Slashback: NWLink, Vivendi, Gatherings
"Uhh ... isn't this the 'Slammer'?" An anonymous reader writes "According to the BBC, two people suspected of creating the Slammer worm have been arrested in a combined operation by the FBI and the UK's National Hi-Tech Crime Unit. The raids in the UK resulted in the seizure of two men, aged 19 and 21, accused of being members of a hacker group that calls itself THr34t-Krew."
Gather together, hoist a few drinks. We've made a few mentions of this year's CodeCon; Len Sassaman writes "The schedule for CodeCon 2.0 is now online. CodeCon is already starting to get some media attention. There's less than two weeks left to register at the reduced rate, and conference seats are filling up quickly.If this conference is anything like its predecessor, expect to see some of the most interesting new technology of the coming year discussed."
And a slightly different type of gathering: Tony Stanco writes: "The agenda is up for the March 17-19 Open Source in Government conference and the free registration is now open. Please see www.eGovOS.org.
It promises to be another educational and exciting event with over 120 sessions and the keynote from the White House. Even Microsoft is trying to directly engage the community at this conference."
On the count of three, everyone shrug at once. In January, I posted a link ("far from confirmed") about the possibility that Microsoft would buy Vivendi. Now, Yagdrasil writes "USA today is reporting that the Microsoft buyout of Vivendi's game division (which includes Blizzard) was a hoax. It looks like the hoax originated from a student at Purdue."
But the EOLs are nearly upon us! Flee! Wister285 writes "Mandrake announced that they are going to stop updating the packages of 'legacy products.' It seems as though they took their cue from Red Hat and their continuing financial problems. I was a little surprised though about how short the support periods will be. Mandrake 9.0 will be considered obsolete September 30, 2003 (for desktop) and March 31, 2004 (for the base). This brings up two questions. First of all, do distros release too often thus creating too many versions to maintain? Secondly, how much faith do you have in the upgrade feature of install?"
I hope it features a dunk tank and some perpetrators. The ongoing war on spam continues; here's your chance to influence its direction (or at least to hear about what's going on in that sphere), even if you missed the conference at MIT. wayne writes "The Federal Trade Commission (FTC) announced today that they will be holding a three day public SPAM workshop in the end of April. I wonder if they will get an overflow crowd they way the MIT SPAM conference did. I hope they also make streaming video available."
Bandwidth is expensive. ndogg writes "NWLink.com has posted a response to the events that have happened in regards to SDF. In short, they say that they support SDF and what it is doing, however, the DDoS attack over the last three weeks has been costing them a lot of money."
fonixmunkee puts it differently: "The message is an interesting read, to say the least. instead of working the issue, NWLink's apparent (unofficial) solution to combating DDoS'es is to simply terminate the subscriber's connection. with all the slammer worms & Code Reds nowadays, NWLink should have no more customers left in about 2 years."
Legal liability is expensive, too. Tom Allender writes "irc-chat.net has announced a more restrictive Acceptable Use Policy after being contacted by the MPAA. They also refer to DALnets AUP changes mentioned here recently."
What everyone forgets is that with spam, you only get responses from one of about every couple hundred people. There's no way to win those idiot over. And until spammers start getting NO responses, they don't CARE how many inboxes they need to fill to get their 3)Profit! We just need to ENFORCE THE OPT OUT MODEL. If I don't want your spam, chances are pretty damned good I wouldn't buy from you anyway, so who looses?
Don't forget to have your pgp key ready when registering for CodeCon. Then you can participate in the key signing.
burris
Hardly seems like a misuse of technology to me. Organ transplant rejection is a terrible killer of hospital patients, and this research seems like a very promising route to a possible solution.
Furthermore, the ethical issues governing the treatment of animals used in research are commonly reviewed by a board at the university where the research takes place. Why don't you contact the relevant board at Nebraska and inform them of your concerns? It's a trifle off-topic in a Slashback forum.
I applaud this IRC network for its stance related to the MPAA demands, and I hope it can survive the worst that the MPAA can throw at it.
Seriously, its about time that people started requiring evidence and due process of law again when dealing with criminals. Letting the MPAA and RIAA bully people around with the threat of ungrounded DMCA action has gone on long enough.
I still want to hear about someone getting a piece of the RIAA or MPAA's hide over a misfired DMCA letter, using that clause requiring them to pay for damages if it turns out that there was no copyright infringement.
If I have been able to see further than others, it is because I bought a pair of binoculars.
Perhaps that's not so unreasonable. The culprits are 19 and 21, and they might well have been members of the group since they were in HS. When you think about it, releasing a worm like that doesn't suggest a level of sophistication and respect for others that we think of as typical of a responsible adult. It's the act of a childish vandal, so it's not terribly surprising to find that it was done by a bunch of jerks who are part of a group that sounds like a bunch of highschool students.
There's no point in questioning authority if you aren't going to listen to the answers.
It's still a valid address that can be sold off to someone else. Lists are sold at a price based on how many are on the list. Not how many want to be on the list.
