<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: thursday]]></title>
    <link>http://securityratty.com/tag/thursday</link>
    <description></description>
    <pubDate>Wed, 20 Aug 2008 20:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Cablevision Activates Major Areas of Its Wi-Fi Network]]></title>
      <link>http://securityratty.com/article/40a07e9654a39fb5503761a8d723e3f9</link>
      <guid>http://securityratty.com/article/40a07e9654a39fb5503761a8d723e3f9</guid>
      <description><![CDATA[New York area cable operator Cablevision flips switch for high-traffic areas of Long Island: They're announcing Thursday that they've turned on the initial phases of their network in Nassau and...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/muni_icon.jpg" align="right" border="0" hspace="5" /><strong>New York area cable operator Cablevision flips switch for high-traffic areas of Long Island:</strong> They're announcing Thursday that they've turned on the initial phases of their network in Nassau and Suffolk counties, as well as at commuter rail platforms and station parking lots throughout Long Island. The service offers 1.5 Mbps in each direction, the company claims. Detailed site maps for their previous much smaller activated areas are up at <a href="http://www.optimumwifi.com/"><strong>their Wi-Fi information site</strong></a>, and I expect to see these updated soon.</p>

<p>Cablevision will ultimately spend about $300m in building a Wi-Fi network exclusively for its customers; 2.4m of these customers qualify to use the service at no cost. There's no pay as you go option, no monthly subscription; you're either a subscriber of theirs, or not. It's a fascinating strategy, because they're leveraging all these dollars as a tool to crack its competitors in the market. With increasing competition from telephone companies that are offering television service, cable companies need to compete on voice, data, and video, as well as well as on mobile offerings. When the network is built, Cablevision can conceivably offer Wi-Fi telephony service, too.</p>

<p>I'm dying to know what the reduced churn rate and increase in subscriptions will be in six months. Given that hotspot access costs $10 to $30 per month depending on the network, Cablevision is delivering something of value. It's great honey for new subscribers and glue to keep current subscribers.</p>

<p>The company is claiming that with this latest activation, they have the largest Wi-Fi network for consumers in the U.S. They're likely correct. The only other public access network of scale that's being used by large numbers is in Minneapolis, and based on what I know about both networks, Cablevision probably deserves bragging rights. The network in Taipei, Taiwan, is likely still larger, but I haven't heard any usage number in nearly two years; at that point, subscription rates were 10 percent of what had been projected.</p>]]></content:encoded>
      <pubDate>Wed, 03 Sep 2008 17:01:01 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wi-fi network">wi-fi network</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/wi-fi network exclusively">wi-fi network exclusively</category>
      <category domain="http://securityratty.com/tag/cablevision">cablevision</category>
      <category domain="http://securityratty.com/tag/public access network">public access network</category>
      <category domain="http://securityratty.com/tag/service offers">service offers</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/hotspot access costs">hotspot access costs</category>
      <category domain="http://securityratty.com/tag/television service">television service</category>
      <source url="http://wifinetnews.com/archives/008429.html">Cablevision Activates Major Areas of Its Wi-Fi Network</source>
    </item>
    <item>
      <title><![CDATA[McIrony: An unexpected response from McAfee]]></title>
      <link>http://securityratty.com/article/b7777c8973f62604f441965769aa7200</link>
      <guid>http://securityratty.com/article/b7777c8973f62604f441965769aa7200</guid>
      <description><![CDATA[Irony: incongruity between what might be expected and what actually occurs

Right before Black Hat, I put together what I believed was a pretty strong arguement against McAfee Secure - Hacker Safe, at...]]></description>
