<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Infosecurity.US</title>
	<atom:link href="http://infosecurity.us/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>https://infosecurity.us</link>
	<description>Information Security And Occasional Forays Into Other Realms</description>
	<lastBuildDate>Thu, 02 Sep 2010 11:35:50 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<meta name="generator" content="5.8.0b04" />
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com" />
			<item>
		<title>Steve Benson: Persian Lights&#8230;</title>
		<link>https://infosecurity.us/?p=16986</link>
		<comments>https://infosecurity.us/?p=16986#comments</comments>
		<pubDate>Thu, 02 Sep 2010 11:35:50 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Political Humor]]></category>
		<category><![CDATA[Blatant Stupidity]]></category>
		<category><![CDATA[Brilliant]]></category>
		<category><![CDATA[Iran]]></category>
		<category><![CDATA[Mahmoud Ahmadinejad]]></category>
		<category><![CDATA[Persia]]></category>
		<category><![CDATA[Steve Benson]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16986</guid>
		<description><![CDATA[Related PostsSteve Benson: Stupid Campers Steve Benson: Should Steve Benson: Feeling Better Steve Benson: CageWorld Steve Benson: The Ban


Related Posts<ol><li><a href='https://infosecurity.us/?p=15510' rel='bookmark' title='Permanent Link: Steve Benson: Stupid Campers'>Steve Benson: Stupid Campers</a></li>
<li><a href='https://infosecurity.us/?p=15731' rel='bookmark' title='Permanent Link: Steve Benson: Should'>Steve Benson: Should</a></li>
<li><a href='https://infosecurity.us/?p=12779' rel='bookmark' title='Permanent Link: Steve Benson: Feeling Better'>Steve Benson: Feeling Better</a></li>
<li><a href='https://infosecurity.us/?p=12996' rel='bookmark' title='Permanent Link: Steve Benson: CageWorld'>Steve Benson: CageWorld</a></li>
<li><a href='https://infosecurity.us/?p=16407' rel='bookmark' title='Permanent Link: Steve Benson: The Ban'>Steve Benson: The Ban</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><a title="Steve Benson" href="http://comics.com/steve_benson/2010-08-27/"><img src="http://c0389161.cdn.cloudfiles.rackspacecloud.com/dyn/str_strip/333859.full.gif" border="0" alt="Steve Benson" width="570" height="434" /></a></p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16986"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16986&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Blatant+Stupidity,Brilliant,Iran,Mahmoud+Ahmadinejad,Persia,Political+Humor,Steve+Benson" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=15510' rel='bookmark' title='Permanent Link: Steve Benson: Stupid Campers'>Steve Benson: Stupid Campers</a></li>
<li><a href='https://infosecurity.us/?p=15731' rel='bookmark' title='Permanent Link: Steve Benson: Should'>Steve Benson: Should</a></li>
<li><a href='https://infosecurity.us/?p=12779' rel='bookmark' title='Permanent Link: Steve Benson: Feeling Better'>Steve Benson: Feeling Better</a></li>
<li><a href='https://infosecurity.us/?p=12996' rel='bookmark' title='Permanent Link: Steve Benson: CageWorld'>Steve Benson: CageWorld</a></li>
<li><a href='https://infosecurity.us/?p=16407' rel='bookmark' title='Permanent Link: Steve Benson: The Ban'>Steve Benson: The Ban</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16986</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New, Pernicious BotNet Emerges</title>
		<link>https://infosecurity.us/?p=16945</link>
		<comments>https://infosecurity.us/?p=16945#comments</comments>
		<pubDate>Thu, 02 Sep 2010 11:30:00 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Infosecurity]]></category>
		<category><![CDATA[Arbor Networks]]></category>
		<category><![CDATA[Botnets]]></category>
		<category><![CDATA[DarkReading]]></category>
		<category><![CDATA[Features]]></category>
		<category><![CDATA[Kelly Jackson Higgins]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16945</guid>
		<description><![CDATA[A botnet, first discovered in March via a Honeypot deployment by Arbor Networks, as reared up and taken out several hundred sites, both in the United States and the People&#8217;s Republic of China... Oops&#8230; More information regarding the botnet, dubbed &#8216;YoyoDdos&#8217; appears after the jump. via DarkReading&#8217;s Kelly Jackson Higgins: :New DDoS Botnet Hits Nearly [...]


Related Posts<ol><li><a href='https://infosecurity.us/?p=16386' rel='bookmark' title='Permanent Link: Botnet Takedown, FastFlux Flumoxed'>Botnet Takedown, FastFlux Flumoxed</a></li>
<li><a href='https://infosecurity.us/?p=13601' rel='bookmark' title='Permanent Link: Host Exploit Reveals Top 50 Nefarious Hosts, Networks'>Host Exploit Reveals Top 50 Nefarious Hosts, Networks</a></li>
<li><a href='https://infosecurity.us/?p=10569' rel='bookmark' title='Permanent Link: Say It Ain&#8217;t So Redux: Twitter &#8211; The New Botnet Command and Control Vector'>Say It Ain&#8217;t So Redux: Twitter &#8211; The New Botnet Command and Control Vector</a></li>
<li><a href='https://infosecurity.us/?p=12343' rel='bookmark' title='Permanent Link: Offense Best Defense'>Offense Best Defense</a></li>
<li><a href='https://infosecurity.us/?p=15474' rel='bookmark' title='Permanent Link: Hulme: New, Sophisticated Stock Manipulation Botnet Ante’s Up'>Hulme: New, Sophisticated Stock Manipulation Botnet Ante’s Up</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p style="text-align: justify;"><img title="Bot Bug" src="https://infosecurity.us/images/bot_bug_net.jpg" alt="Bot Bug" width="300" height="225" /></p>
<p style="text-align: justify;">A botnet, first <a href="http://www.darkreading.com/database_security/security/attacks/showArticle.jhtml?articleID=227100032" target="_blank">discovered</a> in March via a Honeypot deployment by <a href="http://www.arbornetworks.com/" target="_blank">Arbor Networks</a>, as reared up and taken out several hundred sites, both in the <a href="http://www.usa.gov" target="_blank">United States </a>and the <a href="https://www.cia.gov/library/publications/the-world-factbook/geos/ch.html" target="_blank">People&#8217;s Republic of China.</a>.. Oops&#8230; More information regarding the botnet, dubbed &#8216;YoyoDdos&#8217; appears after the jump.</p>
<p style="text-align: justify;"><span id="more-16945"></span>via <a href="http://www.darkreading.com">DarkReading&#8217;s</a> Kelly Jackson Higgins: :<a href="http://www.darkreading.com/database_security/security/attacks/showArticle.jhtml?articleID=227100032" target="_blank">New DDoS Botnet Hits Nearly 200 Websites</a>&#8220;</p>
