Gregg's Security News Aggregator

Currently, this "blog" is nothing more than a news aggregator which

gets security information from over 30 sources. As you'll note,

a number of the sources are not specific to security. Advanced

filtering is definitely needed.






Subscribe to "Gregg's Security News Aggregator" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Sunday, July 04, 2004
 


11:27:14 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Debian Project Votes To Postpone Policy Changes

10:26:53 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Jakob Nielsen Interview on Web Site Redesigns

9:26:34 PM    comment []

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
1.  Lucie father sets up safety texts. The father of murdered Briton Lucie Blackman is to launch a travel safety service using mobile phone text messages.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Experts Debate Effects of Violent Games (AP). AP - It's hard to find clear answers in the debate between the makers of video games and activists who claim the electronic diversions are destroying an entire generation.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Apple And The Open Source Community

8:26:14 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Java 1.5.0 Now Officially Java 5.0
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  Centre Administration Authentication Bypass
3.  Vulns: Netegrity IdentityMinder Multiple Cross-Site Scripting Vulnerabilities

7:25:54 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Photos Of Rutan's X-Prize Entry
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  Vulns: Netegrity IdentityMinder Multiple Cross-Site Scripting Vulnerabilities. Netegrity IdentityMinder is a tool designed for the Microsoft Windows platform to manage and maintain users and user accounts. The tool supports a web based interface fo...
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Vulns: CVS Malformed Entry Modified and Unchanged Flag Insertion Heap Overflow Vulnerability

6:25:35 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  GeCube All-In-Wonder 9600XT 128M/TV/FM
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  Vulns: CVS Client RCS Diff File Corruption Vulnerability. CVS is the Concurrent Versions System, which is a freely available open-source version management package. It is available for the Unix and Linux operating systems. X-NAS-Bayes: #0: 3.20716E-069; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 2489 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

A v...

3.  Vulns: CVS Malformed Entry Modified and Unchanged Flag Insertion Heap Overflow Vulnerability. CVS is the concurrent versioning system. CVS is a freely available, open source software development package for the Unix, Linux, and Microsoft Windows platforms.

CVS i...

4.  Vulns: CVS Multiple Vulnerabilities. CVS is prone to multiple vulnerabilities. Some of these issues may be leveraged to execute arbitrary code, while other issues may only result in a denial of service.

Th...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  Crypto-Gram, May 15, 2004
6.  Vulns: Esearch eupdatedb Symbolic Link Vulnerability
7.  Vulns: CVS Client RCS Diff File Corruption Vulnerability

5:25:15 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Israel Energy Commission Unveils Web Site (AP). AP - Israel offered a faint glimpse into its secretive nuclear program Sunday when its atomic energy commission launched a Web site.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  What Was Your Worst Computer Accident?
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
3.  Vulns: Esearch eupdatedb Symbolic Link Vulnerability. Esearch is a replacement for the portage command 'emerge search' for Gentoo Linux operating systems. It includes eupdatedb, which is used to update the portage tree data...

4:24:54 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Automatic sports highlights. Researchers have devised software that churns through sports video and automatically grabs the highlights. A New Scientist article describes several of these projects--from snooker analysis at Trinity College to soccer game scanning at the University of Florence. Computer vision problems are notoriously difficult, but, according to the article, "as sports follow fixed rules, and take place in predictable locations, computers ought to be able to pick out the key pieces of play and string them together." X-NAS-Bayes: #0: 1.38562E-068; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 2487 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Link
malik1
Last year in Lab Notes, I wrote about a similar project at UC Berkeley. Computer scientists there are using soccer and ballet video footage to demonstrate machine vision software that recognizes humans and their activities. Link

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
2.  Universities get wi-fi access. Students will soon be able to access the internet from anywhere around their campus, even the student bar.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Moscow Police Remove Disks From Yukos HQ (AP). AP - Plainclothes police searching the headquarters of the Russian oil giant Yukos, which faces a claim of $3.4 billion in back taxes, removed hard disks from computers but did not disrupt servers that control oil extraction, a spokesman said Sunday.
4.  More Online Retailers Accepting Checks (AP). AP - Online retailers are trying to bring in new customers by allowing them to pay for goods with some old-fashioned methods — checks and invoicing.

3:24:33 PM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Lawmakers Attack Violent Video Games (AP). AP - The video game industry seems to delight in pushing the envelope — and the bounds of good taste — with ever-gorier content. That has put it under renewed attack from legislators and activists who claim some titles must be kept out of kids' hands, though courts have repeatedly granted games First Amendment protections.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Cassini Shatters Titan Theories

2:24:15 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  SpaceShipOne-themed online comic. X-NAS-Bayes: #0: 6.21974E-099; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 2485 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

A must for model rocket geeks: The Joy of Tech has created a comic about SpaceShipOne. Link (Thanks, Robert Otlavan)

2.  "Lion Sleeps Tonight" creator's Zulu heirs sue Disney. Heirs of the Zulu composer who wrote the song "Mbube" -- aka "The Lion Sleeps Tonight, used in The Lion King -- have sued Disney in South Africa for royalties. link (Thanks, Denise Howell)
3.  Moore on filesharing of F9/11: No prob. Michael Moore was quoted in the Sunday Herald today as welcoming the free copying and distribution of his film on the 'Net for noncommercial use. Reading these comments -- made after the film's unprecedented big bang opening -- I can't help but wonder how very significant it would have been for Moore to have released this work under a Creative Commons license, or to have made such comments in advance of the release (perhaps he did, and I missed them?).
The activist, author and director told the Sunday Herald that, as long as pirated copies of his film were not being sold, he had no problem with it being downloaded. "I don't agree with the copyright laws and I don't have a problem with people downloading the movie and sharing it with people as long as they're not trying to make a profit off my labour. I would oppose that," he said.

