<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4148424464516754007</id><updated>2011-11-01T11:25:34.140Z</updated><category term='BT Home hub vulnerable'/><category term='calculating'/><category term='exchange permissions'/><category term='help desk'/><category term='live'/><category term='Outlook'/><category term='macs'/><category term='Experience Rating'/><category term='privacy'/><category term='McAfee'/><category term='anti virus'/><category term='routers'/><category term='UK Data Loss'/><category term='vulnerabilities'/><category term='barclays'/><category term='Office 2003 SP3'/><category term='keyloggers'/><category term='Dan Egerstad'/><category term='network problems'/><category term='Googletalk'/><category term='new patches'/><category term='credit card details'/><category term='AV'/><category term='Dell'/><category term='open shares'/><category term='exchange'/><category term='rootkits'/><category term='firefox blocked'/><category term='facebook'/><category term='MS08-001 exploit'/><category term='pc fixing'/><category term='holiday'/><category term='rootkit malware'/><category term='ted schadler'/><category term='trustedinstaller.exe'/><category term='FBI'/><category term='domain permissions'/><category term='heathrow'/><category term='lost dvds'/><category term='memory'/><category term='trojan'/><category term='single factor authentication'/><category term='Marcus Agius'/><category term='USB'/><category term='mp4 codec'/><category term='bbc news'/><category term='regulations'/><category term='Vista SP1'/><category term='compatibility'/><category term='problems'/><category term='bandwidth'/><category term='mdac'/><category term='skype outage'/><category term='msn messenger'/><category term='buffer overflow'/><category term='computer usage policy'/><category term='Internet Explorer'/><category term='locking machines'/><category term='framework'/><category term='no firefox'/><category term='baggage handlers'/><category term='bad coding'/><category term='windows problems'/><category term='virgin voyager'/><category term='GPRS'/><category term='PST files'/><category term='down'/><category term='skype DoS'/><category term='google problems'/><category term='BGP attack'/><category term='domain controllers'/><category term='hi def'/><category term='osx'/><category term='police'/><category term='GNER'/><category term='8100036'/><category term='ISP'/><category term='gnucitizen'/><category term='security is broken'/><category term='vcpoker'/><category term='best practice'/><category term='crysis warhead'/><category term='Live Messenger'/><category term='sp1'/><category term='AVPU'/><category term='credit card'/><category term='BT'/><category term='games ratings'/><category term='IM'/><category term='internet storm centre'/><category term='HDTV'/><category term='vista security'/><category term='HP'/><category term='ID theft'/><category term='new blog'/><category term='p2p'/><category term='homers'/><category term='uk internet'/><category term='bugtraq'/><category term='3dmark score'/><category term='hackers'/><category term='OL2007 slow'/><category term='botnet'/><category term='sans'/><category term='firefox extentions'/><category term='trend micro'/><category term='cameras'/><category term='costs'/><category term='logmein'/><category term='blackberry'/><category term='child pornography'/><category term='wireless'/><category term='there&apos;s an app for that'/><category term='BT profits'/><category term='identity'/><category term='virus'/><category term='google search'/><category term='steam'/><category term='the vista monkey'/><category term='illegal'/><category term='clipboard'/><category term='PC suite'/><category term='tracing hackers'/><category term='website hacked'/><category term='BBC'/><category term='sonyericsson'/><category term='pictures'/><category term='active directory'/><category term='switching suppliers'/><category term='BOT'/><category term='xbox live accounts owned'/><category term='ASR'/><category term='upnp'/><category term='FTP BO'/><category term='patches'/><category term='terminal services'/><category term='windows patching'/><category term='windows 7'/><category term='outsourcing'/><category term='firefox'/><category term='iphone'/><category term='windows 2003'/><category term='applying for jobs'/><category term='cio'/><category term='xbox'/><category term='blog hacked'/><category term='DAT5958'/><category term='physical security'/><category term='skype backdoor'/><category term='broken'/><category term='100% cpu'/><category term='constitution'/><category term='terror'/><category term='whassap'/><category term='outlook support'/><category term='BBC Click'/><category term='copying files'/><category term='exchange web mail'/><category term='security'/><category term='shit'/><category term='gmail down'/><category term='sony drm'/><category term='SARBOX'/><category term='Kerberos'/><category term='feds'/><category term='server outage'/><category term='losing jobs'/><category term='android'/><category term='isc'/><category term='speech recognition'/><category term='opera mobile'/><category term='Lenovo'/><category term='remote monitoring'/><category term='vista'/><category term='G3'/><category term='public'/><category term='mobile apps'/><category term='new PC'/><category term='skype'/><category term='criminals'/><category term='corporate IM solution'/><category term='photos'/><category term='russian hackers'/><category term='monster.com hacked'/><category term='RIAA hacked?'/><category term='comms problems'/><category term='sony rootkit'/><category term='media player vulnerability'/><category term='pwned'/><category term='lost cds'/><category term='electronic jihad'/><category term='Quality of Service'/><category term='accounts'/><category term='tinyurl'/><category term='ofcom'/><category term='Mail'/><category term='malware links'/><category term='service packs'/><category term='mailboxes'/><category term='pdparchitect'/><category term='Internet'/><category term='rdpclip.exe'/><category term='xbox video'/><category term='tribler'/><category term='firewire'/><category term='religion sucks'/><category term='facebook generation'/><category term='untrusted URL'/><category term='stupid parents'/><category term='terrorism'/><category term='bebo'/><category term='CV'/><category term='google chrome'/><category term='network issues'/><category term='unpatched'/><category term='organised crime'/><category term='bluetooth'/><category term='blogger'/><category term='disk space'/><category term='vista shit'/><category term='QoS'/><category term='service desk'/><category term='microsoft'/><category term='patch tuesday'/><category term='ad blocking'/><category term='file sharing'/><category term='mozilla'/><category term='k750i'/><category term='free speech'/><category term='AD'/><category term='identity theft'/><category term='W7'/><category term='Firefox Updates'/><category term='failing switches'/><title type='text'>ColSec</title><subtitle type='html'>Just a security guys musings from day to day.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>83</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-223504199201478000</id><published>2010-11-19T09:39:00.005Z</published><updated>2010-11-19T10:35:42.079Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='security is broken'/><category scheme='http://www.blogger.com/atom/ns#' term='skype'/><category scheme='http://www.blogger.com/atom/ns#' term='bbc news'/><category scheme='http://www.blogger.com/atom/ns#' term='ted schadler'/><category scheme='http://www.blogger.com/atom/ns#' term='pwned'/><title type='text'>Security Vs Convenience</title><content type='html'>That's right, the old argument is rearing its head again. My post here is brought on by the story &lt;a href="http://www.bbc.co.uk/news/business-11793436"&gt;published on the BBC today&lt;/a&gt; which goes on to say that "Security is broken" etc. Usual old story, which as far as I am concerned is correct. We should keep on top of these things and comply with regulations and stop our users from using whatever they wish.  &lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Well, on the flip side you have people like &lt;a href="http://twitter.com/#!/TedSchadler"&gt;Ted Schadler&lt;/a&gt; writing books about Empowerment and suggesting its a good idea to let your staff use technology, this is conflicting, at least in my mind with some of the concerns in the BBC article mentioned above. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;So where does that leave us, the techies doing the work? It leaves us wherever our management decide to leave us of course! The company I work for doesn't care heaps about security, they care about giving the users the flexibility to do their jobs - if that means using Google Docs or their iPads then so be it. Heck they are even encouraged to bring in their MACs... I can see a problem forming... will they learn from it? Perhaps. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;I'll give you an example. Do you use Skype? Safe, right? How do you know for sure? Lets see, it's an encrypted EXE using an encrypted proprietary protocol. How do you know there isn't some nasty traffic in there? That's right, you don't. In our company the CEO uses Skype and loves it. Great. So if some hacker has exploited it and is using it for their own gains, not only are they on millions of PCs worldwide but they are also on our CEO's machine. No doubt our CEO has admin rights to their machine too, so the hacker has everything. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Can you say pwned?&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-223504199201478000?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/223504199201478000/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=223504199201478000' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/223504199201478000'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/223504199201478000'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2010/11/security-vs-convenience.html' title='Security Vs Convenience'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2524682023625461381</id><published>2010-08-10T11:02:00.003+01:00</published><updated>2010-08-10T11:06:39.584+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='server outage'/><category scheme='http://www.blogger.com/atom/ns#' term='clipboard'/><category scheme='http://www.blogger.com/atom/ns#' term='windows 2003'/><category scheme='http://www.blogger.com/atom/ns#' term='terminal services'/><category scheme='http://www.blogger.com/atom/ns#' term='rdpclip.exe'/><title type='text'>Rdpclip.exe stop it already</title><content type='html'>I'm sure, if you use Terminal Services on Windows 2003 you will have seen it too. You are working away all day, no problems, using the the TS Clipboard, copying and pasting text + images between your session and many others, only for it to stop working mid way through doing something mega-fucking-important. &lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Well its an easy fix, but fucking annoying all the same. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Run task manager and just look at your own processes, click "end task" on RDPCLIP.EXE and kill the fucker. Do File, Run and type in "rdpclip.exe" and you will see a nice new one spawn into the process list. Now go do your copy + paste again, works fine, but for how long?&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Come on Microsoft you must know about this one, fix it already!&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2524682023625461381?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2524682023625461381/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2524682023625461381' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2524682023625461381'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2524682023625461381'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2010/08/rdpclipexe-stop-it-already.html' title='Rdpclip.exe stop it already'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7094919818737113981</id><published>2010-07-06T07:29:00.004+01:00</published><updated>2010-07-06T07:48:59.470+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='blackberry'/><category scheme='http://www.blogger.com/atom/ns#' term='there&apos;s an app for that'/><category scheme='http://www.blogger.com/atom/ns#' term='iphone'/><category scheme='http://www.blogger.com/atom/ns#' term='android'/><title type='text'>There's still an app for that.... sigh...</title><content type='html'>I'm still annoyed about all these iPhone/Blackberry/Android applications that are worthless and a waste of time. We all have web browsers with bookmark functionality, why oh why do we need all these stupid applications to do what a web browser can do all day long?&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;This news story highlights my point nicely - &lt;a href="http://news.bbc.co.uk/1/hi/technology/10514367.stm"&gt;http://news.bbc.co.uk/1/hi/technology/10514367.stm&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Here is the UK Government wasting our money on iPhone apps, for what? A fucking travel advisor? When I could bookmark the web page and use it as I travel quite easily. Thanks for wasting my tax money you bunch of buffoons. Of course the present coalition will just blame the previous government's decisions and duck any blame. Sometimes, I hate democracy. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7094919818737113981?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7094919818737113981/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7094919818737113981' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7094919818737113981'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7094919818737113981'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2010/07/theres-still-app-for-that-sigh.html' title='There&apos;s still an app for that.... sigh...'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3392983740882490499</id><published>2010-04-21T21:40:00.004+01:00</published><updated>2010-04-22T09:19:18.607+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anti virus'/><category scheme='http://www.blogger.com/atom/ns#' term='DAT5958'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='McAfee'/><title type='text'>F***ING MCAFEEEE!!!!!</title><content type='html'>Well a lot of people are saying that today aren't they? If you've read this blog you know my hate for Anti Virus technology in general (signature based) and this just goes to boil my blood further on the subject. &lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Quick catch up on the subject - &lt;a href="http://isc.sans.org/diary.html?storyid=8656"&gt;http://isc.sans.org/diary.html?storyid=8656&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;In case you're a MAC user or have been living in a cave, McAfee released DAT 5958 today, without obviously bothering their arses to test on Windows XP SP3 to any great extent. The DAT file thought that SVCHOST.EXE was infected with W32/Wecorl.a. This causes Windows to have a little fit and argue with McAfee over the validity of the file and no doubt arguing with Windows File Protection and ending up causing it to get corrupted. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;This makes the machine have fits of all sorted, reboots, missing start buttons, no network and various versions of these symptoms. There are stories of NASA facilities being affected and the state of Kentucky has been mentioned (like the whole state is down oops). &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;I have been watching the story on Twitter all afternoon and helping people with updated information as I get it, helping one person almost completely subvert disaster (nice one). &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;I guess we'll hear tomorrow the sheer scale of this problem, we really have no idea what the impact will be until the calls stop coming in. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;We are looking at setting up an SMS job with the old DAT file in and possibly using &lt;a href="http://www.bitsum.com/wfpreplace.php"&gt;http://www.bitsum.com/wfpreplace.php&lt;/a&gt; to put the SVCHOST.EXE back to the correct version. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;update...&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Check this very weak post from Barry McPherson &lt;a href="http://siblog.mcafee.com/support/mcafee-response-on-current-false-positive-issue/"&gt;http://siblog.mcafee.com/support/mcafee-response-on-current-false-positive-issue/&lt;/a&gt; &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;McAfee detected it did they? More like we fucking detected it when hundreds of our computers started rebooting dipshit. How about admitting that it could be 1 million computers or more? How about fucking apologising?&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Idiots, and these are the bastards that we trust with our corporate anti virus?&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;update 2&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;New blog post, slightly more apologetic - &lt;a href="http://siblog.mcafee.com/support/a-long-day-at-mcafee/"&gt;http://siblog.mcafee.com/support/a-long-day-at-mcafee/&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Still fucking ludicrous that this is the 3RD TIME in 12 months that McAfee have fucked us over. I know what I will be recommending the next time I am asked what AV Solution we will be using. Something like "BACK THE FUCK AWAY FROM MCAFEE"&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3392983740882490499?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3392983740882490499/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3392983740882490499' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3392983740882490499'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3392983740882490499'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2010/04/fing-mcafeeee.html' title='F***ING MCAFEEEE!!!!!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5073488021424469858</id><published>2009-10-15T11:58:00.004+01:00</published><updated>2009-10-15T12:11:54.685+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='opera mobile'/><category scheme='http://www.blogger.com/atom/ns#' term='mobile apps'/><category scheme='http://www.blogger.com/atom/ns#' term='G3'/><title type='text'>There's an app for that!</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_geuJs3EAuzY/StcDbY4fZMI/AAAAAAAABHo/mMo2XnPHA5I/s1600-h/swinefluapp.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 267px; height: 400px;" src="http://2.bp.blogspot.com/_geuJs3EAuzY/StcDbY4fZMI/AAAAAAAABHo/mMo2XnPHA5I/s400/swinefluapp.jpg" alt="" id="BLOGGER_PHOTO_ID_5392782847870198978" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;So we've all heard this phrase recently, especially since the iPhone has started to take a hold of the market. Personally I have a Blackberry and its the same "there's an app for that".&lt;br /&gt;&lt;br /&gt;I cant help thinking why we need all these apps? Are we going back in time to early 1990's internet? I realise that there are bandwidth restrictions and what not, but with G3 and the Web browsers on Windows starting to adhere to standards and the like, I think this is one of the innovations we are yet to see on the mobile device.&lt;br /&gt;&lt;br /&gt;All these guys need to look towards HTML5 and start properly developing their browsers to handle the next generation of browsing standards. Only then might we see web developers building web applications for mobile browsers rather than another app for this and another app for that.&lt;br /&gt;&lt;br /&gt;Why cant we have the same standard of development on the mobile that we currently enjoy on the desktop? I want Facebook on my mobile, and I want it with all the applications inside Facebook that I have on the desktop. I want to be able to open Youtube, listen to streaming music, browse to iPlayer, hell I might even want to look at porn.&lt;br /&gt;&lt;br /&gt;At the moment, the only real contender I can see for this sort of thing might be Opera's mobile browser, ok so we cant do any of the things I mentioned already, but will it be Opera that drives the idea? Are Opera the only people offering a decent mobile browser for multiple devices?&lt;br /&gt;&lt;br /&gt;Until Mozilla/Microsoft/Google make a move I guess we're just going to have to wait and see.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5073488021424469858?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5073488021424469858/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5073488021424469858' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5073488021424469858'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5073488021424469858'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/10/theres-app-for-that.html' title='There&apos;s an app for that!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_geuJs3EAuzY/StcDbY4fZMI/AAAAAAAABHo/mMo2XnPHA5I/s72-c/swinefluapp.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5996832479559616747</id><published>2009-10-08T07:29:00.004+01:00</published><updated>2009-10-08T07:35:58.232+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anti virus'/><category scheme='http://www.blogger.com/atom/ns#' term='open shares'/><title type='text'>Chasing Virus signatures</title><content type='html'>So we've had another virus outbreak at work, this time pulling a whole site from the network to contain it. It was a new unknown variant of a nasty little bugger which infected EXE files.&lt;br /&gt;&lt;br /&gt;It scanned the network looking for open shares and areas the infected user could access, in this specific case, that turned out to be all the adjacent PCs too. Nice.&lt;br /&gt;&lt;br /&gt;Anyway, stupid set ups and lax security aside, we are still chasing signatures. This pisses me off something rotten. We are at the mercy of the AV vendors seeing a threat before we are protected some 24-48 hours later, meanwhile the virus wreaks &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_1"&gt;havoc&lt;/span&gt; destroying whatever it finds it can write to in its path. We were lucky in this case that the virus didn't accidentally get Domain Admin rights because we'd have had a much larger problem then.&lt;br /&gt;&lt;br /&gt;Needless to say, now we are looking (again) at heuristics and forcing the firewalls active on all clients, we might actually get some buy in this time eh.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5996832479559616747?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5996832479559616747/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5996832479559616747' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5996832479559616747'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5996832479559616747'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/10/chasing-virus-signatures.html' title='Chasing Virus signatures'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1920601091236689463</id><published>2009-09-07T14:06:00.002+01:00</published><updated>2009-09-07T14:10:25.226+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='firefox'/><category scheme='http://www.blogger.com/atom/ns#' term='memory'/><category scheme='http://www.blogger.com/atom/ns#' term='mozilla'/><title type='text'>Firefox stop eating my memory!!!</title><content type='html'>I love Firefox, I really do. I've used it for years and always ask my friends to use it after I've rescued them from yet another stinking Virus infection.&lt;br /&gt;&lt;br /&gt;But enough with the memory usage already, its starting to drive me bananas. I am writing this in FF now, with only this tab open, nothing else what-so-ever.&lt;br /&gt;&lt;br /&gt;Hazard a guess how much memory I'm using now? 50MB? Nope, keep going. Ok I'll save you the 10 guesses - 514,104k right now - just over 500MBs. What the fuck.&lt;br /&gt;&lt;br /&gt;I really want this fixed, I use a few add-ons that are very useful and I've never managed to replicate those features in any other browser. Please Mozilla, do something about it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1920601091236689463?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1920601091236689463/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1920601091236689463' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1920601091236689463'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1920601091236689463'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/09/firefox-stop-eating-my-memory.html' title='Firefox stop eating my memory!!!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6289279180030570695</id><published>2009-05-27T13:57:00.003+01:00</published><updated>2009-05-27T14:07:58.827+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anti virus'/><category scheme='http://www.blogger.com/atom/ns#' term='AV'/><title type='text'>Anti Virus or no Anti Virus?</title><content type='html'>&lt;a href="http://www.heraldtribune.com/article/20090521/ARTICLE/905209946/2410/FEATURES?Title=Wring-a-bit-more-speed-from-Vista#"&gt;This article&lt;/a&gt; sparked me to post again about having AV installed or not. On my main home machine I have not had Anti Virus installed for about 8 years now, and I have not had a single virus problem, even though I download stuff from the net and actually use Windows.&lt;br /&gt;&lt;br /&gt;Bollocks you might say, and I can hear you shouting "how do you know you've not had a virus?". Simple really. There are hundreds of on-line scanners that you can go to when you feel the need, in fact I use &lt;a href="http://safety.live.com"&gt;http://safety.live.com&lt;/a&gt; all the time to check other machines for a second opinion. If I suspect something on my home machine I also use that site to check, and to date I've never found a live virus on my system. Yes I rebuild Windows quite a bit, sometimes playing with Windows 7 RC or Linux as most of us "techies" do so that probably helps keep me clean to some extent.&lt;br /&gt;&lt;br /&gt;I personally, do not want "mom and pop" uninstalling Anti Virus in the quest to release a couple of ounces of performance from their aging laptops. They should look at memory for laptops these days its so bloody cheap its hard to ignore. I have in fact rescued 2 friends from replacement laptops by simply getting them 2GB ram instead of the 256mb that they had installed (LOL). Uninstalling AV would no doubt have actually slowed their computers down over time (as they get infected of course!).&lt;br /&gt;&lt;br /&gt;For me though, I refuse AV. Its a dead product, it needs re-thinking. The virus database is growing and growing and to be honest I do not think its valuable checking every single thing in memory and on disk for a possible hit on millions of combinations of virus string. I have evaded AV before, its actually quite easy to change a few bits of a virus and be able to by pass most of the AV on the market (as shown to me in a recent course I attended).&lt;br /&gt;&lt;br /&gt;So what is AV for? Non-IT people who do not know what they are doing, they need nannying and that's what AV is for: Its a Nanny for the non-IT f-wits. lol.&lt;br /&gt;&lt;br /&gt;What of the above article? Absolute stupidity. I do not need the non-IT f-wits calling ME to fix their Virus problem do I? No. Get AV you numbnutts.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6289279180030570695?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6289279180030570695/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6289279180030570695' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6289279180030570695'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6289279180030570695'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/05/anti-virus-or-no-anti-virus.html' title='Anti Virus or no Anti Virus?