<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: downloads]]></title>
    <link>http://securityratty.com/tag/downloads</link>
    <description></description>
    <pubDate>Thu, 25 Sep 2008 12:00:27 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Apple patches 12 iPhone bugs, adds Street View, podcast downloads]]></title>
      <link>http://securityratty.com/article/b2fe283b58f93006c657868f6a63ae07</link>
      <guid>http://securityratty.com/article/b2fe283b58f93006c657868f6a63ae07</guid>
      <description><![CDATA[Apple today released iPhone 2.2, the first update to the phone's firmware in more than two months, patching a dozen security vulnerabilities and adding several new...]]></description>
      <content:encoded><![CDATA[Apple today released iPhone 2.2, the first update to the phone's firmware in more than two months, patching a dozen security vulnerabilities and adding several new features.<br style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:1a6a309161fa02485d59cd37096099df:Ub2pL2Pwvff2uHtuUGHuhFraUw9WM2g99oEnVpM0pvRjZIzBI%2B0SkxsSg2CPfpRfe%2FLV6%2Fm%2F1pMa'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:70167017c7a9b208de38857b7c05fa0d:GZYEA2P04qqmisCFeGZahKCGgRkbFFp9odNKkzJueq%2BEKPhmvXI7%2FqZHyH%2F8OOq1LG2vvIODP0Yrtw%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:df61bfd59409abe49c575d3598c336e8:mFU6u6tTyCmQuEk1dHrt%2FQhtRNP%2BFg3r3PEG7QZGVnsHRKtYbGWPsY2L7q6YRZ%2BuevrXSLu4OLu0XA%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:b44ef43eb63274801e5e11bebd3fd98e:RlwvbxYPI5KkZtmseOOvyaekhsdGiEFMV87fAFStxbNV%2FK8UGfQ%2BsWkI6t2Bx8sHuhEJyjDyN%2F4SOw%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>
<a href="http://www.pheedo.com/click.phdo?s=f1da998d1e46d73b8d0377da46167b7e&p=1"><img alt="" style="border: 0;" border="0" src="http://www.pheedo.com/img.phdo?s=f1da998d1e46d73b8d0377da46167b7e&p=1"/></a>
<img src="http://www.pheedo.com/feeds/tracker.php?i=f1da998d1e46d73b8d0377da46167b7e" style="display: none;" border="0" height="1" width="1" alt=""/>
]]></content:encoded>
      <pubDate>Fri, 21 Nov 2008 02:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/iphone">iphone</category>
      <category domain="http://securityratty.com/tag/security vulnerabilities">security vulnerabilities</category>
      <category domain="http://securityratty.com/tag/apple">apple</category>
      <category domain="http://securityratty.com/tag/features">features</category>
      <category domain="http://securityratty.com/tag/firmware">firmware</category>
      <category domain="http://securityratty.com/tag/phone">phone</category>
      <category domain="http://securityratty.com/tag/months">months</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=f1da998d1e46d73b8d0377da46167b7e">Apple patches 12 iPhone bugs, adds Street View, podcast downloads</source>
    </item>
    <item>
      <title><![CDATA[Password-Stealing Trojan Spreads Through Latest Windows Zero-Day Vulnerability]]></title>
      <link>http://securityratty.com/article/eb7122ac0f72b025302af86223cea57d</link>
      <guid>http://securityratty.com/article/eb7122ac0f72b025302af86223cea57d</guid>
      <description><![CDATA[A critical security hole fixed by Microsoft with Security Bulletin MS08-067 is actively exploited in the wild by a new password-stealing Trojan. Next to gathering and stealing Windows Live-, Protected...]]></description>
      <content:encoded><![CDATA[A critical security hole fixed by Microsoft with Security Bulletin MS08-067 is actively exploited in the wild by a new password-stealing Trojan. Next to gathering and stealing Windows Live-, Protected Storage- and Microsoft Outlook-credentials which are phoned home to China, the Trojan downloads an additional exploit component from the Internet.
