<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
>
 <channel>
  <title>www.kfwebs.net</title>
  <link>http://www.kfwebs.net/</link>
  <description>KFWebs is the website of Kristian Fiskerstrand, features many resources for programmers as well as some personal information</description>
  <language>en-us</language>
         <item>
        <title>OpenPGP: In preparation for year 2009</title>
  
	<link>http://www.kfwebs.net/news/618/OpenPGP-In-preparation-for-year-2009</link>
	<guid>http://www.kfwebs.net/news/618/OpenPGP-In-preparation-for-year-2009</guid>
	<description><![CDATA[Lacking any other article added the past year, the OpenPGP key has yet again been updated, this time for 2009 . This now has the following key data <br/><br/>pub  4096R/6B0B9508  created: 2005-02-21  expires: never       usage: SC<br/>sub  4096g/9888FB03  created: 2005-02-21  expired: 2005-12-31  usage: E<br/>sub  4096g/DC95F9F6  created: 2005-11-09  expired: 2006-12-30  usage: E<br/>sub  4096g/FD83BAC5  created: 2006-11-01  expired: 2007-12-29  usage: E<br/>sub  4096g/2BCE5B4B  created: 2007-10-07  expires: 2008-12-30  usage: E<br/>sub  4096g/18C0B580  created: 2008-10-27  expires: 2009-12-30  usage: E]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=15" rel="tag">OpenPGP</a> </p><p>
	Lacking any other article added the past year, the OpenPGP key has yet again been updated, this time for 2009 . This now has the following key data <br/><br/>pub  4096R/6B0B9508  created: 2005-02-21  expires: never       usage: SC<br/>sub  4096g/9888FB03  created: 2005-02-21  expired: 2005-12-31  usage: E<br/>sub  4096g/DC95F9F6  created: 2005-11-09  expired: 2006-12-30  usage: E<br/>sub  4096g/FD83BAC5  created: 2006-11-01  expired: 2007-12-29  usage: E<br/>sub  4096g/2BCE5B4B  created: 2007-10-07  expires: 2008-12-30  usage: E<br/>sub  4096g/18C0B580  created: 2008-10-27  expires: 2009-12-30  usage: E<br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>OpenPGP</category>	<pubDate>Mon, 27 Oct 2008 12:41:25 +0100</pubDate>
       </item>
             <item>
        <title>OpenPGP: In preparation for year 2008</title>
  
	<link>http://www.kfwebs.net/news/617/OpenPGP-In-preparation-for-year-2008</link>
	<guid>http://www.kfwebs.net/news/617/OpenPGP-In-preparation-for-year-2008</guid>
	<description><![CDATA[In preparation for 2008 a new encryption subkey has been added to my PGP key 0x6b0b9508. This now has the following key data <br/><br/>pub 4096R/6B0B9508 created: 2005-02-21 expires: never usage: CS<br/>Primary key fingerprint: 65F1 73BE C045 0DA0 7A58 6197 16E0 CF8D 6B0B 9508<br/>sub 4096g/9888FB03 created: 2005-02-21 expires: 2005-12-31 usage: E<br/>sub 4096g/DC95F9F6 created: 2005-11-09 expires: 2006-12-30 usage: E<br/>sub 4096g/FD83BAC5 created: 2006-11-01 expires: 2007-12-29 usage: E<br/>sub 4096g/2BCE5B4B created: 2007-10-07 expires: 2008-12-30 usage: E<br/><br/>The updated key is available on the public keyservers ( http://www.sks-keyservers.net )]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=15" rel="tag">OpenPGP</a> </p><p>
	In preparation for 2008 a new encryption subkey has been added to my PGP key 0x6b0b9508. This now has the following key data <br/><br/>pub 4096R/6B0B9508 created: 2005-02-21 expires: never usage: CS<br/>Primary key fingerprint: 65F1 73BE C045 0DA0 7A58 6197 16E0 CF8D 6B0B 9508<br/>sub 4096g/9888FB03 created: 2005-02-21 expires: 2005-12-31 usage: E<br/>sub 4096g/DC95F9F6 created: 2005-11-09 expires: 2006-12-30 usage: E<br/>sub 4096g/FD83BAC5 created: 2006-11-01 expires: 2007-12-29 usage: E<br/>sub 4096g/2BCE5B4B created: 2007-10-07 expires: 2008-12-30 usage: E<br/><br/>The updated key is available on the public keyservers ( <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.sks-keyservers.net">www.sks-keyservers.net</a> )<br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>OpenPGP</category>	<pubDate>Sun, 07 Oct 2007 19:07:43 +0200</pubDate>
       </item>
             <item>
        <title>Yet another reminder on the importance of backups</title>
  
	<link>http://www.kfwebs.net/news/616/Yet-another-reminder-on-the-importance-of-backups</link>
	<guid>http://www.kfwebs.net/news/616/Yet-another-reminder-on-the-importance-of-backups</guid>