<p style="text-align: justify;">&#8220;A new botnet built for knocking websites offline has attacked mostly Chinese and some U.S. sites, according to researchers. About 90 percent of the command and control servers running YoyoDdos, the nickname given the botnet by researchers at Arbor Networks who have been studying and tracking it, have IP addresses in China, and two-thirds of its victim websites are out of China. The botnet has attacked around 180 websites so far, including 32 in the U.S. &#8220;It is a pretty active botnet,&#8221; says Jeff Edwards, a research analyst with Arbor who has been analyzing the botnet, which first appeared in Arbor&#8217;s honeypot servers back in March. &#8220;We&#8217;ve detected a lot of attacks coming out of it &#8230; [around] ten unique victims a day.&#8221; The malware itself isn&#8217;t particularly sophisticated, however. &#8220;It&#8217;s pretty typical of a lot of malware we see,&#8221; he says. &#8220;It&#8217;s a fairly non-sophisticated piece of malware, but effective.&#8221;&#8230;&#8221;</p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16945"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16945&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Arbor+Networks,Botnets,DarkReading,Features,Kelly+Jackson+Higgins" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=16386' rel='bookmark' title='Permanent Link: Botnet Takedown, FastFlux Flumoxed'>Botnet Takedown, FastFlux Flumoxed</a></li>
<li><a href='https://infosecurity.us/?p=13601' rel='bookmark' title='Permanent Link: Host Exploit Reveals Top 50 Nefarious Hosts, Networks'>Host Exploit Reveals Top 50 Nefarious Hosts, Networks</a></li>
<li><a href='https://infosecurity.us/?p=10569' rel='bookmark' title='Permanent Link: Say It Ain&#8217;t So Redux: Twitter &#8211; The New Botnet Command and Control Vector'>Say It Ain&#8217;t So Redux: Twitter &#8211; The New Botnet Command and Control Vector</a></li>
<li><a href='https://infosecurity.us/?p=12343' rel='bookmark' title='Permanent Link: Offense Best Defense'>Offense Best Defense</a></li>
<li><a href='https://infosecurity.us/?p=15474' rel='bookmark' title='Permanent Link: Hulme: New, Sophisticated Stock Manipulation Botnet Ante’s Up'>Hulme: New, Sophisticated Stock Manipulation Botnet Ante’s Up</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16945</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>VMWare Announces ESX Console Security Update</title>
		<link>https://infosecurity.us/?p=16992</link>
		<comments>https://infosecurity.us/?p=16992#comments</comments>
		<pubDate>Wed, 01 Sep 2010 12:05:53 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Infosecurity]]></category>
		<category><![CDATA[ESX]]></category>
		<category><![CDATA[ESX Service Console Kernel]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[Virtualization Security]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16992</guid>
		<description><![CDATA[VMWare INC. (NYSE: VMW) has announced the second service console  security update of the summer,  focusing on the the virtualization company’s ESX product line. So-called 3rd party packages have been patched, including samba, perl, cpio, tar and last but not least krb5; related CVEs are: CVE-2005-4268, CVE-2010-0624, CVE-2010-2063, CVE-2010-1321, CVE-2010-1168and  CVE-2010-1447. More information, inclusive of [...]


Related Posts<ol><li><a href='https://infosecurity.us/?p=15599' rel='bookmark' title='Permanent Link: VMWare Releases End-Of-Week Security Update, Service Console Kernel Patched'>VMWare Releases End-Of-Week Security Update, Service Console Kernel Patched</a></li>
<li><a href='https://infosecurity.us/?p=9578' rel='bookmark' title='Permanent Link: VMWare Issues ESX, Kerberos, Security Advisory'>VMWare Issues ESX, Kerberos, Security Advisory</a></li>
<li><a href='https://infosecurity.us/?p=5893' rel='bookmark' title='Permanent Link: VMWare Releases ESX Security Announcement, Patches'>VMWare Releases ESX Security Announcement, Patches</a></li>
<li><a href='https://infosecurity.us/?p=6532' rel='bookmark' title='Permanent Link: VMware Releases VirtualCenter Security Advisory'>VMware Releases VirtualCenter Security Advisory</a></li>
<li><a href='https://infosecurity.us/?p=15179' rel='bookmark' title='Permanent Link: VMWare Issues Critical Update, vCenter, ESX, ESXi, vMA Patched'>VMWare Issues Critical Update, vCenter, ESX, ESXi, vMA Patched</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><img title="VMWare" src="https://infosecurity.us/images/vmware_logo.jpg" alt="VMWare" width="480" height="270" /></p>
<p><a href="http://www.vmware.com/" target="_blank">VMWare INC.</a> (NYSE: <a href="http://finance.yahoo.com/q?s=Vmw" target="_blank">VMW</a>)  has   announced the second service console  security update of the summer,  focusing on the  the virtualization   company’s ESX product line. So-called 3rd party packages have been patched, including samba, perl, cpio, tar and last but not least krb5; related CVEs are: CVE-2005-4268, CVE-2010-0624, CVE-2010-2063, CVE-2010-1321, CVE-2010-1168and  CVE-2010-1447. More information,   inclusive of  linkage and the release notice, appears after the jump.</p>
<p><span id="more-16992"></span></p>
<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;<br />
 Hash: SHA1</p>
<p> &#8211; &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p>
<div id=":c7">VMware Security Advisory</p>
<p> Advisory ID:       VMSA-2010-0013<br />
 Synopsis:          VMware ESX third party updates for Service Console<br />
 Issue date:        2010-08-31<br />
 Updated on:        2010-08-31 (initial release of advisory)<br />
 CVE numbers:       CVE-2005-4268 CVE-2010-0624 CVE-2010-2063CVE-2010-1321 CVE-2010-1168 CVE-2010-1447<br />
 &#8211; &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p>
<p> 1. Summary</p>
<p> ESX 3.5 Console OS (COS) updates for COS packages perl, krb5, samba, tar, and cpio.</p>
<p> 2. Relevant releases</p>
<p> VMware ESX 3.5 without patches ESX350-201008405-SG,ESX350-201008407-SG, ESX350-201008410-SG, ESX350-201008411-SG,ESX350-201008412-SG.</p>
<p> Notes:<br />
 Effective May 2010, VMware&#8217;s patch and update release program during Extended Support will be continued with the condition that all subsequent patch and update releases will be based on the latest baseline release version as of May 2010 (i.e. ESX 3.0.3 Update 1, ESX 3.5 Update 5, and VirtualCenter 2.5 Update 6). Refer to section &#8220;End of Product Availability FAQs&#8221; at<a href="http://www.vmware.com/support/policies/lifecycle/vi/faq.html" target="_blank"> http://www.vmware.com/support/policies/lifecycle/vi/faq.html</a> for details. Extended support for ESX 3.0.3 ends on 2011-12-10.  Users should plan to upgrade to at least ESX 3.5 and preferably to the newest release available.</p>
<p> 3. Problem Description</p>
<p> a. Service Console update for cpio</p>
<p> The service console package cpio is updated to version 2.5-6.RHEL3.</p>
