Sunday, May 30, 2004
Yahoo! News - Technology
1. |
Studios Sue Retailer for Piracy (AP). AP - Two Hollywood movie studios have sued an online retailer, accusing Technology One of defiantly selling DVD-copying software previously barred by two federal courts. |
2. |
The 3Com Saga |
NewsIsFree: Security
3. |
Boy Uses Chatroom Spy Plot To Order His Own Murder |
11:26:21 PM
10:26:02 PM
Yahoo! News - Technology
1. |
Many Wireless Networks Lack Security (AP). AP - With a laptop perched in the passenger seat of his Toyota 4Runner and a special antenna on the roof, Mike Outmesguine ventured off to sniff out wireless networks between Los Angeles and San Francisco. He got a big whiff of insecurity. |
NewsIsFree: Security
2. |
Report: FDIC Data Vulnerable |
9:25:41 PM
8:25:22 PM
Boing Boing
1. |
NYT: E-Voting will only work if it's open source. A thought-provoking piece on cures for e-voting woes, from today's New York Times
Electronic voting has much to offer, but will we ever be able to trust these buggy machines? Yes, we will -- but only if we adopt the techniques of the ''open source'' geeks.
One reason it's difficult to trust the voting software of companies like Diebold is that the source code remains a trade secret. A few federally approved software experts are allowed to examine the code and verify that it works as intended, and in some cases, states are allowed to keep a copy in escrow. But the public has no access, and this is troublesome. When the Diebold source code was accidentally posted online last year, a computer-science professor looked at it and found it was dangerously hackable. Diebold may have fixed its bugs, but since the firm won't share the code publicly, there's no way of knowing. Just trust us, the company says.
Link |
2. |
Bollywood Vanilla Coke ad which kicks ass. BoingBoing reader Vishal points us to a spectacularly cheesy Indian TV ad starring yet another one of my future husbands (look, any fella who eschews SMS for pigeon as preferred love-note carrier is alright by me).
Vishal says, "This Ad is really popular in India, and I was surprised to find that the good people at Coke have it online too (RealPlayer). It features one of the hottest young actors in Bollywood, Vivek Oberoi, and features many in-jokes to '70s Bollywood films (note, especially, the lightbulb dress in the 3rd segment, a direct lift from a classic 70's movie)."
Footnote to menswear trendwatchers: take a tip from Vivek, at left -- pink vomit prints are the new black.
Link |
3. |
FCC Move Could Shut Down High School Radio Station |
SecurityFocus Vulns
4. |
Vulns: PHP Input/Ouput Wrapper Remote Include Function Command Execution Weakness. PHP includes various file input/output wrappers to facilitate efficient read and write operations; php://input is one of these wrappers that facilitates reading POST data... |
5. |
Vulns: Subversion Pre-Commit-Hook Template Undisclosed Vulnerability. Subversion is a freely available, open source software version control system for the Unix, Linux, and Microsoft Windows platforms.
X-NAS-Bayes: #0: 1.78664E-114; #1: 1
X-NAS-Classification: 0
X-NAS-MessageID: 1199
X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}
Subversion is reported prone to an un... |
6:24:42 PM
4:24:02 PM
1. |
Online Plagiarist Sues University |
SecurityFocus Vulns
2. |
Vulns: Canon ImageRUNNER Remote Port Scan Denial of Service Vulnerability. imageRUNNER is a laser printer offered by Canon. imageRUNNER offers a web interface over TCP port 80.
X-NAS-Bayes: #0: 1.47202E-005; #1: 0.999985
X-NAS-Classification: 0
X-NAS-MessageID: 1191
X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}
imageRUNNER is prone to a remote denial of service vulnerability. ... |
3. |
Vulns: 3Com OfficeConnect Remote 812 ADSL Router Web Interface Authentication Bypass Vulnerability. 3Com OfficeConnect Remote 812 ADSL Router is an Internet gateway device. The device provides a web configuration interface to allow for remote administration.
3Com Offi... |
3:23:42 PM
Yahoo! News - Technology
1. |
Japanese Internet Star Pushes Blogs (AP). AP - Snapshots of his pet dog, thoughts on democracy and a recipe for bamboo shoots clutter Joichi Ito's Web journal, a lively peek into the tireless mind of one of Japan's biggest Internet stars. |
SecurityFocus Vulns
2. |
Vulns: XFree86 XDM RequestPort Random Open TCP Socket Vulnerability. xdm is the X Display Manager with support for XDMCP.
X-NAS-Bayes: #0: 4.66809E-065; #1: 1
X-NAS-Classification: 0
X-NAS-MessageID: 1190
X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}
xdm is reported prone to a potential security vulnerability that may lead to a false sense of security. Normally xdm... |
3. |
Vulns: IsoqLog Remote Buffer Overflow Vulnerability. IsoqLog is an MTA log analysis application implemented using the C language. It is freely available for Unix and Unix variant operating systems.
