Gregg's Security News Aggregator

Currently, this "blog" is nothing more than a news aggregator which

gets security information from over 30 sources. As you'll note,

a number of the sources are not specific to security. Advanced

filtering is definitely needed.






Subscribe to "Gregg's Security News Aggregator" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Wednesday, July 14, 2004
 

----------------------------------------------------------------------
Digital Identity World
----------------------------------------------------------------------
1.  The Digital ID World Newsletter - July 8, 2004 Issue
----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
2.  Show of support for Seattle photoblogger harassed by authorities. Kate from Seattle.metroblogging.net says:
In a follow-up to your Boing Boing post about the photography student's odd run-in with Homeland Security , a peaceful protest is being organized in response.
More details about the public show of support here: Link. (Ed.: "Photoblogging is not a crime" t-shirts are inevitable...)
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
3.  Study: States doing plenty of offshoring. Foreign companies are nabbing millions in U.S. state contract work, and the trend is likely to grow, report says.
4.  HP lands $500 million in outsourcing. The latest deals are coming the PC maker's way just after a windfall quarter in its outsourcing business.
5.  Tech, Hollywood heavyweights create content coalition. IBM, Intel, Disney and others will work on rules for ensuring the security of content in home networks.
6.  Tech, studio giants team on new DVD locks. New technology would let high-definition videos be copied, moved into home networks.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
7.  EU Approves $138M in Aid to Mobilcom (AP). AP - The European Commission on Wednesday approved 112 million euros ($138 million) in German government aid to troubled cell phone operator Mobilcom AG provided the company stop online sales of mobile phone contracts for seven months.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
8.  Like A Cat, New Robot Lands On Its Feet
----------------------------------------------------------------------
SecurityFocus News
----------------------------------------------------------------------
9.  Elsewhere: Defence Department computers hacked: report. OTTAWA ? Determined computer hackers broke through federal firewalls several times last year, gaining access to Defence Department networks. X-NAS-Bayes: #0: 1.69921E-163; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3045 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

A newly obtained report on ...

10.  Elsewhere: Hacker group hawks hooky software. A hacker group claiming to have stolen source code from many Fortune 100 software companies says it is attempting to drum up business by offering the complete source of a...
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
11.  BugTraq: RE: [Full-Disclosure] Re: IE Shell URI Download and Execute, POC. Sender: Ferruh Mavituna [ferruh at mavituna dot com]
12.  BugTraq: [security bulletin] SSRT4741 rev.1 DCE for HP OpenVMS Potential RPC Buffer Overflow Attack VU#259796, VU#568148, VU#326746. Sender: Boren, Rich (SSRT) [rich dot boren at hp dot com]
----------------------------------------------------------------------
Help Net Security
----------------------------------------------------------------------
13.  NewsIsFree: Your own Advanced News Reader and Feed Publisher. Read news from thousands of news sources updated every 15 minutes on the most powerful news aggregator.
Create custom feeds with more items, descriptions, select your version of RSS...
Check out NewsIsFree's services!
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
14.  Backdoor.Xebiz
15.  BugTraq: RE: HijackClick 3
16.  Re: Microsoft Window Utility Manager Local Elevation of Privileges
17.  Analysis: The network is the security
18.  Microsoft warns of seven Windows flaws
19.  South Korean government agencies cyber attacked
20.  Microsoft: 'Real progress' on security
21.  The art of UNIX programming - book review
22.  Microsoft announces security partnerships
23.  Hacking for profit
24.  OpenVMS - hack-proof and crash resistant?
25.  Worm wars
26.  'Important' Windows flaw could turn critical
27.  Business faces growing loss from identity theft
28.  Microsoft warns of seven Windows flaws
29.  Firms ignore MP3 and memory stick security risk
30.  Business faces growing loss from identity theft
31.  Elsewhere: Microsoft hails "real progress" on improving security

2:26:38 PM    comment []

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
1.  Space shuttle 'could fix Hubble'. The US National Academies report says a shuttle mission to repair and upgrade the Hubble Space Telescope should still be an option.
2.  'Superjumbo' photos are released. The first pictures of a full-scale version of the world's largest aircraft, the A380, are released by Airbus.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
3.  Ballmer talks up Xbox at partner conference. The company is in Toronto whispering sweet nothings into developers' ears, but consumers waiting for security updates got bad news.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  Digital Entertainment Dominates Macworld (PC World). PC World - IPod cases, chargers, and other accessories, plus digital music tools sing at the show.
5.  New Eclipse Project to Develop Open-Source Testing Platform (Ziff Davis). Ziff Davis - The Eclipse Foundation plans to announce a new project to foster open-source collaboration in testing and other areas.
6.  Samsung Digicam Comes Calling (PC World). PC World - Device is a camera with a built-in phone, not a phone with camera features.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  Advice for Developers: Make Common Usage Easy
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
8.  Biometric Myths: Six Of The Best
9.  Quantum Crypto Network Debuts
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
10.  BugTraq: RE: HijackClick 3. Sender: http-equiv at excite dot com [1 at malware dot com]
11.  Vulns: Linux Kernel Floating Point Exception Handler Local Denial Of Service Vulnerability. The Linux Kernel is reported to be affected by a local denial of service vulnerability. This issue exists in the 'i387.h' kernel source file and is due to a design error ...
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
12.  IBM grabs Alphablox. Big Blue analytics
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
13.  Firms ignore MP3 and memory stick security risk
14.  Microsoft warns of seven Windows flaws
15.  BugTraq: Re: Microsoft Window Utility Manager Local Elevation of Privileges
16.  Advisory 12/2004: PHP strip_tags() bypass vulnerability
17.  [ GLSA 200407-11 ] wv: Buffer overflow vulnerability
18.  Advisory 11/2004: PHP memory_limit remote vulnerability
19.  The Cleaner Database v3630

1:26:17 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Music to Phonecam by: Kill Bill Vol. 2 Mashups. During this weekend's launch of the SENT phonecam photography show (press coverage here), pics submitted by the public were displayed on iMac screens, refreshing automatically every few minutes (link), while iTunes blasted some groovy mashups. Many at the show asked about the tunes, so here is one highlight from the playlist. I'll post more over the next few days -- don't want to spoil you with a jam overdose.