The Trojan exploits the above mentioned [...]]]></content:encoded>
      <pubDate>Sun, 26 Oct 2008 19:16:24 +0000</pubDate>
      <category domain="http://securityratty.com/tag/trojan">trojan</category>
      <category domain="http://securityratty.com/tag/trojan downloads">trojan downloads</category>
      <category domain="http://securityratty.com/tag/trojan exploits">trojan exploits</category>
      <category domain="http://securityratty.com/tag/security bulletin ms08-067">security bulletin ms08-067</category>
      <category domain="http://securityratty.com/tag/additional exploit component">additional exploit component</category>
      <category domain="http://securityratty.com/tag/windows live-">windows live-</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/storage-">storage-</category>
      <source url="http://cyberinsecure.com/password-stealing-trojan-spreads-through-latest-windows-zero-day-vulnerability/">Password-Stealing Trojan Spreads Through Latest Windows Zero-Day Vulnerability</source>
    </item>
    <item>
      <title><![CDATA[Three years of Blue Box podcasts....]]></title>
      <link>http://securityratty.com/article/cc61b7549892d897fdca3fb3d3366a42</link>
      <guid>http://securityratty.com/article/cc61b7549892d897fdca3fb3d3366a42</guid>
      <description><![CDATA[Today is a special day for me. It was three years ago on October 24, 2005, that Blue Box Podcast #1 was uploaded . It was an 11-minute episode where I talked about... Skype security, SIP security,...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml">Today is a special day for me.  It was three years ago on October 24, 2005, that <a href="http://www.blueboxpodcast.com/2005/10/blue_box_podcas.html">Blue Box Podcast #1 was uploaded</a>.  It was an 11-minute episode where I talked about... Skype security, SIP security, IETF, VOIPSA and some other VoIP security news.....   (Hmmm... sounds  lot like our <em>recent</em> shows, too, eh?)

<p>Jonathan Zar joined me a week later on <a href="http://www.blueboxpodcast.com/2005/11/blue_box_podcas.html">Blue Box Podcast #2</a> and we've been going ever since.  We've now produced over 112 episodes, had close to 245,000 downloads of our various shows, met some amazing people, learned a lot along the way... and hopefully helped you all learn a lot out there as well.

<p>Thank you to all of you who have joined with us on this journey... whether you've listened to our show from the very beginning (and we know of a couple of you who have) or have only recently joined in... <em>thank you</em>!

<p>And now... on to the next three years...  :-)


<!-- Technorati Tags Start -->
<p>Technorati Tags:
<a href="http://technorati.com/tag/blue%20box" rel="tag">blue box</a>, <a href="http://technorati.com/tag/bluebox" rel="tag">bluebox</a>, <a href="http://technorati.com/tag/dan%20york" rel="tag">dan york</a>, <a href="http://technorati.com/tag/danyork" rel="tag">danyork</a>, <a href="http://technorati.com/tag/jonathan%20zar" rel="tag">jonathan zar</a>, <a href="http://technorati.com/tag/security" rel="tag">security</a>, <a href="http://technorati.com/tag/voip" rel="tag">voip</a>, <a href="http://technorati.com/tag/voip%20security" rel="tag">voip security</a>, <a href="http://technorati.com/tag/voipsa" rel="tag">voipsa</a>
</p>
<!-- Technorati Tags End --></div>

<p><a href="http://feeds.feedburner.com/~a/BlueBox?a=OCOyT6"><img src="http://feeds.feedburner.com/~a/BlueBox?i=OCOyT6" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/BlueBox?a=I5uhM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=I5uhM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=f4w9M"><img src="http://feeds.feedburner.com/~f/BlueBox?i=f4w9M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=Nsx0M"><img src="http://feeds.feedburner.com/~f/BlueBox?i=Nsx0M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=FD20M"><img src="http://feeds.feedburner.com/~f/BlueBox?i=FD20M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=PfrRm"><img src="http://feeds.feedburner.com/~f/BlueBox?i=PfrRm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=lfcHM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=lfcHM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/BlueBox/~4/431331276" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 24 Oct 2008 17:35:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/voip security news">voip security news</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/blue box">blue box</category>
