Gregg's Security News Aggregator

Currently, this "blog" is nothing more than a news aggregator which

gets security information from over 30 sources. As you'll note,

a number of the sources are not specific to security. Advanced

filtering is definitely needed.






Subscribe to "Gregg's Security News Aggregator" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Tuesday, June 01, 2004
 

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  SCO buyout settles BayStar investment spat
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Intel To Release Next-Gen BIOS Code Under CPL

11:27:06 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Revisiting the "hardware is free" vision of the future. You may recall back at the end of March that we had a little diddy on Bill Gates' proclamation that "hardware will be free" in the future. Now Sun is saying that same thing, leaving us to wonder: what will we ever do with all this free hardware? By Ken "Caesar" Fisher.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Quick Fixes For Those Pining For A 6-foot Cabinet
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Small Appliances Need To Get Bigger
4.  Hacking Sparks Need for Complex Passwords
5.  WORM_KORGO.D
6.  VBS.Yeno@mm
7.  Sun Serves up New Pricing Strategy, Products
8.  MDKSA-2004:053 - Updated xpcd package fix vulnerabilities
9.  MDKSA-2004:055 - Updated apache2 package fix vulnerability in mod_ssl
10.  MDKSA-2004:054 - Updated mod_ssl package fix remote vulnerability

10:26:45 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Intel to open source next-generation BIOS code. Intel will be partnering with CollabNet to release its next-generation BIOS replacement project, codenamed Tiano, under the Common Public License (CPL). In particular, the company plans to release its firmware foundational code along with a driver kit. By Ken "Caesar" Fisher.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  MandrakeMove 2 And Mandrakesoft Profit Reports
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Sasser tops virus infections
4.  News: Webmaster terrorism support case heads to jury
5.  Port 16191 fragment update, mail server dictionary attack, top 10 signs that you are infected
6.  FDIC info security lacking, GAO finds
7.  Missing: A Laptop of DEA Informants
8.  Linksys BEFSR41 EtherFast Router Lets Remote Users Access the Administration Page Even When Remote Administration is Disabled

9:26:25 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Hewlett-Packard Grows Open-Source Commitment (NewsFactor). NewsFactor - Hewlett-Packard is increasing its use of open-source software by certifying and supporting products from JBoss and MySQL.
2.  Hacking Sparks Need for Complex Passwords (AP). AP - As more Web sites demand passwords, scammers are getting more clever about stealing them. Hence the need for such "passwords-plus" systems.
3.  Sun, Fujitsu Join Forces to Fend Off HP and IBM (Reuters). Reuters - Sun Microsystems Inc. (SUNW.O) is teaming up with long-time partner Fujitsu Ltd. (6702.T) of Japan and Siemens of Germany to jointly develop the next generation of Sun systems, the companies said on Tuesday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  SCO and Baystar Strike a Deal
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
5.  Missing: A Laptop of DEA Informants
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
6.  News: Webmaster terrorism support case heads to jury. The Associated Press By Bob Fick

8:26:06 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Williams Outsourcing 460 Jobs to IBM (AP). AP - Williams Cos. has agreed to ship about 460 accounting, finance, human resources and information technology jobs to IBM Corp. in a $320 million outsourcing agreement announced Tuesday. Williams' shares hit a 52-week high.
2.  Oracle Says Antitrust Case 'Confusing' (Reuters). Reuters - The U.S. Justice Department's lawsuit to block Oracle Corp.'s (ORCL.O) $7.7-billion takeover bid of PeopleSoft Inc. (PSFT.O) hinges on a "confusing" view of the market for business software that overlooks evidence of competition, Oracle said in court documents filed on Tuesday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Evaluating Open Source
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
4.  BugTraq: MDKSA-2004:053 - Updated xpcd package fix vulnerabilities. Sender: Mandrake Linux Security Team [security at linux-mandrake dot com]
5.  BugTraq: MDKSA-2004:054 - Updated mod_ssl package fix remote vulnerability. Sender: Mandrake Linux Security Team [security at linux-mandrake dot com]
6.  BugTraq: MDKSA-2004:055 - Updated apache2 package fix vulnerability in mod_ssl. Sender: Mandrake Linux Security Team [security at linux-mandrake dot com]
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  Linksys WRT54G Lets Remote Users Access the Administration Page Even When Remote Administration is Disabled
8.  PHP-Nuke 'mainfile.php' Lets Local Users Execute Arbitrary SQL Queries
9.  Microsoft Windows 2000 Domains With Eight Characters May Let Remote Users With Expired Passwords Login
10.  Sambar Server 'showini.asp' and 'showlog.asp' Disclose Files to Remote Authenticated Administrators
11.  Firebird Database Can Be Crashed By Remote Users With Specially Crafted Database Name
12.  FDIC info security lacking, GAO finds
13.  RE: LinkSys WRT54G administration page availble to WAN
14.  Re: [Full-Disclosure] Possible bug in PHPNuke and other CMS
15.  Mollensoft Lightweight FTP Server CWD Buffer Overflow
16.  Re: LinkSys WRT54G administration page availble to WAN
17.  Re: LinkSys WRT54G administration page availble to WAN
18.  Firebird Database Remote Database Name Overflow
19.  RS-2004-1: SquirrelMail "Content-Type" XSS vulnerability
20.  Re: Possible bug in PHPNuke and other CMS
21.  [Squid 2004-betaNC-001] Inadequate Security Checking in NukeCops betaNC Bundle
22.  [Squid 2004-Nuke-001] Inadequate Security Checking in PHPNuke v7.3 and earlier
23.  [Squid 2004-OSC2Nuke-001] Inadequate Security Checking in OSC2Nuke
24.  Re: LinkSys WRT54G administration page availble to WAN
25.  MITKRB5-SA-2004-001: buffer overflows in krb5_aname_to_localname
26.  Re: RS-2004-1: SquirrelMail "Content-Type" XSS vulnerability

