<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[Liquidmatrix Security Digest]]></title>
    <link>http://www.securityratty.com/feed/2d16d8065ff3cee34dddb31f8bc943b9</link>
    <description></description>
    <pubDate>Wed, 25 Jun 2008 15:28:20 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Security Ratty, Steals Content One Time Too Many]]></title>
      <link>http://www.securityratty.com/article/ee754d4ec60a78a0efc14ad3494a102a</link>
      <guid>http://www.securityratty.com/article/ee754d4ec60a78a0efc14ad3494a102a</guid>
      <description><![CDATA[&lt;H3&gt;Blog is blacklisted: improper conduct by blog author&lt;/h3&gt;&lt;br /&gt;One of the more annoying aspects of writing for an internet audience is the presence of site skimmers. Sites that will re-post...]]></description>
      <content:encoded><![CDATA[<H3>Blog is blacklisted: improper conduct by blog author</h3><br />One of the more annoying aspects of writing for an internet audience is the presence of site skimmers. Sites that will re-post content from other sites making it appear as their own. ...]]></content:encoded>
      <pubDate>Wed, 02 Jul 2008 15:56:54 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/site security ratty">site security ratty</category>
      <category domain="http://www.securityratty.com/tag/site">site</category>
      <category domain="http://www.securityratty.com/tag/site skimmers">site skimmers</category>
      <category domain="http://www.securityratty.com/tag/named sergey zarubin">named sergey zarubin</category>
      <category domain="http://www.securityratty.com/tag/rich">rich</category>
      <category domain="http://www.securityratty.com/tag/rich mogull">rich mogull</category>
      <category domain="http://www.securityratty.com/tag/recent change">recent change</category>
      <category domain="http://www.securityratty.com/tag/internet audience">internet audience</category>
      <category domain="http://www.securityratty.com/tag/sites">sites</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/325155686/">Security Ratty, Steals Content One Time Too Many</source>
    </item>
    <item>
      <title><![CDATA[Security Briefing: July 2nd]]></title>
      <link>http://www.securityratty.com/article/86b6637d849af0ba574d4cc66c7b29f3</link>
      <guid>http://www.securityratty.com/article/86b6637d849af0ba574d4cc66c7b29f3</guid>
      <description><![CDATA[Back in the saddle again. Its a short week for both sides of the border here in North America. Happy post Canada Day to my brethren and a Happy (and approaching) July 4th to our cousins to the south...]]></description>
      <content:encoded><![CDATA[<p><center><img src='http://www.liquidmatrix.org/blog/wp-content/uploads/2007/09/newspapera.jpg' alt='newspapera.jpg' /></center></p>
<p>Back in the saddle again. It&#8217;s a short week for both sides of the border here in North America. Happy post Canada Day to my brethren and a Happy (and approaching) July 4th to our cousins to the south.</p>
<p>Click here to <a href="http://feeds.feedburner.com/Liquidmatrix">subscribe to Liquidmatrix Security Digest!</a>. </p>
<p>And now, the news&#8230;</p>
<ol>
<li><a href="http://news.cnet.com/8301-13554_3-9982240-33.html">2600 HOPE conference bringing hacking to New York City</a> (<i>and we&#8217;ll see you there</i>) | CNET</li>
<li><a href="http://www.lasvegasnow.com/Global/story.asp?S=8588929&amp;nav=menu102_2">FBI Investigating Major ATM Hacking Ring</a> | Las Vegas Now</li>
<li><a href="http://www.pcworld.com/businesscenter/article/147776/study_unpatched_web_browsers_prevalent_on_the_internet.html">Study: Unpatched Web Browsers Prevalent on the Internet</a> | PC World</li>
<li><a href="http://security.itproportal.com/articles/2008/07/01/netherlands-man-arrested-hacking-50000-credit-cards/">Netherlands man arrested for hacking 50,000 credit cards</a> | Security Pro Portal</li>
<li><a href="http://www.informationweek.com/blog/main/archives/2008/07/vint_cerf_the_i.html">Vint Cerf Says Government Needs To Encourage Internet Competition</a> | Information Week</li>
<li><a href="http://www.veracode.com/blog/?p=117">The Government’s Top Hackers?</a> | Veracode</li>
<li><a href="http://blogs.zdnet.com/security/?p=1365">HSBC sites vulnerable to XSS flaws, could aid phishing attacks</a> | ZDNet</li>
<li><a href="http://www.independent.co.uk/news/business/news/hmrc-goes-capinhand-to-americans-for-help-with-fraud-856441.html">HMRC goes cap-in-hand to Americans for help with fraud</a> | The Independent</li>
</ol>
<p> Tags: <a href="http://technorati.com/tag/News" rel="tag">News</a>, <a href="http://technorati.com/tag/Daily+Links" rel="tag"> Daily Links</a>, <a href="http://technorati.com/tag/Security+Blog" rel="tag"> Security Blog</a>, <a href="http://technorati.com/tag/Information+Security" rel="tag"> Information Security</a>, <a href="http://technorati.com/tag/Security+News" rel="tag"> Security News</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=2pAYAk"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=2pAYAk" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=5iYstJ"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=5iYstJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=63CuEj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=63CuEj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=0y8XEj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=0y8XEj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=ubLELj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=ubLELj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=cNE8Gj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=cNE8Gj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/324886536" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 02 Jul 2008 09:20:43 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/encourage internet competition">encourage internet competition</category>
