<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: vietnam]]></title>
    <link>http://securityratty.com/tag/vietnam</link>
    <description></description>
    <pubDate>Mon, 31 Dec 2007 15:08:58 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Latest linking of Senator Obama to a '70's terrorist may damage his reputation.]]></title>
      <link>http://securityratty.com/article/bc5d24c5aacdb378977254ed0f4cd00a</link>
      <guid>http://securityratty.com/article/bc5d24c5aacdb378977254ed0f4cd00a</guid>
      <description><![CDATA[We all know how important it is to have a good reputation and the price we pay when it becomes damaged. The latest reports linking Senator Obama with the 70's radical, William Ayers, can not help him...]]></description>
      <content:encoded><![CDATA[We all know how important it is to have a good reputation and the price we pay when it becomes damaged.  The latest reports linking Senator Obama with the 70's radical, William Ayers, can not help him in his nomination bid.    <br /><br />William "Billy" Ayers was a member of the '70's domestic terrorist group: Weather Underground Organization (WUO).  WUO were opposed to the Vietnam war and pledged to bomb the Capitol, The Pentagon and Police Stations after issuing a "declaration of a state of war" against the United States Government in 1970.    <br /><br />These days, Ayers is a professor at UIC.  Apparently, Ayers and the Senator have served jointly on various Boards and have appeared on discussion panels together.  Most likely Senator Obama failed to do the proper due diligence on his co-host and was unaware of his terrorist affiliations and involvement.  Unfortunately for the Senator, many voters may not be so forgiving, especially when they realize that Ayers has recently made comments to the effect that he does not regret planting bombs and thinks he did not do enough.  He even went so far as to state that he can not entirely dismiss the idea of planting a bomb today. <br /><br />Last week during training of an Executive Protection class in Baltimore, I spoke about the need to keep an open mind when it comes to terrorism and to realize that terrorists come in all shapes, sizes and colors. I even discussed domestic terrorism and drew their attention to the Weather Underground.  We should remember that terrorists will not always arrive looking as they do in television footage.  <br /><br />For instance, Timothy McVeigh could walk down any street in the U.S. prior to the bombing in Oklahoma and not one single person would ever have suspected him of being a home-grown terrorist.  Everything (and everybody) is not always what it seems.<div class="blogger-post-footer">Visit Sexton Executive Security at www.sextonsecurity.com</div>]]></content:encoded>
      <pubDate>Sun, 11 May 2008 20:12:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/senator">senator</category>
      <category domain="http://securityratty.com/tag/senator obama">senator obama</category>
      <category domain="http://securityratty.com/tag/william">william</category>
      <category domain="http://securityratty.com/tag/william ayers">william ayers</category>
      <category domain="http://securityratty.com/tag/ayers">ayers</category>
      <category domain="http://securityratty.com/tag/weather underground">weather underground</category>
      <category domain="http://securityratty.com/tag/weather underground organization">weather underground organization</category>
      <category domain="http://securityratty.com/tag/vietnam war">vietnam war</category>
      <category domain="http://securityratty.com/tag/terrorism">terrorism</category>
      <source url="http://www.thebulletproofblog.com/2008/05/latest-linking-of-senator-obama-to-70s.html">Latest linking of Senator Obama to a '70's terrorist may damage his reputation.</source>
    </item>
    <item>
      <title><![CDATA[Our Inherent Capability for Evil]]></title>
      <link>http://securityratty.com/article/284b63d1490318eea25c099cdd39fdb4</link>
      <guid>http://securityratty.com/article/284b63d1490318eea25c099cdd39fdb4</guid>
      <description><![CDATA[This is interesting : What took place on a peaceful Californian university campus nearly four decades ago still has the power to disturb. Eager to explore the way that &quot;situation&quot; can impact on...]]></description>
      <content:encoded><![CDATA[<p><a href="http://www.independent.co.uk/news/people/maverick-academic-philip-zimbardo-says-we-are-all-capable-of-evil-is-he-right-789161.html">This is interesting</a>:</p>

<blockquote>What took place on a peaceful Californian university campus nearly four decades ago still has the power to disturb. Eager to explore the way that "situation" can impact on behaviour, the young psychologist enrolled students to spend two weeks in a simulated jail environment, where they would randomly be assigned roles as either prisoners or guards.