	<description><![CDATA[Backups are vital to sustainable behavior, yet a scary majority fail to maintain proper backups. <br/><br/>Perhaps you know that sinking feeling when a single keystroke accidentally destroys hours of work. Now imagine wiping out a disk drive containing an account worth $38 billion.<br/><br/>There have been similar situations before, and I've mentioned it here at e.g. http://www.kfwebs.net/news/578/IT-Troubles-in-the-Finance-world <br/><br/>Hopefully they haven't done the same as in August 2001 there was full chaos for nearly two weeks after the storage solution messed up, or rather, a human working on it did while they were installing new Hard Disk drives and got ready to format the new drives. The only problem was that they ran it on the operational drives instead of the new ones. <br/><br/>The difference, however, starts at "and mistakenly reformatted the backup drive, as well.". Ok, so this still shouldn't be an issue, right? because there are obviously offline backups for this kind of information: "There was still hope, until the department discovered its third line of defense, backup tapes, were unreadable."<br/><br/>If you haven't slapped your forehead already, this is the time to do so. The full story can be read at http://www.msnbc.msn.com/id/17702021/ , and folks: remember to back up your data. ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=2" rel="tag">Computer</a> <a href="http://www.kfwebs.net/news/category.php?cid=3" rel="tag">Security</a> </p><p>
	Backups are vital to sustainable behavior, yet a scary majority fail to maintain proper backups. <br/><br/>Perhaps you know that sinking feeling when a single keystroke accidentally destroys hours of work. Now imagine wiping out a disk drive containing an account worth $38 billion.<br/><br/>There have been similar situations before, and I've mentioned it here at e.g. <a href="http://www.kfwebs.net/news/578/IT-Troubles-in-the-Finance-world">www.kfwebs.net</a> <br/><br/>Hopefully they haven't done the same as in August 2001 there was full chaos for nearly two weeks after the storage solution messed up, or rather, a human working on it did while they were installing new Hard Disk drives and got ready to format the new drives. The only problem was that they ran it on the operational drives instead of the new ones. <br/><br/>The difference, however, starts at "and mistakenly reformatted the backup drive, as well.". Ok, so this still shouldn't be an issue, right? because there are obviously offline backups for this kind of information: "There was still hope, until the department discovered its third line of defense, backup tapes, were unreadable."<br/><br/>If you haven't slapped your forehead already, this is the time to do so. The full story can be read at <a href="http://www.msnbc.msn.com/id/17702021/">www.msnbc.msn.com</a> , and folks: remember to back up your data. <br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Computer</category><category>Security</category>	<pubDate>Thu, 22 Mar 2007 18:16:04 +0100</pubDate>
       </item>
             <item>
        <title>Domain registrar Registerfly looses ICANN accreditation</title>
  
	<link>http://www.kfwebs.net/news/615/Domain-registrar-Registerfly-looses-ICANN-accreditation</link>
	<guid>http://www.kfwebs.net/news/615/Domain-registrar-Registerfly-looses-ICANN-accreditation</guid>
	<description><![CDATA[As a result of Registerfly loosing ICANN accreditation, ICANN directed Registerfly — between now and March 31st — to unlock all domain names and provide all necessary authorization codes to allow domains to be transferred to other registrars.<br/><br/>At which point current customers of registerfly will have to move to another domain registrar.<br/><br/>People wanting to transfer their domain to KF Webs sibling site http://www.passive12.net can do so at http://www.passive12.net/domain.php?action=domain_transfer . New customers are always welcome. ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: </p><p>
	As a result of Registerfly loosing ICANN accreditation, ICANN directed Registerfly — between now and March 31st — to unlock all domain names and provide all necessary authorization codes to allow domains to be transferred to other registrars.<br/><br/>At which point current customers of registerfly will have to move to another domain registrar.<br/><br/>People wanting to transfer their domain to KF Webs sibling site <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.passive12.net">www.passive12.net</a> can do so at <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.passive12.net/domain.php?action=domain_transfer">www.passive12.net</a> . New customers are always welcome. <br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
		<pubDate>Mon, 19 Mar 2007 20:57:48 +0100</pubDate>
       </item>
             <item>
        <title>The weakest link</title>
  
	<link>http://www.kfwebs.net/news/614/The-weakest-link</link>
	<guid>http://www.kfwebs.net/news/614/The-weakest-link</guid>