7:25:45 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  AMD, others unveil new wares at Computex
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Accenture Group Wins Contract to Track Visitors (Reuters). Reuters - A group led by Accenture Ltd (ACN.N) won a U.S. government security contract worth up to $10 billion on Tuesday to track foreign visitors using digital photographs, fingerprints and other "biometric" information.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Automakers Try To Keep Repair Codes Secret
4.  Playing Games While Not Ruining Your Relationship?
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
5.  Intel releases mobile chips for performance laptops. BOSTON - Intel Corp. expanded its roster of mobile processors Tuesday with its first 90-nanometer chips designed specifically for larger notebooks that offer greater performance but with less mobility.
6.  MCI, Qwest reach pricing agreement. WASHINGTON - MCI Inc. and Qwest Communications International Inc. have announced the first wholesale pricing agreement between an incumbent owner of telecommunications networks and a major competitor, but other companies complained about being left out in negotiations requested by the U.S. Federal Communications Commission (FCC).
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
7.  FDIC info security lacking, GAO finds
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
8.  BugTraq: Re: RS-2004-1: SquirrelMail "Content-Type" XSS vulnerability. Sender: [lupe at lupe-christoph dot de (Lupe Christoph)]
9.  Vulns: Gatos xatitv Missing Configuration File Privilege Escalation Vulnerability. gatos provides drivers for various ATI cards, in addition to utilities used for displaying video for these cards. It is available for Linux. X-NAS-Bayes: #0: 4.26504E-128; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1293 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

The gatos xatitv utility is...

10.  Vulns: JFTPGW Remote Syslog Format String Vulnerability. jftpgw is an FTP proxy for Linux and UNIX variants.

jftpgw FTP proxy is prone to a remotely exploitable format string vulnerability. This issue could be exploited to exe...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
11.  Sun and Fujitsu to SPARC together. Sun Network Goodbye UltraSPARC, Hello SPARC64 By Ashlee Vance .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
12.  NEW: Bush accepts Iraqi leaders
13.  New Iraq government gets to work
14.  TROJ_STARTPAG.EG
15.  620KTAR: Many Wireless Networks Lack Security "With a laptop perched in the passenger seat of hi...
16.  Biz Journals: Hackers racing even faster to beat latest security patches "A new patch can act as...
17.  BBC News: Undercover agents fight net piracy "He works undercover, has an online identity which ...
18.  Tech News World: Worm Variants Part of Russian Mafia Extortion Scheme "There's more source code ...
19.  Miami Herald: Hacking Sparks Need for Complex Passwords "As more Web sites demand passwords, sca...
20.  NZ Herald: Hackers costing banks millions "Eighty-three per cent of respondents admitted their s...
21.  Security Focus: Federal agency faulted for weak security
22.  Secunia: SquirrelMail "Content-Type -" Header Script Injection Vulnerability "can be exploited b...
23.  SMH: When encryption can be misleading
24.  AMD: Guard your data with Enhanced Virus Protection for the upcoming Microsoft Windows XP SP2 "A...
25.  Slashdot: Hacking the Linksys WRT54G
26.  BBC News: Colossus has been Rebuilt "Colossus Mk2, a wartime code-breaker hailed as one of the f...
27.  Zone-H - Defacement: go.msnserver.com

6:25:24 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  "Rance" unmasked as cartoonist/filmmaker/screenwriter Keith Thomson?. David Emery, of About.com's Urban Legends and Folklore department, tells BoingBoing, "Wanted to let you know that Alex Boese of the Museum of Hoaxes may well have solved the Rance mystery with some good, old-fashioned Net detective work, or at any rate is damn close to solving it."

Here's a snip from the Museum of Hoaxes post, which evidences some very thorough sleuthing indeed:

I think Rance is a cartoonist/filmmaker/screenwriter named Keith Thomson. Here's my reasoning. What immediately struck me about Rance's weblog was that it attracted a very high number of comments from very early on. Within two hours after Rance posted his first entry on December 29, 2003, four people had left comments on his site. Most weblogs, by contrast, struggle to get anyone to read them, let alone leave comments. So how was he attracting so many visitors to his site straight off the bat? What I discovered was that immediately after Rance posted his first entry on Dec. 29 at 4:49 EST, someone going by the screen name 'InvaderFromPluto' began posting messages about his weblog on various fan discussion groups. For instance, at 5:52, about one hour after Rance had posted his first entry, a message from InvaderFromPluto appears on Yahoo's thematthewperryplace message board. It reads:

i read slate reported a famous tv actor keeping a weblog under pseudonym "rance" at http://captainhoof.tripod.com/blog/ it's hard to know if it is him, but it might be as it is funny and seems witty in his sort of way

Obviously Slate hadn't written anything about Rance's weblog. Rance's weblog, at that time, was only an hour old. So how did InvaderFromPluto know about Rance's weblog so quickly, and why was he so interested in promoting it? Perhaps InvaderFromPluto was Rance himself. Makes sense to me.

Link, and previous BoingBoing posts: 1, 2
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Sun, Fujitsu to collaborate on Unix servers
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Sun Rolls Out New Products, Price Plans (NewsFactor). NewsFactor - Sun Microsystems (Nasdaq: SUNW) is delivering a plethora of new products and services, including aggressive pricing plans, as well as new ID-management and RFID technologies, with an eye to moving customers toward affordable, self-managing I.T. infrastructures.
4.  Hewlett-Packard Grows Open-Source Commitment (NewsFactor). NewsFactor - Hewlett-Packard is increasing its use of open-source software by certifying and supporting products from JBoss and MySQL.
5.  Sun Announces New Services, System, Pricing (NewsFactor). NewsFactor - Sun Microsystems (Nasdaq: SUNW) made a slew of announcements today at the SunNetwork Conference in Shanghai. Hoping to regain some of its former glory, the company tried to recast itself as a cost-effective open standards vendor. This represents a shift away from Sun's image of offering high-priced proprietary systems that have, to some extent, fallen out of favor in the I.T. community. Open source and industry standards have become entrenched in corporate computing.
6.  ATI Launches First PCI Express Mobile Chip (NewsFactor). NewsFactor - ATI (Nasdaq: ATYT) Technologies chose the Taiwanese trade show Computex as the occasion to announce its new Radeon X600 mobile graphics processor, formerly code-named "M24."
7.  Product Review: Gateway 450XL Laptop (NewsFactor). NewsFactor - Designed with business, government and educational applications in mind, the Gateway 450XL is just 1.5 inches thick, but manages to incorporate an Ultra ATA hard disk with a roomy 60-GB capacity, as well as a modular CD-RW and DVD-burner combo unit.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  The Spinning Cube of Potential Doom
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
9.  Sun, Fujitsu to merge SPARC server product lines. SAN FRANCISCO - Sun Microsystems Inc. and Fujitsu Ltd. are to merge their SPARC-based server product lines by 2006, expanding a long-standing partnership between the two companies, company officials said Tuesday.
----------------------------------------------------------------------
RSSQuotes
----------------------------------------------------------------------
10.  ZBRA    80.25    -0.63 (real-time). ZEBRA TECH
Last Price: 80.25
Change: -0.63   -0.78%
Last Trade: 06/01/2004 3:59PM ET
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
11.  BugTraq: MITKRB5-SA-2004-001: buffer overflows in krb5_aname_to_localname. Sender: Tom Yu [tlyu at mit dot edu]
12.  Vulns: e107 Website System Multiple Vulnerabilities. e107 is prone to multiple cross-site scripting, HTML injection, file inclusion, and SQL injection vulnerabilities. X-NAS-Bayes: #0: 1.08038E-226; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1290 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

The following specific vulnerabilities were reported: ..

