<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: average]]></title>
    <link>http://securityratty.com/tag/average</link>
    <description></description>
    <pubDate>Wed, 17 Sep 2008 10:40:03 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Managed Fast Flux Provider - Part Two]]></title>
      <link>http://securityratty.com/article/210da9c1b19bf76a539ca28b24edc989</link>
      <guid>http://securityratty.com/article/210da9c1b19bf76a539ca28b24edc989</guid>
      <description><![CDATA[We're slowly entering into a stage where RBN bullet proof hosting franchises are vertically integrating, and due to the requests from their customers are starting to offer that they refer to as...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://1.bp.blogspot.com/_wICHhTiQmrA/SOQymgVga0I/AAAAAAAACOw/geleqRWDOE0/s1600-h/pharma_spam_fastflux.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://1.bp.blogspot.com/_wICHhTiQmrA/SOQymgVga0I/AAAAAAAACOw/8PTQr8G6mBM/s200-R/pharma_spam_fastflux.png" /></a>We're slowly entering into a stage where <a href="http://ddanchev.blogspot.com/2008/09/estdomains-and-intercage-vs-cybercrime.html">RBN bullet proof hosting franchises</a> are vertically integrating, and due to the requests from their customers are starting to offer that they refer to as "mirrored hosting" which in practice is plain simple fast flux network consisting of RBN-alike purchased netblocks, and naturally, botnet infected hosts.<br />
<br />
Managed fast-fluxing is only starting to go mainstream, for instance, in July I found evidence that <a href="http://ddanchev.blogspot.com/2008/07/money-mule-recruiters-use-asproxs-fast.html">money mule recruiters were using ASProx's infected hosts as hosting infrastructure</a>, and in November, 2007, <a href="http://ddanchev.blogspot.com/2007/11/managed-fast-flux-provider.html">an infamous spamming software vendor</a> was also found to have been offering fast-flux services in the past.<br />
<br />
In this most recent fast-flux service, we have a known spammer and botnet master that in between self-serving himself on is way to ensure his portfolio of scammy domains remains online for a "little longer", is commercializing fast-fluxing and is offered a DIY service :<br />
<br />
"<i>Finally after hardwork and great appreciation from our normal bullet proof  hosting/server clients we are able to launch Mirrored hosting. What is </i><i>Mirrored hosting</i><i> ?</i><br />
<i><br />
================<br />
</i><i>Mirrored hosting</i><i> is a powerful mirrored  web hosting management, uses multiple Virtual servers to host  website with 100% uptime. </i><i>Mirrored hosting </i><i>is a combination of two things, which  are:<br />
<br />
1. Specially Designed Virtual Servers</i><br />
<i> 2. Powerful  Automated Control Panel</i><br />
<br />
<i>How does it work ?<br />
===============&nbsp;</i><br />
<br />
<i>Mirrored hosting</i><i> uses specially configured Virtual Servers making them link with the </i><i>Mirrored hosting</i><i> Control Panel  which is then controlled by our own control panel allowing us to provide smooth  streamline hosting with no downtime. No one is able to trace original IP of the  server or the place where the files are hosted so the websites/domains hosted  have a 100% Uptime. This is achieved by unique customisation of our Virtual Servers.<br />
<br />
<b>Actually, it takes ips around the world and our  powerful control panel just rotates the ips every 15 minutes. though all these  ips you will see will be fake no one can trace the orignal ip where files are  hosted. Sometimes the ip is from China, Korea, USA, UK, Japan, Lithuania etc.</b></i>"<br />
<br />
The concept has always been there for cybercriminals to take advantage of, but once it matures into a managed service it would undoubtedly lower down the entry barriers allowing yesterday's average phishers to take advantage of what only the "pros" were used to.<br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2007/09/storm-worms-fast-flux-networks.html">Storm Worm's Fast Flux Networks</a><br />
<b> </b><a href="http://ddanchev.blogspot.com/2007/11/managed-fast-flux-provider.html">Managed Fast Flux Provider</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/fast-flux-spam-and-scams-increasing.html">Fast Flux Spam and Scams Increasing</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/fast-fluxing-yet-another-pharmacy-scam.html">Fast Fluxing Yet Another Pharmacy Spam</a><br />
<a href="http://ddanchev.blogspot.com/2008/07/obfuscating-fast-fluxed-sql-injected.html">Obfuscating Fast Fluxed SQL Injected Domains</a><br />
<a href="http://ddanchev.blogspot.com/2008/05/storm-worm-hosting-pharmaceutical-scams.html">Storm Worm Hosting Pharmaceutical Scams</a><br />
<a href="http://blogs.zdnet.com/security/?p=1122">Fast-Fluxing SQL injection attacks executed from the Asprox botnet</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=AO71M"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=AO71M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=xZIrM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=xZIrM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=ZGgOm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=ZGgOm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=e7OAm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=e7OAm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=BVPbM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=BVPbM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=iS1HM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=iS1HM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=iQOUm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=iQOUm" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/409475392" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 02 Oct 2008 08:39:01 +0000</pubDate>
      <category domain="http://securityratty.com/tag/fast">fast</category>
      <category domain="http://securityratty.com/tag/fast flux provider">fast flux provider</category>
      <category domain="http://securityratty.com/tag/fast flux networks">fast flux networks</category>
      <category domain="http://securityratty.com/tag/recent fast-flux service">recent fast-flux service</category>
