<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[Wired Security]]></title>
    <link>http://securityratty.com/feed/fa98dd60abcfa44f0fffeb3a727c6b88</link>
    <description></description>
    <pubDate>Fri, 15 Aug 2008 15:05:22 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Military Eyes Football Helmets for Battlefield Protection]]></title>
      <link>http://securityratty.com/article/69a0c5377083dcc267ca213268da2588</link>
      <guid>http://securityratty.com/article/69a0c5377083dcc267ca213268da2588</guid>
      <description><![CDATA[The Pentagon is seeking help from NFL gear makers to create helmets that will make U.S. combat soldiers...]]></description>
      <content:encoded><![CDATA[The Pentagon is seeking help from NFL gear makers to create helmets that will make U.S. combat soldiers safer.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=1924c1e670c30b429c2726e69afc9a22" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=1924c1e670c30b429c2726e69afc9a22" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=qjCbYK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=qjCbYK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=DGbiHk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=DGbiHk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=CVG34k"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=CVG34k" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=EPfamK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=EPfamK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=nJ639K"><img src="http://feeds.wired.com/~f/wired/politics/security?i=nJ639K" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=ZDtSnk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=ZDtSnk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=4Uai4k"><img src="http://feeds.wired.com/~f/wired/politics/security?i=4Uai4k" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=DWyiEK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=DWyiEK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/378339563" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/378339564" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 29 Aug 2008 02:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nfl gear makers">nfl gear makers</category>
      <category domain="http://securityratty.com/tag/combat soldiers safer">combat soldiers safer</category>
      <category domain="http://securityratty.com/tag/helmets">helmets</category>
      <category domain="http://securityratty.com/tag/pentagon">pentagon</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/378339564/gridiron-gear-g.html">Military Eyes Football Helmets for Battlefield Protection</source>
    </item>
    <item>
      <title><![CDATA[Best Western Rebuts Claims of Massive Data Breach]]></title>
      <link>http://securityratty.com/article/1f08218d0cf9d08a50a56ca3c551ece6</link>
      <guid>http://securityratty.com/article/1f08218d0cf9d08a50a56ca3c551ece6</guid>
      <description><![CDATA[Best Western International and the Sunday Herald newspaper of Scotland are duking it out over a story which reports that a hacker stole the records of 8 million customers from the hotel chain's global...]]></description>
      <content:encoded><![CDATA[Best Western International and the Sunday Herald newspaper of Scotland are duking it out over a story which reports that a hacker stole the records of 8 million customers from the hotel chain's global network in the "the greatest cyber-heist in world history." Best Western says 10 people were affected at one hotel.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=b4a67e5ea9cc98c6e9393c741fea0fdd" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=b4a67e5ea9cc98c6e9393c741fea0fdd" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=TLFKNK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=TLFKNK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=rGFaWk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=rGFaWk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=IwFkSk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=IwFkSk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=AmXXuK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=AmXXuK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=Guh3jK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=Guh3jK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=IFYaBk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=IFYaBk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=sOvMck"><img src="http://feeds.wired.com/~f/wired/politics/security?i=sOvMck" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=qFUDqK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=qFUDqK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/376205367" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/376205368" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 27 Aug 2008 09:45:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/western">western</category>
      <category domain="http://securityratty.com/tag/hotel chain">hotel chain</category>
      <category domain="http://securityratty.com/tag/western international">western international</category>
      <category domain="http://securityratty.com/tag/hotel">hotel</category>
      <category domain="http://securityratty.com/tag/sunday herald newspaper">sunday herald newspaper</category>
      <category domain="http://securityratty.com/tag/global network">global network</category>
      <category domain="http://securityratty.com/tag/million customers">million customers</category>
      <category domain="http://securityratty.com/tag/world history">world history</category>
      <category domain="http://securityratty.com/tag/story">story</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/376205368/DATA_BREACH_DISPUTE">Best Western Rebuts Claims of Massive Data Breach</source>
    </item>
    <item>
      <title><![CDATA[Warner Keynote Comment On Science Lights Up Twitter]]></title>
      <link>http://securityratty.com/article/c98526beefcd6a299628d5efeb1c6986</link>
      <guid>http://securityratty.com/article/c98526beefcd6a299628d5efeb1c6986</guid>