IsoqLog is reportedly a... |
4. |
Vulns: Sun Java System Application Server Remote Installation Path Disclosure Vulnerability. It is reported that Java System Application Server is prone to a remote installation path disclosure vulnerability. This issue is due to a failure of the application to p... |
2:23:22 PM
1:23:02 PM
1. |
Touchscreen BoomboxPC |
SecurityFocus Vulns
2. |
Vulns: Multiple LHA Buffer Overflow/Directory Traversal Vulnerabilities. LHA is a utility that can compress and decompress LHarc/LH7 format archives.
X-NAS-Bayes: #0: 1.36522E-038; #1: 1
X-NAS-Classification: 0
X-NAS-MessageID: 1185
X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}
LHA has been reported prone to multiple vulnerabilities that may allow a malicious archive t... |
3. |
Vulns: Apache Mod_SSL SSL_Util_UUEncode_Binary Stack Buffer Overflow Vulnerability. mod_ssl provides an interface for accessing the OpenSSL libraries from within Apache.
A stack-based buffer overflow has been reported in the Apache mod_ssl module.
Th... |
12:22:41 PM
1. |
More Blackholes Discovered... |
2. |
Big Screen for NYPD |
SecurityFocus Vulns
3. |
Vulns: WildTangent WebDriver Remote Filename Buffer Overflow Vulnerability. WildTangent WebDriver is a multimedia gaming browser plugin that is compatible with Internet Explorer and Netscape on Windows operating systems.
X-NAS-Bayes: #0: 6.98598E-016; #1: 1
X-NAS-Classification: 0
X-NAS-MessageID: 1182
X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}
A remotely exploitable s... |
4. |
Vulns: Heimdal K5AdminD Remote Heap Buffer Overflow. Heimdal implements the Kerberos 5 network authentication protocols. The k5admind daemon provides the administrative interface to the Kerberos Key Distribution Center (KDC... |
NewsIsFree: Security
5. |
Massale poging tot diefstal via nog onbekend lek in IE |
11:22:22 AM
10:22:02 AM
9:21:41 AM
1. |
The Single Man's Guide To TV Dinners |
8:21:21 AM
7:21:01 AM
6:20:42 AM
5:20:23 AM
1. |
Dilbert for 30 May 2004.  |
4:20:01 AM
Boing Boing
1. |
Spotcode. Along the lines of Semacode, another "use your phonecam as a meatspace remote control" project -- Spotcode. Developer Anil Madhavapeddy says:
X-NAS-Bayes: #0: 4.09753E-066; #1: 1
X-NAS-Classification: 0
X-NAS-MessageID: 1169
X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}
I've been working on some software that lets you use your existing camera phone as a virtual mouse by locking onto tags and physically rotating it around and so on. It's most easily explained by checking out the videos. In particular, the volume control one (MPEG) is fun.
Link (Also spotted on Warren Ellis' blog) |
2. |
Porn art-remixes part deux: Safe For Work. 
Those French "pornotuning" remixes aren't the first time someone with a pinch of snark and a penchant for pr0n got jiggy with Photoshop. For instance, this somethingawful riff from a couple of years back: "Make Porn Work-Safe." Results included the bizarre goatse-esque mashup shown here, which suggests a rollicking three-way between Man Ray, Terry Richardson, and Betty Crocker. BoingBoing reader Phil points us to the archived gallery and says, "Basically, they hacked pornopix just enough to make them (at least theoretically) safe for work."
Link |
BBC News | Technology | UK Edition
3. |
Instant messaging grows up. The hugely popular practice of instant messaging is evolving beyond just text. |
NewsIsFree: Security
4. |
Boy Poses As Internet Spy To Plot His Own Murder |
3:19:42 AM
2:19:21 AM
Yahoo! News - Technology
1. |
Shuttle XPC Packs a Lot Into a Small -- and Imperfect -- Package (washingtonpost.com). washingtonpost.com - Compared with the tower-case computers that squat under desks in millions of homes and offices, the tidy black box I have set up at home is a midget of a machine. Not only does this desktop actually fit on top of a desk, at roughly 7 1/4 inches tall by 7 7/8 inches wide by 12 inches long, it takes up no more room than many shoeboxes. |
2. |
Yahoo Tries To Keep Spies Out (washingtonpost.com). washingtonpost.com - Yahoo rolled out a test version of a browser add-on that can help Web users shield their surfing habits from spyware. |
SecurityFocus Vulns
3. |
BugTraq: [SECURITY] [DSA 510-1] New jftpgw packages fix format string vulnerability. Sender: Matt Zimmerman [mdz at debian dot org] |
12:22:10 AM
© Copyright
Gregg Doherty.
Last update:
6/1/2004; 12:33:06 AM.
This theme is based on the SoundWaves
(blue) Manila theme. |