      <category domain="http://securityratty.com/tag/powerful control panel">powerful control panel</category>
      <category domain="http://securityratty.com/tag/control panel">control panel</category>
      <category domain="http://securityratty.com/tag/virtual servers">virtual servers</category>
      <category domain="http://securityratty.com/tag/multiple virtual servers">multiple virtual servers</category>
      <category domain="http://securityratty.com/tag/fast flux spam">fast flux spam</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/409475392/managed-fast-flux-provider-part-two.html">Managed Fast Flux Provider - Part Two</source>
    </item>
    <item>
      <title><![CDATA[The asymmetry of data loss - data thief has an upper hand]]></title>
      <link>http://securityratty.com/article/1279b28b3737ccdc02880482fc1987c9</link>
      <guid>http://securityratty.com/article/1279b28b3737ccdc02880482fc1987c9</guid>
      <description><![CDATA[I read this awesome book by Dan Geer, Economics and Strategies of Data Security . This gave me structure for my thoughts about a complex topic such as data security
When a data owner's (a business)...]]></description>
      <content:encoded><![CDATA[<P>I read this&nbsp;awesome book by Dan Geer, <A href="http://www.verdasys.com/thoughtleadership/">Economics and Strategies of Data Security</A>. This gave me structure&nbsp;for my thoughts about a complex topic such as data security. </P>
<P>When&nbsp;a&nbsp;data owner's (a business)&nbsp;sensitive data is breached it is&nbsp;difficult to quantify the monetary loss. According to respectable survey sources, the average cost of sensitive data breach for a large size company is about $50,000. I am attempting here to think about this in simple mathametical terms:</P>
<P>There is a data breach. From the data owner's perspective the loss is:</P>
<P><FONT color=#3366ff>Loss&nbsp;= Cost to protect data&nbsp;+ Loss of business due to data theft aka cost of competitive disadvantage</FONT></P>
<P>From the data thief's perspective</P>
<P><FONT color=#3333ff>Net Gain= [Cost of producing the data&nbsp; *&nbsp; Data freshness factor] - Cost to steal the data + Profit of business due to data aka gain of competitive advantage</FONT></P>
<P>From the above two equations it is very clear that this is not a zero sum game. There is a clear cost asymmetry for a data owner and for a data thief. When there is an asymmetry there is an opportunity. Data owner&nbsp;would not even know that the&nbsp;data is lost because&nbsp;the original copy of the data may be still intact - data thief could have simply copied the data.&nbsp;Data theft does not look like&nbsp;a car theft, there is no vacuum left behind.&nbsp;</P>
<P><STRONG><EM>This motivates a data thief to keep the cost to steal low, steal highly valuable data that has&nbsp;a long shelf life and in a way that data owner will never even be aware of theft.</EM></STRONG></P>
<P>From&nbsp;a data thief's perspective, the cost to steal data if kept high would disincentive him. Moreover, Data freshness factor, i.e. how valuable this data is over period of time plays an important role.&nbsp;A good example is content of today's newspaper is hardly valuable tomorrow, but the content of newspaper two days ahead (if can be procured)would be invaluable. Data relevance is a function of time and other marketplace variables - &nbsp;Data freshness Factor accounts for that variable. A good way to discourage data thief is to increase his/her cost to steal the data. There are other inferences from the above equation. If there exists&nbsp;no competitive advantage&nbsp;with the stolen data, hardly any thief would even venture&nbsp;to steal the&nbsp;data in the first place. If the cost of producing data is very low, then probably thief can just produce the data himself and would not attempt to steal the data. If the cost of&nbsp;theft is kept high, it would definitely deter the data thief from stealing data using technical mechanisms, then the data thief would&nbsp;exploit weak links in data security&nbsp;such as use of social engineering to get access to the data.</P>
<P>From data owner perspective protecting data becomes very important. How much would the owner be willing to spend? Not definitely the cost equal to cost of producing the data. 1% to 10% of cost of producing data is considered prudent. For a data owner it is difficult to estimate cost of data protection of a specific data, because it is not easy to chunkify data protection costs. Moreover, as Dan Geer says in his book, a data owner has to protect himself from number of intruders not just one.</P>
<P><EM><STRONG>It pays for a data owner to: be aware of data breaches (or data leaks), employ appropriate&nbsp;mechanisms to protect the data; the cost of protection which&nbsp;is fractional cost of&nbsp;the valuable&nbsp;data and&nbsp;enhance information security awareness of personnel who handle the data.</STRONG></EM></P>
<P><STRONG><EM>Data loss is not a zero sum game. The advantage is in favor of a data thief (data thieves rather).&nbsp;Data owner does not give much thought&nbsp;on&nbsp;the value of data&nbsp;unless&nbsp;there is a data theft.&nbsp;But,&nbsp;a&nbsp;data thief&nbsp;has every reason to think about economics of data theft before he acts to steal the data else data thief won't survive in this game and he is very well aware of his advantageous position.</EM></STRONG></P>]]></content:encoded>
      <pubDate>Wed, 01 Oct 2008 02:33:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/data owner perspective">data owner perspective</category>
      <category domain="http://securityratty.com/tag/data owner">data owner</category>
      <category domain="http://securityratty.com/tag/data">data</category>
      <category domain="http://securityratty.com/tag/thief">thief</category>
      <category domain="http://securityratty.com/tag/owner">owner</category>
      <category domain="http://securityratty.com/tag/data freshness factor">data freshness factor</category>
      <category domain="http://securityratty.com/tag/data protection costs">data protection costs</category>
