Slashdot Mirror


User: sjgm

sjgm's activity in the archive.

Stories
0
Comments
32
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 32

  1. Re:Well, Slate *is* still owned by Microsoft. on Slate On Worms That Plug Security Holes · · Score: 1

    The rise of the recent MyDoom variants show that OE/IE vulnerabilies are not the only issue here. When someone will willingly open a password-protected zip archive and run the virus, we have far bigger problems than vulnerabilities in unpatched software.

  2. Re:Use Mailinator! on Is A Catch-All Address Worth The Spam? · · Score: 1

    That's why I use {random-string}@mailinator.com for signup confirmations. As soon as I've been able to confirm my membership I'm done with that mailbox. The chances of anyone guessing the address and reading the mail would be minimal.

    It goes without saying that I wouldn't use Mailinator for anything remotely private, of course.

  3. Re:Disagree on Is A Catch-All Address Worth The Spam? · · Score: 1

    A catch-all does have its uses.

    I'll give out email addresses to companies in the form theircompanyname@mydomain - this way, I can tell instantly who has been selling the address on.

    I've never had spam to 'random' addresses via my catch-all. I've had a few to addresses I don't use (e.g. sales@) but I then simply turn off those addresses on a case-by-case basis.

  4. Re:Get rid of the spyware... on End Run Around Pop-up Blockers · · Score: 1

    ...and then only if you enable the advanced features (i.e. 'show pagerank').

    Out of the box, the Google Toolbar is clean. There's a good description here (scroll down) which goes into more detail.

  5. Re:Its link farms on google that bug me the most.. on End Run Around Pop-up Blockers · · Score: 1

    It annoys me too.

    Every time I see this kind of thing (particularly the holding pages), I'll report them to Google. I've no idea how effective this is, but hopefully Google want to keep their site the search engine of choice and will listen.

  6. Re:More validation of Microsoft's central philosop on Microsoft Reward Leads to Arrest of Sasser Suspect · · Score: 2, Insightful

    The organisations who were taken down should have taken more precautions, then.

    If worms and viruses actually did real damage, I would suspect that future attacks would be less successful because of the real shock value associated with it - people might start to be more proactive in securing their machines, or not letting potentially insecure machines on their network.

    However, I suspect that viruses/worms are never going to be that destructive given that a nonfunctional computer cannot spread the infection further - there would be little incentive to release such a virus/worm.

  7. Re:MS (OT: new pol) on Sasser Author Under Arrest, Say German Police · · Score: 0, Offtopic

    How about:

    'Soviet Russia' joke

  8. Re:Germany eh? on Sasser Author Under Arrest, Say German Police · · Score: 1

    All Sasser-infected boxes (at least the original variant) have a FTP server running on port 5554 (see Symantec's information on Sasser for the full details). This might explain it...

  9. Re:Sven hit Windows at questionable sweetspot on Sasser Author Under Arrest, Say German Police · · Score: 1

    According to Symantec, the worm code can run on Windows 95/98/ME machines, but not be infected. As far as I'm aware LSASS isn't included with these versions of Windows, but the code used to spread the worm would still work.

    It's logical for virus/worm writers to target the most popular vulnerable systems, and Windows 2000 and XP are now in use more than earlier versions.

  10. Re:So basically, what's happened here was... on Sasser Author Under Arrest, Say German Police · · Score: 1

    Let's take this analogy a little further...

    You buy a lock. When you have it fitted, you are asked if you would like to receive recall information if any problems are discovered. If a recall is issued, a locksmith will visit and upgrade/fix your lock for you.

    A few weeks ago, such a recall went out. Some people either didn't want to know about the recalls, and others ignored them - so their locks never got fixed. Those who did get their locks fixed weren't vulnerable to the particular tools that this neighborhood thief used.

    If Microsoft hadn't issued a patch via Windows Update, I might be more on your side on this one, but they did release a patch. Even on a dialup, it doesn't take more than 10-15 minutes to download almost every patch that comes along. Service packs of course are the exception, but these can be obtained for a nominal charge on CD if necessary.

  11. Re:Security risks? on Comcast Plans Cable Boxes with Integrated Wi-Fi and Snooping · · Score: 1

    Given the amount of spam that comes from Comcast already, I think it's already time to blacklist them.

  12. Re:we should be on Sasser Worm Takes Down UK's Coastguard · · Score: 2, Insightful

    No, it's like the argument "Well, if you don't make sure you check your tire pressures regularly and they go flat, you might end up with a blowout".

    It's not hard to install patches (perhaps by using SUS or similar), or to get a firewall.

  13. Re:License fee on BBC to Try TV On Demand · · Score: 1

    Absolutely. However, the retailer can then feel free to not sell you your TV :-)

    In practice, as long as you don't call yourself Mickey Mouse, they'll probably believe you. They may well have address verification systems available to weed out false addresses, though.