<p>Zimbardo's volunteers were bright, liberal young men of good character, brimming with opposition to the Vietnam war and authority in general. All expressed a preference to be prisoners, a role they could relate to better. Yet within days the strong, rebellious "prisoners" had become depressed and hopeless. Two broke down emotionally, crushed by the behaviour of the "guards", who had embraced their authoritarian roles in full, some becoming ever-more sadistic, others passively accepting the abuses taking place in front of them.</p>

<p>Transcripts of the experiment, published in Zimbardo's book The Lucifer Effect: Understanding How Good People Turn Evil, record in terrifying detail the way reality slipped away from the participants. On the first day ­ Sunday ­ it is all self-conscious play-acting between college buddies. On Monday the prisoners start a rebellion, and the guards clamp down, using solitary confinement, sleep deprivation and intimidation. One refers to "these dangerous prisoners". They have to be prevented from using physical force.</p>

<p>Control techniques become more creative and sadistic. The prisoners are forced to repeat their numbers over and over at roll call, and to sing them. They are woken repeatedly in the night. Their blankets are rolled in dirt and they are ordered painstakingly to pick them clean of burrs. They are harangued and pitted against one another, forced to humiliate each other, pulled in and out of solitary confinement.</p>

<p>On day four, a priest visits. Prisoner 819 is in tears, his hands shaking. Rather than question the experiment, the priest tells him, "You're going to have to get less emotional." Later, a guard leads the inmates in chanting "Prisoner 819 did a bad thing!" and blaming him for their poor conditions.</p>

<p>Zimbardo finds 819 covering his ears, "a quivering mess, hysterical", and says it is time to go home. But 819 refuses to leave until he has proved to his fellow prisoners that he isn't "bad". "Listen carefully to me, you're not 819," says Zimbardo. "You are Stewart and my name is Dr Zimbardo. I am a psychologist not a prison superintendent, and this is not a real prison."819 stops sobbing "and looks like a small child awakening from a nightmare", according to Zimbardo. But it doesn't seem to occur to him that things are going too far.</p>

<p>Guard Hellmann, leader of the night shift, plumbs new depths. He wakes up the prisoners to shout abuse in their faces. He forces them to play leapfrog dressed only in smocks, their genitals exposed. A new prisoner, 416, replaces 819, and brings fresh perspective. "I was terrified by each new shift of guards," he says. "I knew by the first evening that I had done something foolish to volunteer for this study."</p>

<p>The study is scheduled to run for two weeks. On the evening of Thursday, the fifth day, Zimbardo's girlfriend, Christina Maslach, also a psychologist, comes to meet him for dinner. She is confronted by a line of prisoners en route to the lavatory, bags over their heads, chained together by the ankles. "What you're doing to these boys is a terrible thing," she tells Zimbardo. "Don't you understand this is a crucible of human behaviour?" he asks. "We are seeing things no one has witnessed before in such a situation." She tells him this has made her question their relationship, and the person he is.</p>

<p>Downstairs, Guard Hellmann is yelling at the prisoners. "See that hole in the ground? Now do 25 push-ups, fucking that hole. You hear me?" Three prisoners are forced to be "female camels", bent over, their naked bottoms exposed. Others are told to "hump" them and they simulate sodomy. Zimbardo ends the experiment the following morning.</p>

