Home page logo
/
funsec logo
Funsec Mailing List

While most security lists ban off-topic discussion, Funsec is a haven for free community discussion and enjoyment of the lighter, more humorous side of the security community

List Archives

Jan–MarApr–JunJul–SepOct–Dec
201227860
2011359382205188
2010962467531434
200996498010051344
200811236341085769
2007959135119101414
20063455256417362073
2005003061874

Latest Posts

Rotten AV proves "free market" false? Rob, grandpa of Ryan, Trevor, Devon & Hannah (May 21)
(Or lousy OS situation, or pitiful software security in general ...)

http://www.businessinsider.com/when-competition-easy-entry-and-no-government-
produces-lousy-results-a-quick-look-at-the-anti-virus-and-anti-malware-market-
2012-5

or

http://is.gd/yfQXMG

(I do recall some research that indicates "low cost of entry" actually promotes
monoculture ...)

====================== (quote inserted randomly by Pegasus Mailer)
rslade () vcn...

(Redundant) Backup is good Rob, grandpa of Ryan, Trevor, Devon & Hannah (May 15)
An example:
http://www.youtube.com/watch?v=EL_g0tyaIeE

====================== (quote inserted randomly by Pegasus Mailer)
rslade () vcn bc ca slade () victoria tc ca rslade () computercrime org
The client interface is the boundary of trustworthiness.
- Tony Buckland, UBC
victoria.tc.ca/techrev/rms.htm http://www.infosecbc.org/links...

Nigerian funds transfer safe Rob, grandpa of Ryan, Trevor, Devon & Hannah (May 15)
I've always been a bit worried that those offers I've gotten from Nigerian
individuals and banks might be "too good to be true." So it's really nice that the
FBI has taken time from it's busy schedule to assure me, even before I asked, that
the sca... I mean, deal, is safe.

(Now all I have to worry about is that the FBI is eeking to wiretap the whole
Internet. Must be an expensive proposition. Maybe they are...

Error in Finnish e-prescription software randomly added characters when Return was used Juha-Matti Laurio (May 13)
Finnish Medical Journal (in Finnish):
http://www.laakarilehti.fi/uutinen.html?opcode=show/news_id=12029/type=1

Google translation:
http://translate.google.com/translate?hl=en?sl=fi&tl=en&u=http%3A//www.laakarilehti.fi/uutinen.html%3Fopcode%3Dshow/news_id%3D12029/type%3D1

It is reported that using Return key in Effica e-prescription software randomly caused the program to add or destroy
characters typed by the doctor.
According to the...

Re: .secure TLD valdis . kletnieks (May 12)
On Fri, 11 May 2012 21:23:01 -0400, Ben April said:

Read between the lines. The guy scored $9M in startup funding, and
only has to pay ICANN $185K for the .secure TLD. And then he gets to
collect *more* money from anybody silly enough to buy into the TLD.

Step 3: Profit!

PCI DSS and BEAST Drsolly (May 12)
I just spent two effortful days getting my Secure Server to pass the PCI
DSS. The big problem is the BEAST vulnerability. And it's a corker. What
you have to do to get your certification, is disable most of the strong
crypto that you accept, and only accept some of the weaker ones (a bit of
research on the web will give you that info).

Having done that, and gotten my certification renewed, my QA told me that
some of the big banks...

Re: .secure TLD Bruce Ediger (May 12)
What happened to "The map is not the territory"?

After that, I want to know what happened to "The tap is not
meritorious".

Re: .secure TLD Nick FitzGerald (May 11)
Ben April wrote:

Well, the whole idea is somewhere between hilarious and blatantly
ignorant on its face, so that's funny (as in "funny sad" -- these folk
do seem to think they're doing something useful that will make a
difference) right off the bat...

If they really want to "assure security" they won't let any of their
registered domains install any currently-popular web-apps, PHP or,
realistically, even...

.secure TLD Ben April (May 11)
http://www.darkreading.com/authentication/167901072/security/security-management/240000187/new-i-secure-i-internet-domain-on-tap.html

If they really wanted to be secure they would require the
implementation of RFC 3514

Terrorist toddlers (Toddler terrorists?) Robert Slade (May 11)
http://www.vancouversun.com/travel/toddler+JetBlue+employees+pull+month+from+flight+over+list/6606185/story.html

Re: As you were ... Paul Ferguson (May 10)
I knew it! :-)

- ferg

- Sent from my Android device.

As you were ... Rob, grandpa of Ryan, Trevor, Devon & Hannah (May 10)
Apparently the Mayan's were as bad as anyone else changing their minds on the
date of the end of the world ...

http://www.sciencedaily.com/releases/2012/05/120510141905.htm

====================== (quote inserted randomly by Pegasus Mailer)
rslade () vcn bc ca slade () victoria tc ca rslade () computercrime org
The evening news is where they begin with 'Good evening,' and
then proceed to tell you why it isn't....

7 Ways Oracle Puts Database Customers At Risk Juha-Matti Laurio (May 10)
A very good coverage:

http://www.darkreading.com/database-security/167901020/security/news/232901381/7-ways-oracle-puts-database-customers-at-risk.html

Juha-Matti

Re: Seriously? Nick FitzGerald (May 05)
Mike B wrote:

But of course -- everyone knows that Android is based on Linux and
_everyone_ knows Linux, _like all other Unix-y OSes, BSDs and thus
Apple-OSes_, are inherently virus-immune.

Fred Cohen sure made those early PC users look stupid...

http://all.net/books/Dissertation.pdf

Oh, wait, I was misremembering that, wasn't I???

...

Android, like Apple-OSes, shows the fallacy of all that historic BS.
Make a "Unix...

Re: Seriously? Nick FitzGerald (May 05)
Dan Kaminsky wrote:

The numbing incoherence in the use of language?

Absolutely!

Let's allow a bunch of semi-quasi-literate, recent, CompSci or SW Eng
graduates write the technical bits of a press release about some
"exciting" new [or not] malware development _then_ have the marketing
wonks "tidy it up" for release.

What could _possibly_ go wrong with that?

Regards,

Nick FitzGerald

More Lists

Dozens of other network security lists are archived at SecLists.Org.


[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]