<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: e-commerce]]></title>
    <link>http://securityratty.com/tag/e-commerce</link>
    <description></description>
    <pubDate>Fri, 29 Aug 2008 12:21:47 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Beware of UC security threats]]></title>
      <link>http://securityratty.com/article/5b57fb7dc278e860bcb94e92d20f7bf8</link>
      <guid>http://securityratty.com/article/5b57fb7dc278e860bcb94e92d20f7bf8</guid>
      <description><![CDATA[Unified communications opens up your VoIP network new avenues of collaboration, including instant messaging, video, business applications and e-mail. And that opens up your network to new avenues of...]]></description>
      <content:encoded><![CDATA[Unified communications opens up your VoIP network new avenues of collaboration, including instant messaging, video, business applications and e-mail. And that opens up your network to new avenues of attack.]]></content:encoded>
      <pubDate>Sun, 07 Sep 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/voip network">voip network</category>
      <category domain="http://securityratty.com/tag/avenues">avenues</category>
      <category domain="http://securityratty.com/tag/business applications">business applications</category>
      <category domain="http://securityratty.com/tag/video">video</category>
      <category domain="http://securityratty.com/tag/attack">attack</category>
      <category domain="http://securityratty.com/tag/instant">instant</category>
      <category domain="http://securityratty.com/tag/collaboration">collaboration</category>
      <category domain="http://securityratty.com/tag/e-mail">e-mail</category>
      <source url="http://www.networkworld.com/news/2008/090808-guide-voip.html?fsrc=rss-security">Beware of UC security threats</source>
    </item>
    <item>
      <title><![CDATA[78% of my email is Spam?]]></title>
      <link>http://securityratty.com/article/0f9c02618e825b72f1c253cd8c08edf7</link>
      <guid>http://securityratty.com/article/0f9c02618e825b72f1c253cd8c08edf7</guid>
      <description><![CDATA[Ouch. Well at least we Americans can be proud of something we export huh


clipped from www.crime-research.org

Spam Is Growing And Getting More Sophisticated



Besides the innovations, the overall...]]></description>
      <content:encoded><![CDATA[<div > Ouch.<br/>Well at least we Americans can be proud of something we export huh. </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clipmark/2CA8E8E9-F913-4EE9-BDA9-B23A13A2B2DA/" title="go to this clipmark"><img src="http://content.clipmarks.com/blog_icon/893ca49a-ebec-4ae2-98d8-cf1d3bd6ef2a/2CA8E8E9-F913-4EE9-BDA9-B23A13A2B2DA/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.crime-research.org/news/02.09.2008/3553/" href="http://www.crime-research.org/news/02.09.2008/3553/" style="font-size: 11px;">www.crime-research.org</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.crime-research.org/news/02.09.2008/3553/ -->
<div style="margin: 4px 0px; color: #000000; font-size: 20px;">Spam Is Growing And Getting More Sophisticated
</div>
</td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.crime-research.org/news/02.09.2008/3553/ --><DIV><br />
Besides the innovations, the overall volume of spam is up, too. In July 2007, about 66 percent of all e-mail messages were spam, the report said. This year, the figure rose to 78 percent.</DIV></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/2CA8E8E9-F913-4EE9-BDA9-B23A13A2B2DA/blog/" title="blog or email this clip"><img src="http://content7.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
<BR/><MAP name="bdv_RSS_Ad_060908024403"><AREA alt="Feed Ads By BidVertiser.com" shape="poly" coords="0,0,467,0,467,45,315,45,315,59,0,59" href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=060908024403&amp;click=1" target="_blank" /><AREA alt="Feed Ads By BidVertiser.com" shape="rect" coords="315,45,467,59" href="http://www.bidvertiser.com/bdv/bidvertiser/bdv_ref.dbm?Ref_PID=165886&amp;Ref_Option=main&amp;source=90614506" target="_blank" /></MAP><P><a href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=060908024403&amp;click=1" target="_blank"><IMG src="http://bdv.bidvertiser.com/BidVertiser.dbm?pid=165886&amp;bid=400950&amp;PHS=060908024403&amp;rssimage=1&amp;rSRC=2" border="0" usemap="#bdv_RSS_Ad_060908024403" /></a></P>]]></content:encoded>
      <pubDate>Sat, 06 Sep 2008 10:44:03 +0000</pubDate>
      <category domain="http://securityratty.com/tag/spam">spam</category>
      <category domain="http://securityratty.com/tag/percent">percent</category>
      <category domain="http://securityratty.com/tag/e-mail messages">e-mail messages</category>
      <category domain="http://securityratty.com/tag/figure">figure</category>
      <category domain="http://securityratty.com/tag/volume">volume</category>
      <category domain="http://securityratty.com/tag/org">org</category>
      <category domain="http://securityratty.com/tag/americans">americans</category>
      <category domain="http://securityratty.com/tag/innovations">innovations</category>
      <category domain="http://securityratty.com/tag/crime-research">crime-research</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=606">78% of my email is Spam?</source>
    </item>
    <item>
      <title><![CDATA[ET and IT]]></title>
      <link>http://securityratty.com/article/f7836c0e5e12bf621dfc029dec99f890</link>
      <guid>http://securityratty.com/article/f7836c0e5e12bf621dfc029dec99f890</guid>
      <description><![CDATA[Interesting piece by Tom Friedman (who has been on the green bus longer than anyone in MSM) comparing the candidates' energy stances, especially this part

