<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: sentence]]></title>
    <link>http://securityratty.com/tag/sentence</link>
    <description></description>
    <pubDate>Sun, 15 Jun 2008 23:51:11 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[On Idiots and Logs]]></title>
      <link>http://securityratty.com/article/6490a97e465cf9d880fa1849d0525c8e</link>
      <guid>http://securityratty.com/article/6490a97e465cf9d880fa1849d0525c8e</guid>
      <description><![CDATA[How on Earth can someone even utter the phrases &quot; scalable log management &quot; and &quot; Microsoft Access for data storage &quot; in one sentence? OMG, OMG, OMG

MS Access, for God's sake! I wonder if they tried...]]></description>
      <content:encoded><![CDATA[How on Earth can someone even utter the phrases "<span style="font-weight: bold;">scalable log management</span>" and "<span style="font-weight: bold;">Microsoft <span style="font-style: italic;">Access </span>for data storage</span>" in one sentence? OMG, OMG, OMG...<br /><br />MS Access, for God's sake! I wonder if they tried storing logs in Excel spreadsheets?<br /><br />Yeeeeesh.<div class="blogger-post-footer">About me: http://www.chuvakin.org</div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=POYrOK"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=POYrOK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=6Uxd8K"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=6Uxd8K" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=pM3f8K"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=pM3f8K" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/365910571" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 15 Aug 2008 07:51:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/microsoft access">microsoft access</category>
      <category domain="http://securityratty.com/tag/omg">omg</category>
      <category domain="http://securityratty.com/tag/access">access</category>
      <category domain="http://securityratty.com/tag/scalable log management">scalable log management</category>
      <category domain="http://securityratty.com/tag/logs">logs</category>
      <category domain="http://securityratty.com/tag/data storage">data storage</category>
      <category domain="http://securityratty.com/tag/excel spreadsheets">excel spreadsheets</category>
      <category domain="http://securityratty.com/tag/yeeeeesh">yeeeeesh</category>
      <category domain="http://securityratty.com/tag/phrases">phrases</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/365910571/on-idiots-and-logs.html">On Idiots and Logs</source>
    </item>
    <item>
      <title><![CDATA[AOL phisher gets seven-year sentence]]></title>
      <link>http://securityratty.com/article/8d3f3872ede725ef9491690ee76307f5</link>
      <guid>http://securityratty.com/article/8d3f3872ede725ef9491690ee76307f5</guid>
      <description><![CDATA[A West Haven, Conn., man has been sentenced to seven years in prison for masterminding a phishing scheme that targeted AOL users over a four-year...]]></description>
      <content:encoded><![CDATA[A West Haven, Conn., man has been sentenced to seven years in prison for masterminding a phishing scheme that targeted AOL users over a four-year period.]]></content:encoded>
      <pubDate>Wed, 13 Aug 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/aol users">aol users</category>
      <category domain="http://securityratty.com/tag/four-year period">four-year period</category>
      <category domain="http://securityratty.com/tag/conn">conn</category>
      <category domain="http://securityratty.com/tag/west">west</category>
      <category domain="http://securityratty.com/tag/scheme">scheme</category>
      <category domain="http://securityratty.com/tag/prison">prison</category>
      <source url="http://www.networkworld.com/news/2008/081408-aol-phisher-gets-seven-year.html?fsrc=rss-security">AOL phisher gets seven-year sentence</source>
    </item>
    <item>
      <title><![CDATA[Spamming Deterrent?]]></title>
      <link>http://securityratty.com/article/c741c374a71c3b0df07ca7840d188883</link>
      <guid>http://securityratty.com/article/c741c374a71c3b0df07ca7840d188883</guid>
      <description><![CDATA[Its a harsher sentence than that handed to some spammers, but is it enough? Have your say at http://www.virusbtn.com/news/polls/index


clipped from www.virusbtn.com
Is 47 months imprisonment...]]></description>
      <content:encoded><![CDATA[<div > It&#8217;s a harsher sentence than that handed to some spammers,<br/>but is it enough? Have your say at<br/><a href="http://www.virusbtn.com/news/polls/index" rel="nofollow" target="_blank">http://www.virusbtn.com/news/polls/index</a> </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clipmark/C6CAD6B9-01B0-44EF-86D8-10B2670C2451/" title="go to this clipmark"><img src="http://content.clipmarks.com/blog_icon/71da8d5d-68e6-447c-87ba-ef263a31cdf0/C6CAD6B9-01B0-44EF-86D8-10B2670C2451/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.virusbtn.com/news/polls/index" href="http://www.virusbtn.com/news/polls/index" style="font-size: 11px;">www.virusbtn.com</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.virusbtn.com/news/polls/index --><B>Is 47 months imprisonment sufficient punishment for a convicted spammer?</B></td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.virusbtn.com/news/polls/index --><P class="section">It seems like a pretty tough sentence but there&#8217;ve been quite a few big arrests/trials/tough sentences and it doesn&#8217;t seem to be putting these people off - all these &#8217;spam kings&#8217; are repeat offenders with long histories of fines and sentences but they keep on doing it.<br />