  14. Re:License fee on BBC to Try TV On Demand · · Score: 2, Informative

    All retailers must obtain your details if you're buying a TV. Most retailers will also take your details for a video recorder as well (as it implies that you have a TV).

  15. Re:microsoft on Infected PCs for Rent · · Score: 1

    Most critical updates are a couple of hundred Kb - it's only the service packs (perhaps every year or so) that are tens of megabytes.

    Somehow, I still managed to keep up with critical updates when I was still using dialup.

  16. Re:because on New Online Ad Technology To Bypass Popup Blockers · · Score: 1

    It's completely legal to telemarket in Europe. In the UK, we have had a Do Not Call list (the Telephone Preference Service) for quite some time.

    It's only illegal for a telemarketer to call a number on the list.

  17. Re:#Develop deployment GUI potential on WiX Project Lead Interviewed On CPL Licensing · · Score: 1

    I couldn't resist digging up the EULA to look at this one. I assume that the offending passage is 3.1(b):

    If you use the Redistributables, or any portion thereof (referred to in this paragraph as the "Licensed Software"), then in addition to your compliance with the applicable distribution requirements described for the Licensed Software, the following also applies. Your license rights to the Redistributables are conditioned upon your not (i) creating derivative works of the Redistributables in any manner that would cause the Redistributables in whole or in part to become subject to any of the terms of an Excluded License; or (ii) distributing the Redistributables (or derivative works thereof) in any manner that would cause the Redistributables to become subject to any of the terms of an Excluded License. An "Excluded License" is any license that requires as a condition of use, modification and/or distribution of software subject to the Excluded License, that such software or other software combined and/or distributed with such software be (x) disclosed or distributed in source code form; (y) licensed for the purpose of making derivative works; or (z) redistributable at no charge.

    So, it definitely looks like this only applies to redistributables (essentially the .NET Framework), and anyone is free to write and distribute OSS applications using VS.NET as long as the redistributables wouldn't come under the terms of the GPL, etc. Requiring users to download the redistributables separately would probably be safe enough.

  18. Medication warnings on Silly Product Instructions? · · Score: 1

    In the UK, prescription sedatives used to have the warning 'May cause drowsiness'. This has now been changed to 'Causes drowsiness'.

    In a similar vein, some children's medicine still states 'May cause drowsiness. If affected, do not drive or operate heavy machinery'.

  19. Re:more spam since CAN-Spam on Spammer Sentencing Guidelines Released · · Score: 1

    Have a look at the following graph showing the statistic of spam per day during the last year

    Very interesting indeed, but perhaps it means that SpamCop simply has more subscribers now, particularly given their recent acquisition by IronPort, increasing their exposure.

  20. Re:Firefox for HTML, what about for email? on The Average PC is Infested with Spyware · · Score: 1

    In their default configuration, neither Outlook or Outlook Express will now allow you to open an executable attachment at all. Even with a hack in place to allow you to access the attachment, Outlook XP requires you to save to disk first.

    Some users will go the extra mile to open an attachment - no matter how dodgy it seems to us enlightened users - hence the current crop of viruses appearing in password-protected zip and rar archives.

  21. Re:slightly misleading... on The Average PC is Infested with Spyware · · Score: 1

    Much of the media seems to refer to cookies as 'small programs'. However, they also refer to newsgroups and forums as 'chat rooms'.

    It's not just Gator users we need to educate...

  22. Re:Earthlink? How ironic. on The Average PC is Infested with Spyware · · Score: 1

    it once found spy software that Norton Antivirus did not see at all

    That might be because Norton sell antivirus software, not anti-spyware software :-)

  23. Re:Compatability Issues on First Look At S-ATA Optical Storage Drive · · Score: 1

    I've got an original XP CD as well, no SP1 included.

    It may be that the Intel chipset on my motherboard is supported while some others aren't. It's a Intel ICH5R southbridge, fairly standard on a 875P-based board, so quite common.

  24. Re:It's not that surprising . . . on Netsky Worm Variant Attacks P2P Services · · Score: 1

    I'm sure that there are (or will be) vulnerabilities that allow viruses to be executed in the future. People can be infected even if they're careful.

    However, most of the really major worms over the last few years have either relied on social engineering or have taken advantage of an already-patched exploit. I can't think of any off the top of my head that exploited a vulnerability that hadn't already patched.

    The bottom line always appears to be education. Aunt Tillie needs to know that she needs to keep her AV up to date (or even install AV software), and run Windows Update regularly.

  25. Re:It's not that surprising . . . on Netsky Worm Variant Attacks P2P Services · · Score: 1

    Also you find virus infecting just by previewiing it in the outlook/express email program

    That problem was fixed back in 2001. most current worms propagate through user stupidity and social engineering, Blaster being one of the exceptions.

    Most current worms don't even try and take advantage of the IFRAME exploit.