	<description><![CDATA[A chain is only as strong as its weakest link. When it come down to it, the weakest link in security is often men itself. <br/><br/>This was recently experienced by ABN Amro bank in Antwerp's diamond quarter where a thief has evaded one of the world's most expensive hi-tech security systems, and made off with €21m (£14.5m) worth of diamonds - thanks to a secret weapon rarely used on bank staff: personal charm.<br/><br/>The phenomenon in question is commonly known as Social Engineering and this example out of many shows that human behaviour often understate the threat in order to satisfy their own safety needs. However, often falsely. One example is purchasing an expensive pick-proof lock at your home door, and thereby feeling comfortable that you have made the home safer for your family and yourself. However, the windows are still just as easy to break through. <br/><br/>In this case it was not only a pick-proof lock, but a security system costing more than €1m. The lesson, he [Philip Claes, spokesman for the Diamond High Council in Antwerp] said, was that "despite all the efforts one makes in investing in security, when a human error is made nothing can help".<br/><br/>Read more at http://news.independent.co.uk/europe/article2369019.ece]]></description>
	<content:encoded><![CDATA[<p>
	Categories: </p><p>
	A chain is only as strong as its weakest link. When it come down to it, the weakest link in security is often men itself. <br/><br/>This was recently experienced by ABN Amro bank in Antwerp's diamond quarter where a thief has evaded one of the world's most expensive hi-tech security systems, and made off with €21m (£14.5m) worth of diamonds - thanks to a secret weapon rarely used on bank staff: personal charm.<br/><br/>The phenomenon in question is commonly known as Social Engineering and this example out of many shows that human behaviour often understate the threat in order to satisfy their own safety needs. However, often falsely. One example is purchasing an expensive pick-proof lock at your home door, and thereby feeling comfortable that you have made the home safer for your family and yourself. However, the windows are still just as easy to break through. <br/><br/>In this case it was not only a pick-proof lock, but a security system costing more than €1m. The lesson, he [Philip Claes, spokesman for the Diamond High Council in Antwerp] said, was that "despite all the efforts one makes in investing in security, when a human error is made nothing can help".<br/><br/>Read more at <a href="http://www.kfwebs.net/linkcounter.php?url=http://news.independent.co.uk/europe/article2369019.ece">news.independent.co.uk</a><br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
		<pubDate>Mon, 19 Mar 2007 01:09:54 +0100</pubDate>
       </item>
             <item>
        <title>Domain registrar Registerfly imploding</title>
  
	<link>http://www.kfwebs.net/news/613/Domain-registrar-Registerfly-imploding</link>
	<guid>http://www.kfwebs.net/news/613/Domain-registrar-Registerfly-imploding</guid>
	<description><![CDATA[Former CEO Kevin Medina has regained control of the domain name registrar, Registerfly, which has less than a week to straighten out accounts with ICANN<br/><br/>Naruszewicz, one of the two who had fired Medina and taken control of the company, doesn't plan to appeal the judge's decision. "We lost and it's all over," he says. "The company will implode in days and 1 million domain names are going to be lost. It's a damned shame."<br/>( http://www.businessweek.com/technology/content/mar2007/tc20070309_245992.htm?chan=top+news_top+news+index_technology )<br/><br/>According to Business Week, about 75,000 Registerfly customers have lost access to their Web sites. This seems to confirm rumors that a significant amount of customer data kept on Registerfly servers has been corrupted and lost leaving Registerfly management scrambling to find a way to get it back. However it has been reported that ICANN is possession of a vast amount of registrant data. If true, that's at least some good news for Registerfly customers.<br/><br/>Some customers may be experiencing difficulties in transferring their name because they are not listed as the registrant, but instead have opted to use a privacy service. In discussions with ICANN today RegisterFly agreed to assist people in those circumstances and will provide customer data to eNom from Monday 12 March. This means that eNom should be able to facilitate transfers from RegisterFly (as reseller) to another registrar of the customer's choice.<br/>( http://www.domaininformer.com/news/press/070309RegisterFly.html ) <br/><br/>If you yourself want to transfer the domain name away, we provide domain registration services at our sibling site http://www.passive12.net]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=2" rel="tag">Computer</a> <a href="http://www.kfwebs.net/news/category.php?cid=11" rel="tag">Economy/Business</a> </p><p>