      <category domain="http://www.securityratty.com/tag/internet">internet</category>
      <category domain="http://www.securityratty.com/tag/security news">security news</category>
      <category domain="http://www.securityratty.com/tag/news">news</category>
      <category domain="http://www.securityratty.com/tag/hsbc sites vulnerable">hsbc sites vulnerable</category>
      <category domain="http://www.securityratty.com/tag/web browsers prevalent">web browsers prevalent</category>
      <category domain="http://www.securityratty.com/tag/governments top hackers">governments top hackers</category>
      <category domain="http://www.securityratty.com/tag/security pro portal">security pro portal</category>
      <category domain="http://www.securityratty.com/tag/north america">north america</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/324886536/">Security Briefing: July 2nd</source>
    </item>
    <item>
      <title><![CDATA[Google Open Sources Web Assessment Tool]]></title>
      <link>http://www.securityratty.com/article/128129d00191a851fc7c17a3ec3f9529</link>
      <guid>http://www.securityratty.com/article/128129d00191a851fc7c17a3ec3f9529</guid>
      <description><![CDATA[The folks at Google have released their own proprietary web application assessment proxy. The tool is called ratproxy and was authored by Michal Zalewski
From Google Code
Ratproxy is a semi-automated,...]]></description>
      <content:encoded><![CDATA[<p>The folks at Google have released their own proprietary web application assessment proxy. The tool is called ratproxy and was authored by <a href="http://lcamtuf.coredump.cx/">Michal Zalewski</a>.</p>
<p>From Google Code:</p>
<blockquote><p>Ratproxy is a semi-automated, largely passive web application security audit tool. It is meant to complement active crawlers and manual proxies more commonly used for this task, and is optimized specifically for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments.</p></blockquote>
<p>This tool falls into the same family as Burp and Paros, as examples. It will apparently run on Linux, FreeBSD, Mac OS X and Windows if you have Cygwin loaded. Check it out. </p>
<p><a href="http://code.google.com/p/ratproxy/">Article Link</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=NkvSmj"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=NkvSmj" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=El0TEJ"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=El0TEJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=MdpCej"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=MdpCej" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=G6TZLj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=G6TZLj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=ESE22j"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=ESE22j" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=ac9LIj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=ac9LIj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/324867361" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 02 Jul 2008 08:51:09 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/google">google</category>
      <category domain="http://www.securityratty.com/tag/tool">tool</category>
      <category domain="http://www.securityratty.com/tag/tool falls">tool falls</category>
      <category domain="http://www.securityratty.com/tag/complement active crawlers">complement active crawlers</category>
      <category domain="http://www.securityratty.com/tag/design patterns based">design patterns based</category>
      <category domain="http://www.securityratty.com/tag/google code">google code</category>
      <category domain="http://www.securityratty.com/tag/ratproxy">ratproxy</category>
      <category domain="http://www.securityratty.com/tag/article link">article link</category>
      <category domain="http://www.securityratty.com/tag/michal zalewski">michal zalewski</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/324867361/">Google Open Sources Web Assessment Tool</source>
    </item>
    <item>
      <title><![CDATA[Snort Security Platform 3.0 Beta Released]]></title>
      <link>http://www.securityratty.com/article/1f4e2b6789774132eea1a5417ead2a1e</link>
      <guid>http://www.securityratty.com/article/1f4e2b6789774132eea1a5417ead2a1e</guid>
      <description><![CDATA[Marty Roesch and company have just announced the release of Snort 3.0 beta
From Snort.org
Were pleased to introduce our first beta release built on the new Snort 3.0 architecture. The Snort 3.0...]]></description>
      <content:encoded><![CDATA[<p>Marty Roesch and company have just announced the release of Snort 3.0 beta. </p>
