Gregg's Security News Aggregator

Currently, this "blog" is nothing more than a news aggregator which

gets security information from over 30 sources. As you'll note,

a number of the sources are not specific to security. Advanced

filtering is definitely needed.






Subscribe to "Gregg's Security News Aggregator" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Saturday, May 08, 2004
 

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Sprint to Lay Off Additional 550 Workers (AP). AP - Sprint Corp. announced it will lay off an additional 550 workers by the end of the year as a result of its ongoing restructuring of its wireless and traditional phone divisions, bringing the total number of job cuts to 2,550.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Boucher's DMCRA To Get A Hearing On May 12
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Syndicate HackWire News
4.  Author of Sasser worm and Phatbot caught; New Sasser Worm Variant?; SANS Security Newsletters and Digests
5.  FreeBSD kqueue Mechanism EVFILT_WRITE filter DoS
6.  FreeBSD ip_output Routing Table ICMP Echo DoS

11:24:25 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Digital Cameras Change War Photo-Journalism
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  MyWeb HTTP GET Request Buffer Overflow Vulnerability
3.  e107 "Login Name/Author" Script Insertion Vulnerability
4.  Sun Java Runtime Environment Unspecified Denial of Service Vulnerability
5.  OpenPKG update for ssmtp
6.  MyWeb HTTP GET Request Buffer Overflow Vulnerability
7.  e107 "Login Name/Author" Script Insertion Vulnerability
8.  Sun Java Runtime Environment Unspecified Denial of Service Vulnerability
9.  OpenPKG update for ssmtp

10:24:06 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  German authorities arrest the suspected authors of Sasser and Phatbot. Two suspected worm authors are arrested in Germany. These arrests may be the first steps in shutting down a notorius virus programmer ring. By Fred "zAmboni" Locklear.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  Â Ãåðìàíèè àðåñòîâàëè âîçìîæíîãî àâòîðà Sasser'à
3.  News: German teenager admits creating Sasser
4.  Teen Confesses to Creating 'Sasser' Worm (AP)
5.  Sasser Worm Suspect Confesses

9:23:45 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  What's Being Done About Nuclear Security
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
2.  The Inquirer: AMD Opteron 250 to launch on May 18th. Pretty obvious after they cut the 248's price by 43%.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Zone-H Defacements: courts.wa.gov | isddc.dot.gov | ohio.honda.com
4.  Arrested German Teen Admits Being Sasser Worm Author
5.  creator of the agobot arrested

8:23:25 PM    comment []

----------------------------------------------------------------------
New York Times: Technology
----------------------------------------------------------------------
1.  It's Not Google. It's That Other Big I.P.O.. Salesforce.com might just prove to be the hottest public technology offering this side of Google, becoming the Microsoft of the 21st century. By Gary Rivlin.
2.  What an Old Sears Catalog Could Teach eBay Today. If someone coined an eBay rule, it might be this: "Satisfaction most emphatically not guaranteed. All sales final." By Randall Stross.
3.  Quick, After Him: Pac-Man Went Thataway. "Big games" use wireless devices like cellphones and global positioning beacons to track players, turning cities into vast game boards. By Warren St. John.
4.  Suspected Creator of Sasser Worm Arrested. The German police have arrested an 18-year-old man suspected of creating one of the Internet's most costly outbreaks of sabotage. By Reuters.
5.  Japanese Find a Forum to Vent Most-Secret Feelings. In a society in which subtlety is prized above all, millions of Japanese use the Channel 2 Web site to bare their souls. By Norimitsu Onishi.
6.  Intel Halts Development of 2 New Microprocessors. Intel said on Friday that it was scrapping its development of two microprocessors, a move that is a shift in the company's business strategy. By Laurie J. Flynn.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  Cyber-Soap Returns From The Dead
----------------------------------------------------------------------
SecurityNewsPortal.com HomelandSecurity.com
----------------------------------------------------------------------
8.  $250,000 reward going to informants that ratted on the virus coders.
9.  German police also arrest Agobot and Phatbot worm author this weekend - He confesses...
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
10.  News: German teenager admits creating Sasser. The Associated Press By Claus-Peter Tiemann
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
11.  Vulns: Heimdal Kerberos Cross-Realm Trust Impersonation Vulnerability. Heimdal is a free implementation of the Kerberos 5 network authentication protocol. It is freely available for Unix and Unix variants. X-NAS-Bayes: #0: 3.54304E-127; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 539 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

It has been reported that an issu...