The tracks people seemed to dig most were all from an amazing mashup album by a group of DJs called Hanzo Steel -- all remixes from the soundtrack of Quentin Tarantino's Kill Bill Volume 2. My favorite track: "Bang Bang, My Baby Shot Me Down" (Link to free MP3 track). The track includes samples from: "Bang Bang My Baby Shot Me Down" by Nancy Sinatra, "Big Beat" by Billy Squier/"Fix Up Look Sharp" by Dizzee Rascal, "Apache" by the Incredible Bongo Band (as used by Nas), "Take Me To The Mardis Gras" by Bob James/"Peter Piper" by Run DMC and audio samples from many of the original Kung Fu films which are referenced in Tarantino's movies. I can't stop playing this track. It scratches the funk spot in my brain.

Here are two more freebies from the same disc: "Twisted Nerve (Biter's Revenge)" (Link to free MP3). Includes "Twisted Nerve" by Bernard Herrmann and "Billie Jean" by Michael Jackson. And "Ironsides" includes "Ironsides" by Quincy Jones plus Divine Styler. (Link to free MP3). X-NAS-Bayes: #0: 2.63317E-203; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3043 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Link to Hanzo Steel home (check the fine cover art! Buy the CD!). Check out SENT in person through Saturday July 17 (12-15 daily) at the Downtown Standard Hotel in LA. Oh, and the image shown here is one of the 1500 +/- phonecam snapshots submitted by the public. You can never have enough phonecam pics of hot electroclash babes licking themselves in the mirror, I always say. (Thanks for the free tracks, Hanzo Steel!)

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Ballmer: Xbox 'can take Sony'. Microsoft CEO discusses Longhorn concerns, IBM comparisons and Sony gaming bets.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Six telecoms giants form alliance to merge mobile and fixed-line phones (AFP). AFP - Six telecommunications giants in Europe, Asia, South and North America have formed an alliance to encourage convergence between mobile and fixed-line services, Switzerland's top operator Swisscom revealed.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
4.  'Stealth' Worm Hinders Sandbox Analysis
5.  Review: Elgato EyeTV 500
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
6.  HP accelerates recycling ahead of law. As environmental concerns grow over rising levels of electronic waste and governments begin to take action, one of the world's largest suppliers of IT products is taking steps to accelerate its recycling efforts.
----------------------------------------------------------------------
InfoWorld: Security
----------------------------------------------------------------------
7.  China solicits applications for high-tech R&D grants. China's Ministry of Information Industry (MII) has announced a tender for 19 high-technology research and development projects to be funded by the government's Electronics and Information Industry Development Fund (IT Fund).
8.  Microsoft's ISA Server 2004 hits the streets. Amid a concerted effort to heighten the profile of its security offerings, Microsoft Corp. announced the availability of its Internet Security and Acceleration (ISA) Server 2004 on Tuesday at its Worldwide Partner Conference in Toronto.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
9.  Odeon rolls credits on copycat website. Hasta la vista, accessible cinema service
10.  Welsh open sourcerers get language boost. Online techie translator
11.  IBM ups rates on server financing deals. One per cent hike
12.  NRC pleads case for Hubble mercy mission. 'Compelling scientific returns' from manned rescue
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
13.  BugTraq: Ref: http://www.securityfocus.com/archive/1/367866, Jul 1 2004 1:19PM, Subj: Brightmail leaks other user's spam
14.  BugTraq: [ GLSA 200407-11 ] wv: Buffer overflow vulnerability
15.  Microsoft Windows Task Scheduler '.job' Stack Overflow
16.  Unchecked buffer in mstask.dll
17.  Ref: http://www.securityfocus.com/archive/1/367866, Jul 1 2004 1:19PM, Subj:Brightmail leaks other user's spam

12:25:59 PM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Tech and Hollywood heavyweights create content coalition. From John Borland at CNET:
Several high-profile technology companies and movie studios are expected to announce Wednesday that they have formed a coalition to ensure that high-definition video and other content cannot be pirated in home networks.

Sources familiar with the group's formation said the initial members include IBM, Intel, Sony, Microsoft, Warner Bros., Disney and Panasonic. The announcement is scheduled to be made at the cross-industry Content Protection Technology Working Group (CPTWG) meeting in Los Angeles, although last-minute membership changes could occur before then.

The alliance marks the culmination of years of tentative and often suspicious contact between the high-tech industry and Hollywood. It will be aimed at developing specifications to protect copyrighted content such as movies inside home networks. If the group is successful, a consumer might be able to download a high-definition movie, store it on a PC, watch it on a television and transfer it to a mobile device to watch while traveling.

Link
2.  New issue of RU Sirius' NeoFiles. RU Sirius has just published his eighth issue of NeoFiles, a mind-bending online magazine about technology and human potential. In the new issue, transhumanist Max More talks about the Extropians, Pat Kane discusses play as work, and Tom Greco explores the real value of money. Link
3.  Miniscule of Sound. This sounds pretty funny en pixel, and I'm sure it'd be even more if you stumbled on it at a humongoid ravefest with e'd out dancing bodies as far as they eye can see. It's a parody of techno music industry media gigantor Ministry of Sound. X-NAS-Bayes: #0: 2.69632E-265; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3042 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Following on from the ice-cream van dub sound system and the piano bar on wheels, i'd like to draw your attention to the Miniscule of Sound. i've been going to summertime festivals in the uk for years, and these guys have been on the circuit for almost a decade. It's basically a converted horsebox kitted out on the inside with disco ball, coloured lights, day-glo fluffy roof, light-panelled dancefloor, and a dj (usually) dressed as one of the vilage people playing something cheesey on a tiny pair of decks. The door staff on the outside advise us they are "'avin it tiny!" on the way in. Club capacity is about 8, maybe 9 at a squeeze. As clubbing experiences go, it's one of the best and it's free. If you see them at a festie this year, pay them a visit.
Link (thanks sim0nkey!)
4.  Moblogging Fortune's Brainstorm Con in Aspen.

