<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] Lattest Articles]]></title>
    <link>http://securityratty.com</link>
    <description></description>
    <pubDate>Thu, 03 Jul 2008 18:24:36 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Dreamhost Review Updated]]></title>
      <link>http://securityratty.com/article/b99dadaa3f25f66256280437c0cb5980</link>
      <guid>http://securityratty.com/article/b99dadaa3f25f66256280437c0cb5980</guid>
      <description><![CDATA[It came to my attention that my Dreamhost review was a bit dated and had wrong information based on changes that Dreamhost has made over the last year. I've updated it to reflect some of Dreamhost's...]]></description>
      <content:encoded><![CDATA[It came to my attention that my Dreamhost review was a bit dated and had wrong 
information based on changes that Dreamhost has made over the last year. I've 
updated it to reflect some of Dreamhost's new polices, my experiences and how the discount codes differ from when I last updated it (1/31/2007). I've also have 
five limited discount codes to give away that grant the following: 2TB disk and 
20TB bandwidth, gives $150 off a 5-year signup or $200 off a 10-year signup.
<a href="http://www.irongeek.com/i.php?page=contact">Contact</a> me if you want one of my five one time use codes.
<p><a href="http://feeds.feedburner.com/~a/IrongeeksSecuritySite?a=z7V137"><img src="http://feeds.feedburner.com/~a/IrongeeksSecuritySite?i=z7V137" border="0"></img></a></p><img src="http://feeds.feedburner.com/~r/IrongeeksSecuritySite/~4/326935184" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 13:39:49 +0000</pubDate>
      <category domain="http://securityratty.com/tag/dreamhost review">dreamhost review</category>
      <category domain="http://securityratty.com/tag/dreamhost">dreamhost</category>
      <category domain="http://securityratty.com/tag/codes">codes</category>
      <category domain="http://securityratty.com/tag/discount codes">discount codes</category>
      <category domain="http://securityratty.com/tag/wrong information based">wrong information based</category>
      <category domain="http://securityratty.com/tag/10-year signup">10-year signup</category>
      <category domain="http://securityratty.com/tag/20tb bandwidth">20tb bandwidth</category>
      <category domain="http://securityratty.com/tag/5-year signup">5-year signup</category>
      <category domain="http://securityratty.com/tag/2tb disk">2tb disk</category>
      <source url="http://feeds.feedburner.com/~r/IrongeeksSecuritySite/~3/326935184/i.php">Dreamhost Review Updated</source>
    </item>
    <item>
      <title><![CDATA[This Fourth of July I will be a patriot because to be anything else is unthinkable.]]></title>
      <link>http://securityratty.com/article/02be54a8fdd946848b81ec75af516d39</link>
      <guid>http://securityratty.com/article/02be54a8fdd946848b81ec75af516d39</guid>
      <description><![CDATA[Well said! There is much wrong in this country, however, we have much to be thankful for because of those who wanted to make this country great and were willing to give their lives to make it so....]]></description>
      <content:encoded><![CDATA[<div > Well said!<br/>There is much wrong in this country, however, we have much to be thankful for because of those who wanted to make this country great and were willing to give their lives to make it so.<br/>Thanks to all of you who make this country worth loving. </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clipmark/494352F5-B0F4-4E32-A3A5-A4BB01D678C2/" title="go to this clipmark"><img src="http://content.clipmarks.com/blog_icon/941d60ea-0fdd-4756-b61a-2f4cadf54fc8/494352F5-B0F4-4E32-A3A5-A4BB01D678C2/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.cnn.com/2008/US/07/04/patriotism.opinions.irpt/index.html" href="http://www.cnn.com/2008/US/07/04/patriotism.opinions.irpt/index.html" style="font-size: 11px;">www.cnn.com</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.cnn.com/2008/US/07/04/patriotism.opinions.irpt/index.html -->
