<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: crowd]]></title>
    <link>http://securityratty.com/tag/crowd</link>
    <description></description>
    <pubDate>Wed, 23 Jul 2008 03:41:47 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Expert to Obama: Take the Lead on Nuke Cuts]]></title>
      <link>http://securityratty.com/article/963ad83c8256d751a5fd9689b05a082d</link>
      <guid>http://securityratty.com/article/963ad83c8256d751a5fd9689b05a082d</guid>
      <description><![CDATA[Danger Room's series on national security threats facing the new administration kicks off with nuclear proliferation authority Joseph Cirincione. He tells the Obama crowd to lead by example on atomic...]]></description>
      <content:encoded><![CDATA[Danger Room's series on national security threats facing the new administration kicks off with nuclear proliferation authority Joseph Cirincione. He tells the Obama crowd to lead by example on atomic weapons, by cutting American's H-bomb stockpile.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=a801247ff695766ed91cefffd658a5e2" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=a801247ff695766ed91cefffd658a5e2" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=W1KzN"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=W1KzN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=nggfn"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=nggfn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=asvOn"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=asvOn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=6bXyN"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=6bXyN" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=2GddN"><img src="http://feeds.wired.com/~f/wired/politics/security?i=2GddN" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=zeGyn"><img src="http://feeds.wired.com/~f/wired/politics/security?i=zeGyn" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=w4lHn"><img src="http://feeds.wired.com/~f/wired/politics/security?i=w4lHn" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=I15BN"><img src="http://feeds.wired.com/~f/wired/politics/security?i=I15BN" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/453214441" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/453214443" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 14 Nov 2008 02:40:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/national security threats">national security threats</category>
      <category domain="http://securityratty.com/tag/obama crowd">obama crowd</category>
      <category domain="http://securityratty.com/tag/lead">lead</category>
      <category domain="http://securityratty.com/tag/atomic weapons">atomic weapons</category>
      <category domain="http://securityratty.com/tag/administration kicks">administration kicks</category>
      <category domain="http://securityratty.com/tag/h-bomb stockpile">h-bomb stockpile</category>
      <category domain="http://securityratty.com/tag/danger">danger</category>
      <category domain="http://securityratty.com/tag/series">series</category>
      <category domain="http://securityratty.com/tag/tells">tells</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/453214443/wars-in-iraq-an.html">Expert to Obama: Take the Lead on Nuke Cuts</source>
    </item>
    <item>
      <title><![CDATA[$20M Cameras at New York's Freedom Tower are Pretty Sophisticated]]></title>
      <link>http://securityratty.com/article/1854e20c6c17653e3ad8d28eb7bdb765</link>
      <guid>http://securityratty.com/article/1854e20c6c17653e3ad8d28eb7bdb765</guid>
      <description><![CDATA[They're trying to detect anomalies : If you have ever wondered how security guards can possibly keep an unfailingly vigilant watch on every single one of dozens of television monitors, each depicting...]]></description>
      <content:encoded><![CDATA[<p>They're trying to <a href="http://cityroom.blogs.nytimes.com/2008/09/24/unblinking-eyes-for-20-million-at-freedom-tower/">detect anomalies</a>:</p>

<blockquote>If you have ever wondered how security guards can possibly keep an unfailingly vigilant watch on every single one of dozens of television monitors, each depicting a different scene, the answer seems to be (as you suspected): they can't.

<p>Instead, they can now rely on computers to constantly analyze the patterns, sizes, speeds, angles and motion picked up by the camera and determine -- based on how they have been programmed -- whether this constitutes a possible threat. In which case, the computer alerts the security guard whose own eyes may have been momentarily diverted. Or shut.</p>

<p>An alarm can be raised, for instance, if the computer discerns a vehicle that has been standing still for too long (say, a van in the drop-off lane of an airport terminal) or a person who is loitering while everyone else is in motion. By the same token, it will spot the individual who is moving rapidly while everyone else is shuffling along. It can spot a package that has been left behind and identify which figure in the crowd abandoned it. Or pinpoint the individual who is moving the wrong way down a one-way corridor.</p>

<p>Because one person's "abnormal situation" is another person's "hot dog vendor attracting a small crowd," the computers can be programmed to discern between times of the day and days of the week.</blockquote></p>

