<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: oct]]></title>
    <link>http://securityratty.com/tag/oct</link>
    <description></description>
    <pubDate>Wed, 24 Sep 2008 17:13:28 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Spam is silenced, but where are the feds?]]></title>
      <link>http://securityratty.com/article/0ae12b17de41f03b5a8bcd86652d8434</link>
      <guid>http://securityratty.com/article/0ae12b17de41f03b5a8bcd86652d8434</guid>
      <description><![CDATA[On Oct. 14, the U.S. Federal Trade Commission, with help from the U.S. Federal Bureau of Investigation and New Zealand police, announced that it had shut down a vast international spam network known...]]></description>
      <content:encoded><![CDATA[On Oct. 14, the U.S. Federal Trade Commission, with help from the U.S. Federal Bureau of Investigation and New Zealand police, announced that it had shut down a vast international spam network known as HerbalKing.<br style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:3f140cfda5c352ce039acfe79410702e:YM8n%2FHDoFP5O%2FkutGjxM%2FMdwhcE3%2FWVVS866XIm%2FmlJFNcbmgbwDUuQYo%2FZx%2FyyXeyXixOsVzY7z'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:d1645eaf454179da3f6d86af19467085:x7k%2FHj3xGcKxABPoJh10miHLFnKWy3SPkK5NzuAJQqjsne6pgJKcDR%2F2xbgnstFU7fDjJQcdaHfEPA%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:dd7ddef0afb6ba1d8f9bf74d58e107ef:OCf3rMgLfSXpbFsD4dCbuMY7oCQ6iTH9rsFUpa2YsERXko1gOjEiX0Gz2lRDr2j84PGsflaLb6SdWg%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:35095f4e77188c9b445248fd013841e3:Q0743pRbYSmITOwqqmoHzstIJQs8nytsAeOYv1l4WCX%2BAXAmxv0%2BuKHEKOHFJDXWvb3fbeBzl7Kv9A%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>
<a href="http://www.pheedo.com/click.phdo?s=79aac3deef4723caa2871bc820085a43&p=1"><img alt="" style="border: 0;" border="0" src="http://www.pheedo.com/img.phdo?s=79aac3deef4723caa2871bc820085a43&p=1"/></a>
<img src="http://www.pheedo.com/feeds/tracker.php?i=79aac3deef4723caa2871bc820085a43" style="display: none;" border="0" height="1" width="1" alt=""/>
]]></content:encoded>
      <pubDate>Tue, 25 Nov 2008 02:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/federal trade commission">federal trade commission</category>
      <category domain="http://securityratty.com/tag/zealand police">zealand police</category>
      <category domain="http://securityratty.com/tag/federal bureau">federal bureau</category>
      <category domain="http://securityratty.com/tag/investigation">investigation</category>
      <category domain="http://securityratty.com/tag/oct">oct</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=79aac3deef4723caa2871bc820085a43">Spam is silenced, but where are the feds?</source>
    </item>
    <item>
      <title><![CDATA[Spam is silenced, but where are the feds?]]></title>
      <link>http://securityratty.com/article/b8902cdcbd67d18bed8613ec7c80444b</link>
      <guid>http://securityratty.com/article/b8902cdcbd67d18bed8613ec7c80444b</guid>
      <description><![CDATA[On Oct. 14, the U.S. Federal Trade Commission, with help from the U.S. Federal Bureau of Investigation and New Zealand police, announced that it had shut down a vast international spam network known...]]></description>
      <content:encoded><![CDATA[On Oct. 14, the U.S. Federal Trade Commission, with help from the U.S. Federal Bureau of Investigation and New Zealand police, announced that it had shut down a vast international spam network known as HerbalKing.<p><A href="http://ad.doubleclick.net/jump/idg.us.nwf.rss/security;sz=468x60;ord=19194?">
<IMG src="http://ad.doubleclick.net/ad/idg.us.nwf.rss/security;sz=468x60;ord=19194?" border="0" width="468" height="60"></A>
</p>]]></content:encoded>
      <pubDate>Mon, 24 Nov 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/federal trade commission">federal trade commission</category>
      <category domain="http://securityratty.com/tag/zealand police">zealand police</category>
      <category domain="http://securityratty.com/tag/federal bureau">federal bureau</category>
      <category domain="http://securityratty.com/tag/investigation">investigation</category>
      <category domain="http://securityratty.com/tag/oct">oct</category>
      <source url="http://www.networkworld.com/news/2008/112508-spam-is-silenced-but-where.html?fsrc=rss-security">Spam is silenced, but where are the feds?</source>
    </item>
    <item>
      <title><![CDATA[Small attack triggered Microsoft's emergency patch, says researcher]]></title>
      <link>http://securityratty.com/article/09e3d1328d4344d9ad694a6557a179db</link>
      <guid>http://securityratty.com/article/09e3d1328d4344d9ad694a6557a179db</guid>
      <description><![CDATA[The Trojan horse that prompted Microsoft to issue an emergency patch last month for Windows had infected only 200 or so computers prior to the fix's Oct. 23 release, a security researcher said...]]></description>
      <content:encoded><![CDATA[The Trojan horse that prompted Microsoft to issue an emergency patch last month  for Windows had infected only 200 or so computers prior to the fix's Oct. 23 release, a security researcher said today.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:12a378cd79fe23835b79c917d1a44119:gn99RPso7Yd5G4hKUuN2MgTm%2BZIO02llwy49MJNqzjdxHQolX2oJ38x84wrgNtJoe1g8CwN9MZ9f'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:734572b017e3b86957a9704cfdfc1389:eOIT7%2FI515lcmRVb%2BMLvskPemRROdnsu5%2FnklGPtTZDjz6ZFQRXp6Kbe8keXogPhUZLjy%2BP3U%2BPTvA%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:5f364bc5d55de4f1488dd92ce6df6384:MgbXMbcZYFY%2FOxTxkLYDY86TDcPHPUznoglhzK3X2xSPFlS0CE2UANkwe4qpqoRkztidumbW%2BiFIFw%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:0701ec42f0b0b3d070e30ab008dc70c4:IcvJlJTzrNA8UeuoFuYcTedLvBWgQqrp5P0EyCHkz%2Bvj2HvGXnpyvWP3zVstYERLdcYWmBDY5LGVZA%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=2cf6d63114eb2be521cd2945f9b8e909" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=2cf6d63114eb2be521cd2945f9b8e909" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Tue, 04 Nov 2008 02:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/emergency patch">emergency patch</category>
      <category domain="http://securityratty.com/tag/trojan horse">trojan horse</category>
      <category domain="http://securityratty.com/tag/computers prior">computers prior</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/security researcher">security researcher</category>
      <category domain="http://securityratty.com/tag/fix">fix</category>
      <category domain="http://securityratty.com/tag/windows">windows</category>
      <category domain="http://securityratty.com/tag/month">month</category>
      <category domain="http://securityratty.com/tag/release">release</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=2cf6d63114eb2be521cd2945f9b8e909">Small attack triggered Microsoft's emergency patch, says researcher</source>
    </item>
    <item>
      <title><![CDATA[CSI 35th 2008 Discount Passes]]></title>
      <link>http://securityratty.com/article/f1ad94b6283c47c53696f0ea9e012fac</link>
      <guid>http://securityratty.com/article/f1ad94b6283c47c53696f0ea9e012fac</guid>
      <description><![CDATA[Since I am speaking at CSI 35th Annual Conference (on SIEM, believe it or now), I can again give out discount conference passes