<p>From Snort.org:</p>
<blockquote><p>We’re pleased to introduce our first beta release built on the new Snort 3.0 architecture. The Snort 3.0 architecture consists of two primary components: a software platform called the Snort Security Platform (SnortSP) 3.0, which is shipping in beta form in this release, and traffic analysis engine modules that plug into SnortSP. This beta test release contains one engine module which contains the Snort 2.8.2 detection engine implemented as a SnortSP engine module. SnortSP is an open-source platform for running packet-based network security applications. It provides many of the common functions required by programs that deal with packet processing such as configuration loading, event generation and traffic logging, data acquisition, protocol decoding and validation, flow management, and more.</p></blockquote>
<p>They provide you an opportunity to provide feedback on the beta release as well &#8220;sspneta SHIFT 2 sourcefire D0T com&#8221;.</p>
<p>Downloading my copy now.</p>
<p><a href="http://www.snort.org/dl/snortsp/">Article Link</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=LTShft"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=LTShft" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=YgoefI"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=YgoefI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=PrSy0i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=PrSy0i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=2fImNi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=2fImNi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=KgMMQi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=KgMMQi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=HZ0Mni"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=HZ0Mni" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/323662680" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 30 Jun 2008 21:11:34 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/beta">beta</category>
      <category domain="http://www.securityratty.com/tag/release">release</category>
      <category domain="http://www.securityratty.com/tag/beta release">beta release</category>
      <category domain="http://www.securityratty.com/tag/snort security platform">snort security platform</category>
      <category domain="http://www.securityratty.com/tag/snort">snort</category>
      <category domain="http://www.securityratty.com/tag/engine module">engine module</category>
      <category domain="http://www.securityratty.com/tag/snortsp engine module">snortsp engine module</category>
      <category domain="http://www.securityratty.com/tag/beta test release">beta test release</category>
      <category domain="http://www.securityratty.com/tag/snortsp">snortsp</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/323662680/">Snort Security Platform 3.0 Beta Released</source>
    </item>
    <item>
      <title><![CDATA[ICANN And IANA Defaced]]></title>
      <link>http://www.securityratty.com/article/5887642d6261fd229fc5f260cd84c5ab</link>
      <guid>http://www.securityratty.com/article/5887642d6261fd229fc5f260cd84c5ab</guid>
      <description><![CDATA[Well, I have to admit I only just saw this one this morning. Since its a long weekend(ish) here in Canada I wasnt planning on updating the site until Wednesday. This one is something worth sharing. I...]]></description>
      <content:encoded><![CDATA[<p>Well, I have to admit I only just saw this one this morning. Since it&#8217;s a long weekend(ish) here in Canada I wasn&#8217;t planning on updating the site until Wednesday. This one is something worth sharing. I figured I&#8217;d pass it along. </p>
<p>A group calling itself &#8220;NetDevilz&#8221; defaced the homepages for ICANN &amp; IANA. </p>
<p><center><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2008/06/icanndefaced.jpg" alt="credit: Websense, Zone-H" /></center></p>
<p>Ouch.</p>
<p>From Websense:</p>
<blockquote><p>Websense® Security Labs™ has received reports that the official website of ICANN and IANA Domains have been hijacked by a Turkish group called “NetDevilz”. ICANN and IANA are responsible for the Internet Protocol (IP) address space allocation, protocol identifier assignment, generic (gTLD) and country code Top Level Domain Name System management, and root server system management functions.</p></blockquote>
<p>For the full advisory please read on.</p>
<p><a href="http://securitylabs.websense.com/content/Alerts/3119.aspx">Article Link</a></p>
<p>For more on this check out Dancho Danchev&#8217;s <a href="http://ddanchev.blogspot.com/2008/06/icann-and-ianas-domain-names-hijacked.html">posting</a> on his site.</p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=hrECsk"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=hrECsk" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=Vw07MI"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=Vw07MI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=IoWIki"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=IoWIki" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=Iv4zyi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=Iv4zyi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=4rciQi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=4rciQi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=iKXGgi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=iKXGgi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/323293837" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 30 Jun 2008 10:49:35 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/iana">iana</category>