	Former CEO Kevin Medina has regained control of the domain name registrar, Registerfly, which has less than a week to straighten out accounts with ICANN<br/><br/>Naruszewicz, one of the two who had fired Medina and taken control of the company, doesn't plan to appeal the judge's decision. "We lost and it's all over," he says. "The company will implode in days and 1 million domain names are going to be lost. It's a damned shame."<br/>( <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.businessweek.com/technology/content/mar2007/tc20070309_245992.htm?chan=top+news_top+news+index_technology">www.businessweek.com</a> )<br/><br/>According to Business Week, about 75,000 Registerfly customers have lost access to their Web sites. This seems to confirm rumors that a significant amount of customer data kept on Registerfly servers has been corrupted and lost leaving Registerfly management scrambling to find a way to get it back. However it has been reported that ICANN is possession of a vast amount of registrant data. If true, that's at least some good news for Registerfly customers.<br/><br/>Some customers may be experiencing difficulties in transferring their name because they are not listed as the registrant, but instead have opted to use a privacy service. In discussions with ICANN today RegisterFly agreed to assist people in those circumstances and will provide customer data to eNom from Monday 12 March. This means that eNom should be able to facilitate transfers from RegisterFly (as reseller) to another registrar of the customer's choice.<br/>( <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.domaininformer.com/news/press/070309RegisterFly.html">www.domaininformer.com</a> ) <br/><br/>If you yourself want to transfer the domain name away, we provide domain registration services at our sibling site <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.passive12.net">www.passive12.net</a><br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Computer</category><category>Economy/Business</category>	<pubDate>Sun, 11 Mar 2007 11:51:31 +0100</pubDate>
       </item>
             <item>
        <title>Second Life</title>
  
	<link>http://www.kfwebs.net/news/612/Second-Life</link>
	<guid>http://www.kfwebs.net/news/612/Second-Life</guid>
	<description><![CDATA[Despite (or maybe because?) not having a first life, lately I've been trying out Second Life ( http://www.secondlife.com/?u=78a45eb22d5e4eff8d21fbdd49e8af1a ) . <br/><br/>Now, most that knows me knows I'm not much of a gamer, but what got me interested in SecondLife was the business aspects of it. <br/><br/>Second Life is a 3-D virtual world entirely built and owned by its residents. Since opening to the public in 2003, it has grown explosively and today is inhabited by a total of 3,441,814 people from around the globe.<br/><br/>    * The Marketplace currently supports millions of US dollars in monthly transactions. This commerce is handled with the in-world unit-of-trade, the Linden dollar, which can be converted to US dollars at several thriving online Linden Dollar exchanges.<br/> (1465 chars more to read) ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=2" rel="tag">Computer</a> </p><p>
	Despite (or maybe because?) not having a first life, lately I've been trying out Second Life ( <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.secondlife.com/?u=78a45eb22d5e4eff8d21fbdd49e8af1a">www.secondlife.com</a> ) . <br/><br/>Now, most that knows me knows I'm not much of a gamer, but what got me interested in SecondLife was the business aspects of it. <br/><br/>Second Life is a 3-D virtual world entirely built and owned by its residents. Since opening to the public in 2003, it has grown explosively and today is inhabited by a total of 3,441,814 people from around the globe.<br/><br/>    * The Marketplace currently supports millions of US dollars in monthly transactions. This commerce is handled with the in-world unit-of-trade, the Linden dollar, which can be converted to US dollars at several thriving online Linden Dollar exchanges.<br/><br/>
	</p> <p>There are 1465 chars more to read in this posting</p> <p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Computer</category>	<pubDate>Sat, 10 Feb 2007 13:59:46 +0100</pubDate>
       </item>
             <item>
        <title>More attacks on Scandinavian bank customers</title>
  