<p> The Common Vulnerabilities and Exposures project (<a href="http://cve.mitre.org/" target="_blank">cve.mitre.org</a>) has assigned the names CVE-2005-4268 and CVE-2010-0624 to the issues addressed in this update.</p>
<p> Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available.</p>
<p> VMware         Product   Running  Replace with/<br />
 Product        Version   on       Apply Patch<br />
 =============  ========  =======  =================<br />
 VirtualCenter  any       Windows  not affected</p>
<p> hosted *       any       any      not affected</p>
<p> ESXi           any       ESXi     not affected</p>
<p> ESX            4.1       ESX      affected, patch pending<br />
 ESX            4.0       ESX      affected, patch pending<br />
 ESX            3.5       ESX      ESX350-201008405-SG<br />
 ESX            3.0.3     ESX      affected, patch pending</p>
<p> * hosted products are VMware Workstation, Player, ACE, Server, Fusion.</p>
<p> b. Service Console update for tar</p>
<p> The service console package tar is updated to version<br />
 1.13.25-16.RHEL3</p>
<p> The Common Vulnerabilities and Exposures project (<a href="http://cve.mitre.org/" target="_blank">cve.mitre.org</a>)<br />
 has assigned the name CVE-2010-0624 to the issue addressed in this<br />
 update.</p>
<p> Column 4 of the following table lists the action required to<br />
 remediate the vulnerability in each release, if a solution is<br />
 available.</p>
<p> VMware         Product   Running  Replace with/<br />
 Product        Version   on       Apply Patch<br />
 =============  ========  =======  =================<br />
 VirtualCenter  any       Windows  not affected</p>
<p> hosted *       any       any      not affected</p>
<p> ESXi           any       ESXi     not affected</p>
<p> ESX            4.1       ESX      affected, patch pending<br />
 ESX            4.0       ESX      affected, patch pending<br />
 ESX            3.5       ESX      ESX350-201008407-SG<br />
 ESX            3.0.3     ESX      affected, patch pending</p>
<p> * hosted products are VMware Workstation, Player, ACE, Server, Fusion.</p>
<p> c. Service Console update for samba</p>
<p> The service console packages for samba are updated to version<br />
 samba-3.0.9-1.3E.17vmw, samba-client-3.0.9-1.3E.17vmw and<br />
 samba-common-3.0.9-1.3E.17vmw.</p>
<p> The Common Vulnerabilities and Exposures project (<a href="http://cve.mitre.org/" target="_blank">cve.mitre.org</a>)<br />
 has assigned the name CVE-2010-2063 to the issue addressed in this<br />
 update.</p>
<p> Note:<br />
 The issue mentioned above is present in the Samba server (smbd) and<br />
 is not present in the Samba client or Samba common packages.</p>
<p> To determine if your system has Samba server installed do a<br />
 &#8216;rpm -q samba`.</p>
<p> The following lists when the Samba server is installed on the ESX<br />
 service console:</p>
<p> &#8211; ESX 4.0, ESX 4.1<br />
 The Samba server is not present on ESX 4.0 and ESX 4.1.</p>
<p> &#8211; ESX 3.5<br />
 The Samba server is present if an earlier patch for Samba has been<br />
 installed.</p>
<p> &#8211; ESX 3.0.3<br />
 The Samba server is present if ESX 3.0.3 was upgraded from an<br />
 earlier version of ESX 3 and a Samba patch was installed on that<br />
 version.</p>
<p> The Samba server is not needed to operate the service console and<br />
 can be be disabled without loss of functionality to the service<br />
 console.</p>
<p> Column 4 of the following table lists the action required to<br />
 remediate the vulnerability in each release, if a solution is<br />
 available.</p>
<p> VMware         Product   Running  Replace with/<br />
 Product        Version   on       Apply Patch<br />
 =============  ========  =======  =================<br />
 VirtualCenter  any       Windows  not affected</p>
<p> hosted *       any       any      not affected</p>
<p> ESXi           any       ESXi     not affected</p>
<p> ESX            4.1       ESX      not applicable<br />
 ESX            4.0       ESX      not applicable<br />
 ESX            3.5       ESX      ESX350-201008410-SG<br />
 ESX            3.0.3     ESX      affected, patch pending</p>
<p> * hosted products are VMware Workstation, Player, ACE, Server, Fusion.</p>
<p> d. Service Console update for krb5</p>
<p> The service console package krb5 is updated to version 1.2.7-72.</p>
<p> The Common Vulnerabilities and Exposures project (<a href="http://cve.mitre.org/" target="_blank">cve.mitre.org</a>)<br />
 has assigned the name CVE-2010-1321 to the issue addressed in this<br />
 update.</p>
<p> Column 4 of the following table lists the action required to<br />
 remediate the vulnerability in each release, if a solution is<br />
 available.</p>
<p> VMware         Product   Running  Replace with/<br />
 Product        Version   on       Apply Patch<br />
 =============  ========  =======  =================<br />
 VirtualCenter  any       Windows  not affected</p>
<p> hosted *       any       any      not affected</p>
<p> ESXi           any       ESXi     not affected</p>
<p> ESX            4.1       ESX      affected, patch pending<br />
 ESX            4.0       ESX      affected, patch pending<br />
 ESX            3.5       ESX      ESX350-201008411-SG<br />
 ESX            3.0.3     ESX      affected, patch pending</p>
<p> * hosted products are VMware Workstation, Player, ACE, Server, Fusion.</p>
<p> e. Service Console update for perl</p>
<p> The service console package perl is updated to version<br />
 5.8.0-101.EL3.</p>
<p> The Common Vulnerabilities and Exposures project (<a href="http://cve.mitre.org/" target="_blank">cve.mitre.org</a>)<br />
 has assigned the names CVE-2010-1168 and CVE-2010-1447 to the issue<br />
 addressed in this update.</p>
<p> Column 4 of the following table lists the action required to<br />
 remediate the vulnerability in each release, if a solution is<br />
 available.</p>
<p> VMware         Product   Running  Replace with/<br />
 Product        Version   on       Apply Patch<br />
 =============  ========  =======  =================<br />
 VirtualCenter  any       Windows  not affected</p>
<p> hosted *       any       any      not affected</p>
<p> ESXi           any       ESXi     not affected</p>
<p> ESX            4.1       ESX      affected, patch pending<br />
 ESX            4.0       ESX      affected, patch pending<br />
 ESX            3.5       ESX      ESX350-201008412-SG<br />
 ESX            3.0.3     ESX      affected, patch pending</p>
<p> * hosted products are VMware Workstation, Player, ACE, Server, Fusion.</p>
<p> 4. Solution</p>
<p> Please review the patch/release notes for your product and version<br />
 and verify the md5sum of your downloaded file.</p>
<p> ESX 3.5<br />