<p>To read the transcripts or watch the footage is to follow a rapid and dramatic collapse of human decency, resilience and perspective. And so it should be, says Zimbardo. "Evil is a slippery slope," he says. "Each day is a platform for the abuses of the next day. Each day is only slightly worse than the previous day. Once you don't object to those first steps it is easy to say, 'Well, it's only a little worse then yesterday.' And you become morally acclimatised to this kind of evil."</blockquote></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=g3pl1dG"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=g3pl1dG" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=i0LfstG"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=i0LfstG" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Wed, 16 Apr 2008 02:40:29 +0000</pubDate>
      <category domain="http://securityratty.com/tag/prisoners">prisoners</category>
      <category domain="http://securityratty.com/tag/fellow prisoners">fellow prisoners</category>
      <category domain="http://securityratty.com/tag/zimbardo">zimbardo</category>
      <category domain="http://securityratty.com/tag/tells zimbardo">tells zimbardo</category>
      <category domain="http://securityratty.com/tag/dangerous prisoners">dangerous prisoners</category>
      <category domain="http://securityratty.com/tag/prisoners start">prisoners start</category>
      <category domain="http://securityratty.com/tag/day">day</category>
      <category domain="http://securityratty.com/tag/day sunday">day sunday</category>
      <category domain="http://securityratty.com/tag/previous day">previous day</category>
      <source url="http://www.schneier.com/blog/archives/2008/04/our_inherent_ca.html">Our Inherent Capability for Evil</source>
    </item>
    <item>
      <title><![CDATA[From warzones to strip clubs, the truth comes out for a former First Lady and a Pastor.]]></title>
      <link>http://securityratty.com/article/4644a2739d9bbdd4b4a3b5d2c22ca326</link>
      <guid>http://securityratty.com/article/4644a2739d9bbdd4b4a3b5d2c22ca326</guid>
      <description><![CDATA[Last week in the Washington Post, &quot;The Fact Checker&quot; awarded former first lady, Hillary Clinton, four &quot;Pinocchios&quot; (real whoppers)for claiming to have come under sniper fire during a photo op. in...]]></description>
      <content:encoded><![CDATA[Last week in the Washington Post, "The Fact Checker" awarded former first lady, Hillary Clinton, four "Pinocchios" (real whoppers)for claiming to have come under sniper fire during a photo op. in Bosnia.  On Thursday, Michael Dobbs once again awarded Senator Clinton another "poker" of Pinocchios.  <br /><span id="fullpost"><br /><br />This time she took heat for claiming that her trip to Bosnia was the first visit to a "war zone" by a first lady since World War II.  Her claim is considered completly inaccurate, since Pat Nixon made a trip to Saigon in July 1969.  At the time, South Vietnam was an actual, not a "potential" war zone in the aftermath of the 1968 Tet offensive.<br /><br />The article also made mention of Barbara Bush's visit to Saudi Arabia in 1990, two months before the Persian Gulf war began.  Speaking about Senator Clinton's claim that her aircraft made a tactical landing back in 1996, the pilot of the aircraft had a different memory.  Retired Air Force Col. William Changose said that it was not true that they took evasive measures to avoid sniper fire.  The Colonel went on to say that: "not only were there no bullets flying, there wasn't even a bumblebee flying around".          <br /></span><br />It seems that Senator Clinton is not the only one in the public eye to suffer from Pinocchioitis.  Apparently the Police in Riverside, Ohio found a Pastor who had gone missing from his home in western New York, since Wednesday the 26th of March, after telling his wife that he was going to Best Buy to have his computer fixed. Officers found the Pastor at a strip club called the "K.C. Lounge", partying like a New York Govenor.<br /><br />We often hear people in the media complaining about the negative effects that Rap music has on our youth.  One wonders why we are now not hearing more complaining about the so-called role models getting caught with their pants down, so to speak.  At least with the likes of rappers and other "bad boy" entertainers, what you see, is what you get.  It's little wonder that so many people are comfortable telling lies during interviews and embellishing resumes in order to get hired and get ahead.  <br /><br />When I was going to school, the "dog ate my homework" excuse was used but not believed.  Also, it tended to get used by children who had not yet reached their teens.  I think that even children of that age these days will be able to see through these poorly constructed falsehoods that our "role models" would have us believe.<br /><br />Unbelievable.<div class="blogger-post-footer">Visit Sexton Executive Security at www.sextonsecurity.com</div>]]></content:encoded>