12.  Vulns: SGI IRIX Unspecified UDP Denial Of Service Vulnerability. SGI IRIX is reportedly prone to an undisclosed UDP denial of service vulnerability.

SGI has released an advisory that tells users of various version of IRIX to apply pat...

13.  Vulns: BSD Kernel ARP Cache Flooding Denial of Service Vulnerability. The Address Resolution Protocol (ARP) is used to map Internet Protocol (IP) addresses to MAC addresses. When an IP address is resolved to a MAC address, it is stored in t...
14.  Vulns: SGI IRIX IFConfig -ARP Failure To Disable ARP Functionality Vulnerability. SGI IRIX like many other Unix distributions and Unix variants, ship with a network interface configuration utility named ifconfig. ifconfig accepts both the "arp" and "-a...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
15.  Teen Arrested Over Sasser Virus
16.  ISS to offer free security patch after being slammed for 'selling' security patches
17.  Report: Phishing Scam Hits 57 Million Users
18.  Sasser Worm Author Arrested
19.  W32.Axon.B
20.  Microsoft, Reward-Seekers Help Nab Sasser Creator (Reuters)
21.  Sasser Worm Suspect Confesses to German Police (Reuters)
22.  Teen Confesses to Creating 'Sasser' Worm (AP)

7:23:05 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Intel Drops Tejas, Xeon To Focus On Dual-Core Chips
----------------------------------------------------------------------
SecurityNewsPortal.com HomelandSecurity.com
----------------------------------------------------------------------
2.  $250,000 reward going to informants that ratted on the virus coders. Keywords Microsoft virus worms hackers hacked military government United States financial institutions ISP broadband advertising computer crime
3.  German police also arrest Agobot and Phatbot worm author this weekend - He confesses... Keywords Microsoft virus worms hackers hacked military government United States financial institutions ISP broadband advertising computer crime
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
4.  Vulns: P4DB Multiple Input Validation Vulnerabilities. P4DB is a CGI based tool that provides a web-based interface to Perforce source code repositories. Perforce is a configuration management tool that includes functionality...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  Microsoft still tinkering with secure-computing design
6.  McAfee SuperDAT 4358
7.  McAfee DAT 4358
8.  Norton AntiVirus Virus Definitions May 5, 2004
9.  Norton AntiVirus Virus Definitions May 7, 2004
10.  Kaspersky Anti-Virus Update May 7, 2004
11.  The Cleaner Database v3570
12.  ITAA blasts e-voting critic, calls testimony 'misleading'
13.  Sasser outbreak demonstrates need for quick patch response
14.  In photos: Security experts, vendors face off on e-voting
15.  ITAA blasts e-voting critic, calls testimony 'misleading'
16.  Sasser outbreak demonstrates need for quick patch response
17.  Howard Schmidt opts out of bid for Congress
18.  Proposed bill seeks stronger privacy protection for offshore work
19.  [waraxe-2004-SA#028 - Multiple vulnerabilities in NukeJokes module for PhpNuke]

6:22:46 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Cataloging his junk drawers, one item at a time. Mack sez: Heavy Little Objects, " is reallly an excuse to turn out my junk drawers and re-examine all the weird, small things that I've collected since I was, like 12, and turn them into a full-blown, daily ritual." Mack's objects comprise a true catalog of pop culture oddities, and his descriptions of the objects should be preserved for a museum 100 years from now. Link
2.  Celebrity time-travel photoshop contest. X-NAS-Bayes: #0: 1.04643E-053; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 528 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Some real science fictional gems in this Worth1000 photoshopping contest: What If Celebrities Had Time Travel?