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
13.  Sasser, Netsky Continue To Dominate
14.  TROJ_SMALL.LI
15.  ZDNet: Hackers 'recycling code' to spread worms "Although less new malicious code appears to be ...
16.  Security Focus: Infocus - H.323 Mediated Voice over IP - Protocols, Vulnerabilities & Remedi...

5:25:07 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  AT&T beefs up cybersecurity tools
2.  Sprint sells satellite cable TV
3.  Accenture lands Homeland Security deal
4.  Commentary: In the middle with RFID
5.  Intel to open code for booting up PCs, servers
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
6.  Software exports from India's technology hub surge 46 percent (AFP). AFP - Software exports from the southern Indian state of Karnataka, which includes the technology hub of Bangalore, jumped 46 percent year-on-year amid rapid growth in outsourcing, an official said.
7.  Sony Cancels Plans for New PDAs (PC World). PC World - Company will not launch new Clies in the U.S. this year; future remains uncertain.
8.  Dating Site EHarmony Has 436 Questions for You (Reuters). Reuters - In the fight for the top spot among purveyors of love connections on the Web, one company is gaining on the online dating giants by using some old-fashioned techniques -- advertising on radio and TV.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
9.  NTT DoCoMo's 4G Tests Hit 300Mbps
10.  Brew Your Own Auto Fuel For 41 Cents A Gallon
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
11.  On eve of IPO, Google gets earful on Gmail plan. The folks at Google Inc. are used to searching the wide Web world. But when they announced a new free e-mail service that scans users' e-mail text so that relevant advertising can be inserted into the messages, it was users from all over the world who came looking for Google.
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
12.  Network Associates is granted broad antispam patent. Network Associates Inc. (NAI) has been granted a broad U.S. patent for technology covering "various computer program products, systems and methods" for filtering unwanted e-mail messages, it said Tuesday.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
13.  BugTraq: [Squid 2004-OSC2Nuke-001] Inadequate Security Checking in OSC2Nuke. Sender: Squid [squidsecurity at hushmail dot com]
14.  BugTraq: Re: LinkSys WRT54G administration page availble to WAN. Sender: [Valdis dot Kletnieks at vt dot edu]
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
15.  GRC.com's worst enemy is ... Steve Gibson?!?
16.  Federal Agency Faulted for Weak Security
17.  Immunix Revamps to Secure Linux
18.  LinkSys WRT54G Administration Page WAN Availability Vulnerability
19.  Mac OS X NFS, TCP/IP,Terminal Multiple Security Vulnerabilities
20.  Isoqlog Multiple Buffer and stack Overflow Vulnerabilities
21.  Windows 2000 Expired Password Domain Authentication Vulnerability
22.  spamGuard v1.6 Multiple Buffer Overflow Vulnerabilities
23.  Infosecurity Moscow'2004
24.  Ìîñêîâñêàÿ ïîâðåìåíêà: welcome back
25.  SonicWALL Unveils Manageable Access Points
26.  Ingram Micro Discloses Hacker Attack
27.  Wi-Fi's Hot, But Security's Not
28.  F5 Acquires Web-Security Firm, Launches Security Unit

4:24:44 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  First looks at AMD's 3800+ and FX-53 CPUs. As we reported yesterday, today marks the release of AMD Athlon 64 CPUs rated at 3500+, 3700+ and 3800+, and the seemingly-exclusive FX-53. By Ken "Caesar" Fisher.
----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
2.  New Kevin Sites dispatch from Iraq: Dirty for Dirty. NBC combat correspondent and weblogger Kevin Sites is in Iraq today. He's just posted a new entry on his blog -- a series of interviews with American soldiers.
X-NAS-Bayes: #0: 2.9925E-306; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1285 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

[O]nce they finally do get home--they will still be faced with the complex task of finding their way in a civilian society again. And while they're eager to leave their weapons and Kevlar behind, the violence they've experienced here will likely be with them in one way or another, always.

Derek Ellyson says his memories have already hardened, fixed in his mind. "You never forget the faces. I can describe to you every dead person I've seen out here. What their faces looked like, the position they were laying in." Sorokin agrees, "War brings a lot of ugly things, you see a lot of ugly things you see other people dead and sometimes when you see somebody dead you see the face of death--the way the guy died. It could be an enemy it could be an ally it doesn't matter."

Yet living with those images of death is part of the job--the same one that requires them to pull the trigger. Before going to war soldiers have always had to ask themselves if they'd be willing to die for their cause. But there is a second part to that question which for some, is more difficult to answer: would they kill for it? For most if not all in the 3rd Platoon--the question is already moot.

Link, Discuss
3.  Another chance to have Cory's books signed and shipped to your door. Back when I lived in San Francisco, the nice people at Borderlands Books did this super-cool thing where they'd take orders for my books, along with details for personal inscriptions, then get me to sign them when I dropped round the store, and ship them for free within the US (and for a modest fee elsewhere).

Of course, that became a lot less practical last winter, when I moved to London. But you've got another chance to get a signed, inscribed book shipped right to your door: I'm swinging briefly through SF in June (and I do mean *briefly* -- sorry, no time to socialize) and I'm gonna stop by Borderlands and sign any stock that they have. If you get your order in before June 15, I'll sign your copy that week and you'll have it before July 1 -- pretty cool!

Borderlands' contact info is

866 Valencia St.
San Francisco CA 94110 USA
415 824-8203
888 893-4008

Call or email them with your order and payment details and they'll get you sorted out.

