<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Brunch Table &#187; security</title>
	<atom:link href="http://retrovirus.com/brunch/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://retrovirus.com/brunch</link>
	<description></description>
	<lastBuildDate>Thu, 08 Apr 2010 21:46:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>A Cautionary Tale</title>
		<link>http://retrovirus.com/brunch/2007/04/a-cautionary-tale/</link>
		<comments>http://retrovirus.com/brunch/2007/04/a-cautionary-tale/#comments</comments>
		<pubDate>Fri, 20 Apr 2007 12:37:58 +0000</pubDate>
		<dc:creator>Nick</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://retrovirus.com/brunch/2007/04/a-cautionary-tale/</guid>
		<description><![CDATA[Warning: don&#8217;t do a whois search using a web form on an unknown site. Last week I was helping my aunt buy a domain name for her first web page, and I idly did a whois search for &#8220;sheilafox.com&#8221; using a page that I picked randomly out of some search results. That was a mistake. [...]]]></description>
			<content:encoded><![CDATA[<p>Warning: don&#8217;t do a whois search using a web form on an unknown site.  </p>

<p>Last week I was helping my aunt buy a domain name for her first web page, and I idly did a whois search for &#8220;sheilafox.com&#8221; using a page that I picked randomly out of some search results.  That was a mistake.  The search woke up a mysterious entity with a PO box in the British West Indies and a phone number in the Netherlands.  It bought up the name that instant.  Dreamhost confirms that this is a common scam.  </p>

<p>I imagine these things must have some rules for evaluating the desirability&#8211;and therefore the ransom value&#8211;of a domain, right?  Otherwise, wouldn&#8217;t they lose money buying up random losers like <a href="http://video.google.com/videoplay?docid=7333522659474918080&amp;hl=en-CA">this</a>?</p>

<p><b>Update:</b> Turns out that many of these domain-purchasing bots take advantage of &#8220;free tryout&#8221; periods to evaluate a name for ad-revenue potential.  Underperformers are tossed back into the sea&#8230;so if you lose a name to this kind of scam, keep whois-ing (from your own trusty terminal, of course).  I recovered sheilafox.com a month later.</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2007/04/a-cautionary-tale/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>TSA SKU</title>
		<link>http://retrovirus.com/brunch/2007/02/tsa-sku/</link>
		<comments>http://retrovirus.com/brunch/2007/02/tsa-sku/#comments</comments>
		<pubDate>Mon, 12 Feb 2007 02:24:37 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[business]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[transportation]]></category>

		<guid isPermaLink="false">http://retrovirus.com/brunch/2007/02/tsa-sku/</guid>
		<description><![CDATA[The last time that I boarded an airplane was the very day of the alleged liquid explosives scare. (On that day we ended up just checking all our bags for simplicity&#8217;s sake.) As I&#8217;ve been packing and shopping for my first air trip since then, I&#8217;m surprised that more toiletry makers haven&#8217;t added sub-3oz TSA [...]]]></description>
			<content:encoded><![CDATA[<p>The last time that I boarded an airplane was the very day of the <a href="http://en.wikipedia.org/wiki/2006_transatlantic_aircraft_plot">alleged liquid explosives scare</a>.  (On that day we ended up just checking all our bags for simplicity&#8217;s sake.)  As I&#8217;ve been packing and shopping for my first air trip since then, I&#8217;m surprised that more toiletry makers haven&#8217;t added sub-3oz TSA <a href="http://en.wikipedia.org/wiki/Stock_Keeping_Unit">SKU</a>s to their product lines by now.  Even the empty plastic bottles that Walgreens had were all 4oz.  Is it a conspiracy to keep people buying new supplies at their destination, or just a demonstration of how long it takes to retool the production lines?  At least the plastic bag makers know what&#8217;s up:<br /><br />
<a href="http://www.flickr.com/photos/joehughes/387389029/" title="Photo Sharing"><img src="http://farm1.static.flickr.com/126/387389029_8daf17d98c_m.jpg" width="240" height="180" alt="TSA SKU" /></a><br />
That&#8217;s what I&#8217;m talkin&#8217; &#8217;bout.</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2007/02/tsa-sku/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Slow Disaster</title>
		<link>http://retrovirus.com/brunch/2005/09/disaster/</link>
		<comments>http://retrovirus.com/brunch/2005/09/disaster/#comments</comments>
		<pubDate>Fri, 02 Sep 2005 02:52:53 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[plague]]></category>
		<category><![CDATA[politics]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://retrovirus.com/brunch/?p=303</guid>
		<description><![CDATA[I&#8217;ve been engrossed in work this week, so I&#8217;m only now realizing how badly things are going in the aftermath of Katrina. Like many others, apparently, I saw the reports that New Orleans hadn&#8217;t been completely leveled, breathed a premature sigh of relief, and went back to what I was doing. And then the flooding [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve been engrossed in work this week, so I&#8217;m only now realizing how badly things are going in the aftermath of Katrina.  Like many others, apparently, I saw the reports that New Orleans hadn&#8217;t been completely leveled, breathed a premature sigh of relief, and went back to what I was doing.</p>