 &#8212;&#8212;-</p>
<p> ESX350-201008405-SG (cpio)<br />
 &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
 <a href="http://download3.vmware.com/software/vi/ESX350-201008405-SG.zip" target="_blank">http://download3.vmware.com/software/vi/ESX350-201008405-SG.zip</a><br />
 md5sum: e1d5464ab9886f93dc47ffe7b50e6246<br />
 <a href="http://kb.vmware.com/kb/1026130" target="_blank">http://kb.vmware.com/kb/1026130</a></p>
<p> ESX350-201008407-SG (tar)<br />
 &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
 <a href="http://download3.vmware.com/software/vi/ESX350-201008407-SG.zip" target="_blank">http://download3.vmware.com/software/vi/ESX350-201008407-SG.zip</a><br />
 md5sum: 574013a102fb523c7a97c1acb05f63ea<br />
 <a href="http://kb.vmware.com/kb/1026132" target="_blank">http://kb.vmware.com/kb/1026132</a></p>
<p> ESX350-201008410-SG (samba)<br />
 &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
 <a href="http://download3.vmware.com/software/vi/ESX350-201008410-SG.zip" target="_blank">http://download3.vmware.com/software/vi/ESX350-201008410-SG.zip</a><br />
 md5sum: c5224cf4218a3636b70207b8d269d024<br />
 <a href="http://kb.vmware.com/kb/1026134" target="_blank">http://kb.vmware.com/kb/1026134</a></p>
<p> ESX350-201008411-SG (krb5)<br />
 &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
 <a href="http://download3.vmware.com/software/vi/ESX350-201008411-SG.zip" target="_blank">http://download3.vmware.com/software/vi/ESX350-201008411-SG.zip</a><br />
 md5sum: c0f8b642f8eddd91c959e262d1b7f181<br />
 <a href="http://kb.vmware.com/kb/1026135" target="_blank">http://kb.vmware.com/kb/1026135</a></p>
<p> ESX350-201008412-SG (perl)<br />
 &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
 <a href="http://download3.vmware.com/software/vi/ESX350-201008412-SG.zip" target="_blank">http://download3.vmware.com/software/vi/ESX350-201008412-SG.zip</a><br />
 md5sum: 30e176f34e49c055b0485dfc921fbf81<br />
 <a href="http://kb.vmware.com/kb/1026137" target="_blank">http://kb.vmware.com/kb/1026137</a></p>
<p> 5. References</p>
<p> CVE numbers<br />
 <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4268" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4268</a><br />
 <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0624" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0624</a><br />
 <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2063" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2063</a><br />
 <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1321" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1321</a><br />
 <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1168" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1168</a><br />
 <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1447" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1447</a></p>
<p> &#8211; &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p>
<p> 6. Change log</p>
<p> 2010-08-31  VMSA-2010-0013<br />
 Initial security advisory after release of patches for ESX 3.5<br />
 on 2010-08-31</p>
<p> &#8211; &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<br />
 7. Contact</p>
<p> E-mail list for product security notifications and announcements:<br />
 <a href="http://lists.vmware.com/cgi-bin/mailman/listinfo/security-announce" target="_blank">http://lists.vmware.com/cgi-bin/mailman/listinfo/security-announce</a></p>
<p> This Security Advisory is posted to the following lists:</p>
<p> * security-announce at <a href="http://lists.vmware.com/" target="_blank">lists.vmware.com</a><br />
 * bugtraq at <a href="http://securityfocus.com/" target="_blank">securityfocus.com</a><br />
 * full-disclosure at <a href="http://lists.grok.org.uk/" target="_blank">lists.grok.org.uk</a></p>
<p> E-mail:  security at <a href="http://vmware.com/" target="_blank">vmware.com</a><br />
 PGP key at: <a href="http://kb.vmware.com/kb/1055" target="_blank">http://kb.vmware.com/kb/1055</a></p>
<p> VMware Security Center<br />
 <a href="http://www.vmware.com/security" target="_blank">http://www.vmware.com/security</a></p>
<p> VMware security response policy<br />
 <a href="http://www.vmware.com/support/policies/security_response.html" target="_blank">http://www.vmware.com/support/policies/security_response.html</a></p>
<p> General support life cycle policy<br />
 <a href="http://www.vmware.com/support/policies/eos.html" target="_blank">http://www.vmware.com/support/policies/eos.html</a></p>
<p> VMware Infrastructure support life cycle policy<br />
 <a href="http://www.vmware.com/support/policies/eos_vi.html" target="_blank">http://www.vmware.com/support/policies/eos_vi.html</a></p>
<p> Copyright 2010 VMware Inc.  All rights reserved.</p>
<p>
 &#8212;&#8211;BEGIN PGP SIGNATURE&#8212;&#8211;<br />
 Version: PGP Desktop 9.8.3 (Build 4028)<br />
 Charset: utf-8</p>
<p> wj8DBQFMfeTAS2KysvBH1xkRAugBAJ4wrbYo7zxKyRfw9A6yfaHH316Q9QCePw/v<br />
 wJqQq9eENKM9xSfHoZYXnLg=<br />
 =v3+b<br />
 &#8212;&#8211;END PGP SIGNATURE&#8212;&#8211;</div>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16992"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16992&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=ESX,ESX+Service+Console+Kernel,Security,Virtualization,Virtualization+Security" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=15599' rel='bookmark' title='Permanent Link: VMWare Releases End-Of-Week Security Update, Service Console Kernel Patched'>VMWare Releases End-Of-Week Security Update, Service Console Kernel Patched</a></li>
<li><a href='https://infosecurity.us/?p=9578' rel='bookmark' title='Permanent Link: VMWare Issues ESX, Kerberos, Security Advisory'>VMWare Issues ESX, Kerberos, Security Advisory</a></li>
<li><a href='https://infosecurity.us/?p=5893' rel='bookmark' title='Permanent Link: VMWare Releases ESX Security Announcement, Patches'>VMWare Releases ESX Security Announcement, Patches</a></li>
<li><a href='https://infosecurity.us/?p=6532' rel='bookmark' title='Permanent Link: VMware Releases VirtualCenter Security Advisory'>VMware Releases VirtualCenter Security Advisory</a></li>
<li><a href='https://infosecurity.us/?p=15179' rel='bookmark' title='Permanent Link: VMWare Issues Critical Update, vCenter, ESX, ESXi, vMA Patched'>VMWare Issues Critical Update, vCenter, ESX, ESXi, vMA Patched</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16992</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Nick Anderson: Egg</title>
		<link>https://infosecurity.us/?p=16988</link>
		<comments>https://infosecurity.us/?p=16988#comments</comments>
		<pubDate>Wed, 01 Sep 2010 11:50:47 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Political Humor]]></category>
		<category><![CDATA[Brilliant]]></category>
		<category><![CDATA[Eggs]]></category>