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
4.  Broadcom loses patent suit appeal
5.  Red Hat appoints Asia operations exec
6.  Smaller firms to fuel explosion of Web services
7.  Briefly: Broadcom loses patent suit appeal
8.  Study: Dipping costs to fuel corporate VoIP growth
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
9.  AOL tries to keep surfers in its Net (USATODAY.com). USATODAY.com - A subscriber since 1994, she pays AOL $24.95 monthly even though she no longer needs it to get online. She added high-speed DSL service a year ago, at $39.95 a month.
10.  PluggedIn: Sun Powers Gadgets on Peaks, in Valleys (Reuters). Reuters - Gadget lovers are using solar panels to power their toys in the remotest places -- like Mt. Everest, altitude 29,029 feet.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
11.  GPU Gems
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
12.  Symantec  tool eases PC migration. Hoping to ease the migration process involved with moving corporate users to new desktops, Symantec on Tuesday unveiled a new tool that automates many of the more mundane tasks associated with PC migration.
13.  Sony cancels 2004 Clie product launches in US. In another sign that personal digital assistants (PDAs) have lost the buzz they once enjoyed, Sony Corp. has decided it will not launch any new Clie personal digital assistants (PDAs) in the U.S. market for the rest of the year.
----------------------------------------------------------------------
RSSQuotes
----------------------------------------------------------------------
14.  ZBRA    80.00    -0.88 (real-time). ZEBRA TECH
Last Price: 80.00
Change: -0.88   -1.09%
Last Trade: 06/01/2004 3:07PM ET
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
15.  BugTraq: Firebird Database Remote Database Name Overflow. Sender: Aviram Jenik [aviram at beyondsecurity dot com]
16.  BugTraq: [Squid 2004-Nuke-001] Inadequate Security Checking in PHPNuke v7.3 and earlier. Sender: Squid [squidsecurity at hushmail dot com]
17.  BugTraq: [Squid 2004-betaNC-001] Inadequate Security Checking in NukeCops betaNC Bundle. Sender: Squid [squidsecurity at hushmail dot com]
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
18.  Sony exits global PDA biz. Clie - we hardly knew you By Andrew Orlowski .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
19.  Secunia: SquirrelMail "Content-Type -" Header Script Injection Vulnerability "can be exploited b...
20.  SMH: When encryption can be misleading
21.  AMD: Guard your data with Enhanced Virus Protection for the upcoming Microsoft Windows XP SP2 "A...
22.  Slashdot: Hacking the Linksys WRT54G
23.  BBC News: Colossus has been Rebuilt "Colossus Mk2, a wartime code-breaker hailed as one of the f...
24.  OSVDB Post Go-Live Update, 3000 Stable Entries
25.  RE: LinkSys WRT54G administration page availble to WAN
26.  Re: Possible bug in PHPNuke and other CMS
27.  Re: LinkSys WRT54G administration page availble to WAN
28.  Re: Possible bug in PHPNuke and other CMS

3:24:25 PM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  F5 Networks picks up another security start-up
2.  Nokia releases 'moblog' camera phone
3.  Dell to expand printer business to Asia
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Opera CEO: Browser Ready for Its Next Act (Ziff Davis). Ziff Davis - Jon von Tetzchner discusses the software maker's plans to add new innovations, such as voice technology, to the Web browser and to beat main competitor Microsoft in the mobile browser market.
5.  Sony to pull out of non-Japanese pocket computer markets (AFP). AFP - Sony Corp said it will pull out of all its Personal Digital Assistant (PDA, or pocket computers) markets around the world except Japan, to concentrate on wirelessly connected devices that can play movies, games and music.
6.  Zimbabwe seeks to control Internet, email traffic (AFP). AFP - The government in Zimbabwe has proposed new contracts for all Internet service providers that will force them to block content or report "malicious messages" to the authorities.
7.  Biotech: How to Steal a Culture (washingtonpost.com). washingtonpost.com - Biotechnology -- they say it's a growth industry, but the proof is in the petri dish.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  The Thermochemical Joy of Cooking
9.  Sun Says Hardware Will Be Free
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
10.  Network Associates is granted broad antispam patent. Network Associates Inc. (NAI) has been granted a broad U.S. patent for technology covering "various computer program products, systems and methods" for filtering unwanted e-mail messages, it said Tuesday.
----------------------------------------------------------------------
RSSQuotes
----------------------------------------------------------------------
11.  ZBRA    80.15    -0.73 (real-time). ZEBRA TECH
Last Price: 80.15
Change: -0.73   -0.90%
Last Trade: 06/01/2004 2:06PM ET
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
12.  Elsewhere: Hackers 'recycling code' to spread worms. Although less new malicious code appears to be being written, viruses and worms are continuing to cause problems around the world, says Trend Micro X-NAS-Bayes: #0: 6.90167E-153; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1282 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Despite worms such a...

----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
13.  BugTraq: Re: LinkSys WRT54G administration page availble to WAN. Sender: Steffen Mueller [steffen dot mueller at vision-it dot de]
14.  BugTraq: RE: LinkSys WRT54G administration page availble to WAN. Sender: Alan W dot Rateliff, II [lists at rateliff dot net]
15.  BugTraq: Mollensoft Lightweight FTP Server CWD Buffer Overflow. Sender: Aviram Jenik [aviram at beyondsecurity dot com]
16.  BugTraq: Re: Possible bug in PHPNuke and other CMS. Sender: Luca Falavigna [fala83 at libero dot it]
17.  Vulns: Isoqlog Multiple Buffer Overflow Vulnerabilities. Isoqlog is MTA log analysis software for UNIX and Linux variants.

Isoqlog is prone to multiple buffer overflow vulnerabilities that span various source files and functio...

18.  Vulns: Spamguard Multiple Buffer Overflow Vulnerabilities. Spamguard is MTA antispam software for UNIX and Linux variants.

Spamguard is prone to multiple buffer overflow vulnerabilities that span various source files and functio...

19.  Vulns: Land Down Under BBCode HTML Injection Vulnerability. Land Down Under is a content management system. It provides support for allowing users to control formatting properties of content through BBCode.

Land Down Under is pr...

