<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>A Fool's Wisdom &#187; Security</title>
	<atom:link href="http://foolswisdom.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://foolswisdom.com</link>
	<description>A fool and his blog are soon parted.</description>
	<lastBuildDate>Mon, 12 Dec 2011 22:39:23 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
		<item>
		<title>Inertial Measurement Units</title>
		<link>http://foolswisdom.com/inertial-measurement-units/</link>
		<comments>http://foolswisdom.com/inertial-measurement-units/#comments</comments>
		<pubDate>Wed, 09 Mar 2011 23:57:16 +0000</pubDate>
		<dc:creator>Lloyd</dc:creator>
				<category><![CDATA[Computing]]></category>
		<category><![CDATA[Consuming]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Atomic clock time]]></category>
		<category><![CDATA[eLORAN]]></category>
		<category><![CDATA[Global Positioning System]]></category>
		<category><![CDATA[GPS]]></category>
		<category><![CDATA[GPS Jammers]]></category>
		<category><![CDATA[GPS Spoofer]]></category>
		<category><![CDATA[IMU]]></category>
		<category><![CDATA[Inertial Measurement Units]]></category>
		<category><![CDATA[Location]]></category>
		<category><![CDATA[Radio waves]]></category>
		<category><![CDATA[Satellite signals]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Weak radio signals]]></category>

		<guid isPermaLink="false">http://foolswisdom.com/?p=2995</guid>
		<description><![CDATA[Happily, a few decades from now a GPS signal might not be required at all for many things. If atomic clocks get cheaper, then they could be built into everything that needs accurate time. And eventually you&#8217;ll be able to &#8230; <a href="http://foolswisdom.com/inertial-measurement-units/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<blockquote><p>Happily, a few decades from now a GPS signal might not be required at all for many things. If atomic clocks get cheaper, then they could be built into everything that needs accurate time. And eventually you&#8217;ll be able to navigate without any external signals, thanks to devices called &#8220;inertial measurement units&#8221;, which track your movements from a known start point. Today, these IMUs use gyroscopes to measure orientation, plus accelerometers to tell how fast it is accelerating. Using this information, plus time, the acceleration is converted into speed and distance to reveal relative location.<br />
<cite>David Hambling&#8217;s NewScientist article &#8220;<a href="http://www.newscientist.com/article/dn20202-gps-chaos-how-a-30-box-can-jam-your-life.html?full=true">GPS chaos: How a $30 box can jam your life</a>&#8220;</cite>
</p></blockquote>
<p>I bet it&#8217;s a lot sooner than &#8220;a few decades&#8221;.</p>
<p>The article was a real eye opener for me on our dependency on GPS, and how fragile the technology is.</p>
]]></content:encoded>
			<wfw:commentRss>http://foolswisdom.com/inertial-measurement-units/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Inners of a Small Computer Security Firm</title>
		<link>http://foolswisdom.com/hgary/</link>
		<comments>http://foolswisdom.com/hgary/#comments</comments>
		<pubDate>Tue, 01 Mar 2011 19:41:38 +0000</pubDate>
		<dc:creator>Lloyd</dc:creator>
				<category><![CDATA[Computing]]></category>
		<category><![CDATA[0-day exploits]]></category>
		<category><![CDATA[Aaron Bar]]></category>
		<category><![CDATA[Anonymous group]]></category>
		<category><![CDATA[Ars Technica]]></category>
		<category><![CDATA[bad passwords]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[Computer Security]]></category>
		<category><![CDATA[Email Administration]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Greg Hoglund]]></category>
		<category><![CDATA[hash salting]]></category>
		<category><![CDATA[Joseph Bonneau]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Nate Anderson]]></category>
		<category><![CDATA[password hashes]]></category>
		<category><![CDATA[Peter Bright]]></category>
		<category><![CDATA[rainbow tables]]></category>
		<category><![CDATA[rootkit.com]]></category>
		<category><![CDATA[rootkits]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Social engineering]]></category>
		<category><![CDATA[SQL injection]]></category>
		<category><![CDATA[System Administration]]></category>
		<category><![CDATA[unsalted password hashes]]></category>
		<category><![CDATA[WikiLeaks]]></category>