		<category><![CDATA[Nick Anderson]]></category>
		<category><![CDATA[Political Humo]]></category>
		<category><![CDATA[Sarcasm]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16988</guid>
		<description><![CDATA[Related PostsNick Anderson: Anger Nick Anderson: Dispersant Nick Anderson: Ground Zero Nick Anderson: Hole Plug Nick Anderson: Oiled Tuna


Related Posts<ol><li><a href='https://infosecurity.us/?p=13697' rel='bookmark' title='Permanent Link: Nick Anderson: Anger'>Nick Anderson: Anger</a></li>
<li><a href='https://infosecurity.us/?p=15710' rel='bookmark' title='Permanent Link: Nick Anderson: Dispersant'>Nick Anderson: Dispersant</a></li>
<li><a href='https://infosecurity.us/?p=16774' rel='bookmark' title='Permanent Link: Nick Anderson: Ground Zero'>Nick Anderson: Ground Zero</a></li>
<li><a href='https://infosecurity.us/?p=14983' rel='bookmark' title='Permanent Link: Nick Anderson: Hole Plug'>Nick Anderson: Hole Plug</a></li>
<li><a href='https://infosecurity.us/?p=14985' rel='bookmark' title='Permanent Link: Nick Anderson: Oiled Tuna'>Nick Anderson: Oiled Tuna</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><a title="Nick Anderson" href="http://comics.com/nick_anderson/2010-08-27/"><img src="http://c0389161.cdn.cloudfiles.rackspacecloud.com/dyn/str_strip/334009.full.gif" border="0" alt="Nick Anderson" width="572" height="409" /></a></p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16988"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16988&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Brilliant,Eggs,Nick+Anderson,Political+Humo,Sarcasm" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=13697' rel='bookmark' title='Permanent Link: Nick Anderson: Anger'>Nick Anderson: Anger</a></li>
<li><a href='https://infosecurity.us/?p=15710' rel='bookmark' title='Permanent Link: Nick Anderson: Dispersant'>Nick Anderson: Dispersant</a></li>
<li><a href='https://infosecurity.us/?p=16774' rel='bookmark' title='Permanent Link: Nick Anderson: Ground Zero'>Nick Anderson: Ground Zero</a></li>
<li><a href='https://infosecurity.us/?p=14983' rel='bookmark' title='Permanent Link: Nick Anderson: Hole Plug'>Nick Anderson: Hole Plug</a></li>
<li><a href='https://infosecurity.us/?p=14985' rel='bookmark' title='Permanent Link: Nick Anderson: Oiled Tuna'>Nick Anderson: Oiled Tuna</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16988</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Doppelgänger Infinitus</title>
		<link>https://infosecurity.us/?p=16898</link>
		<comments>https://infosecurity.us/?p=16898#comments</comments>
		<pubDate>Wed, 01 Sep 2010 11:40:57 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Infosecurity]]></category>
		<category><![CDATA[Science]]></category>
		<category><![CDATA[Doppelgängers]]></category>
		<category><![CDATA[Entanglements]]></category>
		<category><![CDATA[QUantum Probablities]]></category>
		<category><![CDATA[Schrödinger]]></category>
		<category><![CDATA[Superposition]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16898</guid>
		<description><![CDATA[Fascinating write-up targeting quantum probabilities, and, of course, those pesky doppelgängers&#8230; Additional, and possibly duplicate data appears post-seite springen.. via NewScientist&#8217;s Rachel Courtland: &#8220;Infinite doppelgängers may explain quantum probabilities&#8220; AN IDENTICAL copy of you is also reading this story. This twin is the same in every way, living on an Earth and in a universe [...]


Related Posts<ol><li><a href='https://infosecurity.us/?p=13957' rel='bookmark' title='Permanent Link: Astounding: New Random Number Generator Invented'>Astounding: New Random Number Generator Invented</a></li>
<li><a href='https://infosecurity.us/?p=10900' rel='bookmark' title='Permanent Link: Availability of Quantum Key Distribution Announced &#8211; Mere Mortals Must Wait'>Availability of Quantum Key Distribution Announced &#8211; Mere Mortals Must Wait</a></li>
<li><a href='https://infosecurity.us/?p=14990' rel='bookmark' title='Permanent Link: Wondermark: Quantum Roadkill'>Wondermark: Quantum Roadkill</a></li>
<li><a href='https://infosecurity.us/?p=14506' rel='bookmark' title='Permanent Link: Quantum Cryptography Cracked'>Quantum Cryptography Cracked</a></li>
<li><a href='https://infosecurity.us/?p=6677' rel='bookmark' title='Permanent Link: Dinosaur Comics: Dreams'>Dinosaur Comics: Dreams</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p style="text-align: justify;"><img title="Doppelgangen" src="https://infosecurity.us/images/doppelgangen.jpg" alt="Doppelgangen" width="450" height="320" /></p>
<p style="text-align: justify;">Fascinating <a href="http://www.newscientist.com/article/mg20727753.600-infinite-doppelgangers-may-explain-quantum-probabilities.html">write-up</a> targeting quantum probabilities, and, of course, those pesky doppelgängers&#8230; Additional, and possibly duplicate data appears <em>post-seite springen</em>..</p>
<p style="text-align: justify;"><span id="more-16898"></span>via <a href="http://www.newscientist.com" target="_blank">NewScientist&#8217;s</a> <a href="http://www.newscientist.com/search?rbauthors=Rachel+Courtland"><strong>Rachel Courtland</strong></a><strong>: &#8220;</strong><a href="http://www.newscientist.com/article/mg20727753.600-infinite-doppelgangers-may-explain-quantum-probabilities.html" target="_blank">Infinite doppelgängers may explain quantum probabilities</a>&#8220;</p>
<p style="text-align: justify;">AN IDENTICAL copy of you is also reading this story.  This twin is the same in every way, living on an Earth and in a universe  that looks exactly like our own. And there may be an infinite number of  them. Such doppelgängers could be a natural consequence of our present  conception of the universe. Now, some physicists say they could pose a  serious problem for quantum mechanics. But a possible fix may also be in  sight, and it could help tie abstract quantum concepts to concrete  physical causes. In the uncertain, fuzzy world of  quantum mechanics, particles do not have fixed properties until they are  observed. Instead, objects that obey quantum rules exist in a  &#8220;superposition&#8221; of all their possible states simultaneously.  Schrödinger&#8217;s famous cat, for example, is both alive and dead until we  take a peek inside the booby-trapped box in which it has been placed.</p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16898"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16898&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Doppelg%C3%A4ngers,Entanglements,QUantum+Probablities,Schr%C3%B6dinger,Science,Superposition" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=13957' rel='bookmark' title='Permanent Link: Astounding: New Random Number Generator Invented'>Astounding: New Random Number Generator Invented</a></li>