      <category domain="http://securityratty.com/tag/discourage data thief">discourage data thief</category>
      <category domain="http://securityratty.com/tag/protect data">protect data</category>
      <source url="http://ravichar.blogharbor.com/blog/_archives/2008/10/1/3910766.html">The asymmetry of data loss - data thief has an upper hand</source>
    </item>
    <item>
      <title><![CDATA[Gov. Palin, Yahoo! Email and SecurityA Call To Action?]]></title>
      <link>http://securityratty.com/article/79da72f5c48bc03e7980047607f10b49</link>
      <guid>http://securityratty.com/article/79da72f5c48bc03e7980047607f10b49</guid>
      <description><![CDATA[The McCain-Palin campaign has offered a rather muted response to the Yahoo! email account breach of Gov. Palin, and so far, the grand jury has opted not to indict the hacker. Is this the end to this...]]></description>
      <content:encoded><![CDATA[<p>The McCain-Palin campaign has offered a rather muted  response to the Yahoo! email account breach of Gov. Palin, and so far, the  grand jury has opted not to indict the hacker. Is this the end to this sordid  tale? Not quite. I believe that the average citizen has been left with a myriad  of questions as to the security in as basic a utility as free email. </p>
<p><strong>What&rsquo;s  going on? </strong></p>
<p>&ldquo;Rubico&rdquo;, as the hacker called himself, used an automated  password recovery tool where he was asked fairly simple questions to identify  himself as Gov. Palin [birthday, zip code, etc.]. Rubico found answers to these  within 45 minutes on Google and Wikipedia! Wow! <B>Is it really that easy to hack into email or messaging services  that the common person uses globally?...</b>]]></content:encoded>
      <pubDate>Mon, 29 Sep 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/email">email</category>
      <category domain="http://securityratty.com/tag/palin">palin</category>
      <category domain="http://securityratty.com/tag/free email">free email</category>
      <category domain="http://securityratty.com/tag/mccain-palin campaign">mccain-palin campaign</category>
      <category domain="http://securityratty.com/tag/questions">questions</category>
      <category domain="http://securityratty.com/tag/fairly simple questions">fairly simple questions</category>
      <category domain="http://securityratty.com/tag/email account breach">email account breach</category>
      <category domain="http://securityratty.com/tag/gov">gov</category>
      <category domain="http://securityratty.com/tag/palin birthday">palin birthday</category>
      <source url="http://www.rsa.com/blog/blog_entry.aspx?id=1355">Gov. Palin, Yahoo! Email and SecurityA Call To Action?</source>
    </item>
    <item>
      <title><![CDATA[Corporate Greed and the Destabilization of Society]]></title>
      <link>http://securityratty.com/article/155810725ba943a1b35e1c2b39138f7a</link>
      <guid>http://securityratty.com/article/155810725ba943a1b35e1c2b39138f7a</guid>
      <description><![CDATA[In The Audacity of Capital Markets we briefly touched on the culture of arrogance and greed in financial services. It is interesting because if you look at the various software players that are...]]></description>
      <content:encoded><![CDATA[<p>In <a title="The Audacity of Capital Markets" rel="bookmark" href="../2008/09/19/the-audacity-of-capital-markets/">The Audacity of Capital Markets</a> we briefly touched on the culture of arrogance and greed in financial services.  It is interesting because if you look at the various software players that are focused on selling to financial services, you will easily see that they have bought into the same &#8220;feed the beast&#8221; culture that has contributed to the destabilization of the economy and, in turn, society.</p>
<p>For example, the &#8220;Average Joe Investor&#8221; does not care about &#8220;best order execution&#8221; or &#8220;smart order routing,&#8221; this is for &#8220;the big boys.&#8221;  As we all know, saving a few pennies or dollars per transaction to &#8220;Average Joe Investor&#8221; does nothing for them when their retirement nest egg is lost due to corporate greed and negligence.     The folks who &#8220;really care&#8221; about shaving a few milliseconds off market execution are the companies that are trading high volumes of exotic derivatives and baskets who have, for the most part, zero interest in the personal financial portfolio of &#8220;Jane in Iowa&#8221; or &#8220;Joe in Kansas.&#8221;</p>
<p>I am really amazed to see the dominance of greed in corporate America and the lack of corporate social responsibility.  Risk taking and &#8220;split second trading&#8221; does little for any small. individual investor and has proven to destabilize our society.    Who cares about saving a few pennies or dollars in market executive?</p>
<p>The answer: Only the greedy corporations, the same people responsible for the current destabilization, chao and near collaspe of our entire financial system.   Homes lost, unprecedented bankruptcies. and money market funds less than par value!   You no doubt have read that folks in the <a href="http://www.reservefunds.com/" target="_blank">Reserve Money Market funds</a> cannot even withdraw their &#8220;safe money.&#8221;  Investors in the Reserve Funds are being told that for every dollar they invested in a money market, they now only have 97 cents and cannot withdraw their capital as the Reserve waits for a government bailout.</p>
<p>What is to blame? Greed and profits over corporate social responsibility are to blame.</p>
<p>I read where some folks think the government needs to regulate market-related news, supposedly to stabilize trading based on news.   Regulating news has another name -  &#8220;censorship&#8221; - but who cares about the US Constitution when money and split second algo trading is involved?    I am amazed.   Folks in financial services just will say or do anything to make a buck, or keep from losing one, even at the expense of society and our basic constitutional freedoms.  News is not regulated in our democratic society, nor should it be to make algorithmic trading &#8220;better&#8221;.     What we need is less split second, computerized algo trading and more stablity.   Machine processing should not dicate nor mandate changes to our democratic principles.</p>