	<link>http://www.kfwebs.net/news/611/More-attacks-on-Scandinavian-bank-customers</link>
	<guid>http://www.kfwebs.net/news/611/More-attacks-on-Scandinavian-bank-customers</guid>
	<description><![CDATA[Earlier today it got known that at least 250 customers of the banking groups Sparebank 1, Nordea, DNB Nor and Skandiabanken have gotten their bank accounts emptied after having been infected by trojan horses. Most of them from Nordea. <br/><br/>My first thought was, but why isn't there any random token authentication to protect against Trojans as well as phishing. But the more I thought about it, the more clear it got to me that I would rather just monitor the activity of the customer, wait until the user him/her-self logged in and then capture the computer, do the necessary transfers, change the password and log out, while the user only thought there was a lag in the system by forcing up another window. <br/><br/>Which brings us back to the root cause of the problem, the users. Albert Einstein is often attributed the quote "Only two things are infinite, the universe and human stupidity, and I'm not sure about the former." and indeed, security is too often merely an illusion, an illusion sometimes made even worse when gullibility, naivete, or ignorance come into play.<br/><br/>I really hope the banks doesn't take full responsibility for this, as it will only result in higher prices for users that actually bother to protect themselves. <br/><br/>And for crying out loud, learn how to protect your computer, or don't use it at all. The last time something similar happened, a vulnerability that was fixed by Microsoft in April got used, so the users had more than half a year to upgrade the systems, yet didn't. <br/><br/>More about protecting your computer can be read at http://www.secure-my-internet.com<br/><br/>Update: 20:37<br/>As more information get out, it is actually getting clearer that a proper Random Token Generator, e.g. from RSA would have gotten around this issue, a method used by quite a number of other internet banks. <br/><br/>Update: 2007-01-20 14:24<br/>An important thing with regards to the random token generator would be for it to be required to perform the transactions themselves as well, not only logins, as we would be back to the monitoring and hijacking of session again. But even here, as long as the clients computer is infected it would be possible to hide the transactions from the display, it would just require some more work. So please, keep your system updated. ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=2" rel="tag">Computer</a> <a href="http://www.kfwebs.net/news/category.php?cid=16" rel="tag">Norway</a> </p><p>
	Earlier today it got known that at least 250 customers of the banking groups Sparebank 1, Nordea, DNB Nor and Skandiabanken have gotten their bank accounts emptied after having been infected by trojan horses. Most of them from Nordea. <br/><br/>My first thought was, but why isn't there any random token authentication to protect against Trojans as well as phishing. But the more I thought about it, the more clear it got to me that I would rather just monitor the activity of the customer, wait until the user him/her-self logged in and then capture the computer, do the necessary transfers, change the password and log out, while the user only thought there was a lag in the system by forcing up another window. <br/><br/>Which brings us back to the root cause of the problem, the users. Albert Einstein is often attributed the quote "Only two things are infinite, the universe and human stupidity, and I'm not sure about the former." and indeed, security is too often merely an illusion, an illusion sometimes made even worse when gullibility, naivete, or ignorance come into play.<br/><br/>I really hope the banks doesn't take full responsibility for this, as it will only result in higher prices for users that actually bother to protect themselves. <br/><br/>And for crying out loud, learn how to protect your computer, or don't use it at all. The last time something similar happened, a vulnerability that was fixed by Microsoft in April got used, so the users had more than half a year to upgrade the systems, yet didn't. <br/><br/>More about protecting your computer can be read at <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.secure-my-internet.com">www.secure-my-internet.com</a><br/><br/>Update: 20:37<br/>As more information get out, it is actually getting clearer that a proper Random Token Generator, e.g. from RSA would have gotten around this issue, a method used by quite a number of other internet banks. <br/><br/>Update: 2007-01-20 14:24<br/>An important thing with regards to the random token generator would be for it to be required to perform the transactions themselves as well, not only logins, as we would be back to the monitoring and hijacking of session again. But even here, as long as the clients computer is infected it would be possible to hide the transactions from the display, it would just require some more work. So please, keep your system updated. <br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Computer</category><category>Norway</category>	<pubDate>Fri, 19 Jan 2007 17:59:05 +0100</pubDate>