Link


----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  German teenager confesses to creating Sasser Internet worm (AFP). AFP - An 18-year-old German man faces up to five years in prison after he confessed to creating the Internet Sasser worm which infected millions of computers worldwide, police said.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  Semacode - Hyperlinks For The Real World
5.  Professor and Student Thwart P2P File Sharing
----------------------------------------------------------------------
Hack the Planet
----------------------------------------------------------------------
6.  Adi Shamir and Eran Tromer: Acoustic cryptanalysis. And I thought I was the> ----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  BBC News: Teen 'confesses' to Sasser worm [Video] "An 18-year-old German high school student has...
8.  BBC News: Trench warfare against viruses "Computer security experts have been working around the...

5:22:26 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  MS Sales Growth Limited by Delays in Windows
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  BugTraq: [waraxe-2004-SA#028 - Multiple vulnerabilities in NukeJokes module for PhpNuke]. Sender: Janek Vind [come2waraxe at yahoo dot com]
3.  Vulns: PHPX Multiple Cross-Site Scripting Vulnerabilities. PHPX is a web-based content management system implemented in PHP. It is freely available and can be implemented on Unix and Unix variant systems as well as Microsoft Win...
4.  Vulns: PHPX Multiple Administrator Command Execution Vulnerability. PHPX is a web-based content management system implemented in PHP. It is freely available and can be implemented on Unix and Unix variant systems as well as Microsoft Win...
5.  Vulns: Simple Machines Forum Size Tag HTML Injection Vulnerability. Simple Machines Forum (SMF) is an open-source web forum application that is written in PHP. It will run on most Unix and Linux variants, as well as Microsoft Windows oper...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  Microsoft Reward Program Helped Lead to Arrest of Sasser author
7.  [OpenPKG-SA-2004.020] OpenPKG Security Advisory (ssmtp)
8.  FW: [security bulletin] SSRT4717 Management Agents for HP-UX Remote DoS
9.  [FLSA-2004:1395] Updated OpenSSL resolves security vulnerability
10.  Status bar exploit hides spoofed URLs Eudora, possibly other e-mail clients
11.  He Left His Heart With WorldCom
12.  Germans Arrest Teen 'Sasser' Worm Suspect

4:22:04 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Microsoft reward snags suspected Sasser author. The software giant's $5 million fund for rewarding informants for leads on virus attacks snags its first success with the arrest of a man in Germany who has confessed to the release of the Sasser worm.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Net Worm Arrests Could Crack Cyber Ring: Experts (Reuters). Reuters - The arrest in Germany of two men suspected of writing crippling computer worms may be the biggest break yet in taking down the most prolific virus-writing group, security experts said on Saturday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Phatbot Author Arrested In Germany
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
4.  Vulns: PHPNuke Modules.php Multiple SQL Injection Vulnerabilities. PHPNuke is a freely available, open source web content management system. It is maintained by Francisco Burzi, and available for the Unix, Linux, and Microsoft Operating ...
5.  Vulns: FreeBSD Kernel VM_Map Local Denial Of Service Vulnerability. vm_map.c, the virtual memory mapping module for the FreeBSD kernel has been reported prone to a local denial of service vulnerability. Virtual memory maps provide for the...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  Microsoft, Reward-Seekers Help Nab Sasser Creator (Reuters)
7.  German teenager confesses to creating Sasser Internet worm (AFP)
8.  Reuters: Net Worm Arrests Could Crack Cyber Ring | Microsoft, Reward-Seekers Help Nab Sasser Cre...