The passes cover the full conference, MondayWednesday, November 1719,...]]></description>
      <content:encoded><![CDATA[Since I am speaking at <a href="http://www.csiannual.com/">CSI 35th Annual Conference</a> (on SIEM, believe it or now), I can again give out discount conference passes:<br /><br />"The passes cover the full conference, Monday–Wednesday, November 17–19, 2008, for a <b>55% discount</b>!  To pass along your discount passes, send your guests to <a href="https://www.cmpevents.com/CSI35/a.asp?option=B" target="_blank">CSI 2008 Registration</a> to register for a CSI 2008 Conference Pass and have them enter the below Priority Code in the box provided:  <b>SPK73</b><p><b> </b></p>    <p> </p>   <p> </p>  <p><i>*Please note: This offer is only for new registrations, we cannot re-price current registrations."</i></p><p><span style="font-weight: bold;">UPDATE: THE OFFER BELOW HAVE BEEN TAKEN AS OF 5:00PM Oct 30th.</span><br /></p><p>For those rare people who read all the way to here :-), I can also give our 1 (one!) <span style="font-style: italic;">FREE </span>CSI pass; please email me for it as it will be given on "a first come, first served" basis and can only be used by my loyal blog readers :-)<i><br /></i></p>  <p><i> </i></p><div class="blogger-post-footer">About me: http://www.chuvakin.org</div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=xLnxM"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=xLnxM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=HwgSM"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=HwgSM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=DAjLM"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=DAjLM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/437416234" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 29 Oct 2008 11:08:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/discount passes">discount passes</category>
      <category domain="http://securityratty.com/tag/discount">discount</category>
      <category domain="http://securityratty.com/tag/pass">pass</category>
      <category domain="http://securityratty.com/tag/conference pass">conference pass</category>
      <category domain="http://securityratty.com/tag/csi">csi</category>
      <category domain="http://securityratty.com/tag/free csi pass">free csi pass</category>
      <category domain="http://securityratty.com/tag/conference">conference</category>
      <category domain="http://securityratty.com/tag/discount conference passes">discount conference passes</category>
      <category domain="http://securityratty.com/tag/registrations">registrations</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/437416234/csi-35th-2008-discount-passes.html">CSI 35th 2008 Discount Passes</source>
    </item>
    <item>
      <title><![CDATA[A security lesson from the Joe the Plumber snooper]]></title>
      <link>http://securityratty.com/article/d007ccda5cc293eb33a027960cfbed41</link>
      <guid>http://securityratty.com/article/d007ccda5cc293eb33a027960cfbed41</guid>
      <description><![CDATA[First we had the Gov. Palin Yahoo email break in to teach us the vulnerabilities of weak password reset schemes. Now we have a Joe the Plumber government records snooper teaching us about proper...]]></description>
      <content:encoded><![CDATA[<p>First we had the Gov. Palin Yahoo email break in to <a href="http://www.veracode.com/blog/2008/09/learning-from-sarah-palin-yahoo-email-compromise/">teach us the vulnerabilities of weak password reset </a>schemes.  Now we have a Joe the Plumber government records snooper teaching us about proper computer account management.</p>
<p>The <a href="http://www.dispatch.com/live/content/local_news/stories/2008/10/24/joe.html?sid=101">Columbia Dispatch is reporting </a>that a state employee with access to a &#8220;test account&#8221; has been accessing Joe the Plumber&#8217;s government records:</p>
<blockquote><p>&#8220;We&#8217;re trying to pinpoint where it came from,&#8221; she said. The investigation could become &#8220;criminal in nature,&#8221; she said. Brindisi would not identify the account that pulled the information on Oct. 16.</p>
<p>Records show it was a &#8220;test account&#8221; assigned to the information technology section of the attorney general&#8217;s office, said Department of Public Safety spokesman Thomas Hunter.</p>
<p>Brindisi later said investigators have confirmed that Wurzelbacher&#8217;s information was not accessed within the attorney general&#8217;s office. She declined to provide details. The office&#8217;s test accounts are shared with and used by other law enforcement-related agencies, she said.</p></blockquote>
<p>Security best practices require that test accounts be removed before a system is put into production and loaded with real data.  Otherwise there is no accountability to any one individual.  Shared accounts such as test accounts are frequently abused so that the snooper can get away undetected.  The investigation should look at what other data has been snooped on using this test account.  Perhaps this has been going on for a long time and no one noticed. </p>
<p>It is still likely that the perpetrator can be tracked down if he or she accessed the data from an internal system and the records application logged the IP address that connected to it.  Even if the IP address doesn&#8217;t connect back to an individual&#8217;s computer and to a shared machine, the search will have been narrowed down greatly.</p>
]]></content:encoded>
      <pubDate>Sat, 25 Oct 2008 16:22:44 +0000</pubDate>
      <category domain="http://securityratty.com/tag/offices test accounts">offices test accounts</category>
      <category domain="http://securityratty.com/tag/accounts">accounts</category>
      <category domain="http://securityratty.com/tag/test accounts">test accounts</category>
      <category domain="http://securityratty.com/tag/account">account</category>
      <category domain="http://securityratty.com/tag/test account">test account</category>
      <category domain="http://securityratty.com/tag/attorney generals office">attorney generals office</category>
      <category domain="http://securityratty.com/tag/records">records</category>
      <category domain="http://securityratty.com/tag/plumbers government records">plumbers government records</category>
      <category domain="http://securityratty.com/tag/information">information</category>
      <source url="http://www.veracode.com/blog/2008/10/a-security-lesson-from-the-joe-the-plumber-snooper/">A security lesson from the Joe the Plumber snooper</source>
    </item>
    <item>
      <title><![CDATA[Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities from VoIPShield, Skype in China, UCSniff and other new tools, news and more]]></title>
      <link>http://securityratty.com/article/5ad9e83dc3458677a18e9f3f40c0fb21</link>
      <guid>http://securityratty.com/article/5ad9e83dc3458677a18e9f3f40c0fb21</guid>
      <description><![CDATA[Synopsis: Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities from VoIPShield, Skype in China, UCSniff and other new tools, news and more
Welcome to Blue Box: The VoIP Security...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Synopsis:</strong>&nbsp; Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities
from VoIPShield, Skype in China, UCSniff and other new tools, news and
more

