<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="/style/rss/rss_feed.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="/style/rss/rss_feed.css" type="text/css" media="screen" ?><rss version="2.0"><channel><title>Clipmarks | barrett778's clips</title><link>http://clipmarks.com/clipper/barrett778/</link><feedUrl>http://rss.clipmarks.com/clipper/barrett778/</feedUrl><ttl>15</ttl><description>Clip, tag and save information that's important to you. Bookmarks save entire pages...Clipmarks save the specific content that matters to you!</description><language>en-us</language><item><title>Virtual PCs Add New Layer of Security</title><link>http://clipmarks.com/clipmark/B7D9E228-598B-424F-BE1F-20DF3EC65E4A/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  1.  Can't wait to try it&lt;br/&gt;2.  Wonder if there is a threat to this that we need to block &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.eweek.com/article2/0,1759,2243244,00.asp?kc=EWRSS03129TX1K0000614" title="http://www.eweek.com/article2/0,1759,2243244,00.asp?kc=EWRSS03129TX1K0000614"&gt;www.eweek.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;B&gt;MojoPac turns most flash memory sticks, hard drives or iPods into "virtual" PCs that can run most programs working on Windows XP.&lt;/B&gt;
		&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;
The device cannot be bought. You have to make it by downloading free software onto a computer drive such as the thumb-sized USB flash memory drives that were so popular as gifts this Christmas. It also works with iPods, many other digital music players and regular external hard drives.
&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;
MojoPac is available for free on the company's Web site, www.MojoPac.com.
&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/virtual+pcs%3b+portable+applications/" rel="tag"&gt;virtual pcs; portable applications&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://www.eweek.com/article2/0,1759,2243244,00.asp?kc=EWRSS03129TX1K0000614</clipSource><pubDate>Sat, 05 Jan 2008 00:07:44 GMT</pubDate></item><item><title>Nato secrets USB stick lost in Swedish library</title><link>http://clipmarks.com/clipmark/5542C7A2-EA35-4AFF-BA5B-BFD92EA64ED4/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Encryption, encryption, encryption &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.theregister.co.uk/2008/01/04/another_stick_with_military_secrets_found/" title="http://www.theregister.co.uk/2008/01/04/another_stick_with_military_secrets_found/"&gt;www.theregister.co.uk&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;The discovery of a USB memory stick containing classified NATO information in a library in Stockholm has prompted a meeting between the Swedish Military Intelligence and Security Service and foreign defence officials.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;According to Swedish daily &lt;EM&gt;Aftonbladet&lt;/EM&gt;, the stick &lt;A href="http://www.aftonbladet.se/nyheter/article1563893.ab"&gt;contained&lt;/A&gt; material on NATO's ISAF peace-keeping force in Afghanistan, as well as an intelligence report on the attempted assassination of Lebanon's defense minister and the murder of Sri Lanka's foreign minister.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/data+loss/" rel="tag"&gt;data loss&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://www.theregister.co.uk/2008/01/04/another_stick_with_military_secrets_found/</clipSource><pubDate>Fri, 04 Jan 2008 22:42:22 GMT</pubDate></item><item><title>Fast Flux DNS Wiki</title><link>http://clipmarks.com/clipmark/60AC253B-489F-4279-BBEA-9E89EA96549B/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Technique used to mask attacker's true identity and to avoid countermeasures such as IP ACLs &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://en.wikipedia.org/w/index.php?title=Fast_flux&amp;oldid=181165960" title="http://en.wikipedia.org/w/index.php?title=Fast_flux&amp;oldid=181165960"&gt;en.wikipedia.org&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;&lt;B&gt;Fast flux&lt;/B&gt; is a &lt;A title="Domain name system" href="http://en.wikipedia.org/wiki/Domain_name_system"&gt;DNS&lt;/A&gt; technique used by &lt;A title="Botnet" href="http://en.wikipedia.org/wiki/Botnet"&gt;botnets&lt;/A&gt; to hide &lt;A title="Phishing" href="http://en.wikipedia.org/wiki/Phishing"&gt;phishing&lt;/A&gt; and &lt;A title="Malware" href="http://en.wikipedia.org/wiki/Malware"&gt;malware&lt;/A&gt; delivery sites behind an ever-changing network of compromised hosts acting as proxies. It can also refer to the combination of peer-to-peer networking, distributed command and control, web-based load-balancing and proxy redirection used to make malware networks more resistant to discovery and counter-measures. The &lt;A title="Storm Worm" href="http://en.wikipedia.org/wiki/Storm_Worm"&gt;Storm Worm&lt;/A&gt; is one of the recent malware variants to make use of this technique.