Yes. But it's an ancient land where evolution doesn't exist, the dinosaurs are a hoax, and Fred Phelps rules over hell. For those of you who don't believe that Kansas is hell, just take exit 313 off I-70 about 10 miles north to my alma mater.
I don't doubt that it would only take 2 months to become fluent. I've found that learning a new spoken language is very similar to learning a new programming language. This point of view made it significantly easier when I was learning German. Being submersed in the culture and language makes a great deal of difference too. I mangaged to pick up enough Arabic when I was in Jordan for two weeks this summer to get by. Although that was a unique situation in that my traveling companion spoke fluent Arabic and English. Being able to hear something in Arabic first, and then a summary in English made it easy to pick up a significant number of new words per day.
I had to answer strongly opposed on this question, solely on the fact that they mentioned Israel.
After spending some time in Jordan and Israel this summer, I was thoroughly digusted that my government supports, what I feel to be, apartheid. The aid to Israel, both financial and military equipment, is absurd. A statistic used by CNN placed the financial assistance to Israel at $4.1 billion (that's $4,100 million, for those of you outside the States), while providing Palestine a paltry $75 million.
During my time in Israel, I would spend the evening sitting on a balcony at the hostel watching the people of Zion Square just outside Jaffa Gate in Jerusalem. After a while, I noticed something rather startling. 3 of 5 of what I considered Arab-looking people were stopped by Israeli soldiers and harassed. Imagine this, you're sitting on a bench, talking to some friends, smoking a cigarette. Two Israeli soldiers (brandishing assault rifles, btw) walk up to you and ask for your papers. The soldiers radio in your information, call over a couple more soldiers, and after about 5 minutes, give you back your papers and leave. Repeat every 20 minutes. If that isn't racial profiling, I don't know what is.
From my observations, I saw Arabs (Jordanian, Palestinian, Israeli Arabs alike) in Israel treated as sub-human. I found it utterly apalling!
Regarding the ongoing violence, I feel the Palestinians are justified. You can only push someone so much before they start to push back. The Palenstinian people, not the PLO, are fighting, with whatever they can, usually rocks. The Israeli army is responding to rocks with assault rifles and helicopter gunships. It's no wonder the rest of the UN is outraged.
The simple fact is that people are dying. Who cares if they are Palenstinian or Israeli, they are people. By financing Israel, the US is supporting the killing. The best thing the US could do to end the violence is cut off all aid to both Israel and Palenstine. The US needs to take a neutral stance to promote peace. Peace is not brokered when the mediator helps one side strong arm the other.
I'll quit ranting, I just get a little upset when people are dying for dirt.
The problem with this is consumer conscience. While I agree that there should be more TLDs, most internet users are doing good to remember a 2nd level domain with.com (possibly.org or.net).
But when you add many more TLDs, it becomes much more difficult to get people to remember both a TLD and a 2nd level domain. How are they supposed to know whether to go to mybiz.com, mybiz.biz, mybiz.ebiz, etc.?
Unfortunately, I aside from a select few new TLDs, I don't see many new ones that will actually enter the consumer conscience and become well known.
There was notice sent to Bugtraq several weeks ago. The text of it is below.
Date: Mon, 15 May 2000 18:37:31 -0700 From: "http-equiv@excite.com" To: BUGTRAQ@SECURITYFOCUS.COM Subject: MICROSOFT SECURITY FLAW?
Saturday, May 13, 2000=20
MICROSOFT SECURITY FLAW?
Silent delivery and installation of an executable on a target computer. No client input other than opening an email or newsgroup post.