<p>Nor should our lives in a free society be censored or regulated because of the trading requirements for split second transactions that benefit large corporations.    The average investor does not need an unstable financial system trading exotic derivatives and baskets at the speed of light.  This requirement is driven by corporate greed that destabilizes the core economy and fabric of our society.</p>
<p>Of couse, many of the same folks would like for us to believe that technology is the answer.  This is a fallacy.</p>
<p>Corporate greed is destabilizing society.   What need to be regulated is not the news, but corporate risk taking and corporate goverance.  Individual investors do not need lightspeed transactions in an unstable world.   Citizens and families need a secure, stable economic infrastructure, something that has been lost in the culture of corporate greed, but hopefully not forever.</p>
]]></content:encoded>
      <pubDate>Tue, 23 Sep 2008 14:24:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/society">society</category>
      <category domain="http://securityratty.com/tag/greed">greed</category>
      <category domain="http://securityratty.com/tag/safe money">safe money</category>
      <category domain="http://securityratty.com/tag/money">money</category>
      <category domain="http://securityratty.com/tag/money market funds">money market funds</category>
      <category domain="http://securityratty.com/tag/democratic society">democratic society</category>
      <category domain="http://securityratty.com/tag/average joe investor">average joe investor</category>
      <category domain="http://securityratty.com/tag/free society">free society</category>
      <category domain="http://securityratty.com/tag/joe">joe</category>
      <source url="http://www.thecepblog.com/2008/09/23/corporate-greed-and-the-destabilization-of-society/">Corporate Greed and the Destabilization of Society</source>
    </item>
    <item>
      <title><![CDATA[Good to Great, Built to Last Whats Next for Creating Great Companies]]></title>
      <link>http://securityratty.com/article/44891eda13f524e90b0edc481f688e38</link>
      <guid>http://securityratty.com/article/44891eda13f524e90b0edc481f688e38</guid>
      <description><![CDATA[I attended the Inc. 500 conference on Friday and absorbed one of the best conference keynote presentations I have ever witnessed delivered by Jim Collins Author of Built to Last and Good to Great
I...]]></description>
      <content:encoded><![CDATA[<p>I attended the <a href="http://blog.inc.com/inc5000/2008/09/introduction_blogging_the_inc.html">Inc. 500 conference on Friday</a> and absorbed one of the <strong><span style="text-decoration: underline;">best</span></strong> conference keynote presentations I have ever witnessed delivered by Jim Collins – Author of “Built to Last” and “Good to Great”.</p>
<p>I have to admit that I was already a fan of <a href="http://blog.inc.com/inc5000/2008/09/three_things_on_jim_collins_st.html" target="_blank">Collins&#8217; quantitative style blended with clever insight</a>, but this was the first time that I had seen him in person, and he was just spectacular. He has a vivid, animated way of telling a story, and had a great sense of humor. This combination of presentation skill was put to immediate use with his first statement drawing a hearty laugh from the audience full of entrepreneurs.</p>
<blockquote><p>&#8220;How many of you in the room are constitutionally unemployable?&#8221;</p></blockquote>
<p>Much of his remaining presentation provided interesting stories and insight from the research that he has done to understand the make-up of exceptional companies.</p>
<p>As Jim said, he has spent years studying the contrast between average companies and exceptional companies. They faced the same set of variables… similar economic conditions, similar competition for top human resources, and a similar set of huge unknowns.</p>
<p>What is the single biggest element of difference?</p>
<p>Not a function of the cards you are dealt, or circumstance… it is conscious choice and discipline.</p>
<p>Jim’s key principles &amp; disciplines that have come from the studies we have worked on:</p>
<ol>
<li>Building greatness is a cumulative never ending process! The idea that no matter how exceptional, you are always only relatively as good as to what you can do next.</li>
<li>Most overnight successes are 20 years in the making…. Wal-mart  took 13 years to get to 125 stores. Starbucks required 17 years to get to 38 stores.</li>
</ol>
<blockquote><p>&#8220;If you start to break Packard’s law, and there are very few laws of business, it is like breaking a law of physics for building great companies.&#8221; - David Packard (Co-founder of HP)</p></blockquote>
<p>If you allow growth to exceed your ability to get enough of the right people to fill the key seats to execute on the growth brilliantly, you will fall as surely as a stone dropped from your hand. This is one of those timeless truths that extends beyond technology and economics.</p>
<p>The number one constraint on growth and sustained success…</p>
<p><strong>An ability to get enough of the right people in the key seats to achieve that sustained growth.</strong></p>
<p>The discipline that WHO comes before WHAT. <a href="http://www.businessweek.com/magazine/content/08_34/b4097032721156.htm?chan=magazine+channel_special+report">Collins always kept coming back to the &#8220;who&#8221; thing</a> over and over again. He said, “The more turbulent the world, (given the great current economic uncertainty of our financial system) the more important this issue is.”</p>
<p>A question from the audience came near the end of his session… How do you figure out who are the right people to put in key seats on the bus?</p>