</p><hr /><p>Welcome to <strong>Blue Box: The VoIP Security Podcast</strong> #84, a 30-minute podcast&nbsp; from Dan York and Jonathan Zar covering VoIP security news, comments and opinions.&nbsp; &nbsp; </p>

<p><a href="http://media.libsyn.com/media/lodestar/BBP-084-2008-10-10.mp3" rel="enclosure">Download the show here</a> (MP3, MB) or <a href="http://feeds.feedburner.com/BlueBox">subscribe to the RSS feed</a> to download the show automatically.&nbsp; </p>

 

<p>You may also listen to this podcast right now:</p> 

<p><object width="200" height="20" type="application/x-shockwave-flash" data="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-084-2008-10-10.mp3"><param name="movie" value="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-084-2008-10-10.mp3&amp;bgcolor=#FFFFFF" /></object> </p> 

<p><strong>Show Content:</strong></p> 
 


	<ul> <li>00:20 - Intro to the show, contact information and how to provide comments.&nbsp; Welcome to all the new listeners - and to all those listeners who have been here for so long!</li>
<li>Programming notes:
	<ul>
	<li>Three-year anniversary of Blue Box coming up on October 24th - any thoughts you'd like to share with us? (Please send them to us by October 23rd.)</li>
		
	</ul>
</li>

<li><a href="http://www.marketwatch.com/news/story/voipshield-uncovers-new-security-vulnerabilities/story.aspx?guid=%7B956C0D98-121F-4E95-BC14-3B5F448AF25A%7D&amp;dist=hppr">VoIPShield announces new vulnerabilities</a> and <a id="r9se" href="http://www.voipshield.com/research.php" title="http://www.voipshield.com/research.php">http://www.voipshield.com/research.php</a></li>