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
20.  F5 snaps up MagniFire. Firewall under new management By John Leyden .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
21.  Externaliser la sécurité : comment prendre la bonne décision
22.  Ingram Micro informe ses employés d'un piratage

2:24:04 PM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Sony presses "pause" on Clie development. Sony has said it will pause its handheld Clie development for all markets outside of Japan while it assesses the prospects for progress in the the PDA arena. The exit will not be a permanent one, however. By Ken "Caesar" Fisher.
2.  ATI unveils PCI Express graphics cards. ATI takes the wraps off its PCI Exrpess graphics cards. As NVIDIA will be using an AGP-PCI Express bridge chip, will ATI's "true" PCI Express solutions be big winners? By Eric Bangeman.
----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
3.  Logan's Run "Life Clock". loganA "Life Clock" from the 1976 SF film Logan's Run is up for auction on eBay with a $49.99 minimum bid. I'm not sure how to guarantee that it's an authentic film prop, but with just ten hours to go and zero bids, it could be a score. Paul Allen, are you reading this? Link (Thanks, Vann!)
X-NAS-Bayes: #0: 1.41736E-151; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1279 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

4.  Christy Canyon and RU Sirius. christy Nerve is running an interview RU Sirius conducted with 1980s porn megastar and Boing Boing pal Christy Canyon. Christy's self-published memoir, Lights, Camera, Sex!, is a witty, engaging, and smart look inside the adult entertainment industry. It'll surprise you.
"At eighteen, I was too dumb to understand what victimization was. But even now, looking back on that day in 1984, I still don't think I was a victim. No gun was pointed at my head. I knew I could leave that porno set, and my dad would file a lawsuit. But I was hell-bent on being independent. And contrary to what the women's libbers of that era wanted to believe, the porn biz has made me so strong." Link
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
5.  Scottish pledge on broadband. Enterprise Minister Jim Wallace says everyone in Scotland should have access to broadband by 2005.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
6.  Chip sales buoyed by wireless market, group says
7.  AMD boosts Athlon 64 performance
8.  Intel ships latest mobile chips
9.  Sony to exit U.S. handheld business
10.  Briefly: Intel ships latest mobile chips
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
11.  Information Builders CEO Talks on Making Connections (Ziff Davis). Ziff Davis - Gerald Cohen, CEO of business intelligence software maker Information Builders, sizes up the state of the industry.
12.  E-Visits Begin To Pay Off For Physicians (TechWeb). TechWeb - Some health plans and insurers will reimburse doctors for online consultations
13.  Sony to Halt New Clie Pocket Computer Sales in U.S. (Reuters). Reuters - Sony Corp. (6758.T) on Tuesday said it will stop developing and selling new handheld digital assistants in the United States this year, exiting a market in decline and possibly striking a blow to handheld software maker PalmSource Inc. (PSRC.O)
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
14.  Second quarter Open Source Awards announced
----------------------------------------------------------------------
RSSQuotes
----------------------------------------------------------------------
15.  ZBRA    80.249    -0.63 (real-time). ZEBRA TECH
Last Price: 80.249
Change: -0.63   -0.78%
Last Trade: 06/01/2004 1:06PM ET
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
16.  Elsewhere: When encryption can be misleading. The trust that encryption generates can be deceptive, one researcher, a regular poster to the full-disclosure vulnerability mailing list, has discovered.

Gadi Evron, an...

17.  Elsewhere: MS support pledge boosts security. Microsoft's guarantee that its business products will have a 10-year lifecycle will boost the company's Trustworthy Computing security initiative, according to industry a...
18.  News: Two arrested in Softbank data leak probe. Two men have been arrested amid allegations that they were involved in a bid to extort billions of Yen from Japanese outfit Softbank Corp. Yutaka Tomiyasu (24) and Takuya Mori (35) were arrested at the weekend in connection with the leak of confidential information concerning Internet users earlier this year.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
19.  Court dismisses DirecTV whistleblower case. Legal setback for former anti-piracy 'bag man' By John Leyden .
20.  Codebreaking Colossus returns to Bletchley Park. World's first programmable computer on show By Lucy Sherriff .

1:23:44 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  InstaSnow. Here is a video of a guy demonstrating some stuff he calls "InstaSnow." It's a white powder. When you add water to the powder it gets really fluffy. I wonder what this stuff is -- is there an "open source" recipe for it? Link
2.  Jennfomation Data Center. superhighwayFormer BB guest blogger Jenn Shreve has launched her new personal Web site, the Jennfomation Data Center. Jenn is strictly a writer, but this site is a DIY design tour de force. Jenn cut up exquisite imagery from vintage brochures and books she found at junkyards and on eBay resulting in an ironically industrial aesthetic that's equal parts El Lissitzky and 1980s 'zine. The text is great too! Link
X-NAS-Bayes: #0: 6.64903E-241; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1275 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
3.  Online newspapers tempt readers. A boom in the consumption of news online is a sign of hope in challenging year for the world's newspapers.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
4.  Sun to expand unusual pricing model
5.  Briefly: Viacom's president steps down
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Night Vision Goggles vs Pirates
7.  NYT on Spam Cops
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
8.  AMD launches new Athlon 64 processors. Advanced Micro Devices Inc. (AMD) will precede rival Intel Corp.'s midyear product launches with four new Athlon 64 processors, expected to be introduced Tuesday at the Computex exhibition in Taipei, Taiwan.
9.  HP adds JBoss MySQL support. The JBoss application server and MySQL database will both get a boost from Hewlett-Packard Co. on Tuesday, when the Palo Alto, California, computer company plans to begin offering technical support for the two open-source projects.
10.  Acer dresses up new notebooks. TAIPEI, Taiwan -- In an announcement on Monday that was heavy on style but light on technical details, Taiwan's Acer Inc. introduced the latest additions to its notebook computer lines, the Aspire 1800 and TravelMate 3200.
11.  Netegrity updating eProvision product. Identity management software company Netegrity Inc. plans to announce a new version of its user provisioning product on Tuesday.
12.  Sun offers new pricing model for enterprises. Sun Microsystems Inc. on Tuesday plans to kick off its quarterly SunNetwork user conference in Shanghai with new products designed to advance the company's strategy of offering new pricing models to its enterprise customers, including new versions of its Java Desktop and Java Enterprise System software.
13.  Intel chips to support location-based services. TAIPEI, Taiwan -- Intel Corp. is developing support for location-based services in its mobile processor line that will allow computers to access information based on their location, a company executive said Tuesday.
14.  SAP will not extend or increase offer for SAP SI. SAP AG will not extend or increase its special offer to acquire the remaining shares in SAP Systems Integration AG (SAP SI) that it doesn't already own, company spokesman Marcus Berner said Tuesday.
15.  F5 buys Magnifire for $29 million. F5 Networks Inc. has bought MagniFire Websystems Inc., a New York-based maker of Web application firewall hardware, for $29 million in cash, F5 said Tuesday.
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
16.  Netegrity updating eProvision product. Identity management software company Netegrity Inc. plans to announce a new version of its user provisioning product on Tuesday.
17.  F5 buys Magnifire for $29 million. F5 Networks Inc. has bought MagniFire Websystems Inc., a New York-based maker of Web application firewall hardware, for $29 million in cash, F5 said Tuesday.
----------------------------------------------------------------------
RSSQuotes
----------------------------------------------------------------------
18.  ZBRA    80.23    -0.65 (real-time). ZEBRA TECH
Last Price: 80.23
Change: -0.65   -0.80%
Last Trade: 06/01/2004 12:02PM ET
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
19.  Infocus: H.323 Mediated Voice over IP: Protocols, Vulnerabilities & Remediation. This paper provides an overview of the H.323 (VoIP) protocol suite, its known vulnerabilities, and then suggests twenty rules for securing an H.323-based network.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
20.  Vulns: Apple Mac OS X Multiple Unspecified Security Vulnerabilities. Multiple unspecified security vulnerabilities were reported in Mac OS X. Mac OS X 10.3.4 has been released to address these issues and provide other security enhancement...
21.  Vulns: Apple OS X Unspecified Terminal URL Handling Vulnerability. Apple has made OS X fixes available for an unspecified vulnerability in terminal URL processing. Details on the nature of this vulnerability are not known at this time. ...
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
22.  Ofcom calls for universal e-content label. ISPs to join working group By Tim Richardson .
23.  Outsourced IT staff fingered porn stash banker. Outsource this, mate By Lucy Sherriff .
24.  Ireland to build register of 3G phone users. So perverts, stick to MMS By electricnews.net .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
25.  Iraqi truce fading; 5 GIs die
26.  NEW: Iraq's new president named
27.  U.S. accepts new Iraqi government