<p>And then the flooding began in earnest.</p>

<p>What surprises me most is how disorganized the official response seems to have been so far&#8212;JWZ has <a href="http://www.livejournal.com/users/jwz/533128.html">a good roundup</a>.  I hope there are serious political repercussions from this&#8212;this is what governments are supposed to be good for, after all.</p>

<p>I used to think that J. G. Ballard&#8217;s <a href="http://www.amazon.com/exec/obidos/tg/detail/-/0030206510/"><em>High Rise</em></a> was merely a vicious satire, but then I read <a href="http://seattletimes.nwsource.com/html/nationworld/2002463400_katrinasuperdome01.html">&#8220;Trapped in the Superdome&#8221;</a>.  (Fortunately, it does sound like they&#8217;re working on getting people out of there now.)</p>

<p>And <a href="http://retrovirus.com/brunch/2005/07/post-apocalyptic-southern-florida/">once again</a>, we see <a href="http://www.hattiesburgamerican.com/apps/pbcs.dll/article?AID=/20050901/NEWS01/312/1002">struggles over ice</a>.</p>

<p>It&#8217;s unnerving to watch the fabric of civilization unravel at the edge of our country.</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2005/09/disaster/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>NYPD Flash Mobs</title>
		<link>http://retrovirus.com/brunch/2004/07/nypd-flash-mobs/</link>
		<comments>http://retrovirus.com/brunch/2004/07/nypd-flash-mobs/#comments</comments>
		<pubDate>Sat, 31 Jul 2004 15:55:05 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">/?p=240</guid>
		<description><![CDATA[According to this article, the NYPD has recently been conducting odd flash mob style military parades that they&#8217;re calling &#8220;critical force surges&#8221;. Check out the similarities to the typical flash mob setup:The dates, times and locations of these deployments are kept secret until the moment a mobilization is called over division radio frequencies. &#8230; Once [...]]]></description>
			<content:encoded><![CDATA[<p>According to <a href="http://www.v-2.org/displayArticle.php?article_num=776">this article</a>, the NYPD has recently been conducting odd <a href="http://en.wikipedia.org/wiki/Flash_mob">flash mob</a> style military parades that they&#8217;re calling &#8220;critical force surges&#8221;.  Check out the similarities to the typical flash mob setup:<blockquote>The dates, times and locations of these deployments are kept secret until the moment a mobilization is called over division radio frequencies. &#8230; Once all units have responded they are given specific instructions to create a presence on the street.</blockquote>While these exercises do test the response speed of NYPD forces, there&#8217;s more to it than that, as described by a supposed NYPD bulletin:<blockquote>The purpose is to basically intimidate those individuals who would even contemplate any kind of criminal activity and to send a message to potential terrorists that the NYPD can rapidly respond to virtually any situation.</blockquote></p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2004/07/nypd-flash-mobs/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>TerrorToons</title>
		<link>http://retrovirus.com/brunch/2003/02/terrortoons/</link>
		<comments>http://retrovirus.com/brunch/2003/02/terrortoons/#comments</comments>
		<pubDate>Fri, 21 Feb 2003 04:22:48 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">/?p=59</guid>
