Domain: infoworld.com
Stories and comments across the archive that link to infoworld.com.
Stories · 1,869
-
Should Enterprise IT Give Back To Open Source?
snydeq writes "InfoWorld reports on the fight over open source 'leeches' — companies that use open source technology but don't give back to the open source community. While some view such organizations as a tragedy of the commons, others view the notion of 'freeloaders' as a relic of open source's Wild West era, when coding was a higher calling and free software a religion. To be sure, increased adoption by mainstream enterprises has played a hand in changing the terms of this debate. Yet, as the biggest consumer of open source software, enterprise IT still gives almost nothing back to the community, critics contend, calling into question the long-term effect corporate culture will have on the evolution of open source — and the long-term effect open source will have on rewiring companies toward collaboration." -
Should Enterprise IT Give Back To Open Source?
snydeq writes "InfoWorld reports on the fight over open source 'leeches' — companies that use open source technology but don't give back to the open source community. While some view such organizations as a tragedy of the commons, others view the notion of 'freeloaders' as a relic of open source's Wild West era, when coding was a higher calling and free software a religion. To be sure, increased adoption by mainstream enterprises has played a hand in changing the terms of this debate. Yet, as the biggest consumer of open source software, enterprise IT still gives almost nothing back to the community, critics contend, calling into question the long-term effect corporate culture will have on the evolution of open source — and the long-term effect open source will have on rewiring companies toward collaboration." -
Google Adds Scripting Capabilities To Google Docs
snydeq writes "Google will add scripting capabilities to Google Docs, allowing organizations to customize their online applications and automate tasks. Google plans to sign up about 1,000 customers over the next few weeks to test the feature, called Google Apps Script. It will be tested initially in Google Spreadsheets and extended to other Google Docs applications over time. The company isn't saying yet when Apps Script — which is based on JavaScript with object-based extensions added by Google — will be widely available. Google Docs users can already apply to try it out." -
Google Adds Scripting Capabilities To Google Docs
snydeq writes "Google will add scripting capabilities to Google Docs, allowing organizations to customize their online applications and automate tasks. Google plans to sign up about 1,000 customers over the next few weeks to test the feature, called Google Apps Script. It will be tested initially in Google Spreadsheets and extended to other Google Docs applications over time. The company isn't saying yet when Apps Script — which is based on JavaScript with object-based extensions added by Google — will be widely available. Google Docs users can already apply to try it out." -
Mozilla Jetpack and the Battle For the Web
snydeq writes "Mozilla Jetpack makes it so easy to filter, modify, and mash up pages that it might end up pitting developers and users against content producers in a battle for the Web, writes Fatal Exception's Neil McAllister. By allowing users to modify the behavior, presentation, and output of Web apps and pages to their liking, Jetpack gives users the ability to 'patch the server, in a sense,' McAllister writes, bringing us one step closer to a more democratic Web. Good news for developers and users; not so good for SaaS providers and media companies that have a vested interest in controlling the function, presentation, and distribution of Web-based content and apps. In other words, as Jetpack produces fruit, expect more producers to call for 'guardrails for the Internet.'" -
Mozilla Jetpack and the Battle For the Web
snydeq writes "Mozilla Jetpack makes it so easy to filter, modify, and mash up pages that it might end up pitting developers and users against content producers in a battle for the Web, writes Fatal Exception's Neil McAllister. By allowing users to modify the behavior, presentation, and output of Web apps and pages to their liking, Jetpack gives users the ability to 'patch the server, in a sense,' McAllister writes, bringing us one step closer to a more democratic Web. Good news for developers and users; not so good for SaaS providers and media companies that have a vested interest in controlling the function, presentation, and distribution of Web-based content and apps. In other words, as Jetpack produces fruit, expect more producers to call for 'guardrails for the Internet.'" -
Testing So-Called 'Unified Threat Managers'
snydeq writes "The InfoWorld Test Center has released vulnerability testing results for four so-called 'unified threat managers' — single units that combine firewall, VPN, intrusion detection and prevention, anti-malware, anti-spam, and Web content filtering in lieu of a relay rack stuffed top to bottom with appliances. The lab threw nearly 600 exploits of known vulnerabilities in a wide range of popular OSes, applications, and protocols, and despite being designed to thwart such threats, the UTMs as a class allowed hundreds to pass through. Why did the UTMs miss so many exploits? A lack of horsepower to perform the necessary deep packet inspection under load is suspected, as the lab pushed the limits of each unit's throughput with legitimate traffic. 'The upshot is, although the vendors have packed these devices with additional gateway security functions, clearly many UTMs are still strictly firewalls at heart.'" -
