Archive for September 2001

Ellison offers free software for national ID

InfoWorldRECOVERY – Ellison offers free software for national ID.

There has been an ongoing debate in the U.S. during recent years regarding the creation of a national ID card system, based on the existing Social Security card, that would include a centralized computer-based registry of all U.S. citizens. While some government officials in the past have advocated the creation of such a system as a means of curtailing illegal immigration in the U.S., organizations such as the American Civil Liberties Union have repeatedly voiced their opposition to the plan.

ACLU September 17, 1998 – Testimony Against Establishing a National ID Card. An old entry but becoming relevant again, especially due to Mr Ellison.

[Privacy Digest]

Recommendations for system recovery after Nimda infection

A ‘Tarpit’ That Traps Worms

Technology News from Wired NewsA ‘Tarpit’ That Traps Worms.

Network administrators now have a hacking tool that can help them strike back at malicious attackers.

“LaBrea” is a free, open-source tool that deters worms and other hack attacks by transforming unused network resources into decoy-computers that appear and act just like normal machines on a network. But when malicious hackers or mindless worms such as Nimda or Code Red attempt to connect with a LaBrea-equipped system, they get sucked into a virtual tarpit that grabs their computer’s connection — and doesn’t release it.

Worms trapped in the tarpit are unable to move along to infect other computers. Stuck hackers first waste their time flailing away at a non-existent machine; they are then forced to shut down their hacking program or computer to escape.

[ … ]

LaBrea does need a really big playground to operate effectively. Elias Levy, Chief Technical Officer at Security Focus, a security news site, calculated that on smaller networks the odds of LaBrea being able to efficiently capture and trap worms isn’t very good. The larger the network, the greater the chance of success.

“For a tool like (LaBrea) to even make a dent into the infection rate of a worm, you would need to monitor an address space of the same size as a (class B) network,” Levy said. “That’s 65,536 addresses.”

[Privacy Digest]

War: “Every effort will be made in the coming days to switch off the “why” question and concentrate on the who, what and how.”

Robert Fisk:
“Every effort will be made in the coming days to switch off the “why” question and concentrate on the who, what and how. CNN and most of the world’s media have already obeyed this essential new war rule. I’ve already seen what happens when this rule is broken. [….] No wonder we have to refer to the terrorists as “mindless”. For if we did not, we would have to explain what went on in those minds. But this attempt to censor the realities of the war that has already begun must not be permitted to continue.” [Adam Curry: CurryDotCom]

THE END USER Protect Your PC

THE END USER Protect Your PC. International Herald Tribune Sep 16 2001 9:32PM ET [Computer security news]

Beyond JS is a Javascript library that lets you write Javascript unlike anything you’ve ever written

Sjoerd: “Beyond JS is a Javascript library that lets you write Javascript unlike anything you’ve ever written.” [Scripting News]

SunFire 15000 – we have more details

SunFire 15000 – we have more details. Mainframe for the networked data centre [The Register]

FBI issues cyberattack warning

FBI issues cyberattack warning. CW360.com Sep 13 2001 5:26AM ET [via Moreover Computer security news]

BlueSocket WG-1000 wireless gateway

BlueSocket WG-1000 wireless gateway:
Put it between your access points and your enterprise network.
Authenticated access with LDAP, RADIUS, NT domain or Active Directory as a back end.
VPN/encryption via PPTP, L2TP, or IPsec.
Supports role-based QoS.
Bluetooth or 802.11B.
Hot failover.

Hotmail vulnerable to JavaScript exploit

Hotmail vulnerable to JavaScript exploit. Security sent to ObLiviON
JavaScript embedded in “From:” header [The Register]