</P></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/C6CAD6B9-01B0-44EF-86D8-10B2670C2451/blog/" title="blog or email this clip"><img src="http://content7.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
]]></content:encoded>
      <pubDate>Wed, 13 Aug 2008 09:38:22 +0000</pubDate>
      <category domain="http://securityratty.com/tag/pretty tough sentence">pretty tough sentence</category>
      <category domain="http://securityratty.com/tag/harsher sentence">harsher sentence</category>
      <category domain="http://securityratty.com/tag/sentences">sentences</category>
      <category domain="http://securityratty.com/tag/spam kings">spam kings</category>
      <category domain="http://securityratty.com/tag/repeat offenders">repeat offenders</category>
      <category domain="http://securityratty.com/tag/virusbtn">virusbtn</category>
      <category domain="http://securityratty.com/tag/spammer">spammer</category>
      <category domain="http://securityratty.com/tag/spammers">spammers</category>
      <category domain="http://securityratty.com/tag/people">people</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=555">Spamming Deterrent?</source>
    </item>
    <item>
      <title><![CDATA[AOL phisher gets seven year sentence]]></title>
      <link>http://securityratty.com/article/82cb875d136d1535b862f9b0486d97ab</link>
      <guid>http://securityratty.com/article/82cb875d136d1535b862f9b0486d97ab</guid>
      <description><![CDATA[A West Haven, Connecticut, man has been sentenced to seven years in prison for masterminding a phishing...]]></description>
      <content:encoded><![CDATA[<p>A West Haven, Connecticut, man has been sentenced to seven years in prison for masterminding a phishing scheme ...
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=UqTaJk"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=UqTaJk" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/364401753" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 13 Aug 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/west">west</category>
      <category domain="http://securityratty.com/tag/scheme">scheme</category>
      <category domain="http://securityratty.com/tag/prison">prison</category>
      <category domain="http://securityratty.com/tag/connecticut">connecticut</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/364401753/article.do">AOL phisher gets seven year sentence</source>
    </item>
    <item>
      <title><![CDATA[Speed Cameras Record Every Car]]></title>
      <link>http://securityratty.com/article/909586d99d0bffe87e120b2f7099e448</link>
      <guid>http://securityratty.com/article/909586d99d0bffe87e120b2f7099e448</guid>
      <description><![CDATA[In this article about British speed cameras, and a trick to avoid them that does not work, is this sentence: As vehicles pass between the entry and exit camera points their number plates are digitally...]]></description>
      <content:encoded><![CDATA[In <a href="http://www.theregister.co.uk/2008/07/21/speed_camera_myth/">this article</a> about British speed cameras, and a trick to avoid them that does not work, is this sentence:

<blockquote>As vehicles pass between the entry and exit camera points their number plates are digitally recorded, whether speeding or not.</blockquote>

Without knowing more, I can guarantee that those records are kept forever.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=zTLwJJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=zTLwJJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=Xnle8J"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=Xnle8J" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Wed, 23 Jul 2008 01:32:47 +0000</pubDate>
      <category domain="http://securityratty.com/tag/british speed cameras">british speed cameras</category>
      <category domain="http://securityratty.com/tag/vehicles pass">vehicles pass</category>
      <category domain="http://securityratty.com/tag/exit camera">exit camera</category>
      <category domain="http://securityratty.com/tag/sentence">sentence</category>
      <category domain="http://securityratty.com/tag/entry">entry</category>
      <category domain="http://securityratty.com/tag/records">records</category>
      <category domain="http://securityratty.com/tag/avoid">avoid</category>
      <category domain="http://securityratty.com/tag/trick">trick</category>
      <category domain="http://securityratty.com/tag/guarantee">guarantee</category>
      <source url="http://www.schneier.com/blog/archives/2008/07/speed_cameras_r.html">Speed Cameras Record Every Car</source>
    </item>
    <item>
      <title><![CDATA[Are Stolen Credit Card Details Getting Cheaper?]]></title>
      <link>http://securityratty.com/article/a67e13e215d163e122340bffab059502</link>
      <guid>http://securityratty.com/article/a67e13e215d163e122340bffab059502</guid>