<li><a href='https://infosecurity.us/?p=10900' rel='bookmark' title='Permanent Link: Availability of Quantum Key Distribution Announced &#8211; Mere Mortals Must Wait'>Availability of Quantum Key Distribution Announced &#8211; Mere Mortals Must Wait</a></li>
<li><a href='https://infosecurity.us/?p=14990' rel='bookmark' title='Permanent Link: Wondermark: Quantum Roadkill'>Wondermark: Quantum Roadkill</a></li>
<li><a href='https://infosecurity.us/?p=14506' rel='bookmark' title='Permanent Link: Quantum Cryptography Cracked'>Quantum Cryptography Cracked</a></li>
<li><a href='https://infosecurity.us/?p=6677' rel='bookmark' title='Permanent Link: Dinosaur Comics: Dreams'>Dinosaur Comics: Dreams</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16898</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Robert Ariall: Iran For Cover</title>
		<link>https://infosecurity.us/?p=16979</link>
		<comments>https://infosecurity.us/?p=16979#comments</comments>
		<pubDate>Wed, 01 Sep 2010 11:35:57 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Political Humor]]></category>
		<category><![CDATA[Bu-bye Mahmoud [Ahmadinejad]]]></category>
		<category><![CDATA[Comics.com]]></category>
		<category><![CDATA[Go Get 'Em Boys!]]></category>
		<category><![CDATA[Israel - The Only Democracy In The Middle East]]></category>
		<category><![CDATA[Nuclear Iran]]></category>
		<category><![CDATA[Robert Ariail]]></category>
		<category><![CDATA[State of Israel]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16979</guid>
		<description><![CDATA[Related PostsRobert Ariail: SC Robert Ariail: Korrupted Karzai Robert Ariail: Gulf Jobs Robert Ariail: What Are We Fighting For&#8230; Robert Ariail: P-Tooey


Related Posts<ol><li><a href='https://infosecurity.us/?p=16143' rel='bookmark' title='Permanent Link: Robert Ariail: SC'>Robert Ariail: SC</a></li>
<li><a href='https://infosecurity.us/?p=16229' rel='bookmark' title='Permanent Link: Robert Ariail: Korrupted Karzai'>Robert Ariail: Korrupted Karzai</a></li>
<li><a href='https://infosecurity.us/?p=16349' rel='bookmark' title='Permanent Link: Robert Ariail: Gulf Jobs'>Robert Ariail: Gulf Jobs</a></li>
<li><a href='https://infosecurity.us/?p=13886' rel='bookmark' title='Permanent Link: Robert Ariail: What Are We Fighting For&#8230;'>Robert Ariail: What Are We Fighting For&#8230;</a></li>
<li><a href='https://infosecurity.us/?p=14692' rel='bookmark' title='Permanent Link: Robert Ariail: P-Tooey'>Robert Ariail: P-Tooey</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><a title="Robert Ariail" href="http://comics.com/robert_ariail/2010-08-27/"><img src="http://c0389161.cdn.cloudfiles.rackspacecloud.com/dyn/str_strip/333923.full.gif" border="0" alt="Robert Ariail" width="580" height="347" /></a></p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16979"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16979&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Bu-bye+Mahmoud+%5BAhmadinejad%5D,Comics.com,Go+Get+%27Em+Boys%21,Israel+-+The+Only+Democracy+In+The+Middle+East,Nuclear+Iran,Political+Humor,Robert+Ariail,State+of+Israel" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=16143' rel='bookmark' title='Permanent Link: Robert Ariail: SC'>Robert Ariail: SC</a></li>
<li><a href='https://infosecurity.us/?p=16229' rel='bookmark' title='Permanent Link: Robert Ariail: Korrupted Karzai'>Robert Ariail: Korrupted Karzai</a></li>
<li><a href='https://infosecurity.us/?p=16349' rel='bookmark' title='Permanent Link: Robert Ariail: Gulf Jobs'>Robert Ariail: Gulf Jobs</a></li>
<li><a href='https://infosecurity.us/?p=13886' rel='bookmark' title='Permanent Link: Robert Ariail: What Are We Fighting For&#8230;'>Robert Ariail: What Are We Fighting For&#8230;</a></li>
<li><a href='https://infosecurity.us/?p=14692' rel='bookmark' title='Permanent Link: Robert Ariail: P-Tooey'>Robert Ariail: P-Tooey</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16979</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Data Leakage Wednesdays: Old Printer Vector</title>
		<link>https://infosecurity.us/?p=16484</link>
		<comments>https://infosecurity.us/?p=16484#comments</comments>
		<pubDate>Wed, 01 Sep 2010 11:30:49 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Features]]></category>
		<category><![CDATA[Infosecurity]]></category>
		<category><![CDATA[Data Leakage]]></category>
		<category><![CDATA[Data Loss Vector]]></category>
		<category><![CDATA[Data Theft]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16484</guid>
		<description><![CDATA[  News, via the inimitable Dan Goodin, spot-on reporter-at-large (I kid-you-not, Mr. Goodin is one of the most talented technical reporters on the planet) in San Francisco, California for The Register, details what we have always known, but were to afraid to ask: How far doth my printer wander&#8230; Especially after it&#8217;s retired and the [...]


Related Posts<ol><li><a href='https://infosecurity.us/?p=148' rel='bookmark' title='Permanent Link: University of Washington Study &#8211; Tracking the Trackers'>University of Washington Study &#8211; Tracking the Trackers</a></li>
<li><a href='https://infosecurity.us/?p=7776' rel='bookmark' title='Permanent Link: XKCD: Matrix Revisited'>XKCD: Matrix Revisited</a></li>
<li><a href='https://infosecurity.us/?p=14336' rel='bookmark' title='Permanent Link: The Score: Researchers One, Commercial Anti-Virus Zero'>The Score: Researchers One, Commercial Anti-Virus Zero</a></li>
<li><a href='https://infosecurity.us/?p=8645' rel='bookmark' title='Permanent Link: OpenSSH Flaw Revealed, Leakage Ensues'>OpenSSH Flaw Revealed, Leakage Ensues</a></li>
<li><a href='https://infosecurity.us/?p=4322' rel='bookmark' title='Permanent Link: Dinosaur Comics: Parallel Universe'>Dinosaur Comics: Parallel Universe</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p style="text-align: justify;"> </p>
<p style="text-align: justify;"><img title="Copier" src="https://infosecurity.us/images/copier-printer.jpg" alt="Copier" width="450" height="326" /></p>
<p style="text-align: justify;"><a href="http://www.theregister.co.uk/2010/08/10/side_channel_printer_attack/" target="_blank">News</a>, via the inimitable <a href="http://forms.theregister.co.uk/mail_author/?story_url=/2010/08/10/side_channel_printer_attack/" target="_blank">Dan Goodin</a>, spot-on reporter-at-large (I kid-you-not, Mr. Goodin is one of the most talented technical reporters on the planet) in San Francisco, California for <a href="http://www.theregister.co.uk" target="_blank">The Register</a>, details what we have always known, but were to afraid to ask: How far doth my printer wander&#8230; Especially after it&#8217;s retired and the data contained therein goes astray&#8230;. More information regarding this fascinating vector for data leakage, leverage, and theft, makes it magically -delicious appearance after the now, nearly ubiquitous page break.</p>
