<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4144281760148079969</id><updated>2012-02-16T15:00:24.494-05:00</updated><category term='consumer'/><category term='infrastructure'/><category term='dns'/><category term='robotics'/><category term='exploit'/><category term='vulnerability'/><category term='privacy violation'/><title type='text'>SC - Security In Perspective</title><subtitle type='html'>Thoughts and insights into security issues and their impact.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://blog.simplicity.net/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default'/><link rel='alternate' type='text/html' href='http://blog.simplicity.net/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Brian Dowling</name><uri>http://www.blogger.com/profile/14159988866428252543</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>5</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4144281760148079969.post-5418926246357777567</id><published>2009-01-14T05:30:00.007-05:00</published><updated>2009-01-14T05:36:44.917-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='robotics'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='exploit'/><category scheme='http://www.blogger.com/atom/ns#' term='consumer'/><category scheme='http://www.blogger.com/atom/ns#' term='privacy violation'/><title type='text'>Rovio - mobile wifi-enabled survellience - "I can See and Hear you now!"</title><summary type='text'>Why is it that I am unable to touch a new piece of technology without finding problems with it?  Ok, so I've been around long enough to know that's just the unfortunate state of technology.  Companies should at least consider a consult with outside security resources before releasing the next best thing.  Getting a fresh set of eyes looking at something and you are guaranteed that you'll find </summary><link rel='related' href='http://www.simplicity.net/vuln/2009-01-Rovio-insecurity.html' title='Rovio - mobile wifi-enabled survellience - &quot;I can See and Hear you now!&quot;'/><link rel='replies' type='application/atom+xml' href='http://blog.simplicity.net/feeds/5418926246357777567/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4144281760148079969&amp;postID=5418926246357777567' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/5418926246357777567'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/5418926246357777567'/><link rel='alternate' type='text/html' href='http://blog.simplicity.net/2009/01/rovio-mobile-wifi-enabled-survellience.html' title='Rovio - mobile wifi-enabled survellience - &quot;I can See and Hear you now!&quot;'/><author><name>Brian Dowling</name><uri>http://www.blogger.com/profile/14159988866428252543</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4144281760148079969.post-2518696652339718871</id><published>2008-08-07T18:32:00.009-04:00</published><updated>2008-08-07T20:07:40.904-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='dns'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='exploit'/><title type='text'>DNS Vulnerability Disclosure - PowerDNS - Lack of Response Considered Harmful</title><summary type='text'>As an aside to my previous discussion about my own investigation into DNS, I had also been curious if there was any "lack of response" issues impacting today's DNS servers.  Afterall DNS spoofing attacks generally involve a race, if you can initiate a race and leave the competor at the starting blocks, you'll always win.  In my invesitgation, I started submitting malicious requests with </summary><link rel='replies' type='application/atom+xml' href='http://blog.simplicity.net/feeds/2518696652339718871/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4144281760148079969&amp;postID=2518696652339718871' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/2518696652339718871'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/2518696652339718871'/><link rel='alternate' type='text/html' href='http://blog.simplicity.net/2008/08/dns-vulnerability-disclosure-powerdns.html' title='DNS Vulnerability Disclosure - PowerDNS - Lack of Response Considered Harmful'/><author><name>Brian Dowling</name><uri>http://www.blogger.com/profile/14159988866428252543</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4144281760148079969.post-6910690332937469113</id><published>2008-08-07T16:00:00.000-04:00</published><updated>2008-08-07T19:34:29.408-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='dns'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='exploit'/><title type='text'>The Critical DNS Vulnerability</title><summary type='text'>Unless you've been sheltered for the last month, you are by now well aware of the important news about the critical DNS vulnerability.  You have patched or otherwise protected your networks, right?One thing that was immediately apparent about this vulnerability was the unique way that it was disclosed simultaneously by a number of vendors and their claim that the patch itself did not disclose the</summary><link rel='replies' type='application/atom+xml' href='http://blog.simplicity.net/feeds/6910690332937469113/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4144281760148079969&amp;postID=6910690332937469113' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/6910690332937469113'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/6910690332937469113'/><link rel='alternate' type='text/html' href='http://blog.simplicity.net/2008/07/critical-dns-vulnerability.html' title='The Critical DNS Vulnerability'/><author><name>Brian</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4144281760148079969.post-1380107052078205793</id><published>2008-07-31T21:00:00.007-04:00</published><updated>2008-08-01T12:53:24.300-04:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='dns'/><category scheme='http://www.blogger.com/atom/ns#' term='infrastructure'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='exploit'/><title type='text'>So what is all this hype about the DNS being broken?</title><summary type='text'>As you have no doubt heard by now, there is a security problem with DNS or the Domain Name System that has gotten a lot of attention lately.  You may be wondering exactly why all the hype, there are security problems everyday right?  Well, unfortunately, this problem is at the core of the Internet -- DNS is a foundation infrastructure that allows us to use cool names like www.google.com and </summary><link rel='replies' type='application/atom+xml' href='http://blog.simplicity.net/feeds/1380107052078205793/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4144281760148079969&amp;postID=1380107052078205793' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/1380107052078205793'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/1380107052078205793'/><link rel='alternate' type='text/html' href='http://blog.simplicity.net/2008/07/so-what-is-all-this-hype-about-dns.html' title='So what is all this hype about the DNS being broken?'/><author><name>Brian Dowling</name><uri>http://www.blogger.com/profile/14159988866428252543</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4144281760148079969.post-3104521112021566348</id><published>2008-07-29T20:30:00.002-04:00</published><updated>2008-07-30T16:21:22.699-04:00</updated><title type='text'>Security In Perspective</title><summary type='text'>Welcome to my new blog -- yes, yet another blog about security.  You may be asking yourself, who the heck is this guy, and is he really that audacious that he thinks we need another mono-blog about information security and that he actually does have something of interest to add to topic?  Well, my answer to that is obviously a yes, as I've taken the effort to stake a claim on this tiny part of </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/3104521112021566348'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4144281760148079969/posts/default/3104521112021566348'/><link rel='alternate' type='text/html' href='http://blog.simplicity.net/2008/07/security-in-perspective.html' title='Security In Perspective'/><author><name>Brian Dowling</name><uri>http://www.blogger.com/profile/14159988866428252543</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry></feed>