      <description><![CDATA[What is shaping the prices of stolen credit card details? The investments the cybercriminals or real life scammers ( through credit card cloning or ATM skimming ) put into the process of obtaining the...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div>
<div class="separator" style="text-align: center; clear: both;"></div>
<a href="http://bp3.blogger.com/_wICHhTiQmrA/SHzyYjwnXTI/AAAAAAAAB6c/9rHV8A0Ggz4/s1600-h/ccz.JPG" imageanchor="1" style="border: 0pt none ; background-color: transparent; clear: left; margin-bottom: 1em; float: left; margin-right: 1em;"><img src="http://bp3.blogger.com/_wICHhTiQmrA/SHzyYjwnXTI/AAAAAAAAB6c/WQG5_Cal0xY/s200-R/ccz.JPG" style="border: 0pt none ;" /></a>What is shaping the prices of stolen credit card details? The investments the cybercriminals or real life scammers ( through <a href="http://ddanchev.blogspot.com/2007/02/credit-card-data-cloning-tactic.html">credit card cloning</a> or <a href="http://www.snopes.com/fraud/atm/atmcamera.asp">ATM skimming</a>) put into the process of obtaining the details, or can we even talk about investments being made where an experienced scammer has just purchased 1GB of raw credit cards data from a novice botnet master who isn't really aware of the actual value of his "botnet output"?<br />
<br />
Depends on which economic theory you believe in, or whether or not you'll take the "bottom-up approach" or the "top-down" one. And since I'm not aware of the existence of "the invisible hand of the underground market" and centralized power to increase the supply or decrease it to boost prices for the stolen credit card details, also indicating the existence of underground cartels putting everyone in a "price taker" position.<br />
<br />
The basics of demand and supply for anything underground will always apply unless of course, The more they want, the cheaper it gets, the less they want, the higher the price on per credit card basis gets, since the investment on behalf of the malicious party that originally stolen them is virtually the same, and he can theoretically break-even in every single case since the credit card details were obtained efficiently. It's up to the seller to follow or entirely ignore economic behavior, and do what they feel like doing with this good which must on the other hand reach its market liquidity as soon as possible, else it becomes obsolete. The current market model can be further explained as a good example of competitive equilibrium :<br />
<br />
"<i>Competitive market equilibrium is the traditional concept of economic equilibrium, appropriate for the analysis of commodity markets with flexible prices and many traders, and serving as the benchmark of efficiency in economic analysis. <b>It relies crucially on the assumption of a competitive environment where each trader decides upon a quantity that is so small compared to the total quantity traded in the market that their individual transactions have no influence on the prices.</b></i>"<br />
<br />
This can be easily explained in a single sentence - it's a mess and every participant is doing whatever they want to, so generalizing on the prices charged for stolen credit card numbers would be unrealistic, since it's the price a single seller with no real impact on the "average" market price for the same good. As for the average market price itself, it would be hard to measure it depending on the quality of the sample you want to rely on, since this is a type of market where sellers don't have to report price changes in their goods for the purpose of statistical research.<br />
<br />
<a href="http://www.finjan.com/Content.aspx?id=827#SecurityTrendsReport">A recently released report by Finjan</a>, with whom I've been on the same page of several high profile incidents so far, <a href="http://news.yahoo.com/s/nm/20080715/wr_nm/cybercrime_finjan_dc">touches this very same topic</a> :<br />
<br />
"<i>Prices charged by cybercriminals selling hacked bank and credit card details have fallen sharply as the volume of data on offer has soared, forcing them to look elsewhere to boost profit margins, a new report says. Researchers for Finjan, a Web security firm, said the high volumes traded had led to bank and credit card information becoming "commoditized" - account details with PIN codes that once fetched $100 or more each might now go for $10 or $20. In its latest quarterly survey of Web trends, the California-based company said cybercrime had evolved into "a major shadow economy ruled by business rules and logic that closely mimics the legitimate business world.</i>"<br />
<br />
Excluding the presence of <a href="http://ddanchev.blogspot.com/2008/06/price-discrimination-in-market-for.html">price discrimination</a> for a while, as well as open topic offers in the lines of "how much for X amount of Y?" answered as "how much are you willing to pay?", it's all a matter of the seller in a particular situation.<br />
<br />
Furthermore, in real-life market there's always the scarcity problem, however, in the underground market there's no shortage of resources despite the ever growing wants of the buyers. Generalizing even more, take for instance the butterfly effect of a price change in petrol, and result of which is inevitable increase of prices in every single aspect of your life, but in the underground market mostly due to the malicious economies of scale achieved, a price increase in renting a botnet would have no effect in the prices charged for the stolen credit card details obtained through the infected hosts. How come? Basically, the price and resources for malware infection are prone to decrease, if we take a malware infected host as a static foundation for the basis of any upcoming cybercrime activities using it.<br />