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1740239922221040847</id><published>2009-05-21T11:49:00.002+01:00</published><updated>2009-05-21T11:56:10.516+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows 7'/><category scheme='http://www.blogger.com/atom/ns#' term='speech recognition'/><category scheme='http://www.blogger.com/atom/ns#' term='ASR'/><title type='text'>Windows 7 Speech Recognition (ASR)</title><content type='html'>I was using ASR quite nicely in Beta W7, so assumed that it would get better for RC (logical thought right?). No.&lt;br /&gt;&lt;br /&gt;Its terrible now, it was acceptable before but now its unusable.&lt;br /&gt;&lt;br /&gt;I have quite back RSI at the moment so am needing something to take the strain off my right hand which is suffering quite badly (for the last 5 weeks now). I was overjoyed to find that in W7 Beta I could set that up and start talking to my PC. It works well in some applications and like shit in others (IE and Firefox are crap at it, but Live Messenger works well).&lt;br /&gt;&lt;br /&gt;But unfortunately in RC its completely un-usable. When you start the training, the dialog hangs and says "(not responding)" for ages, then it pauses even thought you didn't say pause and so on and so forth. Once you spend 20 mins training it and waiting on it catching up you switch it on. Then it just starts making up commands from your breathing or other background noises and never hears what you shout at it.&lt;br /&gt;&lt;br /&gt;I've looked around for ways to tell MS about these problems but I don't see an easy way, at least with the Beta you could click on the title bar and let them know.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1740239922221040847?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1740239922221040847/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1740239922221040847' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1740239922221040847'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1740239922221040847'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/05/windows-7-speech-recognition-asr.html' title='Windows 7 Speech Recognition (ASR)'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6302582690703977324</id><published>2009-05-08T19:35:00.003+01:00</published><updated>2009-05-08T19:42:07.667+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows 7'/><category scheme='http://www.blogger.com/atom/ns#' term='virus'/><category scheme='http://www.blogger.com/atom/ns#' term='W7'/><title type='text'>Windows 7 - beware, its a virus!!!</title><content type='html'>Ok so I used an attention grabbing headline but bear with me. I now have Windows 7 RC installed on 2 machines and the other 3 are feeling all left out so I think they will get infected with the Windows 7 'virus' over the weekend possibly.&lt;br /&gt;&lt;br /&gt;This is not only testament to how much I'm loving the latest build of Microsoft's Desktop Flagship, but it is also showing MS's marketing genius has been at work on the RC build if you ask me. Think about it. I will be possibly installing 5 copies of RC around my home, when those all run out in 1 years time I will have a nasty OS bill to pay unless I come up with some nice way of getting them legal (MSDN or something like that?).&lt;br /&gt;&lt;br /&gt;I bet I am not the only person too, plenty people at work are downloading and installing for themselves. I have chosen to go the 64-bit route so I'm having to use the XP VM to get into my work's VPN which is only 32bit, which incidentally, works well enough. When I first installed it yesteday it was slow and nasty but today I've used it all day with plenty of success. I guess its this that has made me feel comfortable installing it on the remaining machines (one of which is my main work laptop).&lt;br /&gt;&lt;br /&gt;I seriously hope there is a way to get these copies all nice and legal in the next 12 months as I am not looking forward to the backwards step to XP!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6302582690703977324?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6302582690703977324/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6302582690703977324' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6302582690703977324'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6302582690703977324'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/05/windows-7-beware-its-virus.html' title='Windows 7 - beware, its a virus!!!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2274127701853799750</id><published>2009-03-20T14:57:00.004Z</published><updated>2009-03-20T15:09:23.238Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='credit card details'/><category scheme='http://www.blogger.com/atom/ns#' term='BBC Click'/><category scheme='http://www.blogger.com/atom/ns#' term='illegal'/><category scheme='http://www.blogger.com/atom/ns#' term='criminals'/><category scheme='http://www.blogger.com/atom/ns#' term='botnet'/><category scheme='http://www.blogger.com/atom/ns#' term='BBC'/><title type='text'>BBC "Crossing the line" - shut up already</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_geuJs3EAuzY/ScOxSwzMZAI/AAAAAAAABA0/akToPEU7HYw/s1600-h/bbc-logo.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 320px;" src="http://1.bp.blogspot.com/_geuJs3EAuzY/ScOxSwzMZAI/AAAAAAAABA0/akToPEU7HYw/s400/bbc-logo.jpg" alt="" id="BLOGGER_PHOTO_ID_5315286921122702338" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Waaaa waaaaa, is all I'm hearing on the mailing lists. Waaaa waaaaa, this isn't what I paid my TV License for, waaa waaa they've broke the law waaaaaa.&lt;br /&gt;&lt;br /&gt;Give it a fucking rest already.&lt;br /&gt;&lt;br /&gt;Its called Journalism and they are doing a pretty decent job of it. Massive mailing list discussions, I'm sure countless forum topics and no doubt Tweets and all sorts of crap going on, great innit, all generating interest in BBC's story as its meant to. The more people that hear about it and talk about it then the more people learn of the things that go on.&lt;br /&gt;&lt;br /&gt;So what they used our money to buy into a botnet or purchase some Credit card details, they are highlighting a problem. So when things like this have been done in the past, where were the nay-sayers then? Like when Journos buy guns to show how easy it is in the UK, then hand them into Police. You don't hear of the Journalist being arrested for firearms offences [citation needed lol].&lt;br /&gt;&lt;br /&gt;I'm done with all the moaning. Would it have made a difference if it wasn't the BBC? OK so you care about how you're TV License is spent? Take a look out your window or somewhere near you, I bet you there are roadworks going on as, that's right its the end of March. Councils apparently need to burn up their budgets (not an urban myth by the way) before the next financial year starts. That's how well your hundreds of pounds of Council Tax gets spent, and you're complaining about 11 pounds a month and one or two measley stories about criminal activity on the net. Give me a fucking break.&lt;br /&gt;&lt;br /&gt;Ah I feel better after a little rant, now going out for some sunshine!! Woo.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2274127701853799750?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2274127701853799750/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2274127701853799750' title='7 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2274127701853799750'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2274127701853799750'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/03/bbc-crossing-line-shut-up-already.html' title='BBC &quot;Crossing the line&quot; - shut up already'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_geuJs3EAuzY/ScOxSwzMZAI/AAAAAAAABA0/akToPEU7HYw/s72-c/bbc-logo.jpg' height='72' width='72'/><thr:total>7</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4157427226112641837</id><published>2009-02-24T13:36:00.003Z</published><updated>2009-02-24T13:41:06.119Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='google problems'/><category scheme='http://www.blogger.com/atom/ns#' term='google search'/><category scheme='http://www.blogger.com/atom/ns#' term='gmail down'/><category scheme='http://www.blogger.com/atom/ns#' term='BOT'/><title type='text'>Google issues again?</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/SaP43l-gncI/AAAAAAAABAs/ob7yP42PyNk/s1600-h/googleerror.png"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 294px;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/SaP43l-gncI/AAAAAAAABAs/ob7yP42PyNk/s400/googleerror.png" alt="" id="BLOGGER_PHOTO_ID_5306358419943366082" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;So we know that &lt;a href="http://www.guardian.co.uk/media/pda/2009/feb/24/google-email"&gt;Gmail went down this morning&lt;/a&gt; for a while, but I also had a problem Google which I had a couple of weeks back, in that everything I typed was viewed as looking like a BOT request. It has fixed itself again, but I keep getting this on and off, this is the first time when trying to get into Gmail tho, interesting! Watch what you guys are clicking on please! (message to the Google staff lol).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4157427226112641837?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4157427226112641837/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4157427226112641837' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4157427226112641837'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4157427226112641837'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/02/google-issues-again.html' title='Google issues again?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/SaP43l-gncI/AAAAAAAABAs/ob7yP42PyNk/s72-c/googleerror.png' height='72' width='72'/><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8679717623631736842</id><published>2009-02-17T10:52:00.003Z</published><updated>2009-02-17T11:05:35.413Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='pictures'/><category scheme='http://www.blogger.com/atom/ns#' term='photos'/><category scheme='http://www.blogger.com/atom/ns#' term='cameras'/><category scheme='http://www.blogger.com/atom/ns#' term='public'/><category scheme='http://www.blogger.com/atom/ns#' term='police'/><title type='text'>Losing civil liberties? I think so.</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/SZqZttE87eI/AAAAAAAABAM/gJXPV0dVQo4/s1600-h/nocameras.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 375px; height: 294px;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/SZqZttE87eI/AAAAAAAABAM/gJXPV0dVQo4/s400/nocameras.jpg" alt="" id="BLOGGER_PHOTO_ID_5303720521655709154" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;I am an amature photographer (LOL) and I occasionally take pics around town etc. Well this &lt;a href="http://www.latimes.com/news/nationworld/world/wire/sns-ap-eu-britain-no-photos,1,904118.story"&gt;new law&lt;/a&gt; has been introduced in the UK monday further restricting our freedom and rights to record things happening around us.&lt;br /&gt;&lt;br /&gt;The next time you see someone being beaten up by the Police (yeah sure I know, happens all the time lol, but you catch my drift) and you try to record it on your phone, do you think they are going to let you keep recording? Not bloody likely. No where does it mention (in the aforelinked article) the removal of the camera from the photographer or the destruction of the film. I have heard stories and infact read on the BBC news site of people getting their cameras taken from them.&lt;br /&gt;&lt;br /&gt;Seems the Police Force need to educate their officers on the details of the laws, instead of letting them think they also own the pictures themselves.&lt;br /&gt;&lt;br /&gt;Another side note that I just thought of, the new act makes it a crime to "elicit, publish or communicate information" about British police or military personnel. Does this mean I cannot go into Twitter and type "oh the Police are now moving closer to the suspect" or stuff along those lines? Will I get my Twitter account closed? LOL all sounds like fun.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8679717623631736842?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8679717623631736842/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8679717623631736842' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8679717623631736842'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8679717623631736842'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/02/i-am-amature-photographer-lol-and-i.html' title='Losing civil liberties? I think so.'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/SZqZttE87eI/AAAAAAAABAM/gJXPV0dVQo4/s72-c/nocameras.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3316789501527099828</id><published>2009-02-11T11:44:00.004Z</published><updated>2009-02-11T12:59:04.797Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows 7'/><category scheme='http://www.blogger.com/atom/ns#' term='calculating'/><category scheme='http://www.blogger.com/atom/ns#' term='copying files'/><title type='text'>Windows 7, same old copying problem?</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/SZK60oghRfI/AAAAAAAABAE/4nkR0eHT-RY/s1600-h/W7copying.png"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 251px;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/SZK60oghRfI/AAAAAAAABAE/4nkR0eHT-RY/s400/W7copying.png" alt="" id="BLOGGER_PHOTO_ID_5301505124758275570" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Most of us had the problem in Vista pre-SP1. The dreaded "calculating...." message when trying to copy files around the place using Explorer.&lt;br /&gt;&lt;br /&gt;I just tried to copy 10GB of data from drive to another and its still trying to work out how long it will take. My guess is a LONG TIME at 0 bytes/sec lol. Its still trying now as I type this, rock on Windows 7.&lt;br /&gt;&lt;br /&gt;Pity its doing this I must say, I was really liking the experience and I've not seen this before on this build. I am kind of hoping that the external drive is faulty, but at the same time I dont want to lose the drive!&lt;br /&gt;&lt;br /&gt;Will report back later once I know for sure.&lt;br /&gt;&lt;br /&gt;/update&lt;br /&gt;I left it over lunch and it seems to have copied. Windows 7 got that annoying problem or not? I am not sure!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3316789501527099828?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3316789501527099828/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3316789501527099828' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3316789501527099828'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3316789501527099828'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/02/windows-7-same-old-copying-problem.html' title='Windows 7, same old copying problem?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/SZK60oghRfI/AAAAAAAABAE/4nkR0eHT-RY/s72-c/W7copying.png' height='72' width='72'/><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7540677520758826737</id><published>2009-01-16T14:26:00.003Z</published><updated>2009-01-16T14:30:17.827Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows 7'/><category scheme='http://www.blogger.com/atom/ns#' term='crysis warhead'/><title type='text'>Windows 7</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_geuJs3EAuzY/SXCZ6yucoyI/AAAAAAAAA_M/Wer_EBcRXb4/s1600-h/W7Logo.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 384px;" src="http://2.bp.blogspot.com/_geuJs3EAuzY/SXCZ6yucoyI/AAAAAAAAA_M/Wer_EBcRXb4/s400/W7Logo.png" border="0" alt="" id="BLOGGER_PHOTO_ID_5291898797488382754" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;p&gt;So far so good, clean install, nothing broken. Some setup.exe's dont work as they are doing OS checks, but other than that, pretty good. &lt;/p&gt;&lt;p&gt;Got Crysis Warhead installed and it looks fantastic, dont remember it running quite this quickly under XP x64 either, hmm. &lt;/p&gt;&lt;p&gt;I have the odd time W7 wont shut down and I have the occasional application crash, but I do lots of weird and funky things on my machines so it could just be me causing it :P&lt;/p&gt;&lt;p&gt;And see the proper Windows 7 bootup logo above, no imitation there :)&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7540677520758826737?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7540677520758826737/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7540677520758826737' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7540677520758826737'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7540677520758826737'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2009/01/windows-7.html' title='Windows 7'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_geuJs3EAuzY/SXCZ6yucoyI/AAAAAAAAA_M/Wer_EBcRXb4/s72-c/W7Logo.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4115573670257710385</id><published>2008-11-05T07:56:00.002Z</published><updated>2008-11-05T08:02:36.591Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='lost dvds'/><category scheme='http://www.blogger.com/atom/ns#' term='lost cds'/><category scheme='http://www.blogger.com/atom/ns#' term='UK Data Loss'/><category scheme='http://www.blogger.com/atom/ns#' term='facebook generation'/><title type='text'>UK Government and Data</title><content type='html'>They just suck don't they?&lt;br /&gt;&lt;br /&gt;They want a national health database, they would like a national biometrics database, they would love all kinds of databases with our DNA and other details in.&lt;br /&gt;&lt;br /&gt;They what would they do with the data?&lt;br /&gt;&lt;br /&gt;&lt;a href="http://news.bbc.co.uk/1/hi/uk_politics/7103566.stm"&gt;Lose DVDs&lt;/a&gt;?&lt;br /&gt;&lt;a href="http://www.mailonsunday.co.uk/news/article-1082402/Tax-website-shut-memory-stick-secret-personal-data-12million-pub-car-park.html"&gt;Lose memory sticks&lt;/a&gt;?&lt;br /&gt;&lt;br /&gt;What do they blame it on? The &lt;a href="http://news.bbc.co.uk/1/hi/uk_politics/7473818.stm"&gt;Facebook Generation&lt;/a&gt;?&lt;br /&gt;&lt;br /&gt;How about taking a look at yourselves before trying to blame the younger folks? The whole system is to blame not the individual, they should know this by now. The individual should not be able to make mistakes on that scale, its that simple.&lt;br /&gt;&lt;br /&gt;And ministers are bemused at why people would want to opt out from their next IT scheme, is it that fucking hard to imagine why?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4115573670257710385?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4115573670257710385/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4115573670257710385' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4115573670257710385'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4115573670257710385'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/11/uk-government-and-data.html' title='UK Government and Data'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4311262516166773877</id><published>2008-09-11T11:40:00.004+01:00</published><updated>2008-09-11T16:03:30.504+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='msn messenger'/><category scheme='http://www.blogger.com/atom/ns#' term='Live Messenger'/><category scheme='http://www.blogger.com/atom/ns#' term='down'/><category scheme='http://www.blogger.com/atom/ns#' term='8100036'/><category scheme='http://www.blogger.com/atom/ns#' term='broken'/><title type='text'>Live / MSN Messenger - error 8100036</title><content type='html'>You are not alone people, I have friends all over the place that cannot connect. Just thought I'd share in case you thought you were going nutts. I spent tuesday upgrading and downgrading the router firmware in my house because I thought it was me!!&lt;br /&gt;&lt;br /&gt;Something in the water....&lt;br /&gt;&lt;br /&gt;Error code is 8100036 btw. loads of people complaining.... damn...&lt;br /&gt;&lt;br /&gt;Update -&lt;br /&gt;&lt;br /&gt;Well seems ok for me now, I have 2 accounts working again.... for how long.....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4311262516166773877?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4311262516166773877/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4311262516166773877' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4311262516166773877'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4311262516166773877'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/09/live-msn-messenger-error-8100036.html' title='Live / MSN Messenger - error 8100036'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2984325230292750369</id><published>2008-09-03T07:41:00.005+01:00</published><updated>2008-09-03T09:34:40.958+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='google chrome'/><title type='text'>Google Chrome</title><content type='html'>Sorry you Google &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_0"&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_0"&gt;bashers&lt;/span&gt;&lt;/span&gt;. I like it. I am a self confessed &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_1"&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_1"&gt;Googleite&lt;/span&gt;&lt;/span&gt; and probably always will be, so I was probably destined to love their browser offering, but I've used it for a good few hours and I have to tell you that I like it. &lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;ol&gt;&lt;li&gt;The &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_2"&gt;separate&lt;/span&gt; process thread for each tab is great. This must have been done already no? Seems so logical, cant believe someone has only come up with this idea now.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Using the IE core proxy settings - about time another browser did this. This means its &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_3"&gt;manageable&lt;/span&gt; centrally, and if you play with your proxy settings means you only have to change them once. {update - later this morning Chrome started prompting for Proxy Authentication credentials which it did not earlier in the day, multiple reports. Could be a dodgy proxy but not sure}&lt;br /&gt;&lt;/li&gt;&lt;li&gt;The new tab page is shaping up quite nicely, as I use more of my normal sites its starting to show me what my basic browsing habits look like. &lt;/li&gt;&lt;li&gt;Speed - its fast. Seems to be visibly faster than even &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_4"&gt;FireFox&lt;/span&gt; 3, which I &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_5"&gt;didn't&lt;/span&gt; really think was possible, and here we are. &lt;/li&gt;&lt;li&gt;About:Memory - handy feature this one, lets you monitor all Internet Browsers memory usage, quite good fun (for a geek like me!). Chrome seems to sit somewhere between IE and FF in terms of usage and the memory does nicely jump up and down with more and less tabs as you would expect. &lt;/li&gt;&lt;li&gt;Incognito Tab - excellent feature, some people may call this a gimmick, but they obviously don't look at porn as much as the rest of us then eh, or more likely admit to looking at porn. Let me clear this up - I look at porn. I am a red blooded male who looks at porn. Glad we got that out of the way. &lt;/li&gt;&lt;li&gt;Grab a tab! How MANY times have I wanted to break a tab out from FireFox? Many many times. Now I can with Chrome woo hoo. &lt;/li&gt;&lt;/ol&gt;&lt;div&gt;What about bugs? &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Well, I've already seen that the scroll feature on this laptop doesn't work properly (and reported it to Google of course) and I've only seen one or two sites which don't display properly (and forgotten to report those of course). &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Gmail? Blisteringly quick. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;As I say I've only had a few hours to play with it, but its looking like a good effort all round, I am liking what I see. The fact that its open source and doesn't use &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_2"&gt;IE's&lt;/span&gt; rendering engine only helps to make me feel even warmer and fuzzier about it. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;As long as Google can finish this product and actually release it to the masses (i.e. don't leave the "Beta" tag on it for 2 years) then I will be happy, and guess what? I think I'll be switching my main browser. &lt;/div&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2984325230292750369?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2984325230292750369/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2984325230292750369' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2984325230292750369'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2984325230292750369'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/09/google-chrome.html' title='Google Chrome'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5101739444084845307</id><published>2008-08-27T08:36:00.005+01:00</published><updated>2008-08-27T09:13:46.048+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='routers'/><category scheme='http://www.blogger.com/atom/ns#' term='ISP'/><category scheme='http://www.blogger.com/atom/ns#' term='Internet'/><category scheme='http://www.blogger.com/atom/ns#' term='BGP attack'/><title type='text'>All your web are belong to us... ?</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/SLUKFOQ3fDI/AAAAAAAAA9g/ceNQ8GXOa6Y/s1600-h/usedpc02.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/SLUKFOQ3fDI/AAAAAAAAA9g/ceNQ8GXOa6Y/s400/usedpc02.jpg" alt="" id="BLOGGER_PHOTO_ID_5239104826359905330" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Are we under threat again? We've only just started to calm down over the recent DNS hoohah and now we're being told that the Internet's backbone is possibly open to a &lt;a href="http://en.wikipedia.org/wiki/Man-in-the-middle_attack"&gt;man in the middle&lt;/a&gt; attack. Two researchers have demonstrated an attack that can intercept internet traffic for sections of the web. Should we be worried?&lt;br /&gt;&lt;br /&gt;Reference: &lt;a href="http://blog.wired.com/27bstroke6/2008/08/revealed-the-in.html"&gt;Wired&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;If you look at the Wired article above and believe it all we should be, but then is that the full story? Do we the public ever get told the full story on *anything*?&lt;br /&gt;&lt;br /&gt;&lt;a href="http://asert.arbornetworks.com/2008/08/internet-routing-insecurities-re-revealed/"&gt;Here is&lt;/a&gt; an interesting counter article which states that ISPs (up to 72%) actually filter routes anyway, so are we bothered? Yes and no I guess. I'm no expert, but hat other 28% or so could be a problem eh.&lt;br /&gt;&lt;br /&gt;Another one that we'll just have to wait and see I guess eh. Back to work!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5101739444084845307?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5101739444084845307/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5101739444084845307' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5101739444084845307'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5101739444084845307'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/08/all-your-web-are-belong-to-us.html' title='All your web are belong to us... ?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/SLUKFOQ3fDI/AAAAAAAAA9g/ceNQ8GXOa6Y/s72-c/usedpc02.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-559311347243703411</id><published>2008-08-08T13:36:00.003+01:00</published><updated>2008-08-08T13:45:57.712+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='patch tuesday'/><category scheme='http://www.blogger.com/atom/ns#' term='skype backdoor'/><category scheme='http://www.blogger.com/atom/ns#' term='vista security'/><title type='text'>Vista security "completely useless" | Patch Tuesday | Skype giving away the keys?