<p>Certainly interesting.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=y6WlL"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=y6WlL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=IzyVL"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=IzyVL" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Thu, 25 Sep 2008 02:32:08 +0000</pubDate>
      <category domain="http://securityratty.com/tag/person">person</category>
      <category domain="http://securityratty.com/tag/hot dog vendor">hot dog vendor</category>
      <category domain="http://securityratty.com/tag/security guards">security guards</category>
      <category domain="http://securityratty.com/tag/individual">individual</category>
      <category domain="http://securityratty.com/tag/unfailingly vigilant">unfailingly vigilant</category>
      <category domain="http://securityratty.com/tag/constantly analyze">constantly analyze</category>
      <category domain="http://securityratty.com/tag/security guard">security guard</category>
      <category domain="http://securityratty.com/tag/detect anomalies">detect anomalies</category>
      <category domain="http://securityratty.com/tag/television monitors">television monitors</category>
      <source url="http://www.schneier.com/blog/archives/2008/09/20m_cameras_at.html">$20M Cameras at New York's Freedom Tower are Pretty Sophisticated</source>
    </item>
    <item>
      <title><![CDATA[VMworld 2008 Keynote with Paul Maritz]]></title>
      <link>http://securityratty.com/article/27088f9fffd4d9e8619b6768dd0513fa</link>
      <guid>http://securityratty.com/article/27088f9fffd4d9e8619b6768dd0513fa</guid>
      <description><![CDATA[Traveling towards VMworld 2008
I, along with thousands of others, wended my way through a vast dimly lit cavern of a place helped along by the strangely surreal sight of ushers in black waving wispy...]]></description>
      <content:encoded><![CDATA[<p><em><img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; margin: 5px; border-right-width: 0px" height="160" alt="paulmaritzvmware" src="http://blog.sciencelogic.com/wp-content/uploads/2008/09/paulmaritzvmware.jpg" width="240" align="left" border="0" /> Traveling towards VMworld 2008</em></p>
<p>I, along with thousands of others, wended my way through a vast dimly lit cavern of a place helped along by the strangely surreal sight of ushers in black waving wispy red flags to guide us not to the empty seats in front of us, but to the ones 50 yards on. (Ah Vegas, my feet hurt already.) Perhaps the point was to live in the moment, soak in the pre-rock concert atmosphere complete with a hip and cool soundtrack ripped off from Apple commercials. (Do they all use the same ad firm?) A better way to build the anticipation for, yes, the kickoff keynote session at <a href="http://www.vmworld.com/conferences/2008/" target="_blank">VMworld 2008</a>. (<em><a href="http://www.flickr.com/photos/jumpingshark/2862470725/" target="_blank">photo credit: lodev</a>)</em></p>
<p>To the sounds of <a href="http://www.youtube.com/watch?v=PEinqCHPY08" target="_blank">Hey Ya</a> (Shake it like a Polaroid picture), we shifted forward in our uncomfortable temporary seating placed, as at all tech conferences, too close for all but the skinny girls. The moment was here &#8211; one of those videos started playing on the dozen or so huge monitors floating above the convention crowd. You know this video; you&#8217;ve probably seen it before from HP or someone like that. One of those videos with instrumental Coldplay music in the background with time <a href="http://www.hp.com/hpinfo/newsroom/hpads/" target="_blank">lapse/speeded-up video</a> of people in motion and floating captions dropping into the images that leave you with a slight smile on your face as you &#8220;get&#8221; the relationship between image and text. (Do they all use the same ad firm?)</p>
<p>And here he is, announced like a Vegas headliner, <a href="http://vmblog.com/archive/2008/07/23/forbes-interviews-vmware-ceo-paul-maritz-after-financial-analyst-call.aspx" target="_blank">Paul Maritz, the new CEO of VMware</a>. Hmm. After all that hype, I rather expected someone in a black turtleneck and jeans to come out. Instead here&#8217;s this guy with pleat-front pants and an admittedly cool accent (New Zealand?) who looks a little like Al from Home Improvement. Not that there&#8217;s anything wrong with that &#8211; everyone likes Al.</p>
<p><em>And then the real fun begins.</em></p>
<ul>
<li>30 years ago, Paul Maritz started off his business career as a developer </li>
<li>10 years ago, VMware was founded by <a href="http://blog.sciencelogic.com/diane-greene-ousted-from-vmware/07/2008" target="_blank">Diane</a> <a href="http://virtualization.com/news/2008/07/08/diane-greene-vmware-paul-maritz/" target="_blank">Greene</a> and <a href="http://www.cio-weblog.com/50226711/found_rosenblum_leaves_vmware.php" target="_blank">Mendel</a> <a href="http://blog.sciencelogic.com/another-vmware-founder-leaves/09/2008" target="_blank">Rosenblum</a> (BTW, 10 seconds spent showing a slide with cartoon-ized images of the founders, &#8220;thanks for what you did for the company for the past 10 years&#8221;. 10 seconds after 10 years&#8230;but maybe more would have been hypocritical&#8230;) </li>
<li>a retrospective of centralized vs. decentralized computing initiatives from the 1960&#8217;s to today </li>
<li>of course VMware milestones from 1998 to today </li>