      <pubDate>Sun, 30 Mar 2008 16:57:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/senator clinton">senator clinton</category>
      <category domain="http://securityratty.com/tag/sniper fire">sniper fire</category>
      <category domain="http://securityratty.com/tag/avoid sniper fire">avoid sniper fire</category>
      <category domain="http://securityratty.com/tag/role models">role models</category>
      <category domain="http://securityratty.com/tag/war zone">war zone</category>
      <category domain="http://securityratty.com/tag/lady">lady</category>
      <category domain="http://securityratty.com/tag/pastor">pastor</category>
      <category domain="http://securityratty.com/tag/air force col">air force col</category>
      <category domain="http://securityratty.com/tag/persian gulf war">persian gulf war</category>
      <source url="http://www.thebulletproofblog.com/2008/03/from-warzones-to-strip-clubs-truth.html">From warzones to strip clubs, the truth comes out for a former First Lady and a Pastor.</source>
    </item>
    <item>
      <title><![CDATA[The Nukes of October: Richard Nixon's Secret Plan to Bring Peace to Vietnam]]></title>
      <link>http://securityratty.com/article/46923b108eaedcf760eaef05771ba472</link>
      <guid>http://securityratty.com/article/46923b108eaedcf760eaef05771ba472</guid>
      <description><![CDATA[Newly released secret documents reveal Giant Lance, a Nixon-Kissinger plan to win the Vietnam War by bluffing the Soviet Union with nuclear bombers aimed for...]]></description>
      <content:encoded><![CDATA[Newly released secret documents reveal Giant Lance, a Nixon-Kissinger plan to win the Vietnam War by bluffing the Soviet Union with nuclear bombers aimed for Moscow.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=7f41b8d16f879c8cec4dd722ec530c9a" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=7f41b8d16f879c8cec4dd722ec530c9a" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=JLsaToF"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=JLsaToF" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=El9HBUf"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=El9HBUf" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=BIpXJof"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=BIpXJof" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=wwPvMMF"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=wwPvMMF" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=Vir54HF"><img src="http://feeds.wired.com/~f/wired/politics/security?i=Vir54HF" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=LaA1WZf"><img src="http://feeds.wired.com/~f/wired/politics/security?i=LaA1WZf" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=TAMC76f"><img src="http://feeds.wired.com/~f/wired/politics/security?i=TAMC76f" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=va69xPF"><img src="http://feeds.wired.com/~f/wired/politics/security?i=va69xPF" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/245286479" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/245286480" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 04 Mar 2008 02:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nuclear bombers aimed">nuclear bombers aimed</category>
      <category domain="http://securityratty.com/tag/vietnam war">vietnam war</category>
      <category domain="http://securityratty.com/tag/nixon-kissinger plan">nixon-kissinger plan</category>
      <category domain="http://securityratty.com/tag/soviet union">soviet union</category>
      <category domain="http://securityratty.com/tag/moscow">moscow</category>
      <category domain="http://securityratty.com/tag/win">win</category>
      <category domain="http://securityratty.com/tag/newly">newly</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/245286480/click.phdo">The Nukes of October: Richard Nixon's Secret Plan to Bring Peace to Vietnam</source>
    </item>
    <item>
      <title><![CDATA[Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news]]></title>
      <link>http://securityratty.com/article/e68da4301acaa6538874623d0cb6e655</link>
      <guid>http://securityratty.com/article/e68da4301acaa6538874623d0cb6e655</guid>
      <description><![CDATA[Synopsis: Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news, listener comments and more
Welcome to...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Synopsis:</strong> Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news, listener comments and more...</p><hr /><p>Welcome to <strong>Blue Box: The VoIP Security Podcast</strong> #73, a 44-minute podcast&nbsp; from Dan York and Jonathan Zar covering VoIP security news, comments and opinions.&nbsp; &nbsp; </p>