Cameron Sinclair, the man who co-founded a very interesting organization called Architecture for Humanity, is mo-pho-blogging Fortune Magazine's Brainstorm Conference. Here's a Link to the blog.

5.  More Roomba hacking. img_1514Another group of hardware hackers have at a Roomba robotic vacuum cleaner:
"For higher level control, we've attached a Virgin Webplayer. The Webplayer was sold as a loss leader for Virgin's internet service in the late 90s, and thus can be found on ebay for under $100. It has two serial ports, a 200MHz Geode processor, 64M ram, and a miniPCI port. Thus, we can give it an 802.11b card, a webcam, and a usb-serial adapter."
Link (via MetaFilter)
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
6.  IBM to pick up data analytics firm. Alphablox will be the fifth company company Big Blue has bought to bolster its DB2 data management products.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  Mark Pesce: Open Source Television
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
8.  IBM buys BI company. IBM added another piece to its ongoing business intelligence initiative on Wednesday, acquiring Alphabox Corp., a small software company in Mountain View, Calif. that specializes in analytics software.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
9.  BugTraq: [ GLSA 200407-11 ] wv: Buffer overflow vulnerability. Sender: Thierry Carrez [koon at gentoo dot org]
10.  BugTraq: Re: Microsoft Window Utility Manager Local Elevation of Privileges. Sender: Chris Paget [ivegotta at tombom dot co dot uk]
11.  BugTraq: Ref: http://www.securityfocus.com/archive/1/367866, Jul 1 2004 1:19PM, Subj: Brightmail leaks other user's spam. Sender: Sym Security [secure at symantec dot com]
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
12.  Sony turns to video to boost music service. Connect to offer movies 'within a year'
13.  Intel, MS and co. to tout copy-friendly DRM tech. Would-be content-management standard
14.  MS hatches July patch batch. Unmagnificent seven
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
15.  Firms ignore MP3 and memory stick security risk

11:25:38 AM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  ICANN to Verisign: "Thou shalt not redirect". ICANN comes down hard on VeriSign in a report focused on the registrar's SiteFinder service. VeriSign is critical of the report and hopes to launch the product again in the future. By Fred "zAmboni" Locklear.
2.  Music downloads lose P2P market share. P2P users are moving away from music downloads. At the same time, video and software downloads are on the rise. By Fred "zAmboni" Locklear.
----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
3.  National Barbie in a Blender Day. Freeculture.org is throwing a "National Barbie in a Blender Day" to celebrate the victory over Mattel, which sued a photographer for taking pictures of nude Barbies. X-NAS-Bayes: #0: 1.64991E-122; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3041 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Freeculture.org has launched an official site for the National Barbie-in-a-Blender Day project, at www.barbieinablender.org. Users are invited to submit artistic pieces inspired by Forsythe's "Food Chain Barbie" series to blended@barbieinablender.org for the site's upcoming gallery of submitted work.

Link

(Thanks, Alex!)

4.  Internet Archive additions as RSS. This is an RSS feed for new files added to the Internet Archive (images, music, video): lots of amazing serendipity here!

Link

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
5.  Delay for Battlefield console title. Catch up with the latest news from the world of video gaming.
6.  Egg to close its French business. The internet bank says it is withdrawing from the French market to make it a more attractive target for potential suitors.
7.  Quad bike thieves get their chips. Microchip technology is drafted in to stem the theft of quad bikes by criminal gangs in Cumbria.
8.  Children 'want chatrooms closed'. Children want internet chatrooms closed down to protect them from potential abusers , a report claims.
9.  Internet porn police arrest 45. Fifty homes are raided in Greater Manchester as police target people suspected of downloading child pornography.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
10.  Gates Predicts DVD Obsolete In 10 Years
----------------------------------------------------------------------
LinuxSecurity.com
----------------------------------------------------------------------
11.  SSH2, Part 1: Securing Your Telnet Session
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
12.  BugTraq: HtmlHelp - .CHM File Heap Overflow. Sender: Brett Moore [brett dot moore at security-assessment dot com]
13.  BugTraq: Unchecked buffer in mstask.dll. Sender: Brett Moore [brett dot moore at security-assessment dot com]
14.  BugTraq: Microsoft Windows Task Scheduler '.job' Stack Overflow. Sender: NGSSoftware Insight Security Research [nisr at nextgenss dot com]
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
15.  Sony to expose PSP insides at September show. 'Most detailed technical discussion' yet
16.  Jupiter and Saturn: chalk and cheese. Boffins question gas giants' roots
17.  Kidnap-wary Mexicans get chipped. Shot in the arm for RFID?
18.  UN proposes email tax. It was five years ago today... 14 July 1999
19.  Sony turns to video to boost music download service. Connect to offer movies 'within a year'
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
20.  4D WebSTAR Grants Access to Remote Users and Elevated Privileges to Local Users

10:25:20 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Druid busted for possession of a sword. A 26-year-old druid was arrested in Portsmouth for going to the hardware store while wearing his ceremonial sword: X-NAS-Bayes: #0: 3.4007E-123; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3040 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

About a dozen fellow members of the Insular Order of Druids sat in the court's public gallery, while chief druid King Arthur Pendragon, wearing white robes with a red lion emblazoned on the front, acted as Williams's legal adviser.

The sword, named Talisen, has been confiscated by police as evidence.