"I do well enough already and I made this film because I want the world, to change. The more people who see it the better, so I'm happy this is happening."

Link (Thanks, Boris, and Jean-Luc)

Update: An American BoingBoing reader who's a military man in Afghanistan (requesting anonymity) writes, "Every other week here in Kabul, a bazaar is held on our base where local products are sold. Some of those "local products" are pirated movies. I just thought you'd like to know that Fahrenheit 9/11 was the big seller here this Friday."

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  Moore Approves Fahrenheit 9/11 Downloads
5.  UK To Get Music Download Chart
6.  DoD team nears Security Validation of OpenSSL
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  Vulns: D-Link AirPlus DI-614+, DI-624, DI-704 DHCP Log HTML Injection Vulnerability

1:23:54 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Moore Approves Farenheit 9/11 Downloads
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  Vulns: D-Link AirPlus DI-614+, DI-624, DI-704 DHCP Log HTML Injection Vulnerability. The D-Link AirPlus DI-614+ and the DI-624 are both wireless broadband routers. The DI-704 is a broadband router without wireless access. X-NAS-Bayes: #0: 2.91567E-018; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 2484 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

It is reported that the DI-614+,...

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Vulns: FreeBSD Linux Binary Compatibility Memory Access Vulnerability
4.  Vulns: ZyXEL Prestige Router Authentication Password Field Remote Denial Of Service Vulnerability

12:23:33 PM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Are iTMS's 128kbps Songs Worth Collecting?
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
2.  Vulns: FreeBSD Linux Binary Compatibility Memory Access Vulnerability. FreeBSD supports linux binary compatibility through the use of a loadable kernel module; this component is optional. X-NAS-Bayes: #0: 4.43916E-021; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 2483 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

It has been reported that FreeBSD is affected by a m...

3.  Vulns: ZyXEL Prestige Router Authentication Password Field Remote Denial Of Service Vulnerability. Prestige is a product line of DSL routers produced and distributed by ZyXEL.

ZyXEL Prestige routers are reported prone to a remote denial of service vulnerability. The i...


11:23:13 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Microsoft Wants EU to Learn from Its U.S. Victory (Reuters). Reuters - Microsoft Corp says a U.S. antitrust court victory last week has a lot to teach Europeans at a time when the software giant faces a major antitrust case here, but experts differ over whether the U.S. decision will make a difference.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Taiwanese Makers Will Squeeze DVD Recorder Prices
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  Microsoft Releases Security Update (AP)

10:22:53 AM    comment []

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
1.  Custom DVDs & Players For Academy Members
2.  Photon Soup Update
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  BBC News: Bush and Kerry sites 'not secure' [Computer Bytes Man] "Both sites have left themselve...
4.  Computer Bytes Man: Notepad popups "Because of a design flaw in Internet Explorer, Notepad popup...
5.  Security Focus: Gates Defends Microsoft Patch Efforts "Convincing its customers to turn on autom...
6.  Security Focus: Securing Apache 2 - Step-by-Step
7.  CNN: Homeland Security vulnerable to wireless hackers "Although charged with making the nation m...

9:22:34 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  YUKOS Says Police Did Not Seize Servers (Reuters). Reuters - Russian oil major YUKOS (YUKO.RTS) said on Sunday that vital computer servers linked to its oil production had not been seized during a police raid the previous day.
2.  Israeli Nuclear Agency Launches Website (Reuters). Reuters - The world got its first official but unrevealing look inside Israel's top-secret Dimona nuclear complex on Sunday, courtesy of a new Internet site launched by the country's Atomic Energy Commission.

8:22:13 AM    comment []

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  Sourceforge: KeePass Password Safe "the free, open-source, light-weight and easy-to-use password...

7:21:53 AM    comment []

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  News Forge: Linux users are spoiled "Because of antitrust concerns, Microsoft needs to be c...

6:21:34 AM    comment []

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
1.  Microsoft Still Playing Search System Catch-Up (washingtonpost.com). washingtonpost.com - Microsoft Corp. put a preview of its latest Web search technology online Thursday to collect feedback from users. The company is trying to catch up with search leader Google, but early tests suggest this new attempt isn't about to close that gap.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
2.  Apache Input Header Folding DoS
3.  Apache mod_proxy Content-Length Overflow
4.  Apache Socket Race Condition DoS

5:21:14 AM    comment []

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
1.  Dilbert for 04 Jul 2004.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
2.  Endangered Countries On The Internet
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
3.  HNS Audio Learning Session: SQL Injection Attacks

4:20:54 AM    comment []


3:20:33 AM    comment []

----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
1.  Problem in IE Patch?; Mailbag

12:26:43 AM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Gregg Doherty.
Last update: 7/26/2004; 12:30:13 AM.
This theme is based on the SoundWaves (blue) Manila theme.
July 2004
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
Jun   Aug