      <category domain="http://www.securityratty.com/tag/icann">icann</category>
      <category domain="http://www.securityratty.com/tag/websense">websense</category>
      <category domain="http://www.securityratty.com/tag/websense security labs">websense security labs</category>
      <category domain="http://www.securityratty.com/tag/iana domains">iana domains</category>
      <category domain="http://www.securityratty.com/tag/protocol identifier assignment">protocol identifier assignment</category>
      <category domain="http://www.securityratty.com/tag/address space allocation">address space allocation</category>
      <category domain="http://www.securityratty.com/tag/article link">article link</category>
      <category domain="http://www.securityratty.com/tag/system management">system management</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/323293837/">ICANN And IANA Defaced</source>
    </item>
    <item>
      <title><![CDATA[Security Briefing: June 26th]]></title>
      <link>http://www.securityratty.com/article/20cb5c5674bc648f3e21f47cde22b211</link>
      <guid>http://www.securityratty.com/article/20cb5c5674bc648f3e21f47cde22b211</guid>
      <description><![CDATA[OK, the database cluster is back up and playing nice after its petulant episode
Click here to subscribe to Liquidmatrix Security Digest
And now, the news
MoD implements new data security measures | PC...]]></description>
      <content:encoded><![CDATA[<p><center><img src='http://www.liquidmatrix.org/blog/wp-content/uploads/2007/09/newspapera.jpg' alt='newspapera.jpg' /></center></p>
<p>OK, the database cluster is back up and playing nice after its petulant episode. </p>
<p>Click here to <a href="http://feeds.feedburner.com/Liquidmatrix">subscribe to Liquidmatrix Security Digest!</a>. </p>
<p>And now, the news&#8230;</p>
<ol>
<li><a href="http://www.pcadvisor.co.uk/news/index.cfm?newsid=13532">MoD implements new data security measures</a> | PC Advisor</li>
<li><a href="http://lifestyle.hexus.net/content/item.php?item=14045">Do natural human traits make us more vulnerable to computer malware?</a> | Hexus</li>
<li><a href="http://www.networkworld.com/news/2008/062408-the-staff-the-thief-the.html">The staff, the thief, the device and its data</a> | Network World</li>
<li><a href="http://www.theaustralian.news.com.au/story/0,25197,23912352-643,00.html">Credit card firms wave stick at retailers</a> | The Australian</li>
<li><a href="http://www.theregister.co.uk/2008/06/24/pci_dss_compliance/">Merchants call credit card industry&#8217;s bluff on compliance</a> | The Register</li>
<li><a href="http://www.wyff4.com/news/16710144/detail.html">Chairman: Computer Hacking &#8216;Much More Widespread&#8217;</a> | WYFF 4</li>
<li><a href="http://www.chron.com/disp/story.mpl/headline/metro/5854484.html">Fired Houston organ bank worker accused of hacking into system</a> | Houston Chronicle</li>
<li><a href="http://www.vnunet.com/vnunet/news/2219820/pci-standard-lacking-secerno">PCI standard &#8216;ignores&#8217; insider threat</a> | vnunet</li>
<li><a href="http://www.stuff.co.nz/4596153a11.html">Student suspended after hacking emails</a> | Stuff NZ</li>
</ol>
<p> Tags: <a href="http://technorati.com/tag/News" rel="tag">News</a>, <a href="http://technorati.com/tag/Daily+Links" rel="tag"> Daily Links</a>, <a href="http://technorati.com/tag/Security+Blog" rel="tag"> Security Blog</a>, <a href="http://technorati.com/tag/Information+Security" rel="tag"> Information Security</a>, <a href="http://technorati.com/tag/Security+News" rel="tag"> Security News</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=wwo5bp"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=wwo5bp" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=UaS03I"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=UaS03I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=zVX34i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=zVX34i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=niEgni"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=niEgni" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=EO0ZZi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=EO0ZZi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=M1mXdi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=M1mXdi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/320513473" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 26 Jun 2008 09:11:27 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/data">data</category>
      <category domain="http://www.securityratty.com/tag/data security measures">data security measures</category>
      <category domain="http://www.securityratty.com/tag/security news">security news</category>
      <category domain="http://www.securityratty.com/tag/news">news</category>
      <category domain="http://www.securityratty.com/tag/natural human traits">natural human traits</category>