Link

(via Fark)

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Cyber Dissident Jailed for 19 Months (Reuters). Reuters - A Vietnamese court sentenced a 73-year-old former colonel to 19 months in prison on Wednesday for using the Internet to criticize government policies as Hanoi expands a crackdown on cyber dissidents.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  Toshiba Unveils Laptop With Instant-On TV & DVR
4.  Mexican Attorney General Gets Microchip in Arm
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
5.  Oracle, DOJ file closing briefs in merger trial. Oracle Corp. and the U.S. Department of Justice (DOJ) filed their closing trial briefs late Tuesday in the government's case to block Oracle Corp.'s hostile takeover of PeopleSoft Inc., paving the way for closing arguments next week.
6.  China solicits applications for high-tech R&D grants. China's Ministry of Information Industry (MII) has announced a tender for 19 high-technology research and development projects to be funded by the government's Electronics and Information Industry Development Fund (IT Fund).
7.  Microsoft's ISA Server 2004 hits the streets. Amid a concerted effort to heighten the profile of its security offerings, Microsoft Corp. announced the availability of its Internet Security and Acceleration (ISA) Server 2004 on Tuesday at its Worldwide Partner Conference in Toronto.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
8.  Adaptec forks out $100m for Snap Appliance. Spending spree continues
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
9.  PHP "strip_tags()" Function and memory_limit Vulnerabilities
10.  Microsoft Patch Day - 2 Critical, 4 Important
11.  14 Jul W32/Agobot-KT

9:24:58 AM    comment []

----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
1.  Google to debut on Nasdaq. The search engine giant says it will make its market debut on the technology-laden Nasdaq market in the US.
2.  Move agreed on legal DVD copying. Film fans would be allowed to make limited legal copies of DVDs under agreement reached in the US.
3.  Spam reveals its darker side. Porn may be on the decrease in inboxes but illegal activity is becoming the new tool for spammers.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
4.  Ballmer: Xbox to 'take Sony'. Microsoft CEO discusses Longhorn concerns, IBM comparisons and Sony gaming bets.
----------------------------------------------------------------------
InfoWorld: Top News
----------------------------------------------------------------------
5.  Adaptec to buy Snap Appliance for $100 million. Storage vendor Adaptec Inc. announced plans Tuesday to acquire Snap Appliance Inc., a maker of network-attached storage (NAS) appliances, in a transaction valued at approximately $100 million.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
6.  UK WISP moots IPO. Broadreach rolls out rail subsidiary
7.  Adaptec forks out $100m for Snap Alliance. Spending spree continues
8.  Manchester police arrest 45 in child porn raids. In brief Operation Baglan
9.  EC green lights Infineon state aid. Portuguese hand-out
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
10.  4D WebSTAR Multiple Vulnerabilities
11.  confixx.txt
12.  httpd1.html
13.  BEA04_64.00.html
14.  p_atari800.c
15.  clamav-0.74.tar.gz
16.  SSRT4758.txt
17.  SSRT3552.txt
18.  linux.SbusPROM.txt
19.  GLSA200406-22.txt
20.  prestige.txt
21.  linux26.txt
22.  cisco-sa-20040630-CCS.txt
23.  hpsbux0202-182.txt
24.  lotus651.txt
25.  afick-2.3-0.tgz
26.  phpMyAdmin257.txt
27.  os-sim-0.9.6.tar.gz
28.  rlprd204.txt
29.  rlprd.py.exploit
30.  57581.html
31.  zone-h-gnats.txt
32.  mod_rootme-0.3.tgz
33.  syscheck-0.6.3.tgz
34.  57587.html
35.  sa11941.txt
36.  DumpSIS-0.81.zip
37.  artmedic.txt
38.  memplayer.c
39.  ZH2004-14SA.txt
40.  lotus.inject.txt
41.  advisory-06.txt
42.  advisory-07.txt
43.  dhcpdDOS.txt
44.  scob.trojan.txt
45.  popclient30b6.txt
46.  sa11944.txt
47.  Openswan.txt
48.  argoxp.c
49.  zone-h-drcat.txt
50.  sa11928.txt
51.  7350ssharp-0.51.tgz
52.  Kmalloc_Internals.html
53.  arhontWireless.txt
54.  arbitroWeb.txt
55.  sns76.txt
56.  freebsd.local.txt
57.  linux.5820.txt
58.  57497.html
59.  06.23.04.txt
60.  SSRT4741.txt
61.  More Security News...
62.  WLAN management vendors bombard IT with solutions
63.  Companies warn of mass Trojan distribution
64.  Microsoft issues seven security patches, two critical
----------------------------------------------------------------------
About Internet/Network Security
----------------------------------------------------------------------
65.  Book Review: Database Nation. Simson Garfinkel, one of the authors of Practical Unix and Internet Security, wrote a book published in early 2001 which should still be required reading for just about anyone. Database Nation paints a chilling view of how technology and seemingly...

8:24:38 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Amazon.com Knee-Jerk Contrarian Game!. Waxy's dreamt up a fine net.sport: viewing Amazon reviews ranked from lowest rating to highest: he calls it the "Amazon.com Knee-Jerk Contrarian Game!" and he's posted some of his faves and invited his readers to do the same. X-NAS-Bayes: #0: 1.25821E-049; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3038 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Beach Boys, "Pet Sounds"

* "This is not the Beach Boys. It can't be. Why? No beach songs! I thought it was some kind of joke. All 'Pet Sounds' offers is the opportunity to hear Brian Wilson whine for forty minutes, backed by elevator music."
* "It's full of bland harmonizing by guys that could barely swim."
* "The lyrics consist of commonplace rhyming conversational prose, totally lacking in imagery, metaphor and anything else that separates verse from poetry."

Link

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Oracle chooses its new CFO (SiliconValley.com). SiliconValley.com - Software maker Oracle said Tuesday that it has hired an Accenture executive to be its new chief financial officer, filling a key management slot being vacated by one its most respected executives.
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
3.  Lord of the Rings domain fight enters realms of fantasy. Warner Bros puts claim to 1,000 years of history
4.  Dell and HP have a green moment. Free recycling, while stocks last
5.  UK WISP moots IPO. Broadreach rolls out rail subsidiary too
6.  Sony to expose PSP insides at September show. Programming seminar to be 'most detailed technical discussion' yet
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  Philippines withdrawing from Iraq
8.  Moodle "help.php" Cross-Site Scripting Vulnerability
9.  Spam out weighs terrorism as security threat: survey
10.  Stealth virus is stealthiest of all

7:24:18 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Before weblogs, "blog" was a kind of cocktail at sf cons. Ev searched Google's Usenet archives for early uses of the term "blog" and uncovered a science-fiction fannish cocktail called the "blog" that predates weblogs by years: X-NAS-Bayes: #0: 5.38125E-315; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3037 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

You should be aware that Blog was originally devised by British fans in the 1950s. There were two versions. A Liverpool fan named Peter Hamilton came up with the recipe for Blog Mark I, which consisted of "a brandy and egg flip base, to which was added black currant puree, Alka Seltzer, and Beechan's Powder. It effervesced." A second, simplified version (Blog Mark II) was produced by hotel barmen at the first Kettering Eastercon (1955) and consisted of "a half-pint of cider and a measure of rum." Anybody know what `egg flip' and `Beecham's Powder' are? (Quoted material taken from p.168 of A WEALTH OF FABLE, by Harry Warner, Jr.)