<p>Collins responded with “Given that I stand here amidst a room full of unmotivated people… the right people are self motivated, self disciplined, self managed, The task is <strong><em>not</em></strong> to motivate unmotivated people, the task is <strong><em>not</em></strong> to have to manage people… self motivated, figured it out from there… self motivated people <strong><em>don’t need tons of management</em></strong> … when you have to start managing, you know that you have the wrong person at the task.”</p>
<p>Final thoughts:</p>
<p>Greatness is not a function of circumstance. Greatness is a function of conscious choice and discipline. It is not a matter of circumstance, it is one of choices.</p>
<p>I believe that every one of the <a href="http://www.inc.com/inc5000/index.html">Inc. 500 companies</a> that I <a href="http://secure.lenos.com/lenos/inc/Inc500WashingtonDC/">met at this conference</a> achieved the list because they did not embrace the status quo. Incredible passion, an unwillingness to accept failure and an excessive and compulsive willingness to solve customer’s problems were key ingredients in the business building formula for the entrepreneurs that were at the conference.</p>
]]></content:encoded>
      <pubDate>Mon, 22 Sep 2008 14:16:23 +0000</pubDate>
      <category domain="http://securityratty.com/tag/companies">companies</category>
      <category domain="http://securityratty.com/tag/people">people</category>
      <category domain="http://securityratty.com/tag/collins">collins</category>
      <category domain="http://securityratty.com/tag/collins quantitative style">collins quantitative style</category>
      <category domain="http://securityratty.com/tag/average companies">average companies</category>
      <category domain="http://securityratty.com/tag/manage people">manage people</category>
      <category domain="http://securityratty.com/tag/exceptional companies">exceptional companies</category>
      <category domain="http://securityratty.com/tag/jim collins author">jim collins author</category>
      <category domain="http://securityratty.com/tag/conference keynote presentations">conference keynote presentations</category>
      <source url="http://blog.sciencelogic.com/good-to-great-built-to-last-whats-next-for-creating-great-companies/09/2008">Good to Great, Built to Last Whats Next for Creating Great Companies</source>
    </item>
    <item>
      <title><![CDATA[Wee-Fi: CSIRO Wins Patent Appeal; Zune-Fi in SF; Kodak ESP 9]]></title>
      <link>http://securityratty.com/article/95aa70e977b254cabeb9c3b2679b4b8d</link>
      <guid>http://securityratty.com/article/95aa70e977b254cabeb9c3b2679b4b8d</guid>
      <description><![CDATA[Australian tech office wins appeal: Buffalo sinks further into the hole as it loses its appeal against a judgement over its use of what the Australian CSIRO technical agency asserts is its patented...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><a href="http://www.zdnet.com.au/news/hardware/soa/CSIRO-victorious-in-Wi-Fi-appeal/0,130061702,339292134,00.htm?omnRef=1337"><strong>Australian tech office wins appeal:</strong></a> Buffalo sinks further into the hole as it loses its appeal against a judgement over its use of what the Australian CSIRO technical agency asserts is its patented technology used in all 802.11 implementations. The case, in the patent-holder-friendly US Eastern District Court of Texas--a venue that may be dethroned as a <em>forum coveniens</em> for patentholders' suits in new legislation--prevents Buffalo from importing or selling gear in the US with Wi-Fi technology embedded. In Japan, the patent office threw out CSIRO's patent. While Cisco paid CSIRO as the result of an acquisition of an Australian company a few years ago, most US-based technology giants are involved in resisting the patent's continued validation and enforcement. I've read the patent and some of the suits, and as a non-patent expert, it's clear CSIRO original invention didn't cover what's at stake. However, CSIRO was allowed in a subsequent filing to extend its patent to cover already-in-use technology in a way that seems odd to me, but happens in patents all the time. Many millions of dollars and many more years may be expended before a resolution happens. CSIRO apparently isn't asking for insane fees, although anything paid to them would be passed along to consumers. If companies settled, this might result in an increase of 1 to 5 percent on retail prices. It may ultimately effect WiMax, too, though no suits in that area have been filed.</p>

<p><a href="http://news.cnet.com/8301-10805_3-10046542-75.html"><strong>Finding Zune-Fi:</strong></a> Ina Fried of News.com wanders the polite streets of San Francisco in search of Zune connections over Wi-Fi. She finds a few, and has a good experience. One cafe owner sees the ease with which she can stream music and calls it cool. She can't connect at the long-running Google-sponsored free Wi-Fi at Union Square, however, which means the Wi-Fi likely has an accept button that must be pressed. Surely Microsoft could insert a little technology that would allow a browser-free acceptance of terms? Probably involves Yet Another Protocol: the Wi-Fi Terms Browser-Free Presentation Protocol (WTBFPP).</p>

<p><img src="http://wifinetnews.com//images/2008/kodakesp9.jpg" alt="kodakesp9.jpg" border="0" width="150" height="120" align="right" /><a href="http://www.kodak.com/eknec/PageQuerier.jhtml?pq-path=13572&pq-locale=en_US"><strong>Kodak adds interesting Wi-Fi enabled all-in-one:</strong></a> The new Kodak ESP 9 is a multi-function printer (fax, scan, print, copy) that connects to a network via Wi-Fi or Ethernet. The $300 device spits out 30 pages per minutes in color, 32 ppm in black only. Kodak claims that the model line to which the ESP belongs uses ink in a vastly more efficient manner than the "average of comparable consumer inkjet printers." </p>]]></content:encoded>
      <pubDate>Mon, 22 Sep 2008 05:53:19 +0000</pubDate>
      <category domain="http://securityratty.com/tag/csiro">csiro</category>
      <category domain="http://securityratty.com/tag/patent">patent</category>
      <category domain="http://securityratty.com/tag/cover">cover</category>
      <category domain="http://securityratty.com/tag/cover already-in-use technology">cover already-in-use technology</category>