<li>and then an analyst-ready diagram showing the product roadmap (to be delivered in 2009) with, you guessed it, finally a connection between <a href="http://advice.cio.com/laurianne_mclaughlin/vmworld_ceo_maritz_outlines_broad_plans_for_cloud_and_client" target="_blank">VMware and cloud computing</a> (remember Maritz&#8217;s cloud-computing company was bought by EMC just a couple of years ago and that&#8217;s the section he headed up at EMC before being brought into VMware). </li>
</ul>
<p><em>Forward Looking</em></p>
<p>2008 (and probably much of 2009) will be a very busy year for VMware. If you believe the roadmap, <a href="http://www.uberpulse.com/us/2008/09/vmwares_ambitious_expansion_plan.php" target="_blank">VMware seems to be taking on the management of everything</a> &#8211; from chargeback and capacity planning to virtual storage and virtual networking (more to come on just what the planned vStorage and vNetwork will deliver) &#8211; but all of it VMware-centric. As <a href="http://blog.sciencelogic.com/vmware-is-better-than-microsoft/09/2008" target="_blank">we said in an earlier post,</a> they&#8217;ve moved away from &#8220;defending&#8221; the hypervisor business proposition to focusing on management services on top of their own hypervisor platform. Revenue pressures must be excruciating &#8211; who wants to be a public company these days?</p>
<p>The best part of that new &#8220;Virtual Data Center Operating System&#8221; <a href="http://www.vmware.com/technology/virtual-datacenter-os/" target="_blank">diagram/roadmap</a> was the addition (and I mean addition) of something called <a href="http://vmetc.com/2008/09/16/vmwares-vcloud-iniatives-the-vision-for-the-next-10-years/" target="_blank">Cloud vServices</a>. (Did anyone else find it odd that <a href="http://virtualization.com/news/2008/09/15/vcloud-vmware-to-be-cloud-computing-provider-too-but-inside-your-private-dc-and-not-tomorrow/" target="_blank">Cloud vServices</a> is kind of on its own in the Infrastructure vServices area? AND, I&#8217;ll have to get the other version of the diagram/roadmap I actually saw at the show because that one shows an inexplicable 4<sup>th</sup> box in the Application vServices area titled &#8220;&#8230;&#8221;. Really. Maybe to balance out the addition of <a href="http://www.itpro.co.uk/606237/vmwares-paul-maritz-goes-on-offence" target="_blank">Cloud vServices?</a>)</p>
<p>What was clear is that the move from VirtualCenter to vCenter &#8211;and the new vServices for rolled-up management of <a href="http://www.virtualization.info/2008/09/live-from-vmworld-2008-day-2-vmware.html" target="_blank">virtualization components</a>/capability to span multiple <a href="http://blogs.zdnet.com/virtualization/?p=542" target="_blank">VirtualCenters</a> (or future vCenters) for reporting, monitoring and management at scale &#8211; has been in the works for a bit (but in tech time, that could mean 6 months), but the cloud stuff&#8230;not so much.</p>
<p>Beyond the very high-level speak appropriate to a keynote (100+ service provider partners for off-premise cloud&#8230;suspended VM&#8217;s that you don&#8217;t have to pay for until you need it), the details are uber-fuzzy. There was a session that Dave went to which was supposed to shed more light, but when questions were asked about how it really works, the answers seemed to be TBD. Does anyone know more? If VMware really has figured out practical cloud computing for enterprises, kudos to them. But I fear they&#8217;re <a href="http://news.cnet.com/8301-13505_3-10042463-16.html?part=rss&amp;subj=news&amp;tag=2547-1_3-0-20" target="_blank">like everyone else</a> (except maybe AT&amp;T) and are still working out the details.</p>
]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 15:00:53 +0000</pubDate>
      <category domain="http://securityratty.com/tag/vservices">vservices</category>
      <category domain="http://securityratty.com/tag/infrastructure vservices">infrastructure vservices</category>
      <category domain="http://securityratty.com/tag/cloud vservices">cloud vservices</category>
      <category domain="http://securityratty.com/tag/cloud">cloud</category>
      <category domain="http://securityratty.com/tag/vmware">vmware</category>
      <category domain="http://securityratty.com/tag/vmware milestones">vmware milestones</category>
      <category domain="http://securityratty.com/tag/keynote">keynote</category>
      <category domain="http://securityratty.com/tag/vmware-centric">vmware-centric</category>
      <category domain="http://securityratty.com/tag/paul maritz">paul maritz</category>
      <source url="http://blog.sciencelogic.com/vmworld-2008-keynote-with-paul-maritz/09/2008">VMworld 2008 Keynote with Paul Maritz</source>
    </item>
    <item>
      <title><![CDATA[Post Your Questions for Philadelphia Wireless Panelists]]></title>
      <link>http://securityratty.com/article/4ffaea55de6513864702705b92a352d0</link>
      <guid>http://securityratty.com/article/4ffaea55de6513864702705b92a352d0</guid>
      <description><![CDATA[Organizers of day-long discussion about ubiquitous mobile broadband want to know what you want to ask: In Philadelphia on 22-Sept-2008, panelists from AT&amp;T, Comcast, Sprint XOHM, The Wharton School,...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/muni_icon.jpg" align="right" border="0" hspace="5" /><a href="http://momo-ma.com/?p=28"><strong>Organizers of day-long discussion about ubiquitous mobile broadband want to know what you want to ask:</strong></a> In Philadelphia on 22-Sept-2008, panelists from AT&T, Comcast, Sprint XOHM, The Wharton School, and Network Acquisition Corporation (the folks who will be operating the former EarthLink network in Phila.) will be on one stage at 6 pm at The Franklin Institute's Planetarium (free, $5 contribution requested, advance registration recommended).</p>