      <content:encoded><![CDATA[Irony: incongruity between what might be expected and what actually occurs.<br /><br />Right before Black Hat, I put together what I believed was a pretty strong  arguement against McAfee Secure - Hacker Safe, at a level heretofore unexplored. I believe it was more damaging than anything I've said to date, and as such, presented potential risk for me. So I ran it by some friends before publishing it. Then a most extraordinary thing happened. I had a long chat with <a href="http://blogs.zdnet.com/security/?p=1668" target="_blank">Nate McFeters</a>, who described an awakening he'd recently experienced. He shared with me the belief that a better approach to potentially negative security research might be to try to create a positive outcome, and worry less about press cycles or exposure, the 15 minutes of fame if you will. He pointed to people like <a href="http://blogs.zdnet.com/security/?p=1030" target="_blank">Mark Dowd</a> as an example of people who conduct crushingly good research, and steer clear of the petty, ego driven  bulls**t. <br />There I sat, repose like the thinking <a href="http://www.downshoredrift.com/photos/uncategorized/thinking_man.gif" target="_blank">man</a>, frozen for minutes. "Nate", I said, "I think you're right." <br />What do I aspire to as an information security professional; more readership or street cred than the next guy, or the respect of my peers for contributing to the greater <a href="http://holisticinfosec.org/content/view/21/31/" target="_blank">good</a>? Attention, press cycles, 15 minutes...it all has its allure, trust me on this. <br />But at the end of the day, I really do want to contribute to the greater good.<br />So I did something different. I sent my findings to McAfee and offered them an opportunity to respond, rather than publish first, ask questions later. <br />Here's the real kicker. <br />They responded.<br />I had a three hour lunch this past Thursday with two gentlemen from McAfee, who flew up from the Bay Area to Seattle to have a face to face with me. This, all by itself, speaks volumes to me. In addition to meeting with Kirk Lawrence, the new Director of Product Management for McAfee Secure, there I sat with, of all people, Joe Pierini, the very guy who has suffered more than his share of abuse, up to and including the <a href="http://pwnie-awards.org/2008/awards.html">Pwnie</a>.  As I have been a direct contributor and participant in heckling Joe, you can imagine our meeting could have been uncomfortable. It was not. <br />I have had expectations of McAfee and Scan Alert that to date have not been met, or my (your) perception has been that they have not been met.<br />This meeting was designed as an opportunity to voice some of these expectations, and see if McAfee, in turn, believed there was any merit to them.<br />Surprisingly, at least as spoken, we weren't all that far apart.<br />While, as a naive idealist, I believe that security should come before conversions, I am also grounded enough of a realize that the most attainable goal can be a marriage of both. This premise frames my expectations of McAfee. <br />Can they not be more of a "thought leader" for all the Ma & Pa websites who rely on McAfee Secure, first for a higher conversion rate, then security?<br />Can they not hold merchants to a higher standard, without alienating them and losing business?<br />Can they not embrace the security research community in a fashion that McAfee, the security community, the merchants, and consumers can all benefit from?<br />Can they not be more transparent in their approach, providing more details and feedback about their methods, their findings, and their vision?<br />I know McAfee Secure - Hacker Safe scans can find vulnerabilities.<br />I know they report the vulnerabilities to merchants.<br />What happens thereafter is where things begin to break down. <br />Can the scan engine be improved to find more vulns? Sure. That's really not that big a deal; technology can always be improved.<br />But, regarding holding merchants to a higher standard; therein is the whole point of this debate. <br />Anyone can throw a badge on a site. <br />But what happens when the site proves vulnerable is the key. I'll be candid here: I don't give a damn about the merchant at that point; it's the consumer who is at risk and needs something better from McAfee and their peers.<br />So, here begins a different approach. I know that making changes at a company the size of McAfee can be likened to the three miles it takes to turn around an aircraft carrier. I'm willing to work with them, and allow for a positive outcome.