<br />
Perhaps the most disturbing part is that the market for stolen credit card details is so mature, and its entry barriers so low these days, that the confidential data that cannot be efficiently obtained through real-life means like credit card cloning or ATM skimming on a large scale, is now purchased online for the purpose of abusing it in real-life by<a href="http://blog.wired.com/27bstroke6/2008/06/citibank-atm-se.html"> embedding the valid information into plastic cards</a>.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=c5gmVJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=c5gmVJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=yABcqJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=yABcqJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=iuXpaj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=iuXpaj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=Ctkd2j"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=Ctkd2j" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=KJLEOJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=KJLEOJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=6teEcJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=6teEcJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=XpeGzj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=XpeGzj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/336435935" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 15 Jul 2008 11:36:12 +0000</pubDate>
      <category domain="http://securityratty.com/tag/price">price</category>
      <category domain="http://securityratty.com/tag/average market price">average market price</category>
      <category domain="http://securityratty.com/tag/market price">market price</category>
      <category domain="http://securityratty.com/tag/credit card">credit card</category>
      <category domain="http://securityratty.com/tag/credit card details">credit card details</category>
      <category domain="http://securityratty.com/tag/details">details</category>
      <category domain="http://securityratty.com/tag/market">market</category>
      <category domain="http://securityratty.com/tag/competitive market equilibrium">competitive market equilibrium</category>
      <category domain="http://securityratty.com/tag/credit card basis">credit card basis</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/336435935/are-stolen-credit-card-details-getting.html">Are Stolen Credit Card Details Getting Cheaper?</source>
    </item>
    <item>
      <title><![CDATA[Judge puts off 'spam king' sentencing]]></title>
      <link>http://securityratty.com/article/6767a99f53c79e9a7f0214dccd9dabe3</link>
      <guid>http://securityratty.com/article/6767a99f53c79e9a7f0214dccd9dabe3</guid>
      <description><![CDATA[A federal judge in Seattle on Monday did not sentence Robert Soloway, the man known as the spam king, because all of the scheduled witnesses did not have time to take the stand, even after two full...]]></description>
      <content:encoded><![CDATA[A federal judge in Seattle on Monday did not sentence Robert Soloway, the man known as the spam king, because all of the scheduled witnesses did not have time to take the stand, even after two full days of testimony.]]></content:encoded>
      <pubDate>Mon, 14 Jul 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/sentence robert soloway">sentence robert soloway</category>
      <category domain="http://securityratty.com/tag/spam">spam</category>
      <category domain="http://securityratty.com/tag/federal judge">federal judge</category>
      <category domain="http://securityratty.com/tag/stand">stand</category>
      <category domain="http://securityratty.com/tag/time">time</category>
      <category domain="http://securityratty.com/tag/witnesses">witnesses</category>
      <category domain="http://securityratty.com/tag/monday">monday</category>
      <category domain="http://securityratty.com/tag/days">days</category>
      <category domain="http://securityratty.com/tag/seattle">seattle</category>
      <source url="http://www.networkworld.com/news/2008/071508-judge-puts-off-spam-king.html?fsrc=rss-security">Judge puts off 'spam king' sentencing</source>
    </item>
    <item>
      <title><![CDATA[Even the Rich and Famous pay the price for being Dishonest and Unethical]]></title>
      <link>http://securityratty.com/article/bddc2473e5205464ce579dd702e7a914</link>
      <guid>http://securityratty.com/article/bddc2473e5205464ce579dd702e7a914</guid>
      <description><![CDATA[All of our courses - in the U.S. and over seas, begin with the same message - ETHICS is the keystone of our profession and our success. It's a shame that famed litigator - Richard &quot;Dickie&quot; Scruggs...]]></description>