<p>The panel will discuss fourth-generation (4G) networks, including both LTE and WiMax, and discuss what these networks might deliver, as well as how Wi-Fi networks fit into this future. </p>

<p>One of the organizers asked if I'd solicit questions--you can post them below--which they'll try to ask during the panel. The group would then write up responses which could posted in turn here.</p>

<p>The powerhouse that is <a href="http://werbach.com/about.html"><strong>Kevin Werbach</strong></a>, a professor at The Wharton School, is moderating the event. Werbach has been part of interesting thinking about spectrum for many years, a former editor of Release 1.0, and a former FCC staffer. He'll share the stage with a fairly high-powered crowd, including AT&T's enterprise architect for mobility, the president of NAC, and senior people from Comcast and Sprint Xohm.</p>

<p>The event is part of the Mid-Atlantic Chapter series called MobileMonday, an interesting business group that's trying to provoke discussion and development around mobile technology and access. This particular event is sponsored by local business development organization Select Greater Philadelphia.</p>]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 06:10:36 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wi-fi networks fit">wi-fi networks fit</category>
      <category domain="http://securityratty.com/tag/networks">networks</category>
      <category domain="http://securityratty.com/tag/sprint xohm">sprint xohm</category>
      <category domain="http://securityratty.com/tag/wharton school">wharton school</category>
      <category domain="http://securityratty.com/tag/philadelphia">philadelphia</category>
      <category domain="http://securityratty.com/tag/mid-atlantic chapter series">mid-atlantic chapter series</category>
      <category domain="http://securityratty.com/tag/event">event</category>
      <category domain="http://securityratty.com/tag/network acquisition corporation">network acquisition corporation</category>
      <category domain="http://securityratty.com/tag/kevin werbach">kevin werbach</category>
      <source url="http://wifinetnews.com/archives/008447.html">Post Your Questions for Philadelphia Wireless Panelists</source>
    </item>
    <item>
      <title><![CDATA[Black Hat wrap up - secure@microsoft, booth babes and bloggers]]></title>
      <link>http://securityratty.com/article/bd7d7b3698d05a16a10cc4d0a21e2bfd</link>
      <guid>http://securityratty.com/article/bd7d7b3698d05a16a10cc4d0a21e2bfd</guid>
      <description><![CDATA[You can read plenty of other blogs about some of the great presentations at Black Hat. So I thought I would take another angle and talk about some of the other stuff that may be important to you
1....]]></description>
      <content:encoded><![CDATA[<p></p>  <p>You can read plenty of other blogs about some of the great presentations at Black Hat.  So I thought I would take another angle and talk about some of the other stuff that may be important to you.</p>  <p>1.  <a href="mailto:secure@microsoft.com"><font face="Courier"><a href="http://www.stillsecureafteralltheseyears.com/ashimmy/WindowsLiveWriter/Picture%20049.jpg"><img title="Picture 049" style="border-right: 0px; border-top: 0px; margin: 5px 10px 5px 0px; border-left: 0px; border-bottom: 0px" height="184" alt="Picture 049" src="http://www.stillsecureafteralltheseyears.com/ashimmy/WindowsLiveWriter/Picture%20049_thumb.jpg" width="244" align="left" border="0"></img></a></font><font face="Courier New">secure@microsoft.com</font></a> – This years hottest party was again the Microsoft party.  This year it was at the LAX club in the Luxor.  As usual there were quite a number of people at the door who thought they could talk their way in or worse yet were told they “were one the list”.  I was happy to be able to go and saw many of the usual suspects there as well. I had to leave the party early to go catch my red eye flight home, so went right to the airport from the party.  As I wrote earlier, Microsoft is trying really hard on security.  But I couldn’t help but notice the irony of this grainy, lousy picture of the DJ booth at the party.  If you can, notice the computers that the <a href="mailto:secure@microsoft.com">secure@microsoft.com</a> DJs are using. That’s right they are Macs!</p>  <p>2. A new low for booth babes – What would a Shimel review of a trade show be without a booth babe rant.  Hey I recognize it is Vegas and all, but EdgeOS went way over the line this year.  A booth babe dressed as a Las Vegas showgirl or some other type of costume makes a statement.  I personally don’t like exploiting woman to make that statement, but I understand.  However, these guys had woman who were dressed so raunchy and classless, that I could not bring myself to post a picture of them.  Come on guys!  You want to resort to the booth babe thing (and BTW I think the Black Hat crowd does not respond to that), at least have a little class.  These girls looked like street walkers and do you and your company no favors.  Is that really the image you want to promote?  Grow up!</p>  <p>3.  The Security Bloggers Network – We are back!  With the end of the Black Hat show, the SBN is going back to being the<a href="http://www.stillsecureafteralltheseyears.com/ashimmy/WindowsLiveWriter/securitybloggers.gif"><img title="securitybloggers" style="margin: 5px 5px 5px 10px" height="147" alt="securitybloggers" src="http://www.stillsecureafteralltheseyears.com/ashimmy/WindowsLiveWriter/securitybloggers_thumb.gif" width="112" align="right" border="0"></img></a> SBN.  The old logo is back and our promotion with Black Hat is at an end.  However, I want to personally thank so many of you SBN members who blogged about Black Hat.  The Black Hat marketing folks made it a point to come over to me and thank us for the overwhelming support and help of the community.  Our network delivered big time with them and they are already thinking about ways we can work together next year.  I will keep you all posted on that.</p>  <p>We have several new promotions we are working on with the SBN and will have more on that soon. Also, we learned some valuable lessons.  Next time we will work with the network members more closely in doing these affiliations.  Also, for any show like this we need to have an official bloggers get together.  Not because we don’t want to buy our own drinks (thanks to Chris Hoff for doing more than his share in picking up a big bar tab), but frankly we need to reserve a place that has enough space for us.  Security bloggers are big time. We have a great community of people who get together. Lets make it better.</p>  <p>I have some other ideas around the SBN I am working on too and want to form a committee to help. If you are a member and want to get involved, please drop me a line or comment.</p>  <p>Anyway, another year of Black Hat is in the books. It was a good one and I can’t wait until next year!</p>
<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=mqB9CC"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=mqB9CC" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=rP6xlK"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=rP6xlK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=fhzqOK"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=fhzqOK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=roBQzK"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=roBQzK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=yW5ceK"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=yW5ceK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=zosCbk"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=zosCbk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=XDP8lk"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=XDP8lk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/359668026" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 08 Aug 2008 10:46:21 +0000</pubDate>