      <category domain="http://www.securityratty.com/tag/computer">computer</category>
      <category domain="http://www.securityratty.com/tag/computer malware">computer malware</category>
      <category domain="http://www.securityratty.com/tag/database cluster">database cluster</category>
      <category domain="http://www.securityratty.com/tag/security blog">security blog</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/320513473/">Security Briefing: June 26th</source>
    </item>
    <item>
      <title><![CDATA[White House Refused to Open Pollutants E-Mail]]></title>
      <link>http://www.securityratty.com/article/3561498fbd3f53dfa2cf831de7741413</link>
      <guid>http://www.securityratty.com/article/3561498fbd3f53dfa2cf831de7741413</guid>
      <description><![CDATA[This is by far one of the more asinine things I have read in a while and speaks volumes to lunacy in the White House. The WH refused to open an email that was sent by the EPA because they disagreed...]]></description>
      <content:encoded><![CDATA[<p>This is by far one of the more asinine things I have read in a while and speaks volumes to lunacy in the White House. The WH <b>refused</b> to open an email that was sent by the EPA because they disagreed with the conclusion that greenhouse gases are pollutants. </p>
<p>So, they played three monkeys and said, &#8220;la la la, I can&#8217;t see it. la la la&#8221; (<i>not an exact quote</i>) But, that&#8217;s not where the absurdity ends. The EPA could have sent a printed copy and that would have been the end of it.  </p>
<p>Nope. </p>
<p>Instead they rewrote the conclusions to make more palatable for the dunking bird-set. Email has always been a best effort tool that has morphed into business critical function over the years. But, to say they wouldn&#8217;t open an email&#8230;wow. Remember folks, if you are a Republican or Democrat be sure to <b>VOTE</b>. You have a responsibility.</p>
<p>From NY Times:</p>
<blockquote><p>Over the past five days, the officials said, the White House successfully put pressure on the E.P.A. to eliminate large sections of the original analysis that supported regulation, including a finding that tough regulation of motor vehicle emissions could produce $500 billion to $2 trillion in economic benefits over the next 32 years. The officials spoke on condition of anonymity because they were not authorized to discuss the matter.</p>
<p>Both documents, as prepared by the E.P.A., “showed that the Clean Air Act can work for certain sectors of the economy, to reduce greenhouse gases,” one of the senior E.P.A. officials said. “That’s not what the administration wants to show. They want to show that the Clean Air Act can’t work.” </p></blockquote>
<p>November can&#8217;t come soon enough.</p>
<p><a href="http://www.nytimes.com/2008/06/25/washington/25epa.html?_r=1&amp;oref=slogin">Article Link</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=MMl8uC"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=MMl8uC" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=6TbNFI"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=6TbNFI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=cavZ7i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=cavZ7i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=ES8N5i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=ES8N5i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=6vN1Wi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=6vN1Wi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=SCqOei"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=SCqOei" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/320504211" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 26 Jun 2008 08:54:58 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/white house">white house</category>
      <category domain="http://www.securityratty.com/tag/clean air act">clean air act</category>
      <category domain="http://www.securityratty.com/tag/reduce greenhouse gases">reduce greenhouse gases</category>
      <category domain="http://www.securityratty.com/tag/greenhouse gases">greenhouse gases</category>
      <category domain="http://www.securityratty.com/tag/regulation">regulation</category>
      <category domain="http://www.securityratty.com/tag/officials">officials</category>
      <category domain="http://www.securityratty.com/tag/motor vehicle emissions">motor vehicle emissions</category>
      <category domain="http://www.securityratty.com/tag/business critical function">business critical function</category>
      <category domain="http://www.securityratty.com/tag/tough regulation">tough regulation</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/320504211/">White House Refused to Open Pollutants E-Mail</source>
    </item>
    <item>
      <title><![CDATA[Can The Gov Be Trusted With Your Personal Data?]]></title>
      <link>http://www.securityratty.com/article/f09583068525ca2d56abe689ff8ea4e0</link>
      <guid>http://www.securityratty.com/article/f09583068525ca2d56abe689ff8ea4e0</guid>
      <description><![CDATA[Survey says(insert buzzer noise
Faith in the (UK) govs ability to securely manage personal data is out the window
From Reuters
The inquiries followed Britains biggest data loss scandal, when two discs...]]></description>