Why? Because renewable energy technologies...]]></description>
      <content:encoded><![CDATA[<p>Interesting <a href="http://www.nytimes.com/2008/09/03/opinion/03friedman.html?em=&amp;pagewanted=print">piece</a> by Tom Friedman (who has been on the green bus longer than anyone in MSM) comparing the candidates&#39; energy stances, especially this part:</p><br /><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p>Why? Because renewable energy technologies — what I call “E.T.” — are going to constitute the next great global industry. They will rival and probably surpass “I.T.” — information technology. The country that spawns the most E.T. companies will enjoy more economic power, strategic advantage and rising standards of living. We need to make sure that is America. Big oil and OPEC want to make sure it is not.</p></blockquote><br /><div><a href="http://money.cnn.com/2008/07/08/technology/Kleiner_bets_the_farm_Lashinsky.fortune/index.htm">Kleiner Perkins set up a $500M green growth fund</a>, which sounds like a lot, until you realize that energy is a $6 trillion industry. So Friedman is right that ET is going to be bigger than IT on the top line, now profit margins may be a different story.</div>]]></content:encoded>
      <pubDate>Fri, 05 Sep 2008 07:34:12 +0000</pubDate>
      <category domain="http://securityratty.com/tag/energy">energy</category>
      <category domain="http://securityratty.com/tag/renewable energy technologies">renewable energy technologies</category>
      <category domain="http://securityratty.com/tag/energy stances">energy stances</category>
      <category domain="http://securityratty.com/tag/friedman">friedman</category>
      <category domain="http://securityratty.com/tag/tom friedman">tom friedman</category>
      <category domain="http://securityratty.com/tag/kleiner perkins set">kleiner perkins set</category>
      <category domain="http://securityratty.com/tag/top line">top line</category>
      <category domain="http://securityratty.com/tag/strategic advantage">strategic advantage</category>
      <category domain="http://securityratty.com/tag/economic power">economic power</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/09/et-and-it.html">ET and IT</source>
    </item>
    <item>
      <title><![CDATA[Blue Box SE#026 - Astricon 2007 presentation on VoIP security and Asterisk]]></title>
      <link>http://securityratty.com/article/ceff3c168541790ec71113285297b6e6</link>
      <guid>http://securityratty.com/article/ceff3c168541790ec71113285297b6e6</guid>
      <description><![CDATA[Synopsis: Blue Box Special Edition #26: Astricon 2007 presentation - &quot;Hacking and Attacking VoIP Systems: What you need to worry about
Welcome to Blue Box: The VoIP Security Podcast Special Edition...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Synopsis:</strong>&nbsp; Blue Box Special Edition #26: Astricon 2007 presentation - &quot;Hacking and Attacking VoIP Systems: What you need to worry about&quot;</p><hr /><p>Welcome to <strong>Blue Box: The VoIP Security Podcast</strong> Special Edition #26, a 55-minute podcast&nbsp; from Dan York and Jonathan Zar covering VoIP security news, comments and opinions.&nbsp; &nbsp; </p>

<p><a href="http://media.libsyn.com/media/lodestar/BBP-SE026-Astricon2007-VoIPSecurity.mp3" rel="enclosure">Download the show here</a> (MP3, 6MB) or <a href="http://feeds.feedburner.com/BlueBox">subscribe to the RSS feed</a> to download the show automatically.&nbsp; </p>

<p>You may also listen to this podcast right now:</p> 

<p><object width="200" height="20" type="application/x-shockwave-flash" data="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-SE026-Astricon2007-VoIPSecurity.mp3"><param name="movie" value="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-SE026-Astricon2007-VoIPSecurity.mp3&amp;bgcolor=#FFFFFF" /></object> </p> 

<p><strong>Show Content:</strong></p> 
<p>A year ago in September 2007, I (Dan York) spoke at Astricon 2007 in Arizona, USA, about &quot;Hacking and Attacking VoIP Systems: What You Need To Worry About&quot; My presentation covered a lot of the typical VoIP security threats, tools and best practices but also expanded a bit into specific security issues with Asterisk.&nbsp; Please do keep in mind that it has been a year since this presentation and so some of the issues I mention have been addressed. (<a href="http://www.astricon.net/">Astricon</a>, for those who don't know, is an annual developer conference for those who work with the <a href="http://www.asterisk.org/">Asterisk open source telephony platform</a>. Astricon 2008 is, in fact, coming up in about 3 weeks but I will not be attending this year.)
</p>