<br />I have been told that, in two or three weeks, we can expect a published standard, that clearly defines exactly what the McAfee Secure product offering adheres to, inclusive of their expectations for merchant remediation timelines, potential badge downgrades for unresolved vulnerabilities, and hopefully even a more clear stance on XSS.<br />I have been told that I will have the opportunity to discuss this standard, and invite feedback. Any <a href="http://holisticinfosec.org/content/view/19/29/" target="_blank">standard</a> is better than no standard. <br />I have also been told that this is just the beginning of changes that will lead to more of what I have hoped for in my expectations, over the next 6 months or so.<br />I am hopeful that we can take McAfee at their word, and even if slowly, see a positive outcome.<br /><br /><a href="http://del.icio.us/post?url=http://holisticinfosec.blogspot.com/2008/08/mcirony-unexpected-response-from-mcafee.html&title=McIrony:%20An%20unexpected%20response%20from%20McAfee " title="McIrony: An unexpected response from McAfee ">del.icio.us</a> | <a href="http://digg.com/submit?phase=2&amp;url=http://holisticinfosec.blogspot.com/2008/08/mcirony-unexpected-response-from-mcafee.html" title="McIrony: An unexpected response from McAfee ">digg</a>]]></content:encoded>
      <pubDate>Sat, 30 Aug 2008 09:04:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/mcafee">mcafee</category>
      <category domain="http://securityratty.com/tag/mcafee secure">mcafee secure</category>
      <category domain="http://securityratty.com/tag/negative security research">negative security research</category>
      <category domain="http://securityratty.com/tag/research">research</category>
      <category domain="http://securityratty.com/tag/mcafee secure product">mcafee secure product</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/security research community">security research community</category>
      <category domain="http://securityratty.com/tag/information security professional">information security professional</category>
      <category domain="http://securityratty.com/tag/positive outcome">positive outcome</category>
      <source url="http://holisticinfosec.blogspot.com/2008/08/mcirony-unexpected-response-from-mcafee.html">McIrony: An unexpected response from McAfee</source>
    </item>
    <item>
      <title><![CDATA[Nmap presentation and class in Louisville area]]></title>
      <link>http://securityratty.com/article/fba5f949cefda2cf331d68c8dbb27300</link>
      <guid>http://securityratty.com/article/fba5f949cefda2cf331d68c8dbb27300</guid>
      <description><![CDATA[Hi all, my GRE test went well and I'm back to working on the site. I've been invited by the Kentuckiana ISSA chapter to give a presentation on Nmap and its use. The event happens Sept 5, 11:30AM at...]]></description>
      <content:encoded><![CDATA[Hi all, my GRE test went well and I'm back to working on the site. I've been 
invited by the <a href="http://www.issa-kentuckiana.org/">Kentuckiana ISSA</a> 
chapter to give a presentation on
<a href="http://www.irongeek.com/i.php?page=videos/nmap1">Nmap</a> and its use.&nbsp; 
The event happens Sept 5, 11:30AM at the following location:<br>
<br>
<a href="http://maps.google.com/maps?hl=en&q=Innovative+Productivity+/+McConnell+Technology+401+Industry+Road,+Louisville,+KY+40208&ie=UTF8&ll=38.215795,-85.764019&spn=0.008227,0.013819&t=h&z=16">
Innovative Productivity / McConnell Technology<br>
401 Industry Rd, Louisville, KY 40208</a><br>
<br>
The ISSA would like to have an RSVP. Also, I'll be giving a longer hands on 
demonstration and lab later on in September where people can bring their own 
laptops and use a private network to get some hands on experience with Nmap. We 
are not sure of all of the details yet, but it will likely be held Sept 20th at 
the Ivy Tech campus in Sellersburg, IN.<p>Also, this month's Louisville 2600 meeting is coming up on Thursday, Sept 
24th. More details can be found here:
<a target="_blank" href="http://louisville2600.org/">http://louisville2600.org/</a>
<p><a href="http://feeds.feedburner.com/~a/IrongeeksSecuritySite?a=DeMZkt"><img src="http://feeds.feedburner.com/~a/IrongeeksSecuritySite?i=DeMZkt" border="0"></img></a></p><img src="http://feeds.feedburner.com/~r/IrongeeksSecuritySite/~4/377558601" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 28 Aug 2008 15:03:44 +0000</pubDate>