      <content:encoded><![CDATA[<p>Survey says&#8230;(insert buzzer noise)</p>
<p>Faith in the (UK) gov&#8217;s ability to securely manage personal data is out the window. </p>
<p>From Reuters:</p>
<blockquote><p>The inquiries followed Britain’s biggest data loss scandal, when two discs containing child benefit records, including names, addresses and bank details, of some 25 million people, went missing after being put in the post by a junior employee.</p>
<p>The reports concluded that it wasn’t individuals who were to blame - some 30 were officials played some role in events leading to the loss of the discs - but institutional and systematic failures at Britain’s tax authority.</p>
<p>But the HMRC is not alone in such security breaches. A separate report into a stolen laptop containing the details of 600,000 potential recruits revealed similar failings at the Ministry of Defence. In all, four MoD computers had been stolen since 2004 and the report said the MoD was probably in breach of several principles set out in the Data Protection Act.</p></blockquote>
<p>Well, where do you stand? Do you trust your respective government not to punt on data security? </p>
<p>Read on.</p>
<p><a href="http://blogs.reuters.com/uknews/2008/06/25/can-the-government-be-trusted-with-your-personal-data/">Article Link</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=770kXb"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=770kXb" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=pFZPzI"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=pFZPzI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=hm8i3i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=hm8i3i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=pnvfai"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=pnvfai" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=en11wi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=en11wi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=EkCewi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=EkCewi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/320499028" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 26 Jun 2008 08:44:35 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/loss">loss</category>
      <category domain="http://www.securityratty.com/tag/data loss scandal">data loss scandal</category>
      <category domain="http://www.securityratty.com/tag/britains">britains</category>
      <category domain="http://www.securityratty.com/tag/britains tax authority">britains tax authority</category>
      <category domain="http://www.securityratty.com/tag/data protection act">data protection act</category>
      <category domain="http://www.securityratty.com/tag/details">details</category>
      <category domain="http://www.securityratty.com/tag/child benefit records">child benefit records</category>
      <category domain="http://www.securityratty.com/tag/mod computers">mod computers</category>
      <category domain="http://www.securityratty.com/tag/bank details">bank details</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/320499028/">Can The Gov Be Trusted With Your Personal Data?</source>
    </item>
    <item>
      <title><![CDATA[Security Certification Rules Could Shake Up IT Mgmt]]></title>
      <link>http://www.securityratty.com/article/4f82425b41fbf0177d2fd2faa45c0e29</link>
      <guid>http://www.securityratty.com/article/4f82425b41fbf0177d2fd2faa45c0e29</guid>
      <description><![CDATA[This seems to a well intentioned but, misguided attempt by the Office of Management and Budget. They are attempting to establish minimum requirements for professional certification for IT workers
Hmm...]]></description>
      <content:encoded><![CDATA[<p>This seems to a well intentioned but, misguided attempt by the Office of Management and Budget. They are attempting to establish minimum requirements for professional certification for IT workers. </p>
<p>Hmm.</p>
<p>From GCN:</p>
<blockquote><p>“This is a change we have not faced in the IT security industry before,” he added.</p>
<p>The closest parallel has been in the Defense Department, which anticipated OMB’s reaction in this area. DOD’s Directive 8570 on information assurance, approved in December 2005, requires all of the department’s information assurance workers to obtain an accredited commercial certification in computer security. DOD has approved 13 certifications for the directive.</p>
<p>The DOD requirement already has thrown what one conference attendee called a giant monkey wrench into the IT security manpower market.</p>
<p>“If OMB issues a similar requirement, it’s going to throw the supply and demand curve even more out of balance,” he said.</p>
<p>Datesman agreed, saying it probably would take years for the supply of certified workers to catch up with demand. A CISSP certification requires five years’ experience. “You don’t mint them out of college,” he said. </p></blockquote>
<p>OK, this is where this trolley leaves the track. I have met CISSP certified folks that I would wager they&#8217;d be lucky to fight their way out of a wet paper bag. &#8220;Don&#8217;t mint them out of college&#8221; is a phrase that I&#8217;d argue. I would offer that the ISC2 should start auditing certified members. The validity of the CISSP cert is becoming diluted in the eyes of the market.</p>