<p><a href="http://ripple.radiotail.com/409/BBP-073-2007-12-11.mp3" rel="enclosure">Download the show here</a> (MP3, 20MB) or <a href="http://feeds.feedburner.com/BlueBox">subscribe to the RSS feed</a> to download the show automatically.&nbsp; </p> 

<p>You may also listen to this podcast right now:</p> 

<p><object width="200" height="20" type="application/x-shockwave-flash" data="http://www.blueboxpodcast.com/dewplayer.swf?son=http://ripple.radiotail.com/409/BBP-073-2007-12-11.mp3"><param name="movie" value="http://www.blueboxpodcast.com/dewplayer.swf?son=http://ripple.radiotail.com/409/BBP-073-2007-12-11.mp3&amp;bgcolor=#FFFFFF" /></object> </p> 

<p><em>NOTE: This show was recorded on December 11, 2007.</em></p>
<p><strong>Show Content:</strong></p> 
 

<ul> <li>00:20 - Intro to the show, contact information and how to provide comments.&nbsp; Welcome to all the new listeners - and to all those listeners who have been here for so long!&nbsp; </li>

<li>Voice of <span class="caps">VOIPSA</span>: <a href="http://voipsa.org/blog/2007/12/11/oops-skype-failed-to-mention-this-wee-minor-security-update/">Skype fixes flaw in Windows version</a></li>
		<li><a href="http://voipsa.org/pipermail/voipsec_voipsa.org/2007-December/002512.html">Cisco 7940 Denial of Service</a> </li>
		<li><a href="http://voipsa.org/pipermail/voipsec_voipsa.org/2007-December/002513.html">Nokia <span class="caps">N95 </span>Remote Denial of Service using the <span class="caps">SIP </span>Stack</a></li>
<li>Network World: <a href="http://www.networkworld.com/community/node/22541">VoIP Security Lessons Microsoft <span class="caps">OCS </span>Can Learn From Vonage and Others</a> pointing over to series of posts on the <a href="http://ikeelliott.typepad.com/telecosm">Telecosm</a> blog and the <a href="http://ikeelliott.typepad.com/telecosm/2007/11/common-voip-sec.html">start of a series on VoIP security</a> including <a href="http://ikeelliott.typepad.com/telecosm/2007/12/denial-of-servi.html">DoS</a> and <a href="http://ikeelliott.typepad.com/telecosm/2007/12/how-anonymous-i.html">anonymity</a></li>
		<li>VoIP News: <a href="http://www.voip-news.com/feature/not-waiting-for-big-one-120507/">Not Waiting For the Big One</a></li>
		<li>TechWorld: <a href="http://www.techworld.com/security/features/index.cfm?featureID=3859&amp;pagtype=samecatsamechan">VoIP is the next big hack</a> (follow up on Peter Cox)</li>
<li>Globe and Mail: <a href="http://www.theglobeandmail.com/servlet/story/LAC.20071206.VIETNAM06/TPStory/Business/columnists">Cyberdissidents weaving along new path</a></li>
<li><a href="http://www.generaldynamics.com./news/press_releases/2007/NewsRelease%20November%2029,2007.htm">National Security Agency Certifies New Sectra vIPer Phone by General Dynamics for Top Secret Communications</a> (sent in by Peter Thermos)</li>
		<li><a href="http://money.cnn.com/news/newsfeeds/articles/marketwire/0336078.htm">Websense Predicts 2008???s Top Ten Security Threats</a></li>
		<li><a href="http://money.cnn.com/news/newsfeeds/articles/marketwire/0337599.htm">International Telephone Services Company Deploys Secure Computing???s Sidewinder to Protect VoIP Communications</a></li>
<li>Feature ???&nbsp; <span class="caps">IETF 70</span>