       </item>
             <item>
        <title>Apple iPhone and domain names</title>
  
	<link>http://www.kfwebs.net/news/610/Apple-iPhone-and-domain-names</link>
	<guid>http://www.kfwebs.net/news/610/Apple-iPhone-and-domain-names</guid>
	<description><![CDATA[Apple announced iPhone ( http://www.apple.com/iphone/ ) during the keynote speech this year. "iPhone combines three products — a revolutionary mobile phone, a widescreen iPod with touch controls, and a breakthrough Internet communications device with desktop-class email, web browsing, maps, and searching — into one small and lightweight handheld device."<br/><br/>As I already had loaded a recent zonefile ( http://www.kfwebs.net/news/609/David-Beckham--LA-Galaxy-and-domain-names ) I went ahead and looked at the domain names registered in the COM zonefile for iPhone, and although some were registered before the lauch, as iPhone as a term has been used before, many are registered around the 9th of january. 2,376 .com domain names starts with the phrase iphone, and 4,793 includes the term somewhere in the name at all.<br/><br/>Randomly selecting 15 entries from the 2,376 domains prefixed with iphone gives <br/>+-------------------+<br/>| domain            |<br/>+-------------------+<br/>| IPHONEFLICK       |<br/>| IPHONEINTEGRATION |<br/>| IPHONEVIDEOADS    |<br/>| IPHONEUPDATE      |<br/>| IPHONEPACKAGES    |<br/>| IPHONEMP3SHARING  |<br/>| IPHONE-4-U        |<br/>| IPHONEWEBBLOG     |<br/>| IPHONEADD-ONS     |<br/>| IPHONEMAGAZINE    |<br/>| IPHONEMEDICS      |<br/>| IPHONEMASTER      |<br/>| IPHONEINFORMATION |<br/>| IPHONEBATTERY     |<br/>| IPHONERETAILERS   |<br/>+-------------------+<br/><br/>Is there any other product or event that you would like to get some statistics on? Please let me know: http://www.kfwebs.net/contact.php]]></description>
	<content:encoded><![CDATA[<p>
	Categories: </p><p>
	Apple announced iPhone ( <a href="http://www.apple.com/iphone/">www.apple.com</a> ) during the keynote speech this year. "iPhone combines three products — a revolutionary mobile phone, a widescreen iPod with touch controls, and a breakthrough Internet communications device with desktop-class email, web browsing, maps, and searching — into one small and lightweight handheld device."<br/><br/>As I already had loaded a recent zonefile ( <a href="http://www.kfwebs.net/news/609/David-Beckham--LA-Galaxy-and-domain-names">www.kfwebs.net</a> ) I went ahead and looked at the domain names registered in the COM zonefile for iPhone, and although some were registered before the lauch, as iPhone as a term has been used before, many are registered around the 9th of january. 2,376 .com domain names starts with the phrase iphone, and 4,793 includes the term somewhere in the name at all.<br/><br/>Randomly selecting 15 entries from the 2,376 domains prefixed with iphone gives <br/>+-------------------+<br/>| domain            |<br/>+-------------------+<br/>| IPHONEFLICK       |<br/>| IPHONEINTEGRATION |<br/>| IPHONEVIDEOADS    |<br/>| IPHONEUPDATE      |<br/>| IPHONEPACKAGES    |<br/>| IPHONEMP3SHARING  |<br/>| IPHONE-4-U        |<br/>| IPHONEWEBBLOG     |<br/>| IPHONEADD-ONS     |<br/>| IPHONEMAGAZINE    |<br/>| IPHONEMEDICS      |<br/>| IPHONEMASTER      |<br/>| IPHONEINFORMATION |<br/>| IPHONEBATTERY     |<br/>| IPHONERETAILERS   |<br/>+-------------------+<br/><br/>Is there any other product or event that you would like to get some statistics on? Please let me know: <a href="http://www.kfwebs.net/contact.php">www.kfwebs.net</a><br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
		<pubDate>Sun, 14 Jan 2007 17:22:08 +0100</pubDate>
       </item>
             <item>
        <title>David Beckham, LA Galaxy and domain names</title>
  
	<link>http://www.kfwebs.net/news/609/David-Beckham--LA-Galaxy-and-domain-names</link>
	<guid>http://www.kfwebs.net/news/609/David-Beckham--LA-Galaxy-and-domain-names</guid>
