releases Microsoft Antitrust Report
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
5.  Disney adds tracks to iTunes. Movie studio Disney adds its classic film soundtracks to Apple's iTunes music download service.
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
6.  Microsoft adds games, MSN Toolbar in Messenger update. Microsoft Corp. is rolling out an update to its MSN Messenger instant messaging client that bundles in the MSN Toolbar browser add-on. The software giant is also introducing a subscription gaming service in the U.S. for MSN Messenger users.
7.  IDC: Pressure continues to build on IT managers. SINGAPORE - IT managers are facing a period of unprecedented pressure as their challenges increase but senior company executives try to hold down IT budgets, according to Peter Hind [cq], manager, end user programs, IDC South Pacific.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
8.  LINX links smaller ISPs. 'Piggy-back' valign="top">9.  Open Sourcerers get UK trade body. 'Great synergies' expected By Lucy Sherriff .

10:16:50 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  AOL and Its Cable Sibling to Cross-Promote (washingtonpost.com). washingtonpost.com - More than two years after the AOL-Time Warner merger, America Online Inc. and Time Warner Cable yesterday took a small first step toward promoting each other's high-speed Internet services.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  31 Lawsuits Filed Over Alleged JPEG Patent
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
3.  IDC: Consolidation to Windows won't happen. SINGAPORE - Microsoft Corp.'s domination of the client operating systems market will fade over the next few years, according to Avneesh Saxena, vice-president for Asia-Pacific computing systems research at IDC.
----------------------------------------------------------------------
[O.S.S.R]
----------------------------------------------------------------------
4.  TCP flaw threatens Net data transmissions
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  Livre : Optimiser et sécuriser son trafic IP
6.  DHS alert closes router holes
7.  La grille scientifique américaine se fait percer
8.  Gérard Roucairol (RNTL) : « Le RNTL a donné une assise industrielle à plus de cent projets de recherche »
9.  Sicherheitslücke in Personal Firewalls von Symantec
10.  Consumer grade *nix: powder keg
11.  Network Associates sells Sniffer
12.  New Phatbot worm may be on the loose
13.  Norton AntiVirus Virus Definitions April 19, 2004
14.  TCP flaw threatens Net data transmissions
15.  Ad-aware referencefile 01R298 20.04.2004
16.  Norton Virus Definitions April 20, 2004
17.  The Cleaner Database v3551
18.  Trend Micro Pattern File April 20, 2004
19.  AVG Free Edition 6.0 Build 665
20.  Trend Micro Pattern File April 21, 2004
21.  McAfee DAT 4352
22.  McAfee SuperDAT 4352
23.  Norton AntiVirus Virus Definitions April 21, 2004
24.  Norton Virus Definitions April 22, 2004
25.  BKDR_SDBOT.RC
26.  Stumbler: NetStumbler 0.3.30, MiniStumbler 0.4 released
27.  Windows for Devices: 'Camera in a lightbulb' "sends live video to cell phones, Pocket PCs"

9:16:30 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Satyam shares fall on profit-taking after results (AFP). AFP - BOMBAY (AP) - Shares of India's fourth-largest software exporter Satyam fell on profit-taking after the company announced results largely in line with market expectations.
2.  AT&T Wireless Posts First-Quarter Loss (Reuters). Reuters - Mobile phone operator AT&T Wireless Services Inc (AWE.N) on Friday posted a first-quarter loss amid steep customer losses.
3.  Report: Google May Announce IPO Plan Soon (Reuters). Reuters - Within days, Internet search firm Google Inc. is expected to announce it will carry out an initial public share offering, the Wall Street Journal reported on Friday, citing people familiar with the matter.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  Size is all for digital jukeboxes. The ideal digital music player is one that can hold 1,000 songs, a survey suggests.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
5.  Network Associates sells Sniffer. ...and becomes McAfee. Again. By John Leyden .
6.  Firms prep Wi-Fi Internet radio tuners. Reg Kit Watch 10,000 stations without a PC By Tony Smith .
7.  German postie punts pilfered parcels on eBay. You ain't got mail By Tim Richardson .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
8.  Waarom je je PC niet moet uitzetten
9.  Overspannen IT afdelingen moeten security outsourcen
10.  Consumer grade *nix: powder keg
11.  WORM_AGOBOT.RH
12.  Sun Solaris "sendfilev()" Extended Library Function Denial of Service
13.  pisg Script Insertion Vulnerability
14.  Red Hat update for kernel
15.  Sun Solaris "sendfilev()" Extended Library Function Denial of Service
16.  pisg Script Insertion Vulnerability
17.  Red Hat update for kernel
18.  Windows Media Player: Patch für den Patch
19.  Auch NETSKY-Z hat Webserver aus dem Bildungswesen im Visier