      <category domain="http://securityratty.com/tag/sip security">sip security</category>
      <category domain="http://securityratty.com/tag/voip">voip</category>
      <category domain="http://securityratty.com/tag/voip security">voip security</category>
      <category domain="http://securityratty.com/tag/blue box podcast">blue box podcast</category>
      <category domain="http://securityratty.com/tag/lot">lot</category>
      <category domain="http://securityratty.com/tag/jonathan zar">jonathan zar</category>
      <source url="http://feeds.feedburner.com/~r/BlueBox/~3/431331276/three-years-of-blue-box-podcasts.html">Three years of Blue Box podcasts....</source>
    </item>
    <item>
      <title><![CDATA[Blue Box's 3-year anniversary coming up on Friday... ]]></title>
      <link>http://securityratty.com/article/a116eaf0133996627443234f07d74420</link>
      <guid>http://securityratty.com/article/a116eaf0133996627443234f07d74420</guid>
      <description><![CDATA[It was three years ago Friday, on October 24, 2005, that I uploaded Blue Box Podcast #1 , an 11-minute show where I introduced the show, talked about VoIP security news (To no surprise, I was talking...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml">It was three years ago Friday, on October 24, 2005, that I uploaded <a href="http://www.blueboxpodcast.com/2005/10/blue_box_podcas.html">Blue Box Podcast #1</a>, an 11-minute show where I introduced the show, talked about VoIP security news (To no surprise, I was talking about Skype security!), some projects of VOIPSA and some other podcasts people might find interesting. A week later, on Halloween 2005, Jonathan joined me in <a href="http://www.blueboxpodcast.com/2005/11/blue_box_podcas.html">Blue Box Podcast #2</a> and we were off and running...

<p>Three years later... 84 main Blue Box episodes (with one more recorded) .... 26 Special Editions (with about 10 in the queue)... almost <em>250,000</em> downloads... we're still here and, with an admitted bit of a rough patch this summer, are still going along creating shows and enjoying what we do.

<p>Jonathan and I are planning to record a 3-year show on this coming Friday, October 24th, and if you have any comments you would like us to include in that show, please do get them to us by the end of the day on Thursday, October 23rd.  You can send them to us via:
<ul>
<li>Email to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>
<li>Phone to +1-415-830-5439
<li>Phone via SIP to <a href="sip:bluebox@voipuser.org">sip:bluebox@voipuser.org</a>
</ul>
<p>The show started out 3 years ago as really an experiment in seeing whether or not podcasting could be used to reach out to very specific audiences... and it's been both fun, amazing and interesting to see how well it's done.
<p>Thank you to all of you who have continued to listen and contribute over the years!


<!-- Technorati Tags Start -->
<p>Technorati Tags:
<a href="http://technorati.com/tag/blue%20box" rel="tag">blue box</a>, <a href="http://technorati.com/tag/bluebox" rel="tag">bluebox</a>, <a href="http://technorati.com/tag/voip" rel="tag">voip</a>, <a href="http://technorati.com/tag/voip%20security" rel="tag">voip security</a>, <a href="http://technorati.com/tag/security" rel="tag">security</a>, <a href="http://technorati.com/tag/dan%20york" rel="tag">dan york</a>, <a href="http://technorati.com/tag/jonathan%20zar" rel="tag">jonathan zar</a>, <a href="http://technorati.com/tag/voipsa" rel="tag">voipsa</a>
</p>
<!-- Technorati Tags End --></div>