      <category domain="http://securityratty.com/tag/booth">booth</category>
      <category domain="http://securityratty.com/tag/black hat">black hat</category>
      <category domain="http://securityratty.com/tag/booth babes">booth babes</category>
      <category domain="http://securityratty.com/tag/booth babe rant">booth babe rant</category>
      <category domain="http://securityratty.com/tag/black hat crowd">black hat crowd</category>
      <category domain="http://securityratty.com/tag/security bloggers network">security bloggers network</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/security bloggers">security bloggers</category>
      <category domain="http://securityratty.com/tag/booth babe">booth babe</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/359668026/black-hat-wrap.html">Black Hat wrap up - secure@microsoft, booth babes and bloggers</source>
    </item>
    <item>
      <title><![CDATA[Reminder: WebEx Seminar on Risk Analysis]]></title>
      <link>http://securityratty.com/article/967093a66c194ca86dac97183d5a6526</link>
      <guid>http://securityratty.com/article/967093a66c194ca86dac97183d5a6526</guid>
      <description><![CDATA[Hey everybody! Quick post this morning to remind you guys that Cisco has been kind enough to let us give a follow on WebEx presentation on July 31, 2008 at 11:30 a.m. EDT. The link to sign up is &gt;&gt; ....]]></description>
      <content:encoded><![CDATA[<p>Hey everybody!  Quick post this morning to remind you guys that Cisco has been kind enough to let us give a follow on WebEx presentation on  July 31, 2008 at 11:30 a.m. EDT.  The link to sign up is <a href="https://ciscosales.webex.com/ciscosales/onstage/g.php?d=929845289&amp;t=a&amp;EA=miradiga%40cisco.com&amp;ET=d5be1b551672ee32df7260c6418042ca&amp;ETR=b92381359a9255da61ca95ac83ae2f0e"><strong>&lt;&lt;&lt;here&gt;&gt;&gt;</strong></a>.  There are only about 40 slots left.  It looks like it&#8217;s going to be a good crowd.</p>
<p>We&#8217;re calling this part II - and it&#8217;s being advertised as:</p>
<p><em><strong>&#8220;How to conduct a risk analysis and produce a high impact deliverable to senior management.&#8221;</strong></em></p>
<p>With topics:</p>
<ul>
<li>The life-cycle of a quantitative risk analysis</li>
<li>Key control opportunities against targeted attacks</li>
<li>Getting senior management to understand the risk posed to the business</li>
</ul>
<p>I got to do the Q&amp;A backchannel on the last presentation, and there were great questions asked.  I think this presentation will be even more exciting, as it&#8217;ll cover both analyst and management considerations.</p>
<p>If you&#8217;re a regular reader of the blog, I don&#8217;t think you&#8217;ll have to have attended the last one for this one to be worth your while.</p>
<p><strong>REPEAT PERFORMANCES OF THE FIRST WEBEX ARE AVAILABLE</strong></p>
<p>And if you missed it the first time, the playback of the first preso is <a href="https://ciscosales.webex.com/ciscosales/lsr.php?AT=pb&amp;SP=EC&amp;rID=25693942&amp;rKey=5A9EF2E7F1B062BC"><strong>here</strong></a>, and the slides are <a href="http://www.riskmanagementinsight.com/media/documents/Risk_Evolution.pdf"><strong>here</strong></a>.</p>
]]></content:encoded>
      <pubDate>Tue, 29 Jul 2008 13:56:58 +0000</pubDate>
      <category domain="http://securityratty.com/tag/risk analysis">risk analysis</category>
      <category domain="http://securityratty.com/tag/webex">webex</category>
      <category domain="http://securityratty.com/tag/webex presentation">webex presentation</category>
      <category domain="http://securityratty.com/tag/quantitative risk analysis">quantitative risk analysis</category>
      <category domain="http://securityratty.com/tag/presentation">presentation</category>
      <category domain="http://securityratty.com/tag/senior management">senior management</category>
      <category domain="http://securityratty.com/tag/key control opportunities">key control opportunities</category>
      <category domain="http://securityratty.com/tag/risk posed">risk posed</category>
      <category domain="http://securityratty.com/tag/impact deliverable">impact deliverable</category>
      <source url="http://riskmanagementinsight.com/riskanalysis/?p=379">Reminder: WebEx Seminar on Risk Analysis</source>
    </item>
    <item>
      <title><![CDATA[CEP is to Architecture as SOA is to Architecture]]></title>
      <link>http://securityratty.com/article/f5222f078c17725d6c74bac57454501a</link>
      <guid>http://securityratty.com/article/f5222f078c17725d6c74bac57454501a</guid>
      <description><![CDATA[I am often asked pointed questions (mostly from the stream processing crowd) like, What product does CEP? Sometime it seems my answer determines the fate of that relationship, as my feet are grilled...]]></description>
      <content:encoded><![CDATA[<p>I am often asked pointed questions (mostly from the stream processing crowd) like, &#8221; What product does CEP?&#8221;  Sometime it seems my answer determines the fate of that relationship, as my feet are grilled over the CEP-fire to be beat of jungle drums!  The amount of money I have lost in deals that did not go through because I refused to sprinkle holy water on a vendor&#8217;s product and call it &#8220;CEP&#8221; is staggering, quite frankly.</p>
<p>CEP describes an architecture, just like SOA describes an architecture and just like EDA describes an architecture.</p>
<p>For example, you do not buy an SOA.   An SOA describes an architectural style of programming via components that are involved as services in a distributed network architecture - a service-oriented, or service-based architecture.</p>
<p>The concept of CEP does not have &#8220;the A-word&#8221; like SOA and EDA, but none-the-less, <a href="http://www.thecepblog.com/what-is-complex-event-processing/" target="_blank">CEP describes an architecture</a>, not a product.   Do not make the mistake of thinking in terms of &#8220;buying CEP&#8221;, just like you do not buy an SOA or an EDA.  You think, plan and design in terms of CEP, just like you should do in an SOA or EDA.  These are constructs, not products.</p>
<p>In other words, for &#8220;true CEP&#8221; you need a number of components, some of the components might be in the architectural style of SOA, others might be in the architectural style of EDA.   Your solution architecture for solving a complex event processing problem might have request-reply transactions, or it might have fire-and-forget messages.  You might have a Neural Networking component for analytics and a rules component for filtering, mediation and scheduling.  You might even have a stream processing component performing as a high performance filter and pattern matcher on streaming data where the output is forwarded to a Bayesian Classifer for further processing.</p>
<p>My key message in this post is that CEP requires a number of technologies to solve complex distributed computing problems.   Do not be fooled into thinking that a single product is &#8220;CEP&#8221; no more than a single product is SOA or EDA.</p>
]]></content:encoded>
      <pubDate>Fri, 25 Jul 2008 14:38:29 +0000</pubDate>
      <category domain="http://securityratty.com/tag/cep">cep</category>
      <category domain="http://securityratty.com/tag/soa">soa</category>