</title><content type='html'>Interesting &lt;a href="http://www.neowin.net/news/main/08/08/08/vista39s-security-rendered-completely-useless-by-new-exploit"&gt;mention on Neowin&lt;/a&gt; of a new exploit technique that gets around Vista's security systems to do what they like where they like in the system.&lt;br /&gt;&lt;br /&gt;This could be bad news all round really, some experts are also saying this could be hard to fix too. The article suggests that .Net is an attack vector, which would be worrying since we all have business applications using .Net these days.&lt;br /&gt;&lt;br /&gt;---&lt;br /&gt;&lt;br /&gt;Patch Tuesday next week - 14 patches coming out. Yikes. Means I'll be busy next week, ah well guess that's what I'm being paid for huh lol.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.neowin.net/news/main/08/08/08/vista39s-security-rendered-completely-useless-by-new-exploit"&gt;&lt;/a&gt;---&lt;br /&gt;&lt;br /&gt;Skype. Security built in yes? Err, yes and no.&lt;br /&gt;&lt;br /&gt;So it employs SSL type encryption on its connections, so sniffing is on the large part taken care of isnt it? Unless there is a back door of course, then its just a matter of time before the bad guys find it isnt it? Some people are worried about the good guys using it too though of course.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.heise-online.co.uk/news/Speculation-over-back-door-in-Skype--/111170"&gt;Reference.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-559311347243703411?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/559311347243703411/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=559311347243703411' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/559311347243703411'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/559311347243703411'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/08/vista-security-completely-useless-patch.html' title='Vista security &quot;completely useless&quot; | Patch Tuesday | Skype giving away the keys?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6550958626577556274</id><published>2008-07-08T07:53:00.005+01:00</published><updated>2008-11-13T08:11:13.868Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerabilities'/><category scheme='http://www.blogger.com/atom/ns#' term='cio'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='unpatched'/><title type='text'>MS advisory magic</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/SHMVIpG7v9I/AAAAAAAAAxs/srA5DaDS3Zk/s1600-h/windows_xp_bsod.png"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/SHMVIpG7v9I/AAAAAAAAAxs/srA5DaDS3Zk/s400/windows_xp_bsod.png" alt="" id="BLOGGER_PHOTO_ID_5220539631270608850" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;There are a couple of &lt;a href="http://www.microsoft.com/technet/security/advisory/default.mspx"&gt;Microsoft advisories&lt;/a&gt; on the go at the moment, a new one about the snapshot ActiveX component no doubt we'll see a patch on this one, I notice a couple of funtionality advisories too - one for &lt;a href="http://www.microsoft.com/technet/security/advisory/954960.mspx"&gt;WSUS &lt;/a&gt;and one for &lt;a href="http://www.microsoft.com/technet/security/advisory/954474.mspx"&gt;SMS&lt;/a&gt;. I realised that the &lt;a href="http://www.microsoft.com/technet/security/advisory/945713.mspx"&gt;WPAD advisory&lt;/a&gt; was no longer showing in the list of "open advisories". So does this mean MS has fixed the problem? Course it does...? Err nope.&lt;br /&gt;&lt;br /&gt;The problem is still there unpatched and awaiting attention. So just how many unpatched problems are there? If you look at &lt;a href="http://www.frsirt.com/english/Unpatched-Microsoft-Vulnerabilities.php"&gt;FrSIRT&lt;/a&gt; then there are more than 50. WTF? Ok so only 2 of these are "red" and one "orange" so they cant be that bad I guess eh, a few DoS's and some other information disclosures etc. But hang on what about this WPAD one where we think its possible to engineer a large scale attack? Still unpatched and only marked as "Yellow" on FrSIRT's page. So how many of these could have the same impact? It certainly makes you think, these 50+ vulnerabilities are &lt;span style="font-weight: bold;"&gt;known&lt;/span&gt;, just imagine the un-disclosed and &lt;span style="font-weight: bold;"&gt;un-known&lt;/span&gt; (did I just sound a tiny bit like Bush?). I am going to remain paranoid given what I've found today.&lt;br /&gt;&lt;br /&gt;Stumbled across &lt;a href="http://www.cio.com/article/419764/_Reasons_Why_Application_Developers_Think_Their_CIO_Is_Clueless/1"&gt;this article&lt;/a&gt; on CIO.com which was written for Application Developers, but in all honesty applies on many levels. Most companies have lots of talent already working there, yet, most CIOs and their cronies bring in consultants from external companies that cost a fortune and are cracking away on the expenses.&lt;br /&gt;&lt;br /&gt;We've recently had a new CIO so we've not had time to form an opinion on him yet. The previous CIO was a classic example though, I wont start on that subject as I could go on all day and I dont have time to sit and blog for 8 hours :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6550958626577556274?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6550958626577556274/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6550958626577556274' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6550958626577556274'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6550958626577556274'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/07/ms-advisory-magic.html' title='MS advisory magic'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/SHMVIpG7v9I/AAAAAAAAAxs/srA5DaDS3Zk/s72-c/windows_xp_bsod.png' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1931723881580806749</id><published>2008-07-05T10:12:00.002+01:00</published><updated>2008-07-05T10:19:35.111+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='corporate IM solution'/><category scheme='http://www.blogger.com/atom/ns#' term='SARBOX'/><category scheme='http://www.blogger.com/atom/ns#' term='regulations'/><title type='text'>More on the Corporate IM solution</title><content type='html'>Maybe someone can help me here. We are listed on the UK stock exchange and I know we have US citizens that own probably thousands of shares, so SARBOX regulations apply to our company.&lt;br /&gt;&lt;br /&gt;In terms of an IM solution then, surely we cannot go ahead and use a free solution with no controls what-so-ever?&lt;br /&gt;&lt;br /&gt;Ok so while starting this article I searched on Google for SARBOX "Instant Messaging" and stumbled across &lt;a href="http://searchcio.techtarget.com/news/article/0,289142,sid182_gci967281,00.html"&gt;this article&lt;/a&gt; which looks reputable enough - it mentions -&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Records management&lt;/i&gt;&lt;br /&gt;To comply with the basic requirements of Sarbanes-Oxley, companies need a records management system, and IM must be integrated as part of this.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Compliance supervision&lt;/i&gt;&lt;br /&gt;Sarbanes-Oxley section 404 requires an annual evaluation of internal controls and procedures for financial reporting, as well an assessment for the effectiveness of these controls. When electronic communications like IM are involved in that process, these communications need to be logged, archived and available upon request.&lt;br /&gt;&lt;br /&gt;I can guarantee we are not going to do this, meaning we are directly going against the regulations. That sounds like fun!&lt;br /&gt;&lt;br /&gt;So who do I call when I think we've broken the regulations? Anonymous email perhaps? Ah go on please let me do it...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1931723881580806749?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1931723881580806749/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1931723881580806749' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1931723881580806749'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1931723881580806749'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/07/more-on-corporate-im-solution.html' title='More on the Corporate IM solution'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-443225468030164076</id><published>2008-07-03T08:26:00.004+01:00</published><updated>2008-07-15T11:28:23.516+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='corporate IM solution'/><category scheme='http://www.blogger.com/atom/ns#' term='Live Messenger'/><category scheme='http://www.blogger.com/atom/ns#' term='Googletalk'/><category scheme='http://www.blogger.com/atom/ns#' term='IM'/><title type='text'>Corporate IM solution?</title><content type='html'>I have heard on the grape vine that we have a new "corporate IM solution" (I use the term loosely!) . Wait for it, wait.... MSN Messenger!! Woo. Well I assume they mean Live Messenger anyway.&lt;br /&gt;&lt;br /&gt;So I am waiting for the request to roll out the software to the whole network, giving all our employees access to unencrypted advertisement enriched IP revealing bloatware piece of shit that is Microsoft's IM solution.&lt;br /&gt;&lt;br /&gt;My biggest problem with this whole fiasco is that its unencrypted, clear text communications over the LAN and Internet. And they know this and still made the decision. /queue the applause.&lt;br /&gt;&lt;br /&gt;In my shitty little ignored opinion I would have gone for GoogleTalk. I am a self proclaimed Google lover it has to be said, however - GoogleTalk just works! Our proxies like it and its SSL over Jabber, and it doesn't work if you try to use it unencrypted. The program is simple and nice to look at, with no bloat at all. If I can think of a negative, possible its not developed as it should be (when was the last time you seen an update?).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-443225468030164076?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/443225468030164076/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=443225468030164076' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/443225468030164076'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/443225468030164076'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/07/corporate-im-solution.html' title='Corporate IM solution?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2326156780304360592</id><published>2008-07-01T08:37:00.007+01:00</published><updated>2008-07-15T11:34:29.453+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='switching suppliers'/><category scheme='http://www.blogger.com/atom/ns#' term='Lenovo'/><category scheme='http://www.blogger.com/atom/ns#' term='costs'/><category scheme='http://www.blogger.com/atom/ns#' term='Dell'/><category scheme='http://www.blogger.com/atom/ns#' term='HP'/><title type='text'>Renamed blog.... &amp; changing hardware for changing sake?</title><content type='html'>Shows how many blogs I read huh? I only just noticed another well known blog on Wired called "Security Matters" lol, so I've renamed this to match the URL - ColSec. &lt;span style="font-weight: bold;"&gt;Update:&lt;/span&gt; Actually I would like to put it out there that I was copied, but I can't prove this. Bastards.&lt;br /&gt;&lt;br /&gt;It will still be the same drivel from me, don't worry :)&lt;br /&gt;&lt;br /&gt;So what's up this week? Oh we're still going on about changing hardware in the office. Currently we use HP as our main supplier and some jumped up donkey wants to change to something else, why we ask, W H Y !!!!!???!!???!&lt;br /&gt;&lt;br /&gt;I think they are looking to make a name for themselves, when in reality they are just solidifying our suspicion that they are a complete nonce. We use HP, we use them for a reason, i.e. cost, quality, reliability and we like the look of them. This person is looking at alternatives like Dell (ugh please no) Lenovo (hell no) and others to mention just two.&lt;br /&gt;&lt;br /&gt;We have buildings all over the world kitted out with HP docking stations and power supplies so you can sit almost anywhere and work away. If we switch kit this situation will crumble and VIPs and lowlifes alike will struggle to find somewhere to sit and work quickly and efficiently.&lt;br /&gt;&lt;br /&gt;We are not saying that we shouldn't investigate our options, obviously we should once in a while. However, I mentioned cost to this person and they laughed in my face. I am a shareholder dammit and I wont stand for this kind of lunacy when it comes to spending money.&lt;br /&gt;&lt;br /&gt;What does this have to do with Security? Err not much. Its my blog and I'll blog how I like :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2326156780304360592?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2326156780304360592/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2326156780304360592' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2326156780304360592'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2326156780304360592'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/07/renamed-blog-changing-hardware-for.html' title='Renamed blog.... &amp; changing hardware for changing sake?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4426746211519962246</id><published>2008-06-26T17:44:00.002+01:00</published><updated>2008-06-26T18:32:10.471+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='macs'/><category scheme='http://www.blogger.com/atom/ns#' term='anti virus'/><category scheme='http://www.blogger.com/atom/ns#' term='trojan'/><category scheme='http://www.blogger.com/atom/ns#' term='AV'/><category scheme='http://www.blogger.com/atom/ns#' term='osx'/><category scheme='http://www.blogger.com/atom/ns#' term='AVPU'/><title type='text'>MAC OSX Trojans and Virus' and other voodoo</title><content type='html'>So what else has been going on in my little world? Well I guess I should mention Security as this is what this blog is supposed to be about(!). Something of interest in the MAC OSX world, or is it? &lt;a href="http://www.theregister.co.uk/2006/02/16/mac_os-x_virus/"&gt;The Reg&lt;/a&gt; mentions a few stories, which get various reactions in the comments if you care to scroll through them all.&lt;br /&gt;&lt;br /&gt;Is it really interesting? Not to an old Windows Admin like myself. I expected MACs would get close to where we are with windows now, was really just a matter of time. I like the look of MACs but havent have the chance to play with them, so cant really say too much about them. But some of the crap I've heard in the past "100% secure operating system" bollocks like that just wasnt going to sit well with this cynical old git. The only 100% secure system around here is one that never gets switched on or used, ever.. and gets kept in a very very dark far away place.. you get the point.&lt;br /&gt;&lt;br /&gt;What has happened is that MACs have come of  age, more people have them, so the criminals amongst us turn their attention to them. Bigger market share, bigger "market scare" shall we call it for cheesyness sake.&lt;br /&gt;&lt;br /&gt;AV companies will continue to turn their attention that way and MACs all over the world will start to slow down having to check every bastarding file passing through the memory/disk/etc.&lt;br /&gt;&lt;br /&gt;I hate Anti Virus actually, its a bit shit. Ok so it can save your bacon sometimes, but you shouldnt have been there in the first place no? I actually have about 3 machines with no AV on at all, but I'm the only user so I can trust myself not to be a tit on them and get them all spunked up. The only machine I've lost in recent times was actually running AVG so I learned a little lesson and dont bother with free AV there any more either ;)&lt;br /&gt;&lt;br /&gt;I wonder if I'm on to something here actually. Imagine a system, with its own AVPU (Anti Virus Processing Unit), perhaps as well as that, a dedicated disk running volume shadow copy of the main disks, checking files and stuff off to the side of the main machine? I thought for a minute I had just invented an idea, sadly Google fucked me over &lt;a href="http://www.tomsguide.com/us/maleware-virus-chip,news-1205.html"&gt;again&lt;/a&gt; (not read it guessing the disk part of the idea is mine?). The only flaw with my idea is the system picking up real time problems I guess, but that problem would be down the programmers to fix.&lt;br /&gt;&lt;br /&gt;Anyway enough blabbering I'm heading out for the evening, have a nice one.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4426746211519962246?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4426746211519962246/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4426746211519962246' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4426746211519962246'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4426746211519962246'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/06/mac-osx-trojans-and-virus-and-other.html' title='MAC OSX Trojans and Virus&apos; and other voodoo'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5300537951384596031</id><published>2008-05-13T07:44:00.004+01:00</published><updated>2008-11-13T08:11:14.169Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='terror'/><category scheme='http://www.blogger.com/atom/ns#' term='terrorism'/><category scheme='http://www.blogger.com/atom/ns#' term='constitution'/><category scheme='http://www.blogger.com/atom/ns#' term='feds'/><category scheme='http://www.blogger.com/atom/ns#' term='FBI'/><category scheme='http://www.blogger.com/atom/ns#' term='free speech'/><title type='text'>Land of the free? Err nope.</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/SCk9ZjYBabI/AAAAAAAAAtk/EM4_k4LjsP4/s1600-h/gagged.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/SCk9ZjYBabI/AAAAAAAAAtk/EM4_k4LjsP4/s400/gagged.jpg" alt="" id="BLOGGER_PHOTO_ID_5199754753977969074" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;So I don't pretend to know much about the subject, America and its constitution etc. But it gives citizens the right to protect their property stuff like that yes? Meant to be anyway...&lt;br /&gt;&lt;br /&gt;What do you think about &lt;span style="font-style: italic;"&gt;talking about&lt;/span&gt; the constitution and its content? See that as a threat to national security? No? The feds seem to!&lt;br /&gt;&lt;br /&gt;Reference: http://prisonplanet.com/articles/may2008/051208_feds_accuse.htm&lt;br /&gt;&lt;br /&gt;This story is triggered by someone at a university who briefly lectured some boy scouts on the constitution and what is right for America. Apparently that conversation was recorded and he was presented with a script of what was said by the men in suits, and wait for it, was then called a Terrorist.&lt;br /&gt;&lt;br /&gt;Seems like what founded the "land of the free" is now a national threat. Is that a surprise? After you've got over the shock of the stupidity of it, it starts to make sense (for what is a dumb ass government anyway it has to be said). For a Government that wants to have a free reign over its people, the constitution must be a real pain in the ass eh. People getting their guns out to protect their property, woo what a crime.&lt;br /&gt;&lt;br /&gt;Seems to me that the US Government is going too far, its debatable whether any terrorists &lt;span style="font-weight: bold;"&gt;actually&lt;/span&gt; did anything to the US people, now they are threatening people who stick to the very document that founded the country.&lt;br /&gt;&lt;br /&gt;I am scared. But not of terrorists. I am way more scared of losing rights as a citizen of the country I live in, losing free speech, the ability to go where I please.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5300537951384596031?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5300537951384596031/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5300537951384596031' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5300537951384596031'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5300537951384596031'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/05/land-of-free-err-nope.html' title='Land of the free? Err nope.'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/SCk9ZjYBabI/AAAAAAAAAtk/EM4_k4LjsP4/s72-c/gagged.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7744284551765288400</id><published>2008-04-25T16:17:00.003+01:00</published><updated>2008-11-13T08:11:14.309Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='vista shit'/><title type='text'>Finally I've seen the light!</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_geuJs3EAuzY/SBH2Ih0H9ZI/AAAAAAAAAfs/OCVnNBAcQsU/s1600-h/vistapoo.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_geuJs3EAuzY/SBH2Ih0H9ZI/AAAAAAAAAfs/OCVnNBAcQsU/s400/vistapoo.jpg" alt="" id="BLOGGER_PHOTO_ID_5193202471711274386" border="0" /&gt;&lt;/a&gt;Well, I've had enough. Vista is gone. I no longer have it on any machines, thank fuck for that is all I can say. I can now work faster and harder again, yipee.. no sorry, I can now &lt;span style="font-weight: bold;"&gt;actually work&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Partly due to the Nortel VPN client being a piece of shit, coupled with Vista's pathetic boot up times. Those two faults on their own caused me to turn my back on it.&lt;br /&gt;&lt;br /&gt;I am now hoping Windows 7 actually works. LOL as if.&lt;br /&gt;&lt;br /&gt;Have a good weekend.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7744284551765288400?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7744284551765288400/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7744284551765288400' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7744284551765288400'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7744284551765288400'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/04/finally-ive-seen-light.html' title='Finally I&apos;ve seen the light!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_geuJs3EAuzY/SBH2Ih0H9ZI/AAAAAAAAAfs/OCVnNBAcQsU/s72-c/vistapoo.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1775826682344650504</id><published>2008-04-16T07:41:00.004+01:00</published><updated>2008-11-13T08:11:14.430Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='ISP'/><category scheme='http://www.blogger.com/atom/ns#' term='Internet'/><category scheme='http://www.blogger.com/atom/ns#' term='bandwidth'/><category scheme='http://www.blogger.com/atom/ns#' term='BBC'/><title type='text'>Smug mode:on</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/SAWlut9SPzI/AAAAAAAAAfM/xzR0KsVvrcA/s1600-h/temp.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/SAWlut9SPzI/AAAAAAAAAfM/xzR0KsVvrcA/s400/temp.JPG" alt="" id="BLOGGER_PHOTO_ID_5189736367643574066" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;OK so its not a huge deal, anyone could see it coming. The ISPs and BBC debate over the iPlayer's impact on their infrastructure.&lt;br /&gt;&lt;br /&gt;I &lt;a href="http://colsec.blogspot.com/2007/12/sorry-for-slightly-off-topic-posts-i.html"&gt;posted something&lt;/a&gt; in December which was a laugh at BT saying there was no problem with the infrastructure. Now I realise these two arguments are slightly different, but essentially we're talking about the same thing - bandwidth - contention - whatever it boils down to - the infrastructure is struggling to cope with the video demands being put on it by its customers.&lt;br /&gt;&lt;br /&gt;Funny how the BBC and the ISPs get into a debate over it, when 4OD, Sky Anytime and others have been operating in this area for some time. They stay quiet though, BBC bless them, have opened dialogues with the ISPs and this is where the debate has come about.&lt;br /&gt;&lt;br /&gt;Everyone should remember that the BBC is an institution, and the others are just here for profit. So why are the ISPs picking on the BBC? Because its more popular? Perhaps. Because its not a "business" in the normal sense and maybe they could get some public funded network upgrades due to it? Perhaps.&lt;br /&gt;&lt;br /&gt;Why don't all the fuckers that make real money off this shit start to pay up? BT's profits are souring, probably not down to broadband that mind, more likely business deals etc. What about Sky? Ok, not souring profits, but still hundreds of millions. Channel 4? Cant be bothered to look, but let me guess - nice profits? (note: did check in the end and C4 are struggling).&lt;br /&gt;&lt;br /&gt;So WHY THE FUCK are the ISPs picking on the poor old BBC? Please leave them alone and pick on the large, profit hungry corporations that you all are. Bastards.&lt;br /&gt;&lt;br /&gt;On a side note, I actually disagree with the way the BBC is funded. We have no choice, pay your TV license, or face heavy fines. Democracy? Not in the TV license world I'm afraid. 10 pounds a month is good value for the programming we receive, and the frankly brilliant web services we can use, but my point is - no choice - If I don't want the BBC, I still have to pay for it. Monopoly? Not quite. Illegal? Should be.&lt;br /&gt;&lt;br /&gt;References -&lt;br /&gt;&lt;br /&gt;Profits-&lt;br /&gt;&lt;a href="http://www.thisismoney.co.uk/news/article.html?in_article_id=409060&amp;amp;in_page_id=2"&gt;BT profits&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.digitalspy.co.uk/digitaltv/a42290/sky-profits-fall-but-company-on-track.html?rss"&gt;Sky profits&lt;/a&gt;&lt;br /&gt;&lt;a href="http://news.bbc.co.uk/1/hi/business/6611935.stm"&gt;C4 profits&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The argument-&lt;br /&gt;&lt;a href="http://tech.slashdot.org/article.pl?sid=08/04/09/1652257&amp;amp;from=rss"&gt;Slashdot&lt;/a&gt;&lt;br /&gt;&lt;a href="http://news.bbc.co.uk/1/hi/technology/7336940.stm"&gt;BBC news&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1775826682344650504?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1775826682344650504/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1775826682344650504' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1775826682344650504'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1775826682344650504'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/04/smug-modeon.html' title='Smug mode:on'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/SAWlut9SPzI/AAAAAAAAAfM/xzR0KsVvrcA/s72-c/temp.JPG' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1173849131656427012</id><published>2008-04-08T07:23:00.003+01:00</published><updated>2008-11-13T08:11:14.534Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='child pornography'/><category scheme='http://www.blogger.com/atom/ns#' term='identity theft'/><category scheme='http://www.blogger.com/atom/ns#' term='credit card'/><category scheme='http://www.blogger.com/atom/ns#' term='police'/><title type='text'>Identity theft leads to kiddie porn arrests...</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/R_sTjplvrHI/AAAAAAAAAfE/iLgCitT6uFU/s1600-h/identity-theft.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/R_sTjplvrHI/AAAAAAAAAfE/iLgCitT6uFU/s400/identity-theft.jpg" alt="" id="BLOGGER_PHOTO_ID_5186760899027774578" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Interesting twist in the child porn case where Simon Bunce was arrested and accused of possession of child pornography.&lt;br /&gt;&lt;br /&gt;Ref: &lt;a href="http://news.bbc.co.uk/1/hi/magazine/7326736.stm"&gt;BBC News&lt;/a&gt;, &lt;a href="http://www.foxnews.com/printer_friendly_story/0,3566,346577,00.html"&gt;Fox News&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;The guy lost his job, his family stopped speaking to him and no doubt he was subjected to many other things that would come hand in hand with this sort of accusation.&lt;br /&gt;&lt;br /&gt;The Police took so long to dis-prove his accusation that he went and found out for himself what had happened. He managed to find out that his card had been used from a PC in a remote location so it was obvious he wasnt the person using it. It took the Police some time longer to confirm what had happened.