      <description><![CDATA[Just think about this: In four months, we will have an administration that actually believes in science!&quot; said former Virginia Governor Mark Warner during his keynote speech at the 2008 Democratic...]]></description>
      <content:encoded><![CDATA["Just think about this: In four months, we will have an administration that actually believes in science!" said former Virginia Governor Mark Warner during his keynote speech at the 2008 Democratic National Convention. It didn't set the room on fire but Twitter was aflutter as its geek community celebrated a throwaway line.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=97ed13331d256eea093eb72b457d225d" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=97ed13331d256eea093eb72b457d225d" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=HZl8nK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=HZl8nK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=2B9tGk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=2B9tGk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=fe5Rqk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=fe5Rqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=bJ3CaK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=bJ3CaK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=n9NAuK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=n9NAuK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=3U9uPk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=3U9uPk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=za7oLk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=za7oLk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=IrTZGK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=IrTZGK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/376286689" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/376300255" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 27 Aug 2008 03:27:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/democratic national convention">democratic national convention</category>
      <category domain="http://securityratty.com/tag/geek community">geek community</category>
      <category domain="http://securityratty.com/tag/keynote speech">keynote speech</category>
      <category domain="http://securityratty.com/tag/twitter">twitter</category>
      <category domain="http://securityratty.com/tag/science">science</category>
      <category domain="http://securityratty.com/tag/throwaway line">throwaway line</category>
      <category domain="http://securityratty.com/tag/administration">administration</category>
      <category domain="http://securityratty.com/tag/fire">fire</category>
      <category domain="http://securityratty.com/tag/aflutter">aflutter</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/376300255/mark-warner.html">Warner Keynote Comment On Science Lights Up Twitter</source>
    </item>
    <item>
      <title><![CDATA[Clinton Urges Party Unity In Powerful Convention Address]]></title>
      <link>http://securityratty.com/article/a954988d4421ade0a174e500f7a8538f</link>
      <guid>http://securityratty.com/article/a954988d4421ade0a174e500f7a8538f</guid>
      <description><![CDATA[Hillary Clinton exhorts the members of her party to unite and rally behind former Democratic presidential nominee Barack Obama, saying that the nation can't afford to elect another Republican to the...]]></description>
      <content:encoded><![CDATA[Hillary Clinton exhorts the members of her party to unite and rally behind former Democratic presidential nominee Barack Obama, saying that the nation can't afford to elect another Republican to the White House.<br style="clear: both;"/>
      <a href="http://www.pheedo.com/click.phdo?s=badb1c80222bb54a485706f6a82ddf24"><img alt="" style="border: 0;" border="0" src="http://www.pheedo.com/img.phdo?s=badb1c80222bb54a485706f6a82ddf24"/></a>
  <img src="http://www.pheedo.com/feeds/tracker.php?i=badb1c80222bb54a485706f6a82ddf24" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=S8osMK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=S8osMK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=LocPTk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=LocPTk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=RgYGCk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=RgYGCk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=SDKqbK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=SDKqbK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=diwLbK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=diwLbK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=xK84Jk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=xK84Jk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=0Ccfak"><img src="http://feeds.wired.com/~f/wired/politics/security?i=0Ccfak" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=V5s7dK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=V5s7dK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/376167404" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/376167408" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 27 Aug 2008 00:22:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/hillary clinton exhorts">hillary clinton exhorts</category>
      <category domain="http://securityratty.com/tag/white house">white house</category>
      <category domain="http://securityratty.com/tag/party">party</category>
      <category domain="http://securityratty.com/tag/nation">nation</category>
      <category domain="http://securityratty.com/tag/unite">unite</category>
      <category domain="http://securityratty.com/tag/afford">afford</category>
      <category domain="http://securityratty.com/tag/rally">rally</category>
      <category domain="http://securityratty.com/tag/republican">republican</category>
      <category domain="http://securityratty.com/tag/elect">elect</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/376167408/clinton-urges-p.html">Clinton Urges Party Unity In Powerful Convention Address</source>
    </item>
    <item>
      <title><![CDATA[Revealed: The Internet's Biggest Security Hole]]></title>
      <link>http://securityratty.com/article/8caa9112e1f1847177b7ec4de6c7c14c</link>