      <category domain="http://securityratty.com/tag/sept">sept</category>
      <category domain="http://securityratty.com/tag/sept 24th">sept 24th</category>
      <category domain="http://securityratty.com/tag/issa">issa</category>
      <category domain="http://securityratty.com/tag/held sept 20th">held sept 20th</category>
      <category domain="http://securityratty.com/tag/louisville">louisville</category>
      <category domain="http://securityratty.com/tag/nmap">nmap</category>
      <category domain="http://securityratty.com/tag/kentuckiana issa chapter">kentuckiana issa chapter</category>
      <category domain="http://securityratty.com/tag/ivy tech campus">ivy tech campus</category>
      <category domain="http://securityratty.com/tag/mcconnell technology">mcconnell technology</category>
      <source url="http://feeds.feedburner.com/~r/IrongeeksSecuritySite/~3/377558601/">Nmap presentation and class in Louisville area</source>
    </item>
    <item>
      <title><![CDATA[Nmap presentation and class in Louisville area]]></title>
      <link>http://securityratty.com/article/2f6458dad28d7d34cf1af16a26adb2a7</link>
      <guid>http://securityratty.com/article/2f6458dad28d7d34cf1af16a26adb2a7</guid>
      <description><![CDATA[Hi all, my GRE test went well and I'm back to working on the site. I've been invited by the Kentuckiana ISSA chapter to give a presentation on Nmap and its use. The event happens Sept 5, 11:30AM at...]]></description>
      <content:encoded><![CDATA[Hi all, my GRE test went well and I'm back to working on the site. I've been 
invited by the <a href="http://www.issa-kentuckiana.org/">Kentuckiana ISSA</a> 
chapter to give a presentation on
<a href="http://www.irongeek.com/i.php?page=videos/nmap1">Nmap</a> and its use.&nbsp; 
The event happens Sept 5, 11:30AM at the following location:<br>
<br>
<a href="http://maps.google.com/maps?hl=en&q=Innovative+Productivity+/+McConnell+Technology+401+Industry+Road,+Louisville,+KY+40208&ie=UTF8&ll=38.215795,-85.764019&spn=0.008227,0.013819&t=h&z=16">
Innovative Productivity / McConnell Technology<br>
401 Industry Rd, Louisville, KY 40208</a><br>
<br>
The ISSA would like to have an RSVP. Also, I'll be giving a longer hands on 
demonstration and lab later on in September where people can bring their own 
laptops and use a private network to get some hands on experience with Nmap. We 
are not sure of all of the details yet, but it will likely be held Sept 20th at 
the Ivy Tech campus in Sellersburg, IN.<p>Also, this month's Louisville 2600 meeting is coming up on Thursday, Sept 
24th. More details can be found here:
<a target="_blank" href="http://louisville2600.org/">http://louisville2600.org/</a><img src="http://feedproxy.google.com/~r/IrongeeksSecuritySite/~4/Wbbmb53vUyo" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 28 Aug 2008 15:03:44 +0000</pubDate>
      <category domain="http://securityratty.com/tag/sept">sept</category>
      <category domain="http://securityratty.com/tag/sept 24th">sept 24th</category>
      <category domain="http://securityratty.com/tag/issa">issa</category>
      <category domain="http://securityratty.com/tag/held sept 20th">held sept 20th</category>
      <category domain="http://securityratty.com/tag/louisville">louisville</category>
      <category domain="http://securityratty.com/tag/nmap">nmap</category>
      <category domain="http://securityratty.com/tag/kentuckiana issa chapter">kentuckiana issa chapter</category>
      <category domain="http://securityratty.com/tag/ivy tech campus">ivy tech campus</category>
      <category domain="http://securityratty.com/tag/mcconnell technology">mcconnell technology</category>
      <source url="http://feedproxy.google.com/~r/IrongeeksSecuritySite/~3/Wbbmb53vUyo/">Nmap presentation and class in Louisville area</source>
    </item>
    <item>
      <title><![CDATA[Apple promises September fix for iPhone security flaw]]></title>
      <link>http://securityratty.com/article/619ce3ed4dc386aded401cbe8883dda5</link>
      <guid>http://securityratty.com/article/619ce3ed4dc386aded401cbe8883dda5</guid>
      <description><![CDATA[A recently discovered security flaw that would allow access to a locked iPhone will be fixed next month, Apple said on...]]></description>
      <content:encoded><![CDATA[A recently discovered security flaw that would allow access to a locked iPhone will be fixed next month, Apple said on Thursday.]]></content:encoded>
      <pubDate>Wed, 27 Aug 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security flaw">security flaw</category>