12:23:26 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  What's in your gadget bag, Xeni?. Sweet-talking Gizmodo editor Joel Johnson convinced me to unzip my gadget bag. Here's what fell out. Link
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
2.  Mother's winning chatroom device. A device to enhance chatroom safety has helped a British mother earn the title of the world's top female inventor.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
3.  Nokia dominating smart-phone market, study says
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Home Prices Grow 7.7 Pct During 1st Qtr. (Reuters). Reuters - U.S. average home prices rose 7.71 percent during the first three months of 2004 from a year earlier on robust demand and low mortgage rates, the Office of Federal Housing Enterprise Oversight said on Tuesday.
5.  ATI intros new mobile, upgradeable PCI Express graphics (MacCentral). MacCentral - ATI Technologies Inc. on Tuesday announced the Mobility Radeon X600, a new graphics system intended for laptops. The X600 is a further evolution of ATI's Mobility Radeon 9700, which is currently installed in PowerBooks. The new chip is being paired with Axiom, ATI's own solution for upgradeable graphics in notebooks that supports PCI Express: An emerging interface standard that's even faster than the PCI-X or AGP 8x interfaces found in today's Macintosh models.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Stallman vs Ken Brown
7.  CNN Notices that WiFi is Insecure
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
8.  Not just free software under threat. Letter Richard Stallman writes By Team Register .
9.  Sage founder buys Nordic Data. Wylie expands business By John Oates .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
10.  Hacking Sparks Need for Complex Passwords (AP)
11.  Sasser dominierte im Mai die Virencharts

11:23:05 AM    comment []

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
1.  Costs of calling mobiles to drop. The cost of calling a mobile phone from a landline looks set to fall after a ruling by telecoms watchdog Ofcom.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Government data-mining lives on
3.  Nokia dominating smart phone market, study says
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Sun to Show Updated Java Enterprise, Desktop Systems (Ziff Davis). Ziff Davis - Top among a number of product announcements Sun is making are the next releases of its Java Enterprise System and Java Desktop System.
5.  Opera CEO: Browser Ready for Its Next Act (Ziff Davis). Ziff Davis - Jon von Tetzchner discusses the software maker's plans to add new innovations, such as voice technology, to the Web browser and to beat main competitor Microsoft in the mobile browser market.
6.  HP Claims to Be First OEM with MySQL, JBoss Stack (Ziff Davis). Ziff Davis - HP will certify, support and jointly sell MySQL AB's open-source database and JBoss' applications server on its server hardware.
7.  Motorola Tunes In to Flat-Panel TVs (PC World). PC World - LCD and plasma televisions on display at this week's Computex show.
8.  Hacking Sparks Need for Complex Passwords (AP). AP - As more Web sites demand passwords, scammers are getting more clever about stealing them. Hence the need for such "passwords-plus" systems.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
9.  AMD's Socket 939, Athlon 64 FX-54 amd 64 3800+
10.  Sony Exits US Handheld Market
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
11.  Six ways to justify security training
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
12.  Ofcom orders mobile phone charge cut. 'Bout time too By Tim Richardson .
13.  Chinese government censors online games. And Britney's wardrobe gets the once-over By John Oates .
14.  IBM beats CapGemini to Defra deal. 300 IT staff on the move By Lucy Sherriff .
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
15.  Putting security where it belongs
16.  How to sell - a pretty kettle of phish
17.  Hackers 'recycling code' to spread worms
18.  When encryption can be misleading
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
19.  Microsoft, Sun Security Paths Diverge
20.  Airports to Try Security Fast Track
21.  Symantec Chief Makes $14 Million
22.  TinyWEB cgi-bin Content Disclosure Vulnerability
23.  TinyWEB cgi-bin Content Disclosure Vulnerability
24.  Isoqlog Multiple Buffer Overflow Vulnerabilities
25.  Isoqlog Multiple Buffer Overflow Vulnerabilities
26.  spamGuard Multiple Buffer Overflow Vulnerabilities
27.  spamGuard Multiple Buffer Overflow Vulnerabilities