<div style="margin: 4px 0px; color: #000000; font-size: 20px;">  What&#8217;s patriotism? Definitions differ</div>
</td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.cnn.com/2008/US/07/04/patriotism.opinions.irpt/index.html --><P> Patriotism is loving your country. Patriotism is standing when the national anthem plays. Patriotism is putting your hand on your heart to recite the Pledge of Allegiance.</P></td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.cnn.com/2008/US/07/04/patriotism.opinions.irpt/index.html --><P> Some say it is unpatriotic to oppose the war, but hear me out: Say if your kid brings home a bad report card. Are you proud of him? Probably not. But do you still love him? Yes.</P></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/494352F5-B0F4-4E32-A3A5-A4BB01D678C2/blog/" title="blog or email this clip"><img src="http://content8.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 12:56:11 +0000</pubDate>
      <category domain="http://securityratty.com/tag/country">country</category>
      <category domain="http://securityratty.com/tag/country worth">country worth</category>
      <category domain="http://securityratty.com/tag/patriotism">patriotism</category>
      <category domain="http://securityratty.com/tag/national anthem plays">national anthem plays</category>
      <category domain="http://securityratty.com/tag/bad report card">bad report card</category>
      <category domain="http://securityratty.com/tag/kid brings home">kid brings home</category>
      <category domain="http://securityratty.com/tag/definitions">definitions</category>
      <category domain="http://securityratty.com/tag/thankful">thankful</category>
      <category domain="http://securityratty.com/tag/war">war</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=493">This Fourth of July I will be a patriot because to be anything else is unthinkable.</source>
    </item>
    <item>
      <title><![CDATA[Time Bomb Neckties]]></title>
      <link>http://securityratty.com/article/2cbbab4bc11783697bcd0ff00fd516d0</link>
      <guid>http://securityratty.com/article/2cbbab4bc11783697bcd0ff00fd516d0</guid>
      <description><![CDATA[Not recommended to wear at the...]]></description>
      <content:encoded><![CDATA[<a href="http://www.etsy.com/view_listing.php?listing_id=12792904">Not recommended</a> to wear at the airport.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=gIcCCJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=gIcCCJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=uBs7yJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=uBs7yJ" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 10:18:37 +0000</pubDate>
      <category domain="http://securityratty.com/tag/airport">airport</category>
      <source url="http://www.schneier.com/blog/archives/2008/07/time_bomb_neckt.html">Time Bomb Neckties</source>
    </item>
    <item>
      <title><![CDATA[Encrypting Disks]]></title>
      <link>http://securityratty.com/article/0412d7c6d75959351f8a0664ef7eaaca</link>
      <guid>http://securityratty.com/article/0412d7c6d75959351f8a0664ef7eaaca</guid>
      <description><![CDATA[The UK is learning : The Scottish Ambulance Service confirmed today that a package containing contact information from its Paisley Emergency Medical Dispatch Centre (EMDC) has been lost by the...]]></description>
      <content:encoded><![CDATA[The UK is <a href="http://www.scottishambulance.co.uk/MissingDisc/PressRelease.asp">learning</a>:

<blockquote>The Scottish Ambulance Service confirmed today that a package containing contact information from its Paisley Emergency Medical Dispatch Centre (EMDC) has been lost by the courier, TNT, while in transit to one of its IT suppliers.

The portable data disk contained a copy of records of 894,629 calls to the ambulance service's Paisley EMDC since February 2006. It was fully encrypted and password protected and includes the addresses of incidents, some phone numbers and some patient names. Given the security measures and the complex structure of the database it would be extremely difficult to gain access to any meaningful information.</blockquote>

News story <a href="http://news.bbc.co.uk/2/hi/uk_news/scotland/7470006.stm">here</a>.

That's what you want to do.  There is no problem if encrypted disks are lost.  You can mail them directly to your worst enemy and there's no problem.  Well, assuming you've implemented the encryption properly and chosen a good key.

This is much better than what the HM Revenue & Customs office <a href="http://www.timesonline.co.uk/tol/news/uk/article2910705.ece">did</a> in November.

I <a href="http://www.schneier.com/essay-199.html">wrote</a> about disk and laptop encryption previously.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=f7aWrJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=f7aWrJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=sZKK7J"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=sZKK7J" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 09:10:18 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ambulance service">ambulance service</category>
      <category domain="http://securityratty.com/tag/scottish ambulance service">scottish ambulance service</category>
      <category domain="http://securityratty.com/tag/disk">disk</category>
      <category domain="http://securityratty.com/tag/portable data disk">portable data disk</category>
      <category domain="http://securityratty.com/tag/emdc">emdc</category>
      <category domain="http://securityratty.com/tag/paisley emdc">paisley emdc</category>
      <category domain="http://securityratty.com/tag/laptop encryption previously">laptop encryption previously</category>
      <category domain="http://securityratty.com/tag/meaningful information">meaningful information</category>
      <category domain="http://securityratty.com/tag/worst enemy">worst enemy</category>
      <source url="http://www.schneier.com/blog/archives/2008/07/encrypting_disk.html">Encrypting Disks</source>
    </item>
    <item>
      <title><![CDATA[Lithuania: Attacks focused on hosting company]]></title>
      <link>http://securityratty.com/article/c7aaf2f38be7adc78d75cad984cdd1e4</link>
      <guid>http://securityratty.com/article/c7aaf2f38be7adc78d75cad984cdd1e4</guid>
      <description><![CDATA[A vulnerability in a Web server contributed to attacks on some 300 Web sites in Lithuania earlier this week,...]]></description>
      <content:encoded><![CDATA[<p>A vulnerability in a Web server contributed to attacks on some 300 Web sites in Lithuania earlier this week, a ...
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=jkD3do"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=jkD3do" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/326713195" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/attacks">attacks</category>
      <category domain="http://securityratty.com/tag/lithuania">lithuania</category>
      <category domain="http://securityratty.com/tag/web sites">web sites</category>
      <category domain="http://securityratty.com/tag/web server">web server</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/326713195/article.do">Lithuania: Attacks focused on hosting company</source>
    </item>
    <item>
      <title><![CDATA[The Antivirus Industry in 2008]]></title>
      <link>http://securityratty.com/article/6afad737385d26d948d7ca65092fa8a7</link>
      <guid>http://securityratty.com/article/6afad737385d26d948d7ca65092fa8a7</guid>
      <description><![CDATA[The folks at Ikarus Security Software seem to have enjoyed drinking of the truth serum , to come up with such a realistic retrospective of the antivirus industry for the past 10 years, summarized in a...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div>
<div class="separator" style="text-align: center; clear: both;"></div>
<a href="http://bp0.blogger.com/_wICHhTiQmrA/SG5J7KMsDwI/AAAAAAAAB3s/GJ5Zr7bymOU/s1600-h/antivirus_industry_10years.gif" imageanchor="1" style="border: 0pt none ; background-color: transparent; clear: left; margin-bottom: 1em; float: left; margin-right: 1em;"><img src="http://bp0.blogger.com/_wICHhTiQmrA/SG5J7KMsDwI/AAAAAAAAB3s/86oQ3u-lVQ0/s200-R/antivirus_industry_10years.gif" style="border: 0pt none ;" /></a>The folks at <a href="http://www.ikarus-software.at/">Ikarus Security Software</a> seem to have enjoyed <a href="http://ddanchev.blogspot.com/2007/09/truth-serum-have-drink.html">drinking of the truth serum</a>, to come up with such a realistic retrospective of&nbsp; the antivirus industry for the past 10 years, summarized in a single cartoon. Congrats, keeping it realistic means taking the issues seriously, compared to living in a self-serving twisted reality on their own. There's no such thing as cat and mouse game anymore, since the mouse has gotten bigger than the cat.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=VfsLHJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=VfsLHJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=6UXMgJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=6UXMgJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=WubJEj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=WubJEj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=4cCY5j"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=4cCY5j" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rRDP6J"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rRDP6J" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=lDKrqJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=lDKrqJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=kcRxIj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=kcRxIj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/326768113" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 07:38:43 +0000</pubDate>
      <category domain="http://securityratty.com/tag/mouse game anymore">mouse game anymore</category>
      <category domain="http://securityratty.com/tag/antivirus industry">antivirus industry</category>
      <category domain="http://securityratty.com/tag/mouse">mouse</category>
      <category domain="http://securityratty.com/tag/realistic">realistic</category>
      <category domain="http://securityratty.com/tag/ikarus security software">ikarus security software</category>
      <category domain="http://securityratty.com/tag/realistic retrospective">realistic retrospective</category>
      <category domain="http://securityratty.com/tag/single cartoon">single cartoon</category>
      <category domain="http://securityratty.com/tag/truth serum">truth serum</category>
      <category domain="http://securityratty.com/tag/cat">cat</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/326768113/antivirus-industry-in-2008.html">The Antivirus Industry in 2008</source>
    </item>
    <item>
      <title><![CDATA[Hundreds of Thousands of Laptops Lost at U.S. Airports Annually]]></title>
      <link>http://securityratty.com/article/c9073d10b076742bcd87430314c09618</link>
      <guid>http://securityratty.com/article/c9073d10b076742bcd87430314c09618</guid>
      <description><![CDATA[This is a weird statistic : Some of the largest and medium-sized U.S. airports report close to 637,000 laptops lost each year, according to the Ponemon Institute survey released Monday. Laptops are...]]></description>
      <content:encoded><![CDATA[This is a <a href="http://www.pcworld.com/businesscenter/article/147739/laptops_lost_like_hot_cakes_at_us_airports.html_">weird statistic</a>:

<blockquote>Some of the largest and medium-sized U.S. airports report close to 637,000 laptops lost each year, according to the Ponemon Institute survey released Monday. Laptops are most commonly lost at security checkpoints, according to the survey.

Close to 10,278 laptops are reported lost every week at 36 of the largest U.S. airports, and 65 percent of those laptops are not reclaimed, the survey said. Around 2,000 laptops are recorded lost at the medium-sized airports, and 69 percent are not reclaimed.

Travelers seem to lack confidence that they will recover lost laptops. About 77 percent of people surveyed said they had no hope of recovering a lost laptop at the airport, with 16 percent saying they wouldn't do anything if they lost their laptop during business travel. About 53 percent said that laptops contain confidential company information, with 65 percent taking no steps to protect the information.</blockquote>

I don't know how to generalize that to a total number of lost laptops in the U.S.; let's call it 750,000.  At $1,000 per laptop -- a very conservative estimate -- that's $750 million in lost laptops annually.  Most are lost at security checkpoints, and I'm sure the numbers went up considerably since those checkpoints got more annoying after 9/11.

There aren't a lot of real numbers about the costs of increased airport security.  We pay in time, in anxiety, in inconvenience.  But we also pay in goods.  TSA employees <a href="http://www.cbsnews.com/stories/2004/09/13/eveningnews/main643165.shtml">steal out of suitcases</a>.  And opportunists steal hundreds of millions of dollars of laptops annually.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=LSh7nJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=LSh7nJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=DT8VQJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=DT8VQJ" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 04:20:38 +0000</pubDate>
      <category domain="http://securityratty.com/tag/laptops">laptops</category>
      <category domain="http://securityratty.com/tag/recover lost laptops">recover lost laptops</category>
      <category domain="http://securityratty.com/tag/lost laptops">lost laptops</category>
      <category domain="http://securityratty.com/tag/lost">lost</category>
      <category domain="http://securityratty.com/tag/laptops lost">laptops lost</category>
      <category domain="http://securityratty.com/tag/commonly lost">commonly lost</category>
      <category domain="http://securityratty.com/tag/airports">airports</category>
      <category domain="http://securityratty.com/tag/lost laptop">lost laptop</category>
      <category domain="http://securityratty.com/tag/percent">percent</category>
      <source url="http://www.schneier.com/blog/archives/2008/07/hundreds_of_tho.html">Hundreds of Thousands of Laptops Lost at U.S. Airports Annually</source>
    </item>
    <item>
      <title><![CDATA[Data Breach At Benefits Company Affects Google Employees]]></title>
      <link>http://securityratty.com/article/d0eb5c58d999614771fc6610857714f6</link>
      <guid>http://securityratty.com/article/d0eb5c58d999614771fc6610857714f6</guid>
      <description><![CDATA[Google employees hired before 2006 have been warned to watch out for possible attempts to steal their identities. InformationWeek reports that in a letter last month, Google attorney Lewis A. Segall...]]></description>
      <content:encoded><![CDATA[Google employees hired before 2006 have been warned to watch out for possible attempts to steal their identities.
InformationWeek reports that in a letter last month, Google attorney Lewis A. Segall alerted New Hampshire Attorney General Kelly A. Ayotte that computers had been stolen from Colt Express Outsourcing Services, a third-party employee benefits administrator for Google [...]]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 00:53:03 +0000</pubDate>
      <category domain="http://securityratty.com/tag/google">google</category>
      <category domain="http://securityratty.com/tag/google employees hired">google employees hired</category>
      <category domain="http://securityratty.com/tag/google attorney lewis">google attorney lewis</category>
      <category domain="http://securityratty.com/tag/colt express">colt express</category>
      <category domain="http://securityratty.com/tag/informationweek reports">informationweek reports</category>
      <category domain="http://securityratty.com/tag/hampshire attorney">hampshire attorney</category>