Link

2.  Virtual Oz theme-park created in online game.

A player in Second Life (a highly user-modifiable massively multiplayer online game) converted her private in-game island into a virtual Oz themepark as a gift for another player. The elaborate project involved in-game collaboration between virtual costumers, set designers, programmers, and musical scorers.

Link

(via Waxy)


3.  Sega Saturn emulator in open source.

Cassini is an open source Sega Saturn emulator that plays a number of commercial Sega games.

Link

(via Waxy)


4.  Futuristic sleep-pods at Empire State Building: $14/20 min.

MetroNaps is a business that operates an urban napping service in the Empire State Building, offering customers the opportunity to reclilne in a hooded, electrified Bond-villain "MetroPod" and get a "lotion, facial spritz and lemon-scented hand towels" when you're done. They'll even deliver lunch to your pod. The rate is $14 (and up) for a 20 minute nap.

Link

(via Engadget)

5.  Deaths at Disneyland. Here's a trip through all the deaths that have taken place at Disneyland, with photos of the widowmaking apparati. The author does a good job of separating the urban legends from the truth, and pointing the finger at whomever it deserves to be pointed at (sometimes Disney, sometimes foolhardy guests). The over-the-top cussin'-and-rantin' style is very nice.

Although the presumed allure of the PeopleMover during a graduation takeover of the Magic Kingdom would be hopes for a nice view of the Anaheim skyline and a hummer, the usual proliferation of the drunken testosterone penned another chapter of the ride's storied existence in blood during the summer of 1980.

Gerardo Gonzales had presumably never heard of the name Ricky Lee Yama when he boarded the sluggish trail of candy-painted tram cars that night, which is a shame. Aside from sparing his parents the embarrassment of recounting his story to relatives at the wake, it would have also denied an opportunity for ironic history to repeat itself. Sadly, this wasn't the case.

Link

(Thanks, Spencer!)

6.  Patent-scammers use bad analogies to defend worse business practices. My cow-orker Jason Schultz is running EFF's patent-busting project, and high on his list of damaging Internet patents is Acacia Research's patent on streaming media. Acacia has pursued this patent by targetting porn companies and extracting settlements in order to fund a war-chest that it is now using to sue bigger media entities -- presumably this trail ends with orgs like the BBC, CBC, and Live365.

Adult Video News (AVN) interviewed Jason and some of the Acacia people about the ongoing work to bust the patent, and the Acacia people busted out this bizarre analogy about stealing SUVs. Jason's repsonse was classic:

Acacia executive vice president Robert Berman said he found it interesting that the EFF is interested in preserving some rights, like free speech, while being willing to ignore others, like property rights... "For example, if someone broke into your garage and stole your SUV, and put a speaker on the top, and was driving around the neighborhood making some political statement, trying to get your SUV back wouldn't be trying to stifle free speech, it would be you trying to get your property back. If somebody is using your property, you have a right to stop them or receive a license or receive royalties..."

"There's no question now that an SUV in your garage is something you own. But here there's a real question as to whether Acacia actually invented anything new or simply is claiming monopoly on technology that millions of people use every day to express themselves," Schultz told AVNOnline.com.

"And the other thing is, I don't have to break into your garage to steal your SUV to express myself in the physical world. But I can't think of a modern Website, especially news Websites, that don't depend on streaming some kind of audio or video to express themselves on the Web. It has become a fundamental part of free expression online," he continued. "And I would say it has become the predominant method for artists and news organizations to connect to their audiences. [Acacia] doesn't want to own just the SUV, [they] want to own every single automobile and stereo system in the world, to use [their] contorted analogy."

Link

----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
7.  32,000 "Why I'm Tired" Emails
----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
8.  Brown promises £1bn for UK science. Pumped and primed
9.  No news is good news for Nortel. Our closet is empty
10.  Stealth virus is stealthiest of all. Under Atak
11.  Your data is at risk - from everything. Chilling evidence of corporate vulnerability
12.  UK DVD rental firms merge. Two become one...
----------------------------------------------------------------------
Wired News
----------------------------------------------------------------------
13.  Aura Launch Delayed Yet Again. NASA postpones the launch of the 6,542-pound satellite due to a problem with its recorder, which will store the information Aura collects and beam it back to Earth. When ready, Aura will study the health and pollution of Earth's atmosphere.
14.  State to Shadow Parolees With GPS. Tennesee moves ahead with a $2.5 million pilot program that will use a global positioning system to track violent sex offenders who have been paroled. The state is expected to award a contract for the project by the end of the year.
15.  Mexican Officials Get Chipped. The attorney general of Mexico and several of his staff implant microchips in their arms. The chips provide access to a crime database and track their bearers if they are kidnapped -- assuming their abductors don't slice out the chips.
16.  Hactivism and How It Got Here. Hactivists at the HOPE gathering remember their roots while pointing out that grass-roots, tech-enabled resistance is a viable way to fight repression. Michelle Delio reports from New York.
17.  Airline Screening System Delayed. Bowing to privacy concerns, the Transportation Security Administration says the airline passenger-screening system it had in mind will be restructured, meaning it may not be deployed any time soon. By Ryan Singel.
18.  Searching for The New York Times. Newspapers are one of the most definitive sources of information, and there's none more powerful than The New York Times. But you wouldn't know it in the online world. Commentary by Adam L. Penenberg.
19.  Macworld Boston Opens Loudly. There were concerns that this summer's expo for everything Mac would be a dud, what with Apple not attending and all, but flocks of fans say otherwise. Leander Kahney reports from Boston.
20.  Cable a la Carte Still Half-Baked. Why can't you buy only the channels you really want to watch? The answer is different depending on who's asked. Congress tries to sort it out Wednesday. By Michael Grebb.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
21.  14 Jul W32/Agobot-KS
22.  Bugzilla Multiple Vulnerabilities