&lt;br /&gt;&lt;br /&gt;This sort of thing happens all the time.&lt;br /&gt;&lt;br /&gt;Someone in my workplace was taken away one day, 2 Police officers arrived took him and his computer on the spot. The story here was that his credit card had been used to purchase child porn, but no other information came my way so I dont quite know what happened. Some time later his PC was returned and he eventually returned too. I believe the company I work for is quite understanding so you actually have to be proven guilty with something before you will be sacked. So he was obviously never proven guilty, the machines must have been scanned and found to be clean. Did the same thing happen to him? Wouldn't the Police have figured this out already?&lt;br /&gt;&lt;br /&gt;So how do we prevent ourselves from falling victim to this type of thing? Err... stop using the internet? Not really. Simon's details were stolen from an online retailer, he wont say which one, but he should do. It should be made public, dammit I might have my details stored on there - I want to know. Anyway, prevention? Throw away credit cards I think might just nail this, but they are a bit of a pain.&lt;br /&gt;&lt;br /&gt;Anyway, 8 new MS patches out this evening, that should be fun.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1173849131656427012?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1173849131656427012/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1173849131656427012' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1173849131656427012'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1173849131656427012'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/04/identity-theft-leads-to-kiddie-porn.html' title='Identity theft leads to kiddie porn arrests...'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/R_sTjplvrHI/AAAAAAAAAfE/iLgCitT6uFU/s72-c/identity-theft.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1259218994158453913</id><published>2008-04-04T21:51:00.004+01:00</published><updated>2008-11-13T08:11:14.697Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='organised crime'/><category scheme='http://www.blogger.com/atom/ns#' term='baggage handlers'/><category scheme='http://www.blogger.com/atom/ns#' term='heathrow'/><title type='text'>Heathrow T5 problems... technical problems or something else?</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_geuJs3EAuzY/R_afaplvrGI/AAAAAAAAAe8/lyxwWfJTrdI/s1600-h/gpi0020l.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://2.bp.blogspot.com/_geuJs3EAuzY/R_afaplvrGI/AAAAAAAAAe8/lyxwWfJTrdI/s400/gpi0020l.jpg" alt="" id="BLOGGER_PHOTO_ID_5185507301153287266" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Interesting little side-theory on the T5 mess discussed &lt;a href="http://jeffnolan.com/wp/2008/04/03/heathrows-t5-criminals-and-teething-problems/"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Are we to believe this organised crime thing goes on? Are we naive to think it doesn't go on?&lt;br /&gt;&lt;br /&gt;In this day and age, we have organised prostitution, people trafficking, cockle picking, drugs, and probably many more. So there probably is organised crime or sorts inside the baggage handling ranks at Heathrow.&lt;br /&gt;&lt;br /&gt;Is it this that explains missing bags, missing items from bags etc? We all know someone that has been affected by a missing bag or seen something dodgy around baggage. I have a friend that worked at an airport behind the scenes and he wont even tell us the stories (apart from that he wont ever fly using a main airport ever again - makes me wonder anyway).&lt;br /&gt;&lt;br /&gt;So, how many people work in the baggage handling at Heathrow? Enough to have a percentage of criminals all getting sneaky and organised? &lt;a href="http://www.guardian.co.uk/business/2005/aug/12/theairlineindustry.britishairways"&gt;This&lt;/a&gt; Guardian article suggests numbers in the region of 1600 staff, in 2005 with no T5 at that point. So we could be in excess of 2200 staff. That sounds like enough people for their to be something going on within. But then &lt;a href="http://www.alstec.com/Main/BusinessActivities/Airports/CaseStudies/HeathrowTerminal1/tabid/63/Default.aspx"&gt;this&lt;/a&gt; reads a little like lots of the systems are automated, boggled my puny mind at least why they still need 2200 people, but then I've never seen the size of the place ;)&lt;br /&gt;&lt;br /&gt;I think there's always part of us that thinks this dark under-world exists, I like a good conspiracy story when I hear one so I'm usually open minded (too much so?). The other question is, do the companies allow it to happen? Are they held to ransom? This should be stopped, right?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1259218994158453913?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1259218994158453913/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1259218994158453913' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1259218994158453913'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1259218994158453913'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/04/heathrow-t5-problems-technical-problems.html' title='Heathrow T5 problems... technical problems or something else?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_geuJs3EAuzY/R_afaplvrGI/AAAAAAAAAe8/lyxwWfJTrdI/s72-c/gpi0020l.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4994396673130951477</id><published>2008-03-10T08:37:00.003Z</published><updated>2008-11-13T08:11:14.873Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='physical security'/><category scheme='http://www.blogger.com/atom/ns#' term='firewire'/><category scheme='http://www.blogger.com/atom/ns#' term='locking machines'/><title type='text'>All computers vulnerable to Firewire attack</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_geuJs3EAuzY/R9T2yExT0nI/AAAAAAAAAe0/J3jjAnQI8zQ/s1600-h/TFW-H2PC_full.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://2.bp.blogspot.com/_geuJs3EAuzY/R9T2yExT0nI/AAAAAAAAAe0/J3jjAnQI8zQ/s400/TFW-H2PC_full.jpg" alt="" id="BLOGGER_PHOTO_ID_5176033211889996402" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;So you've probably read about the Firewire attack that has been recently discovered (although is it recent? "Owned by an iPod" suggests otherwise). Not only is Vista with Bitlocker vulnerable, but so are MACs, Linux machines and XP, you name it - if it has a firewire port its vulnerable.&lt;br /&gt;&lt;br /&gt;Linux has a method for switching off DMA, which Windows apparently doesn't yet, however MS have apparently said there is, but no mention of how you actually switch it off, my money is on a registry hack. Also should be said that disabling DMA stops some firewire devices from working, but not all.&lt;br /&gt;&lt;br /&gt;Usual &lt;a href="http://www.theregister.co.uk/2008/03/04/windows_password_bypass_tool/"&gt;Reg-spin link&lt;/a&gt; for you. It references some of the material I've been reading on the subject for the last week.&lt;br /&gt;&lt;br /&gt;Interesting thing was that one researcher claimed he could compromise a laptop with no firewire port by using its PCCard slot, he didnt go into detail and I cant remember where I read it. Not much use then am I! I guess it would be a Firewire PCCard which automatically installs using basic XP/Vista drivers, then opens its memory to that interface, LOL.&lt;br /&gt;&lt;br /&gt;This just strengthens the physical security problem, dont leave your machine anywhere locked or otherwise if it has NASA Secrets on it! Or of course if you work for the UK Government, dont bother your arse, cos some ass-wipe will just lose those records in the post on a DVD, I guess it will be BluRay in future and it will be all 60 million people's details lol.&lt;br /&gt;&lt;br /&gt;Anyone else want to start a game where we compromise as many laptops as possible on a train journey? :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4994396673130951477?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4994396673130951477/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4994396673130951477' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4994396673130951477'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4994396673130951477'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/03/all-computers-vulnerable-to-firewire.html' title='All computers vulnerable to Firewire attack'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_geuJs3EAuzY/R9T2yExT0nI/AAAAAAAAAe0/J3jjAnQI8zQ/s72-c/TFW-H2PC_full.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1940927892867406679</id><published>2008-02-26T17:54:00.004Z</published><updated>2008-11-13T08:11:14.966Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='compatibility'/><category scheme='http://www.blogger.com/atom/ns#' term='Vista SP1'/><title type='text'>Vista SP1... come on in the water's lovely</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/R8RbMzNm9mI/AAAAAAAAAes/xw1uQWWge9c/s1600-h/ScreenCaptureFor_EFRAL000011_SCOCT001_26-2-2008_18-26-51.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/R8RbMzNm9mI/AAAAAAAAAes/xw1uQWWge9c/s400/ScreenCaptureFor_EFRAL000011_SCOCT001_26-2-2008_18-26-51.jpg" alt="" id="BLOGGER_PHOTO_ID_5171358547592017506" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Stop all the moaning people, so some OLD versions of some programs don't work on SP1. Mind you, are people actually moaning or is this just a teency wee bit of &lt;a href="http://www.theregister.co.uk/2008/02/22/vista_sp1_security_products/"&gt;press spin&lt;/a&gt;? OK so there are a few people moaning in the comments on that article, but people like to moan don't they? Some people have had good experiences some have had bad, same with every Windows upgrade. I guess MAC owners don't have any issues cos all hardware configurations have been tested and catered for?&lt;br /&gt;&lt;br /&gt;XP SP2 was way worse than this remember, as &lt;a href="http://marc.info/?l=patchmanagement&amp;amp;m=120404693906210&amp;amp;w=2"&gt;pointed out&lt;/a&gt; by Susan Bradley in the Patch Management mailing list today. This is also mentioned in the comments in the El Reg article linked above.&lt;br /&gt;&lt;br /&gt;My experience is that SP1 is an improvement, I was having issues with Vista, now I am not. If I am lucky enough not to run into a driver issue (mainly due to the driver being a problem, not Vista remember) then I will be happy.&lt;br /&gt;&lt;br /&gt;We should be shouting at the hardware &amp;amp; software manufacturers for our pain. Remember its them that need to support operating system improvements (for the most part!). From what I've seen its them that are slow to move and cause the issues in the first place. They should be getting Betas and testing them out with their kit - not waiting for us to get the new OS and complain about it.&lt;br /&gt;&lt;br /&gt;Anyway rant over, as you were!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1940927892867406679?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1940927892867406679/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1940927892867406679' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1940927892867406679'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1940927892867406679'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/02/vista-sp1-come-on-in-waters-lovely.html' title='Vista SP1... come on in the water&apos;s lovely'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/R8RbMzNm9mI/AAAAAAAAAes/xw1uQWWge9c/s72-c/ScreenCaptureFor_EFRAL000011_SCOCT001_26-2-2008_18-26-51.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2811528177550034683</id><published>2008-02-22T11:28:00.000Z</published><updated>2008-02-22T11:29:14.213Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='server outage'/><category scheme='http://www.blogger.com/atom/ns#' term='outsourcing'/><title type='text'>Suppliers, gotta love them</title><content type='html'>Our datacentre supplier, who shall remain nameless for now. They wanted some rights applying to some servers, we looked at the request and thought it would be nice to give them some of this to do themselves.&lt;br /&gt;&lt;br /&gt;So we let them have rights to the GPO that controls the servers they were after, with strict instructions to raise a change control along with any changes.&lt;br /&gt;&lt;br /&gt;24 hours later, all those servers stop working.&lt;br /&gt;&lt;br /&gt;Checked it out, found the setting "access this computer from the network" had been altered some 1 hour 30 mins before. They had neglected to realise that when you add something in here (as with many GPO settings) it not only adds what you enter, but removes all existing. So you have to add in local administrators, users, etc etc. "replace" rather than "merge" - one of the basics of Group Policy in Active Directory it has to be said.&lt;br /&gt;&lt;br /&gt;As a friend put it when I told him the story "what a bunch of goons" - well said Steve.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2811528177550034683?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2811528177550034683/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2811528177550034683' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2811528177550034683'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2811528177550034683'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/02/suppliers-gotta-love-them.html' title='Suppliers, gotta love them'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-865349749726731831</id><published>2008-02-21T07:37:00.011Z</published><updated>2008-03-06T16:00:34.353Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='compatibility'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='sp1'/><title type='text'>Vista SP1 applied!</title><content type='html'>Well I've taken the plunge and I took no pre-cautions what-so-ever (In my usual style).&lt;br /&gt;&lt;br /&gt;My main work's laptop is now running Vista Ultimate SP1. Conclusion? Yee fucking ha!&lt;br /&gt;&lt;br /&gt;I've only been using it for a few hours, but yes, certain little things do seem faster. Some of the old issues are still there, but it does seem to have given the machine a little spruce up and its running smoother.&lt;br /&gt;&lt;br /&gt;Things that I've noticed (I've been updating this list since the original post) -&lt;br /&gt;&lt;br /&gt;&lt;ol&gt;&lt;li&gt;Bootup &amp;amp; logon still takes fricking ages (add a vista machine to a Windows domain and you will see)&lt;br /&gt;&lt;/li&gt;&lt;li&gt;After a couple of reboots... god forbid - my Outlook 2007 seems ok too now! SHOCK HORROR! Watch this space for more moans if it fucks up again.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Suspend, resume, switch from LAN to WLAN all seems fast and seamless now (yipee). Further testing has shown this to be even more the case - it just works now, I might even say better than XP in my experience.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;It took 1 hour 45 minutes to install - WTF? - At least its done some good, so appeasing me a little.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;TS sessions: /console no longer interpreted. Now you have to use /admin for &lt;a href="http://blogs.msdn.com/ts/archive/2007/12/17/changes-to-remote-administration-in-windows-server-2008.aspx"&gt;various reasons&lt;/a&gt;, I have to give credit to James for providing links and info :)&lt;/li&gt;&lt;li&gt;Ping command: strangely there is a carriage return missing in the ping results (for me at least)&lt;/li&gt;&lt;li&gt;TS sessions: on SP0 I had an issue with ALT TABbing between TS sessions, where ALT would get pressed inside the session (so annoyingly losing focus on what your doing) - this, for me, is now resolved.&lt;/li&gt;&lt;li&gt;The dreaded copying problem ("calculating time remaining....") appears to have been fixed. I have copied around on the local drive and over the network without issue. Contrary to what the cynic in me wants to think, they didn't just disable the calculating time feature either. :)&lt;/li&gt;&lt;li&gt;DIVX is crashing when trying to generate thumbnails. It works, just crashes and must be re-starting in the background. - This was fixed by updating DIVX (see, that was easy!)&lt;/li&gt;&lt;li&gt;TS client: the authentication prompt before login to servers was annoying, especially for servers that didn't take the information (W2K for example). This is now removed and handled slightly differently.&lt;/li&gt;&lt;li&gt;OL2007: When I copy and paste text into a table in a new mail, it comes up blank until I use the scroll wheel on the mouse. I have had this problem since I started with Vista+Office 2007, now I have SP1 of both and I still get this issue.&lt;/li&gt;&lt;li&gt;IE7: "click to activate" ActiveX controls function is gone, I knew I had read that MS had paid them off somewhere (was a licensing issue).&lt;br /&gt;&lt;/li&gt;&lt;/ol&gt;No doubt there is more to come! Have fun folks, I've had no problems but that doesn't mean you wont :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-865349749726731831?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/865349749726731831/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=865349749726731831' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/865349749726731831'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/865349749726731831'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/02/vista-sp1-applied.html' title='Vista SP1 applied!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6334204802370578750</id><published>2008-02-05T14:57:00.000Z</published><updated>2008-02-05T15:05:46.780Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='OL2007 slow'/><title type='text'>OL2007 slooooooow</title><content type='html'>Ok I know there have been LOADS of discussions on outlook 2007 being a crock of shit. This, for me at least, is different.&lt;br /&gt;&lt;br /&gt;I like Outlook 2007. When I got it I was ready to cut MS to threads with how crap it was... nope. I like it, its fast and usable (for me!). Ok so I don't use it for POP emails, where a few people have had speed issues. I use it on exchange and it works fine for the most part.&lt;br /&gt;&lt;br /&gt;Just this week, me and a few colleagues noticed our Outlooks slowing down. Not the usual "not responding" that people have been complaining about just when typing in people's email addresses or names into the "To" field (or deleting them for that matter). It just took my machine 4 seconds to delete 4 characters from the To: field in a new email, last week this task was instant.&lt;br /&gt;&lt;br /&gt;I have a dual core laptop with 2GB ram if it matters (it doesn't)  and I don't think we've installed any patches since mid-Jan so surely cant be patch related. Exchange server side problem perhaps? Anyone got any insight? I am wondering about this indexing service on my machine (instant search). If I start Outlook in safe mode it seems better but not brilliant. I've also looked at add-ons and disabled them all, but didn't seem better. Weird!&lt;br /&gt;&lt;br /&gt;/edit&lt;br /&gt;&lt;br /&gt;Just timed it - it just took 21 seconds to delete 6 characters from the "To:" field. Dammit.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6334204802370578750?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6334204802370578750/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6334204802370578750' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6334204802370578750'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6334204802370578750'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/02/ol2007-slooooooow.html' title='OL2007 slooooooow'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1785688468276126906</id><published>2008-01-22T14:24:00.000Z</published><updated>2008-11-13T08:11:15.219Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='computer usage policy'/><category scheme='http://www.blogger.com/atom/ns#' term='remote monitoring'/><category scheme='http://www.blogger.com/atom/ns#' term='keyloggers'/><title type='text'>Spying on your employees.</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_geuJs3EAuzY/R5YABqH6H1I/AAAAAAAAAd0/y1WPxMRE0G4/s1600-h/spying.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_geuJs3EAuzY/R5YABqH6H1I/AAAAAAAAAd0/y1WPxMRE0G4/s320/spying.jpg" alt="" id="BLOGGER_PHOTO_ID_5158310451686809426" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I have been doing this for a few years now, usually after the event. You know the thing - find out how and why user X did Y on company equipment. I certainly enjoy the kind of work, IT Geek becomes detective lol.&lt;br /&gt;&lt;br /&gt;Anyway the matter of morality has been creeping up on me since I posted something on a mailing list asking for pointers. Some people on the list reacted violently at the privacy issues caused by spying on people unknown to them. (would it be spying if they knew?).&lt;br /&gt;&lt;br /&gt;Yes, I feel bad when I'm finding out details about someone's home life that perhaps I don't need to know. That's tough cookies when you cross that line and decide its OK to use company equipment for your email conversations with your ex-wife or other dramatical home life situation. I don't actually do it all that often myself, but then I work from home so I can do it in person. :)&lt;br /&gt;&lt;br /&gt;When people start work here, they do a couple of things that allows us to look at their machine and usage as we please. 1. They sign a computer use policy and 2. They click OK on a legal notice when they log on to their machines. That legal notice mentions that they will be remotely monitored to ensure they are using the computer according to the guidelines in the policy.&lt;br /&gt;&lt;br /&gt;Don't get me wrong, we don't just go spying on people. We only react to issues or solid information about a security problem as they arise.&lt;br /&gt;&lt;br /&gt;I'm happy at the moment doing what I'm doing, but I do feel guilty sometimes when I find out personal information about someone that I'd rather not know.&lt;br /&gt;&lt;br /&gt;Anyone else got any thoughts on this? Might stick a poll up.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1785688468276126906?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1785688468276126906/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1785688468276126906' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1785688468276126906'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1785688468276126906'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/spying-on-your-employees.html' title='Spying on your employees.'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_geuJs3EAuzY/R5YABqH6H1I/AAAAAAAAAd0/y1WPxMRE0G4/s72-c/spying.jpg' height='72' width='72'/><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8126034752717176671</id><published>2008-01-21T16:12:00.000Z</published><updated>2008-11-13T08:11:15.421Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='RIAA hacked?'/><category scheme='http://www.blogger.com/atom/ns#' term='MS08-001 exploit'/><category scheme='http://www.blogger.com/atom/ns#' term='BT Home hub vulnerable'/><title type='text'>BT Hub / MS08-001 exploit? / RIAA site empty</title><content type='html'>3 things today (ok 4 if you count the stuff about my PC, but I dont)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;BT Home Hub vulnerablity&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;GNU Citizen &lt;a href="http://www.gnucitizen.org/blog/call-jacking"&gt;reports&lt;/a&gt; {site slow at time of writing} that an attacker can trick a user into clicking a link. This link tells the user's BT Home Hub to ring the phone like they are receiving a phone call. In actual fact their phone is dialling out. I shouldn't have to explain the uses for this but the nice easy one would be a premium rate phone number in Nigeria. The Adrian at GNU reports other uses like part of a very nice phishing attack for example.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;MS08-001 exploit coming soon?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.pcadvisor.co.uk/news/index.cfm?newsid=11875"&gt;This &lt;/a&gt;article on PCAdvisor.co.uk indicates that its possible MS are not right in saying MS08-001 is hard to exploit. The article reckons there are lots of people having a go at this one now as its TCPIP after all and would be a sweet spreading worm if it can be coded. If you haven't rolled with MS08-001 then now might be the time to get on with it!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;RIAA Site Hacked?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;What a shame that would be eh! This article &lt;a href="http://www.realtechnews.com/posts/5287"&gt;here &lt;/a&gt;spots a few issues with their site, what a damn shame eh. LOL.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Finally...&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/R5THr6H6H0I/AAAAAAAAAds/qFR_JmR0ooY/s1600-h/3dmarkscore-2.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/R5THr6H6H0I/AAAAAAAAAds/qFR_JmR0ooY/s320/3dmarkscore-2.jpg" alt="" id="BLOGGER_PHOTO_ID_5157967030396788546" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;I've been over-clocking, got my 3dMark score up from 12k to 14k not bad eh! Obviously I went for more then the graphics driver crashed out. Nice that Vista can cope with that though, pretty sure XP would have needed a reboot to recover from that. Got the CPU running at 3.0Ghz with no problems seen. In fact the CPU under load is still 35c (same as it was before). Only the motherboard complains a little about getting hot, but it is passively cooled after all (comes with an extra fan if needed, might be fitting that then!).&lt;br /&gt;&lt;br /&gt;Cheers.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8126034752717176671?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8126034752717176671/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8126034752717176671' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8126034752717176671'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8126034752717176671'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/bt-hub-ms08-001-exploit-riaa-site-empty.html' title='BT Hub / MS08-001 exploit? / RIAA site empty'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/R5THr6H6H0I/AAAAAAAAAds/qFR_JmR0ooY/s72-c/3dmarkscore-2.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6826720682397763358</id><published>2008-01-17T00:17:00.001Z</published><updated>2008-11-13T08:11:15.795Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='Experience Rating'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='new PC'/><category scheme='http://www.blogger.com/atom/ns#' term='3dmark score'/><title type='text'>New Rig...</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_geuJs3EAuzY/R48F0aH6HiI/AAAAAAAAAZw/8lVSGaYYTvU/s1600-h/thebeast.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_geuJs3EAuzY/R48F0aH6HiI/AAAAAAAAAZw/8lVSGaYYTvU/s320/thebeast.jpg" alt="" id="BLOGGER_PHOTO_ID_5156346496286334498" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div&gt;&lt;a href="http://4.bp.blogspot.com/_geuJs3EAuzY/R46ezaH6HfI/AAAAAAAAAZY/nnPOFv3-G8s/s1600-h/it_will_do.jpg"&gt;&lt;img id="BLOGGER_PHOTO_ID_5156233229408804338" style="margin: 0px auto 10px; display: block; text-align: center;" alt="" src="http://4.bp.blogspot.com/_geuJs3EAuzY/R46ezaH6HfI/AAAAAAAAAZY/nnPOFv3-G8s/s320/it_will_do.jpg" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/R48F56H6HjI/AAAAAAAAAZ4/mCEdMysLxxI/s1600-h/3dmarkscore.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/R48F56H6HjI/AAAAAAAAAZ4/mCEdMysLxxI/s320/3dmarkscore.jpg" alt="" id="BLOGGER_PHOTO_ID_5156346590775615026" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/R48HT6H6HkI/AAAAAAAAAaA/Mt5Uq47MPoI/s1600-h/cpuzpic.