		<guid isPermaLink="false">http://foolswisdom.com/?p=2987</guid>
		<description><![CDATA[From: Greg To: Jussi Subject: need to ssh into rootkit im in europe and need to ssh into the server. can you drop open up firewall and allow ssh through port 59022 or something vague? and is our root password &#8230; <a href="http://foolswisdom.com/hgary/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<pre>From: Greg
To: Jussi
Subject: need to ssh into rootkit
im in europe and need to ssh into the server. can you drop open up
firewall and allow ssh through port 59022 or something vague?
and is our root password still 88j4bb3rw0cky88 or did we change to
88Scr3am3r88 ?
thanks</pre>
<pre>From: Jussi
To: Greg
Subject: Re: need to ssh into rootkit
hi, do you have public ip? or should i just drop fw?
and it is w0cky - tho no remote root access allowed</pre>
<pre>From: Greg
To: Jussi
Subject: Re: need to ssh into rootkit
no i dont have the public ip with me at the moment because im ready
for a small meeting and im in a rush.
if anything just reset my password to changeme123 and give me public
ip and ill ssh in and reset my pw.</pre>
<pre>From: Jussi
To: Greg
Subject: Re: need to ssh into rootkit
ok,
it should now accept from anywhere to 47152 as ssh. i am doing
testing so that it works for sure.
your password is changeme123

i am online so just shoot me if you need something.

in europe, but not in finland? <img src='http://foolswisdom.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> 

_jussi</pre>
<pre>...</pre>
<p>I stayed up much too late last night reading the fascinating Anonymous vs Aaron Bar, HGary, HBGary Federal, Greg Hoglund, rootkit.com well researched and written articles on Ars Technica, mostly by Nate Anderson. (Fascinating at least to a software developer, particularly web developer.)</p>
<p>Start with &#8220;<a href="http://arstechnica.com/tech-policy/news/2011/02/how-one-security-firm-tracked-anonymousand-paid-a-heavy-price.ars">How one man tracked down Anonymous—and paid a heavy price</a>&#8220;, then read &#8220;<a href="http://arstechnica.com/tech-policy/news/2011/02/anonymous-speaks-the-inside-story-of-the-hbgary-hack.ars/">Anonymous speaks: the inside story of the HBGary hack</a>&#8221; by Peter Bright. If you still want more also read &#8220;<a href="http://arstechnica.com/tech-policy/news/2011/02/the-ridiculous-plan-to-attack-wikileaks.ars">Spy games: Inside the convoluted plot to bring down WikiLeaks</a>&#8220;, &#8220;<a href="http://arstechnica.com/tech-policy/news/2011/02/black-ops-how-hbgary-wrote-backdoors-and-rootkits-for-the-government.ars/">Black ops: how HBGary wrote backdoors for the government</a>&#8221; and take a look at Joseph Bonneau&#8217;s &#8220;<a href="http://www.lightbluetouchpaper.org/2011/02/09/measuring-password-re-use-empirically/">Measuring password re-use empirically</a>&#8220;.</p>
<p>Some high (or lowlights depending on how you see it) technical elements include:</p>
<ul>
<li>An email admin with an 8 letter all lower and number password used on many other sites.</li>
<li>Custom CMS on two sites with unsalted password hashes.</li>
<li>Custom CMS with non-complex SQL injection.</li>
<li>Classic computer system access social engineering.</li>
</ul>
<p>This is negligence at any company with sensitive customer data, but at a computer security firm this is dereliction of duty.</p>
<p>There there is the unsubstantiated public accusations that could result in severe USA federal criminal charges for the accused, and down right criminal behavior by a white hat security firm.</p>
<p>Aaron Bar for all his arrogance, ego and unethical behavior still comes across to me as the fall guy for a whole (small) computer security firm that had failed to take care of its own security, and has lost its moral compass.</p>
]]></content:encoded>
			<wfw:commentRss>http://foolswisdom.com/hgary/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Everything In Our Power</title>
		<link>http://foolswisdom.com/everything-in-our-power/</link>
		<comments>http://foolswisdom.com/everything-in-our-power/#comments</comments>
		<pubDate>Tue, 08 Sep 2009 16:52:25 +0000</pubDate>
		<dc:creator>Lloyd</dc:creator>
				<category><![CDATA[WordPress]]></category>
		<category><![CDATA[Community]]></category>
		<category><![CDATA[Developers]]></category>
		<category><![CDATA[Open Source]]></category>
		<category><![CDATA[open source participants]]></category>
		<category><![CDATA[Partici]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Software Development]]></category>