<p><a href="http://feeds.feedburner.com/~a/BlueBox?a=rawl4P"><img src="http://feeds.feedburner.com/~a/BlueBox?i=rawl4P" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/BlueBox?a=pWXDM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=pWXDM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=eOTOM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=eOTOM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=IXAsM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=IXAsM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=4qxNM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=4qxNM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=58c0m"><img src="http://feeds.feedburner.com/~f/BlueBox?i=58c0m" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=uhaaM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=uhaaM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/BlueBox/~4/426937191" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 20 Oct 2008 15:22:26 +0000</pubDate>
      <category domain="http://securityratty.com/tag/voip security news">voip security news</category>
      <category domain="http://securityratty.com/tag/voip">voip</category>
      <category domain="http://securityratty.com/tag/blue box">blue box</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/voip security">voip security</category>
      <category domain="http://securityratty.com/tag/blue box podcast">blue box podcast</category>
      <category domain="http://securityratty.com/tag/friday">friday</category>
      <category domain="http://securityratty.com/tag/october">october</category>
      <category domain="http://securityratty.com/tag/october 24th">october 24th</category>
      <source url="http://feeds.feedburner.com/~r/BlueBox/~3/426937191/blue-boxs-3-yea.html">Blue Box's 3-year anniversary coming up on Friday... </source>
    </item>
    <item>
      <title><![CDATA[Flash 10 Fixes Clickjacking Flaw]]></title>
      <link>http://securityratty.com/article/7466eca5f91107c96844d79b2e110ddd</link>
      <guid>http://securityratty.com/article/7466eca5f91107c96844d79b2e110ddd</guid>
      <description><![CDATA[Not long after &quot;clickjacking&quot; attacks appeared several weeks ago it became clear that the culprit was Adobe's Flash. And the problem, as we say in the software biz, wasn't a bug, it was a feature....]]></description>
      <content:encoded><![CDATA[Not long after <a href="http://securitywatch.eweek.com/vulnerability_research/clickjacking_browser_attack_details_emerge.html">"clickjacking" attacks appeared several weeks ago</a> it became clear that the culprit was Adobe's Flash. And the problem, as we say in the software biz, wasn't a bug, it was a feature. This feature has been modified in <a href="http://www.eweek.com/c/a/Application-Development/Adobe-Releases-Flash-Player-10/">the new Flash 10 player</a> to address the problem.

The problem is clipboard access. By default, Flash 9 allowed a Flash program to read and write to the clipboard. "Clickjacking" attacks took advantage of this to persistently stuff a value. usually a malicious URL, into the clipboard, in the hope the user would visit it. The attack is as cross-platform as Flash, working on Macs as well as Windows.

In Flash 10 the clipboard methods will only work when called through ActionScript which originates with a user action, like pressing a button. No longer will a silent Flash app be able to hijack the clipboard completely without the user noticing.

This change was just one of <a href="http://www.adobe.com/devnet/flashplayer/articles/fplayer10_security_changes.html">many security changes in the Flash 10 player</a>. Changes in how Flash handles policy files means that developers will have to address their use of them. Errors on socket connect() calls will be handled differently. And much in the same philosophy as with clipboards, file uploads and downloads may only occur in script that begins with a user action. There are other changes as well.

The flip side of this fix is that it is not implemented in Flash 9. This means that the only way to escape clickjacking attacks is to upgrade to Flash 10.