	<ul>
	<li><a href="http://tools.ietf.org/agenda/70/">IETF 70 Agenda</a></li>
		<li>Security a major discussion point</li>
		<li>Media control ??? <a href="http://tools.ietf.org/id/draft-ietf-mediactrl-requirements-01.txt">requirements</a> and <a href="http://tools.ietf.org/id/draft-ietf-mediactrl-architecture-01.txt">architecture</a> to need more security work</li>
		<li><span class="caps">SPEERMINT </span>- Saverio Niccolini will bring security document back through</li>
		<li><span class="caps">SIPPING </span>- <a href="http://www.ietf.org/internet-drafts/draft-wing-sipping-spam-score-00.txt">Spam Score</a> and <a href="http://www.ietf.org/internet-drafts/draft-wing-sipping-srtp-key-02.txt">SRTP Key Disclosure</a> and <a href="http://www.ietf.org/internet-drafts/draft-elwell-sipping-update-pai-02.txt">Updates to Asserted Identity</a> ??? also covered in <a href="http://blogs.voxeo.com/speakingofstandards/2007/12/08/spiting-in-your-general-direction/">SPITting in your general direction</a></li>
		<li><span class="caps">SIP </span>- <a href="http://www.ietf.org/internet-drafts/draft-wing-sip-identity-media-01.txt">Media Identity</a> and <a href="http://tools.ietf.org/html/draft-ietf-sip-dtls-srtp-framework-00">DTLS Framework</a></li>
		<li><span class="caps">MMUSIC </span>- big news was that <a href="http://tools.ietf.org/html?draft=draft-ietf-mmusic-ice-19.txt">ICE</a> is now in the queue to be issued as an <span class="caps">RFC</span></li>
		<li><span class="caps">BEHAVE </span>- <a href="http://www.ietf.org/internet-drafts/draft-ietf-behave-turn-05.txt">TURN</a></li>
		<li><a href="http://tools.ietf.org/wg/p2psip/agenda?item=agenda70.html">P2PSIP</a> ??? interesting discussion on <a href="http://www3.ietf.org/proceedings/07dec/slides/p2psip-3.ppt">NAT in <span class="caps">P2P SIP</span></a> and <a href="http://www3.ietf.org/proceedings/07dec/slides/p2psip-4.pdf">security in <span class="caps">P2P SIP</span></a></li>
	</ul>
</li>

<li>Comment (email) from Frank Leonhardt</li>
		<li>Comment (email) from Rhodri Davies</li>
		<li>Comment (email) from Peter Thermos</li>
		<li>Comment (email) from Ben Penson</li>
<li>Review of the last week's traffic on the <a href="http://www.voipsa.org/VOIPSEC/">VOIPSEC </a>public mailing list&nbsp; </li>
<li>Wrap-up of the show </li>
<li> 44:28 - End of show&nbsp; </li></ul> <p>Comments, suggestions and feedback are welcome either as replies to this post&nbsp; or via e-mail to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>.&nbsp; Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.&nbsp; You may also call the listener comment line at either +1-415-830-5439 or via SIP to '<a href="sip:bluebox@voipuser.org">bluebox@voipuser.org</a>' to leave a comment there.&nbsp; </p> <p>Thank you for listening and please do let us know what you think of the show. </p></div>
]]></content:encoded>
      <pubDate>Mon, 31 Dec 2007 16:08:58 +0000</pubDate>
      <category domain="http://securityratty.com/tag/voip security news">voip security news</category>
      <category domain="http://securityratty.com/tag/news">news</category>
      <category domain="http://securityratty.com/tag/voip">voip</category>
      <category domain="http://securityratty.com/tag/protect voip communications">protect voip communications</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/sip">sip</category>
      <category domain="http://securityratty.com/tag/skype security">skype security</category>
      <category domain="http://securityratty.com/tag/sip security issues">sip security issues</category>
      <category domain="http://securityratty.com/tag/voip news">voip news</category>
      <source url="http://www.blueboxpodcast.com/2007/12/blue-box-73-sip.html">Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news</source>
    </item>
    <item>
      <title><![CDATA[Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news]]></title>
      <link>http://securityratty.com/article/f4fe1798feb08acc6f8dba77b99d69fe</link>
      <guid>http://securityratty.com/article/f4fe1798feb08acc6f8dba77b99d69fe</guid>
      <description><![CDATA[Synopsis: Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news, listener comments and more
Welcome to...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Synopsis:</strong> Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news, listener comments and more...</p><hr /><p>Welcome to <strong>Blue Box: The VoIP Security Podcast</strong> #73, a 44-minute podcast&nbsp; from Dan York and Jonathan Zar covering VoIP security news, comments and opinions.&nbsp; &nbsp; </p>

<p><a href="http://ripple.radiotail.com/409/BBP-073-2007-12-11.mp3" rel="enclosure">Download the show here</a> (MP3, 20MB) or <a href="http://feeds.feedburner.com/BlueBox">subscribe to the RSS feed</a> to download the show automatically.&nbsp; </p> 

<p>You may also listen to this podcast right now:</p> 

<p><object width="200" height="20" type="application/x-shockwave-flash" data="http://www.blueboxpodcast.com/dewplayer.swf?son=http://ripple.radiotail.com/409/BBP-073-2007-12-11.mp3"><param name="movie" value="http://www.blueboxpodcast.com/dewplayer.swf?son=http://ripple.radiotail.com/409/BBP-073-2007-12-11.mp3&amp;bgcolor=#FFFFFF" /></object> </p> 