      <guid>http://securityratty.com/article/8caa9112e1f1847177b7ec4de6c7c14c</guid>
      <description><![CDATA[Researchers demonstrate a serious eavesdropping risk in the internet's fundamental infrastructure, putting proof to a theory that's long been whispered about in national security...]]></description>
      <content:encoded><![CDATA[Researchers demonstrate a serious eavesdropping risk in the internet's fundamental infrastructure, putting proof to a theory that's long been whispered about in national security circles.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=6e006d175d2a3c6a9722d16a5a95c66a" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=6e006d175d2a3c6a9722d16a5a95c66a" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=gdoBDK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=gdoBDK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=G3VECk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=G3VECk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=bjeWDk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=bjeWDk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=voYMoK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=voYMoK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=ob86HK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=ob86HK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=PnqDBk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=PnqDBk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=50uEyk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=50uEyk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=CXuIaK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=CXuIaK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/375709270" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/375709271" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 26 Aug 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/national security circles">national security circles</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/fundamental infrastructure">fundamental infrastructure</category>
      <category domain="http://securityratty.com/tag/theory">theory</category>
      <category domain="http://securityratty.com/tag/researchers">researchers</category>
      <category domain="http://securityratty.com/tag/proof">proof</category>
      <category domain="http://securityratty.com/tag/risk">risk</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/375709271/revealed-the-in.html">Revealed: The Internet's Biggest Security Hole</source>
    </item>
    <item>
      <title><![CDATA[Dem Convention: Live Audio of Denver Police]]></title>
      <link>http://securityratty.com/article/e3151a4b3ba7697837996903d3ae0854</link>
      <guid>http://securityratty.com/article/e3151a4b3ba7697837996903d3ae0854</guid>
      <description><![CDATA[Bored with the speeches? Scanner buffs set up a live feed of the Denver police dispatch frequency. You can almost taste the pepper...]]></description>
      <content:encoded><![CDATA[Bored with the speeches? Scanner buffs set up a live feed of the Denver police dispatch frequency. You can almost taste the pepper spray.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=52c0dc9f69d71755c3fb8f74fbe1773f" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=52c0dc9f69d71755c3fb8f74fbe1773f" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=fTmSXK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=fTmSXK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=QGFWvk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=QGFWvk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=rnmdxk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=rnmdxk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=tVmrhK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=tVmrhK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=8gK3QK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=8gK3QK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=Kc1ofk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=Kc1ofk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=lGyNGk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=lGyNGk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=P3ZK2K"><img src="http://feeds.wired.com/~f/wired/politics/security?i=P3ZK2K" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/375578376" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/375592238" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 26 Aug 2008 13:20:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/scanner buffs set">scanner buffs set</category>
      <category domain="http://securityratty.com/tag/pepper spray">pepper spray</category>
      <category domain="http://securityratty.com/tag/live feed">live feed</category>
      <category domain="http://securityratty.com/tag/bored">bored</category>
      <category domain="http://securityratty.com/tag/taste">taste</category>
      <category domain="http://securityratty.com/tag/speeches">speeches</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/375592238/democratic-conv.html">Dem Convention: Live Audio of Denver Police</source>
    </item>
    <item>
      <title><![CDATA[Airport Fast Pass Lets Redskins Fans Cut Security Line]]></title>
      <link>http://securityratty.com/article/69674275dfbf80177b4192e51ef392e0</link>
      <guid>http://securityratty.com/article/69674275dfbf80177b4192e51ef392e0</guid>
      <description><![CDATA[Redskins fans can now pay $100 a year to get into the football stadium faster and to jump to the front of the security lines at airports around the country. Will fast-pass lanes be coming to retailers...]]></description>