10:22:45 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Colossus has been Rebuilt
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
2.  Viruses up - or down. Take your pick on malware activity figures By John Leyden .
3.  Clouds cloud climate modelling. Caltech scientists seek answers in moonshine By Lucy Sherriff .
4.  Messing with the hackers' heads. Site Offer 30% off Honeynet Project literature By Team Register .
5.  Zimbabwe blocks emails. Laughing Bob Mugabe at it again... By John Oates .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  Unclear on the Concept
7.  Technology Briefs
8.  Big Brother IT
9.  Sidebar: Employee Rights and Relations
10.  Information Highway Patrol
11.  Sidebar: Vendors of products that monitor network and Internet use
12.  When encryption can be misleading
13.  SA websites fall to hacker attacks
14.  TinyWEB cgi-bin Content Disclosure Vulnerability
15.  TinyWEB cgi-bin Content Disclosure Vulnerability
16.  Isoqlog Multiple Buffer Overflow Vulnerabilities
17.  Isoqlog Multiple Buffer Overflow Vulnerabilities
18.  spamGuard Multiple Buffer Overflow Vulnerabilities
19.  spamGuard Multiple Buffer Overflow Vulnerabilities

9:22:25 AM    comment []

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
1.  Return of Colossus marks D-Day. One of the machines that broke key German codes has been rebuilt for D-Day celebrations.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Sun's Schwartz to expand unusual pricing model
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Many Wireless Networks Lack Security (AP). AP - With a laptop perched in the passenger seat of his Toyota 4Runner and a special antenna on the roof, Mike Outmesguine ventured off to sniff out wireless networks between Los Angeles and San Francisco. He got a big whiff of insecurity.
4.  Shuttle XPC Packs a Lot Into a Small -- and Imperfect -- Package (washingtonpost.com). washingtonpost.com - Compared with the tower-case computers that squat under desks in millions of homes and offices, the tidy black box I have set up at home is a midget of a machine. Not only does this desktop actually fit on top of a desk, at roughly 7 1/4 inches tall by 7 7/8 inches wide by 12 inches long, it takes up no more room than many shoeboxes.
5.  Japanese Web Star Spreads Blogging Gospel (AP). AP - Snapshots of his pet dog, thoughts on democracy and a recipe for bamboo shoots clutter Joichi Ito's Web journal, a lively peek into the tireless mind of one of Japan's biggest Internet stars.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
6.  Hacking the Linksys WRT54G
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
7.  Carphone Warehouse in minimum wage 'sting'. Staff paid less than legal requirement By John Oates .
8.  BOFH: Psst! Wanna buy an encryption device?. Episode 17 Easy money the BOFH way By Simon Travaglia .
9.  Eclipse unveils flexible, boostable broadband. On-demand acceleration By Tim Richardson .
10.  Makers tout i925, i915-based mobos ahead of Intel launch. Computex Grantsdale and Alderwood on display By Tony Smith .
11.  AMD unveils Socket 939 processors. Computex Boosts Athlon 64 to dual-channel memory, too By Tony Smith .
12.  Notebook makers want a place in your living room. Computex Move over, small form-factor PCs... By Tony Smith .
13.  New self-destructing DVD launched. Suicidal after eight hours By Jan Libbenga .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
14.  10 W32/Lovgate-V
15.  9 W32/Bagle-AA
16.  8 W32/Sober-G
17.  7 W32/Netsky-C
18.  6 W32/Netsky-Q
19.  5 W32/Netsky-Z
20.  4 W32/Netsky-D
21.  3 W32/Netsky-B
22.  2 W32/Netsky-P
23.  1 W32/Sasser
24.  TinyWEB cgi-bin Content Disclosure Vulnerability
25.  Nogmaals waarschuwing voor CVS exploit
26.  Mogelijk einde van het grsecurity project
27.  Top 10 virussen en hoaxes van mei

8:22:04 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Phone consultants condemn sophisticated handsets for empowering users. Mako Analysis is a consultancy that recently issued an hysterical report on SymbianOS phones, warning that giving telco customers devices that they can install software on created a "loophole" that allows "consumers" to avoid the extortionate tarrifs charged on things like information services and ringtones. The consultants advise carriers to provide less-capable phones to their customers as a way of protecting their rackets: X-NAS-Bayes: #0: 1.27939E-070; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1265 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

"The increasing sophistication of high-end mobile devices opens up a range of additional problems and will continue to undermine the data revenue streams of mobile operators at a time when they desperately need them to be increasing," a Mako spokesperson said...

"As with any new device feature," the spokesperson continued, "it will eventually infiltrate into medium and low-end terminals, in the case of practically every other advancement this would be welcomed. This historical approach has lead us to blindly encourage the addition of increasingly sophisticated devices throughout the range, in the case of open platform operating systems our approach surely has to be one of caution."

Link

(Thanks, Matt!)

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Barrett weighs in
3.  Microsoft slows to support customers' pace
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  China censors online video games. The Chinese government is tightening controls on online games due to concerns about national security.
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
5.  SA websites fall to hacker attacks
6.  When encryption can be misleading
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
7.  Two arrested in Softbank data leak probe. Suspected extortionists get collars felt By Tim Richardson .
8.  Bank of Ireland chief quits over PC porn. Compromised during 'routine maintenance' By Lucy Sherriff .
9.  EU hands airline data to US. European Parliament bypassed By John Leyden .
10.  Carphone Warehouse in minimum wage sting. Staff paid less than legal requirement By John Oates .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
11.  e107 Multiple Vulnerabilities