      <category domain="http://securityratty.com/tag/architecture">architecture</category>
      <category domain="http://securityratty.com/tag/true cep">true cep</category>
      <category domain="http://securityratty.com/tag/cep requires">cep requires</category>
      <category domain="http://securityratty.com/tag/cep-fire">cep-fire</category>
      <category domain="http://securityratty.com/tag/soa describes">soa describes</category>
      <category domain="http://securityratty.com/tag/cep describes">cep describes</category>
      <category domain="http://securityratty.com/tag/solution architecture">solution architecture</category>
      <source url="http://www.thecepblog.com/2008/07/25/cep-is-to-architecture-as-soa-is-to-architecture/">CEP is to Architecture as SOA is to Architecture</source>
    </item>
    <item>
      <title><![CDATA[In the great NAC debate, Snyder KOs Stiennon in the first round!]]></title>
      <link>http://securityratty.com/article/257e5281878e732cc8ef2afaee430827</link>
      <guid>http://securityratty.com/article/257e5281878e732cc8ef2afaee430827</guid>
      <description><![CDATA[Just got done reading the transcript of yesterdays great NAC debate between Joel Snyder and Richard Stiennon. As I predicted Snyder scored a knockout early on and it was mostly over from that point...]]></description>
      <content:encoded><![CDATA[<p><a href="http://www.stillsecureafteralltheseyears.com/ashimmy/WindowsLiveWriter/boxer.jpg"><img title="boxer" style="border-right: 0px; border-top: 0px; margin: 0px 0px 5px 5px; border-left: 0px; border-bottom: 0px" height="124" alt="boxer" src="http://www.stillsecureafteralltheseyears.com/ashimmy/WindowsLiveWriter/boxer_thumb.jpg" width="142" align="right" border="0"></img></a> Just got done <a href="http://www.networkworld.com/chat/archive/2008/072308-snyder-stiennon-nac-debate.html">reading the transcript</a> of yesterdays great NAC debate between Joel Snyder and Richard Stiennon.  As I predicted Snyder scored a knockout early on and it was mostly over from that point on.  The knockout came earlier than I expected though, right off the first question.  Each combatant was asked to define NAC and that was when it happened.  Richard brought an EPAC (end point access control) to a NAC fight.  That was akin to him bringing a rubber knife to a gun fight.  A quick bullet between the eyes by Snyder and it was almost painlessly over for Richard.</p>  <p>I have been preaching for some time about what I call complete NAC. That is a complete network access control solution, not just network admission control and certainly not end point access control.  It is not an evil plot to extend Cisco/Microsoft dominance and most importantly Richard, no one and let me say this again, no one has ever said that NAC negates the need for a layered security model.  NAC is just another layer in that model.  Richard’s comments deriding the .edu and .mil markets were also laughable.  Richard, have you ever heard the term military grade?  Are you seriously trying to say that enterprises take security more seriously than the military does?  Come on now Richard.</p>  <p>The bottom line is Joel Snyder is not only a sharp dude technically, but is street savvy enough to run circles around my friend Richard.  He made Richard stay focused on the question at hand, did not let him wander and so Richard had to face reality a bit. I am sure Richard will still say NAC is useless and <a href="http://securityuncorked.squarespace.com/security-uncorked/2008/7/22/hps-nac-what-ive-been-wanting-to-tell-you-but-couldnt.html">will admonish people about hanging out with the likes of the StillSecure</a> crowd, but I guess some things will just never change.  Except, I don’t think Richard will be in anymore of these bouts.  Maybe he can start selling a grill that takes the fat out of meat or perhaps a reality TV show like the other washed up palookas ?</p>
<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=ZeWwIp"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=ZeWwIp" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=9TwouJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=9TwouJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=JHaO4J"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=JHaO4J" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=vbaihJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=vbaihJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=QDT1DJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=QDT1DJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=jnZSlj"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=jnZSlj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=6zfMHj"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=6zfMHj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/344260979" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 23 Jul 2008 20:13:54 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nac">nac</category>
      <category domain="http://securityratty.com/tag/richard">richard</category>
      <category domain="http://securityratty.com/tag/importantly richard">importantly richard</category>
      <category domain="http://securityratty.com/tag/richard stiennon">richard stiennon</category>
      <category domain="http://securityratty.com/tag/snyder">snyder</category>
      <category domain="http://securityratty.com/tag/friend richard">friend richard</category>
      <category domain="http://securityratty.com/tag/define nac">define nac</category>
      <category domain="http://securityratty.com/tag/nac fight">nac fight</category>
      <category domain="http://securityratty.com/tag/richard stay">richard stay</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/344260979/in-the-great-na.html">In the great NAC debate, Snyder KOs Stiennon in the first round!</source>
    </item>
    <item>
      <title><![CDATA[Is there any reason to go to Black Hat still?]]></title>
      <link>http://securityratty.com/article/48dccc0384334ebae07a6e1e34cb280b</link>
      <guid>http://securityratty.com/article/48dccc0384334ebae07a6e1e34cb280b</guid>
      <description><![CDATA[I was reading the Security Bloggers Network feed this morning. I had missed a day or so and had a lot of articles to go through. I was also thinking of what could be the next topic suggested for...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><a onclick="window.open(this.href, '_blank', 'width=200,height=177,scrollbars=no,resizable=no,toolbar=no,directories=no,location=no,menubar=no,status=no,left=0,top=0'); return false" href="http://www.stillsecureafteralltheseyears.com/.shared/image.html?/photos/uncategorized/2008/07/23/blackhatbloggers.gif"><img title="Blackhatbloggers" height="132" alt="Blackhatbloggers" src="http://www.stillsecureafteralltheseyears.com/ashimmy/images/2008/07/23/blackhatbloggers.gif" width="150" border="0" style="FLOAT: left; MARGIN: 0px 5px 5px 0px" /></a> I was reading the <a href="http://networks.feedburner.com/Security-Bloggers-Network">Security Bloggers Network</a> feed this morning. I had missed a day or so and had a lot of articles to go through. I was also thinking of what could be the next topic suggested for members to blog about as part of our cross-promotion with Black Hat.&nbsp; Than I realized there really was not any need.&nbsp; The topic was obvious, DNS. I didn't do an actual count of how many times it was mentioned (as <a href="http://www.bumpinthewire.com/?p=234">Mr Bump did with NAC vendors mentioned in the Information Week NAC survey</a>), but there had to be at least a dozen and half, if not more articles on the great DNS leak of 2008.&nbsp; </p>