      <content:encoded><![CDATA[Redskins fans can now pay $100 a year to get into the football stadium faster and to jump to the front of the security lines at airports around the country. Will fast-pass lanes be coming to retailers or fast-food joints soon?<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=8b52f8f7d0705e9e0a525bc1f5282a49" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=8b52f8f7d0705e9e0a525bc1f5282a49" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=nrhwGK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=nrhwGK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=S2zqqk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=S2zqqk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=GcWkZk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=GcWkZk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=q5DH1K"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=q5DH1K" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=ybF8EK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=ybF8EK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=v5Vb4k"><img src="http://feeds.wired.com/~f/wired/politics/security?i=v5Vb4k" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=hX3Wfk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=hX3Wfk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=uaWmPK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=uaWmPK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/374531929" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/374531930" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 25 Aug 2008 13:15:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/redskins fans">redskins fans</category>
      <category domain="http://securityratty.com/tag/football stadium faster">football stadium faster</category>
      <category domain="http://securityratty.com/tag/fast-food joints">fast-food joints</category>
      <category domain="http://securityratty.com/tag/security lines">security lines</category>
      <category domain="http://securityratty.com/tag/fast-pass lanes">fast-pass lanes</category>
      <category domain="http://securityratty.com/tag/retailers">retailers</category>
      <category domain="http://securityratty.com/tag/country">country</category>
      <category domain="http://securityratty.com/tag/front">front</category>
      <category domain="http://securityratty.com/tag/jump">jump</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/374531930/airport-fast-pa.html">Airport Fast Pass Lets Redskins Fans Cut Security Line</source>
    </item>
    <item>
      <title><![CDATA[Boston Court's Meddling With 'Full Disclosure' Is Unwelcome]]></title>
      <link>http://securityratty.com/article/b65bde3bbcffdced12efa1287ce8e1e0</link>
      <guid>http://securityratty.com/article/b65bde3bbcffdced12efa1287ce8e1e0</guid>
      <description><![CDATA[In eerily similar cases in the Netherlands and the United States, courts have recently grappled with the computer-security norm of &quot;full disclosure,&quot; asking whether researchers should be permitted to...]]></description>
      <content:encoded><![CDATA[<p>
In eerily similar cases in the Netherlands and the United States, courts have recently grappled with the computer-security norm of "full disclosure," asking whether researchers should be permitted to disclose details of a fare-card vulnerability that allows people to ride the subway for free.
</p><p>
The "Oyster card" used on the <a href="http://www.schneier.com/essay-229.html">London Tube</a> was at issue in the Dutch case, and a similar fare card used on the <a href="http://blog.wired.com/27bstroke6/2008/08/injunction-requ.html">Boston "T"</a> was the center of the U.S. case. The Dutch court got it right, and the American court, in Boston, <a href="http://blog.wired.com/27bstroke6/2008/08/computer-scient.html ">got it wrong</a> from the start -- despite facing an open-and-shut case of First Amendment prior restraint.
</p><p>
The U.S. court has since <a href="http://blog.wired.com/27bstroke6/2008/08/federal-judge-t.html ">seen the error</a> of its ways -- but the damage is done. The MIT security researchers who were prepared to discuss their Boston findings at the DefCon security conference were <a href="http://blog.wired.com/27bstroke6/2008/08/eff-to-appeal-r.html ">prevented</a> from giving their talk.
</p><p>
The <a href="http://www.schneier.com/essay-146.html">ethics</a> of <a href="http://www.schneier.com/crypto-gram-0111.html#1">full disclosure</a> are intimately familiar to those of us in the computer-security field.  Before full disclosure became the norm, researchers would quietly disclose vulnerabilities to the vendors -- who would routinely ignore them. Sometimes vendors would even threaten researchers with legal action if they disclosed the vulnerabilities. 
</p><p>
Later on, researchers started disclosing the existence of a vulnerability but not the details.  Vendors responded by denying the security holes' existence, or calling them just theoretical.  It wasn't until full disclosure became the norm that vendors began consistently fixing vulnerabilities quickly.  Now that vendors routinely patch vulnerabilities, researchers generally give them advance notice to allow them to patch their systems before the vulnerability is published.  But even with this "responsible disclosure" protocol, it's the threat of disclosure that motivates them to patch their systems.  Full disclosure <a href="http://www.eff.org/files/filenode/MBTA_v_Anderson/letter081208.pdf">is the mechanism</a> (.pdf) by which computer security improves.
</p><p>
Outside of computer security, secrecy is much more the norm.  Some security communities, like locksmiths, behave much like medieval guilds, divulging the secrets of their profession only to those within it.  These communities <a href="http://news.cnet.com/8301-1009_3-10002138-83.html?tag=mncol">hate</a> <a href="http://www.slate.com/id/2195862/">open</a> <a href="http://www.theglobeandmail.com/servlet/story/RTGAM.20080711.wlpicking11/EmailBNStory/lifeMain/">research</a>, and have <a href="http://www.schneier.com/crypto-gram-0302.html#1">responded</a> with <a href="http://www.crypto.com/papers/kiss.html">surprising vitriol</a> to <a href="http://www.crypto.com/papers/flattery.html">researchers</a> who have found serious vulnerabilities in <a href="http://www.wired.com/culture/lifestyle/news/2004/09/64987">bicycle locks</a>, <a href="http://www.crypto.com/papers/safelocks.pdf">combination safes</a> (.pdf), <a href="http://www.crypto.com/masterkey.html">master-key systems</a> and <a href="http://blog.wired.com/27bstroke6/2008/08/medeco-locks-cr.html">many</a> other <a href="http://en.wikipedia.org/wiki/Lock_bumping">security devices</a>.  