Testing So-Called 'Unified Threat Managers'
snydeq writes "The InfoWorld Test Center has released vulnerability testing results for four so-called 'unified threat managers' — single units that combine firewall, VPN, intrusion detection and prevention, anti-malware, anti-spam, and Web content filtering in lieu of a relay rack stuffed top to bottom with appliances. The lab threw nearly 600 exploits of known vulnerabilities in a wide range of popular OSes, applications, and protocols, and despite being designed to thwart such threats, the UTMs as a class allowed hundreds to pass through. Why did the UTMs miss so many exploits? A lack of horsepower to perform the necessary deep packet inspection under load is suspected, as the lab pushed the limits of each unit's throughput with legitimate traffic. 'The upshot is, although the vendors have packed these devices with additional gateway security functions, clearly many UTMs are still strictly firewalls at heart.'" -
Calculating Password Policy Strength Vs. Cracking
snydeq writes "InfoWorld's Roger Grimes offers a spreadsheet-based calculator in which you can key in your current password policy and see how your organization's passwords might hold up against the number of guesses an attacker can make in a given minute. The calculator includes results for four different password entropy models, and is based on length, character set, maximum age, whether complexity is enabled, and the number of guesses per minute an attacker can attempt. As an example, Grimes assumes an eight-character password, with complexity enabled, a 94-symbol character set, and 90 days between password changes. Such a policy, typical for many organizations, would require attackers to make only 65 guesses per minute to break — not at all hard to accomplish, Grimes writes." -
Calculating Password Policy Strength Vs. Cracking
snydeq writes "InfoWorld's Roger Grimes offers a spreadsheet-based calculator in which you can key in your current password policy and see how your organization's passwords might hold up against the number of guesses an attacker can make in a given minute. The calculator includes results for four different password entropy models, and is based on length, character set, maximum age, whether complexity is enabled, and the number of guesses per minute an attacker can attempt. As an example, Grimes assumes an eight-character password, with complexity enabled, a 94-symbol character set, and 90 days between password changes. Such a policy, typical for many organizations, would require attackers to make only 65 guesses per minute to break — not at all hard to accomplish, Grimes writes." -
First Look At VMware's vSphere "Cloud OS"
snydeq writes "InfoWorld's Paul Venezia takes VMware's purported 'cloud OS,' vSphere 4, for a test drive. The bottom line: 'VMware vSphere 4.0 touches on almost every aspect of managing a virtual infrastructure, from ESX host provisioning to virtual network management to backup and recovery of virtual machines. Time will tell whether these features are as solid as they need to be in this release, but their presence is a substantial step forward for virtual environments.' Among the features Venezia finds particularly worthwhile is vSphere's Fault Tolerance: 'In a nutshell, this allows you to run the same VM in tandem across two hardware nodes, but with only one instance actually visible to the network. You can think of it as OS-agnostic clustering. Should a hardware failure take out the primary instance, the secondary instance will assume normal operations instantly, without requiring a VMotion.'" -
First Look At VMware's vSphere "Cloud OS"
snydeq writes "InfoWorld's Paul Venezia takes VMware's purported 'cloud OS,' vSphere 4, for a test drive. The bottom line: 'VMware vSphere 4.0 touches on almost every aspect of managing a virtual infrastructure, from ESX host provisioning to virtual network management to backup and recovery of virtual machines. Time will tell whether these features are as solid as they need to be in this release, but their presence is a substantial step forward for virtual environments.' Among the features Venezia finds particularly worthwhile is vSphere's Fault Tolerance: 'In a nutshell, this allows you to run the same VM in tandem across two hardware nodes, but with only one instance actually visible to the network. You can think of it as OS-agnostic clustering. Should a hardware failure take out the primary instance, the secondary instance will assume normal operations instantly, without requiring a VMotion.'" -
MS Suggests Using Shims For XP-To-Win7 Transition
eldavojohn writes "Windows XP (and a lot of MS OS code before that) had a fundamental security flaw whereby the default setting made the ordinary user run as the superuser. Vista & Windows 7 have fixed that and implemented The Correct Paradigm. But what about the pre-Vista applications written to utilize superuser privileges? How do you migrate them forward? Well, running a virtualized instance of XP in Windows 7 is an option we've talked about. But Microsoft is pushing the idea of using 'shims,' which are a way to bypass or trick the code into thinking it's still running as user/superuser mode in Windows XP. This is an old trick that Microsoft has often employed, and it has brought the Windows kernel a long ways, in a duct-tape sort of fashion. At the TechEd conference in LA, Microsoft associate software architect Chris Jackson joked, 'If you walk too loudly down the hall near the [Windows] kernel developers, you'll break 20 to 30 apps.' So for you enterprise developers fretting about transitioning to Windows 7, shims are your suggested solution." -