7:21:52 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  ATI Launches New Line of High-Speed Graphics Chips (Reuters). Reuters - ATI Technologies Inc. (ATY.TO) is pulling the wraps off a new line of graphics chips for desktop computers on Tuesday, technology that works with PCI Express, a new high-speed computer connection standard.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
2.  Return of Colossus to mark D-Day. One of the machines that broke key German codes has been rebuilt for D-Day celebrations.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
3.  The IT spend time bomb. Provision for costs, or pay the price By IT-Analysis .
4.  Hynix cashes in its chips. But not memory chips... By John Oates .
5.  Email on a memory stick. Xkey 2.0 for people on the move By IT-Analysis .
6.  Sony and McDonalds do download deal. Burger, fries and Britney, please By John Oates .
7.  ATI unveils Axiom. Not just for graphics, apparently By Tony Smith .
8.  ATI unwraps latest GPU technology. Mobile and desktop launches By Tony Smith .
9.  Sony settles Walkman patent case. German awarded 'a few million euro' By Jan Libbenga .
----------------------------------------------------------------------
Wired News
----------------------------------------------------------------------
10.  Security-Free Wireless Networks. Wi-fi is hot, but security is not. Most home users don't enable basic encryption or other protections against connection theft, eavesdropping and network invasion. Why? Set-up is easy, but activate security and the headaches begin.
11.  Dim Galaxy Clue to Dark Matter. Right in our cosmic backyard -- about 2 million light years from Earth -- a dim little galaxy called Andromeda IX hangs out. It could help scientists understand the mysterious dark matter that appears to push regular matter around.
12.  Enjoy the Good Life, on GameCube. In Harvest Moon: A Wonderful Life, living a quiet, simple life on a farm means attaining happiness through routine and hard work. A few hours spent with this game can be thought-provoking and invigorating. By Jason Silverman.
13.  The Thermochemical Joy of Cooking. Food Network superchef Alton Brown is part MacGyver, part mad scientist. Welcome to his lab. By Rebecca Smith Hurd, from Wired magazine.
14.  Clone Newcomer Bends U.N.'s Ear. A Coral Gables, Florida, trial lawyer is now the key educator for the United Nations on stem-cell research and cloning. Where did this guy come from? By Kristen Philipkoski.
15.  Energy Gets Jolt of Venture Cash. Motorists are feeling plenty of pain at the pump, but venture capitalists who follow the energy business find rising fuel costs attractive. Investments in power conservation and alternative fuels are increasingly attractive. By Joanna Glasner.
16.  Biodiesel Boom Well-Timed. As the price of gas continues to climb, the appeal of an alternative domestic fuel is growing. Biodiesel fueling stations, new EPA emissions standards and a pending tax credit may help tip the balance toward renewable fuel. By John Gartner.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
17.  WORM_SASSER.E
18.  TROJ_REVOP.F
19.  Windows 2000 Expired Password Domain Authentication Security Issue
20.  Windows 2000 Expired Password Domain Authentication Security Issue

6:21:31 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Linux Process Change Raises Questions (TechWeb). TechWeb - Some are concerned that Torvalds' decision will legitimize intellectual-property claims
2.  Global Chip Sales Seen Rising 28.4 Percent in 2004 (Reuters). Reuters - Global chip sales are likely to grow 28.4 percent to a record $213.6 billion in 2004, boosted by strong demand for PCs, cellphones, DVD recorders and other electronics products, an industry group said on Tuesday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  ESA Completes Important Step Toward Vega Launcher
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
4.  Sing Star hits the high notes. As Sony tries to ensure every home in the world has a PlayStation 2, games like Sing Star will become more popular.
5.  Undercover agents fight piracy. The world of the undercover investigators in the frontline against software piracy on the internet.
6.  New 'music' chart for ringtones. A new chart is being launched to reflect the increasing popularity of mobile phone ringtones.
7.  Cinemas seek out Potter pirates. A cinema chain equips staff with night vision goggles to prevent the new Harry Potter film being recorded.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
8.  3 won't flee UK. Categorical denial By John Oates .
9.  Sasser cripples Computex. System collapse, anarchy, despair By Guy Kewney, Newswireless.net .
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
10.  SquirrelMail "Content-Type:" Header Script Injection Vulnerability
11.  SquirrelMail "Content-Type:" Header Script Injection Vulnerability
12.  SquirrelMail "Content-Type:" Header Script Injection Vulnerability
13.  Wanneer vertrouwen in encryptie misleidend kan zijn
14.  Microsoft werkt hard aan RC2 Windows XP SP2
15.  Security paden Sun en Microsoft lopen uiteen

5:21:12 AM    comment []

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
1.  Dilbert for 01 Jun 2004.

4:20:52 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Airtexting: a heckler's dream-feature. X-NAS-Bayes: #0: 1.35169E-036; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1261 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Joi Ito has a good blog entry about Nokia's new "Airtexting" feature in the 3220 handsets: a string of LEDs down the side of the phone spell out user-defined words when the phone is waved back and forth. Joi ponders the heckling applications:

If they made an airtexting enabled BlackBerry, I wonder if they would allow them in Congress. With the massive penetration of BlackBerries, it would be like a chorus of Hecklebots. Anyway, I want one. Forget night clubs, imaging having one in the audience during talks.

Link

2.  Celebrity monument photoshopping.

Today on Worth1000's photoshopping contest: future monuments to celebrities.

Link


3:20:32 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Information Builders CEO Talks on Making Connections (Ziff Davis). Ziff Davis - Gerald Cohen, CEO of business intelligence software maker Information Builders, sizes up the state of the industry.
2.  HP Said to Support Two Open-Source Software Vendors (Reuters). Reuters - Hewlett-Packard Co. (HPQ.N) will support open-source software companies JBoss and MySQL on its servers as it seeks to compete with International Business Machines Corp. (IBM.N) in offering Linux-compatible services, a Linux executive said late Monday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Robots That Serve Beyond The Vacuum
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
4.  CVS exploit leads to project server compromise
5.  Complex passwords foil hacks
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
6.  Malware down, but virus activity remains high: Trend Micro
7.  CVS exploit leads to project server compromise
8.  Complex passwords foil hacks

2:20:11 AM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Nagios: system monitoring on the cheap. Linux.Ars returns with the lowdown on Nagios, a system-monitoring tool. In addition, we cover the Fedora Core 2 release and the new Linux kernel submission system. By Eric Bangeman.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Schwartz spreads pricing ideas beyond Sun software
3.  Sun adds Java tools to RFID menu
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Sun Rolls Out New Hardware, Software, Services (Reuters). Reuters - Computer systems company Sun Microsystems Inc. (SUNW.O) on Monday unveiled new services, software and hardware offerings as part of its plan to move to selling its wares on a bundled subscription basis rather than as discrete components.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
5.  Vulns: PHPoto Picture_view Script Unauthorized Access Vulnerability. PHPoto is a web based application that generates dynamic photo galleries. X-NAS-Bayes: #0: 8.81021E-065; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 1257 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

PHPoto is prone to an unauthorized access vulnerability that can allow remote users to view any...


12:26:51 AM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Gregg Doherty.
Last update: 7/1/2004; 2:24:33 AM.
This theme is based on the SoundWaves (blue) Manila theme.
June 2004
Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30      
May   Jul