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/R48HT6H6HkI/AAAAAAAAAaA/Mt5Uq47MPoI/s320/cpuzpic.jpg" alt="" id="BLOGGER_PHOTO_ID_5156348136963841602" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Just got it built, not too bad. I notice its only showing 3.25GB ram when I have 4GB installed, will check that out at some point. The Bios thought 4GB if I remember correctly. CPUz is picking it up right, so will have a think about that.&lt;br /&gt;&lt;br /&gt;3D Mark score is a little disappointing, as is the Vista Experience Rating, think I was assuming it would crack 6.0 but nope. Doh! There may be driver and Bios updates I can do before I want to start overclocking. I'll be trying the COD4 demo later today, see if that blows me away. Installing Steam now to get the usual HL2 bits installed :)&lt;br /&gt;&lt;div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6826720682397763358?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6826720682397763358/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6826720682397763358' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6826720682397763358'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6826720682397763358'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/new-rig.html' title='New Rig...'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_geuJs3EAuzY/R48F0aH6HiI/AAAAAAAAAZw/8lVSGaYYTvU/s72-c/thebeast.jpg' height='72' width='72'/><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-812344583075850714</id><published>2008-01-16T10:53:00.000Z</published><updated>2008-01-16T10:57:51.588Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='ID theft'/><category scheme='http://www.blogger.com/atom/ns#' term='barclays'/><category scheme='http://www.blogger.com/atom/ns#' term='Marcus Agius'/><title type='text'>Barlcays boss gets ID stolen</title><content type='html'>So the UK Barclays Bank boss gets his ID stolen and a card re-issued. The thief then simply walks into a branch and withdraws cash. Kind of funny as the staff in the branch didn't think "hey that's the boss" or anything like that. Guess you wouldn't even think about it.&lt;br /&gt;&lt;br /&gt;Ref: &lt;a href="http://www.itnews.com.au/News/68062,barclays-chairman-has-identity-stolen.aspx"&gt;IT News AU&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Seems like the Register haven't picked this up yet, bet they do before lunch. :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-812344583075850714?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/812344583075850714/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=812344583075850714' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/812344583075850714'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/812344583075850714'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/barlcays-boss-gets-id-stolen.html' title='Barlcays boss gets ID stolen'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1859115203762164987</id><published>2008-01-15T07:40:00.000Z</published><updated>2008-11-13T08:11:15.928Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='the vista monkey'/><category scheme='http://www.blogger.com/atom/ns#' term='Vista SP1'/><category scheme='http://www.blogger.com/atom/ns#' term='trustedinstaller.exe'/><title type='text'>Vista SP1 coming... can't wait... oh no... I'll have to wait...</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/R4xmwqH6HeI/AAAAAAAAAZQ/KlYXiOLETYo/s1600-h/sexybill.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/R4xmwqH6HeI/AAAAAAAAAZQ/KlYXiOLETYo/s320/sexybill.jpg" alt="" id="BLOGGER_PHOTO_ID_5155608659559587298" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;MS are getting into testing this more and more. Sounds like fun doesn't it? Er no. Install 3 updates that are pre-requisites, reboot (possibly multiple times), if you have an earlier beta of SP1 installed you need to un-install that and wait some time then try installing the actual comment is "Microsoft instructs users to wait one hour after uninstalling so Windows can clean up and complete the un-install prior to installing RC Refresh."&lt;br /&gt;&lt;br /&gt;So Windows Vista has some kind of installation monkey that works on your machine while you work? Cleaning things up while you send emails and surf Facebook! Nice. Wonder what its called ooh ooh I know - TRUSTEDINSTALLER.EXE. Fucking thing eats up CPU and buggers your machine over while it does its nails, I remember (unless you have a phat dual/quad core machine then you wont notice the monkey doing its shits around the place).&lt;br /&gt;&lt;br /&gt;I think the full release of SP1 will be pre-dated with these 3 updates (1 is already out and installed on my machine) and we await the arrival of the next 2 pre-SP1 monkey feeders so that the monkey can have its larger SP1 meal later in this quarter. All this so the monkey can swing in the Vista trees properly, which, it should have been doing since its release. Poor monkey.&lt;br /&gt;&lt;br /&gt;Ref: &lt;a href="http://www.theregister.co.uk/2008/01/14/windows_sp1_rc_refresh_open/"&gt;The Register&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;So just to summarise in case you missed it. I've named TrustedInstaller.exe the Vista Monkey. You read it here first people. I like it when I deal with important matters such as this.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1859115203762164987?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1859115203762164987/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1859115203762164987' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1859115203762164987'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1859115203762164987'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/vista-sp1-coming-cant-wait-oh-no-ill.html' title='Vista SP1 coming... can&apos;t wait... oh no... I&apos;ll have to wait...'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/R4xmwqH6HeI/AAAAAAAAAZQ/KlYXiOLETYo/s72-c/sexybill.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2569372384986154233</id><published>2008-01-14T07:59:00.000Z</published><updated>2008-11-13T08:11:16.052Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='pdparchitect'/><category scheme='http://www.blogger.com/atom/ns#' term='gnucitizen'/><category scheme='http://www.blogger.com/atom/ns#' term='upnp'/><title type='text'>uPNP: What we suspected all along. | Switch those LCDs off</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_geuJs3EAuzY/R4sXoqH6HdI/AAAAAAAAAZI/VQijLfWASfg/s1600-h/computervirus.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://2.bp.blogspot.com/_geuJs3EAuzY/R4sXoqH6HdI/AAAAAAAAAZI/VQijLfWASfg/s320/computervirus.jpg" alt="" id="BLOGGER_PHOTO_ID_5155240185725328850" border="0" /&gt;&lt;/a&gt;uPNP. Useful? Are you using it for something? I've always disabled it, also the services in Windows XP. I was never 100% sure why I was doing it, just knew that it was trouble (I must have read something somewhere). I never got into any depth on why I thought it was crap.&lt;br /&gt;&lt;br /&gt;Well PDPArchitect is back with a great post on the subject. He is able to use Flash and other technologies to re-configure your router over the internet without you knowing. Indeed without even using your computer.&lt;br /&gt;&lt;br /&gt;So switch it off people and leave it off, for the time being at least.&lt;br /&gt;&lt;br /&gt;See: &lt;a href="http://www.gnucitizen.org/blog/hacking-the-interwebs"&gt;http://www.gnucitizen.org/blog/hacking-the-interwebs&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The above link is 100% safe to click on, Gnucitizen are one of the most responsible hacker groups you will come across. Read some of the articles while your there, very interesting.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.channelregister.co.uk/2008/01/15/home_router_insecurity/"&gt;The Register picking this up a day after me&lt;/a&gt;. (gloat mode on).&lt;br /&gt;--------------&lt;br /&gt;&lt;br /&gt;Funny one for you (unless you were presenting at CES of course). You have an LCD screen in your living room most likely now, does it have an IR port? (lol most likely it does!).&lt;br /&gt;&lt;br /&gt;Check &lt;a href="http://gizmodo.com/343348/confessions-the-meanest-thing-gizmodo-did-at-ces"&gt;this gizmondo link&lt;/a&gt; out and what they were up to at CES. Quite funny and makes you think.&lt;br /&gt;&lt;br /&gt;Have fun.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2569372384986154233?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2569372384986154233/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2569372384986154233' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2569372384986154233'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2569372384986154233'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/upnp-what-we-suspected-all-along.html' title='uPNP: What we suspected all along. | Switch those LCDs off'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_geuJs3EAuzY/R4sXoqH6HdI/AAAAAAAAAZI/VQijLfWASfg/s72-c/computervirus.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7627317288940228130</id><published>2008-01-11T08:57:00.001Z</published><updated>2008-01-11T09:07:09.901Z</updated><title type='text'>Vista easy to hack, quick run for the hills!</title><content type='html'>&lt;center&gt;&lt;object width="425" height="355"&gt;&lt;param name="movie" value="http://www.youtube.com/v/0fAdcrin9Mc&amp;rel=1"&gt;&lt;/param&gt;&lt;param name="wmode" value="transparent"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/0fAdcrin9Mc&amp;rel=1" type="application/x-shockwave-flash" wmode="transparent" width="425" height="355"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/center&gt;&lt;br /&gt;&lt;br /&gt;eEye saying Vista is easy to hack. That may be. Marc only briefly mentions that there's a great big pop-up shouting about security issues when the hack goes off. I think most users would be interested to click on the balloon with the big red cross telling them something is up. Granted we still have some pretty dumb ass users on the planet too though. Not sure I'd be logging into my bank with that dirty security message on my vista machine, but I guess I'm not typical of all users.&lt;br /&gt;&lt;br /&gt;I think this is the first one I've seen that doesn't somehow try some trick with UAC, but I guess they have used a known exploit and used an un-patched machine.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Happy New Year and all that folks.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7627317288940228130?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7627317288940228130/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7627317288940228130' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7627317288940228130'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7627317288940228130'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2008/01/vista-easy-to-hack-quick-run-for-hills.html' title='Vista easy to hack, quick run for the hills!'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4927186403718371639</id><published>2007-12-12T08:07:00.000Z</published><updated>2007-12-13T08:12:51.889Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='mp4 codec'/><category scheme='http://www.blogger.com/atom/ns#' term='new patches'/><category scheme='http://www.blogger.com/atom/ns#' term='bugtraq'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='media player vulnerability'/><title type='text'>MP4 Codec Vulnerability</title><content type='html'>Not much discussion going on about this one, but I think it will happen.&lt;br /&gt;&lt;br /&gt;PoC released &lt;a href="http://www.securityfocus.com/archive/1/484779/30/30/threaded"&gt;here&lt;/a&gt;. Looks quite nasty, providing the hacker with a reverse shell (firewalls allowing of course).&lt;br /&gt;&lt;br /&gt;I'm not sure why no one's discussing it, but no doubt there are people working in the background to figure out what it can do and what other products and versions are affected.&lt;br /&gt;&lt;br /&gt;The media player version affected is listed as 6.4, which as far as I can tell is Windows NT4 and Windows 95 only (edit: just noticed its the default for Windows 2000). However, if this is a codec problem, then why are other versions not affected? no doubt we'll find out over the coming days.&lt;br /&gt;&lt;br /&gt;Should be noted that "Media Player Classic" is also affected, which alot of us have installed as an alternative to Media Player (if you go and install a free codec pack for example). I would really be quite surprised if other versions were not also vulnerable.&lt;br /&gt;&lt;br /&gt;Loads of new patches out today, 3 quite nasty ones if you are not careful. Get patched!&lt;br /&gt;&lt;br /&gt;[edit 13th December]&lt;br /&gt;Thanks to Mark Leeds pointing out the obvious on the BugTraq mailing list. This is a vulnerability in the 3ivx MP4 codec. So technically any player with access to that codec is vulnerable.&lt;br /&gt;&lt;br /&gt;To check what you have installed, you should open the control panel, sound options, hardware tab, click on Video Codecs and properties. You should see something "3ivx" is you have it installed. Better still Google for "sherlock codec detective" and use that. Doesn't seem to be the standard install on Windows XP so this vulnerability has reduced in criticality somewhat (to almost nil for me).&lt;br /&gt;[/edit]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4927186403718371639?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4927186403718371639/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4927186403718371639' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4927186403718371639'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4927186403718371639'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/12/mp4-codec-vulnerability.html' title='MP4 Codec Vulnerability'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1002725791629326859</id><published>2007-12-05T08:11:00.000Z</published><updated>2008-11-13T08:11:16.130Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='ofcom'/><category scheme='http://www.blogger.com/atom/ns#' term='xbox video'/><category scheme='http://www.blogger.com/atom/ns#' term='uk internet'/><category scheme='http://www.blogger.com/atom/ns#' term='BT profits'/><category scheme='http://www.blogger.com/atom/ns#' term='BT'/><title type='text'></title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_geuJs3EAuzY/R1ZjpQ3v_sI/AAAAAAAAAZA/JLO6Yz1gNLQ/s1600-h/BT_cashcow.jpg"&gt;&lt;img style="margin: 1px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_geuJs3EAuzY/R1ZjpQ3v_sI/AAAAAAAAAZA/JLO6Yz1gNLQ/s320/BT_cashcow.jpg" alt="" id="BLOGGER_PHOTO_ID_5140405585244585666" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Sorry for the slightly off topic posts, i.e. not strictly security but I have to voice what I see when I see it. Yesterday we were presented with this little charmer "&lt;a href="http://news.bbc.co.uk/1/hi/technology/7114642.stm"&gt;Push for faster net premature&lt;/a&gt;". So BT is getting shirty about actually spending some REAL money on the infrastructure. Haven't we been hearing scaremongering stories about the net collapsing in 2 years due to video services? BT doesn't think so.&lt;br /&gt;&lt;br /&gt;Then, today, we get these 3 stories -&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.telegraph.co.uk/connected/main.jhtml?xml=/connected/2007/12/04/dldemand04.xml"&gt;Gamers get on demand TV&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://news.bbc.co.uk/1/hi/technology/7117155.stm"&gt;Net user's want film downloads&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://news.bbc.co.uk/1/hi/world/europe/7127146.stm"&gt;Rise in Broadband use in Europe&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I'm sorry but something isn't adding up. 43% of European households have broadband. XBOX Live users are getting film downloads on the 11th December. And users in general want more film downloads.&lt;br /&gt;&lt;br /&gt;To me that all sounds like an infrastructure that is going to have some issues coping with all this extra content. This is what they were talking about with the scaremongering. Its here now and we are all along for the ride. If BT is right, then everything will keep running fine in the UK for years to come (on shitty copper cables). If BT is wrong, then we are facing doom and gloom of restricted services for years until BT or someone else decides its time to upgrade.&lt;br /&gt;&lt;br /&gt;I can understand that it will cost millions to upgrade the infrastructure. Did I say millions? Oooh, didn't BT in fact make BILLIONS last year? (&lt;a href="http://www.thisismoney.co.uk/news/article.html?in_article_id=409060&amp;amp;in_page_id=2"&gt;link&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;So isn't it time that BT pulled up its socks and told its shareholders to swallow some of the cost and get on with it? What happened to British pride in having the best? BT needs to be careful as the cable companies could start to clean up here. ADSL gets congested then people will switch to whatever they can switch to. Remember BT its the british public that made you what you are, its about time you put something back into it (I am aware you have already put some things back in, but its not enough). Sweden have 100Mb broadband to their houses for 30 euros a month and we get 8Mb for around the same.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1002725791629326859?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1002725791629326859/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1002725791629326859' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1002725791629326859'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1002725791629326859'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/12/sorry-for-slightly-off-topic-posts-i.html' title=''/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_geuJs3EAuzY/R1ZjpQ3v_sI/AAAAAAAAAZA/JLO6Yz1gNLQ/s72-c/BT_cashcow.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1927436836118674378</id><published>2007-12-04T06:52:00.000Z</published><updated>2008-11-13T08:11:16.280Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='games ratings'/><category scheme='http://www.blogger.com/atom/ns#' term='stupid parents'/><title type='text'>BBC News: Games content concerns parents</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_geuJs3EAuzY/R1T7tw3v_qI/AAAAAAAAAYw/kHFTQJvzOB4/s1600-h/18cert.gif"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_geuJs3EAuzY/R1T7tw3v_qI/AAAAAAAAAYw/kHFTQJvzOB4/s320/18cert.gif" alt="" id="BLOGGER_PHOTO_ID_5140009838367997602" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Link: &lt;a href="http://news.bbc.co.uk/1/hi/technology/7125426.stm"&gt;BBC News&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I've had enough of this shit. Quote: "Some 43% of the surveyed parents said they were not aware of ratings systems for games to determine suitability." WHAT THE FUCK?&lt;br /&gt;&lt;br /&gt;Have we not had videos with parental ratings for 30 years? Have you, as a parent, never bothered to read the fucking label? You know the big 18 in a red circle on the back, recognise it from somewhere no? Yes that's right its the same rating system you find on DVD's Videos and the like.&lt;br /&gt;&lt;br /&gt;Parents need to buck up and pull their heads out of their own arses. I am a parent and its pretty bloody obvious what games I should buy my kids and what games I should take from them if I find them.&lt;br /&gt;&lt;br /&gt;This is shirking of responsibility when something happens, i.e. someones kid goes out and stabs someone - oh that must have happened because he's been playing that game on the Play Station. Wake up people your kids aren't always angels. They will go out and do things, every murderer has parents, every rapist also has parents. Do you think they were all affected by some film or some game? No, they were rapists and murderers already, if a game was involved its got nothing to do with it, just might have given them a few extra ideas.&lt;br /&gt;&lt;br /&gt;Release Man Hunt 2 (whatever the recent banned game was) and show parents that its an 18 certificate and everything will be fine and dandy (ok maybe not but you get my point).&lt;br /&gt;&lt;br /&gt;Take it easy.&lt;br /&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1927436836118674378?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1927436836118674378/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1927436836118674378' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1927436836118674378'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1927436836118674378'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/12/bbc-news-games-content-concerns-parents.html' title='BBC News: Games content concerns parents'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_geuJs3EAuzY/R1T7tw3v_qI/AAAAAAAAAYw/kHFTQJvzOB4/s72-c/18cert.gif' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5745853487767273812</id><published>2007-11-30T08:34:00.000Z</published><updated>2007-11-30T09:09:02.526Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='FTP BO'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox Updates'/><category scheme='http://www.blogger.com/atom/ns#' term='religion sucks'/><category scheme='http://www.blogger.com/atom/ns#' term='UK Data Loss'/><title type='text'>This Week</title><content type='html'>Been busy this week, looks like my job is safe for the moment which is nice.&lt;br /&gt;&lt;br /&gt;So what's been happening in Security this week?&lt;br /&gt;&lt;br /&gt;Microsoft is busy looking at a problem with "WPAD" which is the mechanism in DNS used to automatically configure Internet Explorer proxy settings in an enterprise. Seems like an attacker might be able to put their own server into the mix and get some control over clients - full control its being said. [&lt;a href="http://www.smh.com.au/news/technology/microsoft-flaw-a-massive-shock/2007/11/23/1195975914416.html"&gt;more&lt;/a&gt;]&lt;br /&gt;&lt;br /&gt;The UK government is taking a lot of heat for the data loss fiasco. In case you've been living under a rock a government department needed to send 25 million public's details to another site. So they used their internal post "The Grid" to send some DVDs, which never arrived. So they sent the DVDs over Royal Mail post, which also never arrived. There are lots of varying reports in the press but apparently the data was sent unencrypted. Nice job guys. In my job I have to think about SARBOX regulations and sending 25 million people's personal details along with millions of people's bank details would have to be done slightly better than this I expect. [&lt;a href="http://news.bbc.co.uk/1/hi/uk_politics/7103566.stm"&gt;more&lt;/a&gt;] Have a good click around on the BBC's site and look at related stories, it just gets better.&lt;br /&gt;&lt;br /&gt;More on the UK government now, apparently illegal funding operations going on. Not looking good for Gordon Brown's reign as Prime Minister it has to be said. [&lt;a href="http://news.bbc.co.uk/1/hi/uk_politics/7120277.stm"&gt;more&lt;/a&gt;]&lt;br /&gt;&lt;br /&gt;Another day another Microsoft vulnerability. This time its the FTP client. Lots of noise for a little shitty problem. The issue requires the user to perform about 10 tasks which is basically ridiculous. [&lt;a href="http://www.xdisclose.com/advisory/XD100096.html"&gt;Advisory&lt;/a&gt;]&lt;br /&gt;&lt;br /&gt;Sideline - a hacker uses the PS3 to massively increase his password cracking capabilities. Nice. [&lt;a href="http://www.pcworld.com/article/id,140064-c,gameconsoles/article.html"&gt;more&lt;/a&gt;]&lt;br /&gt;&lt;br /&gt;Firefox was updated again this week. Nice to see coders responding quickly and plugging holes efficiently. I'm sure they've not plugged all the problems with FF but still better than MS's 7 month wait that sometimes crops up.&lt;br /&gt;&lt;br /&gt;Oh the story about the UK teacher in Africa being jailed for allowing her class to call a teddy bear "Mohammed" what can I say? For Fuck Sake is all I can think of. A class of kids, a teddy bear and someone gets jailed, get a fucking life. I'm not religious and I don't pretend to know the 1st thing about Islam or any other religion, but this is taking the piss. I stick to my line "religion is the root of all evil"&lt;br /&gt;&lt;br /&gt;Well all I have time to talk about at the moment, more from me next week, have a great weekend wherever you are.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5745853487767273812?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5745853487767273812/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5745853487767273812' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5745853487767273812'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5745853487767273812'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/11/this-week.html' title='This Week'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2097995683576550220</id><published>2007-11-15T07:53:00.001Z</published><updated>2008-11-13T08:11:16.346Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='Dan Egerstad'/><title type='text'>Jailed for exposing failings?</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/RzwC9CI1r1I/AAAAAAAAAYo/Mc2SYVfxrPY/s1600-h/hackerdan_wideweb__470x316,2.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/RzwC9CI1r1I/AAAAAAAAAYo/Mc2SYVfxrPY/s320/hackerdan_wideweb__470x316,2.jpg" alt="" id="BLOGGER_PHOTO_ID_5132980922864742226" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;So your a security researcher, and you notice something big. You notice that governments are using very weak security in their email systems. You investigate and realise you can read embassy emails of the Turkish embassy in London for example (that is just an example of lots of different email systems you can access).&lt;br /&gt;&lt;br /&gt;So you do the right thing and notify these parties about their security holes and hear nothing - nadda.&lt;br /&gt;&lt;br /&gt;So you wait.... wait... nothing... chase it up - tell them AGAIN you can read their emails.&lt;br /&gt;&lt;br /&gt;Nothing.&lt;br /&gt;&lt;br /&gt;So what do you do next? Go public that's what. So you post a list of 100 email addresses that you can access and have accessed. You are SURE that there are hackers doing the same already. The implications are huge, you could send emails from the Turkish government to the UK government telling them to go fuck themselves (ok you get the idea now).&lt;br /&gt;&lt;br /&gt;2 months later you get arrested, your computer equipment taken and your web site taken off-line.&lt;br /&gt;&lt;br /&gt;Did you break any laws? Were you doing the right thing?&lt;br /&gt;&lt;br /&gt;Damn right you were doing the right thing. Were you breaking laws? Possibly. Will you be charged and given a sentence? Possibly.&lt;br /&gt;&lt;br /&gt;This all sounds quite theoretical eh? Well its all true and the researcher is Dan Egerstad and his web site was derangedsecurity.com which is now off-line.&lt;br /&gt;&lt;br /&gt;He took a lot of flack at the time in the comments of his blog, people claiming he was compromising the security of governments world-wide. Give us a break people. The governments involved were exposing their OWN security, the fact that Dan spotted it, tried to report it and then went public is not something he should be shot down for. He should be applauded for his integrity as a researcher (unless there are things he's not telling us, but we like to think he's straight up).&lt;br /&gt;&lt;br /&gt;Where does this leave other security researchers? If someone stumbles across a security hole in say NASA or MI5 systems, what does he do? Try to tell them of course.. hear nothing - then what? Tell the international security police? Oh wait they don't exist.&lt;br /&gt;&lt;br /&gt;Its possible there was something else he could have done, perhaps went to the UN with his findings (would they have been interested, or would they know what he was on about?). That might have protected him a bit more, or possibly contacted his local Swedish authorities, they might have had a louder voice if he had them on his side (assuming of course they believed he had good intentions).