      <category domain="http://securityratty.com/tag/iphone">iphone</category>
      <category domain="http://securityratty.com/tag/apple">apple</category>
      <category domain="http://securityratty.com/tag/recently">recently</category>
      <category domain="http://securityratty.com/tag/month">month</category>
      <category domain="http://securityratty.com/tag/fixed">fixed</category>
      <category domain="http://securityratty.com/tag/access">access</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <source url="http://www.networkworld.com/news/2008/082808-apple-promises-september-fix-for.html?fsrc=rss-security">Apple promises September fix for iPhone security flaw</source>
    </item>
    <item>
      <title><![CDATA[Best Western Hotel Online Booking Breached, 8 Million Victims In Personal Data Theft]]></title>
      <link>http://securityratty.com/article/1e268670aae5d79f21ac2627114fd3b4</link>
      <guid>http://securityratty.com/article/1e268670aae5d79f21ac2627114fd3b4</guid>
      <description><![CDATA[Criminal gang has stolen the identities of an estimated eight million people in a hacking raid that could ultimately net more than 2.8billion in illegal funds. Thursday night, an unknown hacker,...]]></description>
      <content:encoded><![CDATA[Criminal gang has stolen the identities of an estimated eight million people in a hacking raid that could ultimately net more than £2.8billion in illegal funds. Thursday night, an unknown hacker, possibly indian, successfully breached the IT defences of the Best Western Hotel group&#8217;s online booking system and sold details of how to access it [...]]]></content:encoded>
      <pubDate>Mon, 25 Aug 2008 09:57:47 +0000</pubDate>
      <category domain="http://securityratty.com/tag/western hotel">western hotel</category>
      <category domain="http://securityratty.com/tag/unknown hacker">unknown hacker</category>
      <category domain="http://securityratty.com/tag/possibly indian">possibly indian</category>
      <category domain="http://securityratty.com/tag/thursday night">thursday night</category>
      <category domain="http://securityratty.com/tag/million people">million people</category>
      <category domain="http://securityratty.com/tag/online">online</category>
      <category domain="http://securityratty.com/tag/ultimately net">ultimately net</category>
      <category domain="http://securityratty.com/tag/criminal gang">criminal gang</category>
      <category domain="http://securityratty.com/tag/illegal funds">illegal funds</category>
      <source url="http://cyberinsecure.com/best-western-hotel-online-booking-breached-8-million-victims-in-personal-data-theft/">Best Western Hotel Online Booking Breached, 8 Million Victims In Personal Data Theft</source>
    </item>
    <item>
      <title><![CDATA[Brazilian charged in botnet scheme, will be extradited to U.S.]]></title>
      <link>http://securityratty.com/article/9469a6d76051bfa5e347ae20fd34efa1</link>
      <guid>http://securityratty.com/article/9469a6d76051bfa5e347ae20fd34efa1</guid>
      <description><![CDATA[A Brazilian man has been charged for trying to broker a deal to rent out a botnet in order to send spam, U.S. authorities said...]]></description>
      <content:encoded><![CDATA[A Brazilian man has been charged for trying to broker a deal to rent out a botnet in order to send spam, U.S. authorities said Thursday.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=5Kmhks"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=5Kmhks" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/372011167" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 22 Aug 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/brazilian">brazilian</category>
      <category domain="http://securityratty.com/tag/botnet">botnet</category>
      <category domain="http://securityratty.com/tag/rent">rent</category>
      <category domain="http://securityratty.com/tag/deal">deal</category>
      <category domain="http://securityratty.com/tag/spam">spam</category>
      <category domain="http://securityratty.com/tag/authorities">authorities</category>
      <category domain="http://securityratty.com/tag/broker">broker</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/372011167/article.do">Brazilian charged in botnet scheme, will be extradited to U.S.</source>
    </item>
    <item>
      <title><![CDATA[Brazilian charged in botnet scheme, will be extradited to US]]></title>