Energy Star For Servers Falls Short
tsamsoniw writes "The newly released Energy Star requirements for servers may not prove all too useful for companies shopping for the most energy-efficient machines on the market, InfoWorld reports. For starters, the spec only considers how much power a server consumes when it's idling, rather than gauging energy consumption at various levels of utilization. That's like focusing on how much gas a vehicle consumes at stop lights instead of when it's moving. Also, the spec doesn't care whether a server's processors have one core or multiple cores — even though multi-core servers deliver more work at fewer watts. Though this first version of Energy Star for servers isn't entirely without merit, the EPA needs to refine the spec to make it more meaningful." -
Energy Star For Servers Falls Short
tsamsoniw writes "The newly released Energy Star requirements for servers may not prove all too useful for companies shopping for the most energy-efficient machines on the market, InfoWorld reports. For starters, the spec only considers how much power a server consumes when it's idling, rather than gauging energy consumption at various levels of utilization. That's like focusing on how much gas a vehicle consumes at stop lights instead of when it's moving. Also, the spec doesn't care whether a server's processors have one core or multiple cores — even though multi-core servers deliver more work at fewer watts. Though this first version of Energy Star for servers isn't entirely without merit, the EPA needs to refine the spec to make it more meaningful." -
Has MySQL Forked Beyond Repair?
snydeq writes "Fatal Exception's Neil McAllister questions the effect recent developments in the MySQL community will have on MySQL's future in the wake of Oracle's acquisition of Sun. Even before Oracle announced its buyout, there were signs of strain within the MySQL community, with key MySQL employees exiting and forks of the MySQL codebase arising, including Widenius' MariaDB. Now Widenius' Oracle-less Open Database Alliance adds further doubt as to which branch of MySQL will be considered 'official' going forward. 'Forks are a fact of life in the open source community, and arguably an entirely healthy one,' McAllister writes. 'Oracle just better hope it doesn't end up on the wrong side of the fork.' To do so, he suggests Oracle will have to regain the the trust and support of the MySQL community — in other words, 'stop acting like Oracle.'" -
Has MySQL Forked Beyond Repair?
snydeq writes "Fatal Exception's Neil McAllister questions the effect recent developments in the MySQL community will have on MySQL's future in the wake of Oracle's acquisition of Sun. Even before Oracle announced its buyout, there were signs of strain within the MySQL community, with key MySQL employees exiting and forks of the MySQL codebase arising, including Widenius' MariaDB. Now Widenius' Oracle-less Open Database Alliance adds further doubt as to which branch of MySQL will be considered 'official' going forward. 'Forks are a fact of life in the open source community, and arguably an entirely healthy one,' McAllister writes. 'Oracle just better hope it doesn't end up on the wrong side of the fork.' To do so, he suggests Oracle will have to regain the the trust and support of the MySQL community — in other words, 'stop acting like Oracle.'" -
Microsoft Downplays IIS Bug Threat
snydeq writes "Microsoft confirmed that its IIS Web-server software contains a vulnerability that could let attackers steal data, but downplayed the threat, saying 'only a specific IIS configuration is at risk from this vulnerability.' The flaw, which involves how Microsoft's software processes Unicode tokens, has been found to give attackers a way to view protected files on IIS Web servers without authorization. The vulnerability, exposed by Nikolaos Rangos, could be used to upload files as well. Affecting IIS 6 users who have enabled WebDAV for sharing documents via the Web, the flaw is currently being exploited in online attacks, according to CERT, and is reminiscent of the well-known IIS unicode path traversal issue of 2001, one of the worst Windows vulnerabilities of the past decade." -
Microsoft Downplays IIS Bug Threat
snydeq writes "Microsoft confirmed that its IIS Web-server software contains a vulnerability that could let attackers steal data, but downplayed the threat, saying 'only a specific IIS configuration is at risk from this vulnerability.' The flaw, which involves how Microsoft's software processes Unicode tokens, has been found to give attackers a way to view protected files on IIS Web servers without authorization. The vulnerability, exposed by Nikolaos Rangos, could be used to upload files as well. Affecting IIS 6 users who have enabled WebDAV for sharing documents via the Web, the flaw is currently being exploited in online attacks, according to CERT, and is reminiscent of the well-known IIS unicode path traversal issue of 2001, one of the worst Windows vulnerabilities of the past decade." -
Microsoft Downplays IIS Bug Threat