&lt;br /&gt;&lt;br /&gt;There's a lot to be said for going public though. Kudos in the industry is one, not that that is important to every researcher, but its something nice to have if you can get it. The other thing is that its logged publicly - imagine you went to your local authorities and they took you and your computers away and throw you in prison. You have no public log of what happened, if that's actually worth anything of course.&lt;br /&gt;&lt;br /&gt;If you haven't read any of the history, then please see this &lt;a href="http://64.233.183.104/search?q=cache:mC9a4x8IrmAJ:www.derangedsecurity.com/+http://derangedsecurity.com/&amp;amp;hl=en&amp;amp;ct=clnk&amp;amp;cd=1&amp;amp;gl=uk&amp;amp;client=firefox-a"&gt;link&lt;/a&gt; (Google cache), unfortunately Dan had a robots.txt file preventing the WayBack machine from archiving his site, so we cant see the whole story.&lt;br /&gt;&lt;br /&gt;One thing I just noticed, the site was taken down the beginning of September by the US Government. Jeez, the things you have to put up with to be a security researcher.&lt;br /&gt;&lt;br /&gt;References&lt;br /&gt;&lt;br /&gt;&lt;a href="http://blog.wired.com/27bstroke6/2007/08/embassy-e-mail-.html"&gt;News breaking&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.theage.com.au/news/security/hacker-of-year-arrest/2007/11/15/1194766821481.html"&gt;Dan being arrested&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2097995683576550220?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2097995683576550220/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2097995683576550220' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2097995683576550220'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2097995683576550220'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/11/jailed-for-exposing-failings.html' title='Jailed for exposing failings?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/RzwC9CI1r1I/AAAAAAAAAYo/Mc2SYVfxrPY/s72-c/hackerdan_wideweb__470x316,2.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2025126014690531644</id><published>2007-11-13T07:27:00.000Z</published><updated>2007-11-13T07:38:16.565Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='whassap'/><category scheme='http://www.blogger.com/atom/ns#' term='electronic jihad'/><title type='text'>Electronic Jihad?</title><content type='html'>Apparently Sunday there was supposed to be some kind of electronic attack (&lt;a href="http://weblog.infoworld.com/robertxcringely/archives/2007/11/cyber_terrorism.html?source=rss"&gt;see here&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;After event information &lt;a href="http://blogs.govexec.com/techinsider/archives/2007/11/no_electronic_jihad_but_seriou.php"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;So it never happened. Are we bothered? Not yet at least.&lt;br /&gt;&lt;br /&gt;I imagine if these "jihad" people managed to get there hands on half of the storm worm's bot network then they might have a chance of causing some damage, but we've yet to see anything happen. Rumours can be as dangerous as the real thing if you ask me, mind you, rumours like these keeps us on our toes.&lt;br /&gt;&lt;br /&gt;Reminds me of the Jihad version of the "Whassaaaaap" videos... jiiiiiiiihaaaaaaaaaddddd&lt;br /&gt;&lt;br /&gt;LOL.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2025126014690531644?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2025126014690531644/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2025126014690531644' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2025126014690531644'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2025126014690531644'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/11/electronic-jihad.html' title='Electronic Jihad?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5658286429439928413</id><published>2007-11-12T08:07:00.000Z</published><updated>2007-11-12T08:20:35.504Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='mdac'/><category scheme='http://www.blogger.com/atom/ns#' term='losing jobs'/><category scheme='http://www.blogger.com/atom/ns#' term='framework'/><category scheme='http://www.blogger.com/atom/ns#' term='windows patching'/><title type='text'>Patching annoying components in Windows</title><content type='html'>Like .Net framework and MDAC. If you run a WSUS server and look after clients, you will know what I'm talking about.&lt;br /&gt;&lt;br /&gt;This patch wont install until that other patch has been removed, and another installed.... pain in the ass!&lt;br /&gt;&lt;br /&gt;Cant MS just make all the patches work with one another? Check file versions and patch the lot? Too simple? Sorry think that's me being logical again.&lt;br /&gt;&lt;br /&gt;MDAC is one of the worst, .net framework not being as bad, i.e. not as many issues arising. MDAC is terrible though. WSUS will say a patch is required but the machine will keep trying to install it in a loop. You eventually find that you have to uninstall another patch and re-install another patch that was missing, then WSUS can take over and install 2 patches. What if you have 1000 machines like this? Yes, not good.&lt;br /&gt;&lt;br /&gt;On another note, we should all find out if we have jobs today. Interesting that our lives have been hanging in the balance for 2 years and it all comes to a head today. Lets hope they do it properly and we do actually know, not just another "lets wait and see". Would it be a nice Christmas present to find out you have no job? Perhaps! Whatever happens I will take the positive from it and use it to make my life better (try anyway!). I have a mortgage to pay like the next guy so its still important eh (+ 2 kids to feed!).&lt;br /&gt;&lt;br /&gt;Have fun, I will try to keep posting as I've been a bit slack lately.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5658286429439928413?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5658286429439928413/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5658286429439928413' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5658286429439928413'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5658286429439928413'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/11/patching-annoying-components-in-windows.html' title='Patching annoying components in Windows'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2952951360741297560</id><published>2007-10-26T13:28:00.000+01:00</published><updated>2007-10-26T13:58:40.176+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='losing jobs'/><category scheme='http://www.blogger.com/atom/ns#' term='facebook'/><category scheme='http://www.blogger.com/atom/ns#' term='bebo'/><category scheme='http://www.blogger.com/atom/ns#' term='CV'/><category scheme='http://www.blogger.com/atom/ns#' term='applying for jobs'/><title type='text'>Job on line, Bebo/Facebook,</title><content type='html'>Been working quite hard, hence quite quiet on the blog.&lt;br /&gt;&lt;br /&gt;We're possibly finding out that our jobs could really be on the line in a few weeks, we'll see. Things happen and they hopefully work out for the best in the end. We've worked in uncertain times for the last 2 years now, so this is nothing new. Things are moving away from my team though and possibly the UK too, so could the time be up? Not sure.&lt;br /&gt;&lt;br /&gt;Facebook and Bebo etc. Good ideas? I'm thinking they are ok places to spend some time on line, but its not a massive revolution or anything. I mean there are lots of places on the net you can play games and stuff, but its quite useful to be "socialising" with friends online. I'm not very sociable in real life, so its easier for me to be sociable in virtual life - keep in touch with all those people I probably wouldn't bother with otherwise (sorry guys nothing against you I'm lazy!).&lt;br /&gt;&lt;br /&gt;By the way I think myspace is shit due to the totally un-user friendly set up of it. Bebo and Facebook have it licked in that department. Out of those two I think I like Facebook more (probably more to do with my friends choices)&lt;br /&gt;&lt;br /&gt;Updated my CV this morning, probably needs more work, but I needed to get it out for a position so we'll see how that goes eh.&lt;br /&gt;&lt;br /&gt;Have a good weekend folks.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2952951360741297560?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2952951360741297560/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2952951360741297560' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2952951360741297560'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2952951360741297560'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/10/job-on-line-bebofacebook.html' title='Job on line, Bebo/Facebook,'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6052426239451455633</id><published>2007-10-18T08:20:00.000+01:00</published><updated>2007-10-18T08:25:58.297+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='100% cpu'/><category scheme='http://www.blogger.com/atom/ns#' term='trustedinstaller.exe'/><title type='text'>TrustedInstaller.exe - power hungry process</title><content type='html'>If you have a single core Vista machine, you will know what I'm talking about here.&lt;br /&gt;&lt;br /&gt;So your sitting doing something on your machine and it starts to stutter... grind... slooooooowww down.... quick open task manager and see whats doing on. "TrustedInstaller.exe" bashing away at your CPU making everything else slow down.&lt;br /&gt;&lt;br /&gt;Did some googling, not really clear what it does, but from my own experiences it actually appears to be the patching engine for Vista. So I guess its checking Microsoft Update when its not patching. Nice... MS have re-designed the patching engine, and probably only tested it on a dual core machine. LOL.&lt;br /&gt;&lt;br /&gt;C'mon guys you can do better than this!&lt;br /&gt;&lt;br /&gt;Suppose I can go and get a dual core for 50 GBP these days, but should I have to?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6052426239451455633?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6052426239451455633/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6052426239451455633' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6052426239451455633'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6052426239451455633'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/10/trustedinstallerexe-power-hungry.html' title='TrustedInstaller.exe - power hungry process'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1013628960026025817</id><published>2007-10-16T13:30:00.000+01:00</published><updated>2007-10-16T13:34:43.603+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Quality of Service'/><category scheme='http://www.blogger.com/atom/ns#' term='QoS'/><title type='text'>Quality Of Service? lol</title><content type='html'>Yeah so we got QoS running on our WAN links. Works lovely... or does it?&lt;br /&gt;&lt;br /&gt;I'm no comms guy, as I may have mentioned already, so I take things as I see them. I get told QoS will allow me to patch clients over a WAN link without worrying about impacting more important traffic like SAP for example. So I go ahead and let rip with patches... gets a phone call "oh the WAN link to site X is saturated" - erm hello? QoS?&lt;br /&gt;&lt;br /&gt;We have the WSUS traffic as "unclassified" so it shouldn't affect the 3 levels of defined traffic in the QoS rules. Seems the comms guys have different excuses for each situation - oh QoS doesnt work when X and Y are happening, etc, things like that.&lt;br /&gt;&lt;br /&gt;Didn't we pay lots of money for this technology? I want our money back!&lt;br /&gt;&lt;br /&gt;So now I have to throttle everything all the time and deliver patches slowly, just because some people on some sites need to get to their Bebo/Facebook/MySpace pages - LOL.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1013628960026025817?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1013628960026025817/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1013628960026025817' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1013628960026025817'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1013628960026025817'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/10/quality-of-service-lol.html' title='Quality Of Service? lol'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2911481791205947681</id><published>2007-10-11T21:42:00.000+01:00</published><updated>2007-10-11T21:45:37.957+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='holiday'/><title type='text'>On holiday</title><content type='html'>Not around this week, off on a short break where the internet is relatively slow, the wind strong, the rain horizontal, sheep a-plenty... yes you guessed it up in the Highlands!&lt;br /&gt;&lt;br /&gt;Lovely up here I love it, loads of things to do, just lots of long drives to get to those places lol.&lt;br /&gt;&lt;br /&gt;New patches out this week, not looked at them yet, as on holiday why should I bother! (the temptation is killing me though).&lt;br /&gt;&lt;br /&gt;Will leave it at that and get posting again next week, have fun people. :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2911481791205947681?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2911481791205947681/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2911481791205947681' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2911481791205947681'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2911481791205947681'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/10/on-holiday.html' title='On holiday'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-430839188350826217</id><published>2007-10-02T11:34:00.000+01:00</published><updated>2007-10-02T11:55:31.143+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='comms problems'/><category scheme='http://www.blogger.com/atom/ns#' term='network issues'/><category scheme='http://www.blogger.com/atom/ns#' term='failing switches'/><category scheme='http://www.blogger.com/atom/ns#' term='windows problems'/><title type='text'>Issues? Checked with Comms?</title><content type='html'>Yesterday was spent fire fighting a problem with 2 more DCs. DNS was playing up on them, causing slow logons for 1200+ people on one of our most important sites.&lt;br /&gt;&lt;br /&gt;As the morning progressed, we fixed the DCs, but slow logons were still happening. Turns out there was a problem with a Data Server also. Some time later, also a printer server and another data server. Hmmmm.&lt;br /&gt;&lt;br /&gt;Just after lunch we have confirmation that there is a problem with a switch in the comms room. Re-patching of the problem servers into another switch solved the problem. The switch was rebooted over night to clear the errors.&lt;br /&gt;&lt;br /&gt;Nice! So we wasted almost a whole day chasing our tails trying to fix problems with servers, when in fact it was networking all along! Just a pity we didn't get all the information to hand at the beginning of the day, then we'd have saved a day's work.&lt;br /&gt;&lt;br /&gt;Historically we've assumed comms in lots of situations, but we quickly found this was the wrong thing to do. With servers failing in weird ways quite often, a lot of the time it was our problem. So now we assume its not comms unless something indicates otherwise... wrong in this case eh.&lt;br /&gt;&lt;br /&gt;Lessons learned I guess.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-430839188350826217?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/430839188350826217/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=430839188350826217' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/430839188350826217'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/430839188350826217'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/10/issues-checked-with-comms.html' title='Issues? Checked with Comms?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7574663034020802937</id><published>2007-09-28T15:16:00.000+01:00</published><updated>2007-09-28T15:27:10.626+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows patching'/><category scheme='http://www.blogger.com/atom/ns#' term='domain controllers'/><title type='text'>Strange faults on DCs</title><content type='html'>We held our hands up. We made a minor mistake and WSUS'd 2 DCs on the same site at the same time. Unfortunately it was an important site.&lt;br /&gt;&lt;br /&gt;Both DCs stopped functioning as DNS servers at the same time killing authentication and DNS services in that site for almost all applications/resources in that site.&lt;br /&gt;&lt;br /&gt;We assumed a patch caused this, but a call with MS proved otherwise. The servers got themselves in what MS coined a "race condition" where the Netlogon and DNS services get into a deadlock as they wait for each other to initialise fully.&lt;br /&gt;&lt;br /&gt;You can get round this by pointing the DNS settings on the NICs to another site (which is what we did before calling MS, this restored the service), MS are saying there is no best practice for this issue, its so rare.&lt;br /&gt;&lt;br /&gt;We obviously now have about 4 things we can change to prevent this happening in the future. Begs the question though, if its so rare why did we get it on 2 DCs at the same time? Might be we triggered it by bouncing them at the same time, MS are not able to tell us.&lt;br /&gt;&lt;br /&gt;We've learned a few lessons here, perhaps we were getting slightly more complacent with our patching  strategy, might be about time we tightened it up again.&lt;br /&gt;&lt;br /&gt;Have a good weekend folks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7574663034020802937?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7574663034020802937/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7574663034020802937' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7574663034020802937'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7574663034020802937'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/strange-faults-on-dcs.html' title='Strange faults on DCs'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1871083155672196279</id><published>2007-09-21T07:31:00.000+01:00</published><updated>2008-11-13T08:11:16.591Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='single factor authentication'/><category scheme='http://www.blogger.com/atom/ns#' term='exchange web mail'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Single factor authentication</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/RvNsGiNTrPI/AAAAAAAAAXY/dohWY-Eg-Sw/s1600-h/lock.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/RvNsGiNTrPI/AAAAAAAAAXY/dohWY-Eg-Sw/s320/lock.jpg" alt="" id="BLOGGER_PHOTO_ID_5112548861513280754" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Our company recently moved from Lotus Notes to Exchange (yes that was fun!).&lt;br /&gt;&lt;br /&gt;One part of the remit was to implement Web Mail. I would have assumed that they were also going to implement SecureID or similar... no they didn't. No certs, nothing. Just Domain ID and PW on a web page on the internet. Niiice.&lt;br /&gt;&lt;br /&gt;I had a play with &lt;a href="http://www.owasp.org/index.php/Category:OWASP_WebScarab_Project"&gt;web scarab&lt;/a&gt; and very quickly realised that I could lock out every single ID in all the domains with a few clicks - yes even domain admin accounts that do not have mail boxes. very clever.&lt;br /&gt;&lt;br /&gt;So are we at risk of a denial of service attack? I think we are. All it will take is a disgruntled employee to leave with a list of all user accounts and then they have a wee play with web scarab and they are laughing. Imagine continued attacks, management would have us switch off account lockouts - I guarantee it (then we would be up shit creak).&lt;br /&gt;&lt;br /&gt;I was asked to investigate a lockout on a very important person's account. I spent 10 minutes tracing it to the web mail system, then 3 days trying to get all the logs from the perimeter web servers. Once I had them I had to then find out we had time skew on the perimeter boxes. Once I knew we had 10.4 minutes time skew I was able to locate the IP of the person who locked the account. It was a BT Wholesale UK IP address (so any non BT ADSL provider that uses BT equipment).&lt;br /&gt;&lt;br /&gt;Could we take it further? No. Because we have no legal notice no the web mail web page.&lt;br /&gt;&lt;br /&gt;Did management learn anything from it? Dont think so. We still have no legal notice and we are still using single factor authentication.&lt;br /&gt;&lt;br /&gt;The management argue that its easy to get to web mail this way - yes thats true. It would be easier without passwords altogether though wouldnt it? Of course securing things makes it harder to use them, thats life. Yes more expensive too, but what cost to you put on having an exposed domain?&lt;br /&gt;&lt;br /&gt;In my opinion this is one of the daftest things our company has done. You never, ever, expose your domain accounts to the perimeter without having other factors in the way first.&lt;br /&gt;&lt;br /&gt;Imagine the carnage I could cause if I got fired one day... yummy. Of course I would hide behind a foreign anonymous web proxy... and they have fired me so who would investigate it? Muhahah. Oh and of course, no legal notice, so no leg to stand on even if they did want to challenge me legally. Pity.&lt;br /&gt;&lt;br /&gt;On another note about authentication, &lt;a href="http://worsethanfailure.com/Articles/WishItWas-TwoFactor-.aspx"&gt;this is a good point&lt;/a&gt; about banks and their supposed increased security levels.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1871083155672196279?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1871083155672196279/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1871083155672196279' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1871083155672196279'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1871083155672196279'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/single-factor-authentication.html' title='Single factor authentication'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/RvNsGiNTrPI/AAAAAAAAAXY/dohWY-Eg-Sw/s72-c/lock.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2813020867997286393</id><published>2007-09-20T11:00:00.000+01:00</published><updated>2007-09-20T11:07:51.101+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Office 2003 SP3'/><category scheme='http://www.blogger.com/atom/ns#' term='service packs'/><category scheme='http://www.blogger.com/atom/ns#' term='problems'/><title type='text'>Office 2003 SP3 - stand well clear?</title><content type='html'>Its looking that way!&lt;br /&gt;&lt;br /&gt;Check out &lt;a href="http://marc.info/?l=patchmanagement&amp;amp;m=119014762620921&amp;amp;w=2"&gt;this post&lt;/a&gt; from Susan Bradley on the Patch Management mailing list, ouch thats a list of problems. Also be sure to check the replies as some people are mentioning some of the issues they are having.&lt;br /&gt;&lt;br /&gt;I was asked yesterday at work whether we should be looking at SP3, just replied "absolutely not".&lt;br /&gt;&lt;br /&gt;I'm not sure if MS are tightening security up (similar to XP SP2 perhaps?) or if they have just not fully tested all scenarios.&lt;br /&gt;&lt;br /&gt;We were lead to believe that MS fully test each service pack, so I'm sure this has all been picked up and logged somewhere, hence Susan's post. I will be testing it myself, but I cannot recreate every single situation that we might face in our company so I guess I'll be wasting my time for the most part. The first time I've tried to install SP3 it failed so we'll see how this bad boy pans out eh.&lt;br /&gt;&lt;br /&gt;The lesson here is you have to test it yourself, dont just assume that MS has tested everything. They roll out Service Packs to their staff and test, but my bet is that most of their staff are running Office 2007 now anyway (or beta of the next version).&lt;br /&gt;&lt;br /&gt;Happy patching.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2813020867997286393?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2813020867997286393/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2813020867997286393' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2813020867997286393'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2813020867997286393'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/office-2003-sp3-stand-well-clear.html' title='Office 2003 SP3 - stand well clear?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3832192168932089409</id><published>2007-09-16T08:02:00.000+01:00</published><updated>2007-09-16T08:06:13.632+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vcpoker'/><category scheme='http://www.blogger.com/atom/ns#' term='network problems'/><title type='text'>VCPoker are useless</title><content type='html'>Obsolutely useless. Was playing at 3 different tables this morning, doing ok too. POP goes the software. Try again, no chance. Try to visit their web site, no chance, try pinging their web site, no response. Numpties cant even keep their networks up.&lt;br /&gt;&lt;br /&gt;Last time this happened it was a sneaky upgrade to their software. Nice.&lt;br /&gt;&lt;br /&gt;Nowhere else on the net will you see so much mucking around with people's money. They dont give a damn where you were in a given tournament, they just refund your buy in. You could have had 80,000 in chips and been runaway chip leader, they dont care.&lt;br /&gt;&lt;br /&gt;This is a poker system, with 4000+ people all signed in spending money in your servers, and you cannot keep the systems up for more than a few days at a time? Honestly where are the millions going? I believe its time for me to move to another poker site, this is getting beyond stupidity.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3832192168932089409?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3832192168932089409/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3832192168932089409' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3832192168932089409'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3832192168932089409'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/vcpoker-are-useless.html' title='VCPoker are useless'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1843286920396476721</id><published>2007-09-11T16:14:00.001+01:00</published><updated>2007-09-11T16:23:23.250+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='no firefox'/><category scheme='http://www.blogger.com/atom/ns#' term='firefox extentions'/><category scheme='http://www.blogger.com/atom/ns#' term='ad blocking'/><category scheme='http://www.blogger.com/atom/ns#' term='firefox blocked'/><title type='text'>To block ads or not?</title><content type='html'>We mostly dislike them, most of us &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_0"&gt;don't&lt;/span&gt; click on them, but they still generate revenue for people running web sites (possibly feeding many people's kids!).&lt;br /&gt;&lt;br /&gt;I &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_1"&gt;don't&lt;/span&gt; like ads, but I put up with them. I really dis-like &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_2"&gt;pop-up&lt;/span&gt; or pop-under ads, so I generally back away from sites using them.&lt;br /&gt;&lt;br /&gt;What if you hate ads that much that you've installed the &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_3"&gt;FireFox&lt;/span&gt; add in "&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_4"&gt;Adblock&lt;/span&gt; Plus"? Well &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_5"&gt;theres&lt;/span&gt; a guy that dislikes that extension so much he's trying to start a backlash and block all &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_6"&gt;Firefox&lt;/span&gt; users, just in case they have the &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_7"&gt;extension&lt;/span&gt; installed. Bit extreme if you ask me.