      <category domain="http://securityratty.com/tag/free wi-fi">free wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/kodak">kodak</category>
      <category domain="http://securityratty.com/tag/technology">technology</category>
      <category domain="http://securityratty.com/tag/wi-fi technology">wi-fi technology</category>
      <source url="http://wifinetnews.com/archives/008452.html">Wee-Fi: CSIRO Wins Patent Appeal; Zune-Fi in SF; Kodak ESP 9</source>
    </item>
    <item>
      <title><![CDATA[The Audacity of Capital Markets]]></title>
      <link>http://securityratty.com/article/850f85c1d4f79f75ab94faca2b325146</link>
      <guid>http://securityratty.com/article/850f85c1d4f79f75ab94faca2b325146</guid>
      <description><![CDATA[It it fairly well established that overt risk tasking, greed and corporate arrogance by financial services companies have destroyed the real estate market and crippled the global economy. Countless...]]></description>
      <content:encoded><![CDATA[<p>It it fairly well established that overt risk tasking, greed and corporate arrogance by financial services companies have destroyed the real estate market and crippled the global economy.    Countless millions of folks have lost their homes and life savings.  This corporate arrogance and greed was like a &#8220;greed virus,&#8221; spreading across the world like a plague.</p>
<p>A similar arrogance is happening in CEP-land, where, it seems, each and every financial services event processing application is now a &#8220;CEP application&#8221; just because someone in capital markets puts &#8220;CEP&#8221; in the same paragraph.     I find it ridiculous that the same market of folks who have helped destroy the global economy are now the world&#8217;s self-proclaimed authorities on complex event processing.  Amazing, if you really think about it, isn&#8217;t it?</p>
<p>I read many posts these days by folks in the capital markets trading world, claiming their message routing application is &#8220;CEP,&#8221; or their algo trading application is &#8220;CEP,&#8221;  - feeds and speed, typical of what &#8220;turns on&#8221; the financial services folks.   As an editorial note: I recall when I worked for a software company, folks on the same team who worked on Wall Street would look down on folks with many years of IT experience outside of financial services.   Some would say &#8220;he is only a security guy&#8221; in their attempt to put down anyone who does not have trading floor IT experience on their resume.    I found it all quite ridiculous and foolish.</p>
<p>My resume, for what it is worth, has a number of financial services companies, including either assessing, architecting or building large scale security systems for S.W.I.F.T, Chase or SBC.   This experience does not seem to &#8220;count&#8221; with the trading floor folks, since security is more about getting things right, not just supporting a form of gaming or gambling with other peoples money, with more feeds and speeds the better.</p>
<p>Of late, as I have watched the CEP/EP space evolve,  and unfortunately, I see a similar type of &#8220;capital markets virus&#8221; spreading into CEP-land.   Folks on the trading side of financial services seem to think that whatever they say or do is right, and whatever others outside of the trading side do is wrong.  These folks are quick to ridicule others who have far more experience than they do, outside of the trading floor of capital markets.</p>
<blockquote><p>After all, mostly what they do on the trading side is route orders -  and if a little old lady in a small town in Iowa loses her life savings because of a bad investment decision, it means little to the folks on the trading floor, the market folks are into feeds and speed - just keep the beast alive.  Place your bet on this market or that one!   Away we go, faster and faster!!!!</p></blockquote>
<p>I am sometimes a little sad to observe the same audacity in the CEP world.  Instead of focusing on the hard complex problems that require accuracy, the original set of problems defined when the phrase &#8220;complex event processing&#8221; was minted, the capital market folks have hijacked the term for their marketing purposes in algo trading and order managment systems.  These same people ridicule others who are working to solve the (originally stated) complex event processing problems, problems the capital market traders seemingly cannot understand, since they have never worked on complex network or security management problems.</p>
<p>Nevermind, that these &#8220;ultra low latency&#8221; systems cannot accurately detect a complex money laundering scheme or an elaborate fraud.   Nevermind that these &#8220;CEP engines&#8221; cannot accuracy insure that Average Joe does not lose his hard earned money in a fraud scheme.</p>
<p>I have no problem with folks in capital markets using the term CEP, but they should not ridicule those in technical areas that are not focused on keeping the &#8220;trading beast&#8221; alive so people can lose their life savings in a blink of an eye; but instead focused on solving complex problems such as the class of problems called out when the three letter acronym &#8220;CEP&#8221; was created.</p>
]]></content:encoded>
      <pubDate>Fri, 19 Sep 2008 07:18:37 +0000</pubDate>
      <category domain="http://securityratty.com/tag/capital market folks">capital market folks</category>
      <category domain="http://securityratty.com/tag/market folks">market folks</category>
      <category domain="http://securityratty.com/tag/financial services">financial services</category>
      <category domain="http://securityratty.com/tag/financial services folks">financial services folks</category>
      <category domain="http://securityratty.com/tag/folks">folks</category>
      <category domain="http://securityratty.com/tag/complex">complex</category>
      <category domain="http://securityratty.com/tag/capital markets">capital markets</category>
      <category domain="http://securityratty.com/tag/hard complex">hard complex</category>
      <category domain="http://securityratty.com/tag/complex money">complex money</category>
      <source url="http://www.thecepblog.com/2008/09/19/the-audacity-of-capital-markets/">The Audacity of Capital Markets</source>