1. Using the following this can be accomplished with the default installation of Windows 95 and 98 and Internet Explorer 5 browsers and accompanying mail/news clients
2. The key component from Georgi Guninski=20
http://www.nat.bg/~joro/wordpad-desc.html
3. Secondary component comprises a pre-installed ActiveX control directly from Microsoft. This control and a variety of similar demonstrations have been shown to Microsoft over 18 months ago
What to do:
A
(a) Manufacture a *.chm file. The following kit from Microsoft is free and very easy to use Microsoft=AE HTML Help:
(b) Construct a new *.chm file inputting the ActiveX link control as follows:
AA.Click(); =20
(c) The control itself is quite sensitive to manipulation, the above represents the bare minimum to run.=20
(d) Input the path of the executable you intend to run as in PARAM name=3D"Item1" above. In order to disguise the running of the executable it= is suggested to not to give it a silly name, rather something that is familiar to the operating system e.g. microsoftagent.exe etc.=20
(e) While constructing the *.chm, it is possible to both minimise and offse= t the location of the *.chm file once opened. For example while under construction you can set the size of the help window and its location - using the auto resizer in Microsoft=AE HTML Help, drag the sizer to the smallest possible size. Although setting the size requires clicking OK inside the autosizer, dragging to minimal size and hitting ENTER will register the setting. Secondly offset the location of the file by inputting say 2000 , 2000, this should suffice in it opening off-screen on any size monitor.=20
(f) Once you have compiled the *.chm test its functionality by placing the executable in your temp file and open the *.chm - it should run the executable.=20
Now how do we place this on the target computer?
B.
(a) Simply by opening an email message or newsgroup post. The client does nothing. They receive an email open it or read a newsgroup post and that i= s all. Both the *.exe and *.chm are transferred silently and immediately to the temp folder once the email or newsgroup post is open.
How so?
(b) It is possible to embed almost anything in both html email and html news. Current versions of Outlook Express 5 inspect what is being embedded is in fact the correct file e.g. will not embed becau= se a *.doc is obviously not an image file. Internet Explorer 4 and accompanyin= g Outlook Express 4 does allow for this, similarly Netscape Messenger also allows for this. Nevertheless, through proprietary JavaScript and VBscript, it is possible to deliver an intact file to the target computer's temp folder, however with a file name given by the computer e.g. 000321.doc. Thi= s does not serve the purpose of running the *.chm with the file name explicit as above.=20
(c) The Microsoft Active Movie Control (AMC) pre-registered and pre-installed on all Internet Explorer 5 computers does. The very simple scripting to do this is as follows:=20
=20
(d) This control too is very sensitive and the complete path must be inserted in order for it to embed in the html email message or html news post.
(e) Finally, in the body of the html email or html news post the following simple JavaScript is required to set off everything:
Sufficient delay must be allowed for the news post or email message and transference of both the executable and *.chm files to be delivered to the target computers temp file before execution is called.
What will happen?
When the email or news post is opened, the embedded *.chm and *.exe will automatically and silently be transferred to the client temp folder, intact and with the given names. Default locations on all machines calls for the temp folder to be at C:\windows\temp. The AMC control, will deposit the two files to wherever the temp folder is located, if you have changed the location, these two files will still be delivered there, however because th= e *.chm file is constructed to seek out the *.exe in the default location, it will fail. Likewise so will the script in the html email message or news post. Hence, this will only work on default OS installs.=20
Once the news post or email has been opened or even previewed via Outlook o= r Outlook Express preview pane, the two files are delivered to the temp folder, sufficient time elapses when the script in the html message calls the *.chm which opens silently and minimised in the task bar (because we have instructed it to open at the minimum size and off-set 2000, 2000), onc= e opened it, the ActiveX link control in it, runs the executable.=20
Everything is instantaneous, no need for a reboot and no need for user interaction other than opening the email (or simply previewing it) or the newsgroup post. Needless to say once the executable is running, the damage is done. And no Windows Scripting Host (WSH) involved.=20
The only solution is to relocate the temp folder and/or set scripting and ActiveX controls to the highest possible settings. The default settings do not ask for permission.=20
Below represents a working example. The executable incorporated is a harmless joke program. In order to run it, save the entire example as eithe= r *.nws or *.eml and click on it:=20
note: 1/ on high speed machines and i-connections with IE5, clicking the links below will allow for viewing of these news and mail files in the browser (technically known as mhtml), with the same effect. Slower machines and i-connections might want to save to disk and open from there. Additionally saving to disk and opening will allow for viewing in the mail or news client.
note: 2/ it is not necessary to run this through html mail or news, applyin= g all the above directly on the web results in the same.