3:21:45 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  German teenager confesses to creating Sasser Internet worm (AFP). AFP - An 18-year-old German man faces up to five years in prison after he confessed to creating the Internet Sasser worm which infected millions of computers worldwide last week, police said.
2.  Microsoft, Reward-Seekers Help Nab Sasser Creator (Reuters). Reuters - A tip from reward-seekers and information from Microsoft led to the arrest of an 18-year-old suspected of creating the "Sasser" computer worm, German police and the software giant said on Saturday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  OpenBSD's PF Developers Interview
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
4.  BugTraq: [OpenPKG-SA-2004.020] OpenPKG Security Advisory (ssmtp). Sender: OpenPKG [openpkg at openpkg dot org]
5.  BugTraq: FW: [security bulletin] SSRT4717 Management Agents for HP-UX Remote DoS. Sender: Boren, Rich (SSRT) [rich dot boren at hp dot com]
6.  BugTraq: [FLSA-2004:1395] Updated OpenSSL resolves security vulnerability. Sender: Jesse Keating [jkeating at j2solutions dot net]
7.  BugTraq: Status bar exploit hides spoofed URLs Eudora, possibly other e-mail clients. Sender: Brett Glass [brett at lariat dot org]
8.  Vulns: Veritas NetBackup Multiple Unspecified Local Memory Corruption Vulnerabilities. Multiple unspecified local buffer overrun and format string vulnerabilities have been reported to exist in various setuid Veritas NetBackup binaries. The binaries are con...
9.  Vulns: E-Zone Media FuzeTalk AddUser.CFM Administrator Command Execution Vulnerability. FuseTalk is a commercially available forum application designed used ColdFusion scripts. It is available for Microsoft Windows. X-NAS-Bayes: #0: 1.52404E-173; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 525 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

It has been reported that FuseTalk is af...

10.  Vulns: E-Zone Media FuzeTalk Banning.CFM Authentication Bypass Vulnerability. FuseTalk is a commercially available forum application designed used ColdFusion scripts. It is available for Microsoft Windows.

It has been reported that FuseTalk is af...

11.  Vulns: PHPNuke Multiple Cross-Site Scripting Vulnerability. PHPNuke is a website creation/maintenance tool.

PHPNuke is prone to cross-site scripting attacks.

HTML tags are not filtered from links to the 'user.php' script.

T...

12.  Vulns: Multiple Vendor TCP Sequence Number Approximation Vulnerability. TCP provides stateful communications between hosts across a network. TCP sessions are established by a three-way handshake and use random 32-bit sequence and acknowledg...
13.  Vulns: JelSoft VBulletin Forum Creation HTML Injection Vulnerability. VBulletin is a commercially available web based bulletin board application. It is implemented in PHP and may be run on Unix and Unix like operating systems as well as Mic...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
14.  efFingerD Buffer Overflow in sockFinger_DataArrival() Lets Remote Users Crash the Daemon
15.  phf CGI Arbitrary Command Execution
16.  Sendmail SMTP RCPT TO Saturation DoS
17.  Microsoft IE MSHTML.DLL Information Disclosure
18.  FirstClass Internet Services Email To Overflow
19.  Squid Proxy FTP Channel Injection
20.  Book Review: Computer Security
21.  E-Postmark May Thwart Cyber Crook
22.  Computer Cops: Free Panda Software tools for removing the Sasser worms
23.  Sanctuminc: HTTP Response Splitting, Web Cache Poisoning Attacks, and Related Topics
24.  Canada: Teenager suspected of creating Sasser computer worm arrested in Germany "Police and pros...

2:21:26 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Breaking RSA Keys by Listening to Your Computer
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  Vulns: SuSE Linux Kernel HbaApiNode Improper File Permissions Denial of Service Vulnerability. A vulnerability has been identified in the SuSE Linux kernel that may allow a local attacker to cause a denial of service condition on a vulnerable system. The issue is ...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Appel à tous les visiteurs ! le retour
4.  Microsoft Internet Explorer 'file://' URL Processing Flaw Lets Remote Users Damage the Registry
5.  TrendMicro OfficeScan Default Permissions Let Local Users Modify the Configuration
6.  Microsoft Helped Catch Sasser Creator-Police (Reuters)
7.  Net Worm Arrests Could Crack Cyber Ring: Experts (Reuters)
8.  Germans Arrest Teen 'Sasser' Worm Suspect (AP)

1:21:04 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Net Worm Arrests Could Crack Cyber Ring: Experts (Reuters). Reuters - The arrest in Germany of two men suspected of writing crippling computer worms may be the biggest break yet in taking down the most prolific virus-writing group ever, security experts said on Saturday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Kodak vs. Sun Java Trial Date Set
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
3.  Vulns: CVS Client RCS Diff File Corruption Vulnerability. CVS is the Concurrent Versions System, which is a freely available open-source version management package. It is available for the Unix and Linux operating systems. X-NAS-Bayes: #0: 5.30559E-072; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 523 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

A v...