<p>A picture is worth a thousand words.</p>
<p><center><img src="http://www.liquidmatrix.org/blog/wp-content/uploads/2007/08/notacissp.jpg" alt="Myrcurial at Defcon" /></center></p>
<p>It&#8217;s great for the mandatory HR tick box but, how many of these folks actually have the ability? Sure they can memorize some flash cards and pass a test but, are they effective? Some, not so much.</p>
<p>On the face of it this is a good idea. </p>
<p>Like all good intentions, they make great paving stones on the road to hell. </p>
<p><a href="http://www.gcn.com/online/vol1_no1/46543-1.html">Article Link</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=qIkGql"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=qIkGql" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=CehK5I"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=CehK5I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=CQohOi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=CQohOi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=xF5oKi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=xF5oKi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=qY7Wui"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=qY7Wui" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=TNh3Mi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=TNh3Mi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/320492452" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 26 Jun 2008 08:33:17 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/cissp cert">cissp cert</category>
      <category domain="http://www.securityratty.com/tag/cissp">cissp</category>
      <category domain="http://www.securityratty.com/tag/cissp certification requires">cissp certification requires</category>
      <category domain="http://www.securityratty.com/tag/requires">requires</category>
      <category domain="http://www.securityratty.com/tag/market">market</category>
      <category domain="http://www.securityratty.com/tag/security manpower market">security manpower market</category>
      <category domain="http://www.securityratty.com/tag/giant monkey wrench">giant monkey wrench</category>
      <category domain="http://www.securityratty.com/tag/dod requirement">dod requirement</category>
      <category domain="http://www.securityratty.com/tag/establish minimum requirements">establish minimum requirements</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/320492452/">Security Certification Rules Could Shake Up IT Mgmt</source>
    </item>
    <item>
      <title><![CDATA[Back Office Fun]]></title>
      <link>http://www.securityratty.com/article/83fdd36712574437f10b575303532a55</link>
      <guid>http://www.securityratty.com/article/83fdd36712574437f10b575303532a55</guid>
      <description><![CDATA[Sorry for the lack of updates today. Our backend database cluster decided to fall on its sword this morning and were cleaning up the mess. Well be updating content again tomorrow first thing. Unless...]]></description>
      <content:encoded><![CDATA[<p>Sorry for the lack of updates today. Our backend database cluster decided to fall on its sword this morning and we&#8217;re cleaning up the mess. We&#8217;ll be updating content again tomorrow first thing. Unless of course I happen to I feel froggy after work then I&#8217;ll tackle some updates.</p>
<p>Thanks for the emails. All is well. </p>
<p>Nothing to see here. Move along.<br />
 <img src='http://www.liquidmatrix.org/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=lcfq6B"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=lcfq6B" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=z8dxXI"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=z8dxXI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=43sXXi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=43sXXi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=AEuc0i"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=AEuc0i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=fWPCTi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=fWPCTi" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=MBxZRi"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=MBxZRi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/319938454" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 25 Jun 2008 15:28:20 +0000</pubDate>
      <category domain="http://www.securityratty.com/tag/backend database cluster">backend database cluster</category>
      <category domain="http://www.securityratty.com/tag/sword">sword</category>
      <category domain="http://www.securityratty.com/tag/move">move</category>
      <category domain="http://www.securityratty.com/tag/content">content</category>
      <category domain="http://www.securityratty.com/tag/tackle">tackle</category>
      <category domain="http://www.securityratty.com/tag/froggy">froggy</category>
      <category domain="http://www.securityratty.com/tag/lack">lack</category>
      <category domain="http://www.securityratty.com/tag/tomorrow">tomorrow</category>
      <category domain="http://www.securityratty.com/tag/emails">emails</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/319938454/">Back Office Fun</source>
    </item>
  </channel>
</rss>