      <content:encoded><![CDATA[All of our courses - in the U.S. and over seas, begin with the same message - ETHICS is the keystone of our profession and our success.  It's a shame that famed litigator - Richard "Dickie" Scruggs forgot that lesson.    <br /><span id="fullpost"><br />In yesterday's Washington Post, the headline reads; "<a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/06/27/AR2008062703609_2.html">Famed Litigator </a>Gets 5-Year Term for Conspiracy to bribe Judge".  For those who are not familiar with him, Scruggs became one of the wealthiest and most famous lawyers in the country by taking on tobacco, insurance and asbestos companies.  <br /><br />What did he do? Well, for starters (and what they were able to prove), he attempted to bribe Lafayette County Circuit Court Judge Henry Lackey by offering him $50,000.00.  U.S. District Judge Neal Biggers Jr., called Scruggs' conduct "reprehensible" and told him that he picked the wrong Judge to bribe.  In addition to the 5 year jail term, he was fined $250,000.00 and lost his law license.<br /><br />You really got to love it when Justice is rightfully served.  Unfortunately, it makes me wonder how many more sleazy lawyers around the country and unethical Judges are not getting reported and prosecuted.  It is a little too hard to believe that Scruggs is the only dirt-bag in the legal profession.  We welcome the message it sends out; "nobody is above the law".  <br /><br />Like most, if not all common criminals, Richerd Scruggs became greedy.  In 1990, Scruggs became famous for suing tobacco companies and winning lawsuits that resulted in a $206 BILLION dollar settlement.  If his take of that was just 10%, he walked away with a cool $20.6 Billion dollars.  A film was even made about the case - "The Insider" starred Al Pacino and Russell Crowe.<br /><br />A decade later he is trying to bribe a Judge with $50,000?  I would say it was a combination of greed and power going to his head.  Maybe that is why the "Post" reported that he nearly fainted and swayed from side to side when the Judge scolded him.  He had to sit down before the sentence was read out.  He must have believed that he was untouchable.<br /><br />It's just a shame that he wasn't touched with a heavier sentence.  A twenty year sentence would have sent out an even more powerful message.  Still and all, the idea of wearing a prison jumpsuit and eating balogna sandwiches is probably like a life sentence to someone who believed themselves to be above the law.<br /><br />The article claims that many high profile friends petitioned Judge Biggers for leniency when sentencing Scruggs.  He's lucky I am not the warden at his jail.  I think he would be a perfect candidate for the toilet cleaning squad.          <br /></span><div class="blogger-post-footer">Visit Sexton Executive Security at www.sextonsecurity.com</div>]]></content:encoded>
      <pubDate>Sun, 29 Jun 2008 12:05:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wrong judge">wrong judge</category>
      <category domain="http://securityratty.com/tag/judge">judge</category>
      <category domain="http://securityratty.com/tag/bribe judge">bribe judge</category>
      <category domain="http://securityratty.com/tag/richerd scruggs">richerd scruggs</category>
      <category domain="http://securityratty.com/tag/scruggs">scruggs</category>
      <category domain="http://securityratty.com/tag/sentence">sentence</category>
      <category domain="http://securityratty.com/tag/famous">famous</category>
      <category domain="http://securityratty.com/tag/heavier sentence">heavier sentence</category>
      <category domain="http://securityratty.com/tag/life sentence">life sentence</category>
      <source url="http://www.thebulletproofblog.com/2008/06/even-rich-and-famous-pay-price-for.html">Even the Rich and Famous pay the price for being Dishonest and Unethical</source>
    </item>
    <item>
      <title><![CDATA[Mission Statement for Federation]]></title>
      <link>http://securityratty.com/article/9794bcabb05d5a9a4ad01ef54236e5df</link>
      <guid>http://securityratty.com/article/9794bcabb05d5a9a4ad01ef54236e5df</guid>
      <description><![CDATA[Bruce Sterling (11/20/2001
You know what I want? I don't want a National ID Card. I want a Global Coalition Visa



Like it or not, we've got a huge global diaspora now. It is a fact of life. Nations...]]></description>
      <content:encoded><![CDATA[<p><span style="font-family: &#39;times new roman&#39;; font-size: 16px; line-height: normal; -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px; "></span></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "><a href="http://www.viridiandesign.org/notes/251-300/00283_geeks_and_spooks.html">Bruce Sterling</a> (11/20/2001):</p><blockquote><p>You know what I want? I don&#39;t want a National ID Card. I want a Global Coalition Visa.</p></blockquote><p></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><blockquote><p>Like it or not, we&#39;ve got a huge global diaspora now. It is a fact of life. Nations with stupid and corrupt politics have seen their clever people brain- drained away, to places where the cops don&#39;t shake you down twice a day. And jet-setters go everywhere. And properly so. If you&#39;re in a true global society, then you spend a lot of your time among aliens. Quite often you are the alien. You might notice that even Al Qaeda is a genuinely multinational group. They gravitated to wicked, lawless places like Sudan, Chechnya and Afghanistan, where the locals shoot you if you ask for a badge.