6:23:58 AM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  Movie and tech industries unite!. Hollywood and tech companies ally for an advance content system. This new system may allow consumers to make back up copies of movies while allowing the flexibility of viewing on multiple devices. By Fred "zAmboni" Locklear.
----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
2.  Tolkien estate claims trademark for "shire". The Tolkien estate and Warners have sent out a lawyergram to the owner of shiremail.com, arguing that the word "Shire" belongs to them. The Register traces over 1,000 years of usage of the word "Shire" in England, and enumerates many towns with the word "shire" in their names across the English countryside. X-NAS-Bayes: #0: 3.35433E-122; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3036 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

n fact, we don't think it would be too provocative to suggest that JRR Tolkien may have been inspired by over a thousand years of common history when he first came up with the name "The Shire" as the idyllic home country of the books' main protagonists, the hobbits.

However, the legal letter claims that "goodwill in the name has been achieved through sales of such books". Certainly The Shire sounded rather nice as presented in the fictional books, but we suspect the goodwill towards the area in which people live was there before Mr Tolkien even put pen to paper.

Link

3.  Hulkblog SMASH!. The Incredible Hulk's blog is incredibly funny -- I actually snarfed.

Sunday, July 04, 2004
Hulk saw movie about bug-man and it was good but needed more smashing.

AND HULK DID NOT GET SNIFFLY DURING ROMANTIC SCENES SO IF YOU HEAR IRON MAN OR THOR TALKING ABOUT IT THEY ARE LIARS.
Posted by: Incredible Hulk / 4:15 PM // Comments (3) | Trackback (0)

Thursday, June 24, 2004
HULK AT LIBRARY USING COMPUTER.

SHHHH.
Posted by: Incredible Hulk / 10:32 AM // Comments (4) | Trackback (0)

Link

(via Kottke)

4.  Before weblogs "blog" was a kind of cocktail at sf cons. Ev searched Google's Usenet archives for early uses of the term "blog" and uncovered a science-fiction fannish cocktail called the "blog" that predates weblogs by years:

You should be aware that Blog was originally devised by British fans in the 1950s. There were two versions. A Liverpool fan named Peter Hamilton came up with the recipe for Blog Mark I, which consisted of "a brandy and egg flip base, to which was added black currant puree, Alka Seltzer, and Beechan's Powder. It effervesced." A second, simplified version (Blog Mark II) was produced by hotel barmen at the first Kettering Eastercon (1955) and consisted of "a half-pint of cider and a measure of rum." Anybody know what `egg flip' and `Beecham's Powder' are? (Quoted material taken from p.168 of A WEALTH OF FABLE, by Harry Warner, Jr.)

Link

----------------------------------------------------------------------
The Register
----------------------------------------------------------------------
5.  Lord of the Rings domain fight enters realms of fantasy. Warner Bros puts claim to 1,000 years of history, entire UK countryside
6.  Juniper in $250m shares buyback. Makes loss, but beats estimates
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
7.  Philippines withdrawing from Iraq

5:23:37 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Help squash bugs in the next edition of Eastern Standard Tribe. The paperback edition of my novel Eastern Standard Tribe is in production, and my publisher has requested an errata sheet with collected typos, spelling errors, consistency problems, etc. Last year, William Gibson solicited message-board feedback from his readers to help him produce the errata sheet for the paperback of Pattern Recognition, but I wanna go one better, so I've put up a Wiki (a kind of web-page that anyone can edit) for anyone who's got a favorite EST correction that s/he wants to see made in the next edition.

Changes are due by July 21 -- thanks in advance! X-NAS-Bayes: #0: 3.78171E-109; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3035 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Link

----------------------------------------------------------------------
Dilbert
----------------------------------------------------------------------
2.  Dilbert for 14 Jul 2004.
----------------------------------------------------------------------
BBC News | Technology | UK Edition
----------------------------------------------------------------------
3.  Intel sales get mobile phone lift. Intel says increasing demand for wireless communication devices has boosted second-quarter profit and sales.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
4.  DVD Recorders to Get Cheaper as Taiwan Ups Output (Reuters). Reuters - Makers of DVD recorders in Taiwan are ramping up production as tumbling prices encourage people to replace aging tape-based recorders, putting the island on track to become the second biggest supplier of the products.
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
5.  Survey: Movie-swapping up, Kazaa down
6.  UPDATE: EDS concedes Commbank investigation underway
7.  @stake: WebSTAR 5.3.2 Multiple Vulnerabilities "Remotely Exploitable Pre-Authentication FTP over...
8.  BugTraq: RE: Norton AntiVirus Denial Of Service Vulnerability [Part: !!!]
9.  Philippines to withdraw from Iraq
10.  Militants: Bulgarian hostage killed
11.  RE: Two Vulnerabilities in Mozilla may lead to remote compromise
12.  RE: Norton AntiVirus Denial Of Service Vulnerability [Part: !!!]

4:23:17 AM    comment []

----------------------------------------------------------------------
Boing Boing
----------------------------------------------------------------------
1.  Suggesting a link? Use the form. A quick reminder: we prefer to get Boing Boing submissions via the suggest-a-link form. Sending your submission there formats it for easy conversion to a blog-post, distributes among multiple editors (increasing the chance that it will get picked up), and simplifies our existence greatly. I, for one, won't consider Boing Boing suggestions via direct email, IM or the like -- just not enough hours in the day to do it the hard way. Thanks! X-NAS-Bayes: #0: 2.64107E-077; #1: 1 X-NAS-Classification: 0 X-NAS-MessageID: 3034 X-NAS-Validation: {E681C936-E9F0-4DDC-9901-74301AF33E67}

Link

----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  N.Korea Opens Pilot Web Portal, Glitches Remain (Reuters). Reuters - Reclusive North Korea has been testing its first Web portal for the past month, but so far visitors have not been able to access the entertainment, shopping and free email facilities it promises.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
3.  NASA Urged to Reconsider Shuttle Mission to HST
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
4.  BugTraq: RE: Two Vulnerabilities in Mozilla may lead to remote compromise. Sender: Darren Pilgrim [dmp at bitfreak dot org]
5.  BugTraq: RE: Norton AntiVirus Denial Of Service Vulnerability [Part: !!!]. Sender: Sym Security [secure at symantec dot com]