<li><span style="font-family: Arial;"><a href="http://www.theregister.co.uk/2008/09/30/voip_eavesdropping_tool">http://www.theregister.co.uk/2008/09/30/voip_eavesdropping_tool</a><span style="font-size: 0.8em;">/</span></span></li>

<li><span style="font-family: Arial;"><span style="font-size: 0.8em;">&quot;Sipera Develops VoIP Spy Program - to Prove a Point&quot; - <a title="http://www.voipplanet.com/trends/article.php/3776136" href="http://www.voipplanet.com/trends/article.php/3776136" id="gfhu">http://www.voipplanet.com/trends/article.php/3776136</a></span></span></li>

<li><span style="font-family: Arial;"><span style="font-size: 0.8em;"><a href="http://www.marketwatch.com/news/story/securelogix-announces-free-availability-voip/story.aspx?guid=%7BF1947C89-8177-4FA2-A40E-8D6E021BF558%7D&amp;dist=hppr">SecureLogix Announces Free Availability of VoIP Security Tools</a></span></span></li>

<li>NY Times: Surveillance of Skype Messages Found in China - <a title="http://www.nytimes.com/2008/10/02/technology/internet/02skype.html?_r=2&amp;partner=rssnyt&amp;pagewanted=print" href="http://www.nytimes.com/2008/10/02/technology/internet/02skype.html?_r=2&amp;partner=rssnyt&amp;pagewanted=print" id="dnb2">http://www.nytimes.com/2008/10/02/technology/internet/02skype.html?_r=2&amp;partner=rssnyt&amp;pagewanted=print</a> </li>

<li><a title="http://securitywatch.eweek.com/privacy/skypechina_breach_is_anyone_really_surprised.html" href="http://securitywatch.eweek.com/privacy/skypechina_breach_is_anyone_really_surprised.html" id="i8rz">http://securitywatch.eweek.com/privacy/skypechina_breach_is_anyone_really_surprised.html</a> </li>

<li><a title="http://www.informationweek.com/news/telecom/voip/showArticle.jhtml?articleID=210605439" href="http://www.informationweek.com/news/telecom/voip/showArticle.jhtml?articleID=210605439" id="ugx5">http://www.informationweek.com/news/telecom/voip/showArticle.jhtml?articleID=210605439</a> </li>

<li>Skype CEO's blog post about the issue: <a title="http://share.skype.com/sites/en/2008/10/answers_to_some_commonly_asked.html" href="http://share.skype.com/sites/en/2008/10/answers_to_some_commonly_asked.html" id="mucu">http://share.skype.com/sites/en/2008/10/answers_to_some_commonly_asked.html</a></li>

<li><span style="font-family: Arial;"><a title="http://www.itbusinessedge.com/blogs/top/?p=398" href="http://www.itbusinessedge.com/blogs/top/?p=398">http://www.itbusinessedge.com/blogs/top/?p=398</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.voip-news.com/feature/google-phone-europe-growth-092408/" href="http://www.voip-news.com/feature/google-phone-europe-growth-092408/">http://www.voip-news.com/feature/google-phone-europe-growth-092408/</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.itnewsafrica.com/?p=1269" href="http://www.itnewsafrica.com/?p=1269">http://www.itnewsafrica.com/?p=1269</a></span></li>

<li><span style="font-family: Arial;"><a title="http://news.cnet.com/8301-1009_3-10052393-83.html" href="http://news.cnet.com/8301-1009_3-10052393-83.html">http://news.cnet.com/8301-1009_3-10052393-83.html</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.broadbandreports.com/shownews/VoIP-Vulnerabilities-Being-Exposed-Today-98039" href="http://www.broadbandreports.com/shownews/VoIP-Vulnerabilities-Being-Exposed-Today-98039">http://www.broadbandreports.com/shownews/VoIP-Vulnerabilities-Being-Exposed-Today-98039</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.itbusinessedge.com/blogs/top/?p=402" href="http://www.itbusinessedge.com/blogs/top/?p=402">http://www.itbusinessedge.com/blogs/top/?p=402</a></span></li>

<li><span style="font-family: Arial;"><a id="tvjh" href="http://voipsa.org/blog/2008/10/07/5th-emergency-services-workshop-to-be-held-oct-21-23-in-vienna/" title="http://voipsa.org/blog/2008/10/07/5th-emergency-services-workshop-to-be-held-oct-21-23-in-vienna/">http://voipsa.org/blog/2008/10/07/5th-emergency-services-workshop-to-be-held-oct-21-23-in-vienna/</a></span></li>

<li><span style="font-family: Arial;"><a title="http://eon.businesswire.com/news/eon/20080924005342/en" href="http://eon.businesswire.com/news/eon/20080924005342/en">http://eon.businesswire.com/news/eon/20080924005342/en</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.crn.com/security/210602442" href="http://www.crn.com/security/210602442">http://www.crn.com/security/210602442</a></span></li>