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/malware/" rel="tag"&gt;malware&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://en.wikipedia.org/w/index.php?title=Fast_flux&amp;oldid=181165960</clipSource><pubDate>Tue, 01 Jan 2008 16:44:25 GMT</pubDate></item><item><title>Storm, Nugache lead dangerous new botnet barrage</title><link>http://clipmarks.com/clipmark/2D5A9B04-EC08-4DDA-9106-C5424DFC326E/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  The future will continue to hold significant challenges. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1286808,00.html?track=sy160&amp;asrc=RSS_RSS-10_160" title="http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1286808,00.html?track=sy160&amp;asrc=RSS_RSS-10_160"&gt;searchsecurity.techtarget.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;But with this network, in lieu of one C&amp;C server, there were a number of peers around the network that were sending out commands and serving as download sites for various pieces of the network. So if one of the peers in the network that the attacker is using to issue commands to the rest of the network is shut down, the attacker could simply begin sending orders through another peer. This made the entire network of compromised PCs equal partners and made the prospect of disabling the network incredibly daunting. &lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;Dittrich, one of the top botnet researchers in the world, has been tracking botnets for close to a decade and has seen it all. But this new piece of malware, which came to be known as Nugache, was a game-changer. With no C&amp;C server to target, bots capable of sending encrypted packets and the possibility of any peer on the network suddenly becoming the de facto leader of the botnet, Nugache, Dittrich knew, would be virtually impossible to stop.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/botnets/" rel="tag"&gt;botnets&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/storm+trojan/" rel="tag"&gt;storm trojan&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/malware/" rel="tag"&gt;malware&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1286808,00.html?track=sy160&amp;asrc=RSS_RSS-10_160</clipSource><pubDate>Thu, 20 Dec 2007 02:54:34 GMT</pubDate></item><item><title>Adobe ships ‘critical’ patch for Flash Player</title><link>http://clipmarks.com/clipmark/CFB2691E-FFA9-447F-ABB9-23EE49A1C022/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  More Zero Day stuff, just in time for the holidays &lt;img src="http://clipmarks.com/images/icons/smilies/happy.gif?r=2" style="margin-bottom: -4px;" alt="" /&gt; &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://blogs.zdnet.com/security/?p=765" title="http://blogs.zdnet.com/security/?p=765"&gt;blogs.zdnet.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;Adobe said Thursday that it is shipping a highly critical patch to address multiple vulnerabilities that could affect Windows, Mac and Linux machines.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;The update addresses at least nine flaws–CVE-2007-6242, CVE-2007- 4768, CVE-2007-5275, CVE-2007- 6243, CVE-2007- 6244, CVE-2007- 6245, CVE-2007-4324, CVE-2007- 6246, CVE-2007-5476–across all platforms. Versions affected include Adobe Flash Player 9.0.48.0 and earlier, 8.0.35.0 and earlier, and 7.0.70.0 and earlier.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;Two of the nine vulnerabilities are “input validation errors” that could “lead to the potential execution of arbitrary code.” Adobe adds:&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;“These vulnerabilities could be accessed through content delivered from a remote location via the user’s web browser, email client, or other applications that include or reference the Flash Player.”&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/zero+day/" rel="tag"&gt;zero day&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/vulnerability/" rel="tag"&gt;vulnerability&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/patch/" rel="tag"&gt;patch&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://blogs.zdnet.com/security/?p=765</clipSource><pubDate>Thu, 20 Dec 2007 02:24:52 GMT</pubDate></item><item><title>Hot: Real-time security monitoring </title><link>http://clipmarks.com/clipmark/E81D1342-C439-4807-9C0F-24574E4290FE/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Risk Management Framework from NIST and Cyber Defence capabilities under the Einstein gateway monitoring program. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.fcw.com/print/13_43/policy/151095-1.html?CMP=OTC-RSS" title="http://www.fcw.com/print/13_43/policy/151095-1.html?CMP=OTC-RSS"&gt;www.fcw.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;DIV&gt;Agencies began to grasp the idea that security risk is a changing, dynamic condition that makes it difficult to use traditional security certification and accreditation procedures to comply with the Federal Information Security Management Act. The National Institute of Standards and Technology published a Risk Management Framework to help agencies deploy security controls and assess the risk to systems that support their missions. &lt;/DIV&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;Ross said real-time, continuous monitoring of security controls equips agencies with an effective defense against sophisticated cyberthreats.