3:22:57 AM    comment []

----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
1.  Powell calls for legislative rethink. FCC chair says antiquated communications rules need overhaul.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
2.  Industry Deal Set on Allowing Limited DVD Copying (Reuters). Reuters - A group of media and technology companies including Microsoft Corp. and Walt Disney Co. have agreed in principle to allow consumers to make legal backup copies of next-generation video discs and share their content on portable devices.
----------------------------------------------------------------------
SecurityFocus Vulns
----------------------------------------------------------------------
3.  BugTraq: Find the tag continued. Sender: James C dot Slora, Jr dot [james dot slora at phra dot com]
----------------------------------------------------------------------
NewsIsFree: Security
----------------------------------------------------------------------
4.  RE:Re: HijackClick 3
5.  Widespread Exploitation of Common Linux Vulnerabilities Reported
6.  How Symantec Addresses Microsoft Compromise
7.  Ramen WORM propagation methods are detected by Symantec security products
8.  Lotus Domino Denial of Service Malformed HTML Email
9.  Symantec security products address BIND vulnerabilities.
10.  Fraudulent Digital Certificate (Verisign)
11.  Lion worm and its propagation methods are detected and prevented by Symantec products
12.  Incorrect Mime Header Vulnerability (MSIE)
13.  Increased Risk in China/US Hacking Activity
14.  Symantec Enterprise Security Solutions protect against Microsoft Windows 2000 IIS 5.0 system-level remote access buffer overflow
15.  Symantec Enterprise Security Solutions protect against the sadmind/IIS worm and associated exploits
16.  Symantec Enterprise Security Solutions protect against the Microsoft Windows IIS Index Server ISAPI System-level Remote Access Buffer Overflow
17.  Update: Symantec Customer Security Advisory for the CodeRed Worm
18.  Multi-vendor Unicode IDS bypass
19.  Malformed Microsoft Excel or PowerPoint documents bypass Microsoft macro security features
20.  Buffer Overflow in System V Derived Login
21.  Symantec Enterprise Security Solutions check for susceptibility to the Microsoft UPnP Buffer Overflow and DoS vulnerabilities
22.  Linux rsync I/O errors allow DoS or root access
23.  CDE dtspcd Buffer Overflow
24.  ISS BlackICE ping flood buffer overflow allows code execution
25.  Multiple SNMP vulnerabilities in multiple products
26.  Microsoft Commerce Server 2000 Unchecked Buffer in AuthFilter
27.  Multiple Buffer Overflows in PHP allow remote access to server
28.  Microsoft Virtual Machine multiple flaws allow malicious control
29.  Zlib compression library double free bug could allow arbitrary code
30.  Microsoft SQL Server Extended Procedure Function Buffer Overflow
31.  CiscoSecure ACS flaw allows arbitrary code execution
32.  Multiple Vulnerabilities Discovered In Microsoft Internet Information Services
33.  Sun Solaris admintool buffer overflow in PRODVERS argument allows root access
34.  MSN Chat Control buffer overflow allows remote code execution
35.  RedHat sharutils package uudecode flaw allows elevated privileges
36.  Digispid.B.Worm
37.  Microsoft Exchange Server 2000 Store Service allows DoS
38.  Sun Solaris SNMP components allows remote execution of code with root access
39.  ISC Bind 9.x vulnerability allows Domain Name Server Denial-of-Service
40.  Microsoft Windows RAS phonebook buffer overflow allows code execution
41.  Microsoft IIS HTR Chunked Encoding heap overflow allows arbitrary code
42.  Apache HTTP Server chunk encoding stack overflow
43.  OpenSSH daemon challenge-response allows DoS or remote compromise
44.  Sun ONE (iPlanet) Web Server search buffer overflow allows arbitrary code
45.  PHP multipart/form-data POST parsing error allows arbitrary code
46.  Microsoft SQL Server Resolution Service buffer overflows allow arbitrary code execution
47.  Microsoft SQL Server MDAC Buffer Overflow Compromise
48.  Microsoft Content Management Server flaws allow system compromise
49.  Microsoft File Transfer Manager ActiveX Control Buffer Overflow
50.  Microsoft Terminal Services Advanced Client buffer overflow allows malicious code execution
51.  Multiple Cisco VPN 3000 Vulnerabilities
52.  Apache_mod_ssl Worm Alert
53.  Microsoft Virtual Machine Multiple JDBC Vulnerabilities
54.  Multiple OpenVMS WASD HTTP Server Vulnerabilities
55.  Multiple Microsoft SQL Server Vulnerabilities
56.  Sendmail Trojan Horse Vulnerability
57.  Linux-HA Heartbeat Remote Buffer Overflow Vulnerability
58.  Multiple Vendor kadmind Remote Buffer Overflow Vulnerability
59.  Multiple Microsoft IIS Vulnerabilities
60.  Macromedia JRun Oversized URI Buffer Overflow Vulnerability
61.  TCPDump / LIBPCap Trojan Horse Vulnerability
62.  Microsoft Data Access Components RDS Buffer Overflow Vulnerability
63.  Lib CGI Include Buffer Overflow Vulnerability
64.  Cobalt RaQ4 Administrative Interface Command Execution Vulnerability
65.  Microsoft Internet Explorer PNG Deflate Heap Corruption Vulnerability
66.  Perl-HTTPd File Disclosure Vulnerability
67.  Longshine Wireless Access Point Devices Information Disclosure Vulnerability
68.  Half-Life Client Server Message Format String Vulnerability
69.  ISC DHCPD NSUPDATE MiniRes Library Remote Buffer Overflow Vulnerabilities
70.  Microsoft Windows Locator Service Buffer Overflow Vulnerability
71.  Opera Cross Domain Scripting Vulnerability
72.  IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
73.  Cisco IOS OSPF Neighbor Buffer Overflow Vulnerability
74.  Sendmail Header Processing Buffer Overflow Vulnerability
75.  Samba SMB/CIFS Packet Assembling Buffer Overflow Vulnerability
76.  Microsoft Windows 2000 WebDAV / ntdll.dll Buffer Overflow Vulnerability
77.  Sun XDR Library xdrmem_getbytes() Integer Overflow Vulnerability
78.  Sendmail Address Prescan Memory Corruption Vulnerability
79.  Samba Multiple Unspecified Remote Buffer Overflow Vulnerabilities
80.  Oracle E-Business Suite RRA/FNDFS Arbitrary File Disclosure Vulnerability
81.  Snort TCP Packet Reassembly Integer Overflow Vulnerability
82.  Cisco CatOS Authentication Bypass Vulnerability
83.  Apache Mod_Auth_Any Remote Command Execution Vulnerability
84.  Internet Explorer file:// Request Zone Bypass Vulnerability
85.  IBM AIX Multiple Unspecified Security Vulnerabilities
86.  FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
87.  Sun Management Center Change Manager PamVerifier Buffer Overflow Vulnerability
88.  PMachine Lib.Inc.PHP Remote Include Command Execution Vulnerability
89.  Multiple Sun Database Functions Buffer Overflow Vulnerabilities
90.  Symantec Security Check ActiveX Buffer Overflow
91.  Microsoft Windows Media Services NSIISlog.DLL Remote Buffer Overflow Vulnerability
92.  InterSystems Cache Insecure Default Permissions Vulnerability
93.  CCBill WhereAmI.CGI Remote Arbitrary Command Execution Vulnerability
94.  University of Minnesota Gopherd GSisText Buffer Overflow Vulnerability
95.  Cisco IOS Malicious IPV4 Packet Sequence Denial Of Service Vulnerability
96.  Microsoft Windows DCOM RPC Interface Buffer Overrun Vulnerability
97.  Multiple Oracle XDB FTP / HTTP Services Buffer Overflow Vulnerabilities
98.  Microsoft Data Access Components ODBC Buffer Overflow Vulnerability
99.  Pam_SMB Remote Buffer Overflow Vulnerability
100.  Multiple Microsoft RPC DCOM Subsystem Vulnerabilities
101.  Sun Solaris SAdmin Client Credentials Remote Administrative Access
102.  OpenSSL ASN.1 Parsing Vulnerabilities
103.  Microsoft Windows RPCSS Multi-thread Race Condition Vulnerability
104.  Microsoft Exchange Server Buffer Overflow Vulnerability
105.  Microsoft Messenger Service Buffer Overrun Vulnerability
106.  Atrium Software Mercur Mailserver POP3 AUTH Remote Buffer Overflow Vulnerability
107.  Microsoft Internet Explorer Self Executing HTML Arbitrary Code Execution Vulnerability
108.  Microsoft Windows Workstation Service Remote Buffer Overflow Vulnerability
109.  Yahoo! Messenger YAuto.DLL Open Buffer Overflow Vulnerability
110.  RSync Daemon Mode Undisclosed Remote Heap Overflow Vulnerability
111.  Openwares.org Internet Explorer Patch Buffer Overflow Vulnerability
112.  Linux Kernel do_mremap Function Boundary Condition Vulnerability
113.  Microsoft MDAC Function Broadcast Response Buffer Overrun Vulnerability
114.  Microsoft ISA Server 2000 H.323 Filter Remote Buffer Overflow Vulnerability
115.  Microsoft Windows Internet Naming Service Buffer Overflow Vulnerability
116.  Microsoft Windows ASN.1 Library Integer Handling Vulnerability
117.  Microsoft Windows Media Services Remote Denial of Service Vulnerability
118.  Microsoft Outlook Mailto Parameter Quoting Zone Bypass Vulnerability
119.  Microsoft MSN Messenger Information Disclosure Vulnerability
120.  Microsoft Windows WMF/EMF Image Formats Remote Buffer Overflow Vulnerability
121.  Microsoft Windows Private Communications Transport Protocol Buffer Overrun Vulnerability
122.  Outlook Express MHTML Forced File Execution Vulnerability
123.  Microsoft Windows LSASS Buffer Overrun Vulnerability
124.  Summary of Symantec Safeguard Protection for Microsoft Security Bulletins for April 2004
125.  Multiple Vendor TCP Sequence Number Approximation Vulnerability
126.  Microsoft Windows HSC DVD Driver Upgrade Code Execution Vulnerability
127.  Microsoft DirectX DirectPlay Remote Malformed Packet Denial Of Service Vulnerability
128.  BugTraq: Find the tag continued