<li><span style="font-family: Arial;"><a title="http://it.tmcnet.com/topics/it/articles/41236-infoblox-unveils-dns-firewall-address-dns-vulnerability-concerns.htm" href="http://it.tmcnet.com/topics/it/articles/41236-infoblox-unveils-dns-firewall-address-dns-vulnerability-concerns.htm">http://it.tmcnet.com/topics/it/articles/41236-infoblox-unveils-dns-firewall-address-dns-vulnerability-concerns.htm</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.newswire.ca/en/releases/archive/September2008/29/c9005.html" href="http://www.newswire.ca/en/releases/archive/September2008/29/c9005.html">http://www.newswire.ca/en/releases/archive/September2008/29/c9005.html</a></span></li>

<li>No comments this week.<br />
</li>

<li>Review of the last week's traffic on the <a href="http://www.voipsa.org/VOIPSEC/">VOIPSEC </a>public mailing list<br />
</li>

<li>Wrap-up of the show<br />
</li>

<li>30:26 - End of show&nbsp; </li></ul> <p><em>NOTE: Long-time listeners will note that the show notes above are in a less descriptive form than usual. After almost three years of using one wiki for preparing for our shows, Jonathan and I switched to using a new system and are still working out some of the details that will speed the input into show notes. </em></p>

<p>Comments, suggestions and feedback are welcome either as replies to this post&nbsp; or via e-mail to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>.&nbsp; Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.&nbsp; You may also call the listener comment line at either +1-415-830-5439 or via SIP to '<a href="sip:bluebox@voipuser.org">bluebox@voipuser.org</a>' to leave a comment there.&nbsp; </p> <p>Thank you for listening and please do let us know what you think of the show. </p></div>