</p></blockquote><p></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><blockquote><p>But what about all us bright, shiny, world-trading jet setters, huh? There are thirty percent fewer Yankees in Europe this Christmas, and that is bad. Let me pose the problem this way. If I am going into a Japanese restaurant in Japan, I would rather like to be able to haul out some gizmo and flash it at my fellow civilians, and have these kindly people understand with a high degree of likelihood that I am not a mass murderer. On the contrary, I am quite civilized, and I should be brought a beer immediately.</p></blockquote><p></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><blockquote><p>A platinum VISA card and a five-hundred-dollar suit will almost do that, but those are too easy to forge and steal, plus they are not very democratic. The UN should get together on this. We should have a high level summit about digital hardware support for the crippled tourist economy. Fear and ill treatment shut down tourism faster than anything short of open warfare. That is bad for all of us. Killing off tourism harms our civilization and impoverishes our cultures. People in civilized states shouldn&#39;t routinely treat one another as criminal suspects. I don&#39;t want to get done-over for three hours every time I get off a plane in London. When I go to London, I go with empty suitcases. I don&#39;t plan to stay, but I am better news for the London economy than a lot of the people who live there.</p></blockquote><p></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><blockquote><p>They should know all that that&#0160;<span style="font-weight: bold; ">before<span style="font-weight: normal; ">&#0160;I get off the plane. My arrival is excellent news for Britain, so I should be treated that way. If this is a new kind of war, I don&#39;t want to be the evil guy hunkered down in the bunker; I want to fly with the boys from Air Assault. I want one of those handy crypto-style Friend-or-Foe IDs.</span></span></p></blockquote><p></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><blockquote><p>These people who normally meet me whenever I am an alien, they don&#39;t need to know my nationality, my home address or my shoe size. They just need to know that, despite being alien, I&#39;m sort-of okay.</p></blockquote><p></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><p style="font-size: small; font-style: normal; font-weight: normal; line-height: 24px; "></p><blockquote><p>I want a democratic, citizen-to-citizen device that will bridge those social barriers and language barriers. I think we could invent devices and means of verification that would strengthen the global social fabric that terrorism wants to rip. It wouldn&#39;t be easy or simple, but it&#39;s not beyond our ingenuity. Our social capital sustains all civilized societies, and it is all about trust. <span style="font-weight: bold;">So let&#39;s invent new methods of trust.</span></p></blockquote><p>I added bold to the last sentence because I think this is the mission statement for building out federation systems.</p><p></p><p></p>]]></content:encoded>
      <pubDate>Thu, 26 Jun 2008 06:35:35 +0000</pubDate>
      <category domain="http://securityratty.com/tag/people">people</category>
      <category domain="http://securityratty.com/tag/clever people brain-">clever people brain-</category>
      <category domain="http://securityratty.com/tag/kindly people">kindly people</category>
      <category domain="http://securityratty.com/tag/platinum visa card">platinum visa card</category>
      <category domain="http://securityratty.com/tag/london">london</category>
      <category domain="http://securityratty.com/tag/mission statement">mission statement</category>
      <category domain="http://securityratty.com/tag/london economy">london economy</category>
      <category domain="http://securityratty.com/tag/card">card</category>
      <category domain="http://securityratty.com/tag/true global society">true global society</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/06/mission-statement-for-federation.html">Mission Statement for Federation</source>
    </item>
    <item>
      <title><![CDATA[Malicious Doorways Redirecting to Malware]]></title>
      <link>http://securityratty.com/article/fe7f4960d26a3758a81dc861f894e098</link>
      <guid>http://securityratty.com/article/fe7f4960d26a3758a81dc861f894e098</guid>
      <description><![CDATA[Blacklisting malicious sites in times when legitimate ones are starting to compete with bogus .info and .biz ones for the leading position of hosting and serving malicious content, is a bit of an...]]></description>