		<description><![CDATA[Since Homeland Security's <a href="http://www.ready.gov/">terror-preparedness site</a> has generously provided us with hilarious <a href="http://www.airtoons.com/">Airtoons</a>-like <a href="http://www.ready.gov/radiation_visual.html">safety graphics</a>, it's time to <a href="http://www.livejournal.com/talkread.bml?journal=jwz&#38;itemid=159449">go</a> <a href="http://www.kieranhealy.org/blog/archives/000290.html#000290">to</a> <a href="http://www.idlewords.com/nuclear_blast.htm">town</a>.]]></description>
			<content:encoded><![CDATA[<p>Since Homeland Security&#8217;s <a href="http://www.ready.gov/">terror-preparedness site</a> has generously provided us with hilarious <a href="http://www.airtoons.com/">Airtoons</a>-like <a href="http://www.ready.gov/radiation_visual.html">safety graphics</a>, it&#8217;s time to <a href="http://www.livejournal.com/talkread.bml?journal=jwz&amp;itemid=159449">go</a> <a href="http://www.kieranhealy.org/blog/archives/000290.html#000290">to</a> <a href="http://www.idlewords.com/nuclear_blast.htm">town</a>.  <strong>Update:</strong> <a href="http://davezilla.com/index.php?p=1637&amp;c=1">These</a> <a href="http://www.yayhooray.com/thread.php?id=2484">things</a> <a href="http://blog.lordsutch.com/?entryid=273">are</a> <a href="http://www.shortstrangetrip.org/archives/000600.html">popping</a> up everywhere!</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2003/02/terrortoons/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Survival Guide for &#8220;Weapons of Mass Destruction&#8221;</title>
		<link>http://retrovirus.com/brunch/2003/02/survival-guide-for-weapons-of-mass-destruction/</link>
		<comments>http://retrovirus.com/brunch/2003/02/survival-guide-for-weapons-of-mass-destruction/#comments</comments>
		<pubDate>Sun, 16 Feb 2003 21:37:12 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">/?p=55</guid>
		<description><![CDATA[In the hopes of countering some of this duct tape hysteria, here are some hard facts on chemical, biological, and nuclear attacks. (via Boing Boing)]]></description>
			<content:encoded><![CDATA[<p>In the hopes of countering some of this duct tape hysteria, here are some <a href="http://arpa.com/misc/realitycheck.html">hard facts on chemical, biological, and nuclear attacks</a>.  (via <a href="http://www.boingboing.net">Boing Boing</a>)</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2003/02/survival-guide-for-weapons-of-mass-destruction/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>My Kafka-esque Amazon Hell</title>
		<link>http://retrovirus.com/brunch/2003/01/my-kafka-esque-amazon-hell/</link>
		<comments>http://retrovirus.com/brunch/2003/01/my-kafka-esque-amazon-hell/#comments</comments>
		<pubDate>Sat, 11 Jan 2003 20:04:01 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">/?p=37</guid>
		<description><![CDATA[Like some pulp sci-fi character, I&#8217;m now trapped in the paradoxical position of having hijacked my own identity. At some point in the past few weeks, instead of logging into my existing Amazon.com account, I somehow accidentally created a new account with the same email address, and probably the same password. I first noticed that [...]]]></description>
			<content:encoded><![CDATA[<p>Like some pulp sci-fi character, I&#8217;m now trapped in the paradoxical position of having hijacked my own identity.</p>