<p><a href="http://feeds.feedburner.com/~a/BlueBox?a=vzRu3i"><img src="http://feeds.feedburner.com/~a/BlueBox?i=vzRu3i" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/BlueBox?a=MSaWM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=MSaWM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=Uy3HM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=Uy3HM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=yGFHM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=yGFHM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=eCUOM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=eCUOM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=ZOgKm"><img src="http://feeds.feedburner.com/~f/BlueBox?i=ZOgKm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=5vEnM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=5vEnM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/BlueBox/~4/426417749" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 20 Oct 2008 04:32:28 +0000</pubDate>
      <category domain="http://securityratty.com/tag/skype">skype</category>
      <category domain="http://securityratty.com/tag/blue box">blue box</category>
      <category domain="http://securityratty.com/tag/news">news</category>
      <category domain="http://securityratty.com/tag/tools">tools</category>
      <category domain="http://securityratty.com/tag/voipshield">voipshield</category>
      <category domain="http://securityratty.com/tag/comments">comments</category>
      <category domain="http://securityratty.com/tag/audio comments">audio comments</category>
      <category domain="http://securityratty.com/tag/podcast">podcast</category>
      <category domain="http://securityratty.com/tag/skype messages">skype messages</category>
      <source url="http://feeds.feedburner.com/~r/BlueBox/~3/426417749/blue-box-84-new.html">Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities from VoIPShield, Skype in China, UCSniff and other new tools, news and more</source>
    </item>
    <item>
      <title><![CDATA[OWASP AppSec Asia 2008 - Taiwan]]></title>
      <link>http://securityratty.com/article/e79fc46b6ee63dd9ff5215cefbd04d13</link>
      <guid>http://securityratty.com/article/e79fc46b6ee63dd9ff5215cefbd04d13</guid>
      <description><![CDATA[Here is the latest on OWASP AppSec Asia 2008 - Taiwan . I will be giving a talk on Oct 27th about Proxy Caches and Web Application Securityusing the recent Google Docs 0-day as an example
Some of the...]]></description>
      <content:encoded><![CDATA[<p>Here is the latest on <a href="http://www.owasp.org/index.php/OWASP_AppSec_Asia_2008" target="_blank">OWASP AppSec Asia 2008 - Taiwan</a>.  I will be giving a talk on <span class="mw-headline">Oct 27th about </span><a href="http://www.owasp.org/index.php/Proxy_Caches_and_Web_Application_Security--using_the_recent_Google_Docs_0-day_as_an_example" target="_blank">Proxy Caches and Web Application Security&#8211;using the recent Google Docs 0-day as an example.</a></p>
<p>Some of the background for this presentation are <a href="http://blog.isc2.org/isc2_blog/2008/09/proxy-caches-ar.html">Proxy Caches are a Challenging Threat to Internet Security</a> and <a href="http://blog.isc2.org/isc2_blog/2008/09/serious-securit.html">A New Security Breach in Google Docs Revealed.</a></p>
]]></content:encoded>
      <pubDate>Tue, 14 Oct 2008 10:48:37 +0000</pubDate>
      <category domain="http://securityratty.com/tag/owasp appsec asia">owasp appsec asia</category>
      <category domain="http://securityratty.com/tag/proxy caches">proxy caches</category>
      <category domain="http://securityratty.com/tag/google docs">google docs</category>
      <category domain="http://securityratty.com/tag/taiwan">taiwan</category>
      <category domain="http://securityratty.com/tag/security breach">security breach</category>
      <category domain="http://securityratty.com/tag/oct 27th">oct 27th</category>
      <category domain="http://securityratty.com/tag/internet security">internet security</category>
      <category domain="http://securityratty.com/tag/web application">web application</category>
      <category domain="http://securityratty.com/tag/presentation">presentation</category>
      <source url="http://www.thecepblog.com/2008/10/14/owasp-appsec-asia-2008-taiwan/">OWASP AppSec Asia 2008 - Taiwan</source>
    </item>
    <item>
      <title><![CDATA[Fun Reading on Security - 8]]></title>
      <link>http://securityratty.com/article/d60cc90ef226fd7624953a3c03f282d4</link>
      <guid>http://securityratty.com/article/d60cc90ef226fd7624953a3c03f282d4</guid>
      <description><![CDATA[Instead of my usual &quot;blogging frenzy&quot; machine gun blast of short posts, I will just combine them into my new blog series &quot; Fun Reading on Security .&quot; Here is an issue #7, dated October 2nd, 2008
Great...]]></description>
      <content:encoded><![CDATA[<p>Instead of my usual &quot;blogging frenzy&quot; machine gun blast of short posts, I will just combine them into my new blog series &quot;<a href="http://chuvakin.blogspot.com/search/label/reading">Fun Reading on Security</a>.&quot; Here is an issue #7, dated October 2nd, 2008.</p>  <ol>   <li><a href="http://www.darkreading.com/document.asp?doc_id=162936">Great paper</a> that complements the whole &quot;SIEM is dead?&quot; saga - &quot;Most enterprises are looking for a product that <em>will solve all of their problems in some sort of off-the-shelf miracle</em>, and when they find out that the currently available tools can't do it, they either postpone their deployment or put them on the back burner. &quot; </li>    <li>&quot;<a href="http://financialcryptography.com/mt/archives/001093.html">The Mess: looking for someone to blame?</a>&quot; is an awesome piece on Internet security and its architecture - and so is Gunnar's follow-up (&quot;<a href="http://1raindrop.typepad.com/1_raindrop/2008/09/if-a-tree-falls-in-someone-elses-silo.html">If a tree falls in someone else's silo...</a>&quot;) </li>    <li>Mike call to &quot;<a href="http://securityincite.com/blog/mike-rothman/rise-up-against-mediocrity">Rise up against Mediocrity</a>.&quot;&#160; - &quot;Dilbert makes the risk of the lowest common denominator approach abundantly clear.&quot;; in other words, you say 'best practices', I say 'mediocrity!' Mike also remind us, in vain, to do &quot;Security FIRST!