This could be an extremely good move for Microsoft, and the rest of the computing industry. Aside from all the Linux vs. Windoze rivalry, antitrust issues, and BSODs, I think a move to British Columbia could be an extremely good move for Microsoft, and most importantly, increase the stability of their products. Allow me to elaborate.
A fair amount of programmers smoke pot. Probably not the majority, but still a large enough amount that it ought to be into consideration. Now, BC has been producing some very high quality bud lately. I am in no way condoning the use of illegal drugs, just stating a correlation that programmers code better when content, and are often content when smoking it up.
Maybe it'd get Gates to relax enough that the coders could actually do their jobs and turn out some decent products.
Disclaimer: I in no way support Microsoft and generally view them as an evil, corrupt organization.
I'm surprised you haven't heard of Groundhog Day!!
I suppose it's just another sector of the scientific arena in which Americans lead. Let me enlighten you. Ages ago, Americans discovered that an immortal groundhog in Pennsylvania named Phil could predict the weather for the next several weeks. Now, this scientific process is very, very complex. I'll attempt to simplify it for you. 1. Phil exits his little abode every Feb. 2 to make his forcast. 2. Phil looks for his shadow. (That's right, his shadow. I told you it was extremely scientific!!) 3. Phil makes his prediction by either running back into his little hole in the ground, or enjoying the day with the film crews and the locals.
Now I wish I could tell you what it meant if he sees his shadow, but, frankly I don't remember. After all, why do we care about the weather when we have our net connection?
Yes. But it's an ancient land where evolution doesn't exist, the dinosaurs are a hoax, and Fred Phelps rules over hell. For those of you who don't believe that Kansas is hell, just take exit 313 off I-70 about 10 miles north to my alma mater.
s/Forgot/Forget/
s/ones/one/
I don't doubt that it would only take 2 months to become fluent. I've found that learning a new spoken language is very similar to learning a new programming language. This point of view made it significantly easier when I was learning German. Being submersed in the culture and language makes a great deal of difference too. I mangaged to pick up enough Arabic when I was in Jordan for two weeks this summer to get by. Although that was a unique situation in that my traveling companion spoke fluent Arabic and English. Being able to hear something in Arabic first, and then a summary in English made it easy to pick up a significant number of new words per day.
After spending some time in Jordan and Israel this summer, I was thoroughly digusted that my government supports, what I feel to be, apartheid. The aid to Israel, both financial and military equipment, is absurd. A statistic used by CNN placed the financial assistance to Israel at $4.1 billion (that's $4,100 million, for those of you outside the States), while providing Palestine a paltry $75 million.
During my time in Israel, I would spend the evening sitting on a balcony at the hostel watching the people of Zion Square just outside Jaffa Gate in Jerusalem. After a while, I noticed something rather startling. 3 of 5 of what I considered Arab-looking people were stopped by Israeli soldiers and harassed. Imagine this, you're sitting on a bench, talking to some friends, smoking a cigarette. Two Israeli soldiers (brandishing assault rifles, btw) walk up to you and ask for your papers. The soldiers radio in your information, call over a couple more soldiers, and after about 5 minutes, give you back your papers and leave. Repeat every 20 minutes. If that isn't racial profiling, I don't know what is.
From my observations, I saw Arabs (Jordanian, Palestinian, Israeli Arabs alike) in Israel treated as sub-human. I found it utterly apalling!
Regarding the ongoing violence, I feel the Palestinians are justified. You can only push someone so much before they start to push back. The Palenstinian people, not the PLO, are fighting, with whatever they can, usually rocks. The Israeli army is responding to rocks with assault rifles and helicopter gunships. It's no wonder the rest of the UN is outraged.