<p><a href="http://feedads.googleadservices.com/~a/FtymtK-1YQe4YgTHIvGH8JR05Ck/a"><img src="http://feedads.googleadservices.com/~a/FtymtK-1YQe4YgTHIvGH8JR05Ck/i" border="0" ismap="true"></img></a></p><img src="http://feedproxy.google.com/~r/RSS/cheap_hack/~4/58cVGsWzlbk" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 16 Oct 2008 10:07:56 +0000</pubDate>
      <category domain="http://securityratty.com/tag/flash">flash</category>
      <category domain="http://securityratty.com/tag/silent flash app">silent flash app</category>
      <category domain="http://securityratty.com/tag/flash program">flash program</category>
      <category domain="http://securityratty.com/tag/clipboard">clipboard</category>
      <category domain="http://securityratty.com/tag/clipboard methods">clipboard methods</category>
      <category domain="http://securityratty.com/tag/user">user</category>
      <category domain="http://securityratty.com/tag/user action">user action</category>
      <category domain="http://securityratty.com/tag/clipboard access">clipboard access</category>
      <category domain="http://securityratty.com/tag/clipboard completely">clipboard completely</category>
      <source url="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~3/58cVGsWzlbk/flash_10_fixes_clickjacking_flaw.html">Flash 10 Fixes Clickjacking Flaw</source>
    </item>
    <item>
      <title><![CDATA[SmartPhones Just One More Spam Vector]]></title>
      <link>http://securityratty.com/article/3334dd3ee138602a47ef51983940dd0c</link>
      <guid>http://securityratty.com/article/3334dd3ee138602a47ef51983940dd0c</guid>
      <description><![CDATA[The Apple iPhone has another vulnerability, one that shouldnt surprise you if youve been paying attention
The news of the latest problems surfaced after Apple allegedly ignored researchers reports to...]]></description>
      <content:encoded><![CDATA[<p>The Apple iPhone has another vulnerability, one that shouldn&#8217;t surprise you if you&#8217;ve been paying attention.</p>
<p>The <a rel="nofollow" target="_blank" href="http://www.informationweek.com/news/personal_tech/iphone/showArticle.jhtml?articleID=210605451">news </a>of the latest problems surfaced after Apple allegedly ignored researchers&#8217; reports to them and the researchers decided to go public with the news :</p>
<p>In Mail, users can hover over an embedded hyperlink to see the URL, but these URLS get cut off due to the small screen. Users might see a trusted domain, but when they click it, find that the link actually resolves to an untrusted site.</p>
<p>The second vulnerability is that Mail automatically downloads images, leaving users open to malware.</p>
<p>It&#8217;s &#8220;a pretty dumb design flaw&#8221; says the <a rel="nofollow" target="_blank" href="http://aviv.raffon.net/2008/10/02/HappyNewYear.aspx">researcher </a>who discovered the problem.</p>]]></content:encoded>
      <pubDate>Thu, 09 Oct 2008 07:03:56 +0000</pubDate>
      <category domain="http://securityratty.com/tag/users">users</category>
      <category domain="http://securityratty.com/tag/researchers">researchers</category>
      <category domain="http://securityratty.com/tag/researchers reports">researchers reports</category>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <category domain="http://securityratty.com/tag/mail">mail</category>
      <category domain="http://securityratty.com/tag/downloads images">downloads images</category>
      <category domain="http://securityratty.com/tag/apple iphone">apple iphone</category>
      <category domain="http://securityratty.com/tag/apple allegedly">apple allegedly</category>
      <category domain="http://securityratty.com/tag/news">news</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/416004668/">SmartPhones Just One More Spam Vector</source>
    </item>
    <item>
      <title><![CDATA[Hole in Adobe software allows free movie downloads ]]></title>
      <link>http://securityratty.com/article/2b98216ff0e66746f89b19ec6be7805c</link>
      <guid>http://securityratty.com/article/2b98216ff0e66746f89b19ec6be7805c</guid>
      <description><![CDATA[A security hole in Adobe Systems Inc software, used to distribute movies and TV shows over the Internet, is giving users free access to record and copy from Amazon.com Inc's video streaming...]]></description>
      <content:encoded><![CDATA[A security hole in Adobe Systems Inc software, used to distribute movies and TV shows over the Internet, is giving users free access to record and copy from Amazon.com Inc's video streaming service.]]></content:encoded>
      <pubDate>Sat, 27 Sep 2008 14:10:02 +0000</pubDate>