8:16:09 AM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Earnings alert: Ericsson sees strong profits. Plus: PeopleSoft, SAP slightly disappoint...AT&T earnings fall...SBC profits drop...EarthLink sees narrow loss.
2.  IBM expands search push with Masala. One query from IBM's upcoming version of its DB2 information integrator will pull data from multiple databases, applications and Web sites.
3.  Google's chastity belt too tight. Despite claims of "advanced proprietary technology," the search giant's opt-in porn filter proves no better than the primitive tools of the last decade, blocking many harmless sites, a CNET News.com investigation shows.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Network Associates to adopt McAfee name (SiliconValley.com). SiliconValley.com - Network Associates announced a sweeping restructuring Thursday that includes changing its name to McAfee, its well-known brand of anti-virus software, and selling its Sniffer network-management software unit.
5.  New on DVD (USATODAY.com). USATODAY.com - This week, Mike Clark takes Master and Commander for a spin, along with Call Me Madam, 3 Women, Reefer Madness, A Perfect Candidate, Roxie Hart and The Playboys.
6.  AOL, Time Warner do cross promotion (USATODAY.com). USATODAY.com - Corporate siblings America Online and Time Warner Cable called a truce Thursday in their battle over broadband customers with an agreement to push Time Warner's Road Runner service and AOL's premium content.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  International Space Station Gyroscope Fails
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
8.  Sony's EyeToy wins more plaudits. Catch up with the latest news from the world of video gaming.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
9.  Toshiba debuts dinky 100GB disk. Low-power job for notebooks By Tony Smith .
10.  419er Struck By American Headline Disorder. Allah Be Praised By Lester Haines .
11.  What has IT ever done for business?. Apart from the roads and the aqueducts... By Lucy Sherriff .
12.  Amazon opens online bijouterie. Profits up for diamond geezers By Tim Richardson .
13.  Laptop + bath = death?. Letters No idea. Any volunteers? By Lucy Sherriff .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
14.  Exploit code voor TCP vormt geen bedreiging
15.  Osama Bin Laden e-mail downloadt Trojaans paard
16.  Linux / Windows security discussie duurt voort
17.  Spamhaus gaat Chinese spam aanpakken
18.  BSD-games mille Potential Privilege Escalation Vulnerability
19.  PostNuke Cross Site Scripting Vulnerabilities
20.  BSD-games mille Potential Privilege Escalation Vulnerability
21.  PostNuke Cross Site Scripting Vulnerabilities
22.  Linux/Windows security debate rolls on