&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;Real-time monitoring makes agencies aware of information security risks as hardware and software changes.&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;DIV&gt;The Bush administration called on Congress to transfer $115 million to the Homeland Security Department’s Einstein gateway monitoring program. OMB issued a policy mandating the program’s use. &lt;/DIV&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;&lt;/div&gt;</description><clipSource>http://www.fcw.com/print/13_43/policy/151095-1.html?CMP=OTC-RSS</clipSource><pubDate>Tue, 18 Dec 2007 03:04:11 GMT</pubDate></item><item><title>Swatting</title><link>http://clipmarks.com/clipmark/AE8C4165-2E16-413D-B27C-9DC4B6FBBA41/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  This is a new one...  Get someone to provide you some personal information, their address, and their phone number, phreak the phone number, and send the SWAT team to their house. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.theregister.co.uk/2007/12/18/latest_swat_incident/" title="http://www.theregister.co.uk/2007/12/18/latest_swat_incident/"&gt;www.theregister.co.uk&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;Swatting uses a combination of social engineering, phone phreaking and computer hacking to harass individuals. In many cases, the swatter will trick the victim into divulging a physical address and then use a VoIP system to make it look like the victim has initiated an emergency call from his address. This often prompts a response from SWAT teams who conduct emergency raids on the homes of people whose numbers were spoofed.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;&lt;/div&gt;</description><clipSource>http://www.theregister.co.uk/2007/12/18/latest_swat_incident/</clipSource><pubDate>Tue, 18 Dec 2007 02:16:43 GMT</pubDate></item><item><title>Windows Vista Service Pack 1 RC Public Availability Program</title><link>http://clipmarks.com/clipmark/FD2C196B-0ACA-4B9E-8E5D-8185631DFD61/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Installing SP1 RC1 now.  You must run the script, then download the RC and the prereq's through Windows Update.  Only install on non-critical machines.  You will have to uninstall the RC before installing the final version.  But hey, can installing the RC be any worse right now? &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.microsoft.com/downloads/details.aspx?FamilyID=9de6260e-4275-482d-9524-de850c4dd91c&amp;DisplayLang=en" title="http://www.microsoft.com/downloads/details.aspx?FamilyID=9de6260e-4275-482d-9524-de850c4dd91c&amp;DisplayLang=en"&gt;www.microsoft.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;DIV&gt;
There are two ways to install the service pack, first, as a pop-up notification that the service pack is ready to be installed (this is the method in which most users will install the service pack) and using multiple manual installations from Windows Update. The first method is the simplest, but may take up to four days for the Windows Update Automatic Update feature to deliver each of the 3 prerequisites and the service pack. Windows Vista SP1 distributed through Windows Update will be applicable to Windows Vista machines that are running on any of the 36 languages supported by Windows Vista RTM.&lt;/DIV&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;&lt;/div&gt;</description><clipSource>http://www.microsoft.com/downloads/details.aspx?FamilyID=9de6260e-4275-482d-9524-de850c4dd91c&amp;DisplayLang=en</clipSource><pubDate>Tue, 18 Dec 2007 01:13:10 GMT</pubDate></item><item><title>Did NSA Put a Secret Backdoor in New Encryption Standard?</title><link>http://clipmarks.com/clipmark/8CB4DF64-BE68-4562-A7C3-A8651358F76B/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Not sure how easy it is to force the use of another random number generator, but I guess I will be learning how to shortly. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.schneier.com/essay-198.html" title="http://www.schneier.com/essay-198.html"&gt;www.schneier.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;&lt;B&gt;By Bruce Schneier
&lt;BR /&gt;&lt;A href="http://www.wired.com/print/politics/security/commentary/securitymatters/2007/11/securitymatters_1115"&gt;Wired News&lt;/A&gt;
&lt;BR /&gt;November 15, 2007&lt;/B&gt;



&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;But today there's an even bigger stink brewing around Dual_EC_DRBG. In an &lt;A href="http://rump2007.cr.yp.to/15-shumow.pdf"&gt;informal presentation&lt;/A&gt; (.pdf) at the CRYPTO 2007 conference in August, Dan Shumow and Niels Ferguson showed that the algorithm contains a weakness that can only be described a backdoor.