      <category domain="http://securityratty.com/tag/users free access">users free access</category>
      <category domain="http://securityratty.com/tag/distribute movies">distribute movies</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/adobe systems">adobe systems</category>
      <category domain="http://securityratty.com/tag/security hole">security hole</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/video">video</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/copy">copy</category>
      <source url="http://digg.com/security/Hole_in_Adobe_software_allows_free_movie_downloads_3">Hole in Adobe software allows free movie downloads </source>
    </item>
    <item>
      <title><![CDATA[Hole in Adobe software allows free movie downloads ]]></title>
      <link>http://securityratty.com/article/fd6141c16bfd1a7e15060dff24dd5602</link>
      <guid>http://securityratty.com/article/fd6141c16bfd1a7e15060dff24dd5602</guid>
      <description><![CDATA[A security hole in Adobe Systems Inc software, used to distribute movies and TV shows over the Internet, is giving users free access to record and copy from Amazon.com Inc's video streaming...]]></description>
      <content:encoded><![CDATA[A security hole in Adobe Systems Inc software, used to distribute movies and TV shows over the Internet, is giving users free access to record and copy from Amazon.com Inc's video streaming service.<img src="http://feedproxy.google.com/~r/digg/topic/security/popular/~4/dMHf8gK09iQ" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sat, 27 Sep 2008 14:10:02 +0000</pubDate>
      <category domain="http://securityratty.com/tag/users free access">users free access</category>
      <category domain="http://securityratty.com/tag/distribute movies">distribute movies</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/adobe systems">adobe systems</category>
      <category domain="http://securityratty.com/tag/security hole">security hole</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/video">video</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/copy">copy</category>
      <source url="http://feeds.digg.com/~r/digg/topic/security/popular/~3/dMHf8gK09iQ/Hole_in_Adobe_software_allows_free_movie_downloads_3">Hole in Adobe software allows free movie downloads </source>
    </item>
    <item>
      <title><![CDATA[Adobe Software Flaw Allows Free Movie Downloads]]></title>
      <link>http://securityratty.com/article/df568481dc580e4e180e14c9baaa5fde</link>
      <guid>http://securityratty.com/article/df568481dc580e4e180e14c9baaa5fde</guid>
      <description><![CDATA[A security hole in Adobe Systems Inc software, used to distribute movies and TV shows over the Internet, is giving users free access to record and copy from Amazon.com Incs video streaming service....]]></description>
      <content:encoded><![CDATA[A security hole in Adobe Systems Inc software, used to distribute movies and TV shows over the Internet, is giving users free access to record and copy from Amazon.com Inc&#8217;s video streaming service. The flaw rests in Adobe&#8217;s Flash video servers that are connected to the company&#8217;s players installed in nearly all of the world&#8217;s [...]]]></content:encoded>
      <pubDate>Fri, 26 Sep 2008 20:58:26 +0000</pubDate>
      <category domain="http://securityratty.com/tag/users free access">users free access</category>
      <category domain="http://securityratty.com/tag/flaw rests">flaw rests</category>
      <category domain="http://securityratty.com/tag/distribute movies">distribute movies</category>
      <category domain="http://securityratty.com/tag/companys players">companys players</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/incs video">incs video</category>
      <category domain="http://securityratty.com/tag/adobe systems">adobe systems</category>
      <category domain="http://securityratty.com/tag/security hole">security hole</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <source url="http://cyberinsecure.com/adobe-software-flaw-allows-free-movie-downloads/">Adobe Software Flaw Allows Free Movie Downloads</source>
    </item>
    <item>
      <title><![CDATA[John Zanni Delivers Keynote at the Tier1 Hosting Transformation Summit]]></title>
      <link>http://securityratty.com/article/e6b5db3dba618f48e7fa728ff2173006</link>
      <guid>http://securityratty.com/article/e6b5db3dba618f48e7fa728ff2173006</guid>
      <description><![CDATA[As General Manager of Worldwide Hosting, John Zanni is a key guy for every Managed Service Provider delivering Microsoft based solutions. At this years Hosting Transformation Summit , John gave a...]]></description>