snydeq writes "Microsoft confirmed that its IIS Web-server software contains a vulnerability that could let attackers steal data, but downplayed the threat, saying 'only a specific IIS configuration is at risk from this vulnerability.' The flaw, which involves how Microsoft's software processes Unicode tokens, has been found to give attackers a way to view protected files on IIS Web servers without authorization. The vulnerability, exposed by Nikolaos Rangos, could be used to upload files as well. Affecting IIS 6 users who have enabled WebDAV for sharing documents via the Web, the flaw is currently being exploited in online attacks, according to CERT, and is reminiscent of the well-known IIS unicode path traversal issue of 2001, one of the worst Windows vulnerabilities of the past decade." -
Drive-By Download Poisons Google Search Results
snydeq writes "A new attack that peppers Google search results with malicious links is spreading quickly, CERT has warned. The attack, which can be found on several thousand legitimate Web sites, exploits flaws in Adobe software to install malware that steals FTP login credentials and hijacks the victim's browser, replacing Google search results with links chosen by the attackers. Known as Gumblar because at one point it used the Gumblar.cn domain, the attack is spreading quickly in part because its creators have been good at obfuscating their attack code and because they are using FTP login credentials to change folder permissions, leaving multiple ways they can get back into the server." -
Drive-By Download Poisons Google Search Results
snydeq writes "A new attack that peppers Google search results with malicious links is spreading quickly, CERT has warned. The attack, which can be found on several thousand legitimate Web sites, exploits flaws in Adobe software to install malware that steals FTP login credentials and hijacks the victim's browser, replacing Google search results with links chosen by the attackers. Known as Gumblar because at one point it used the Gumblar.cn domain, the attack is spreading quickly in part because its creators have been good at obfuscating their attack code and because they are using FTP login credentials to change folder permissions, leaving multiple ways they can get back into the server." -
What Should Be In a Technology Bill of Rights?
snydeq writes "The Deep End's Paul Venezia argues in favor of the creation of a Technology Bill of Rights to protect individuals against malfeasance, tyranny, and exploitation in an increasingly technological age. Venezia's initial six proposed articles center on anonymity rights, net neutrality, the open-sourcing of law enforcement software and hardware, and the like. What sort of efficacy do you see such a document having, and in an ideal world, which articles do you see as imperative for inclusion in a Technology Bill of Rights?" -
What Should Be In a Technology Bill of Rights?
snydeq writes "The Deep End's Paul Venezia argues in favor of the creation of a Technology Bill of Rights to protect individuals against malfeasance, tyranny, and exploitation in an increasingly technological age. Venezia's initial six proposed articles center on anonymity rights, net neutrality, the open-sourcing of law enforcement software and hardware, and the like. What sort of efficacy do you see such a document having, and in an ideal world, which articles do you see as imperative for inclusion in a Technology Bill of Rights?" -
MS, Intel "Goofed Up" Win 7 XP Virtualization
clang_jangle writes "Ars Technica has a short article up describing how Microsoft and Intel have 'goofed up' Windows 7's XP Mode by ensuring many PCs will not be able to use it. (And it won't be easy to figure out in advance if your PC is one of them.) Meanwhile, over at Infoworld, Redmond is criticized for having the 'right idea, wrong technology' with their latest compatibility scheme, and PC World says 'great idea, on paper.' With Windows 7 due to be released in 2010, and Redmond apparently eager to move on from XP, perhaps this is not really a 'goof' at all?" -
The Biggest Cults In Tech
bobby f. writes "Infoworld has published its list of the biggest cults in tech — including Palmists, Newtonians, Commodorians, the Brotherhood of the Ruby, IBM power systems fanboys, Ubuntu-ists, and Lispers. A pretty fun read (unless you really are a cult member)." Although I think it's pretty clear that the Apple camp isn't an opinionated cult, they're just always right. Fire away. -
The Long-Term Impact of Jacobsen v. Katzer
snydeq writes "Lawyer Jonathan Moskin has called into question the long-term impact last year's Java Model Railroad Interface court ruling will have on open source adoption among corporate entities. For many, the case in question, Jacobsen v. Katzer, has represented a boon for open source, laying down a legal foundation for the protection of open source developers. But as Moskin sees it, the ruling 'enables a set of potentially onerous monetary remedies for failures to comply with even modest license terms, and it subjects a potentially larger community of intellectual property users to liability.' In other words, in Moskin's eyes, Jacobsen v. Katzer could make firms wary of using open source software because they fear that someone in the food chain has violated a copyright, thus exposing them to lawsuit. It should be noted that Moskin's firm has represented Microsoft in anti-trust litigation before the European Union." -
The Long-Term Impact of Jacobsen v. Katzer