<p><em>NOTE: This show was recorded on December 11, 2007.</em></p>
<p><strong>Show Content:</strong></p> 
 

<ul> <li>00:20 - Intro to the show, contact information and how to provide comments.&nbsp; Welcome to all the new listeners - and to all those listeners who have been here for so long!&nbsp; </li>

<li>Voice of <span class="caps">VOIPSA</span>: <a href="http://voipsa.org/blog/2007/12/11/oops-skype-failed-to-mention-this-wee-minor-security-update/">Skype fixes flaw in Windows version</a></li>
		<li><a href="http://voipsa.org/pipermail/voipsec_voipsa.org/2007-December/002512.html">Cisco 7940 Denial of Service</a> </li>
		<li><a href="http://voipsa.org/pipermail/voipsec_voipsa.org/2007-December/002513.html">Nokia <span class="caps">N95 </span>Remote Denial of Service using the <span class="caps">SIP </span>Stack</a></li>
<li>Network World: <a href="http://www.networkworld.com/community/node/22541">VoIP Security Lessons Microsoft <span class="caps">OCS </span>Can Learn From Vonage and Others</a> pointing over to series of posts on the <a href="http://ikeelliott.typepad.com/telecosm">Telecosm</a> blog and the <a href="http://ikeelliott.typepad.com/telecosm/2007/11/common-voip-sec.html">start of a series on VoIP security</a> including <a href="http://ikeelliott.typepad.com/telecosm/2007/12/denial-of-servi.html">DoS</a> and <a href="http://ikeelliott.typepad.com/telecosm/2007/12/how-anonymous-i.html">anonymity</a></li>
		<li>VoIP News: <a href="http://www.voip-news.com/feature/not-waiting-for-big-one-120507/">Not Waiting For the Big One</a></li>
		<li>TechWorld: <a href="http://www.techworld.com/security/features/index.cfm?featureID=3859&amp;pagtype=samecatsamechan">VoIP is the next big hack</a> (follow up on Peter Cox)</li>
<li>Globe and Mail: <a href="http://www.theglobeandmail.com/servlet/story/LAC.20071206.VIETNAM06/TPStory/Business/columnists">Cyberdissidents weaving along new path</a></li>
<li><a href="http://www.generaldynamics.com./news/press_releases/2007/NewsRelease%20November%2029,2007.htm">National Security Agency Certifies New Sectra vIPer Phone by General Dynamics for Top Secret Communications</a> (sent in by Peter Thermos)</li>
		<li><a href="http://money.cnn.com/news/newsfeeds/articles/marketwire/0336078.htm">Websense Predicts 2008’s Top Ten Security Threats</a></li>
		<li><a href="http://money.cnn.com/news/newsfeeds/articles/marketwire/0337599.htm">International Telephone Services Company Deploys Secure Computing’s Sidewinder to Protect VoIP Communications</a></li>
<li>Feature –&nbsp; <span class="caps">IETF 70</span>