&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;&lt;/div&gt;</description><clipSource>http://www.schneier.com/essay-198.html</clipSource><pubDate>Tue, 18 Dec 2007 00:57:40 GMT</pubDate></item><item><title>GAO praises TSA for its handling of sensitive info</title><link>http://clipmarks.com/clipmark/B04871C8-8F80-4C1C-A702-4B411CC1C698/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Good news stories are few and far between.  Nice to highlight them when they happen. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.fcw.com/online/news/150982-1.html?CMP=OTC-RSS" title="http://www.fcw.com/online/news/150982-1.html?CMP=OTC-RSS"&gt;www.fcw.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;DIV&gt;GAO said TSA’s SSI Office, which was established in 2005, is mainly responsible for the agency doing everything Congress requested and meeting additional recommendations GAO specified in a 2005 report. Notably, the SSI Office has been providing training to all TSA employees and contractors.&lt;/DIV&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/government/" rel="tag"&gt;government&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/tsa/" rel="tag"&gt;tsa&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://www.fcw.com/online/news/150982-1.html?CMP=OTC-RSS</clipSource><pubDate>Wed, 05 Dec 2007 16:33:10 GMT</pubDate></item><item><title>How to Track Down Anyone Online</title><link>http://clipmarks.com/clipmark/78AA5400-E4CB-4519-B642-4C782E30E76D/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  items to help you 'profile' yourself to ensure you aren't coughing up too much information. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://lifehacker.com/software/feature/how-to-track-down-anyone-online-329033.php" title="http://lifehacker.com/software/feature/how-to-track-down-anyone-online-329033.php"&gt;lifehacker.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;While there's still no killer, one-stop people search, there are more ways than ever to track down a long-lost friend, stalk an ex, or screen a potential date or employee. The next time you wonder, "What ever happened to so-and-so?" you've got a few power people search tools to turn to.&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/identity/" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://lifehacker.com/software/feature/how-to-track-down-anyone-online-329033.php</clipSource><pubDate>Wed, 05 Dec 2007 16:30:14 GMT</pubDate></item><item><title>ThreatCon Level is 1</title><link>http://clipmarks.com/clipmark/AFCC05B7-21B0-4A43-A8F0-CF0875D8B3B6/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Back to '1' &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://100.gmodules.com/ig/ifr?url=http://smiskovitz.googlepages.com/SymantecThreatConMonitor.xml&amp;nocache=0&amp;ifpctok=-1090545918400203142&amp;lang=en&amp;country=us&amp;.lang=en&amp;.country=us&amp;synd=ig&amp;mid=100&amp;parent=http://www.google.com" title="http://100.gmodules.com/ig/ifr?url=http://smiskovitz.googlepages.com/SymantecThreatConMonitor.xml&amp;nocache=0&amp;ifpctok=-1090545918400203142&amp;lang=en&amp;country=us&amp;.lang=en&amp;.country=us&amp;synd=ig&amp;mid=100&amp;parent=http://www.google.com"&gt;100.gmodules.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;he ThreatCon is at level 1. On November 23, 2007, a vulnerability for QuickTime's RTSP response header was disclosed. The issue allows an attacker to execute arbitrary code remotely. On December 1, 2007, the DeepSight honeynet captured active exploitation of the vulnerability and issued a Threat Alert. Although the vendor has not yet released a patch for the vulnerability, workarounds are available:&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/threatcon+level/" rel="tag"&gt;threatcon level&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://100.gmodules.com/ig/ifr?url=http://smiskovitz.googlepages.com/SymantecThreatConMonitor.xml&amp;nocache=0&amp;ifpctok=-1090545918400203142&amp;lang=en&amp;country=us&amp;.lang=en&amp;.country=us&amp;synd=ig&amp;mid=100&amp;parent=http://www.google.com</clipSource><pubDate>Wed, 05 Dec 2007 06:05:10 GMT</pubDate></item><item><title>Schneier on the SANS Top 20 Vulnerabilities</title><link>http://clipmarks.com/clipmark/FBDC5561-25B4-4EA0-AF72-0C28568486F1/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Need to proxy connections to the Internet and STRICTLY limit where people can go.  