snydeq writes "Lawyer Jonathan Moskin has called into question the long-term impact last year's Java Model Railroad Interface court ruling will have on open source adoption among corporate entities. For many, the case in question, Jacobsen v. Katzer, has represented a boon for open source, laying down a legal foundation for the protection of open source developers. But as Moskin sees it, the ruling 'enables a set of potentially onerous monetary remedies for failures to comply with even modest license terms, and it subjects a potentially larger community of intellectual property users to liability.' In other words, in Moskin's eyes, Jacobsen v. Katzer could make firms wary of using open source software because they fear that someone in the food chain has violated a copyright, thus exposing them to lawsuit. It should be noted that Moskin's firm has represented Microsoft in anti-trust litigation before the European Union." -
Why IT Won't Power Down PCs
snydeq writes "Internal politics and poor leadership on sustainable IT strategies are among the top reasons preventing organizations from practicing proper PC power management — to the tune of $2.8 billion wasted per year powering unused PCs. According to a recent survey, 42 percent of IT shops do not manage PC energy consumption simply because no one in the organization has been made responsible for doing so — this despite greater awareness of IT power-saving myths, and PC power myths in particular. Worse, 22 percent of IT admins surveyed said that savings from PC power management 'flow to another department's budget.' In other words, resources spent by IT vs. the permanent energy crisis appear to result in little payback for IT." -
Why IT Won't Power Down PCs
snydeq writes "Internal politics and poor leadership on sustainable IT strategies are among the top reasons preventing organizations from practicing proper PC power management — to the tune of $2.8 billion wasted per year powering unused PCs. According to a recent survey, 42 percent of IT shops do not manage PC energy consumption simply because no one in the organization has been made responsible for doing so — this despite greater awareness of IT power-saving myths, and PC power myths in particular. Worse, 22 percent of IT admins surveyed said that savings from PC power management 'flow to another department's budget.' In other words, resources spent by IT vs. the permanent energy crisis appear to result in little payback for IT." -
First Look at Microsoft Exchange Server 2010 Beta
snydeq writes "InfoWorld's Martin Heller takes a first look at Microsoft's Exchange Server 2010 Beta, noting several usability, reliability, and compliance improvements over Exchange 2007. Top among Exchange 2010's new features are OWA support for Firefox 3 and Safari 3; improved storage reliability; conversation views; mail federation between trusted companies; and MailTips, a sort of Google Mail Goggles for the corporate environment. 'Database availability groups give you redundant mail stores with continuous replication; database-level failover gives you automatic recovery. I/O optimizations make Exchange less "bursty" and better suited to desktop-class SATA drives; JBOD support lets you concatenate disks rather than stripe them into a redundant array.' Exchange 2010 will, however, require shops to upgrade to Windows Server 2008, as support for Windows Server 2003 has been dropped. Microsoft will release technical previews of other products in the suite, including Office 2010, SharePoint Server 2010, Visio 2010, and Project 2010, in the third calendar quarter." -
First Look at Microsoft Exchange Server 2010 Beta
snydeq writes "InfoWorld's Martin Heller takes a first look at Microsoft's Exchange Server 2010 Beta, noting several usability, reliability, and compliance improvements over Exchange 2007. Top among Exchange 2010's new features are OWA support for Firefox 3 and Safari 3; improved storage reliability; conversation views; mail federation between trusted companies; and MailTips, a sort of Google Mail Goggles for the corporate environment. 'Database availability groups give you redundant mail stores with continuous replication; database-level failover gives you automatic recovery. I/O optimizations make Exchange less "bursty" and better suited to desktop-class SATA drives; JBOD support lets you concatenate disks rather than stripe them into a redundant array.' Exchange 2010 will, however, require shops to upgrade to Windows Server 2008, as support for Windows Server 2003 has been dropped. Microsoft will release technical previews of other products in the suite, including Office 2010, SharePoint Server 2010, Visio 2010, and Project 2010, in the third calendar quarter." -
First Look at Microsoft Exchange Server 2010 Beta
snydeq writes "InfoWorld's Martin Heller takes a first look at Microsoft's Exchange Server 2010 Beta, noting several usability, reliability, and compliance improvements over Exchange 2007. Top among Exchange 2010's new features are OWA support for Firefox 3 and Safari 3; improved storage reliability; conversation views; mail federation between trusted companies; and MailTips, a sort of Google Mail Goggles for the corporate environment. 'Database availability groups give you redundant mail stores with continuous replication; database-level failover gives you automatic recovery. I/O optimizations make Exchange less "bursty" and better suited to desktop-class SATA drives; JBOD support lets you concatenate disks rather than stripe them into a redundant array.' Exchange 2010 will, however, require shops to upgrade to Windows Server 2008, as support for Windows Server 2003 has been dropped. Microsoft will release technical previews of other products in the suite, including Office 2010, SharePoint Server 2010, Visio 2010, and Project 2010, in the third calendar quarter." -