<p>At some point in the past few weeks, instead of logging into my existing Amazon.com account, I somehow accidentally created a new account <em>with the same email address</em>, and probably the same password.  I first noticed that something was up when the site stopped chummily calling me &#8220;Joe Hughes&#8221; and started using my email address.  Furthermore, when I tried to add something to my wish list, I discovered that it was now empty.  (I can still view, but not alter, my proper wish list by searching for myself.)  In fact, this new account contains almost nothing besides my email address and password.  After my first exchange with their customer service, I asked:<blockquote>Why is it possible to have two accounts on one email address?  In any case, could you delete the account which doesn&#8217;t have a wish list?</blockquote>Their response:<blockquote>Unfortunately, at this time, we will not be able to close the duplicate accounts under your email address because this extra account has no verifiable information on it.</blockquote>I suppose I&#8217;ll have to have a little chat with them.  I&#8217;d be tempted to just give up on them entirely, but I have some gift certificates from Christmas that I still need to cash in.</p>

<p>In the meantime, I&#8217;ve been enjoying my recent purchases from <a href="http://www.cdbaby.com/">CD Baby</a> immensely.</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2003/01/my-kafka-esque-amazon-hell/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Backing Up Our Monuments</title>
		<link>http://retrovirus.com/brunch/2003/01/backing-up-our-monuments/</link>
		<comments>http://retrovirus.com/brunch/2003/01/backing-up-our-monuments/#comments</comments>
		<pubDate>Tue, 07 Jan 2003 20:46:47 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">/?p=31</guid>
		<description><![CDATA[According to this AP story, the Statue of Liberty, Mount Rushmore, and the Capitol building have all been 3D-scanned. Presumably, this would make it easier to reconstruct them accurately if they were damaged by an attack. (It&#8217;s not clear to me whether the project was prompted by the Sept. 11 attacks, or whether this angle [...]]]></description>
			<content:encoded><![CDATA[<p>According to <a href="http://www.nytimes.com/aponline/national/AP-Lady-Liberty-Replica.html">this AP story</a>, the Statue of Liberty, Mount Rushmore, and the Capitol building have all been 3D-scanned.  Presumably, this would make it easier to reconstruct them accurately if they were damaged by an attack.  (It&#8217;s not clear to me whether the project was prompted by the Sept. 11 attacks, or whether this angle is just spin.)</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2003/01/backing-up-our-monuments/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Fooling Fingerprint Readers With $10 Gummi Fingers</title>
		<link>http://retrovirus.com/brunch/2002/05/fooling-fingerprint-readers-with-10-gummi-fingers/</link>
		<comments>http://retrovirus.com/brunch/2002/05/fooling-fingerprint-readers-with-10-gummi-fingers/#comments</comments>
		<pubDate>Thu, 16 May 2002 04:51:00 +0000</pubDate>
		<dc:creator>Joe</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">/?p=10</guid>
		<description><![CDATA[Apparently, you don&#8217;t even need to cut off someone else&#8217;s finger to fool one of those high-tech fingerprint scanners&#8211;fingertip copies made of gelatin will do the job. Japanese cryptographer Tsutomu Matsumoto was able to reliably fool eleven different commercially available fingertip scanners using $10 worth of readily available materials. He was even able to use [...]]]></description>
			<content:encoded><![CDATA[<p>Apparently, you don&#8217;t even need to cut off someone else&#8217;s finger to fool one of those high-tech fingerprint scanners&#8211;<a href="http://www.counterpane.com/crypto-gram-0205.html#5">fingertip copies made of gelatin</a> will do the job.  Japanese cryptographer Tsutomu Matsumoto was able to reliably fool eleven different commercially available fingertip scanners using $10 worth of readily available materials.  He was even able to use fingerprints to make gummi fingers that fooled the readers.  Oops.</p>
]]></content:encoded>
			<wfw:commentRss>http://retrovirus.com/brunch/2002/05/fooling-fingerprint-readers-with-10-gummi-fingers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Served from: retrovirus.com @ 2012-05-22 17:29:43 -->