<p>The slides for this talk <a href="http://www.slideshare.net/danyork/hacking-and-attacking-voip-systems-what-you-need-to-know/">are available from Slideshare</a>:
</p>



<div id="__ss_178451" style="width: 425px; text-align: left;"><a title="Hacking and Attacking VoIP Systems - What You Need To Know" href="http://www.slideshare.net/danyork/hacking-and-attacking-voip-systems-what-you-need-to-know?src=embed" style="margin: 12px 0pt 3px; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Hacking and Attacking VoIP Systems - What You Need To Know</a><object width="425" height="355" style="margin: 0px;"><param value="http://static.slideshare.net/swf/ssplayer2.swf?doc=hacking-and-attacking-voip-systems-what-you-need-to-know-119595215763603-5&amp;stripped_title=hacking-and-attacking-voip-systems-what-you-need-to-know" name="movie" /><param value="true" name="allowFullScreen" /><param value="always" name="allowScriptAccess" /><embed width="425" height="355" allowfullscreen="true" allowscriptaccess="always" type="application/x-shockwave-flash" src="http://static.slideshare.net/swf/ssplayer2.swf?doc=hacking-and-attacking-voip-systems-what-you-need-to-know-119595215763603-5&amp;stripped_title=hacking-and-attacking-voip-systems-what-you-need-to-know"></embed></object><div style="font-size: 11px; font-family: tahoma,arial; height: 26px; padding-top: 2px;">View SlideShare <a title="View Hacking and Attacking VoIP Systems - What You Need To Know on SlideShare" href="http://www.slideshare.net/danyork/hacking-and-attacking-voip-systems-what-you-need-to-know?src=embed" style="text-decoration: underline;">presentation</a> or <a href="http://www.slideshare.net/upload?src=embed" style="text-decoration: underline;">Upload</a> your own. (tags: <a href="http://slideshare.net/tag/voip" style="text-decoration: underline;">voip</a> <a href="http://slideshare.net/tag/voipsecurity" style="text-decoration: underline;">voipsecurity</a>)</div></div>
<p><em>(And yes, at some point I'll sync the audio with the slides.)</em>
</p>

<p>Production assistance on this Special Edition was provided by Michael Graves who had a very tough task given the poor quality of the recording that I gave to him!&nbsp; Kudos to Michael for getting it to sound as good as it does.

</p>

<p>Comments, suggestions and feedback are welcome either as replies to this post&nbsp; or via e-mail to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>.&nbsp; Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.&nbsp; You may also call the listener comment line at either +1-415-830-5439 or via SIP to '<a href="sip:bluebox@voipuser.org">bluebox@voipuser.org</a>' to leave a comment there.&nbsp; </p> <p>Thank you for listening and please do let us know what you think of the show. </p></div>
]]></content:encoded>
      <pubDate>Wed, 03 Sep 2008 15:54:03 +0000</pubDate>
      <category domain="http://securityratty.com/tag/presentation">presentation</category>
      <category domain="http://securityratty.com/tag/astricon">astricon</category>
      <category domain="http://securityratty.com/tag/view slideshare presentation">view slideshare presentation</category>
      <category domain="http://securityratty.com/tag/slideshare">slideshare</category>
      <category domain="http://securityratty.com/tag/voip systems">voip systems</category>
      <category domain="http://securityratty.com/tag/audio comments">audio comments</category>
      <category domain="http://securityratty.com/tag/audio">audio</category>
      <category domain="http://securityratty.com/tag/specific security issues">specific security issues</category>
      <category domain="http://securityratty.com/tag/listener comment line">listener comment line</category>
      <source url="http://www.blueboxpodcast.com/2008/09/blue-box-se026.html">Blue Box SE#026 - Astricon 2007 presentation on VoIP security and Asterisk</source>
    </item>
    <item>
      <title><![CDATA[Blue Box SE#026 - Astricon 2007 presentation on VoIP security and Asterisk]]></title>
      <link>http://securityratty.com/article/f2bb50144dae112aaea9593bf1748c51</link>
      <guid>http://securityratty.com/article/f2bb50144dae112aaea9593bf1748c51</guid>
      <description><![CDATA[Synopsis: Blue Box Special Edition #26: Astricon 2007 presentation - &quot;Hacking and Attacking VoIP Systems: What you need to worry about
Welcome to Blue Box: The VoIP Security Podcast Special Edition...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Synopsis:</strong>&nbsp; Blue Box Special Edition #26: Astricon 2007 presentation - &quot;Hacking and Attacking VoIP Systems: What you need to worry about&quot;</p><hr /><p>Welcome to <strong>Blue Box: The VoIP Security Podcast</strong> Special Edition #26, a 55-minute podcast&nbsp; from Dan York and Jonathan Zar covering VoIP security news, comments and opinions.&nbsp; &nbsp; </p>