The simple fact is that people are dying. Who cares if they are Palenstinian or Israeli, they are people. By financing Israel, the US is supporting the killing. The best thing the US could do to end the violence is cut off all aid to both Israel and Palenstine. The US needs to take a neutral stance to promote peace. Peace is not brokered when the mediator helps one side strong arm the other.
I'll quit ranting, I just get a little upset when people are dying for dirt.
But when you add many more TLDs, it becomes much more difficult to get people to remember both a TLD and a 2nd level domain. How are they supposed to know whether to go to mybiz.com, mybiz.biz, mybiz.ebiz, etc.?
Unfortunately, I aside from a select few new TLDs, I don't see many new ones that will actually enter the consumer conscience and become well known.
That's just my opinion, I could be wrong...
There was notice sent to Bugtraq several weeks ago. The text of it is below.
p /wkshp/download.htm
L WARE.chm");',15000);
Date: Mon, 15 May 2000 18:37:31 -0700
From: "http-equiv@excite.com"
To: BUGTRAQ@SECURITYFOCUS.COM
Subject: MICROSOFT SECURITY FLAW?
Saturday, May 13, 2000=20
MICROSOFT SECURITY FLAW?
Silent delivery and installation of an executable on a target computer. No
client input other than opening an email or newsgroup post.
1. Using the following this can be accomplished with the default
installation of Windows 95 and 98 and Internet Explorer 5 browsers and
accompanying mail/news clients
2. The key component from Georgi Guninski=20
http://www.nat.bg/~joro/wordpad-desc.html
3. Secondary component comprises a pre-installed ActiveX control directly
from Microsoft. This control and a variety of similar demonstrations have
been shown to Microsoft over 18 months ago
What to do:
A
(a) Manufacture a *.chm file. The following kit from Microsoft is free and
very easy to use Microsoft=AE HTML Help:
http://msdn.microsoft.com/library/tools/htmlhel
(b) Construct a new *.chm file inputting the ActiveX link control as
follows:
AA.Click();
=20
(c) The control itself is quite sensitive to manipulation, the above
represents the bare minimum to run.=20
(d) Input the path of the executable you intend to run as in PARAM
name=3D"Item1" above. In order to disguise the running of the executable it=
is
suggested to not to give it a silly name, rather something that is familiar
to the operating system e.g. microsoftagent.exe etc.=20
(e) While constructing the *.chm, it is possible to both minimise and offse=
t
the location of the *.chm file once opened. For example while under
construction you can set the size of the help window and its location -
using the auto resizer in Microsoft=AE HTML Help, drag the sizer to the
smallest possible size. Although setting the size requires clicking OK
inside the autosizer, dragging to minimal size and hitting ENTER will
register the setting. Secondly offset the location of the file by inputting
say 2000 , 2000, this should suffice in it opening off-screen on any size
monitor.=20
(f) Once you have compiled the *.chm test its functionality by placing the
executable in your temp file and open the *.chm - it should run the
executable.=20
Now how do we place this on the target computer?
B.
(a) Simply by opening an email message or newsgroup post. The client does
nothing. They receive an email open it or read a newsgroup post and that i=
s
all. Both the *.exe and *.chm are transferred silently and immediately to
the temp folder once the email or newsgroup post is open.
How so?
(b) It is possible to embed almost anything in both html email and html
news. Current versions of Outlook Express 5 inspect what is being embedded
is in fact the correct file e.g. will not embed becau=
se
a *.doc is obviously not an image file. Internet Explorer 4 and accompanyin=
g
Outlook Express 4 does allow for this, similarly Netscape Messenger also
allows for this. Nevertheless, through proprietary JavaScript and VBscript,
it is possible to deliver an intact file to the target computer's temp
folder, however with a file name given by the computer e.g. 000321.doc. Thi=
s
does not serve the purpose of running the *.chm with the file name explicit
as above.=20
(c) The Microsoft Active Movie Control (AMC) pre-registered and
pre-installed on all Internet Explorer 5 computers does. The very simple
scripting to do this is as follows:=20
=20
(d) This control too is very sensitive and the complete path must be
inserted in order for it to embed in the html email message or html news
post.