Unfortunately, there is very little desire to do this and many are willing to accept living in a compromised environment.  At home, I have been modifying each machine's 'HOSTS' files ('There's no place like 127.0.0.1'), using K9 Web Content filtering, and recently been using OpenDNS  to limit where my users (family) can go.  Also, I have killed MSIE and have forced all users to use Firefox with the NoScript enabled.  I have played with a virtual proxy that works well (especially when configured with 'Hosts', K9, OpenDNS, Antivirus, and FW blocking of all other hosts besides the proxy.  When I figure out how to do the failover piece to keep the availability at 99%, I will implement it for good.  Nothing is full-proof, but I sleep better at nights!  (Thanks to RF-NCNF for the OpenDNS and NoScript tips!). &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.schneier.com/blog/archives/2007/12/sans_top_20.html" title="http://www.schneier.com/blog/archives/2007/12/sans_top_20.html"&gt;www.schneier.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;LI&gt;Users who are allowed by their employers to browse the Internet have become a source of major security risk for their organizations. A few years back securing servers and services was seen as the primary task for securing an organization. Today it is equally important, perhaps even more important, to prevent users having their computers compromised via malicious web pages or other client-targeting attacks.&lt;P&gt;&lt;/P&gt;

&lt;P&gt;&lt;/P&gt;&lt;/LI&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;LI&gt;Web application vulnerabilities in open-source as well as custom-built applications account for almost half the total number of vulnerabilities being discovered in the past year. These vulnerabilities are being exploited widely to convert trusted web sites into malicious servers serving client-side exploits and phishing scams.&lt;P&gt;&lt;/P&gt;

&lt;P&gt;&lt;/P&gt;&lt;/LI&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;LI&gt;Attackers are finding more creative ways to obtain sensitive data from organizations. Therefore, it is now critical to check the nature of any data leaving an organization's boundary.&lt;/LI&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/vulnerabilities/" rel="tag"&gt;vulnerabilities&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://www.schneier.com/blog/archives/2007/12/sans_top_20.html</clipSource><pubDate>Wed, 05 Dec 2007 04:19:17 GMT</pubDate></item><item><title>Microsoft Security Advisory (945713)</title><link>http://clipmarks.com/clipmark/354C6D61-2611-41D9-86A5-A825BE2C17F2/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  Should not affect home users who are not part of a domain and also should not affect corps with a second-level domain (affects third-level or more).  Proxy servers, WPAD servers, and those who disable the IE 'Automatically Detect Settings'  mitigate this vulnerability.  Most flavors of Windows/Vista affected when using MSIE (unclear whether or not other browsers have the same vulnerability, but I would assume they do if they depend on Windows/Vista to automatically detect settings). &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://www.microsoft.com/technet/security/advisory/945713.mspx" title="http://www.microsoft.com/technet/security/advisory/945713.mspx"&gt;www.microsoft.