<p><a href="http://media.libsyn.com/media/lodestar/BBP-SE026-Astricon2007-VoIPSecurity.mp3" rel="enclosure">Download the show here</a> (MP3, 6MB) or <a href="http://feeds.feedburner.com/BlueBox">subscribe to the RSS feed</a> to download the show automatically.&nbsp; </p>

<p>You may also listen to this podcast right now:</p> 

<p><object width="200" height="20" type="application/x-shockwave-flash" data="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-SE026-Astricon2007-VoIPSecurity.mp3"><param name="movie" value="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-SE026-Astricon2007-VoIPSecurity.mp3&amp;bgcolor=#FFFFFF" /></object> </p> 

<p><strong>Show Content:</strong></p> 
<p>A year ago in September 2007, I (Dan York) spoke at Astricon 2007 in Arizona, USA, about &quot;Hacking and Attacking VoIP Systems: What You Need To Worry About&quot; My presentation covered a lot of the typical VoIP security threats, tools and best practices but also expanded a bit into specific security issues with Asterisk.&nbsp; Please do keep in mind that it has been a year since this presentation and so some of the issues I mention have been addressed. (<a href="http://www.astricon.net/">Astricon</a>, for those who don't know, is an annual developer conference for those who work with the <a href="http://www.asterisk.org/">Asterisk open source telephony platform</a>. Astricon 2008 is, in fact, coming up in about 3 weeks but I will not be attending this year.)
</p>

<p>The slides for this talk <a href="http://www.slideshare.net/danyork/hacking-and-attacking-voip-systems-what-you-need-to-know/">are available from Slideshare</a>:
</p>



<div id="__ss_178451" style="width: 425px; text-align: left;"><a title="Hacking and Attacking VoIP Systems - What You Need To Know" href="http://www.slideshare.net/danyork/hacking-and-attacking-voip-systems-what-you-need-to-know?src=embed" style="margin: 12px 0pt 3px; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Hacking and Attacking VoIP Systems - What You Need To Know</a><object width="425" height="355" style="margin: 0px;"><param value="http://static.slideshare.net/swf/ssplayer2.swf?doc=hacking-and-attacking-voip-systems-what-you-need-to-know-119595215763603-5&amp;stripped_title=hacking-and-attacking-voip-systems-what-you-need-to-know" name="movie" /><param value="true" name="allowFullScreen" /><param value="always" name="allowScriptAccess" /><embed width="425" height="355" allowfullscreen="true" allowscriptaccess="always" type="application/x-shockwave-flash" src="http://static.slideshare.net/swf/ssplayer2.swf?doc=hacking-and-attacking-voip-systems-what-you-need-to-know-119595215763603-5&amp;stripped_title=hacking-and-attacking-voip-systems-what-you-need-to-know"></embed></object><div style="font-size: 11px; font-family: tahoma,arial; height: 26px; padding-top: 2px;">View SlideShare <a title="View Hacking and Attacking VoIP Systems - What You Need To Know on SlideShare" href="http://www.slideshare.net/danyork/hacking-and-attacking-voip-systems-what-you-need-to-know?src=embed" style="text-decoration: underline;">presentation</a> or <a href="http://www.slideshare.net/upload?src=embed" style="text-decoration: underline;">Upload</a> your own. (tags: <a href="http://slideshare.net/tag/voip" style="text-decoration: underline;">voip</a> <a href="http://slideshare.net/tag/voipsecurity" style="text-decoration: underline;">voipsecurity</a>)</div></div>
<p><em>(And yes, at some point I'll sync the audio with the slides.)</em>
</p>

<p>Production assistance on this Special Edition was provided by Michael Graves who had a very tough task given the poor quality of the recording that I gave to him!&nbsp; Kudos to Michael for getting it to sound as good as it does.

</p>

<p>Comments, suggestions and feedback are welcome either as replies to this post&nbsp; or via e-mail to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>.&nbsp; Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.&nbsp; You may also call the listener comment line at either +1-415-830-5439 or via SIP to '<a href="sip:bluebox@voipuser.org">bluebox@voipuser.org</a>' to leave a comment there.&nbsp; </p> <p>Thank you for listening and please do let us know what you think of the show. </p></div>