</p><p>
Researchers have received a similar reaction from other communities more used to secrecy than openness.  Researchers -- sometimes <a href="http://compsci.ca/blog/lanschool-threatens-compscica-with-legal-actions/">young students</a> -- who discovered and published flaws in copyright-protection schemes, <a href="http://www.freedom-to-tinker.com/?p=1265">voting-machine security</a> and now wireless access cards have all suffered recriminations and sometimes lawsuits for not keeping the vulnerabilities secret.  When Christopher Soghoian created a website allowing people to print fake airline boarding passes, he got <a href="http://www.schneier.com/blog/archives/2006/11/forge_your_own.html">several unpleasant visits</a> from the FBI.
</p><p>
This preference for secrecy comes from confusing a vulnerability with information <em>about</em> that vulnerability.  Using <a href="http://www.schneier.com/crypto-gram-0205.html#1">secrecy as a security measure</a> is fundamentally fragile.  It assumes that the bad guys don't do their own security research.  It assumes that no one else will find the same vulnerability.  It assumes that information won't leak out even if the research results are suppressed.  These assumptions are all incorrect.
</p><p>
The problem isn't the researchers; it's the products themselves.  Companies will only design security as good as what their customers know to ask for.  Full disclosure helps customers evaluate the security of the products they buy, and educates them in how to ask for better security.  The Dutch court got it exactly right when it <a href="http://zoeken.rechtspraak.nl/resultpage.aspx?snelzoeken=true&searchtype=ljn&ljn=BD7578&u_ljn=BD7578">wrote</a>: "Damage to NXP is not the result of the publication of the article but of the production and sale of a chip that appears to have shortcomings."
</p><p>
In a world of forced secrecy, vendors make inflated claims about their products, vulnerabilities don't get fixed, and customers are no wiser.  Security research is stifled, and security technology doesn't improve.  The only beneficiaries are the bad guys.
</p><p>
If you'll forgive the analogy, the ethics of full disclosure parallel the ethics of not paying kidnapping ransoms.  We all know why we don't pay kidnappers: It encourages more kidnappings.  Yet in every kidnapping case, there's someone -- a spouse, a parent, an employer -- with a good reason why, in this one case, we should make an exception. 
</p><p>
The reason we want researchers to publish vulnerabilities is because that's how security improves. But in every case there's someone -- the Massachusetts Bay Transit Authority, the locksmiths, an election machine manufacturer -- who argues that, in this one case, we should make an exception.
</p><p>
We shouldn't.  The benefits of responsibly publishing attacks greatly outweigh the potential harm. Disclosure encourages companies to build security properly rather than relying on shoddy design and secrecy, and discourages them from promising security based on their ability to threaten researchers.  It's how we learn about security, and how we improve future security.
</p>
<p>---</p>

<p>
<em>Bruce Schneier is Chief Security Technology Officer of BT Global Services and author of </em><a href="http://www.schneier.com/bf.html">Beyond Fear: Thinking Sensibly About Security in an Uncertain World</a><em>. You can read more of his writings on his <a href="http://www.schneier.com/">website</a>.</em>
</p><br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=bca653e99d30d29fe90a724af1243458" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=bca653e99d30d29fe90a724af1243458" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=FBzLDK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=FBzLDK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=I2e1pk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=I2e1pk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=znpbtk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=znpbtk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=bR68YK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=bR68YK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=AMJk5K"><img src="http://feeds.wired.com/~f/wired/politics/security?i=AMJk5K" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=ZF5tzk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=ZF5tzk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=iWkWjk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=iWkWjk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=f5xemK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=f5xemK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/370586608" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/370586609" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 21 Aug 2008 00:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/computer security improves">computer security improves</category>
      <category domain="http://securityratty.com/tag/security improves">security improves</category>
      <category domain="http://securityratty.com/tag/computer security">computer security</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/mit security researchers">mit security researchers</category>
      <category domain="http://securityratty.com/tag/security devices">security devices</category>
      <category domain="http://securityratty.com/tag/security holes">security holes</category>
      <category domain="http://securityratty.com/tag/disclosure">disclosure</category>
      <category domain="http://securityratty.com/tag/security properly">security properly</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/370586609/securitymatters_0821">Boston Court's Meddling With 'Full Disclosure' Is Unwelcome</source>
    </item>
    <item>
      <title><![CDATA[Defense Spooks: Let's Control Enemy Minds]]></title>