First Look at Microsoft Exchange Server 2010 Beta
snydeq writes "InfoWorld's Martin Heller takes a first look at Microsoft's Exchange Server 2010 Beta, noting several usability, reliability, and compliance improvements over Exchange 2007. Top among Exchange 2010's new features are OWA support for Firefox 3 and Safari 3; improved storage reliability; conversation views; mail federation between trusted companies; and MailTips, a sort of Google Mail Goggles for the corporate environment. 'Database availability groups give you redundant mail stores with continuous replication; database-level failover gives you automatic recovery. I/O optimizations make Exchange less "bursty" and better suited to desktop-class SATA drives; JBOD support lets you concatenate disks rather than stripe them into a redundant array.' Exchange 2010 will, however, require shops to upgrade to Windows Server 2008, as support for Windows Server 2003 has been dropped. Microsoft will release technical previews of other products in the suite, including Office 2010, SharePoint Server 2010, Visio 2010, and Project 2010, in the third calendar quarter." -
iPhone Jailbreaking Still Going Strong
snydeq writes "Despite the productivity promises of Apple's forthcoming 3.0 firmware update, jailbreaking should continue to push the iPhone's productivity envelope, as users increasingly demand the Holy Grail of smartphone power use: applications that run in the background, InfoWorld reports. Copy and paste, video recording and streaming, Internet tethering, and content search are just a few of the features over which iPhone users have sought to jailbreak their devices — a practice Apple itself has done little to crack down on. Jailbreak apps circumvent hardware and software restrictions that Apple says ensure a consistent, responsive user interface and optimal battery endurance. In particular, jailbroken phones can run apps in the background, a capability Apple reserves for its own apps but prohibits in third-party programs. Jay Freeman, creator of the Cydia iPhone installer and Cydia Store, however, believes a free-market approach is the best way to satisfy power users' demands for features without compromising the performance of their iPhones. And given Apple's App Store overcrowding, it seems likely that jailbroken phones and app venues like Cydia Store will continue to be popular with iPhone customers and developers, even after the 3.0 firmware ships." -
iPhone Jailbreaking Still Going Strong
snydeq writes "Despite the productivity promises of Apple's forthcoming 3.0 firmware update, jailbreaking should continue to push the iPhone's productivity envelope, as users increasingly demand the Holy Grail of smartphone power use: applications that run in the background, InfoWorld reports. Copy and paste, video recording and streaming, Internet tethering, and content search are just a few of the features over which iPhone users have sought to jailbreak their devices — a practice Apple itself has done little to crack down on. Jailbreak apps circumvent hardware and software restrictions that Apple says ensure a consistent, responsive user interface and optimal battery endurance. In particular, jailbroken phones can run apps in the background, a capability Apple reserves for its own apps but prohibits in third-party programs. Jay Freeman, creator of the Cydia iPhone installer and Cydia Store, however, believes a free-market approach is the best way to satisfy power users' demands for features without compromising the performance of their iPhones. And given Apple's App Store overcrowding, it seems likely that jailbroken phones and app venues like Cydia Store will continue to be popular with iPhone customers and developers, even after the 3.0 firmware ships." -
iPhone Jailbreaking Still Going Strong
snydeq writes "Despite the productivity promises of Apple's forthcoming 3.0 firmware update, jailbreaking should continue to push the iPhone's productivity envelope, as users increasingly demand the Holy Grail of smartphone power use: applications that run in the background, InfoWorld reports. Copy and paste, video recording and streaming, Internet tethering, and content search are just a few of the features over which iPhone users have sought to jailbreak their devices — a practice Apple itself has done little to crack down on. Jailbreak apps circumvent hardware and software restrictions that Apple says ensure a consistent, responsive user interface and optimal battery endurance. In particular, jailbroken phones can run apps in the background, a capability Apple reserves for its own apps but prohibits in third-party programs. Jay Freeman, creator of the Cydia iPhone installer and Cydia Store, however, believes a free-market approach is the best way to satisfy power users' demands for features without compromising the performance of their iPhones. And given Apple's App Store overcrowding, it seems likely that jailbroken phones and app venues like Cydia Store will continue to be popular with iPhone customers and developers, even after the 3.0 firmware ships." -
What If Oracle Bought Sun Microsystems?