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;Microsoft is investigating new public reports of a vulnerability in the way Windows resolves hostnames that do not include a fully-qualified domain name (FQDN). The technology that the vulnerability affects is Web Proxy Auto-Discovery (WPAD). Microsoft has not received any information to indicate that this vulnerability has been publicly used to attack customers, and Microsoft is not aware of any customer impact at this time. Microsoft is aggressively investigating the public reports. Customers whose domain name begins in a third-level or deeper domain, such as “contoso.co.us”, or for whom the following mitigating factors do not apply, are at risk from this vulnerability.&lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/ms+security+advisory/" rel="tag"&gt;ms security advisory&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/msa/" rel="tag"&gt;msa&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/wpad/" rel="tag"&gt;wpad&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://www.microsoft.com/technet/security/advisory/945713.mspx</clipSource><pubDate>Wed, 05 Dec 2007 03:46:47 GMT</pubDate></item><item><title>Bruce Schneier Q&amp;A</title><link>http://clipmarks.com/clipmark/AF928526-7181-400D-90FD-00E5A7655C3D/</link><description>&lt;b&gt;clipped by:&lt;/b&gt; &lt;a href="http://clipmarks.com/clipper/barrett778/"&gt;barrett778&lt;/a&gt;&lt;br&gt;&lt;b&gt;clipper's remarks:&lt;/b&gt;  This is a MUST read for all computer users.  Bruce does us all a favour and links back to his pertinent articles. &lt;br&gt;&lt;div border="2" style="margin-top: 10px; border:#000000 1px solid;" width="90%"&gt;&lt;div style="background-color:"&gt;&lt;div align="center" width="100%" style="padding:4px;margin-bottom:4px;background-color:#666666;overflow:hidden;"&gt;&lt;span style="color:#FFFFFF;font-weight:bold;"&gt;Clip Source: &lt;a style="color:#FFFFFF;" href="http://freakonomics.blogs.nytimes.com/2007/12/04/bruce-schneier-blazes-through-your-questions/" title="http://freakonomics.blogs.nytimes.com/2007/12/04/bruce-schneier-blazes-through-your-questions/"&gt;freakonomics.blogs.nytimes.com&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;Yes. Identity theft is a problem for two reasons. One, personal identifying information is incredibly easy to get; and two, personal identifying information is incredibly easy to use.&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;&lt;P&gt;&lt;STRONG&gt;Q:&lt;/STRONG&gt; Considering the &lt;A href="http://freakonomics.blogs.nytimes.com/2007/07/12/id-theft-watchdog-finds-the-state-of-texas-is-wide-open-for-id-thieves/"&gt;carelessness with which the government (state and federal&lt;/A&gt;) and commercial enterprises treat our confidential information, is it essentially a waste of effort for us as individuals to worry about securing our data? &lt;/P&gt;&lt;/div&gt;&lt;/div&gt;&lt;hr size="2" color="#666666" /&gt;&lt;div style="padding: 10px;"&gt;&lt;div style="text-align:left;"&gt;It’s an economic problem: because these parties don’t feel the pain when they lose our data, they have no incentive to secure it. I &lt;A href="http://www.schneier.com/blog/archives/2005/02/choicepoint.html"&gt;wrote about this&lt;/A&gt; two years ago, stating that if we want to fix the problem, we must make these organizations liable for their data losses. Another problem is the law; our Fourth Amendment protections protect our data under our control — which means in our homes, in our cars, and on our computers. We don’t have nearly the same protection when we give our data to some other organization for use or safekeeping.&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br&gt;&lt;div style="margin-bottom: 40px;"&gt;Tags: &lt;a href="http://clipmarks.com/tags/schneier/" rel="tag"&gt;schneier&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/security/" rel="tag"&gt;security&lt;/a&gt;, &lt;a href="http://clipmarks.com/tags/q%26a/" rel="tag"&gt;q&amp;a&lt;/a&gt;&lt;/div&gt;</description><clipSource>http://freakonomics.blogs.nytimes.com/2007/12/04/bruce-schneier-blazes-through-your-questions/</clipSource><pubDate>Wed, 05 Dec 2007 01:48:14 GMT</pubDate></item></channel></rss>