4.  Vulns: Kolab Groupware Server OpenLDAP Plaintext Password Storage Vulnerability. Kolab is a groupware server for KDE.

A vulnerability has been identified in the application that may allow an attacker to disclose OpenLDAP passwords that are stored in ...

5.  Vulns: Verity Ultraseek Error Message Path Disclosure Vulnerability. Verity Ultraseek is a web based search application that is supplied with a web interface as well. It is supported on Solaris 7, Windows, and Linux platforms.

A vulnerab...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  A qui profitent les brevets logiciels ? Deux patrons de PME répondent

12:20:44 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Authoria to Acquire Advanced Information Management (Ziff Davis). Ziff Davis - The human resources software developer is gaining a company that provides integrated performance management and compensation management software.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  FireFox and Longhorn: Meant For Each Other?
3.  The Controversy of a Potential Hafnium Bomb
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
4.  Vulns: Apache Web Server SSLCipherSuite Weak CipherSuite Renegotiation Weakness. Apache provides directives for supplying cipher suite specifications for SSL transactions. The cipher suite is negotiated with the client during the SSL handshake. Thes...
5.  Vulns: Apache Web Server Multiple Module Local Buffer Overflow Vulnerability. A vulnerability has been reported to exist in Apache that may allow a local attacker to gain unauthorized access by executing arbitrary code on a vulnerable system. The c...

11:20:24 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Sasser Author Under Arrest, Say German Police
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  German Police Hold Computer Virus Suspect (AP)
3.  Sasser Worm Suspect Confesses to German Police (Reuters)

10:20:06 AM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Does venture philanthropy work?. Wharton examines the challenge of finding a way to square lofty ambitions with the dictates of bottom-line capitalism.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Same Is Name of the Game (washingtonpost.com). washingtonpost.com - At the Electronic Entertainment Expo, the video game industry's annual trade show, the biggest new thing is typically the familiar: The latest football game with John Madden's name on it, a new "Star Wars" title or two and skateboarder Tony Hawk doing a few aerial tricks for the crowd to promote his game over at the Activision exhibit.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  RFID MasterCard
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  Germany's Sasser Worm Suspect Confessed-Police (Reuters)
5.  Teenager suspected of creating Sasser computer worm arrested in Germany (Canadian Press)
6.  Linux has its own security holes
7.  Seeing is believing
8.  Securing an insecure world
9.  Security funds dry up
10.  House question Ridge on IT security
11.  NIST to cut 100 jobs
12.  Taking your word for it

9:19:45 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  LiveWire: in Search of Truly Anonymous File-Sharing (Reuters). Reuters - While media companies step up their legal crackdown on Internet song-swappers, separate teams of software developers -- from the Middle East to Madrid -- toil away on a foiling technology: an anonymous file-sharing network.
2.  Japan Sees Future in Phones That Give Directions (Reuters). Reuters - In a country where quiet efficiency and a frenetic pace manage to coexist, Japanese consumers are discovering the convenience of mobile phones that know where they are and can help you get where you want to go.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Lucent: Down But Not Out
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  Lure of game clichés. Many games are based on the same basic ideas but we still enjoy them, argues Daniel Etherington of BBC Collective.
5.  Teen 'confesses' to Sasser worm. An 18-year-old arrested in northern Germany admits creating the Sasser computer worm, police say.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  German Police Arrest Sasser Worm Suspect
7.  Germany nabs suspected Internet worm maker (AFP)
8.  Schöpfer verhaftet: Sasser-Wurm "made in Germany"
9.  Linux has its own security holes
10.  Seeing is believing
11.  Securing an insecure world
12.  Security funds dry up
13.  House question Ridge on IT security
14.  NIST to cut 100 jobs
15.  Taking your word for it