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.cnet.com/8301-13739_1-9770502-46.html?part=rss&amp;subj=news&amp;amp;tag=2547-1_3-0-5"&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_8"&gt;CNet&lt;/span&gt; story&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://whyfirefoxisblocked.com"&gt;This guy's site&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Personally, I think he's wasting good development time. Are there REALLY that many people running the &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_9"&gt;extension&lt;/span&gt; that he's losing revenue? Does he think that people with the &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_10"&gt;extension&lt;/span&gt; are suddenly going to run out and use IE AND THEN click on his ads? Very unlikely.&lt;br /&gt;&lt;br /&gt;I think he should look to come up with a good idea that sells itself, rather than relying on advertisements to make money.... or conform like the rest of us and get a job.&lt;br /&gt;&lt;br /&gt;Of all the web sites I've created, I &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_11"&gt;haven't&lt;/span&gt; put adverts on any of them. Why? Because I &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_12"&gt;don't&lt;/span&gt; like them! Maybe if I had a site with high levels of hits, I'd be tempted... but I'd feel like I have crossed to the dark-side and that cant be good.&lt;br /&gt;&lt;br /&gt;Anyway if I land on any site that re-directs me to his page, there's always the back button, and I'm pretty sure that's what all the other &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_13"&gt;FireFox&lt;/span&gt; users will do too. So its their loss, not ours.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1843286920396476721?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1843286920396476721/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1843286920396476721' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1843286920396476721'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1843286920396476721'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/to-block-ads-or-not.html' title='To block ads or not?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8881869391961192166</id><published>2007-09-10T10:03:00.001+01:00</published><updated>2007-09-10T10:13:10.566+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='PST files'/><category scheme='http://www.blogger.com/atom/ns#' term='exchange'/><category scheme='http://www.blogger.com/atom/ns#' term='disk space'/><title type='text'>Exchange disk space</title><content type='html'>Apparently our Exchange environment will creak and die mid-October when it runs out of disk space. We need to clear 5TB before then or it will happen.&lt;br /&gt;&lt;br /&gt;Our provider says 8 weeks or more to implement a new server to move mail boxes to.&lt;br /&gt;&lt;br /&gt;What do you imagine the solution from our management is? A new SAN? A new storage server somewhere that people can create PSTs on? No don't be daft.&lt;br /&gt;&lt;br /&gt;Solution is to send a mail out to everyone telling them to create local PSTs on their machines and archive their mail off to a local copy. Nice job guys.&lt;br /&gt;&lt;br /&gt;I can understand that storage is expensive, its obvious. However, telling people to move their archived mail to an un-secure location is almost as good as just telling everyone to delete all mail that's 30 days old or more.&lt;br /&gt;&lt;br /&gt;I asked about how the re-charging mechanism works, you know to get expenses back for running exchange and was told that "there isnt one". So IT's funding the whole mail system from a central budget. Nice work again people.&lt;br /&gt;&lt;br /&gt;Who's responsibility is this to make sure it all works? Ah the CIO, who's just left. Clever, wish I had thought of that!&lt;br /&gt;&lt;br /&gt;So basically everything will turn to poo very shortly, with a poo problem and a poo solution. I've told them I want no part in it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8881869391961192166?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8881869391961192166/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8881869391961192166' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8881869391961192166'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8881869391961192166'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/exchange-disk-space.html' title='Exchange disk space'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3419902293782505934</id><published>2007-09-05T12:08:00.000+01:00</published><updated>2007-09-05T13:20:32.208+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='sans'/><category scheme='http://www.blogger.com/atom/ns#' term='isc'/><category scheme='http://www.blogger.com/atom/ns#' term='pc fixing'/><category scheme='http://www.blogger.com/atom/ns#' term='internet storm centre'/><category scheme='http://www.blogger.com/atom/ns#' term='logmein'/><category scheme='http://www.blogger.com/atom/ns#' term='homers'/><title type='text'>Doing 'homers'</title><content type='html'>Just noticed the post from Tom on the ISC, about fixing his daughter's friends computer. Very funny have a &lt;a href="http://isc.sans.org/diary.html?storyid=3343"&gt;read&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;We've all done it though eh, fixed peoples machines for them. Almost always takes an age to do as usually the machines are old and the builds on them are well screwy. I've done a few myself and they usually come back to bite me in the ass I must say. What I have done in the past is set them up with a "Logmein.com" account. They give me the password and I can remote control them from home without having to poke holes in firewalls and such like (logmein works on client requests so firewalls allow outbound traffic). Have a look, its quite funny remote controlling your work's PC from home, it really freaks the comms guys out hehehe (careful though as they will just block logmein.com).&lt;br /&gt;&lt;br /&gt;One of the best ones I've seen was a neighbour who had a Packard Bell machine. They had setup a function key that accessed a Windows XP setup partition, which would then start a re-installation of Windows. Great idea. I showed my neighbour how to rebuild his own machine when it went tits-up and never really heard from him again. Lovely. :)&lt;br /&gt;&lt;br /&gt;Moral of the story? Dont bother with homers, they are usually a pain. Avoid as much as possible.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3419902293782505934?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3419902293782505934/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3419902293782505934' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3419902293782505934'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3419902293782505934'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/doing-homers.html' title='Doing &apos;homers&apos;'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-251746739562379994</id><published>2007-09-03T22:47:00.000+01:00</published><updated>2007-09-03T22:59:47.667+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='sonyericsson'/><category scheme='http://www.blogger.com/atom/ns#' term='GPRS'/><category scheme='http://www.blogger.com/atom/ns#' term='k750i'/><category scheme='http://www.blogger.com/atom/ns#' term='GNER'/><category scheme='http://www.blogger.com/atom/ns#' term='wireless'/><category scheme='http://www.blogger.com/atom/ns#' term='virgin voyager'/><title type='text'>Sony Ericsson s/w on Vista</title><content type='html'>Managed to actually find and use a very useful feature in the above software. Jumped on one of those Virgin Voyagers with the Orange repeater (whatever they use to boost the mobile signal) and was actually able to use Live Messenger at 100mph+. Woo.&lt;br /&gt;&lt;br /&gt;This is probably the first time I've had any sort of internet on the move, there are loads of GNER trains with wireless these days so its not new to people that travel on lines where they are available.&lt;br /&gt;&lt;br /&gt;Also its a plus for the Sony Ericsson software mentioned previously on these pages, as I was mostly cheesed off at it, this has made me think its not too bad. The software pulls the internet settings from the phone, which I thought was a nice feature (new to me too).&lt;br /&gt;&lt;br /&gt;Could do with it syncing with Outlook but one step at a time :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-251746739562379994?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/251746739562379994/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=251746739562379994' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/251746739562379994'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/251746739562379994'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/sony-ericsson-sw-on-vista.html' title='Sony Ericsson s/w on Vista'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3326218633054467476</id><published>2007-09-02T08:58:00.000+01:00</published><updated>2007-09-02T09:08:52.908+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tribler'/><category scheme='http://www.blogger.com/atom/ns#' term='p2p'/><category scheme='http://www.blogger.com/atom/ns#' term='hi def'/><category scheme='http://www.blogger.com/atom/ns#' term='HDTV'/><category scheme='http://www.blogger.com/atom/ns#' term='file sharing'/><title type='text'>New P2P standard for HDTV</title><content type='html'>So a new P2P system that looks promising... or does it?&lt;br /&gt;&lt;br /&gt;BBC story &lt;a href="http://news.bbc.co.uk/1/hi/technology/6971904.stm"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;My prediction? Software that "manages" your TV Minutes. Just like every other P2P system there is usually a hack that manipulates your rating or in this case it will be TV Minutes.&lt;br /&gt;&lt;br /&gt;I applaud the efforts of these people, getting HDTV over the internet will be one of the difficult things that the user base will want over the coming years and current infrastructure doesn't really support it (in the UK at least).&lt;br /&gt;&lt;br /&gt;Now I have downloaded torrents like the next person, and some of those have been in Hi-Def. Some of them take a looong time to download, others don't. The absolute best I have achieved was a 4.3GB in 45minutes download. Obviously if everyone was playing fair with their sharing then there would be more fast downloads like that. It would be very very nice if this new standard "Tribler" would actually work without being hacked.&lt;br /&gt;&lt;br /&gt;Time will tell, hackers/crackers may get a lookin, maybe not.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3326218633054467476?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3326218633054467476/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3326218633054467476' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3326218633054467476'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3326218633054467476'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/09/new-p2p-standard-for-hdtv.html' title='New P2P standard for HDTV'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2258531298241361079</id><published>2007-08-30T15:53:00.001+01:00</published><updated>2007-09-04T13:30:06.936+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='blogger'/><category scheme='http://www.blogger.com/atom/ns#' term='malware links'/><category scheme='http://www.blogger.com/atom/ns#' term='tinyurl'/><category scheme='http://www.blogger.com/atom/ns#' term='untrusted URL'/><title type='text'>Blogger being attacked</title><content type='html'>Just read the BBC news article &lt;a href="http://news.bbc.co.uk/1/hi/technology/6970368.stm"&gt;here&lt;/a&gt;, didn't realise this was going on. I don't appear to have had any dodgy links posted in here, guess they are using another method to do the posting. Also I have "registered users only" on the comments settings (also switched on the Captcha).&lt;br /&gt;&lt;br /&gt;Also realised the other day a really basic thing that we've all come to use a bit here and there - &lt;a href="http://tinyurl.com/"&gt;TinyUrl&lt;/a&gt;. Those bad boys could be pointing anywhere.&lt;br /&gt;&lt;br /&gt;Watch what your clicking on people! :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2258531298241361079?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2258531298241361079/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2258531298241361079' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2258531298241361079'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2258531298241361079'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/blogger-being-attacked.html' title='Blogger being attacked'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-4938346222083158</id><published>2007-08-29T11:26:00.000+01:00</published><updated>2007-08-30T15:37:54.633+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='sony drm'/><category scheme='http://www.blogger.com/atom/ns#' term='rootkits'/><category scheme='http://www.blogger.com/atom/ns#' term='sony rootkit'/><category scheme='http://www.blogger.com/atom/ns#' term='rootkit malware'/><title type='text'>Sony at it again?</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://blog.wired.com/photos/uncategorized/foxtrotrootkit.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 320px;" src="http://blog.wired.com/photos/uncategorized/foxtrotrootkit.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Sony Sony Sony, what's your game? You think you can make some of the best electrical goods on the planet, then hide your software on our machines. Dammit, just realised, I've probably got a rootkit on my Vista laptop after installing the Phone Suite. LOL.&lt;br /&gt;&lt;br /&gt;Yes, sorry, this post is about Sony's continued efforts to install &lt;a href="http://en.wikipedia.org/wiki/Rootkit"&gt;rootkits &lt;/a&gt;on all our machines.&lt;br /&gt;&lt;br /&gt;F-Secure has posted &lt;a href="http://www.f-secure.com/weblog/archives/archive-082007.html#00001263"&gt;here &lt;/a&gt;and also Securi Team is running a &lt;a href="http://blogs.securiteam.com/?p=985"&gt;blog post&lt;/a&gt; on the issue.&lt;br /&gt;&lt;br /&gt;Its early days yet, but usually we end up seeing malware trying to hide in the hidden folders that these rootkits create. Just all boils down to making it harder to stay clean in Windows. Sure you could switch to Linux, but how would you play all your Windows games with your latest Nvidia hardware?&lt;br /&gt;&lt;br /&gt;I only use Windows because I have to, I have tried to use Linux many times.... but things like this will make me think twice about buying Sony kit in the future (i.e. think to yourself in the shop - do I need to install software on my PC to make this work?).&lt;br /&gt;&lt;br /&gt;Makes you wonder about the PSP software etc that Sony are pedalling at the moment. Plus your PSP into your PC, does it install a rootkit? Guess not as someone would have found it by now.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-4938346222083158?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/4938346222083158/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=4938346222083158' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4938346222083158'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/4938346222083158'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/sony-at-it-again.html' title='Sony at it again?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5579769952094418539</id><published>2007-08-24T08:47:00.001+01:00</published><updated>2008-11-13T08:11:16.781Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='tracing hackers'/><category scheme='http://www.blogger.com/atom/ns#' term='website hacked'/><category scheme='http://www.blogger.com/atom/ns#' term='blog hacked'/><category scheme='http://www.blogger.com/atom/ns#' term='hackers'/><title type='text'>Getting caught red handed</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/Rs6QI5ef10I/AAAAAAAAAUo/tawxcFdqr80/s1600-h/Caught+Red+Handed.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/Rs6QI5ef10I/AAAAAAAAAUo/tawxcFdqr80/s320/Caught+Red+Handed.jpg" alt="" id="BLOGGER_PHOTO_ID_5102173910399440706" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Very nice write up of a someone's blog getting hacked and his follow up to find out who did it and how. &lt;a href="http://justinsomnia.org/2007/08/search-engine-marketeers-are-the-new-script-kiddies/"&gt;Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;If you are interested in tracing through things, as I am, then its a good read and good to see that the blogger found his man.&lt;br /&gt;&lt;br /&gt;I have looked into hacks a few times and never actually bothered to trace the culprit - I was almost always more interested in closing the hole and restoring functionality. Perhaps the next time I will do a bit more digging and post something here for all to read.&lt;br /&gt;&lt;br /&gt;The worst one I have seen was a charity web site that I now look after (didn't at the time of the hack), my customer phoned me and screamed for help.&lt;br /&gt;&lt;br /&gt;I took a wee look at her site (using Firefox as you do) and everything appeared fine. After a bit of clicking around I realised that I needed to check with IE. Big mistake! My fully patched and up-to-date AV machine blue screened on the spot. Admittedly it was AVG Free Edition I was using (get what you pay for) but the machine would no longer boot up.&lt;br /&gt;&lt;br /&gt;Quick hit of the magic buttons to restore to last known good and I was booting again.&lt;br /&gt;&lt;br /&gt;So I went through the web files and found the iframe links that had been added to the compromised YabSSe forum (very old version - 2 years since killed off), manually edited the PHP files and restored the site to functionality. I also reset all the customer's passwords just in case, then went about upgrading from YabSSe to the latest version of PHPBB.&lt;br /&gt;&lt;br /&gt;One happy customer. I just cant help thinking about all the nice people that were visiting her Charity web site and possibly getting infected with some rubbish virus, I just hope they were running better AV than I was!&lt;br /&gt;&lt;br /&gt;The immediate reaction of the customer was "how can someone hack a charity web site like this" and I pointed out that it was probably a script that was run against multiple sites and it was unlikely anyone had actually looked at the site (use Google to find the sites, then run a script against them all).&lt;br /&gt;&lt;br /&gt;The customer has learned a lesson and I will also take a lesson away from it - i.e. do what the guy above did and try to catch the culprit then name and shame.&lt;br /&gt;&lt;br /&gt;Have fun out there folks, have a good weekend too! :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5579769952094418539?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5579769952094418539/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5579769952094418539' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5579769952094418539'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5579769952094418539'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/getting-caught-red-handed.html' title='Getting caught red handed'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/Rs6QI5ef10I/AAAAAAAAAUo/tawxcFdqr80/s72-c/Caught+Red+Handed.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7496320657086350598</id><published>2007-08-23T15:18:00.000+01:00</published><updated>2007-08-23T15:34:08.045+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='patches'/><category scheme='http://www.blogger.com/atom/ns#' term='buffer overflow'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='monster.com hacked'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='trend micro'/><title type='text'>Monster / Trend / Microsoft</title><content type='html'>I've been following progress on this one. Seems like quite a big impact. Symantec are &lt;a href="http://www.symantec.com/enterprise/security_response/weblog/2007/08/a_monster_trojan.html"&gt;saying&lt;/a&gt; that its mainly US people affected, however I've heard of UK people impacted too (i.e. more spam around about the same time).&lt;br /&gt;&lt;br /&gt;I like the last paragraph in that article "&lt;span style="font-style: italic;"&gt;I would like to thank Hazel, one of our very patient colleagues in the HR department, for assisting us during this investigation.&lt;/span&gt;" Does that suggest that they got hit by the virus to anyone else? Just a thought anyway.&lt;br /&gt;&lt;br /&gt;Trend Micro were in the news today too, seems a &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=588"&gt;buffer overflow&lt;/a&gt; has been getting exploited in their software. Looks like this was responsibly disclosed, unless I'm missing something, if that's the case interesting how quick &lt;a href="http://isc.sans.org/diary.html?storyid=3306"&gt;someone responded by coding a virus&lt;/a&gt; or some sort of distributed attack at least. Probably they reverse engineered the patch... didnt see a PoC anywhere.. I could be having a blonde moment though hehe.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=83730"&gt;MS Patches&lt;/a&gt; seem to be testing out Ok, will post of any problems found.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7496320657086350598?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7496320657086350598/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7496320657086350598' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7496320657086350598'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7496320657086350598'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/monster-trend-microsoft.html' title='Monster / Trend / Microsoft'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-2183574921215354889</id><published>2007-08-21T13:51:00.000+01:00</published><updated>2008-11-13T08:11:16.924Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='sonyericsson'/><category scheme='http://www.blogger.com/atom/ns#' term='bluetooth'/><category scheme='http://www.blogger.com/atom/ns#' term='k750i'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='PC suite'/><category scheme='http://www.blogger.com/atom/ns#' term='USB'/><title type='text'>Sonyericsson PC Suite for Vista (K750i)</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/RsrkOJef1pI/AAAAAAAAARE/Er00CJOlmbI/s1600-h/sony-wont-sync.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/RsrkOJef1pI/AAAAAAAAARE/Er00CJOlmbI/s320/sony-wont-sync.jpg" alt="" id="BLOGGER_PHOTO_ID_5101140459663644306" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Finally noticed Sonyericsson has done the right thing and made a version for Windows Vista. All excited I went and installed it... rebooted (wasn't asked).... no worky.&lt;br /&gt;&lt;br /&gt;Switched off bluetooth and tried on the cable... ah need USB drivers... got those... installed... rebooted.... no worky.&lt;br /&gt;&lt;br /&gt;It always fails with "communication failure" which is a bit weird since using the USB cable.&lt;br /&gt;&lt;br /&gt;Smells like Sonyericsson has some coding to do yet. Cant believe how long it is taking for these 3rd parties to sort out their crap honestly.&lt;br /&gt;&lt;br /&gt;Its a new OS, granted, but the beta was out for a loooong time before released to the masses. Wasn't there someone in these companies testing it out? No? What were they doing, oh yes, playing snake or something on their phones lol.&lt;br /&gt;&lt;br /&gt;Kudos to Logitech for coding new software for all their racing wheels and also doing 64 bit versions. Nice to see a company playing ball, one company at least.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-2183574921215354889?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/2183574921215354889/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=2183574921215354889' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2183574921215354889'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/2183574921215354889'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/sonyericsson-pc-suite-for-vista-k750i.html' title='Sonyericsson PC Suite for Vista (K750i)'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/RsrkOJef1pI/AAAAAAAAARE/Er00CJOlmbI/s72-c/sony-wont-sync.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8175553596443964639</id><published>2007-08-20T16:47:00.000+01:00</published><updated>2007-08-20T17:15:07.774+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mailboxes'/><category scheme='http://www.blogger.com/atom/ns#' term='exchange permissions'/><category scheme='http://www.blogger.com/atom/ns#' term='active directory'/><category scheme='http://www.blogger.com/atom/ns#' term='help desk'/><category scheme='http://www.blogger.com/atom/ns#' term='outlook support'/><category scheme='http://www.blogger.com/atom/ns#' term='service desk'/><category scheme='http://www.blogger.com/atom/ns#' term='domain permissions'/><title type='text'>Giving the helpdesk "full control" to the AD</title><content type='html'>Our management wants to give our global help desks control over the AD. So that they can create, move, delete, sendas, access everyone in the company's mailbox.&lt;br /&gt;&lt;br /&gt;How the hell can they think this is a good idea? Giving, what is technically the bottom of the IT pile, almost god rights in the AD? WTF?&lt;br /&gt;&lt;br /&gt;Ok so maybe you can provide a better service for the odd individual, but what about all the messing around with mailboxes? I used to work on the help desk and I used to fiddle with the best of them. They are usually fresh into I.T. so are keen to learn things, and to learn you need to look around and fiddle a bit (or go on a course!).&lt;br /&gt;&lt;br /&gt;The level of access that is being proposed is Full Control over the AD OU structure in all 3 child domains. So not only can they manipulate mail boxes they can give themselves permissions to things, and fiddle with other groups and people's accounts. We obviously have control of the high level groups so they are not at risk (Domain Admins etc).&lt;br /&gt;&lt;br /&gt;Needless to say I'm going back and telling them that they should be looking for a lower level of access. I remember some time ago, going to an MS course, one of the first things we were told was "not to let management push you too much on the design of the AD etc" in reality - almost impossible to actually do. They push and push until your line manager tells you to do it, then what can you do? Pick up written warnings at that stage I guess.&lt;br /&gt;&lt;br /&gt;Don't know where the SARBOX controls sit around this area either, but I bet someone would have some explaining to do on the next audit of AD permissions.&lt;br /&gt;&lt;br /&gt;We'll see where we get to tomorrow.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8175553596443964639?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8175553596443964639/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8175553596443964639' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8175553596443964639'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8175553596443964639'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/giving-helpdesk-full-control-to-ad.html' title='Giving the helpdesk &quot;full control&quot; to the AD'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7788570088951481370</id><published>2007-08-19T10:11:00.000+01:00</published><updated>2008-11-13T08:11:17.090Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='steam'/><category scheme='http://www.blogger.com/atom/ns#' term='xbox live accounts owned'/><category scheme='http://www.blogger.com/atom/ns#' term='accounts'/><category scheme='http://www.blogger.com/atom/ns#' term='live'/><category scheme='http://www.blogger.com/atom/ns#' term='xbox'/><category scheme='http://www.blogger.com/atom/ns#' term='pwned'/><title type='text'>XBOX Live accounts still being pwned</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/RsgMzZef1oI/AAAAAAAAAQM/mNOqZzz3WFk/s1600-h/thieves.