<p>Dan Kaminsky's research was exemplary, but his naivete about people keeping the exploit under thier hat was not.&nbsp; While <a href="http://www.matasano.com/log/1105/regarding-the-post-on-chargen-earlier-today/#comments">Thomas Matasano apologized for his mistake</a>, frankly from the moment Havlar Flake begain speculating on it, it was just a matter of time.&nbsp; </p>

<p>Anyway, the cat is out of that bag, but something tells me that Dan K's presentation will still be a standing room only crowd in just a few weeks in Vegas.&nbsp; But beyond that there are still a bunch of good topics to be discovered at Black Hat.&nbsp; Not to mention lots of social activities brewing for both BH and DefCon.&nbsp; I amreally looking forward to it. I would hope that no one is feeling the air out of the ballon on this one!</p><br /><br /><fieldset class="zemanta-related"><legend class="zemanta-related-title">Related articles by Zemanta</legend><ul class="zemanta-article-ul"><li class="zemanta-article-ul-li"><a href="http://blog.wired.com/27bstroke6/2008/07/details-of-dns.html">Details of DNS Flaw Leaked; Exploit Expected by End of Today</a></li>

<li class="zemanta-article-ul-li"><a href="http://www.infoworld.com/article/08/07/22/Details_of_major_Internet_flaw_posted_by_accident_1.html?source=rss&amp;url=http://www.infoworld.com/article/08/07/22/Details_of_major_Internet_flaw_posted_by_accident_1.html">Details of major Internet flaw posted by accident</a></li>

<li class="zemanta-article-ul-li"><a href="http://gigaom.com/2008/07/22/the-kaminsky-hack-dns-exploits-in-the-wild/">The Kaminsky Hack: DNS Exploits in the Wild</a></li>

<li class="zemanta-article-ul-li"><a href="http://news.cnet.com/8301-1009_3-9996316-83.html?hhTest=1&amp;part=rss&amp;subj=news">Is Kaminsky's DNS flaw public?</a></li>

<li class="zemanta-article-ul-li"><a href="http://www.boingboing.net/2008/07/22/kaminsky-on-the-nets.html">Kaminsky on the net-shaking DNS bug</a></li>

<li class="zemanta-article-ul-li"><a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9110418&amp;source=rss_topic82">Details of major Internet flaw posted by accident</a></li></ul></fieldset> <div class="zemanta-pixie" style="MARGIN-TOP: 10px; HEIGHT: 15px"><a class="zemanta-pixie-a" title="Zemified by Zemanta" href="http://reblog.zemanta.com/zemified/a94ce1a9-f719-4533-9603-beb582d33313/"><img class="zemanta-pixie-img" alt="Zemanta Pixie" src="http://img.zemanta.com/reblog_e.png?x-id=a94ce1a9-f719-4533-9603-beb582d33313" style="BORDER-RIGHT: medium none; BORDER-TOP: medium none; FLOAT: right; BORDER-LEFT: medium none; BORDER-BOTTOM: medium none" /></a></div></div>