"Politicians are interested in people. Not that this is always a virtue. Fleas are interested in dogs." P.J. O'Rourke
We keep reading about all these spam conferences and how we can make a difference and all that.
My question is this.
EVERYONE knows what a pain in the ass spam is.
NO ONE likes it. Why in the hell are people still debating this crap?
Yeah, I am aware that they are determining different ways to handle it and everything, but what's the point?
There is no viable solution other than using trusted addresses or outlawing it and making HUGE FINES the cost of spamming.
So, do that and your spam problem goes away.
Sent from your iPad.
If that's how you spelled it, no wonder you couldn't find it. Since the main Jargon Lexicon site seems to be down, here's the Google Cache of the relevant page. Next time, try using the 'leet version of Google's search- it won't get any better results, but at least you'll feel like a real H4X0r d00d! (*Bleagh*)
rgmoore,
:)
I somehwat disagree with your implied notion that all vandals are childish. In a more constitutional world, we would recognize that any act of damage caused by someone intentionaly is a perpetuated STATE OF WAR. I don't know what your political, corporate, or government affiliation, yet on my "Constitution" I recognize that anyone that violates my unalienable rights is in-fact acting in a way that suggests a STATE OF WAR. Now let me get to my point... People who attempt to break into other computers with malicious intent are known today as crackers; in a way, yes they are waring with everyone. There is another cracker group that has emerged, yet they have made their acts of war legal through manipulation of politics; this organization is known as the RIAA and they have legally justified their destruction of other computers at their freedom. Who is more childish: unorganized crackers or the RIAA? Neither... outside recognition of a law, both of these groups are maintaining a STATE OF WAR. To my understanding, children are naturally destructive and not aware of any wrong-doing on their part. Crackers and RIAA are in a world of their own and know what they are doing.
Of'course, I could pass you the same bong I was breathing from...but then you'ld be as intelligent as me.
But I'm sure you already Gnu that.
I was running Woody on my desktops when it was testing and when testing became Sarge it really didn't matter as far as my machines were concerned. Like many people who use Debian on desktops, my machines are always somewhere between Sid and Testing with the odd non-official package here and there. For the most part it is the scenario you have in mind. I think you're right in that it would be nice for a paid support model as well.
I imagine its a similar experience on ports based BSD systems and Gentoo.
I can think of some things that would make a lot of the people here bitch though. Such a distribution would have to hang back 6 months or so from OSS/Free's bleeding edge. If say, an engine for vector graphics on the desktop comes out for XFree86, the distro won't be able to include it until it's solid. Contrast that with the people here who will spend 3 hours compiling tarballs so they'll be the first kid on the block to have it. Those same 'leet kiddies will whinge "Incremental distro will never succeed unless it's more current!" Solidity and up-to-last-week currentness are mutually exclusive.
There's also the question of how to handle major infrastructure transitions. I'm thinking of things like from XFree 3.x to 4.x, libc5 to libc6, KDE2.x to 3.x, kernel 2.4.x to 2.6.x, and last but not least GCC 2.9x to 3.x. Not to mention major changes in server daemons like Apache and Samba. The major libc and GCC increments are thankfully infrequent but they're also the worst. They both have severe consequences for backwards compatibility with older binaries and source trees. My point is that such transitions will force "Incremental Distro" to draw hard lines from time to time on what they'll support and what they won't. Shoot! Some people are still running heavily patched 2.0 kernels.
This brings up the other group of people Incremental Distro can't always make happy : The Ultraconservative Sysadmin. Sooner or later, support for say Apache 1.x will only be handled by boutique consultants. Most everyone but the Ultraconservative Sysadmin will have moved on. I think what will happen is that the distro will have to define brackets in time that start with those major transitions. During the bracket period (two years say) they'll have to maintain a branch of pre-transition compatible packages. The other thing they could do is be cold blooded about Ultraconservatives and just bump everybody up when these changes happen. Ultraconservative Admin is probably clued enough to manage his own upgrade schedule from patched source.
The REAL problem is that OSS/Free is developed and maintained on Internet Time. I suppose another outcome would be a spectrum of (differently organized) incremental distros with more and less aggressive attitudes toward upgrading.
Two weeks ago, I read A Plan for Spam article from the last conference, announced on Slashdot. There, the author describes spam-of-the-future as "some completely neutral text followed by a url".
Voila, the future has come. Yesterday I got a short message in Russian, in friendly tone, with an URL. Just like the ones I sometimes get. I'm a webmaster of a site with diverse content, and strangers sometimes send me stuff like this for news etc. There is absolutely no way to tell whether it's a spam or not without visiting the URL.
While the developers wrestle with one strategy and openly discuss the remedies, the spammer sees it and picks the next strategy, always ahead of you! Who benefits more from these conferences, good folks or the spammers?
One fix I'd propose is to stop publishing and webcasting the conference stuff. Then the spammers would have to attend in person. You know what happens next. A spammer surrounded with angry geeks :)
17779 eligible voters in a district, 17779 'vote' as one. This is Russia.