<p><a href="http://feeds.feedburner.com/~a/BlueBox?a=ro8CGS"><img src="http://feeds.feedburner.com/~a/BlueBox?i=ro8CGS" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/BlueBox?a=lF8MaL"><img src="http://feeds.feedburner.com/~f/BlueBox?i=lF8MaL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=d2zQmL"><img src="http://feeds.feedburner.com/~f/BlueBox?i=d2zQmL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=h8U0ZL"><img src="http://feeds.feedburner.com/~f/BlueBox?i=h8U0ZL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=8B82bL"><img src="http://feeds.feedburner.com/~f/BlueBox?i=8B82bL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=keFvsl"><img src="http://feeds.feedburner.com/~f/BlueBox?i=keFvsl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=WSWkOL"><img src="http://feeds.feedburner.com/~f/BlueBox?i=WSWkOL" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/BlueBox/~4/382765294" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 03 Sep 2008 14:54:03 +0000</pubDate>
      <category domain="http://securityratty.com/tag/presentation">presentation</category>
      <category domain="http://securityratty.com/tag/astricon">astricon</category>
      <category domain="http://securityratty.com/tag/view slideshare presentation">view slideshare presentation</category>
      <category domain="http://securityratty.com/tag/slideshare">slideshare</category>
      <category domain="http://securityratty.com/tag/voip systems">voip systems</category>
      <category domain="http://securityratty.com/tag/audio comments">audio comments</category>
      <category domain="http://securityratty.com/tag/audio">audio</category>
      <category domain="http://securityratty.com/tag/specific security issues">specific security issues</category>
      <category domain="http://securityratty.com/tag/listener comment line">listener comment line</category>
      <source url="http://feeds.feedburner.com/~r/BlueBox/~3/382765294/blue-box-se026.html">Blue Box SE#026 - Astricon 2007 presentation on VoIP security and Asterisk</source>
    </item>
    <item>
      <title><![CDATA[A tip on using ASP.NET validation controls]]></title>
      <link>http://securityratty.com/article/20fc43ecdf7ca60d64f9285d0e374a62</link>
      <guid>http://securityratty.com/article/20fc43ecdf7ca60d64f9285d0e374a62</guid>
      <description><![CDATA[Executive summary
ValidationSummary controls look at the ErrorMessage field to figure out what to display, so always use ErrorMessage in a verbose enough way that it will be helpful from a...]]></description>
      <content:encoded><![CDATA[<p>Executive summary:</p> <ul> <li>ValidationSummary controls look at the ErrorMessage field to figure out what to display, so always use ErrorMessage in a verbose enough way that it will be helpful from a ValidationSummary control.</li> <li>If you need a shorter message to display inline (i.e., where the validation control is on the form, as opposed to the ValidationSummary) use the body of the control to define it.</li></ul> <p>In the past, I&#39;ve used RequiredFieldValidator controls on my web forms to remind users that certain fields are required. I would set the ErrorMessage to something vanilla like, &quot;This field is required&quot;, or even something simpler like &quot;*&quot; (an asterisk) if I didn&#39;t have much room on the form to display more prose for an error.</p> <p>A friend was recently testing a new feature that I&#39;d built for our sales team and she had a hard time seeing the little red asterisks that were showing up next to required fields. It felt to her as though she was pushing the submit button on the form but nothing was happening. It was clear that a ValidationSummary control would be helpful, especially if placed close to the submit button for the form.</p> <p>I&#39;ve been a bit lazy in the past about using ValidationSummary controls, partially because most of my forms are simple enough that they feel a bit redundant. But on a more complicated form, they can be very helpful to guide users back to the places on the form where there&#39;s problems.</p> <p>So I threw one of those puppies on the form and immediately saw that there was a problem - my error message was set to &quot;*&quot;, which meant that my validation summary was pretty useless - it just displayed a bunch of red asterisks! And in places where I&#39;d used the prose, &quot;This field is required&quot;, well that was pretty useless as an error message in the summary.</p> <p>After a bit of research and experimentation, I discovered that the ValidationSummary control looks at the ErrorMessage property on each validation control in order to figure out what to display in the summary. So it&#39;s important to use ErrorMessage with a summary in mind! Don&#39;t use text like &quot;*&quot; or &quot;This field is required&quot;. Be more specific so the user can find her way up to the problem field, as in, &quot;PostalCode is required&quot;.</p> <p>But if you make ErrorMessage verbose so that it&#39;s helpful in a summary, it may make your form really ugly when displayed inline next to the control being validated. The trick is to use the body of the validation control element to specify the inline error message. Then you end up with two messages: a verbose one that&#39;s used in your summary, and a more localized, brief message that shows up right next to the control being validated. Note the asterisk that&#39;s in the body of the RequiredFieldValidator below:</p><pre class="csharpcode"><span class="kwrd">&lt;</span><span class="html">asp:RequiredFieldValidator</span>
      <span class="attr">ErrorMessage</span><span class="kwrd">=&quot;Zip/postal code is required&quot;</span>
      <span class="attr">ControlToValidate</span><span class="kwrd">=&#39;txtPostalCode&#39;</span>
      <span class="attr">ValidationGroup</span><span class="kwrd">=&#39;BasicInfo&#39;</span>
      <span class="attr">Display</span><span class="kwrd">=&quot;Dynamic&quot;</span>