<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=mPLh0z"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=mPLh0z" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=iDfnaJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=iDfnaJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=sAYmLJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=sAYmLJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=CaWUSJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=CaWUSJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=Gh4sLJ"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=Gh4sLJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=Z6tX2j"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=Z6tX2j" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=7rsO8j"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=7rsO8j" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/343474506" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 23 Jul 2008 03:58:05 +0000</pubDate>
      <category domain="http://securityratty.com/tag/dns flaw">dns flaw</category>
      <category domain="http://securityratty.com/tag/dns flaw public">dns flaw public</category>
      <category domain="http://securityratty.com/tag/dns">dns</category>
      <category domain="http://securityratty.com/tag/dns bug">dns bug</category>
      <category domain="http://securityratty.com/tag/black hat">black hat</category>
      <category domain="http://securityratty.com/tag/dns leak">dns leak</category>
      <category domain="http://securityratty.com/tag/kaminsky">kaminsky</category>
      <category domain="http://securityratty.com/tag/kaminsky hack">kaminsky hack</category>
      <category domain="http://securityratty.com/tag/major internet flaw">major internet flaw</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/343474506/is-there-any-re.html">Is there any reason to go to Black Hat still?</source>
    </item>
    <item>
      <title><![CDATA[Is there any reason to go to Black Hat still?]]></title>
      <link>http://securityratty.com/article/dde51fc8529a127d8c2ff85832932ba6</link>
      <guid>http://securityratty.com/article/dde51fc8529a127d8c2ff85832932ba6</guid>
      <description><![CDATA[I was reading the Security Bloggers Network feed this morning. I had missed a day or so and had a lot of articles to go through. I was also thinking of what could be the next topic suggested for...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><a onclick="window.open(this.href, '_blank', 'width=200,height=177,scrollbars=no,resizable=no,toolbar=no,directories=no,location=no,menubar=no,status=no,left=0,top=0'); return false" href="http://www.stillsecureafteralltheseyears.com/.shared/image.html?/photos/uncategorized/2008/07/23/blackhatbloggers.gif"><img title="Blackhatbloggers" height="132" alt="Blackhatbloggers" src="http://www.stillsecureafteralltheseyears.com/ashimmy/images/2008/07/23/blackhatbloggers.gif" width="150" border="0" style="FLOAT: left; MARGIN: 0px 5px 5px 0px" /></a> I was reading the <a href="http://networks.feedburner.com/Security-Bloggers-Network">Security Bloggers Network</a> feed this morning. I had missed a day or so and had a lot of articles to go through. I was also thinking of what could be the next topic suggested for members to blog about as part of our cross-promotion with Black Hat.&nbsp; Than I realized there really was not any need.&nbsp; The topic was obvious, DNS. I didn't do an actual count of how many times it was mentioned (as <a href="http://www.bumpinthewire.com/?p=234">Mr Bump did with NAC vendors mentioned in the Information Week NAC survey</a>), but there had to be at least a dozen and half, if not more articles on the great DNS leak of 2008.&nbsp; </p>

<p>Dan Kaminsky's research was exemplary, but his naivete about people keeping the exploit under thier hat was not.&nbsp; While <a href="http://www.matasano.com/log/1105/regarding-the-post-on-chargen-earlier-today/#comments">Thomas Matasano apologized for his mistake</a>, frankly from the moment Havlar Flake begain speculating on it, it was just a matter of time.&nbsp; </p>

<p>Anyway, the cat is out of that bag, but something tells me that Dan K's presentation will still be a standing room only crowd in just a few weeks in Vegas.&nbsp; But beyond that there are still a bunch of good topics to be discovered at Black Hat.&nbsp; Not to mention lots of social activities brewing for both BH and DefCon.&nbsp; I amreally looking forward to it. I would hope that no one is feeling the air out of the ballon on this one!</p><br /><br /><fieldset class="zemanta-related"><legend class="zemanta-related-title">Related articles by Zemanta</legend><ul class="zemanta-article-ul"><li class="zemanta-article-ul-li"><a href="http://blog.wired.com/27bstroke6/2008/07/details-of-dns.html">Details of DNS Flaw Leaked; Exploit Expected by End of Today</a></li>

<li class="zemanta-article-ul-li"><a href="http://www.infoworld.com/article/08/07/22/Details_of_major_Internet_flaw_posted_by_accident_1.html?source=rss&amp;url=http://www.infoworld.com/article/08/07/22/Details_of_major_Internet_flaw_posted_by_accident_1.html">Details of major Internet flaw posted by accident</a></li>

<li class="zemanta-article-ul-li"><a href="http://gigaom.com/2008/07/22/the-kaminsky-hack-dns-exploits-in-the-wild/">The Kaminsky Hack: DNS Exploits in the Wild</a></li>

<li class="zemanta-article-ul-li"><a href="http://news.cnet.com/8301-1009_3-9996316-83.html?hhTest=1&amp;part=rss&amp;subj=news">Is Kaminsky's DNS flaw public?</a></li>

<li class="zemanta-article-ul-li"><a href="http://www.boingboing.net/2008/07/22/kaminsky-on-the-nets.html">Kaminsky on the net-shaking DNS bug</a></li>

<li class="zemanta-article-ul-li"><a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9110418&amp;source=rss_topic82">Details of major Internet flaw posted by accident</a></li></ul></fieldset> <div class="zemanta-pixie" style="MARGIN-TOP: 10px; HEIGHT: 15px"><a class="zemanta-pixie-a" title="Zemified by Zemanta" href="http://reblog.zemanta.com/zemified/a94ce1a9-f719-4533-9603-beb582d33313/"><img class="zemanta-pixie-img" alt="Zemanta Pixie" src="http://img.zemanta.com/reblog_e.png?x-id=a94ce1a9-f719-4533-9603-beb582d33313" style="BORDER-RIGHT: medium none; BORDER-TOP: medium none; FLOAT: right; BORDER-LEFT: medium none; BORDER-BOTTOM: medium none" /></a></div></div>
]]></content:encoded>
      <pubDate>Wed, 23 Jul 2008 03:41:47 +0000</pubDate>
      <category domain="http://securityratty.com/tag/dns flaw">dns flaw</category>
      <category domain="http://securityratty.com/tag/dns flaw public">dns flaw public</category>
      <category domain="http://securityratty.com/tag/dns">dns</category>
      <category domain="http://securityratty.com/tag/dns bug">dns bug</category>
      <category domain="http://securityratty.com/tag/black hat">black hat</category>
      <category domain="http://securityratty.com/tag/dns leak">dns leak</category>
      <category domain="http://securityratty.com/tag/kaminsky">kaminsky</category>
      <category domain="http://securityratty.com/tag/kaminsky hack">kaminsky hack</category>
      <category domain="http://securityratty.com/tag/major internet flaw">major internet flaw</category>
      <source url="http://www.stillsecureafteralltheseyears.com/ashimmy/2008/07/is-there-any-re.html">Is there any reason to go to Black Hat still?</source>
    </item>
  </channel>
</rss>