      <category domain="http://securityratty.com/tag/ayotte">ayotte</category>
      <category domain="http://securityratty.com/tag/segall">segall</category>
      <category domain="http://securityratty.com/tag/services">services</category>
      <source url="http://cyberinsecure.com/data-breach-at-benefits-company-affects-google-employees/">Data Breach At Benefits Company Affects Google Employees</source>
    </item>
    <item>
      <title><![CDATA[Links for 2008-07-03 [del.icio.us]]]></title>
      <link>http://securityratty.com/article/1bb5bd27cd79acf81b0be54552fa47c1</link>
      <guid>http://securityratty.com/article/1bb5bd27cd79acf81b0be54552fa47c1</guid>
      <description><![CDATA[The Daily Incite - July 3, 2008 | Security Incite: Analysis on Information Security
Where the truth is: Logs and breach-disclosure laws
The Security Catalyst Community - CISSP - on it's way out, or...]]></description>
      <content:encoded><![CDATA[<ul>
<li><a href="http://securityincite.com/TDI-2008-07-03#TSN1">The Daily Incite - July 3, 2008 | Security Incite: Analysis on Information Security</a></li>
<li><a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9104578&source=rss_topic82">Where the truth is: Logs and breach-disclosure laws</a></li>
<li><a href="http://www.securitycatalyst.org/forums/index.php?topic=905.0">The Security Catalyst Community - CISSP - on it's way out, or not. Or both?</a></li>
<li><a href="http://rationalsecurity.typepad.com/blog/2008/06/visualization-t.html">Rational Survivability: Visualization Through Virtualization...</a></li>
<li><a href="http://www.security-works.com/blog/2008/06/so-now-everyone-is-it-grc-vendor.html">practical risk management: So now everyone is an IT GRC vendor</a></li>
</ul><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/326371948" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 03 Jul 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security catalyst community">security catalyst community</category>
      <category domain="http://securityratty.com/tag/practical risk management">practical risk management</category>
      <category domain="http://securityratty.com/tag/security incite">security incite</category>
      <category domain="http://securityratty.com/tag/grc vendor">grc vendor</category>
      <category domain="http://securityratty.com/tag/rational survivability">rational survivability</category>
      <category domain="http://securityratty.com/tag/daily incite">daily incite</category>
      <category domain="http://securityratty.com/tag/information security">information security</category>
      <category domain="http://securityratty.com/tag/visualization">visualization</category>
      <category domain="http://securityratty.com/tag/virtualization">virtualization</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/326371948/anton18">Links for 2008-07-03 [del.icio.us]</source>
    </item>
    <item>
      <title><![CDATA[A thin line between blog theft and promotion - another opinion]]></title>
      <link>http://securityratty.com/article/8db8f65e1fa8fce8c11d7b631ccf2157</link>
      <guid>http://securityratty.com/article/8db8f65e1fa8fce8c11d7b631ccf2157</guid>
      <description><![CDATA[Rich Mogull has been writing a bit about his disagreement with a the SecurityRatty site posting his content (original posts here and here ). These posts have set off a rash of comments and other...]]></description>
      <content:encoded><![CDATA[<p>Rich Mogull has been writing a bit about his disagreement with a the <a href="http://securityratty.com/">SecurityRatty</a> site posting his content (original posts <a href="http://securosis.com/2008/07/02/securityratty-is-slimey-content-stealing-thief/">here</a> and <a href="http://securosis.com/2008/07/02/i-win/">here</a>). These posts have set off a rash of comments and other articles on both sides of this issue. Finally Rich wrote his <a href="http://securosis.com/2008/07/02/defining-blog-content-theft/">defining post on this topic here</a>. Rich's position is that he owns his words. Ratty took them without his permission, ads nothing to the conversation or commentary at all and actually hosts the content rather than just linking to it. Now for those who don't know, SecurityRatty is a site allegedly owned and operated by some Russian CISSP dude. Basically, they claim they are an RSS aggregator and they just republish blog posts in their entirety. A couple of things to note though:<br><br>1. SecurityRatty does not usually add any content of their own or edit the posts in any way<br>2. They link back to the blogs or articles which are aggregated<br>3. They do appear to sell some advertising on the site<br>4. You can search their aggregated content on their site<br>5. At least recently they are removing content and feeds from their site if you request it.