	<description><![CDATA[Apparently the non-news that David Beckham confirmed a move from Real Madrid to the American Major League Soccer team LA Galaxy ( http://football.guardian.co.uk/continentalfootball/story/0,,1988215,00.html ) has made some impact around the world, as Beckham has become quite a trademark over the years. According to The Daily Mail he can even end up owning his own Major Leage Soccer team at the end of the contract ( http://www.dailymail.co.uk/pages/live/articles/sport/football.html?in_article_id=428518|||in_page_id=1779|||ct=5 )<br/><br/>Starting with the deal itself being exceptional in the context of American soccer, valued at nearly 50 million USD a year over five years, it also has effects for other sectors.<br/><br/>Domain registrations is one of them. The domain name davidbeckhamgalaxy.com got registered very quickly the 11th of January, by an american. A Brit later grabbed every combination of "beckham" and "galaxy" he could think of. <br/><br/>Being a domain registrar myself as well as having performed some COM analyses before this cought my interest too. Tthe latest in-depth look I had at the com zonefile was an analysis in April 2006 ( http://www.kfwebs.net/articles/article/37/An-analysis-of-the-COM-Top-Level-Domain ). So I went head and downloaded the COM zonefile as of 12th of January from the FTP server and loaded it into a DataBase Management System (DBMS). (1778 chars more to read) ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: </p><p>
	Apparently the non-news that David Beckham confirmed a move from Real Madrid to the American Major League Soccer team LA Galaxy ( <a href="http://football.guardian.co.uk/continentalfootball/story/0,,1988215,00.html">football.guardian.co.uk</a> ) has made some impact around the world, as Beckham has become quite a trademark over the years. According to The Daily Mail he can even end up owning his own Major Leage Soccer team at the end of the contract ( <a href="http://www.dailymail.co.uk/pages/live/articles/sport/football.html?in_article_id=428518|||in_page_id=1779|||ct=5">www.dailymail.co.uk</a> )<br/><br/>Starting with the deal itself being exceptional in the context of American soccer, valued at nearly 50 million USD a year over five years, it also has effects for other sectors.<br/><br/>Domain registrations is one of them. The domain name davidbeckhamgalaxy.com got registered very quickly the 11th of January, by an american. A Brit later grabbed every combination of "beckham" and "galaxy" he could think of. <br/><br/>Being a domain registrar myself as well as having performed some COM analyses before this cought my interest too. Tthe latest in-depth look I had at the com zonefile was an analysis in April 2006 ( <a href="http://www.kfwebs.net/articles/article/37/An-analysis-of-the-COM-Top-Level-Domain">www.kfwebs.net</a> ). So I went head and downloaded the COM zonefile as of 12th of January from the FTP server and loaded it into a DataBase Management System (DBMS).<br/>
	</p> <p>There are 1778 chars more to read in this posting</p> <p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
		<pubDate>Sat, 13 Jan 2007 20:23:58 +0100</pubDate>
       </item>
             <item>
        <title>Security by Insanity</title>
  
	<link>http://www.kfwebs.net/news/608/Security-by-Insanity</link>
	<guid>http://www.kfwebs.net/news/608/Security-by-Insanity</guid>
	<description><![CDATA[I came across an interesting posting today. Thinking about it I would probably have scanned the original contract myself and commented on a copy, but then again, this was given at a stage for review, not of completion so I would probably have expected a fresh copy to be signed. <br/><br/>That said, it is a fairly interesting read that can be found at http://thedailywtf.com/Articles/Security_by_Insanity.aspx<br/><br/>It all began on the first interview, the moment I entered their building. I was asked to sign a four-page Non-Disclosure Agreement and was sternly warned that no recording devices of any kind were allowed in the building. It didn't seem that unheard of, so I assured them that I had no intention of recording the interview and signed the agreement, thereby swearing on my life that I would never describe to another living soul what I saw on the premises that day. To this day, I cannot reveal which motivational poster I saw framed in the only room I was allowed to see: the conference room off the entrance.<br/><br/>At the end of the second interview they handed me a 14 page contract, a mere review copy of their standard Employee Agreement.....Another week passed and I was back in their conference room, ready to discuss the Employee Agreement.....Before I could finish the question, the VP suddenly froze and starred stunned by my copy of their Sacred Contract.<br/><br/>He saw my pencil marks on the page, where I underlined the two conflicting sections. He snatched the document out of my hand and glared at the pencil markings. He flipped from page and to page, and to his disgust he found MORE PENCIL MARKS! Not just in the margins, but on the words themselves! Pencil marks! There were ugly questions marks, lines, arrows, and circles around words; it was appalling to him! He looked up from the paper and gave me stare of utter sadness and betrayal.<br/><br/>"You ... altered The Contract" he mumbled.]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=10" rel="tag">Humor</a> </p><p>
