<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>JonRolfe.com</title>
	
	<link>http://JonRolfe.com</link>
	<description>The blog of Jon Rolfe covering IT security, technology news and views.</description>
	<pubDate>Thu, 13 Nov 2008 23:09:32 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
	<language>en</language>
			<creativeCommons:license>http://creativecommons.org/licenses/by-nc/2.0/</creativeCommons:license><xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/JonRolfe" type="application/rss+xml" /><feedburner:emailServiceId>1007637</feedburner:emailServiceId><feedburner:feedburnerHostname>http://www.feedburner.com</feedburner:feedburnerHostname><item>
		<title>Spam drops 70%</title>
		<link>http://feeds.feedburner.com/~r/JonRolfe/~3/452199820/</link>
		<comments>http://JonRolfe.com/news/spam-drops-70/#comments</comments>
		<pubDate>Thu, 13 Nov 2008 21:12:56 +0000</pubDate>
		<dc:creator>Jon</dc:creator>
		
		<category><![CDATA[Malware]]></category>

		<category><![CDATA[News]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[bbc]]></category>

		<category><![CDATA[botnet]]></category>

		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://JonRolfe.com/?p=131</guid>
		<description><![CDATA[The BBC website reports that following an investigation by the Washington Post , Internet service providers Global Crossing and Hurricane Electric have disconnected the US firm McColo. The firm is believed to be responsible for hosting groups that have been sending spam via botnets.
Ironport, the email security firm now owned by Cisco, claims that as [...]]]></description>
			<content:encoded><![CDATA[<p>The <a title="Spam plummets as gang leaves net" href="http://news.bbc.co.uk/1/hi/technology/7725492.stm" title="Spam plummets as gang leaves net">BBC website reports</a> that following <a title="Host of Internet Spam Groups Is Cut Off" href="http://www.washingtonpost.com/wp-dyn/content/article/2008/11/12/AR2008111200658.html" title="Host of Internet Spam Groups Is Cut Off">an investigation by the Washington Post</a> , Internet service providers Global Crossing and Hurricane Electric have disconnected the US firm McColo. The firm is believed to be responsible for hosting groups that have been sending spam via botnets.</p>
<p>Ironport, the email security firm now owned by Cisco, claims that as a result spam has dropped by 70% - for now. As soon as the groups re-establish their Internet presence, the level of spam is likely to return.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/JonRolfe?a=3sduN"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=3sduN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=Pv65n"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=Pv65n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=bYCxN"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=bYCxN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=83i8n"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=83i8n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=Lvi4n"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=Lvi4n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=3OWuN"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=3OWuN" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/JonRolfe/~4/452199820" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://JonRolfe.com/news/spam-drops-70/feed/</wfw:commentRss>
		<feedburner:origLink>http://JonRolfe.com/news/spam-drops-70/</feedburner:origLink></item>
		<item>
		<title>Wireless WPA encryption cracked</title>
		<link>http://feeds.feedburner.com/~r/JonRolfe/~3/448924981/</link>
		<comments>http://JonRolfe.com/security/wireless-wpa-encryption-cracked/#comments</comments>
		<pubDate>Mon, 10 Nov 2008 23:26:34 +0000</pubDate>
		<dc:creator>Jon</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<category><![CDATA[aes]]></category>

		<category><![CDATA[aircrack]]></category>

		<category><![CDATA[encryption]]></category>

		<category><![CDATA[wpa]]></category>

		<category><![CDATA[wpa2]]></category>

		<guid isPermaLink="false">http://JonRolfe.com/?p=129</guid>
		<description><![CDATA[It was only a matter of time time, but now the WPA wireless encryption standard has been cracked allowing access to the TKIP key, access to the data hasn&#8217;t yet been achieved. The attack relies on the use of WPA+TKIP, so switching to WPA2 or WPA+AES will mitigate the attack if the wireless hardware supports [...]]]></description>
			<content:encoded><![CDATA[<p>It was only a matter of time time, but now the WPA wireless encryption standard has been cracked allowing access to the TKIP key, access to the data hasn&#8217;t yet been achieved. The attack relies on the use of WPA+TKIP, so switching to WPA2 or WPA+AES will mitigate the attack if the wireless hardware supports them. Check out the <a title="Breaking WEP and WPA whitepaper" href="http://dl.aircrack-ng.org/breakingwepandwpa.pdf" title="Breaking WEP and WPA whitepaper">whitepaper</a> provided at the <a title="AirCrack-NG" href="http://aircrack-ng.org/doku.php?id=" title="AirCrack-NG">AirCrack-NG</a> site, and the <a title="SANS Internet Storm Center" href="http://isc.sans.org/diary.html?storyid=5300" title="SANS Internet Storm Center">SANS ISC</a> site for more details.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/JonRolfe?a=1uhvN"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=1uhvN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=wTrhn"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=wTrhn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=2yV3N"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=2yV3N" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=U4Nbn"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=U4Nbn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=Mvlvn"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=Mvlvn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=tobyN"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=tobyN" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/JonRolfe/~4/448924981" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://JonRolfe.com/security/wireless-wpa-encryption-cracked/feed/</wfw:commentRss>
		<feedburner:origLink>http://JonRolfe.com/security/wireless-wpa-encryption-cracked/</feedburner:origLink></item>
		<item>
		<title>Eavesdropping keyboard strokes</title>
		<link>http://feeds.feedburner.com/~r/JonRolfe/~3/436178382/</link>
		<comments>http://JonRolfe.com/security/eavesdropping/#comments</comments>
		<pubDate>Wed, 29 Oct 2008 19:41:59 +0000</pubDate>
		<dc:creator>Jon</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<category><![CDATA[Eavesdropping]]></category>