      <link>http://securityratty.com/article/9cde1af1a5c786a90335ee52f35ad3bd</link>
      <guid>http://securityratty.com/article/9cde1af1a5c786a90335ee52f35ad3bd</guid>
      <description><![CDATA[A Brazilian man has been charged for trying to rent out a botnet that would be used to send spam, U.S. authorities said...]]></description>
      <content:encoded><![CDATA[A Brazilian man has been charged for trying to rent out a botnet that would be used to send spam, U.S. authorities said Thursday.]]></content:encoded>
      <pubDate>Thu, 21 Aug 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/botnet">botnet</category>
      <category domain="http://securityratty.com/tag/brazilian">brazilian</category>
      <category domain="http://securityratty.com/tag/spam">spam</category>
      <category domain="http://securityratty.com/tag/authorities">authorities</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <category domain="http://securityratty.com/tag/rent">rent</category>
      <source url="http://www.networkworld.com/news/2008/082208-brazilian-charged-in-botnet-scheme.html?fsrc=rss-security">Brazilian charged in botnet scheme, will be extradited to US</source>
    </item>
    <item>
      <title><![CDATA[Nokia admits security flaws in Series 40 OS]]></title>
      <link>http://securityratty.com/article/2d438048960b88ef22a2de5bfc5bc3db</link>
      <guid>http://securityratty.com/article/2d438048960b88ef22a2de5bfc5bc3db</guid>
      <description><![CDATA[Nokia confirmed Thursday its widely used Series 40 operating system has security vulnerabilities that could allow activation of stealth...]]></description>
      <content:encoded><![CDATA[Nokia confirmed Thursday its widely used Series 40 operating system has security vulnerabilities that could allow activation of stealth applications
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=S11lRd"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=S11lRd" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/371019291" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 21 Aug 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nokia">nokia</category>
      <category domain="http://securityratty.com/tag/stealth applications">stealth applications</category>
      <category domain="http://securityratty.com/tag/series">series</category>
      <category domain="http://securityratty.com/tag/security vulnerabilities">security vulnerabilities</category>
      <category domain="http://securityratty.com/tag/system">system</category>
      <category domain="http://securityratty.com/tag/widely">widely</category>
      <category domain="http://securityratty.com/tag/activation">activation</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/371019291/article.do">Nokia admits security flaws in Series 40 OS</source>
    </item>
    <item>
      <title><![CDATA[Nokia admits security flaws in Series 40 OS]]></title>
      <link>http://securityratty.com/article/6e0ada007a200702ce41590441707f26</link>
      <guid>http://securityratty.com/article/6e0ada007a200702ce41590441707f26</guid>
      <description><![CDATA[Nokia confirmed Thursday its widely used Series 40 operating system has security vulnerabilities that could allow stealth installation and activation of...]]></description>
      <content:encoded><![CDATA[Nokia confirmed Thursday its widely used Series 40 operating system has security vulnerabilities that could allow stealth installation and activation of applications.]]></content:encoded>
      <pubDate>Wed, 20 Aug 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nokia">nokia</category>
      <category domain="http://securityratty.com/tag/series">series</category>
      <category domain="http://securityratty.com/tag/security vulnerabilities">security vulnerabilities</category>
      <category domain="http://securityratty.com/tag/stealth installation">stealth installation</category>
      <category domain="http://securityratty.com/tag/system">system</category>
      <category domain="http://securityratty.com/tag/widely">widely</category>
      <category domain="http://securityratty.com/tag/applications">applications</category>
      <category domain="http://securityratty.com/tag/activation">activation</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <source url="http://www.networkworld.com/news/2008/082108-nokia-admits-security-flaws-in.html?fsrc=rss-security">Nokia admits security flaws in Series 40 OS</source>
    </item>
  </channel>
</rss>