7:15:50 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Mac Skeptic: A Computer Store With Heart? (PC World). PC World - Of course, profit is the motive for Apple's spiffy retail stores--but they're more boutique than big box, and the service makes a difference.
2.  Report: Google Seen Announcing IPO Plan Within Days (Reuters). Reuters - Within days, Internet search firm Google Inc. is expected to announce it will carry out an initial public share offering, the Wall Street Journal reported on Friday, citing people familiar with the matter.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
3.  Sales rebound in sight at Marconi. The fallen electronics giant is continuing with its efforts to turn itself around, reporting a 1% increase in quarterly sales.
4.  Father and daughter's SMS lifeline. An 81 year-old man has taught himself to text so he can communicate with his disabled daughter.
5.  Legal costs hit Microsoft profits. The cost of a seemingly endless string of legal settlements weighs on the US software giant's results.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
6.  Bigmouth McBride turned us off SCO, says investor. BayStar boss speaks By Andrew Orlowski .
7.  Nvidia acquires network processor maker. High-end content creation By Tony Smith .
8.  Will Opteron's first birthday be its most memorable?. Analysis Dream on... By Ashlee Vance .
9.  VIA NET.WORKS UK to axe 40 staff. 'Realigning skills base' By Tim Richardson .
10.  Consumer grade *nix: powder keg. Desktop time-bomb By Daniel Hanson, SecurityFocus .
11.  ATI R420 slips from April to May. Even as piccies appear on Web By Tony Smith .
----------------------------------------------------------------------
Wired News
----------------------------------------------------------------------
12.  U.S. Moves Against Online Pirates. The FBI seizes more than 200 computers in a worldwide operation aimed against Internet piracy. Suspects, including more than 100 Americans, are implicated in the thefts, which amount to $50 million.
13.  No Privacy for the Poor, Homeless. Tracking the homeless using government-mandated databases would endanger battered women and rob the poor of their privacy while not improving services, experts say. Ryan Singel reports from Berkeley, California.
14.  Diebold Machine May Get Boot. A voting panel urges California officials to stop using a voting machine made by Diebold Election Systems, and recommends that the state consider filing civil and criminal charges against the company. Kim Zetter reports from Sacramento.
15.  Seeking Riches From the Poor. South African entrepreneurs have discovered a stunningly large and lucrative market: Africa's poor. By providing services that the developed world takes for granted, the entrepreneurs are making money -- and making lives easier. Part 3 of a three-part series. Megan Lindow reports from Cape Town.
16.  Damaging Drug Study? Bury It. Pharmaceutical companies may have been hiding data that shows some antidepressants might actually hurt depressed kids rather than helping them, according to a new study. By Kristen Philipkoski.
17.  Taking a Second Shot at Spammers. Contrary to popular belief, the U.S. Can-Spam Act leaves states a lot of leeway to make laws of their own to target junk e-mailers. But will the one-two legal punch keep your inbox clear? By Amit Asaravala.
18.  Dems Hold the High Ground Online. The presidential election of 2004 may come down to who wins the most swing states -- and does the best job organizing and campaigning online. By Daniel Terdiman.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
19.  Waarschuwing voor recente Windows lekken
20.  Consumenten en Linux vormen explosieve combinatie
21.  McAfee wil weer McAfee heten
22.  cisco-sa-20040420-tc..>
23.  cisco-sa-20040420-tc..>
24.  advguest.txt
25.  eEye.yahoo.txt
26.  unrealEngine2.txt
27.  umodpoc.zip
28.  WORM_AGOBOT.GM
29.  Juniper Networks Products TCP Connection Reset Denial of Service
30.  Juniper Networks Products TCP Connection Reset Denial of Service
31.  [CERT] TCP protokolü güvenlik açýklarý

6:15:29 AM    comment []

----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
1.  The enemy within
2.  Securing a fresh Linux install, part 3
3.  Who should keep out the hackers?
4.  Managing the patch process
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  THCIISSLame.zip
6.  columbo.tgz
7.  XSA-2004-1and2.html
8.  lnx_reboot.c
9.  thc_ssh_crack.c
10.  246929.html
11.  reset.zip
12.  radmind-1.3.0.tgz
13.  FLoP-1.2.1.tar.gz
14.  zm-1.19.2.tar.gz
15.  ncFTP317.txt
16.  Confirm e-mail address
17.  Questioning Purpose-free ID checks in MD State House
18.  USDOJ: Chip (Computer Hacking and Intellectual Property) Fact Sheet
19.  Rumeur du premier virus pour téléphone mobile
20.  Netsky.X, le ver polyglotte
21.  Communiqué Zataz sur le canular du virus SMS
22.  Statistiques : les utilisateurs et leurs mots de passe
23.  Les logiciels antispam sont-ils efficaces en entreprise ?
24.  Interview de Philippe Courtot, Qualys Technologies
25.  Cryptography Research dépose 60 brevets pour la sécurisation des carte mémoire
26.  Symantec Client Security 2.0
27.  Record d'infections virales pour mars : Trend Micro détecte 1200 codes malveillants au cours du mois
28.  Premiers échanges bancaires par de la crypto quantique
29.  Les TPE françaises mauvaises élèves pour la mise à jour des antivirus
30.  Network Associates change de nom
31.  Explosion des attaques de type Phishing
32.  Exploitation IIS SSL disponible sur Internet
33.  The enemy within
34.  Securing a fresh Linux install, part 3
35.  Who should keep out the hackers?
36.  Managing the patch process