      <span class="attr">runat</span><span class="kwrd">=&#39;server&#39;</span><span class="kwrd">&gt;</span>*<span class="kwrd">&lt;/</span><span class="html">asp:RequiredFieldValidator</span><span class="kwrd">&gt;</span></pre>
<p>I&#39;ve learned a lesson from all of this. In the future when I use validation controls I&#39;ll always provide a summary-friendly message in the ErrorMessage field, and if I need something different (typically shorter) to display inline, I&#39;ll put it in the body of the validation control element.</p>
<p>Hope this helps!</p><div style="clear:both;"></div><img src="http://www.pluralsight.com/community/aggbug.aspx?PostID=52816" width="1" height="1">]]></content:encoded>
      <pubDate>Wed, 03 Sep 2008 13:16:35 +0000</pubDate>
      <category domain="http://securityratty.com/tag/shorter message">shorter message</category>
      <category domain="http://securityratty.com/tag/message">message</category>
      <category domain="http://securityratty.com/tag/inline error message">inline error message</category>
      <category domain="http://securityratty.com/tag/validation control element">validation control element</category>
      <category domain="http://securityratty.com/tag/control">control</category>
      <category domain="http://securityratty.com/tag/inline">inline</category>
      <category domain="http://securityratty.com/tag/display inline">display inline</category>
      <category domain="http://securityratty.com/tag/errormessage">errormessage</category>
      <category domain="http://securityratty.com/tag/errormessage property">errormessage property</category>
      <source url="http://www.pluralsight.com/community/blogs/keith/archive/2008/09/03/a-tip-on-using-asp-net-validation-controls.aspx">A tip on using ASP.NET validation controls</source>
    </item>
    <item>
      <title><![CDATA[Spammers use free Web services to shield links]]></title>
      <link>http://securityratty.com/article/5030213f5852b714619760f948531814</link>
      <guid>http://securityratty.com/article/5030213f5852b714619760f948531814</guid>
      <description><![CDATA[Spammers are abusing free Web services to make their spam links look more legitimate, according to e-mail security vendor...]]></description>
      <content:encoded><![CDATA[Spammers are abusing free Web services to make their spam links look more legitimate, according to e-mail security vendor MessageLabs.]]></content:encoded>
      <pubDate>Tue, 02 Sep 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/free web services">free web services</category>
      <category domain="http://securityratty.com/tag/spam links">spam links</category>
      <category domain="http://securityratty.com/tag/spammers">spammers</category>
      <source url="http://www.networkworld.com/news/2008/090308-spammers-use-free-web-services.html?fsrc=rss-security">Spammers use free Web services to shield links</source>
    </item>
    <item>
      <title><![CDATA[IT Security Ask the Experts: Top Queries, August 2008]]></title>
      <link>http://securityratty.com/article/f9b8a85798c10210410db4ce41100194</link>
      <guid>http://securityratty.com/article/f9b8a85798c10210410db4ce41100194</guid>
      <description><![CDATA[Our Web site was created to be a clearing house for technical IT security queries, and we are still fielding quite a few of those. But we continue to receive a broad variety of fascinating questions...]]></description>
      <content:encoded><![CDATA[Our Web site was created to be a clearing house for technical IT security queries, and we are still fielding quite a few of those. But we continue to receive a broad variety of fascinating questions e...]]></content:encoded>
      <pubDate>Tue, 02 Sep 2008 09:48:48 +0000</pubDate>
      <category domain="http://securityratty.com/tag/broad variety">broad variety</category>
      <category domain="http://securityratty.com/tag/security queries">security queries</category>
      <category domain="http://securityratty.com/tag/web site">web site</category>
      <category domain="http://securityratty.com/tag/house">house</category>
      <category domain="http://securityratty.com/tag/questions">questions</category>
      <category domain="http://securityratty.com/tag/technical">technical</category>
      <category domain="http://securityratty.com/tag/receive">receive</category>
      <category domain="http://securityratty.com/tag/continue">continue</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/382697979/">IT Security Ask the Experts: Top Queries, August 2008</source>
    </item>
    <item>
      <title><![CDATA[On The History of Event Processing: Global Network Monitoring]]></title>
      <link>http://securityratty.com/article/0a39883e48015e3b5b486ebc5391de1e</link>
      <guid>http://securityratty.com/article/0a39883e48015e3b5b486ebc5391de1e</guid>
      <description><![CDATA[In A Short History of Complex Event Processing. Part 1: Beginnings , David Luckham opens his history discussion by saying
Event processing has been going on for more than fifty years
However, in On...]]></description>
      <content:encoded><![CDATA[<p>In <a title="A Short History of Complex Event Processing.  Part 1: Beginnings" rel="bookmark" href="http://complexevents.com/?p=321">A Short History of Complex Event Processing. Part 1: Beginnings</a>, David Luckham opens his history discussion by saying;</p>
<blockquote><p>&#8220;Event processing has been going on for more than fifty years.&#8221;</p></blockquote>
<p>However, in <a href="http://epthinking.blogspot.com/2008/08/on-event-processing-as-discipline-and.html" target="_blank">On Event Processing as a Discipline and Some Subsets</a> another colleague mistakenly blogs,</p>
<blockquote><p><em>&#8220;&#8230; <span>people who dealt in this area [network management and event correlation] have never investigated event processing in the larger sense (e.g. looking at additional patterns), and this area has also not spawned the event processing discipline.&#8221;</span></em></p></blockquote>
