Archive for February, 2005

02.28.05

Bank of America 的後續

Posted in Computer, Murmuring, Security at 3:21 pm by gslin

在紐約時報上提到了 Bank of America 資料遺失一些更完整的消息:(Bank Loses Tapes of Records of 1.2 Million With Visa Cards)

Bank of America said yesterday that it had lost computer backup tapes containing personal information about 1.2 million federal employees, including some senators, with Visa charge cards issued by the bank.

除了個人資料以外,連信用卡卡號都…

PS:關於 Visa charge card 的說明,可以在台灣 Visa 網站找到:認識Visa商務卡

The Art of Computer Virus Research and Defense

Posted in Computer, Murmuring, Programming, Security at 3:07 pm by gslin

TaoSecurity 看到 The Art of Computer Virus Research and Defense 這本書,看起來 (看 Customer Review) 相當有趣啊,列入書單…

02.27.05

向使用者敲詐

Posted in Computer, Murmuring, Network, Security at 11:25 pm by gslin

Boing Boing 看到 ISP 向使用者敲詐的新聞:Paying Canadian teclo an extra $50 makes IRC and ftp secure, somehow,事情的起因是這樣的:

Ports used by such ftp, telnet and IRC servers, among others, have been blocked. According to Telus, ‘These security measures are designed to reduce illicit traffic.’

換句話說有點像國內某些學校的搞法?*grin*

不過呢,你可以選擇被敲詐,這樣這些 port 就不會被 block 了:

But if home users upgrade to a business account (for $84.95 a month, rather than $29.95) the blocked ports magically become unstuck. There’s no mention, however, of increased security measures in the upgraded business accounts. Interpret this how you like.

MSN Space

Posted in Blog, Computer, Murmuring, Network at 11:11 pm by gslin

我對 MSN Space 的印象一直很不好,因為他實在太花了。所以我 bloglines 四百多筆 (ijliao,還沒五百) 裡面,用 MSN Space 在個位數…

即將火熱 <Get Hot Soon!> 是少數的幾個,雖然我不是很喜歡紅色,可是畫面相當的乾淨 (這很重要)。

Bot

Posted in Blog, Browser, Computer, Murmuring, Network, Programming at 11:02 pm by gslin

referer 스팸 보내는 무식한 놈들 -.,- 看到超搞笑的東西,這是在蒐集 User-Agent 嗎 :P

Spybot Result

Posted in Computer, Murmuring, Security, Software at 12:54 pm by gslin

這不是我的電腦 (我不跑奇怪軟體、不用 IE 看網頁 :p),只是我更新了一下 然後掃一掃而已,看起來還蠻壯觀的 -_-

OpenVPN

Posted in Computer, Network, Security, Software at 12:32 pm by gslin

前面提過了,OpenVPN + natd (user-land) 會有問題,剛剛試了一下發現 OpenVPN + ipnat (kernel-land) 沒有問題。應該是因為 ipnat 在比較底層…

kwebd

Posted in Computer, Murmuring, Network, P2P at 10:34 am by gslin

kwebd 是一個 based 的 distributed service,用法很簡單:在 url 後面加上 .kweb.kenosisp2p.org:8091 就可以了,譬如 http://cnn.com.kweb.kenosisp2p.org:8091/,不過目前測試發現不支援 HTTP/1.1 (沒有送 Host),這造成幾乎所有在外面買 web hosting 的全掛 :p

也許下個版本會支援?

加入的方法請安裝 0.941,以 為例:(ports 內目前的版本是 0.92)

cd /usr/ports/net/py-kenosis
vim Makefile (修改版本號碼,將 0.92 改成 0.941)
rm distfiles
make fetch makesum
make install clean

裝完以後修改 /usr/local/lib/python2.4/site-packages/kenosis/kwebd.py,把 127.0.0.1:5555 改成 root.kenosisp2p.org:5005 後,執行 python /usr/local/lib/python2.4/site-packages/kenosis/kwebd.py 理論上可以跑起來。不過我跑了三十分鐘還是沒有人來 query 我的 kwebd,看起來好像是加錯 initial node 了…

反正先放著跑看看…

OpenVPN

Posted in Computer, FreeBSD, Murmuring, Network, Security, Software at 10:23 am by gslin

有人試過在 上使用 2.0rc16 + natd 的嗎?(用 dev tap 或是 dev tun 都可以)

我現在的問題是,client (10.8.0.2) -> natd 正常、natd -&gt> Internet 正常、Internet -> natd 正常,但是 natd 到 client 傳不過去。

用 tcpdump 檢查,發現 tap0 與 tun0 都沒有封包,用 ping 直接 ping client 10.8.0.2 發現不會通,而且 tap0 與 tun0 都沒有封包…

看起來是 FreeBSD routing 的問題 (跟之前 gif0 的問題超像),弄到我快起笑了 -_-

Bank Of America

Posted in Computer, Murmuring, Security at 3:37 am by gslin

Slashdot 看到 Bank Of America Loses 1.2 Million Customer Records,而造成資料遺失的原因是備份要送到 Backup Center 時不見了 (喂喂),引用 CNetBank of America loses a million customer records

A “small” number of backup tapes with records detailing the financial information of government employees were lost in shipment to a backup center, Bank of America said on Friday.

« Previous entries