<p style="text-align: justify;"><span id="more-16484"></span>via <a href="http://www.theregister.co.uk/" target="_blank">The Register&#8217;s</a> <a href="http://forms.theregister.co.uk/mail_author/?story_url=/2010/08/10/side_channel_printer_attack/" target="_blank">Dan Goodin</a>: &#8220;<a href="http://www.theregister.co.uk/2010/08/10/side_channel_printer_attack/" target="_blank">How an ancient printer can spill your most intimate secrets</a>&#8220;</p>
<p style="text-align: justify;">&#8220;Researchers have devised a novel way to recover confidential messages processed in doctors&#8217; offices and elsewhere by analyzing the sounds made when documents are reproduced on dot-matrix printers. This so-called side-channel attack works by recording the “acoustic emanations” of a confidential document being printed, and then processing it with software that translates the sounds into words. The method recovers as much as 95 per cent of the printed words when an attacker has contextual knowledge about the text being printed, such as the words included in a medical prescription or a living-will declaration. Up to 72 per cent of the text can be recovered when no context is known. The attack, which so far works only on English text, was carried out under what the researchers described as “realistic &#8212; and arguably even pessimistic &#8212; circumstances,” in which there was no shielding from ambient noise such as that made by people chatting in a nearby waiting room. Despite the wide availability of inkjet and laser printers, about 60 per cent of doctors in Germany continue to use dot-matrix devices. About 30 per cent of banks in Germany do so as well, according to the researchers. Countries such as Germany, Switzerland, and Austria require carbon-copy-capable dot-matrix printers to be used for printing prescriptions for narcotics, they said&#8230;&#8221;</p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16484"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16484&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Data+Leakage,Data+Loss+Vector,Data+Theft,Features" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=148' rel='bookmark' title='Permanent Link: University of Washington Study &#8211; Tracking the Trackers'>University of Washington Study &#8211; Tracking the Trackers</a></li>
<li><a href='https://infosecurity.us/?p=7776' rel='bookmark' title='Permanent Link: XKCD: Matrix Revisited'>XKCD: Matrix Revisited</a></li>
<li><a href='https://infosecurity.us/?p=14336' rel='bookmark' title='Permanent Link: The Score: Researchers One, Commercial Anti-Virus Zero'>The Score: Researchers One, Commercial Anti-Virus Zero</a></li>
<li><a href='https://infosecurity.us/?p=8645' rel='bookmark' title='Permanent Link: OpenSSH Flaw Revealed, Leakage Ensues'>OpenSSH Flaw Revealed, Leakage Ensues</a></li>
<li><a href='https://infosecurity.us/?p=4322' rel='bookmark' title='Permanent Link: Dinosaur Comics: Parallel Universe'>Dinosaur Comics: Parallel Universe</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16484</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>XKCD: Exoplanets</title>
		<link>https://infosecurity.us/?p=16964</link>
		<comments>https://infosecurity.us/?p=16964#comments</comments>
		<pubDate>Tue, 31 Aug 2010 18:00:41 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Humor]]></category>
		<category><![CDATA[Astronomy]]></category>
		<category><![CDATA[Brilliant]]></category>
		<category><![CDATA[Exo-objects]]></category>
		<category><![CDATA[Sarcasm]]></category>
		<category><![CDATA[Science]]></category>
		<category><![CDATA[XKCD]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16964</guid>
		<description><![CDATA[Related PostsXKCD: Honor Society XKCD: Devotion To Duty XKCD: Moria XKCD: Athiests XKCD: Savannah Ancestory


Related Posts<ol><li><a href='https://infosecurity.us/?p=12781' rel='bookmark' title='Permanent Link: XKCD: Honor Society'>XKCD: Honor Society</a></li>
<li><a href='https://infosecurity.us/?p=12871' rel='bookmark' title='Permanent Link: XKCD: Devotion To Duty'>XKCD: Devotion To Duty</a></li>
<li><a href='https://infosecurity.us/?p=15742' rel='bookmark' title='Permanent Link: XKCD: Moria'>XKCD: Moria</a></li>
<li><a href='https://infosecurity.us/?p=16353' rel='bookmark' title='Permanent Link: XKCD: Athiests'>XKCD: Athiests</a></li>
<li><a href='https://infosecurity.us/?p=16403' rel='bookmark' title='Permanent Link: XKCD: Savannah Ancestory'>XKCD: Savannah Ancestory</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><img title="XKCD: Exoplanets" src="http://imgs.xkcd.com/comics/exoplanets.png" alt="XKCD: Exoplanets" width="585" height="214" /></p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16964"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16964&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Astronomy,Brilliant,Exo-objects,Humor,Sarcasm,Science,XKCD" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=12781' rel='bookmark' title='Permanent Link: XKCD: Honor Society'>XKCD: Honor Society</a></li>
<li><a href='https://infosecurity.us/?p=12871' rel='bookmark' title='Permanent Link: XKCD: Devotion To Duty'>XKCD: Devotion To Duty</a></li>
<li><a href='https://infosecurity.us/?p=15742' rel='bookmark' title='Permanent Link: XKCD: Moria'>XKCD: Moria</a></li>
<li><a href='https://infosecurity.us/?p=16353' rel='bookmark' title='Permanent Link: XKCD: Athiests'>XKCD: Athiests</a></li>
<li><a href='https://infosecurity.us/?p=16403' rel='bookmark' title='Permanent Link: XKCD: Savannah Ancestory'>XKCD: Savannah Ancestory</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16964</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple Releases Magic Footpad, Raises Ante On Bipedal Computer Controls</title>
		<link>https://infosecurity.us/?p=16909</link>
		<comments>https://infosecurity.us/?p=16909#comments</comments>
		<pubDate>Tue, 31 Aug 2010 11:45:19 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Humor]]></category>
		<category><![CDATA[Apple Inc.]]></category>
		<category><![CDATA[Scoopertino.com]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16909</guid>
		<description><![CDATA[Ah yes&#8230; News of the release of another highly useful, yet subtle designed Apple Inc (NasdaqGS: AAPL) peripheral gas hit the interwebs&#8230; A short snippet and linkage appears after the jump. via Scoopertino&#8217;s Stephanie Weehawk:&#8221;Multi-Touch goes Multi-Toe: Introducing Magic Footpad&#8220; &#8220;Cupertino, CA — Only two weeks after Apple released Magic Trackpad, the other shoe has [...]