<br>6. They did not ask anyones permission that I know of before posting content<br><br>OK, now that the groundwork is laid, let me give my Shimel view on this. I disagree with Rich. Hey it is a big world and I think there is room for a dissenting opinion here. The reasons I disagree with Rich are:<br><br>1. Though Ratty plainly posts up others content, he does not hold it out as his own. He plainly gives credit to those who actually created the words and in fact links back to their sites.<br>2. Rich is publishing his data under a creative commons license, I am not sure if the meager ad on Ratty would qualify this as a commercial site.<br>3. Rich distinguishes what Ratty does from Google and other search engines (who clearly profit from Rich's content) by the fact that they just point to it. Not all together true. They also keep a cached copy of the content that you can go to as well.<br>4. The fact is that I have a tough time seeing any harm to Rich here. In fact if Ratty were not pointing back to Rich's site, if he did not make it as easy to see that it is just an aggregate feed or if Ratty were adding his own comments and not clearly delineating his from Rich's, I would feel differently. Some of this is directly in contrast to Rich who says that if Ratty did add his own views to Rich's, that would make it right by him.<br>5. Finally, I would go even further than Rich not being harmed by Ratty. I think Rich actually benefits from Ratty. It is yet another outlet for Rich's content and though not everyone reading it at Ratty may go back to Rich's site, they do know it is him and can go back easily. In fact if Rich did advertise at his site, I could understand him losing hits at his site. Otherwise if Ratty just pointed back, one could say the more hits Ratty generates, it could cost Rich more money. Much like people who link to graphics hosted elsewhere.<br><br>So, Rich I see that Ratty has stopped aggregating your content so that should be enough of a victory for you. In the long run though I think it is a Pyrrhic victory and you would have been better off with Ratty publicizing your words.</p><blockquote></blockquote>
<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=HqzgQX"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=HqzgQX" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=URCj2J"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=URCj2J" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=LcKVkJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=LcKVkJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=d4OmHJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=d4OmHJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=uX21WJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=uX21WJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=4Efv2j"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=4Efv2j" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=RwzMJj"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=RwzMJj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/326305454" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 03 Jul 2008 18:24:36 +0000</pubDate>
      <category domain="http://securityratty.com/tag/posts">posts</category>
      <category domain="http://securityratty.com/tag/ratty plainly posts">ratty plainly posts</category>
      <category domain="http://securityratty.com/tag/rich distinguishes">rich distinguishes</category>
      <category domain="http://securityratty.com/tag/rich">rich</category>
      <category domain="http://securityratty.com/tag/rich mogull">rich mogull</category>
      <category domain="http://securityratty.com/tag/cost rich">cost rich</category>
      <category domain="http://securityratty.com/tag/plainly">plainly</category>
      <category domain="http://securityratty.com/tag/ratty">ratty</category>
      <category domain="http://securityratty.com/tag/securityratty">securityratty</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/326305454/a-thin-line-bet.html">A thin line between blog theft and promotion - another opinion</source>
    </item>
  </channel>
</rss>