&quot; (and compliance second) </li>    <li>A great piece from Burton: &quot;<a href="http://srmsblog.burtongroup.com/2008/08/on-response.html">On Response</a>&quot; - I think the world needs another 10-20 million reminders that PREVENTION FAILS. <a href="http://srmsblog.burtongroup.com/2008/08/on-response.html">This</a> is definitely a good one for those still in the &quot;we'll just block the threat world&quot; - &quot;we will not win a continuing war of escalation&quot; and &quot;using response can be more cost effective than installing the latest and greatest preventative tool&quot; </li>    <li><a href="http://blog.isc2.org/isc2_blog/2008/08/security-metric.html">More on metrics</a>, including the highly-awaited ISO27004. </li>    <li><a href="http://www.ecommercetimes.com/story/64598.html">Pretty dumb paper</a> by a person confused by why PCI DSS exists (the guy needs to read <a href="http://treasuryinstitute.org/blog/index.php?itemid=174">this</a>). PCI doesn't &quot;fall short,&quot; it helps people who will otherwise not do <em>anything</em> and their systems will &quot;power&quot; those botnets of the future... </li>    <li>While we are on this subject: <a href="http://pcianswers.com/2008/10/01/pci-dss-version-12-differences-and-updates/">a really good coverage of PCI 1.2. changes</a>, released Oct 1st. More PCI fun <a href="http://pcidss.wordpress.com/2008/09/11/recap-cso-executive-seminar-on-pci-compliance-by-james-deluccia/">here.</a> And more <a href="http://www.computerweekly.com/blogs/stuart_king/2008/09/i-was-supposed-to-be.html">here</a> (&quot;<a href="http://www.computerweekly.com/blogs/stuart_king/2008/09/i-was-supposed-to-be.html">PCI Compliance - dispelling some common myths</a>&quot;). And, <a href="http://www.estoregfoa.org/StaticContent/staticpages/TM0508.htm#1c">more PCI myths</a>. And <a href="http://securityincite.com/blog/mike-rothman/the-daily-incite-september-29-2008">more good ideas</a> on PCI from Mike R. Sorry, can't stop thinking about PCI :-)&#160; - also <a href="http://pcidss.wordpress.com/2008/09/19/the-inside-story-of-pci-confessions-of-a-qsa-commentary-by-james-deluccia/">this is good.</a> </li>    <li><a href="http://securosis.com/2008/09/23/behavioral-monitoring/">Adrian on behavioral monitoring</a>; mostly in DAM, but also elsewhere in security. </li>    <li>&quot;<a href="http://www.darkreading.com/blog.asp?blog_sectionid=327&amp;doc_id=164144">Premature Chasm-Crossing</a>&quot;&#160; - a must-read for all security vendors and especially their marketing (and&#160; their easily-excitable PR teams...) - &quot;Shouldn't vendors be spending more time fighting the problems that security managers are facing today, right this minute?&quot; (Mike R <a href="http://securityincite.com/blog/mike-rothman/the-daily-incite-september-24-2008">also comments</a> on that). A related - and&#160; just as interesting point is made here: &quot;<a href="http://blogs.computerworld.com/security_is_not_a_solution">Security is not a solution</a>&quot; </li>    <li><a href="http://www.csoonline.com/article/print/450190">More</a> on compliance and security checklists, good and bad: &quot;I think this is a dangerous trend unless the &quot;checklist&quot; is all inclusive.&quot; (how can a checklist include <strong>ALL? :-)</strong>) </li>    <li><a href="http://forensics.sans.org/community/top7_forensic_trends.php">&quot;SANS Top 7 New IR/Forensic Trends In 2008&quot;</a> </li>    <li>Read &quot;<a href="http://theinvisiblethings.blogspot.com/2008/09/three-approaches-to-computer-security.html">The three approaches to computer security!</a>&quot;&#160; Why? Come on, it is from <a href="http://theinvisiblethings.blogspot.com">Joanna</a>! :-) </li>    <li><a href="http://rationalsecurity.typepad.com/blog/2008/09/ids-vitamins-or-prophylactic.html">A fun discussion</a> about a hot new technology:<em> network IDS. </em>Is IDS <em>absolutely</em> indispensable to <em>ALL</em> companies? No. Can it be incredibly useful? You bet. End of discussion. </li>    <li>On an unrelated note, are lasers the future of warfare? <a href="http://blog.wired.com/defense/2008/09/why-lasers-wont.html">Some say no.</a> </li>    <li>Finally, some security humor from Gartner (!): &quot;<a href="http://blogs.gartner.com/greg_young/2008/09/30/get-rich-quick-with-network-security/">Get Rich Quick With Network Security</a>&quot; </li> </ol>  <p>Enjoy!</p>  <p><a href="http://chuvakin.blogspot.com/search/label/reading">Previous security reading.</a></p>  <div class="blogger-post-footer">About me: http://www.chuvakin.org</div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=pqMsM"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=pqMsM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=avlNM"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=avlNM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=EvcjM"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=EvcjM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/409462346" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 02 Oct 2008 06:31:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/security managers">security managers</category>
      <category domain="http://securityratty.com/tag/previous security">previous security</category>
      <category domain="http://securityratty.com/tag/pci">pci</category>
      <category domain="http://securityratty.com/tag/pci dss exists">pci dss exists</category>
      <category domain="http://securityratty.com/tag/computer security">computer security</category>
      <category domain="http://securityratty.com/tag/pci fun">pci fun</category>
      <category domain="http://securityratty.com/tag/security checklists">security checklists</category>
      <category domain="http://securityratty.com/tag/network security">network security</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/409462346/fun-reading-on-security-8.html">Fun Reading on Security - 8</source>
    </item>
    <item>
      <title><![CDATA[Gambling Domains Seized by Kentucky]]></title>
      <link>http://securityratty.com/article/b2a12ce3b79bb2383d563ad1918217f7</link>
      <guid>http://securityratty.com/article/b2a12ce3b79bb2383d563ad1918217f7</guid>
      <description><![CDATA[From reports, it appears that Kentucky Governor Steve Beshear has attempted to seize 141 gambling-related domain names under a state law that allows for seizure of items used for illegal gambling. It...]]></description>
      <content:encoded><![CDATA[From reports, it appears that Kentucky Governor Steve Beshear has attempted to seize 141 gambling-related domain names under a state law that allows for seizure of items used for illegal gambling. It appears that the seizure order (<a href="http://www.thedomains.com/wp-content/order-of-seizure-of-domain-names.pdf">click here for a copy of the initial order</a>) was signed by a circuit judge, but <a href="http://www.thedomains.com/2008/09/26/kentucky-hearing-update/">later reports indicate that the judge is holding further hearings and seeking further arguments</a>. A hearing will be held Oct. 7, <a href="http://www.thedomains.com/2008/09/26/kentucky-hearing-update/">according to TheDomains</a>.