      <content:encoded><![CDATA[<p><img style="border-right: 0px; border-top: 0px; margin: 0px 10px 10px 0px; border-left: 0px; border-bottom: 0px" height="244" alt="spla_image" src="http://blog.sciencelogic.com/wp-content/uploads/2008/09/spla-image.png" width="244" align="left" border="0"> As General Manager of Worldwide Hosting, <a href="http://www.microsoft.com/presspass/features/2008/jul08/07-29qazanni.mspx" target="_blank">John Zanni is a key guy for every Managed Service Provider</a> delivering Microsoft based solutions. At this year&#8217;s <a href="http://www.hostingtransformation.com/na/2008/" target="_blank">Hosting Transformation Summit</a>, John <a href="http://www.hostingtransformation.com/na/2008/agenda.php" target="_blank">gave a keynote</a> titled: &#8220;Leadership Perspective: Cloud Computing – is Virtualization Enough?&#8221;</p>
<p>John talked <a href="http://blogs.zdnet.com/BTL/?p=10007" target="_blank">about Microsoft’s mission</a>, his perspectives on key industry trends and market opportunity; he touched on <a href="http://www.betanews.com/article/Will_Microsofts_virtualization_spur_a_lot_more_cloud_computing/1221867502" target="_blank">Cloud Computing and Virtualization</a> and took some Q&amp;A from the audience of <a href="http://technet.microsoft.com/en-us/serviceproviders/default.aspx" target="_blank">Managed Service Provider</a> executives.</p>
<p>One of his first proclamations - Microsoft has really embraced the heterogeneous environment. Really? How in the world is Microsoft going to help convince IT line managers, or mid level managers to believe this statement? I think they have a long way to go to achieve this vision with any credibility in the marketplace.&nbsp; I do know that they are making small strides.</p>
<p>Microsoft has been widely credited with some very good blogs that are self critical and introspective. They have also been quite active in the standards boards within <a href="http://www.dmtf.org/home" target="_blank">DMTF</a> and many others such as <a href="http://www.openwsman.org/" target="_blank">Open WSMAN</a> and CIMON (<a href="http://www.openpegasus.org/" target="_blank">Open Pegasus</a>). Microsoft in February published 30,000 pages detailed technical specifications – protocol documentation for Exchange, since that time they have published another 15,000 pages. They have had over 224,000 downloads since February 21, 2008. Thus they are trying to be more open by making some of these <a href="http://www.microsoft.com/about/legal/intellectualproperty/protocols/default.mspx" target="_blank">secret sauce protocol resources</a> <a href="http://msdn.microsoft.com/openprotocols" target="_blank">directly available on the web</a>.</p>
<p>So for now, I will take a very cautious wait and see approach to this proclamation. Time will tell.</p>
<p><strong>Trends</strong></p>
<ul>
<li>Rapid growth continues
<li>Hosting Competition has a new face
<ul>
<li>Platform gorillas (amazooglesoft)
<li>Ad supported Web 2.0 hosters (Google, Facebook,) </li>
</ul>
<li>Utility Cloud Computing models are expanding to non-traditional hosting companies
<ul>
<li>Wells Fargo vSafe - hard to believe that a big bank would start to offer a SaaS offering
<li>New tools and markets digital ribbon, CohesiveIT </li>
</ul>
</li>
</ul>
<p><a href="http://mshostingsummit08.spaces.live.com/blog/cns!4308FE7290C0AF4!245.entry" target="_blank">IDC Data shows that growth of SaaS ISV’s is the biggest layer of growth</a>. The fastest growing services are complex, custom applications. IDC says this area will be bigger than the hosting area in the next 5 years. John said that <a href="http://blogs.msdn.com/ukisv/archive/2008/09/22/the-route-to-saas-and-beyond-final-seminar-places-remain-2nd-oct-08.aspx" target="_blank">Microsoft is spending a lot of time, money and energy on this right now</a>.</p>
<p>John said:</p>
<blockquote><p>“when Microsoft thinks about the building blocks that make-up the cloud, <a href="http://www.microsoft.com/virtualization/" target="_blank">virtualization is a core piece</a> of the puzzle. However you also need also identity services, Operating system with standard set of libraries to tap into… or remote storage that application developers will tap into.. Developers will consume these set of services, but you will also need a set of tools to manage your physical, virtual and geographically distributed datacenter infrastructure.” (that is where ScienceLogic comes in!!)</p>
</blockquote>
<p>He went on to say,</p>