		<guid isPermaLink="false">http://JonRolfe.com/?p=122</guid>
		<description><![CDATA[The Register reports that Swiss Researchers from the Security and Cryptography Laboratory at Ecole Polytechnique Federale de Lausanne  have demonstrated eavesdropping keyboard strokes from a distance of 20m. The video below demonstrates a proof of concept of receiving and decoding the electronic emissions from different types of keyboards, PS2, USB and Laptops, and displaying [...]]]></description>
			<content:encoded><![CDATA[<p><a title="Keyboard sniffing attack" href="http://www.theregister.co.uk/2008/10/20/keyboard_sniffing_attack/" title="Keyboard sniffing attack">The Register reports</a> that Swiss Researchers from the Security and Cryptography Laboratory at Ecole Polytechnique Federale de Lausanne  have demonstrated eavesdropping keyboard strokes from a distance of 20m. The video below demonstrates a proof of concept of receiving and decoding the electronic emissions from different types of keyboards, PS2, USB and Laptops, and displaying what&#8217;s typed on a system located in a different room.</p>
<p>Check out the video for a demonstration.</p>
<p><code> </code></p>
<div><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="420" height="257" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" height="257" width="420" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000"><param name="allowFullScreen" value="true" /><param name="allowScriptAccess" value="always" /><param name="src" value="http://www.dailymotion.com/swf/k3jDZHOWWevuGUOdtu&amp;related=1" /><embed type="application/x-shockwave-flash" width="420" height="257" src="http://www.dailymotion.com/swf/k3jDZHOWWevuGUOdtu&amp;related=1" height="257" width="420" src="http://www.dailymotion.com/swf/k3jDZHOWWevuGUOdtu&amp;related=1" allowscriptaccess="always" allowfullscreen="true" type="application/x-shockwave-flash"></embed></object><br />
<strong><a href="http://www.dailymotion.com/video/x74iq0_compromising-electromagnetic-emanat_tech">Compromising Electromagnetic Emanations of Keyboards</a> </strong><br />
<em>Uploaded by <a href="http://www.dailymotion.com/pace303">pace303</a> </em></div>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/JonRolfe?a=7bADM"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=7bADM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=d5gpm"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=d5gpm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=KLaeM"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=KLaeM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=ho8fm"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=ho8fm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=X9a9m"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=X9a9m" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=y0kBM"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=y0kBM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/JonRolfe/~4/436178382" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://JonRolfe.com/security/eavesdropping/feed/</wfw:commentRss>
		<feedburner:origLink>http://JonRolfe.com/security/eavesdropping/</feedburner:origLink></item>
		<item>
		<title>Inbox Zero</title>
		<link>http://feeds.feedburner.com/~r/JonRolfe/~3/372556937/</link>
		<comments>http://JonRolfe.com/technology/inbox-zero/#comments</comments>
		<pubDate>Sat, 23 Aug 2008 08:15:58 +0000</pubDate>
		<dc:creator>Jon</dc:creator>
		