See page 4 of the seizure order for a complete list of the 141 domains. Here are some of them:
<ul><li>123bingo.com</li>
	<li>777dragon.com</li>
	<li>indiancasino.com</li>
	<li>jackpotcity.com</li>
	<li>powerbet.com</li>
	<li>crazypoker.com</li>
	<li>vegaslucky.com</li></ul>

That sort of thing.

According to DomainNameNews, <a href="http://www.domainnamenews.com/up-to-the-minute/kentucks-seizes-141-gambling-domain-names/2413">several of the domains are for popular sites</a>, including PokerStars.com, FullTiltPoker.com, BodogLife.com, GoldenPalace.com, Bet21.com, DoylesRoom.com and IndianCasino.com. It also reports that <a href="http://www.domainnamenews.com/up-to-the-minute/ica-responds-to-kentucky-seizure-of-gambling-domains/2584">at least one registrar (Enom) has transferred domains pursuant to the order</a>, including one whose registrant died of a heart attack this summer.

The seizure order says that the domains are to be transferred by any registrar to a plaintiff's account at that registrar (the plaintiff being the Commonwealth of Kentucky), but that the domain names' configuration will be otherwise unchanged. This means that any gambling sites run on those domains or, for that matter, anything else on those domains, such as PPC ads, would remain functional.

All things considered, this seems like simple-minded grandstanding without any good law behind it. The Constitution vests Congress with power to regulate interstate commerce, which the domain name market clearly is. In fact, these businesses are truly international. And it's a safe bet that none of the gambling companies or registrars operates in Kentucky, perhaps not even any of the domain name holders. That the state argues that residents of Kentucky engage in illegal gambling doesn't give the state jurisdiction. The Internet Commerce Association, a domainer lobby, <a href="http://www.domainnamenews.com/up-to-the-minute/ica-responds-to-kentucky-seizure-of-gambling-domains/2584">has weighed in on the matter in opposition to the state's move</a>.
<p><a href="http://feedads.googleadservices.com/~a/FslEfsv6x1qu8Vcy3lti-mPyruM/a"><img src="http://feedads.googleadservices.com/~a/FslEfsv6x1qu8Vcy3lti-mPyruM/i" border="0" ismap="true"></img></a></p><img src="http://feedproxy.google.com/~r/RSS/cheap_hack/~4/x8jm5xd8NoU" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sun, 28 Sep 2008 03:32:49 +0000</pubDate>
      <category domain="http://securityratty.com/tag/domains">domains</category>
      <category domain="http://securityratty.com/tag/kentucky">kentucky</category>
      <category domain="http://securityratty.com/tag/domains pursuant">domains pursuant</category>
      <category domain="http://securityratty.com/tag/domain">domain</category>
      <category domain="http://securityratty.com/tag/domain names">domain names</category>
      <category domain="http://securityratty.com/tag/kentucky engage">kentucky engage</category>
      <category domain="http://securityratty.com/tag/internet commerce association">internet commerce association</category>
      <category domain="http://securityratty.com/tag/seizure">seizure</category>
      <category domain="http://securityratty.com/tag/commerce">commerce</category>
      <source url="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~3/x8jm5xd8NoU/gambling_domains_seized_by_kentucky.html">Gambling Domains Seized by Kentucky</source>
    </item>
    <item>
      <title><![CDATA[Wee-Fi: Wi-Fi Robot Attack; Silicon Valley Plan Proceeds]]></title>
      <link>http://securityratty.com/article/a73229a533aa9f53897566105f7e6501</link>
      <guid>http://securityratty.com/article/a73229a533aa9f53897566105f7e6501</guid>
      <description><![CDATA[The Spykee is a $300 Wi-Fi Skype robot: Lots of strange coolness here. I don't know how I missed hearing about this before, but apparently an actual customer got his hands on the thing and recorded a...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><strong><a href="http://www.robotsrule.com/html/spykee.php">The Spykee is a $300 Wi-Fi Skype robot:</a></strong> Lots of strange coolness here. I don't know how I missed hearing about this before, but apparently an actual customer got his hands on the thing and recorded a video. It's cute. You can access its video through control software or a remote Skype video connection. It's got a speaker and microphone, and can be used for VoIP calls. The control software allows it to move around, play sound effects, and produce music. Like the computer in Superman III (or a Roomba), it craves power, and knows to return to its charger.</p>

<p><img src="http://wifinetnews.com//images/2008/spykee_1.jpg" alt="spykee_1.jpg" border="0" width="200" height="200" /></p>

<p>The name reveals some of its creepy appeal: Spykee = Spy Camera. I suppose the nanny you're trying to make sure isn't shaking your baby might be freaked out when it suddenly starts emitting Star Wars music, or such like. Made by Meccano under the Erector brand, its control software is Mac and Windows compatible. </p>

<p>I, for one, welcome our new Spykee overlords--on 15-Oct-2008 when it starts to ship generally.</p>

<p><strong><a href="http://news.yahoo.com/s/ibd/20080924/bs_ibd_ibd/20080924tech01">Silicon Valley project finally gets underway:</a></strong> It's a still a pilot, small, with no promised outcome. And after all this time, a switch of partners, and new parameters, they've still mounted just 20 of 28 access points.</p>]]></content:encoded>
      <pubDate>Wed, 24 Sep 2008 17:13:28 +0000</pubDate>
      <category domain="http://securityratty.com/tag/control software">control software</category>
      <category domain="http://securityratty.com/tag/spykee">spykee</category>
      <category domain="http://securityratty.com/tag/spykee overlords">spykee overlords</category>
      <category domain="http://securityratty.com/tag/suddenly starts">suddenly starts</category>
      <category domain="http://securityratty.com/tag/wi-fi skype robot">wi-fi skype robot</category>
      <category domain="http://securityratty.com/tag/silicon valley project">silicon valley project</category>
      <category domain="http://securityratty.com/tag/star wars music">star wars music</category>
      <category domain="http://securityratty.com/tag/play sound effects">play sound effects</category>
      <category domain="http://securityratty.com/tag/starts">starts</category>
      <source url="http://wifinetnews.com/archives/008460.html">Wee-Fi: Wi-Fi Robot Attack; Silicon Valley Plan Proceeds</source>
    </item>
  </channel>
</rss>