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/RsgMzZef1oI/AAAAAAAAAQM/mNOqZzz3WFk/s320/thieves.jpg" alt="" id="BLOGGER_PHOTO_ID_5100340655148750466" border="0" /&gt;&lt;/a&gt;&lt;span id="_user_kf_lists@digitalmunition.com" style="color: rgb(255, 255, 255);"&gt;&lt;span style="color: rgb(51, 51, 153);"&gt;&lt;/span&gt;&lt;br /&gt;Following some discussions on Full Disclosure. Seems like accounts are still being taken over and in some cases Live accounts having some cash taken from (or items bought on behalf of the original owner). This is very similar to any kind of account ownership ownage, it could have been via a phishing attack or other social engineering trick. The problem this time is that most people think this is caused by MS themselves (MS seem to be admitting that too). The hacker calls MS with a few details, and the guy resets the password for them. MS says they are re-training, but surely there's more to it than that? Shouldn't MS be putting in more security measures at the point of contact, or some kind of password that cannot be forgotten. I.E. if you change your email and forget your password - your screwed. Or at least you should be able to provide ALL OTHER information then you MIGHT get your account back. (home address, mothers maiden name, DOB, first pet's name, etc.) You don't hear of Steam accounts getting owned all that often (other than via dumb-asses giving out their info in an IM conversation or similar), at least I've not heard of a Steam account being owned via the provider. Why doesn't MS get it right? The discussion on Full Disclosure was started again by Kevin Finisterre who as it happens, also sparked some news in March with the same issue reported by the BBC here&lt;br /&gt;&lt;br /&gt;Easy enough to say "be vigilant" in keeping your details safe etc, but its not that simple, this is MS's problem as well as the users. They need to improve their account safety (not like MS has had security issues before is it?).&lt;br /&gt;&lt;br /&gt;Anyway its Sunday I got relaxing to do :)&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7788570088951481370?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7788570088951481370/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7788570088951481370' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7788570088951481370'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7788570088951481370'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/xbox-live-accounts-still-being-pwned.html' title='XBOX Live accounts still being pwned'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/RsgMzZef1oI/AAAAAAAAAQM/mNOqZzz3WFk/s72-c/thieves.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7489497112528937026</id><published>2007-08-17T08:46:00.001+01:00</published><updated>2008-11-13T08:11:17.259Z</updated><category scheme='http://www.blogger.com/atom/ns#' term='skype DoS'/><category scheme='http://www.blogger.com/atom/ns#' term='skype outage'/><category scheme='http://www.blogger.com/atom/ns#' term='russian hackers'/><title type='text'>Skype outage last 24 hours</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_geuJs3EAuzY/RsVT8Zef1nI/AAAAAAAAAPs/NI-eNyHv8A8/s1600-h/skype-logo-broken.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://4.bp.blogspot.com/_geuJs3EAuzY/RsVT8Zef1nI/AAAAAAAAAPs/NI-eNyHv8A8/s320/skype-logo-broken.jpg" alt="" id="BLOGGER_PHOTO_ID_5099574450163013234" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;If you are a Skype user, you may have noticed trouble logging in. At first I assumed this was a problem at my end as my colleagues seemed to be still using Skype all ok.&lt;br /&gt;&lt;br /&gt;Then I see the outage page on Skype - &lt;a href="http://heartbeat.skype.com/2007/08/problems_with_skype_login.html"&gt;here&lt;/a&gt; - saying its a software problem. Fair enough.&lt;br /&gt;&lt;br /&gt;Then we see a Proof of Concept for a DoS on Skype - &lt;a href="http://en.securitylab.ru/poc/301420.php"&gt;here &lt;/a&gt;- do we have to assume the 2 are related?&lt;br /&gt;&lt;br /&gt;DoS's are quite funny, in that they generally achieve very little other than pain for the users. Sure there is a security problem with Skype's servers... but is there really any need to take the servers out for all users? I fail to see how the russians could make any money from this, as I doubt Skype will respond to any ransom demands.&lt;br /&gt;&lt;br /&gt;Time will tell.&lt;br /&gt;&lt;br /&gt;{edit}&lt;br /&gt;Just realised people are linking to this post - and I've not put any reference to where I got the PoC from - thanks to Valery Marchuk for posting information on Full Disclosure (not writing the PoC just informing)&lt;br /&gt;{/edit}&lt;br /&gt;&lt;br /&gt;{edit2}&lt;br /&gt;Is it good etiquette to edit posts, I don't know, I'm new at this :)&lt;br /&gt;&lt;br /&gt;Someone called ASCII has just rubbished the PoC mentioned above on the Full Disclosure mailing list &lt;a href="http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065343.html"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Also someone mentioned on another blog somewhere (sorry I forgot where) that there are rumours that MS broke Skype with their patches. Interesting theory if you like to bash MS all the time.&lt;br /&gt;&lt;br /&gt;If we trust Acsii then Skype must indeed be having software problems, just an interesting co-incidence? As I said earlier, time will tell :)&lt;br /&gt;{/edit2}&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7489497112528937026?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7489497112528937026/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7489497112528937026' title='75 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7489497112528937026'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7489497112528937026'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/skype-outage-last-24-hours.html' title='Skype outage last 24 hours'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_geuJs3EAuzY/RsVT8Zef1nI/AAAAAAAAAPs/NI-eNyHv8A8/s72-c/skype-logo-broken.jpg' height='72' width='72'/><thr:total>75</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-372716569831300630</id><published>2007-08-15T09:18:00.000+01:00</published><updated>2008-11-13T08:11:19.697Z</updated><title type='text'>Domain Admins privs in Windows</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_geuJs3EAuzY/RsQCwZef1lI/AAAAAAAAAN0/5A9Q8EhCxUg/s1600-h/brokenlock.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_geuJs3EAuzY/RsQCwZef1lI/AAAAAAAAAN0/5A9Q8EhCxUg/s320/brokenlock.jpg" alt="" id="BLOGGER_PHOTO_ID_5099203708586022482" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Oh my god I'm getting sick of the bleating from various parties about not having Domain Admin rights. Man they can fuck off royally.&lt;br /&gt;&lt;br /&gt;We have a 4 domain model, parent child, so the Enterprise Admins are at a higher level (there are only 5 Ent Admins globally). So the Americans give out Domain Admins to their domain on the back of corn flakes packets but in the UK we only give it out to people we know and trust. Enterprise Admins we have to trust 1000% or they just don't get the rights.&lt;br /&gt;&lt;br /&gt;We have the Americans moaning about Dom Admins (in the other domains) and our new 3rd party moaning about it too. Just cos it makes their fucking jobs easier, or so they can snoop around I suppose. How about go and learn how windows works and show some fucking integrity before asking for something you don't know how to use? The 3rd party I'm talking about are a tier 1 support company and they are the biggest bunch of useless arses I've ever had the dis-pleasure of having to work with. Bring back the old contracts and companies all is forgiven.&lt;br /&gt;&lt;br /&gt;Dammit a rant does make you feel better doesnt it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-372716569831300630?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/372716569831300630/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=372716569831300630' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/372716569831300630'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/372716569831300630'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/domain-admins-privs-in-windows.html' title='Domain Admins privs in Windows'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_geuJs3EAuzY/RsQCwZef1lI/AAAAAAAAAN0/5A9Q8EhCxUg/s72-c/brokenlock.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8597350814024942207</id><published>2007-08-13T08:37:00.000+01:00</published><updated>2007-08-13T08:46:33.704+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='sp1'/><title type='text'>Vista SP1 leaked...</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;Looks like SP1 has leaked to the masses, well some people anyway. Still in beta the reports are good.&lt;br /&gt;&lt;br /&gt;MS have been playing down the whole "Vista needs a service pack" thing, but looks like they are caving and might even have done a good job.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://apcmag.com/6929/vista_sp1_in_depth"&gt;http://apcmag.com/6929/vista_sp1_in_depth&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Enjoy :D&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8597350814024942207?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8597350814024942207/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8597350814024942207' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8597350814024942207'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8597350814024942207'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/vista-sp1-leaked.html' title='Vista SP1 leaked...'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5779952531875782846</id><published>2007-08-13T07:55:00.000+01:00</published><updated>2007-08-13T08:19:32.872+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='identity'/><category scheme='http://www.blogger.com/atom/ns#' term='privacy'/><title type='text'>Privacy on the net</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;Do you ever wonder how easy it would be to "find yourself" on the net? (not in the spiritual sense!)&lt;br /&gt;&lt;br /&gt;I know where I have used my aliases, and I know how they all fit together so its quite easy for me to search for myself and see who I am. But how easy would it be for someone else to approach and tell me who I am from my information on the net? (not someone reading this who already knows me that would be cheating!).&lt;br /&gt;&lt;br /&gt;I think I'm fairly loose with my privacy on the net, so I don't think it would be that hard for someone who doesn't know me already to find out my name and address (or one of my previous). I think I manage to keep my full name hidden most of the time, but I bet I've slipped up somewhere and its there for everyone to see.&lt;br /&gt;&lt;br /&gt;Is all this important though? I have nothing to hide, I'm a mainly law abiding person, what should I have to hide? Perhaps someone could steal my identity with what they find, but they would need something more than just my on-line presence to get that surely?&lt;br /&gt;&lt;br /&gt;Just my thought for the day anyway. If someone mails me with something scary I will no doubt go out there and remove everything I have ever signed up to... then become a paranoid net user...&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5779952531875782846?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5779952531875782846/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5779952531875782846' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5779952531875782846'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5779952531875782846'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/privacy-on-net.html' title='Privacy on the net'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8268425576240505232</id><published>2007-08-10T16:36:00.000+01:00</published><updated>2007-08-10T16:39:48.828+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='bad coding'/><category scheme='http://www.blogger.com/atom/ns#' term='Internet Explorer'/><title type='text'>FTPing with IE6 - safe? Nope...</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;Just noticed a post on one of the mailing lists, could have been FunSec, linking to &lt;a href="http://blog.washingtonpost.com/securityfix/2007/08/ftp_files_expose_web_site_cred.html"&gt;this&lt;/a&gt;. Basically, and I've not tested but will soon, apparently IE6 stores your ID and PW inside the downloaded file over FTP. WOW thats a biggie. I hope if your a web site administrator, then your not using IE6 to download/edit/upload html to your site as it could be exposing your ID and PW.&lt;br /&gt;&lt;br /&gt;I'm going to have to nip through all my sites and check now as I might have used IE as a quick fix at some point... DOH!!&lt;br /&gt;&lt;br /&gt;Duck folks, new patches coming next week - 9 OF THEM!! dooooooohhhh&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8268425576240505232?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8268425576240505232/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8268425576240505232' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8268425576240505232'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8268425576240505232'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/ftping-with-ie6-safe-nope.html' title='FTPing with IE6 - safe? Nope...'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-7816064178925837027</id><published>2007-08-03T07:50:00.000+01:00</published><updated>2007-08-03T07:54:23.992+01:00</updated><title type='text'>Hey I can admit when I'm wrong</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;So maybe I wasn't totally right. My Vista machine does seem.. well.. very slightly more reliable. Suspending, resuming then the wireless working is actually slightly more reliable. Its certainly doesnt feel any faster.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.alienware.co.uk/product_detail_pages/Area-51_m9750/area-51m_overview.aspx?SysCode=PC-EU-LT-A51M9750&amp;amp;SubCode=SKU-DEFAULT"&gt;Here's a link&lt;/a&gt; to the Alienware badboy I was on about yesterday - yummy indeed.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-7816064178925837027?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/7816064178925837027/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=7816064178925837027' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7816064178925837027'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/7816064178925837027'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/hey-i-can-admit-when-im-wrong.html' title='Hey I can admit when I&apos;m wrong'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-6539679299639868537</id><published>2007-08-02T15:29:00.000+01:00</published><updated>2007-08-02T15:48:10.957+01:00</updated><title type='text'>2 x New patches for Vista</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;MS are planning to release 2 patches for Vista - KB938194 &amp;amp; KB938979. They apparently are performance improvements and compatibility updates... beware they force driving signing if you find the leaked versions on the net anywhere and install them (no overclocking without pressing F8 on every boot).&lt;br /&gt;&lt;br /&gt;So I installed them, knowing full well that my dual core lappy takes 5 mins + to get to a desktop (if the same machine has XP on it runs in under 30 seconds).&lt;br /&gt;&lt;br /&gt;Yawn. More of the same, in fact I didnt notice a SINGLE DIFFERENCE.&lt;br /&gt;&lt;br /&gt;In MS's defence, a friend at work experienced much better performance with his Standby and Resume functions as well as using Wireless networks etc. I have noticed absolutely nothing.&lt;br /&gt;&lt;br /&gt;Maybe I was lucky and my machine was already playing ball, but I dont think so. It still fails to work on wireless after a resume often, and still takes 5+ mins to boot up. Unacceptable in my humble opinion.&lt;br /&gt;&lt;br /&gt;If I didnt love Vista's look and feel so much, I'd be going back to XP tomorrow (and its a pain in the ass to get the VPN software configured etc). I want a machine that works - works fast and reliable - is that too much to ask?&lt;br /&gt;&lt;br /&gt;I'm going back over to Alienware's site to configure me a £3,000 lappy again and drool over the spec... yummy....&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-6539679299639868537?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/6539679299639868537/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=6539679299639868537' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6539679299639868537'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/6539679299639868537'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/08/2-x-new-patches-for-vista.html' title='2 x New patches for Vista'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-1918366803229468675</id><published>2007-07-25T08:22:00.000+01:00</published><updated>2007-07-25T08:27:27.131+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='shit'/><title type='text'>Bloody Vista</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;Man someone should tell MS how to bug test, honestly.&lt;br /&gt;&lt;br /&gt;Couple of little things pissing me off this morning in Vista, both to do with the Terminal Services client.&lt;br /&gt;&lt;br /&gt;1. ALT Tab away from an RDP session and back again, and the ALT key has been pressed. So when working you don't always realise ALT has been pressed and other crap happens you didn't expect.&lt;br /&gt;&lt;br /&gt;2. The clip board between the local machine and the RDP doesn't always work, how annoying is that when you are trying to work!!!&lt;br /&gt;&lt;br /&gt;Never mind all the other bollocks - like the Wireless not always working, the looooooong boot up time (5 mins plus), suspend sometimes getting its knickers in a twist.. and heavens sake don't get me started on 3rd parties and their slowness to write some bloody compatible software.&lt;br /&gt;&lt;br /&gt;Ah feel better after that little rant... even though no one reads this hehe.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-1918366803229468675?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/1918366803229468675/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=1918366803229468675' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1918366803229468675'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/1918366803229468675'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/07/bloody-vista.html' title='Bloody Vista'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-196478437453628887</id><published>2007-07-24T08:21:00.000+01:00</published><updated>2007-07-24T08:26:22.619+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Kerberos'/><category scheme='http://www.blogger.com/atom/ns#' term='AD'/><category scheme='http://www.blogger.com/atom/ns#' term='exchange'/><category scheme='http://www.blogger.com/atom/ns#' term='Outlook'/><category scheme='http://www.blogger.com/atom/ns#' term='Mail'/><title type='text'>Kerberos anyone?</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;We've recently migrated from Lotus Notes to Outlook/Exchange. Oh what a laugh.&lt;br /&gt;&lt;br /&gt;As we are getting close to the end of the road with the migration, they migrated all the Distribution Lists over. OMG what a mess. We now have people not being able to log on to their machines, some people cannot connect to Exchange using Kerberos and we have issues with people from other child domains editing their Dist Lists in the main domain hosting Exchange.&lt;br /&gt;&lt;br /&gt;Its all to do with Token sizes, being in too many groups and things like that (except the cross domain thing, thats a limitation in Outlook).&lt;br /&gt;&lt;br /&gt;Its basically boiling down to AD and Exchange just not being very good at doing what its supposed to do. Put 40,000 users into 3 domains and install exchange for yourself and you'll see what I mean. We all thought Lotus Notes was bad, but come back IBM all is forgiven. :D&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-196478437453628887?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/196478437453628887/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=196478437453628887' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/196478437453628887'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/196478437453628887'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/07/kerberos-anyone.html' title='Kerberos anyone?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-5619314146250950875</id><published>2007-07-23T07:39:00.001+01:00</published><updated>2007-07-23T07:49:07.223+01:00</updated><title type='text'>Data Centre Migration</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;Does appear that we've done it. Migrated circa 300 Servers to another data centre in under 3 months. Mixture of Windows 2000, 2003 and Unix systems, all moved and up and running live 3000 miles away. All completed with very little preparation time what-so-ever.&lt;br /&gt;&lt;br /&gt;About 40% of the servers were "P2V"d into a Vmware ESX Server farm, if it wasn't for Vmware technologies I think we'd still be going the work!&lt;br /&gt;&lt;br /&gt;Finished migrating the major SAP systems last night and I also migrated a group of Citrix users over to follow the SAP systems.&lt;br /&gt;&lt;br /&gt;This was all done under considerable pressure from management to complete the task, which I think adds to the success.&lt;br /&gt;&lt;br /&gt;All a good set of stuff to have on the CV at the end of the day.&lt;br /&gt;&lt;br /&gt;From a Security point of view there's probably a few things we shouldn't have done, but if we hadn't we wouldn't be where we are today. The challenge now is to re-visit everything and ensure its up to standard with Security.&lt;br /&gt;&lt;br /&gt;All good fun.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-5619314146250950875?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/5619314146250950875/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=5619314146250950875' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5619314146250950875'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/5619314146250950875'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/07/data-centre-migration.html' title='Data Centre Migration'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-8043556740496811557</id><published>2007-07-19T08:31:00.001+01:00</published><updated>2007-07-19T09:01:23.260+01:00</updated><title type='text'>Microsoft patching.. ok but what about the rest?</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family:verdana;"&gt;Yes, we're now all patching Microsoft technologies. But are we patching the rest? Really?&lt;br /&gt;&lt;br /&gt;Susan Bradley mentioned this recently on the Patch Management mailing list and it wasn't really picked up that well buy the others (she's good she is).&lt;br /&gt;&lt;br /&gt;We all use SMS or WSUS to patch our clients and servers, or some patch management solution at least. What happens when there is a bug in Adobe Actrobat Reader though, are you patching that? Oh I see your letting your users patch it... so they have admin rights do they? More issues for that setup then.&lt;br /&gt;&lt;br /&gt;So you have Adobe under control. What about Quicktime? Flash player? Shockwave player?&lt;br /&gt;&lt;br /&gt;I know that at my work, we don't do anything other than MS patching. I worry about this on a daily basis, but what can I do with no funding and no resource? Wait for a large virus outbreak attacking Adobe Reader probably. Then the management will stand up and say "oh shit we need to patch this too".&lt;br /&gt;&lt;br /&gt;Then there's things like Anti Virus, Java and all the other 3rd party apps that companies like to have on machines all over the shop.&lt;br /&gt;&lt;br /&gt;Patching Windows + MS is one thing, the rest... well.. its up to you! (or management really).&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-8043556740496811557?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/8043556740496811557/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=8043556740496811557' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8043556740496811557'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/8043556740496811557'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/07/microsoft-patching-ok-but-what-about.html' title='Microsoft patching.. ok but what about the rest?'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3897089587359619397</id><published>2007-07-18T08:30:00.000+01:00</published><updated>2007-07-18T08:34:30.659+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='virus'/><category scheme='http://www.blogger.com/atom/ns#' term='anti virus'/><category scheme='http://www.blogger.com/atom/ns#' term='AV'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='best practice'/><title type='text'>Best practice for Anti Virus</title><content type='html'>&lt;span style="font-size:85%;"&gt;&lt;span style="font-family: verdana;"&gt;Perhaps someone reading this can clear this up for me.&lt;br /&gt;&lt;br /&gt;I've always pushed the idea of having separate anti virus products on Servers than on Clients. Not sure why, I think I read it somewhere as being considered best practice. However, I've since posted on the "Anti Virus" mailing list, and they were all running McAfee across the board.&lt;br /&gt;&lt;br /&gt;I realise that if you have a problem with virus definitions on one product, and you lose all your servers, then theres not much work can be done anyway but the users who are still working on their machines (and vice versa). But surely, if that was to happen, the problem and resulting fix would be a smaller fix?&lt;br /&gt;&lt;br /&gt;Is it not a good idea to spread out the eggs across a couple of baskets?&lt;br /&gt;&lt;br /&gt;Reason I bring this up, I've been overruled at work and some manager has decided to go the McAfee route, without talking to the technical teams, just doing it. That is not how to run a department.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3897089587359619397?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3897089587359619397/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3897089587359619397' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3897089587359619397'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3897089587359619397'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/07/best-practice-for-anti-virus.html' title='Best practice for Anti Virus'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4148424464516754007.post-3899277573062956100</id><published>2007-07-17T22:49:00.000+01:00</published><updated>2007-07-17T22:51:08.233+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='new blog'/><title type='text'>New Blog</title><content type='html'>&lt;span style="font-family: verdana;"&gt;&lt;span style="font-size:85%;"&gt;Gonna take a wee look at using this Google job then. Have been using Live but not liking the photo side of things much. Will get into posting soon enough ;)&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4148424464516754007-3899277573062956100?l=colsec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://colsec.blogspot.com/feeds/3899277573062956100/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4148424464516754007&amp;postID=3899277573062956100' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3899277573062956100'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4148424464516754007/posts/default/3899277573062956100'/><link rel='alternate' type='text/html' href='http://colsec.blogspot.com/2007/07/new-blog.html' title='New Blog'/><author><name>Col</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