		<category><![CDATA[Technology]]></category>

		<category><![CDATA[Google]]></category>

		<category><![CDATA[personal productivity]]></category>

		<category><![CDATA[tips]]></category>

		<guid isPermaLink="false">http://JonRolfe.com/technology/inbox-zero/</guid>
		<description><![CDATA[I stumbled across the 43 Folders blog of Merlin Mann, a speaker on personal productivity. In his Inbox Zero series he gives useful tips on how to survive the flood of email in the modern age and the best use the technology. The video below shows a talk he gave on his email tips to [...]]]></description>
			<content:encoded><![CDATA[<p>I stumbled across the <a href="http://www.43folders.com/">43 Folders</a> blog of <a href="http://www.merlinmann.com/">Merlin Mann</a>, a speaker on personal productivity. In his <a href="http://www.43folders.com/izero">Inbox Zero</a> series he gives useful tips on how to survive the flood of email in the modern age and the best use the technology. The video below shows a talk he gave on his email tips to Google as part of their <a href="http://research.google.com/video.html">Tech Talk</a> series. The tips are useful, and the Google Q&amp;A session gives an interesting glimpse into the workings of Google and the flood of information that their employees seems to be drowning under. It seems strange that a company that started out trying to improve the management of information is now drowning in it.</p>
<p><code><embed id="VideoPlayback" src="http://video.google.com/googleplayer.swf?docid=973149761529535925&#038;hl=en&#038;fs=true" style="width:400px;height:326px" allowFullScreen="true" allowScriptAccess="always" type="application/x-shockwave-flash"> </embed></code></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/JonRolfe?a=DeO2OK"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=DeO2OK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=P3JBuk"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=P3JBuk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=c953DK"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=c953DK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=mnWXZk"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=mnWXZk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=CHTCCk"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=CHTCCk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=1S1u0K"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=1S1u0K" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/JonRolfe/~4/372556937" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://JonRolfe.com/technology/inbox-zero/feed/</wfw:commentRss>
		<feedburner:origLink>http://JonRolfe.com/technology/inbox-zero/</feedburner:origLink></item>
		<item>
		<title>VMWare fights back, and stumbles</title>
		<link>http://feeds.feedburner.com/~r/JonRolfe/~3/363246202/</link>
		<comments>http://JonRolfe.com/virtualisation/vmware-fights-back-and-stumbles/#comments</comments>
		<pubDate>Tue, 12 Aug 2008 20:24:13 +0000</pubDate>
		<dc:creator>Jon</dc:creator>
		
		<category><![CDATA[Virtualisation]]></category>

		<category><![CDATA[development]]></category>

		<category><![CDATA[Microsoft]]></category>

		<category><![CDATA[News]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[vmware]]></category>

		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://JonRolfe.com/virtualisation/vmware-fights-back-and-stumbles/</guid>
		<description><![CDATA[VMWare showed last month that it was readying for a battle with Microsoft by ousting its founder and CEO Diane Greene, and replacing her with ex-Microsoft Vice President of Platform Strategy and Developer Group Paul Maritz. The news sent the shares tumbling by 28% and the company gave no public reason for the move although [...]]]></description>
			<content:encoded><![CDATA[<p>VMWare showed last month that it was readying for a battle with Microsoft by ousting its founder and CEO <a href="http://www.networkworld.com/power/2005/122605-greene.html">Diane Greene</a>, and replacing her with ex-Microsoft Vice President of Platform Strategy and Developer Group <a href="http://en.wikipedia.org/wiki/Paul_Maritz">Paul Maritz</a>. The news sent the shares tumbling by 28% and the company gave no public reason for the move although it seems likely that they wanted an ex-Microsoft VP in charge in order to better fight a potentially bloody fight with Microsoft over the virtualisation market.
</p>
<p>Shortly after the move, VMWare announced that their new virtualisation product <a href="http://www.vmware.com/company/news/releases/esxi_pricing.html">ESXi would be available for free</a>. VMWare ESXi is the thin hyper-visor based virtualisation product which, unlike ESX or Microsoft&#8217;s current Hyper-V product, doesn&#8217;t require to be installed on top of an operating system. The move was clearly to up competition with Microsoft (who is effectively giving Hyper-V away Server 2008) and increase VMWare&#8217;s installed base, while still earning revenue from support and enterprise management products.
</p>
<p><span id="more-93"></span></p>
<p>However the aggressive move stuttered today as <a href="http://news.zdnet.co.uk/software/0,1000000121,39460415,00.htm">VMWare admitted to a serious bug</a> which prevents shutdown virtual machines from powering on or using VMotion on or after August 12<sup>th</sup>. The problem is caused by the licensing software in ESX 3.5 Update 2 or ESXi 3.5 Update 2 and VMWare advises users not to shutdown virtual guests or to set the date back on the host. VMWare have yet to commit to a release of a patch and their workaround is not usually possible in an enterprise environment when systems require synchronised times for legal, regulatory or security auditing.
</p>
<p>Yesterday VMWare were proud to announce that they had the <a href="http://www.vmware.com/company/news/releases/windowsit-pro-product-08.html">best virtualisation product for Windows administrators</a>. I wonder what those same administrators think today? Read more on the serious bug on the <a href="http://communities.vmware.com/thread/162377?tstart=0">VMWare forum</a>.
</p>
<p>UPDATE: VMWare have now <a href="http://blogs.vmware.com/console/2008/08/letter-from-vmw.html">released an apology</a> and an <a href="http://www.vmware.com/landing_pages/esxexpresspatches.html">express patch</a> to fix the problem.</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/JonRolfe?a=Jn6QeK"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=Jn6QeK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=pxlkak"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=pxlkak" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=V5ksnK"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=V5ksnK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=04ePIk"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=04ePIk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=1TSOHk"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=1TSOHk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/JonRolfe?a=EHWLLK"><img src="http://feeds.feedburner.com/~f/JonRolfe?i=EHWLLK" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/JonRolfe/~4/363246202" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://JonRolfe.com/virtualisation/vmware-fights-back-and-stumbles/feed/</wfw:commentRss>
		<feedburner:origLink>http://JonRolfe.com/virtualisation/vmware-fights-back-and-stumbles/</feedburner:origLink></item>
	</channel>
</rss>