	<ul>
	<li><a href="http://tools.ietf.org/agenda/70/">IETF 70 Agenda</a></li>
		<li>Security a major discussion point</li>
		<li>Media control – <a href="http://tools.ietf.org/id/draft-ietf-mediactrl-requirements-01.txt">requirements</a> and <a href="http://tools.ietf.org/id/draft-ietf-mediactrl-architecture-01.txt">architecture</a> to need more security work</li>
		<li><span class="caps">SPEERMINT </span>- Saverio Niccolini will bring security document back through</li>
		<li><span class="caps">SIPPING </span>- <a href="http://www.ietf.org/internet-drafts/draft-wing-sipping-spam-score-00.txt">Spam Score</a> and <a href="http://www.ietf.org/internet-drafts/draft-wing-sipping-srtp-key-02.txt">SRTP Key Disclosure</a> and <a href="http://www.ietf.org/internet-drafts/draft-elwell-sipping-update-pai-02.txt">Updates to Asserted Identity</a> – also covered in <a href="http://blogs.voxeo.com/speakingofstandards/2007/12/08/spiting-in-your-general-direction/">SPITting in your general direction</a></li>
		<li><span class="caps">SIP </span>- <a href="http://www.ietf.org/internet-drafts/draft-wing-sip-identity-media-01.txt">Media Identity</a> and <a href="http://tools.ietf.org/html/draft-ietf-sip-dtls-srtp-framework-00">DTLS Framework</a></li>
		<li><span class="caps">MMUSIC </span>- big news was that <a href="http://tools.ietf.org/html?draft=draft-ietf-mmusic-ice-19.txt">ICE</a> is now in the queue to be issued as an <span class="caps">RFC</span></li>
		<li><span class="caps">BEHAVE </span>- <a href="http://www.ietf.org/internet-drafts/draft-ietf-behave-turn-05.txt">TURN</a></li>
		<li><a href="http://tools.ietf.org/wg/p2psip/agenda?item=agenda70.html">P2PSIP</a> – interesting discussion on <a href="http://www3.ietf.org/proceedings/07dec/slides/p2psip-3.ppt">NAT in <span class="caps">P2P SIP</span></a> and <a href="http://www3.ietf.org/proceedings/07dec/slides/p2psip-4.pdf">security in <span class="caps">P2P SIP</span></a></li>
	</ul>
</li>

<li>Comment (email) from Frank Leonhardt</li>
		<li>Comment (email) from Rhodri Davies</li>
		<li>Comment (email) from Peter Thermos</li>
		<li>Comment (email) from Ben Penson</li>
<li>Review of the last week's traffic on the <a href="http://www.voipsa.org/VOIPSEC/">VOIPSEC </a>public mailing list&nbsp; </li>
<li>Wrap-up of the show </li>
<li> 44:28 - End of show&nbsp; </li></ul> <p>Comments, suggestions and feedback are welcome either as replies to this post&nbsp; or via e-mail to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>.&nbsp; Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.&nbsp; You may also call the listener comment line at either +1-415-830-5439 or via SIP to '<a href="sip:bluebox@voipuser.org">bluebox@voipuser.org</a>' to leave a comment there.&nbsp; </p> <p>Thank you for listening and please do let us know what you think of the show. </p></div>

<p><a href="http://feeds.feedburner.com/~a/BlueBox?a=PRpvtE"><img src="http://feeds.feedburner.com/~a/BlueBox?i=PRpvtE" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/BlueBox?a=6t3hWyC"><img src="http://feeds.feedburner.com/~f/BlueBox?i=6t3hWyC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=g5b2FjC"><img src="http://feeds.feedburner.com/~f/BlueBox?i=g5b2FjC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=o4jWGkC"><img src="http://feeds.feedburner.com/~f/BlueBox?i=o4jWGkC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=fFxEmNC"><img src="http://feeds.feedburner.com/~f/BlueBox?i=fFxEmNC" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=PMIjgsc"><img src="http://feeds.feedburner.com/~f/BlueBox?i=PMIjgsc" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=BF1gLeC"><img src="http://feeds.feedburner.com/~f/BlueBox?i=BF1gLeC" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/BlueBox/~4/209172890" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 31 Dec 2007 15:08:58 +0000</pubDate>
      <category domain="http://securityratty.com/tag/voip security news">voip security news</category>
      <category domain="http://securityratty.com/tag/news">news</category>
      <category domain="http://securityratty.com/tag/voip">voip</category>
      <category domain="http://securityratty.com/tag/protect voip communications">protect voip communications</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/sip">sip</category>
      <category domain="http://securityratty.com/tag/skype security">skype security</category>
      <category domain="http://securityratty.com/tag/sip security issues">sip security issues</category>
      <category domain="http://securityratty.com/tag/voip news">voip news</category>
      <source url="http://feeds.feedburner.com/~r/BlueBox/~3/209172890/blue-box-73-sip.html">Blue Box #73: SIP security issues at IETF 70, Skype security, vulnerabilities in Cisco and Nokia phones, Vietnam's cyberdissidents, VoIP security news</source>
    </item>
  </channel>
</rss>