<p>If you examine just one page from the <a href="http://pavg.stanford.edu/cep/" target="_blank">CEP history at Stanford</a>, researchers there outlined their view of the future applications for CEP, as follows:</p>
<ul>
<li>Instant Insight  - hierarchical event viewing applied to the Enterprise IT layer.
<ul>
<li><a href="http://pavg.stanford.edu/cep/instantinsightpaper.pdf">Analysing business processes</a></li>
</ul>
</li>
<li><a href="http://pavg.stanford.edu/cep/netviewer-presentation.ppt" target="_blank">Network Level Monitoring and Management</a></li>
<li><a href="http://pavg.stanford.edu/ID/">Cyber Security: Network Intrusion Detection</a></li>
<li>Enterprise Monitoring and Management</li>
<li><a href="http://pavg.stanford.edu/cep/final-version-131102.pdf">Modeling and Simulation of Collaborative Business Processes </a></li>
<li>Business Policy Monitoring</li>
<li>Analysis and Debugging of Distributed Systems</li>
</ul>
<p>These applications areas mentioned by Stanford researchers, including Professor Luckham, support and validate our recent discussion <a title="Magic Quadrant for IT Event Correlation and Analysis, 2007" rel="bookmark" href="http://www.thecepblog.com/2008/08/26/magic-quadrant-for-it-event-correlation-and-analysis-2007/"><span style="color: #105cb6;">Magic Quadrant for IT Event Correlation and Analysis, 2007</span></a> where we concluded that <em>&#8220;event correlation and event analysis is Gartner’s closest magic quadrant (MQ)  [...] relates directly to complex event processing (and event processing in general).&#8221;  </em></p>
<p>If you take a detailed look at the 1999 CEP presentation, <a href="http://pavg.stanford.edu/cep/netviewer-presentation.ppt" target="_blank">Defeating Large Scale Attacks: Technology and Strategies for Global Network Monitoring</a> you will readily see that our colleagues are incorrect when they says that event correlational and network management folks have never investigated event processing in the &#8220;larger sense&#8221;.  For example, the 1999 slides above, Stanford, slide 6, is titled &#8220;Complex Event Processing,&#8221; defining CEP from the application perspective of event correlation;</p>
<p><em>Complex Event Processing</em></p>
<ul>
<li>Accept network ‘events’ from any source
<ul>
<li>CISCO NetFlow FlowCollector, tcpdump</li>
</ul>
</li>
<li>Correlates events based on content and temporal relationship between events</li>
<li>Event Processing Agents (EPAs) connected in an Event Processing Network (EPNs)</li>
<li>Both post-mortem and real-time processing</li>
</ul>
<p>This single event correlational project example from David&#8217;s team at Stanford examined the challenging event correlation problems in the context of hierarchical events, maps, patterns, visualization tools, event processing models, patterns languages, network management abstraction layers, and more.  Those core event processing problems from this 1999 example, very large and complex then, still exist today and are much more large and complex - precisely why it is called &#8220;complex event processing.&#8221;</p>
<p>It is quite obvious, in just this one example, that many folks have been looking at event correlation as a motivating application for event processing, in a larger context, for a long time, contrary to what our colleagues write in their &#8220;history of event processing&#8221; posts.  </p>
<p>In a future post I will completely debuke these event processing &#8220;history revisionists.&#8221;   I will illustrate very clearly how the history of event processing goes back at least a decade, and perhaps two (twenty years) before the history outlined in posts like <a href="http://epthinking.blogspot.com/2008/08/on-research-and-practice-in-event.html" target="_blank">On Research and Practice in Event Processing</a> and <a href="http://www.eventstreamprocessing.com/cep-history.htm" target="_blank">The History of Complex Event Processing</a>. </p>
<p>David Luckam stated that the art-and-science of event processing goes back around 50 years. </p>
<p>I am not sure I will go all the way back to 1960 in my next post on the history of event processing.  However,  I will go back at least to the early days of Internet Protocol (IP) networking and illustrate why distributed IP networking, network management and network security, is one of the key  motivating factors for what we now call &#8220;event processing&#8221; and &#8220;complex event processing.&#8221;</p>
]]></content:encoded>
      <pubDate>Sat, 30 Aug 2008 06:17:59 +0000</pubDate>
      <category domain="http://securityratty.com/tag/event">event</category>
      <category domain="http://securityratty.com/tag/event correlational">event correlational</category>
      <category domain="http://securityratty.com/tag/event correlation problemsin">event correlation problemsin</category>
      <category domain="http://securityratty.com/tag/core event">core event</category>
      <category domain="http://securityratty.com/tag/complex event">complex event</category>
      <category domain="http://securityratty.com/tag/complex">complex</category>
      <category domain="http://securityratty.com/tag/event correlation">event correlation</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/hierarchical event">hierarchical event</category>
      <source url="http://www.thecepblog.com/2008/08/30/on-the-history-of-event-processing-global-network-monitoring/">On The History of Event Processing: Global Network Monitoring</source>
    </item>
    <item>
      <title><![CDATA[#6 on the list is the best. Never click that link.]]></title>
      <link>http://securityratty.com/article/7bdcf75feb6ba3b7b6170501369a35f5</link>
      <guid>http://securityratty.com/article/7bdcf75feb6ba3b7b6170501369a35f5</guid>
      <description><![CDATA[You would do well to read and remember the list posted here at this site
It could save you from a case of ID theft