8:19:25 AM    comment []

----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
1.  Book Review: Computer Security
2.  E-Postmark May Thwart Cyber Crook
----------------------------------------------------------------------
SecurityNewsPortal.com HomelandSecurity.com
----------------------------------------------------------------------
3.  German Police Arrest Sasser Worm suspect. 18 year old German arrested on Friday.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  German Police Arrest Sasser Worm Suspect (Reuters)
5.  More info assurance centers named
6.  Sasser not a fed harasser
7.  Airports picked for access test
8.  Prison scandal likely to deepen
9.  Vermoedelijke Sasser auteur gepakt

7:19:05 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Astronauts Get Tricoders (Almost)
----------------------------------------------------------------------
Wired News
----------------------------------------------------------------------
2.  Text Messages Killing Radio Star. International editors and publishers at a meeting to promote newspaper readership caution that nontraditional communications, like cell-phone text messages, are beating radio, television and print media to the punch.
3.  TechTV to Lay Off 285. The technology news outlet says it is eliminating all 285 positions in its San Francisco office as a result of its proposed merger with Comcast's G4 gaming network. By Amit Asaravala.
4.  Academics Patent P2P Spoofing. Two computer scientists get a patent on a technique that floods peer-to-peer networks with spoofed files. They hope to sell it to content owners. Could companies that already spoof files be in violation of the patent? By Katie Dean.
5.  Fun in Following the Money. An inside look at the economy in the Star Wars Galaxies MMORPG shows that virtual money doesn't quite work like real money, and fun has a lot to do with it. By Daniel Terdiman.
6.  Feds Answer Calls for Nuke Safety. For years, watchdog groups have argued in vain for new security measures at the nation's nuclear weapons labs. Finally, Energy Secretary Spencer Abraham appears to be listening. By Noah Shachtman.

6:18:44 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Get Ready for Some Hand-to-Hand Combat (washingtonpost.com). washingtonpost.com - Cue up the "dueling handhelds" theme: The video game wars are starting anew, with competitors Nintendo and Sony in a fierce fight for victory on the handheld gaming battlefield.
2.  Suspected author of Internet Sasser worm arrested in Germany (AFP). AFP - A computer programmer suspected of creating the Internet Sasser worm that infected millions of computers worldwide last week has been arrested in Rotenburg, northern Germany, a police spokesman said here.
3.  German Police Arrest Sasser Worm Suspect (Reuters). Reuters - German police have arrested an 18-year-old man suspected of creating the "Sasser" computer worm, police said on Saturday.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  The Register: Mystery of MS's missing AV software "Microsoft's plans to improve the security of ...
5.  Security Tracker: Eudora Has Buffer Overflow in Loading 'file -//' URLs "Windows-based versions ...
6.  About Net Security: Introduction to Vulnerability Scanning "vulnerability scanning can help you ...
7.  Linux World: "Every Principle of Security is Being Violated," Says O'Dowd "There is a widespread...
8.  Sympatico: 'Ethical hackers' safeguard data "Behind a plain beige door on the 17th floor of a bl...
9.  Kin await word on hostage
10.  Suspected author of Internet Sasser worm arrested in Germany (AFP)
11.  German Police Hold Computer Worm Suspect (AP)

5:18:25 AM    comment []