<blockquote><p>“In some ways, virtualization enables decentralization – allows you to move from data centers, enables fast scaling out, business to move from on premise to the cloud and off again…. Automation is very important – this will help you scale your business – this is core to your future success.”</p>
</blockquote>
<p>He talked about a new breed of knowledge worker: He called them Digital Natives (compared to grey haired guys like me who are left out of this category).</p>
<p>Definition of a Digital natives? A young adult who has grown up with cellphone, web based applications, Facebook account, as their primary mode of communications.</p>
<p>John commented that we are 5 years into a 10 year journey. Only 12% of all servers in the world are virtualized today… in the next 4 years it will double to 25%. This is <a href="http://www.interopnews.com/news/vmware-ceo-maritz-addresses-virtualization-the-cloud-and-cha.html" target="_blank">the time to think through</a> how this business will affect you.</p>
<blockquote><p>‘Virtualization without good management is more dangerous than not using virtualization in the first place.” Thomas Bittman, Analyst Gartner</p>
</blockquote>
<p>Patching and provisioning nightmare – no scalable administration – sprawl chaos.</p>
<p>John posed a question to the audience: How do you partner to provide the ISV support in application development with specific market needs… partner by keeping the <a href="http://tarrysingh.blogspot.com/2008/09/microsofts-coo-on-cloud-computing.html" target="_blank">hosting to SaaS solution</a> providers up and running and provide the quality of service that their customers expect…. Complimentary services of storage and backup is a big win with a huge market-upside over the next 5 years..</p>
<p>John said that <a href="http://blogs.msdn.com/mhpta/archive/2008/04/10/microsoft-hosting-summit-2008.aspx" target="_blank">Microsoft continues</a> to make&nbsp; <a href="http://www.virtualization.info/2008/07/microsoft-bets-on-hosting-providers-to.html" target="_blank">huge investments with Managed Service Providers</a>.</p>
<ul>
<li>Investing in the <a href="http://www.microsoft.com/hosting/" target="_blank">windows hosting platform</a>
<li>Hyper V and SQL2008 GoLive program - getting beta code out to service provides to find as many bugs as early as possible.
<li><a href="http://blogs.msdn.com/stevecla01/archive/2008/09/22/explaining-software-plus-services.aspx" target="_blank">Software + Services (S+S)</a> incubation center program
<li>Partnering for <a href="http://tarrysingh.blogspot.com/2008/09/microsofts-coo-on-cloud-computing.html" target="_blank">cloud platform market offers</a>
<li>Cloud platform guidance and best practices </li>
</ul>
<p>During the Q&amp;A, David Burns from Cincinnati Bell asked the very best question… “when are you going to make it easier for the Service Provider market to <a href="http://www.virtualization.info/2008/09/microsoft-to-allow-3rd-parties-to.html" target="_blank">deal with the Microsoft Service Provider Licensing Agreement (SPLA)</a> quarterly statistics pull and change the SPLA pricing to be more efficient and creative for the new Virtualization and Cloud offerings you have talked about?&#8221;</p>
<p>John’s response: “We hear your frustrations loud and clear and are working on some new ideas for the future version of SPLA.” My interpretation – &#8220;Dear Service Providers don’t expect anything new or easier to deal with in the next 6 months!&#8221;</p>
<p>His closing remarks: &#8220;Cloud is evolving = very early stages, lots of hype, but think of how this evolution will effect your business and how you can plug into it.”</p>
]]></content:encoded>
      <pubDate>Thu, 25 Sep 2008 12:00:27 +0000</pubDate>
      <category domain="http://securityratty.com/tag/service provider market">service provider market</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/service providers">service providers</category>
      <category domain="http://securityratty.com/tag/service provider">service provider</category>
      <category domain="http://securityratty.com/tag/service provider executives">service provider executives</category>
      <category domain="http://securityratty.com/tag/john">john</category>
      <category domain="http://securityratty.com/tag/john zanni">john zanni</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/microsoft based solutions">microsoft based solutions</category>
      <source url="http://blog.sciencelogic.com/john-zanni-delivers-keynote-at-the-tier1-hosting-transformation-summit/09/2008">John Zanni Delivers Keynote at the Tier1 Hosting Transformation Summit</source>
    </item>
  </channel>
</rss>