    </item>
    <item>
      <title><![CDATA[All-in-one security suites do make it easier on casual users.]]></title>
      <link>http://securityratty.com/article/27f56e5292263bd7f769301383f8374a</link>
      <guid>http://securityratty.com/article/27f56e5292263bd7f769301383f8374a</guid>
      <description><![CDATA[It will be interesting to see how the all-in-ones do with speed


clipped from www.pcmag.com

Security Suites Speed Up



Modern suites look at your browsing activity in a number of different ways....]]></description>
      <content:encoded><![CDATA[<div > It will be interesting to see how the all-in-ones do with speed. </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clipmark/1969326A-981B-4D55-9E80-F8998EFC6F7C/" title="go to this clipmark"><img src="http://content.clipmarks.com/blog_icon/f72420dd-44cc-4ccb-8c04-7d2aa489832a/1969326A-981B-4D55-9E80-F8998EFC6F7C/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.pcmag.com/article2/0,2817,2330480,00.asp" href="http://www.pcmag.com/article2/0,2817,2330480,00.asp" style="font-size: 11px;">www.pcmag.com</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.pcmag.com/article2/0,2817,2330480,00.asp -->
<div style="margin: 4px 0px; color: #000000; font-size: 20px;"> Security Suites Speed Up </div>
</td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.pcmag.com/article2/0,2817,2330480,00.asp --><P><br />
Modern suites look at your browsing activity in a number of different ways. They block drive-by downloads, check for fraud, and perhaps block inappropriate content for your kids. To see if this analysis slows down the browsing experience I used an ActiveX control that measures when a page has completely loaded, along with a script that launches dozens of URLs with lots of content. Norton had the least impact on surfing speed, adding about 13 percent to the time required for this test. Kaspersky, which did well in most of my other performance tests, slowed browsing by over 60 percent. Given the amount of time the average person spends surfing the Web, this is a tough one for Kaspersky to fall down on.<br />
</P></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/1969326A-981B-4D55-9E80-F8998EFC6F7C/blog/" title="blog or email this clip"><img src="http://content8.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
<BR/><MAP name="bdv_RSS_Ad_180908120436"><AREA alt="Feed Ads By BidVertiser.com" shape="poly" coords="0,0,467,0,467,45,315,45,315,59,0,59" href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=180908120436&amp;click=1" target="_blank" /><AREA alt="Feed Ads By BidVertiser.com" shape="rect" coords="315,45,467,59" href="http://www.bidvertiser.com/bdv/bidvertiser/bdv_ref.dbm?Ref_PID=165886&amp;Ref_Option=main&amp;source=90614506" target="_blank" /></MAP><P><a href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=180908120436&amp;click=1" target="_blank"><IMG src="http://bdv.bidvertiser.com/BidVertiser.dbm?pid=165886&amp;bid=400950&amp;PHS=180908120436&amp;rssimage=1&amp;rSRC=2" border="0" usemap="#bdv_RSS_Ad_180908120436" /></a></P>]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 20:04:36 +0000</pubDate>
      <category domain="http://securityratty.com/tag/speed">speed</category>
      <category domain="http://securityratty.com/tag/security suites speed">security suites speed</category>
      <category domain="http://securityratty.com/tag/block drive-by downloads">block drive-by downloads</category>
      <category domain="http://securityratty.com/tag/block">block</category>
      <category domain="http://securityratty.com/tag/average person spends">average person spends</category>
      <category domain="http://securityratty.com/tag/time">time</category>
      <category domain="http://securityratty.com/tag/percent">percent</category>
      <category domain="http://securityratty.com/tag/content">content</category>
      <category domain="http://securityratty.com/tag/launches dozens">launches dozens</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=621">All-in-one security suites do make it easier on casual users.</source>
    </item>
    <item>
      <title><![CDATA[Open Source Intel Rocks, But It's Classified]]></title>
      <link>http://securityratty.com/article/4a0bbd201808f34356bda015cb5a92a7</link>
      <guid>http://securityratty.com/article/4a0bbd201808f34356bda015cb5a92a7</guid>
      <description><![CDATA[The head of the CIA doesn't want you to know what he watches on TV. So-called &quot;open source&quot; intelligence -- tidbits taken from newspapers, internet postings, and TV shows -- may come from unclassified...]]></description>
      <content:encoded><![CDATA[The head of the CIA doesn't want you to know what he watches on TV. So-called "open source" intelligence -- tidbits taken from newspapers, internet postings, and TV shows -- may come from unclassified material, but the CIA chef says the finished products are too sensitive for average folks to see.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=865c5a17fd2d3be568e14a477c3b187c" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=865c5a17fd2d3be568e14a477c3b187c" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=Pi18L"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=Pi18L" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=4gnQl"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=4gnQl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=WYsOl"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=WYsOl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=HPsaL"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=HPsaL" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=osvCL"><img src="http://feeds.wired.com/~f/wired/politics/security?i=osvCL" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=vVrIl"><img src="http://feeds.wired.com/~f/wired/politics/security?i=vVrIl" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=JGKKl"><img src="http://feeds.wired.com/~f/wired/politics/security?i=JGKKl" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=4cKWL"><img src="http://feeds.wired.com/~f/wired/politics/security?i=4cKWL" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/395402669" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/395402692" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 11:45:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/cia chef">cia chef</category>