snydeq writes "Fatal Exception's Neil McAllister believes Oracle is next in line to make a play for Sun now that IBM has withdrawn its offer. Dismissing server market arguments in favor of Cisco or Dell as suitors, McAllister suggests that MySQL, ZFS, DTrace, and Java make Sun an even better asset to Oracle than to IBM. MySQL as a complement to Oracle's existing database business would make sense, given Oracle's 2005 purchase of Innobase, and with 'the long history of Oracle databases on Solaris servers, it might actually see owning Solaris as an asset,' McAllister writes. But the 'crown jewel' of the deal would be Java. 'It's almost impossible to overestimate the importance of Java to Oracle. Java has become the backbone of Oracle's middleware strategy,' McAllister contends." -
What If Oracle Bought Sun Microsystems?
snydeq writes "Fatal Exception's Neil McAllister believes Oracle is next in line to make a play for Sun now that IBM has withdrawn its offer. Dismissing server market arguments in favor of Cisco or Dell as suitors, McAllister suggests that MySQL, ZFS, DTrace, and Java make Sun an even better asset to Oracle than to IBM. MySQL as a complement to Oracle's existing database business would make sense, given Oracle's 2005 purchase of Innobase, and with 'the long history of Oracle databases on Solaris servers, it might actually see owning Solaris as an asset,' McAllister writes. But the 'crown jewel' of the deal would be Java. 'It's almost impossible to overestimate the importance of Java to Oracle. Java has become the backbone of Oracle's middleware strategy,' McAllister contends." -
What If Oracle Bought Sun Microsystems?
snydeq writes "Fatal Exception's Neil McAllister believes Oracle is next in line to make a play for Sun now that IBM has withdrawn its offer. Dismissing server market arguments in favor of Cisco or Dell as suitors, McAllister suggests that MySQL, ZFS, DTrace, and Java make Sun an even better asset to Oracle than to IBM. MySQL as a complement to Oracle's existing database business would make sense, given Oracle's 2005 purchase of Innobase, and with 'the long history of Oracle databases on Solaris servers, it might actually see owning Solaris as an asset,' McAllister writes. But the 'crown jewel' of the deal would be Java. 'It's almost impossible to overestimate the importance of Java to Oracle. Java has become the backbone of Oracle's middleware strategy,' McAllister contends." -
What If Oracle Bought Sun Microsystems?
snydeq writes "Fatal Exception's Neil McAllister believes Oracle is next in line to make a play for Sun now that IBM has withdrawn its offer. Dismissing server market arguments in favor of Cisco or Dell as suitors, McAllister suggests that MySQL, ZFS, DTrace, and Java make Sun an even better asset to Oracle than to IBM. MySQL as a complement to Oracle's existing database business would make sense, given Oracle's 2005 purchase of Innobase, and with 'the long history of Oracle databases on Solaris servers, it might actually see owning Solaris as an asset,' McAllister writes. But the 'crown jewel' of the deal would be Java. 'It's almost impossible to overestimate the importance of Java to Oracle. Java has become the backbone of Oracle's middleware strategy,' McAllister contends." -
Researcher's Death Hampers TCP Flaw Fix
linuxwrangler writes "Security researcher Jack Louis, who had discovered several serious security flaws in TCP software was killed in a fire on the ides of March, dealing a blow to efforts to repair the problem. Although he kept good notes and had communicated with a number of vendors, he died before fixes could be created and prior to completing research on a number of additional vulnerabilities. Much of the work has been taken over by Louis' friend and long-time colleague Robert E. Lee. The flaws have been around for a long time and would allow a low-bandwidth 'sockstress' attack to knock large machines off the net." -
Researcher's Death Hampers TCP Flaw Fix
linuxwrangler writes "Security researcher Jack Louis, who had discovered several serious security flaws in TCP software was killed in a fire on the ides of March, dealing a blow to efforts to repair the problem. Although he kept good notes and had communicated with a number of vendors, he died before fixes could be created and prior to completing research on a number of additional vulnerabilities. Much of the work has been taken over by Louis' friend and long-time colleague Robert E. Lee. The flaws have been around for a long time and would allow a low-bandwidth 'sockstress' attack to knock large machines off the net." -
Even Dirtier IT Jobs
snydeq writes "InfoWorld's Dan Tynan offers up 7 'even dirtier IT jobs' in a follow-up of last year's 7 dirtiest jobs in IT. Number four? Zombie console monkey. 'Wanted: Individuals with low self-esteem and high boredom threshold willing to spend long hours poring over server logs and watching blinking lights on a network console.'" -
Even Dirtier IT Jobs
snydeq writes "InfoWorld's Dan Tynan offers up 7 'even dirtier IT jobs' in a follow-up of last year's 7 dirtiest jobs in IT. Number four? Zombie console monkey. 'Wanted: Individuals with low self-esteem and high boredom threshold willing to spend long hours poring over server logs and watching blinking lights on a network console.'" -