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
1.  Dilbert for 08 May 2004.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Major SCO Investor Sells Shares (TechWeb). TechWeb - The SCO Group says the Royal Bank of Canada has sold two-thirds of its investment in SCO to another major investor, BayStar Capital.
3.  Intel to Focus on Dual-Core Processors (AP). AP - Switching gears for its next-generation microprocessors, Intel Corp. said it has canceled an existing project so that development efforts can be focused on a more advanced technology that's making faster progress than expected.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  Sasser computer worm suspect held. An 18-year-old has been arrested in Germany on suspicion of creating the Sasser worm, police say.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  University Hack Places 380,000 At Risk For ID Theft (TechWeb)
6.  University Hack Puts 380,000 At Risk For ID Theft (TechWeb)
7.  Sasser, Netsky Work Of Same Hacker (TechWeb)
8.  Symantec: Sasser, Netsky Work Of Same Hacker (TechWeb)
9.  Book Review: Computer Security
10.  Kin await word on hostage
11.  MyWeb Buffer Overflow Lets Remote Users Crash the Server With Long URLs
12.  Sun Java Virtual Machine Infinite Loop in decodeArrayLoop() Lets Remote Users Deny Service

4:18:05 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Original Godzilla In U.S. Theaters
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  Odd Packets
3.  phpBB IP Spoofing
4.  AOL Instant Messenger Hyperlink DoS

3:17:46 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  US torturers made screensavers out of atrocity photos. Salon's reporter in Iraq interviewed an Al Jazeera cameraman, a civilian who was taken prisoner by the US forces and brutally tortured. X-NAS-Bayes: #0: 1.19023E-071; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 499 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

"I first knew that they were taking pictures when I saw that one of the computers had a picture of some prisoners as its desktop background. One of the prisoners had a black hood over his head and he was covered in cold water. I personally witnessed this event take place. The man was screaming, "I'm innocent!" until he got sick and his body got swollen from all the punishment," al Baz said. Cold water, solitary confinement, swollen bodies and constant psychological abuse are recurring images for the Al-Jazeera cameraman, who also credits his tormentors with ingenuity. "They had all different kinds of punishments and they changed them all the time. I begged them to interrogate me again so they would know that I was innocent, but they said no, that's it. All we know is that you're staying here."

Link

2.  Low-carb corn. a GM corn strain has twice the protein and half the carbs:

"Surprisingly, not only did we observe rescue of flower abortion but the kernels produced from pairs of flowers fused into a single normal-sized kernel that contained two embryos and a smaller endosperm," said Gallie. "Because it is the embryo that contains the majority of protein and oil, the presence of two embryos doubles their content in corn grain. The reduction in the size of the endosperm in the kernel, the tissue that contains most of the carbohydrate, means that the nutritional value of the grain has been improved considerably."

Link

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Kattoon: May 10, 2004
4.  W32.Bugbear.E@mm
5.  Phishing for Identity Information
6.  Dangerous HTTP Method DELETE
7.  Computer System at U.C. San Diego Hacked (AP)
8.  Windows ARP Packet DoS
9.  Check Point VPN-1 Products ISAKMP Overflow
10.  phpBB IP Spoofing

2:17:24 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Same Is Name of the Game (washingtonpost.com). washingtonpost.com - At the Electronic Entertainment Expo, the video game industry's annual trade show, the biggest new thing is typically the familiar: The latest football game with John Madden's name on it, a new "Star Wars" title or two and skateboarder Tony Hawk doing a few aerial tricks for the crowd to promote his game over at the Activision exhibit.
2.  Google Stock Auction Approach May Backfire (AP). AP - Google Inc.'s initial public offering has a lot of people salivating for a piece of the action — an appetite that the Internet search engine leader hopes to satisfy by inviting the masses to the bidding table.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  What Makes a Good CD/DVD Duplicator?
4.  Build Your Own Wireless Beer Pitcher Monitoring System
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  FTC settles with alleged 'Married But Lonely' spammers
6.  Top 10 tools of the trade
7.  Vulnerability vigilence
8.  iPod clamor, Microsoft's spammer
9.  Sasser a warning of things to come
10.  Netli bolsters application delivery

12:23:44 AM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Gregg Doherty.
Last update: 6/1/2004; 12:29:08 AM.
This theme is based on the SoundWaves (blue) Manila theme.
May 2004
Sun Mon Tue Wed Thu Fri Sat
            1
2 3 4 5 6 7 8
9 10 11 12 13 14 15
16 17 18 19 20 21 22
23 24 25 26 27 28 29
30 31          
Apr   Jun