A few years ago, I had the privilege of speaking to a gentleman who worked for the Gallup Organization. We had a substantive discussion about the business and standards of...
5:33 PM |
0 comments
Sen. John McCain secured millions in federal funds for a land acquisition program that provided a windfall for an Arizona developer whose executives were major campaign donors, public records show.
12:05 PM |
2 comments
Oscar Pistorius, a double-amputee sprinter known as the fastest man on no legs, will be allowed to compete at the Beijing Olympics after a ban on his prosthetic limbs...
12:00 PM |
0 comments
A spy in the audience of this Thursdays taping of the "Ellen DeGeneres Show" tells us that after Ellen mentioned the California Supreme Court ruling striking down the state's...
11:55 AM |
0 comments
Forget the engagement buzz. Not only are Kate Hudson and Owen Wilson not getting married, they're not even an item anymore. After reuniting less than two months ago, the...
11:46 AM |
0 comments
Thou shalt find the Ten Commandments up for bid this summer. A pair of faux granite tablets that Charlton Heston cradled in the 1956 biblical epic "The Ten Commandments"...
11:41 AM |
0 comments
Actress Anne Heche has blamed the cancellation of TV series Men In Trees for her inability to pay child support. The star was granted a reprieve in the monthly...
11:29 AM |
0 comments
More secret details of Angelina Jolie's pregnancy have been exposed by a Kung Fu Panda co-star - Dustin Hoffman has revealed the actress is due to give birth to...
11:26 AM |
0 comments
A new Friday the 13th has begun shooting. Brad Fuller, one of the film's producers, writes "In this movie you will see a feral, brutal Jason who is hell-bent...
10:15 AM |
0 comments
Yep. When Edwards dropped out on Jan. 30, he had endorsements from 28 superdelegates, including Reps. Bob Etheridge (NC), Mike McIntyre (NC), Brad Miller (NC), Stephanie Herseth Sandlin (SD), Charlie Gonzalez (TX), Eddie Bernice Johnson (TX), Jim Oberstar (MN), David...
9:18 PM |
0 comments
Comments (7)
Hi, Mary Katharine! Come on... (Below threshold)1. Posted by Kim | April 28, 2006 1:24 PM | Score: 0 (0 votes cast)
Hi, Mary Katharine! Come on in! The bloggin's fine.
1. Posted by Kim | April 28, 2006 1:24 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 13:24
2. Posted by Aaron's cc: | April 28, 2006 2:24 PM | Score: 0 (0 votes cast)
You're welcome.
2. Posted by Aaron's cc: | April 28, 2006 2:24 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 14:24
3. Posted by Brad | April 28, 2006 3:36 PM | Score: 0 (0 votes cast)
In your post about oil and congressional ingnorance, the agency involved would be the FTC, not the FCC.
3. Posted by Brad | April 28, 2006 3:36 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 15:36
4. Posted by Mary Katharine | April 28, 2006 4:02 PM | Score: 0 (0 votes cast)
Thank you! I knew that was the wrong acronym and I couldn't put my finger on the right one.
4. Posted by Mary Katharine | April 28, 2006 4:02 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 16:02
5. Posted by Tim | April 28, 2006 4:23 PM | Score: 0 (0 votes cast)
Pam Anderson is worried about the stressful conditions of the animals in the zoo? I'm sure if the animals could talk they would tell her it's a lot more stressful in their natural habitat where they're part of the food chain.
5. Posted by Tim | April 28, 2006 4:23 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 16:23
6. Posted by virgo | April 28, 2006 4:57 PM | Score: 0 (0 votes cast)
Maybe We should give Dr.Doolittle a call.
6. Posted by virgo | April 28, 2006 4:57 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 16:57
7. Posted by Thanos | April 28, 2006 9:28 PM | Score: 0 (0 votes cast)
I wonder if hosting matters useing IVE and Netscreen firewalls? See below SANS internet storm center, handler's diary
and little flaws in IVE (NEW)
Published: 2006-04-28,
Last Updated: 2006-04-28 19:01:24 UTC by donald smith (Version: 2(click to highlight changes))
Juniper Networks released a vulnerability announcement today.
From: http://www.juniper.net/support/security/alerts/PSN-2006-03-013.txt
"Title: IVE ActiveX client vulnerability
Date: 25 April 2006
Version: 1.0
Impact: Client side code execution in context of Internet Explorer
Affected Products: IVE OS 1.x to 5.x
Max Risk: High
Recommended Actions: Upgrade the IVE software to any of the following fixed versions: 5.3r2.1, 5.2r4.1, 5.1r8, 5.0r6.1, 4.2r8.1"
It appears that an activeX control that is installed when using IVE can be remotely exploited.
The exploit described by eeye looks fairly trivial.
IVE is Instant Virtual Extranet which provides SSL VPN control with centralized reporting, monitoring and configuration management. It is basically a host security auditor and can be used as an element of their netscreen remote client. It can verify things like recent virus signatures and scans. Which is important before letting some machine on to your corporate network!
eeye has published the details here:
http://www.eeye.com/html/research/advisories/AD20060424.html
Bleeding Edge Snort team has developed a signature for this.
http://blog.gmane.org/gmane.comp.security.ids.snort.bleedingsnort
alert tcp $EXTERNAL_NET $HTTP_PORTS -> $HOME_NET any (msg:"BLEEDING-EDGE WEB CLIENT JuniperSetup Control Buffer Overflow"; flow:established,from_server; content:"E5F5D008-DD2C-4D32-977D-1A0ADF03058B"; nocase; content:"ProductName"; nocase; content:"PARAM "; nocase; content:"NAME"; nocase; distance:0; content:"ProductName"; nocase; pcre:"/value[\s'"]*=[\s'"]*[^'"]{100}/i"; reference:www.eeye.com/html/research/advisories/AD20060424.html; classtype:attempted-user; sid:515151515; rev:1; )
7. Posted by Thanos | April 28, 2006 9:28 PM |
Score: 0 (0 votes cast)
Posted on April 28, 2006 21:28