      <content:encoded><![CDATA[<a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp1.blogger.com/_wICHhTiQmrA/SFUBnTCFkwI/AAAAAAAABzE/90Gdkzc04f8/s1600-h/bestxvids_visualized.JPG"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp1.blogger.com/_wICHhTiQmrA/SFUBnTCFkwI/AAAAAAAABzE/90Gdkzc04f8/s200/bestxvids_visualized.JPG" alt="" id="BLOGGER_PHOTO_ID_5212073918386770690" border="0" /></a>Blacklisting malicious sites in times when legitimate ones are starting to compete with bogus .info and .biz ones for the leading position of hosting and serving malicious content, is a bit of an outdated and reactive approach for protecting against unknown threats. However, a single malicious domain whose live exploits can be easily detected and consequently blocked, is often just a front end to a large domains portfolio whose malicious content may easily pass through web filtering and on-the-fly malware attempts. Even worse, a malicious domain often exists in multiple "alternate realities" since a single IP is hosting many other unique and related malware domains.<br /><br />In this post, I'll assess <a href="http://ddanchev.blogspot.com/2008/06/blackhat-seo-redirects-to-malware-and.html">a misconfigured malicious doorway</a>, that is redirecting to ten different malware sites <a href="http://ddanchev.blogspot.com/2008/03/portfolio-of-fake-video-codecs.html">serving Zlob variants by delivering fake codecs</a> that all the bogus adult sites require. The doorway is misconfigured in the sense of not recording the IP and checking the cookie set, in comparrision to every average web malware exploitation kit out there, which will not serve anything malicious when accessed for a second time since it's hashing the IPs that accessed it already. This is just the tip of the iceberg when it comes to the emerging evasive approaches applied to make the analysis of such doorways a bit more time and resources consuming. In a single sentence - <span style="font-weight: bold;">there's evidence blackhat SEO-ers are starting to exchange crawling manipulation know-how with malware authors</span>.<br /><br /><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp1.blogger.com/_wICHhTiQmrA/SFUCCgpQO8I/AAAAAAAABzM/HU4eAtm8bwU/s1600-h/bestxvids_spyshredder_redirection.JPG"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp1.blogger.com/_wICHhTiQmrA/SFUCCgpQO8I/AAAAAAAABzM/HU4eAtm8bwU/s200/bestxvids_spyshredder_redirection.JPG" alt="" id="BLOGGER_PHOTO_ID_5212074385897176002" border="0" /></a>In this example we have <span style="font-weight: bold;">bestxvids.info</span> (87.118.116.11)  which is reditecting to <span style="font-weight: bold;">all-in</span><span style="font-weight: bold;">dex.com/in.cgi?5</span> (87.118.116.11) a URL that's been actively spammed across forums and guestbooks vulnerable to automatic posting vulnerabilities (weak CAPTCHAs and web application vulnerabilities) which is then redirecting to the following fake codec domains on the fly, and since the redirection script isn't hashing my IP like the majority of well configured ones requiring the use of multiple IPs if we're to expose all the campaigns, it makes the investigation easier :<br /><br /><span style="font-weight: bold;">tubeuniverses.com/teen/index.php?id=1883</span> - (78.108.177.99)<br /><span style="font-weight: bold;">new-content-s2008.com/freemovie/938/0/</span> - (72.21.53.218)<br /><span style="font-weight: bold;">teens.0bucksforpornmovie.com/?id=4199</span> - (64.28.181.28)<br /><span style="font-weight: bold;">getadultaccess.com/movie/?aff=5310</span> - (200.63.46.84)<br /><span style="font-weight: bold;">hqtube.com/?7014000000</span> - (88.85.66.116)<br /><span style="font-weight: bold;">supersharebox.com/softw/?aff=5310&amp;saff=0</span> - (200.63.46.84)<br /><span style="font-weight: bold;">scanner.shredderscan.com/5/?advid=4329</span> - (92.241.182.13)<br /><span style="font-weight: bold;">myflydirect.com/1/5310/</span> - (200.63.46.84)<br /><span style="font-weight: bold;">getadultaccess.com/movie/?aff=5310</span> - (200.63.46.84)<br /><span style="font-weight: bold;">hotvidstube.com/teen/index.php?id=1883</span> - (78.108.177.99)<br /><span style="font-weight: bold;">2008-adult-2008.com/freemovie/938/0/</span> - (72.21.53.218)<br /><span style="font-weight: bold;">s-soft08freeware.com/download/502/938/0</span> - (91.203.70.18)<br /><br />Where's the "alternate reality"? All of the following fake codec and adult sites serving Zlob variants, with minor exceptions of course, are also responding to the main IP of the redirector - 87.118.116.11 :<br /><span style="font-weight: bold;"><br /></span><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp0.blogger.com/_wICHhTiQmrA/SFYov0Kh3HI/AAAAAAAABzc/70YINcLA_7E/s1600-h/porno_info_visualized.JPG"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp0.blogger.com/_wICHhTiQmrA/SFYov0Kh3HI/AAAAAAAABzc/70YINcLA_7E/s200/porno_info_visualized.JPG" alt="" id="BLOGGER_PHOTO_ID_5212398420649696370" border="0" /></a><span style="font-weight: bold;">carsfoto.ru</span> <span style="font-weight: bold;"><br />cheapest-pharmacy.com</span> <span style="font-weight: bold;"><br />coolsexmovies.net</span><br /><span style="font-weight: bold;">free-movie-xxx.net</span> <span style="font-weight: bold;"><br />gold-collection.biz</span> <span style="font-weight: bold;"><br />p-o-r-n-0.com</span> <span style="font-weight: bold;"><br />p-o-r-n-0.info</span> <span style="font-weight: bold;"><br />sexakaporn.com</span> <span style="font-weight: bold;"><br />stred.biz</span> <span style="font-weight: bold;"><br />stred.in</span> <span style="font-weight: bold;"><br />tosserhost.com</span> <span style="font-weight: bold;"><br />west-video-xxx.info</span> <span style="font-weight: bold;"><br />wowtofree.info</span><br /><br />Shall we also expose the entire scammy ecosystem of Zlob variants, as always, sharing the same netblocks in order to keep it simple? But of course :<br /><br /><span style="font-weight: bold;">porn-youtube08.net</span> <span style="font-weight: bold;"><br />sextubecodec55.com</span> <span style="font-weight: bold;"><br />2008adult2008.com</span><br /><span style="font-weight: bold;">adultstreamportal2008.com</span> <span style="font-weight: bold;"><br />newcontent-s2008.com</span> <span style="font-weight: bold;"><br />adultxx-18.com</span> <span style="font-weight: bold;"><br />newcontents2008.com</span> <span style="font-weight: bold;"><br />onlinestreamvide.com</span> <span style="font-weight: bold;"><br />2008adultstreamportal2008.com</span> <span style="font-weight: bold;"><br />newcontents2008.com</span><br /><span style="font-weight: bold;">hot-pornotube2008.com</span> <span style="font-weight: bold;"><br />adult-youtube-8.com</span> <span style="font-weight: bold;"><br /></span><span style="font-weight: bold;">2008adult-s2008.com</span> <span style="font-weight: bold;"><br />2008adultstreamportal2008.com</span> <span style="font-weight: bold;"><br />adult-freetube-8.com</span><br /><span style="font-weight: bold;">adult18tube2008.com</span><br /><span style="font-weight: bold;">adultstreamportal2008.com</span> <span style="font-weight: bold;"><br />free-porntube-8.com</span> <span style="font-weight: bold;"><br /></span><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp2.blogger.com/_wICHhTiQmrA/SFVF_rdlslI/AAAAAAAABzU/Y6DIZmD5gxo/s1600-h/bestxvids_malware_domains.JPG"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp2.blogger.com/_wICHhTiQmrA/SFVF_rdlslI/AAAAAAAABzU/Y6DIZmD5gxo/s200/bestxvids_malware_domains.JPG" alt="" id="BLOGGER_PHOTO_ID_5212149104052122194" border="0" /></a><span style="font-weight: bold;">gt-funny.com    </span> <span style="font-weight: bold;"><br />gt-movies.com</span> <span style="font-weight: bold;"><br />gt-stars.com</span> <span style="font-weight: bold;"><br />hot-sextube.com    </span> <span style="font-weight: bold;"><br />new-content-s2008.com</span> <span style="font-weight: bold;"><br />newcontent-s2008.com</span> <span style="font-weight: bold;"><br />newcontents2008.com</span> <span style="font-weight: bold;"><br />onlinestreamvide.com    </span> <span style="font-weight: bold;"><br />porno-tube20008.com    </span> <span style="font-weight: bold;"><br />pornotube-20008.com        </span> <span style="font-weight: bold;"><br />pornotube20008.com</span> <span style="font-weight: bold;"><br />sex-18tube-2008.com</span><br /><span style="font-weight: bold;">sex-tube-20008.com</span> <span style="font-weight: bold;"><br />sex-tube20008.com</span> <span style="font-weight: bold;"><br />sex18tube2008.com</span> <span style="font-weight: bold;"><br />sexi18tube2008.com</span> <span style="font-weight: bold;"><br />sextube18adult.com</span> <span style="font-weight: bold;"><br />sextube20008.com    </span> <span style="font-weight: bold;"><br />streamadultvideo.com</span> <span style="font-weight: bold;"><br />xxxstreamonline.com</span><br /><br />The bottom line - malicious doorways are slowly starting to emerge thanks to the convergence of traffic redirection and management tools with web malware exploitation kits, and just like we've been seeing the adaptation of spamming tools and approaches for phishing purposes, next we're going to see the development of infrastructure management kits, a feature that <a href="http://ddanchev.blogspot.com/2008/05/diy-phishing-kits-introducing-new.html">DIY phishing kits</a> are starting to take into consideration as well.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=8oWxkI"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=8oWxkI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=CSGETI"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=CSGETI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=BOEE6i"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=BOEE6i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=fIFwTi"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=fIFwTi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=vk30nI"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=vk30nI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=DPXX6I"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=DPXX6I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=x8rEEi"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=x8rEEi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/312884606" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sun, 15 Jun 2008 23:51:11 +0000</pubDate>
      <category domain="http://securityratty.com/tag/malicious">malicious</category>
      <category domain="http://securityratty.com/tag/doorways">doorways</category>
      <category domain="http://securityratty.com/tag/malicious doorways">malicious doorways</category>
      <category domain="http://securityratty.com/tag/malicious content">malicious content</category>
      <category domain="http://securityratty.com/tag/single sentence">single sentence</category>
      <category domain="http://securityratty.com/tag/single">single</category>
      <category domain="http://securityratty.com/tag/single malicious domain">single malicious domain</category>
      <category domain="http://securityratty.com/tag/doorway">doorway</category>
      <category domain="http://securityratty.com/tag/malicious doorway">malicious doorway</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/312884606/malicious-doorways-redirecting-to.html">Malicious Doorways Redirecting to Malware</source>
    </item>
  </channel>
</rss>