2:22:39 AM    comment []

----------------------------------------------------------------------
Ars Technica
----------------------------------------------------------------------
1.  NES Classics: retro gaming, at a price. Game.Ars returns with a hefty edition. This time, Calvin and WyldKard look at Nintendo's repackaging of classic games, government-funded video games, more Xbox 2 talk, and much more. By Eric Bangeman.
----------------------------------------------------------------------
CNET News.com
----------------------------------------------------------------------
2.  Adaptec to snap up Snap Appliance. Maker of components plans to buy storage device company for about $100 million.
----------------------------------------------------------------------
Yahoo! News - Technology
----------------------------------------------------------------------
3.  Macworld Best of Show awards announced (MacCentral). MacCentral - Macworld magazine has announced its Best of Show awards for Macworld Conference & Expo 2004 in Boston, Mass. The awards are given to products either making their public debut at Macworld Expo or recently introduced and generating excitement on the show floor. This show's roundup of Best of Show recipients include five products from five different companies whose products were on display on the show floor. This year's honorees included:
4.  Lucent Signs $5 Billion Pact with Verizon Wireless (Reuters). Reuters - Lucent Technologies Inc. (LU.N) has signed a contract worth at least $5 billion to supply equipment, software and services to help Verizon Wireless improve its network, the companies said on Tuesday.
----------------------------------------------------------------------
Slashdot
----------------------------------------------------------------------
5.  Japanese Schoolchildren to be Tagged with RFID

12:29:28 AM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Gregg Doherty.
Last update: 7/26/2004; 12:30:23 AM.
This theme is based on the SoundWaves (blue) Manila theme.
July 2004
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
Jun   Aug