clipped from www.thetechpedia.com
10 Usefull Tips to Stop Junk(Spam) E-mails...]]></description>
      <content:encoded><![CDATA[<div>You would do well to read and remember the list posted here at this site.<br />
It could save you from a case of ID theft.</div>
<table style="border: 4px solid #e5e5e5; margin: 12px 0px; background: #ffffff none repeat scroll 0%; font-family: arial; color: #333333; width: 100%; clear: left;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top">
<table class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top">
<table style="border-bottom: 1px solid #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee; background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><a title="go to this clipmark" href="http://clipmarks.com/clipmark/EB9A0C24-55DF-4102-9D5B-E7816AAB7A69/"><img style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" src="http://content.clipmarks.com/blog_icon/e27458e1-4307-419d-8a4c-cbda08dee513/EB9A0C24-55DF-4102-9D5B-E7816AAB7A69/" border="0" alt="" width="19" height="19" /></a>clipped from <a style="font-size: 11px;" title="http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/" href="http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/">www.thetechpedia.com</a></td>
</tr>
</tbody>
</table>
<table style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/ --></p>
<h2><a title="Permanent Link: 10 Usefull Tips to Stop Junk(Spam) E-mails" rel="bookmark" href="http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/">10 Usefull Tips to Stop Junk(Spam) E-mails</a></h2>
</td>
</tr>
</tbody>
</table>
<table style="border-bottom: 1px solid #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee; background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><a title="go to this clipmark" href="http://clipmarks.com/clipmark/EB9A0C24-55DF-4102-9D5B-E7816AAB7A69/"><img style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" src="http://content9.clipmarks.com/images/clip-icon.gif" border="0" alt="" width="19" height="19" /></a>clipped from <a style="font-size: 11px;" title="http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/" href="http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/">www.thetechpedia.com</a></td>
</tr>
</tbody>
</table>
<table style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/ --></p>
<p class="MsoNormal">I used to suffer from a common problem that many people on the net complain of .Spam E-mails.I don’t get spam any more because I managed to take control of <span class="invisiblelink">my email.</span></p>
</td>
</tr>
</tbody>
</table>
<table style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.thetechpedia.com/2008/08/28/10-usefull-tips-to-stop-junkspam-e-mails/ --></p>
<p class="MsoNormal">I’ve gathered together the then best defences that will help you to fight against Spam.</p>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td style="background:transparent;border-width:0px;padding:0px;"></td>
<td style="border-width: 0px; padding: 0px; background: transparent none repeat scroll 0%; width: 107px;" width="107" align="right"><a title="blog or email this clip" href="http://clipmarks.com/share/EB9A0C24-55DF-4102-9D5B-E7816AAB7A69/blog/"><img style="border-width:0px;padding:0px;margin:0px;" src="http://content6.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" /></a></td>
</tr>
</tbody>
</table>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
      <pubDate>Fri, 29 Aug 2008 12:21:47 +0000</pubDate>
      <category domain="http://securityratty.com/tag/spam">spam</category>
      <category domain="http://securityratty.com/tag/spam e-mails">spam e-mails</category>
      <category domain="http://securityratty.com/tag/e-mails">e-mails</category>
      <category domain="http://securityratty.com/tag/thetechpedia">thetechpedia</category>
      <category domain="http://securityratty.com/tag/net complain">net complain</category>
      <category domain="http://securityratty.com/tag/usefull tips">usefull tips</category>
      <category domain="http://securityratty.com/tag/list">list</category>
      <category domain="http://securityratty.com/tag/stop junk">stop junk</category>
      <category domain="http://securityratty.com/tag/fight">fight</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=595">#6 on the list is the best. Never click that link.</source>
    </item>
  </channel>
</rss>