      <link>http://securityratty.com/article/2405600bcfe670aac40e16295c673819</link>
      <guid>http://securityratty.com/article/2405600bcfe670aac40e16295c673819</guid>
      <description><![CDATA[Rather than developing performance-enhancing drugs for soldiers, defense agents want to study performance-degrading drugs for our enemies. A report recommends investment in neuroscience research that...]]></description>
      <content:encoded><![CDATA[Rather than developing performance-enhancing drugs for soldiers, defense agents want to study performance-degrading drugs for our enemies. A report recommends investment in neuroscience research that could reveal ways to eliminate our enemies' motivation to fight and get them to obey our commands.<br style="clear: both;"/>
      <a href="http://www.pheedo.com/click.phdo?s=7127b04e7a3ee74a1b439337f828c65f"><img alt="" style="border: 0;" border="0" src="http://www.pheedo.com/img.phdo?s=7127b04e7a3ee74a1b439337f828c65f"/></a>
  <img src="http://www.pheedo.com/feeds/tracker.php?i=7127b04e7a3ee74a1b439337f828c65f" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=m0AhRK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=m0AhRK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=jTL4ck"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=jTL4ck" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=m3QDyk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=m3QDyk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=6tfZGK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=6tfZGK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=HpqFOK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=HpqFOK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=Nqg9pk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=Nqg9pk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=hTLxsk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=hTLxsk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=6PNshK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=6PNshK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/366716889" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/366716890" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sat, 16 Aug 2008 09:03:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/report recommends investment">report recommends investment</category>
      <category domain="http://securityratty.com/tag/enemies">enemies</category>
      <category domain="http://securityratty.com/tag/drugs">drugs</category>
      <category domain="http://securityratty.com/tag/defense agents">defense agents</category>
      <category domain="http://securityratty.com/tag/neuroscience research">neuroscience research</category>
      <category domain="http://securityratty.com/tag/fight">fight</category>
      <category domain="http://securityratty.com/tag/soldiers">soldiers</category>
      <category domain="http://securityratty.com/tag/commands">commands</category>
      <category domain="http://securityratty.com/tag/reveal">reveal</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/366716890/the-dia-looks-i.html">Defense Spooks: Let's Control Enemy Minds</source>
    </item>
    <item>
      <title><![CDATA[Hacker Reportedly Kidnaps, Tortures Informant, Posts Picture as Warning]]></title>
      <link>http://securityratty.com/article/71ccde0d3717b4a648bb3556c00ddad3</link>
      <guid>http://securityratty.com/article/71ccde0d3717b4a648bb3556c00ddad3</guid>
      <description><![CDATA[Computer crime gets tough, as a Turkish hacker who specializes in selling ATM skimmers allegedly exacts revenge on an informant who was helping the media and...]]></description>
      <content:encoded><![CDATA[Computer crime gets tough, as a Turkish hacker who specializes in selling ATM skimmers allegedly exacts revenge on an informant who was helping the media and police.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=316d9fd1216e2ad7941d043ce4955c9f" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=316d9fd1216e2ad7941d043ce4955c9f" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=eYAovK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=eYAovK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=EGXi2k"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=EGXi2k" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=N90Dak"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=N90Dak" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=b9wpfK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=b9wpfK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=SpRmDK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=SpRmDK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=QsUy5k"><img src="http://feeds.wired.com/~f/wired/politics/security?i=QsUy5k" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=TEw18k"><img src="http://feeds.wired.com/~f/wired/politics/security?i=TEw18k" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=984HYK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=984HYK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/365930559" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/365930568" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 15 Aug 2008 15:05:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/computer crime">computer crime</category>
      <category domain="http://securityratty.com/tag/informant">informant</category>
      <category domain="http://securityratty.com/tag/turkish hacker">turkish hacker</category>
      <category domain="http://securityratty.com/tag/media">media</category>
      <category domain="http://securityratty.com/tag/police">police</category>
      <category domain="http://securityratty.com/tag/tough">tough</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/365930568/hacker-reported.html">Hacker Reportedly Kidnaps, Tortures Informant, Posts Picture as Warning</source>
    </item>
  </channel>
</rss>