Related Posts<ol><li><a href='https://infosecurity.us/?p=16490' rel='bookmark' title='Permanent Link: Apple Releases iOS Updates, Multiple Vulnerabilitie Mitigated'>Apple Releases iOS Updates, Multiple Vulnerabilitie Mitigated</a></li>
<li><a href='https://infosecurity.us/?p=10400' rel='bookmark' title='Permanent Link: Apple Updates MAC OSX, Now At 10.5.8'>Apple Updates MAC OSX, Now At 10.5.8</a></li>
<li><a href='https://infosecurity.us/?p=6273' rel='bookmark' title='Permanent Link: Apple Releases Security and Java Updates'>Apple Releases Security and Java Updates</a></li>
<li><a href='https://infosecurity.us/?p=6806' rel='bookmark' title='Permanent Link: Apple Releases MAC OS X Leopard Wireless Network, App Updates'>Apple Releases MAC OS X Leopard Wireless Network, App Updates</a></li>
<li><a href='https://infosecurity.us/?p=12022' rel='bookmark' title='Permanent Link: Apple Releases New Security Updates'>Apple Releases New Security Updates</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p style="text-align: justify;"><img title="MagicFootpad" src="https://infosecurity.us/images/apple-footpad-via-scoopertino-com.jpg" alt="MagicFootpad" width="582" height="511" /></p>
<p style="text-align: justify;">Ah yes&#8230; <a href="http://scoopertino.com/multi-touch-goes-multi-toe-introducing-magic-footpad/" target="_blank">News</a> of the release of another highly useful, yet subtle designed <a href="http://www.apple.com/" target="_blank">Apple   Inc</a> (NasdaqGS: <a href="http://finance.yahoo.com/q?s=Aapl" target="_blank">AAPL</a>) peripheral gas hit the interwebs&#8230; A short snippet and linkage appears after the jump.</p>
<p style="text-align: justify;"><span id="more-16909"></span></p>
<p style="text-align: justify;">via <a href="http://scoopertino.com/multi-touch-goes-multi-toe-introducing-magic-footpad/" target="_blank">Scoopertino&#8217;s</a> <a title="Posts by Stephanie Weehawk" href="http://scoopertino.com/author/stephanie-weehawk/">Stephanie Weehawk</a>:&#8221;<a href="http://scoopertino.com/multi-touch-goes-multi-toe-introducing-magic-footpad/" target="_blank">Multi-Touch goes Multi-Toe: Introducing Magic Footpad</a>&#8220;</p>
<p style="text-align: justify;">&#8220;<strong>Cupertino, CA —</strong> Only two weeks after Apple released  Magic Trackpad, the other shoe has dropped. Or should we say foot. Now  comes Magic Footpad, which brings the joy of Multi-Touch to the ten  lower digits. Magic Footpad measures 2.5′ x 2.5′, fitting perfectly under your  desk, and connects via Bluetooth. Though it looks similar to Magic  Trackpad, it is significantly more capable. Magic Footpad recognizes individual toes, allowing you to use  gestures common to other Apple trackpads (tap, swipe, double-swipe,  etc.). In addition, it recognizes over 30 classic dance steps, including  Cha-Cha, Rhumba, Merengue and the Twist. In networked offices, it also  supports Line Dancing.&#8221;</p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16909"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16909&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Apple+Inc.,Humor,Scoopertino.com" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=16490' rel='bookmark' title='Permanent Link: Apple Releases iOS Updates, Multiple Vulnerabilitie Mitigated'>Apple Releases iOS Updates, Multiple Vulnerabilitie Mitigated</a></li>
<li><a href='https://infosecurity.us/?p=10400' rel='bookmark' title='Permanent Link: Apple Updates MAC OSX, Now At 10.5.8'>Apple Updates MAC OSX, Now At 10.5.8</a></li>
<li><a href='https://infosecurity.us/?p=6273' rel='bookmark' title='Permanent Link: Apple Releases Security and Java Updates'>Apple Releases Security and Java Updates</a></li>
<li><a href='https://infosecurity.us/?p=6806' rel='bookmark' title='Permanent Link: Apple Releases MAC OS X Leopard Wireless Network, App Updates'>Apple Releases MAC OS X Leopard Wireless Network, App Updates</a></li>
<li><a href='https://infosecurity.us/?p=12022' rel='bookmark' title='Permanent Link: Apple Releases New Security Updates'>Apple Releases New Security Updates</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16909</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Science Tuesday: Asteroidal Discoveries Mapped, 01980 &#8211; 02010</title>
		<link>https://infosecurity.us/?p=16957</link>
		<comments>https://infosecurity.us/?p=16957#comments</comments>
		<pubDate>Tue, 31 Aug 2010 11:40:24 +0000</pubDate>
		<dc:creator>Marc Handelman</dc:creator>
				<category><![CDATA[Science]]></category>
		<category><![CDATA[Asteroids]]></category>
		<category><![CDATA[Astronomy]]></category>
		<category><![CDATA[Brilliant]]></category>
		<category><![CDATA[Science Tuesday]]></category>

		<guid isPermaLink="false">https://infosecurity.us/?p=16957</guid>
		<description><![CDATA[via The Book of Joe Related PostsXKCD: Book Burning Science Tuesday: Quantum Slit In Memoriam: Joe Barr Pyramidial Bacteria Clarke: &#8220;Cyberwar Has Already Begun&#8221;


Related Posts<ol><li><a href='https://infosecurity.us/?p=15078' rel='bookmark' title='Permanent Link: XKCD: Book Burning'>XKCD: Book Burning</a></li>
<li><a href='https://infosecurity.us/?p=16800' rel='bookmark' title='Permanent Link: Science Tuesday: Quantum Slit'>Science Tuesday: Quantum Slit</a></li>
<li><a href='https://infosecurity.us/?p=231' rel='bookmark' title='Permanent Link: In Memoriam: Joe Barr'>In Memoriam: Joe Barr</a></li>
<li><a href='https://infosecurity.us/?p=15402' rel='bookmark' title='Permanent Link: Pyramidial Bacteria'>Pyramidial Bacteria</a></li>
<li><a href='https://infosecurity.us/?p=13740' rel='bookmark' title='Permanent Link: Clarke: &#8220;Cyberwar Has Already Begun&#8221;'>Clarke: &#8220;Cyberwar Has Already Begun&#8221;</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>
<object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="557" height="336" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowScriptAccess" value="always" /><param name="src" value="http://www.youtube.com/v/S_d-gs0WoUw&amp;color1=0x234900&amp;color2=0x4e9e00&amp;hl=en_US&amp;feature=player_embedded&amp;fs=1" /><param name="allowfullscreen" value="true" /><embed type="application/x-shockwave-flash" width="557" height="336" src="http://www.youtube.com/v/S_d-gs0WoUw&amp;color1=0x234900&amp;color2=0x4e9e00&amp;hl=en_US&amp;feature=player_embedded&amp;fs=1" allowscriptaccess="always" allowfullscreen="true"></embed></object>
</p>
<p>via <a href="http://www.bookofjoe.com/2010/08/every-asteroid-discovered-since-1980-animated-timeline.html" target="_blank">The Book of Joe</a></p>
<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a href="http://api.tweetmeme.com/share?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16957"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=https%3A%2F%2Finfosecurity.us%2F%3Fp%3D16957&amp;source=mhandelman&amp;style=compact&amp;service=bit.ly&amp;service_api=R_2a5339c63ca4bf3274fde39adc0527c0&amp;hashtags=Asteroids,Astronomy,Brilliant,Science,Science+Tuesday" height="61" width="50" /><br />
			</a>
		</div>


<p>Related Posts<ol><li><a href='https://infosecurity.us/?p=15078' rel='bookmark' title='Permanent Link: XKCD: Book Burning'>XKCD: Book Burning</a></li>
<li><a href='https://infosecurity.us/?p=16800' rel='bookmark' title='Permanent Link: Science Tuesday: Quantum Slit'>Science Tuesday: Quantum Slit</a></li>
<li><a href='https://infosecurity.us/?p=231' rel='bookmark' title='Permanent Link: In Memoriam: Joe Barr'>In Memoriam: Joe Barr</a></li>
<li><a href='https://infosecurity.us/?p=15402' rel='bookmark' title='Permanent Link: Pyramidial Bacteria'>Pyramidial Bacteria</a></li>
<li><a href='https://infosecurity.us/?p=13740' rel='bookmark' title='Permanent Link: Clarke: &#8220;Cyberwar Has Already Begun&#8221;'>Clarke: &#8220;Cyberwar Has Already Begun&#8221;</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>https://infosecurity.us/?feed=rss2&amp;p=16957</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