      <category domain="http://securityratty.com/tag/cia">cia</category>
      <category domain="http://securityratty.com/tag/source">source</category>
      <category domain="http://securityratty.com/tag/internet postings">internet postings</category>
      <category domain="http://securityratty.com/tag/average folks">average folks</category>
      <category domain="http://securityratty.com/tag/tv">tv</category>
      <category domain="http://securityratty.com/tag/head">head</category>
      <category domain="http://securityratty.com/tag/newspapers">newspapers</category>
      <category domain="http://securityratty.com/tag/tidbits">tidbits</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/395402692/download-hayden.html">Open Source Intel Rocks, But It's Classified</source>
    </item>
    <item>
      <title><![CDATA[Interop NY Keynotes: Novell]]></title>
      <link>http://securityratty.com/article/ed3e3cadb42982e0cf29b0c202baba08</link>
      <guid>http://securityratty.com/article/ed3e3cadb42982e0cf29b0c202baba08</guid>
      <description><![CDATA[Novell President and Chief Executive Officer Rob Hovsepian learned what interoperability meant when he had a large retailer client who wanted all his businesses to connect and close-out at the same...]]></description>
      <content:encoded><![CDATA[<p>Novell <a href="http://www.novell.com/company/bios/rhovsepian.html" target="_blank">President and Chief Executive Officer Rob Hovsepian</a> learned what interoperability meant when he had a large retailer client who wanted all his businesses to connect and close-out at the same time.</p>
<p><strong>Making IT work as One</strong></p>
<p>How does my company stay efficient while we&#8217;re using technologies around interoperability? How can innovation help my business?</p>
<p>Top business needs:</p>
<ul>
<li>Reduce cost</li>
<li>Manage complexity</li>
<li>Mitigate risk</li>
</ul>
<p>Mixed IT environments are a reality for almost all organizations. Different environments, architectural strategies, desktop profiles, etc. There are benefits to having mixed source environments, although homogenous environments are ideal. On average 46,000 hours in an organization are spent on Sarbanes-Oxley standards.</p>
<p>Some considerations to make IT work as one:</p>
<ul>
<li>Strategy</li>
<li>Solutions</li>
<li>Ecosystem</li>
</ul>
<p><strong>Strategy</strong></p>
<p>Actionable strategy is key. The emergence of three silos (applications, systems and infrastructure, and operations) are now moved into one. There is a lot of pressure to make these pieces come together.</p>
<p><strong>Solutions</strong></p>
<p>You need focused solutions to solve problems today while keeping an eye to the future. There are three main needs: the data center, end-user computing, and identity and security. This is also what is the most important to the market right now. The end goal is the agility of the data center.</p>
<p>Data Center Challenges</p>
<ul>
<li>Create an agile IT infrastructure</li>
<li>Address power and space constraints</li>
<li>Deliver performance, security and availability</li>
<li>Manage hardware, software and labor costs</li>
<li>Meet service level agreements</li>
</ul>
<p>Data Center Solutions</p>
<ul>
<li>Workload management - green IT and server efficiency, unified physical and virtual environment</li>
<li>Virtualization and Consolidation - business continuity and disaster recovery</li>
<li>Enterprise Servers</li>
</ul>
<p>End-User Computing Solutions</p>
<ul>
<li>Collaboration</li>
<li>Enterprise desktops - Novell uses Linux and Open Office, interesting to note</li>
<li>Endpoint management</li>
</ul>
<p>Identity and Security Challenges</p>
<ul>
<li>Minimize risk, uncertainty and policy violations</li>
<li>Provide timely and secure access to information</li>
<li>Ensure, document and prove information security</li>
<li>Reduce the cost of proving compliance</li>
<li>Reduce the cost and complexity of governance</li>
</ul>
<p>Identity and Security Solutions</p>
<ul>
<li>Identity and Access Management - user provisioning, role management, access management</li>
<li>Compliance Management - Audit, Governance, Risk Management and Compliance (GRC), IT controls automation, Security, Information and Event Management (SIEM)</li>
</ul>
<p><strong>Ecosystem</strong></p>
<p>The ecosystem is powerful. Companies should challenge partners for innovation and interoperability.</p>
<p>Community Innovation - open source and open standards</p>
<p>IT Landscape - Mixed IT Environments</p>
<ul>
<li>Consulting, systems integration vendors</li>
<li>Application vendors</li>
<li>Systems software vendors (Novell)</li>
<li>Hardware, network vendors</li>
</ul>
<p>How does your ecosystem help your company? How do your partners help? What is their role in the industry to help you? How are all the vendors in the industry helping you?</p>
]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 10:40:03 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security solutions">security solutions</category>
      <category domain="http://securityratty.com/tag/solutions">solutions</category>
      <category domain="http://securityratty.com/tag/data center solutions">data center solutions</category>
      <category domain="http://securityratty.com/tag/systems">systems</category>
      <category domain="http://securityratty.com/tag/systems integration vendors">systems integration vendors</category>
      <category domain="http://securityratty.com/tag/vendors">vendors</category>
      <category domain="http://securityratty.com/tag/homogenous environments">homogenous environments</category>
      <category domain="http://securityratty.com/tag/environments">environments</category>
      <category domain="http://securityratty.com/tag/application vendors">application vendors</category>
      <source url="http://blog.sciencelogic.com/interop-ny-keynotes-novell/09/2008">Interop NY Keynotes: Novell</source>
    </item>
  </channel>
</rss>