5:15:10 AM    comment []

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
1.  Dilbert for 23 Apr 2004.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Sony Launches First Commercial Electronic Paper Display Reader
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
3.  TIBCO swoops on Staffware. Offers £128m for UK firm By Drew Cullen .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  jpegrescue.c
5.  sid-0.3.4.tar.gz
6.  nkvir-rc
7.  TA04-111A.txt
8.  TA04-111B.txt
9.  sa11431.txt
10.  lnx-smart.tgz
11.  set-loop.c
12.  BKDR_SDBOT.RB
13.  Open Voting at OSCON
14.  Open system might plug up holes in the e-voting process
15.  California Grills Diebold Over E-Voting Foul-Ups
16.  Diebold apologizes for device flaws
17.  DOD Kicks Up Cybersecurity Efforts
18.  DOD considers creation of national software security lab
19.  Army Confronts Enemies Within in Cyber War Game
20.  E-Vote Firm on the Hot Seat
21.  NBTA Addresses CAPPS II and Data Privacy Issues with Congress; Association Provides Resource for Travel Professionals to Voice Policy Concerns
22.  No Privacy for the Poor, Homeless
23.  How to Build Privacy Into Customer Authentication
24.  Cash Cow or Spam Sow?
25.  Privacy law faces obstacle / Banks sue to block provision requiring permission to share
26.  Découverte d'une faille dans le webmail Yahoo
27.  Raids à l'échelle mondiale contre des pirates informatiques
28.  Het patch proces van Microsoft bekeken
29.  STEVE WOZNIAK TO GIVE SATURDAY KEYNOTE AT FIFTH HOPE

4:14:49 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Miniature Khutu's Pyramid turns your Japanese mobile phone into a PVR. Engadget reports on a really cool-sounding, complicated and hard-to-explain device from Japan: a 1/2000 scale model of Khufu’s Pyramid with a Secure Digital slot in it. You put the pyramid atop your television and it turns your TV's video feed into 3GPP -- the file-format used by Japanese videophones. The idea is that you can load these into your camera phone's SD slot and watch TV on the way to work.

Link

2.  Used cellphone market taking off. The NYT reports on the growing US market for refurbished, used cellphones.

Many customers for these retreads are more interested in price tags than multimedia messaging or games of Snake II. "They say, 'I just want to make a phone call,' " said Jay Ellison, executive vice president of U.S. Cellular (www.uscc.com), a wireless carrier based in Chicago, which operates in 26 states and maintains a small inventory of refurbished handsets in its stores.

But there is also the cellphone equivalent of the preowned BMW. ReCellular, a company based in Dexter, Mich., resells about four million handsets in bulk worldwide each year. Of the 1.5 million it resells domestically, mostly for use in prepaid wireless plans, "plenty are higher-end with cameras and bells and whistles," said Eric Forster, an executive for the company, which finds buyers for phones collected by charities, as well as retailers' overstocks and trade-ins.

Link

(via Engadget)

3.  McDonald's advertising materials.

MrPromo is an Internet-based custom signage supplier to McDonald's restaurants. You apparently need to prove that you're a real McD's to actual get an order fulfilled, but it's really fun to poke aorund on the site and see all this disembodied greasebomb promo material and graphic elements.

Link

(Thanks, idogcow!)