		<guid isPermaLink="false">http://foolswisdom.com/?p=2092</guid>
		<description><![CDATA[WordPress is a community of hundreds of people that read the code every day, audit it, update it, and care enough about keeping your blog safe that we do things like release updates weeks apart from each other even though &#8230; <a href="http://foolswisdom.com/everything-in-our-power/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<blockquote><p>WordPress is a community of hundreds of people that read the code every day, audit it, update it, and care enough about keeping your blog safe that we do things like release updates weeks apart from each other even though it makes us look bad, because updating is going to keep your blog safe from the bad guys. I’m not clairvoyant and I can’t predict what schemes spammers, hackers, crackers, and tricksters will come up with with in the future to harm your blog, but I do know for certain that as long as WordPress is around we’ll do everything in our power to make sure the software is safe. We’ve already made upgrading core and plugins a one-click procedure. If we find something broken, we’ll release a fix. Please upgrade, it’s the only way we can help each other.</p>
<p><a href="http://ma.tt/">Matt Mullenweg</a>, September 5, 2009, &#8220;<a href="http://wordpress.org/development/2009/09/keep-wordpress-secure/">How to Keep WordPress Secure</a>&#8220;, <a href="http://wordpress.org/development/2009/09/keep-wordpress-secure/"></a></p></blockquote>
<p>Do read the rest of the potent post &#8212; articulate, insightful, and honest.</p>
]]></content:encoded>
			<wfw:commentRss>http://foolswisdom.com/everything-in-our-power/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WARNING: The following packages cannot be authenticated!</title>
		<link>http://foolswisdom.com/warning-the-following-packages-cannot-be-authenticated/</link>
		<comments>http://foolswisdom.com/warning-the-following-packages-cannot-be-authenticated/#comments</comments>
		<pubDate>Fri, 05 Oct 2007 22:51:15 +0000</pubDate>
		<dc:creator>Lloyd</dc:creator>
				<category><![CDATA[Ubuntu]]></category>
		<category><![CDATA[apt-get]]></category>
		<category><![CDATA[aptitude]]></category>
		<category><![CDATA[Authenticated]]></category>
		<category><![CDATA[but]]></category>
		<category><![CDATA[debian]]></category>
		<category><![CDATA[error]]></category>
		<category><![CDATA[installation]]></category>
		<category><![CDATA[package management]]></category>
		<category><![CDATA[problem]]></category>
		<category><![CDATA[repository]]></category>
		<category><![CDATA[secure]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[synaptic]]></category>
		<category><![CDATA[t42p]]></category>
		<category><![CDATA[tip]]></category>
		<category><![CDATA[update]]></category>
		<category><![CDATA[upgrade]]></category>

		<guid isPermaLink="false">http://foolswisdom.com/warning-the-following-packages-cannot-be-authenticated/</guid>
		<description><![CDATA[Today, when I tried to &#60;code&#62;aptitude install&#60;/code&#62; a package on Ubuntu the response was &#8220;WARNING: The following packages cannot be authenticated!&#8221; I received a similar warning when I tried to use Synaptic Package Manager. I checked and made sure that &#8230; <a href="http://foolswisdom.com/warning-the-following-packages-cannot-be-authenticated/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>Today, when I tried to &lt;code&gt;aptitude install&lt;/code&gt; a package on Ubuntu the response was &#8220;WARNING: The following packages cannot be authenticated!&#8221;</p>
<p>I received a similar warning when I tried to use Synaptic Package Manager.</p>
<p>I checked and made sure that the software was trying to install from the official repository.</p>
<p>I&#8217;m not really sure of the cause, or when it started happening, but I have seemed to have fixed this by cleaning out most of the keys.</p>
<p><span id="more-608"></span>Searching the web, I found out about SecureApt,  apt-key, but didn&#8217;t really find myself closing to a solution until I looked at the contents of /etc/apt/trusted.gpg .</p>
<p>In Software Sources (System &gt; Administration &gt;) I found a long list of &#8220;trusted software providers&#8221; including what looked like some duplicated.</p>
<p>I noted what they were and removed them all except the first one, 437D05B5 2004-09-12 Ubuntu Archive Automatic Signing Key &lt;ftpmaster@ubuntu.com&gt;  and closed the application.</p>
<p>It was then working. It seems that I could have likely removed them all and then &lt;code&gt;sudo aptitude reinstall ubuntu-keyring&lt;/code&gt;.</p>
<p>After I added back the keys for  <a href="http://www.google.com/linuxrepositories/ubuntu704.html">Google Linux Software</a> and <a href="http://www.winehq.org/site/download-deb">Wine</a> for <a href="http://www.tatanka.com.br/ies4linux/page/Installation:Ubuntu">IEs4Linux</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://foolswisdom.com/warning-the-following-packages-cannot-be-authenticated/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