(e) Finally, in the body of the html email or html news post the following
simple JavaScript is required to set off everything:
setTimeout('window.showHelp("c:/windows/temp/MA
Sufficient delay must be allowed for the news post or email message and
transference of both the executable and *.chm files to be delivered to the
target computers temp file before execution is called.
What will happen?
When the email or news post is opened, the embedded *.chm and *.exe will
automatically and silently be transferred to the client temp folder, intact
and with the given names. Default locations on all machines calls for the
temp folder to be at C:\windows\temp. The AMC control, will deposit the two
files to wherever the temp folder is located, if you have changed the
location, these two files will still be delivered there, however because th=
e
*.chm file is constructed to seek out the *.exe in the default location, it
will fail. Likewise so will the script in the html email message or news
post. Hence, this will only work on default OS installs.=20
Once the news post or email has been opened or even previewed via Outlook o=
r
Outlook Express preview pane, the two files are delivered to the temp
folder, sufficient time elapses when the script in the html message calls
the *.chm which opens silently and minimised in the task bar (because we
have instructed it to open at the minimum size and off-set 2000, 2000), onc=
e
opened it, the ActiveX link control in it, runs the executable.=20
Everything is instantaneous, no need for a reboot and no need for user
interaction other than opening the email (or simply previewing it) or the
newsgroup post. Needless to say once the executable is running, the damage
is done. And no Windows Scripting Host (WSH) involved.=20
The only solution is to relocate the temp folder and/or set scripting and
ActiveX controls to the highest possible settings. The default settings do
not ask for permission.=20
Below represents a working example. The executable incorporated is a
harmless joke program. In order to run it, save the entire example as eithe=
r
*.nws or *.eml and click on it:=20
note: 1/ on high speed machines and i-connections with IE5, clicking the
links below will allow for viewing of these news and mail files in the
browser (technically known as mhtml), with the same effect. Slower machines
and i-connections might want to save to disk and open from there.
Additionally saving to disk and opening will allow for viewing in the mail
or news client.
note: 2/ it is not necessary to run this through html mail or news, applyin=
g
all the above directly on the web results in the same.
Right-click and save to desktop
Mail: http://members.xoom.com/malware/help.eml 89KB
News: http://members.xoom.com/malware/help.nws 89KB
=20
=2E
A fair amount of programmers smoke pot. Probably not the majority, but still a large enough amount that it ought to be into consideration. Now, BC has been producing some very high quality bud lately. I am in no way condoning the use of illegal drugs, just stating a correlation that programmers code better when content, and are often content when smoking it up.
Maybe it'd get Gates to relax enough that the coders could actually do their jobs and turn out some decent products.
Disclaimer: I in no way support Microsoft and generally view them as an evil, corrupt organization.
Well, now I won't feel so bad about leaving the States for 4 years if George W. Bush gets elected.
Seriously though, kudos to the EU for relizing what it will take to attract the serious security developers.
I'm surprised you haven't heard of Groundhog Day!!
I suppose it's just another sector of the scientific arena in which Americans lead.
Let me enlighten you. Ages ago, Americans discovered that an immortal groundhog in Pennsylvania named Phil could predict the weather for the next several weeks. Now, this scientific process is very, very complex. I'll attempt to simplify it for you.
1. Phil exits his little abode every Feb. 2 to make his forcast.
2. Phil looks for his shadow. (That's right, his shadow. I told you it was extremely scientific!!)
3. Phil makes his prediction by either running back into his little hole in the ground, or enjoying the day with the film crews and the locals.
Now I wish I could tell you what it meant if he sees his shadow, but, frankly I don't remember. After all, why do we care about the weather when we have our net connection?