4.  Petition against the Canadian DMCA. There's a petition against Canada's proposed DMCA-like copyright law up at the Digital Copyright Canada Wiki:

We, the undersigned residents of Canada draw attention of the House to the following:

THAT the Copyright Act is properly recognised as being a careful balance between the rights of creators and the rights of the public (including viewers, readers and listeners);

THAT the Supreme Court of Canada unanimously affirmed this view in CCH Canadian Ltd v Law Society of Upper Canada;

THAT digital technologies have recently given copyright holders the ability to upset the balance in the Copyright Act by preventing Canadians from accessing works for purposes that have been legally granted to them;

THAT the creation of original works is nourished by wide accessibility of earlier works, including a vibrant public domain;

THAT dissemination of cultural ideas requires that they be preserved in a form that is accessible to future generations; and

THAT historically, consultations regarding changes to the Copyright Act have mostly taken place with creators, intermediaries and only some special users (such as educators and librarians)

THEREFORE, your petitioners call upon Parliament to ensure generally that users are recognised as interested parties and are meaningfully consulted about proposed changes to the Copyright Act and to ensure in particular that any changes at least preserve all existing users' rights, including the right to use copyrighted materials under Fair Dealing and the right to make private copies of audio recordings. We further call upon Parliament not to extend the term of copyright; and to recognise the right of citizens to personally control their own communication devices.

Link (Thanks, Raymond!)

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
5.  Ericsson Shows Strong First Quarter (Reuters). Reuters - The world's biggest maker of mobile phone networks, Ericsson, beat expectations with strong first-quarter profits on Friday and said its main market would grow faster than expected.
6.  RIM to License BlackBerry on Motorola Phones (Reuters). Reuters - Research In Motion Ltd. (RIM.TO) (RIMM.O) said on Wednesday it struck a deal with Motorola Inc. (MOT.N) to license its popular BlackBerry wireless e-mail service on some of Motorola's mobile phones.

3:14:30 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Koolio, the Beer Delivery Robot
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  Yahoo Messenger 'yinsthelper.dll' Overflow Lets Remote Users Crash the Client
3.  Network Associates to sell off products, change name
4.  fastream.txt
5.  113579-03.txt
6.  phpBBmod.txt
7.  MDKSA-2004:031.txt
8.  Exch.pl
9.  cctde-0.2.tar.gz
10.  sniff-2.3.tar.bz2
11.  eudora61.pl
12.  THCsmbgetOS.c
13.  THCbindinfo.c
14.  isec-0015-msfilter.t..>
15.  p_xfree.c
16.  0x3142-sq-chpasswd.c
17.  lids-2.2.0pre3-2.6.5..>

2:14:09 AM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Software maker plays mobile hand. Germany's SoftMaker hopes its productivity applications for handheld computers will draw customers to the PC versions.
----------------------------------------------------------------------
New York Times: Technology
----------------------------------------------------------------------
2.  Pentagon Ban on Pictures of Dead Troops Is Broken. Hundreds of photographs of flag-draped coffins at Dover Air Force Base were released on Thursday on the Internet by a Web site dedicated to combating government secrecy. By Bill Carter.
3.  A Patriarch's Shadow at Troubled Software Maker. That Charles Wang, former head of Computer Associates, has remained off the radar of prosecutors seems to stem from the direction the investigation has taken. By Alex Berenson.
4.  PC Sales Aid Microsoft, but Legal Expenses Hurt Profits. Microsoft reported solid quarterly gains in revenue and income, but the company's net income was held down by legal payments. By Gary Rivlin.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
5.  Cisco Router Flaw Could Snarl Net, Officials Say (Reuters). Reuters - A flaw in traffic-routing computers made by Cisco Systems Inc. could knock Web sites offline, snarl e-mail and disrupt other Internet activity, U.S. cybersecurity officials warned on Wednesday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Software To Stop Song Trading
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
7.  Network Associates to sell off products, change name. Network Associates plans to sell off its Sniffer family of network management products and change its name to McAfee, part of an effort to cut costs and boost profitability by focusing squarely on security products and services, the company announced Thursday.

12:21:10 AM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Gregg Doherty.
Last update: 5/3/2004; 12:27:03 AM.
This theme is based on the SoundWaves (blue) Manila theme.
April 2004
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30  
Mar   May