Coders, Your Days Are Numbered
snydeq writes "Fatal Exception's Neil McAllister argues that communication skills, not coding skills, are a developer's greatest asset in a bear economy. 'Too many software development teams are still staffed like secretarial pools. Ideas are generated at the top and then passed downward through general managers, product managers, technical leads, and team leads. Objectives are carved up into deliverables, which are parceled off to coders, often overseas,' McAllister writes. 'The idea that this structure can be sustainable, when the US private sector shed three-quarters of a million jobs in March 2009 alone, is simple foolishness.' Instead, companies should emulate the open source model of development, shifting decision-making power to the few developers with the deepest architectural understanding of, and closest interaction with, the code. And this shift will require managers to look beyond résumés 'choked with acronyms and lists of technologies' to find those who 'can understand, influence, and guide development efforts, rather than simply taking dictation.'" Update: 04/04 19:52 GMT by T : InfoWorld's link to the archived version of the story on open source development no longer works; updated with Google's cached version. -
Coders, Your Days Are Numbered
snydeq writes "Fatal Exception's Neil McAllister argues that communication skills, not coding skills, are a developer's greatest asset in a bear economy. 'Too many software development teams are still staffed like secretarial pools. Ideas are generated at the top and then passed downward through general managers, product managers, technical leads, and team leads. Objectives are carved up into deliverables, which are parceled off to coders, often overseas,' McAllister writes. 'The idea that this structure can be sustainable, when the US private sector shed three-quarters of a million jobs in March 2009 alone, is simple foolishness.' Instead, companies should emulate the open source model of development, shifting decision-making power to the few developers with the deepest architectural understanding of, and closest interaction with, the code. And this shift will require managers to look beyond résumés 'choked with acronyms and lists of technologies' to find those who 'can understand, influence, and guide development efforts, rather than simply taking dictation.'" Update: 04/04 19:52 GMT by T : InfoWorld's link to the archived version of the story on open source development no longer works; updated with Google's cached version. -
Microsoft Asks Fed For Bailout
snydeq writes "Microsoft requested on Tuesday some $20 billion in bailout funds from the federal government, claiming that as the company controls an overwhelming share of the OS market, it is too big to fail. Low adoption rates for Vista, the ensuing ad campaign trying to convince people that they really do like Vista, and the increased need for development resources to rush Windows 7 to market to make people forget about Vista have necessitated the bailout, the company said. 'We want to make it absolutely clear that this is not a crisis of mismanagement,' said Microsoft CEO Steve Ballmer in a prepared statement. 'This is simply a crisis of dollars — a crisis of not having enough dollars coming our way.'" -
Microsoft Asks Fed For Bailout
snydeq writes "Microsoft requested on Tuesday some $20 billion in bailout funds from the federal government, claiming that as the company controls an overwhelming share of the OS market, it is too big to fail. Low adoption rates for Vista, the ensuing ad campaign trying to convince people that they really do like Vista, and the increased need for development resources to rush Windows 7 to market to make people forget about Vista have necessitated the bailout, the company said. 'We want to make it absolutely clear that this is not a crisis of mismanagement,' said Microsoft CEO Steve Ballmer in a prepared statement. 'This is simply a crisis of dollars — a crisis of not having enough dollars coming our way.'" -
More IT Pros Could Turn To E-Crime In Poor Economy
snydeq writes to mention that a recent survey by KPMG shows that many people feel that out-of-work IT workers will be much more tempted to turn to criminal activities due to the down economy. This, coupled with an E-crime survey that shows fraud committed by managers, employees, and customers tripled between 2007 and 2008 paints an interesting picture. "In other survey results, 45 percent of respondents who handle critical national infrastructure said they are seeing an increase in the number of attacks on their systems. Fifty-one percent of respondents from the same category said the technical sophistication of those attacks is getting better. Sixty-eight percent said that of all kinds of malicious code they felt Trojan horse programs — ones that are designed to look harmless but can steal data along with other functions — had the most impact on their businesses. Rootkits are the next highest concern, followed by spyware, worms, viruses, mobile malicious code and, finally, adware."