	I came across an interesting posting today. Thinking about it I would probably have scanned the original contract myself and commented on a copy, but then again, this was given at a stage for review, not of completion so I would probably have expected a fresh copy to be signed. <br/><br/>That said, it is a fairly interesting read that can be found at <a href="http://www.kfwebs.net/linkcounter.php?url=http://thedailywtf.com/Articles/Security_by_Insanity.aspx">thedailywtf.com</a><br/><br/>It all began on the first interview, the moment I entered their building. I was asked to sign a four-page Non-Disclosure Agreement and was sternly warned that no recording devices of any kind were allowed in the building. It didn't seem that unheard of, so I assured them that I had no intention of recording the interview and signed the agreement, thereby swearing on my life that I would never describe to another living soul what I saw on the premises that day. To this day, I cannot reveal which motivational poster I saw framed in the only room I was allowed to see: the conference room off the entrance.<br/><br/>At the end of the second interview they handed me a 14 page contract, a mere review copy of their standard Employee Agreement.....Another week passed and I was back in their conference room, ready to discuss the Employee Agreement.....Before I could finish the question, the VP suddenly froze and starred stunned by my copy of their Sacred Contract.<br/><br/>He saw my pencil marks on the page, where I underlined the two conflicting sections. He snatched the document out of my hand and glared at the pencil markings. He flipped from page and to page, and to his disgust he found MORE PENCIL MARKS! Not just in the margins, but on the words themselves! Pencil marks! There were ugly questions marks, lines, arrows, and circles around words; it was appalling to him! He looked up from the paper and gave me stare of utter sadness and betrayal.<br/><br/>"You ... altered The Contract" he mumbled.<br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Humor</category>	<pubDate>Tue, 09 Jan 2007 16:26:55 +0100</pubDate>
       </item>
             <item>
        <title>Gmail users loosing all their emails and contacts</title>
  
	<link>http://www.kfwebs.net/news/607/Gmail-users-loosing-all-their-emails-and-contacts</link>
	<guid>http://www.kfwebs.net/news/607/Gmail-users-loosing-all-their-emails-and-contacts</guid>
	<description><![CDATA[Earlier ( http://www.kfwebs.net/news/606/Security-and-user-accountability ) I wrote about how the lack of user interest in security resulted in computers getting hijacked with a trojan horse, getting used to perform financial transactions while the users were logged into their internet bank account. <br/><br/>Now I want to present a fairly recent example of google's mail service, gmail, getting targeted. <br/><br/>The google help pages states: "If you're not able to locate a message in your Inbox, Sent Mail, All Mail, or Trash, it's been permanently removed from your Gmail account. Unfortunately, we're unable to recover messages or Contact entries that have been deleted from your account.<br/><br/>If you're concerned that someone may have gained access to your account, we suggest that you take the following measures: " at http://mail.google.com/support/bin/answer.py?answer=50208 <br/><br/>And this is exactly what happened to many in the newsgroup thread http://groups.google.com/group/Gmail-Problem-solving/browse_thread/thread/e19d6ab5d41e58eb/bd2a9386c2a1ad41<br/><br/>"Found my account clean..nothing in Inbox, contacts ,sent mail..How can all these information residing in different folders disappear?"<br/><br/>As it turns out, the cause is most likely an insecure system, that was attacked either through a trojan horse or a cross-site scripting attack.  Suspicions are that it is related to an error in Firefox 2.0 (not updated to 2.0.0.1) that can be read about at http://nvd.nist.gov/nvd.cfm?cvename=CVE-2006-6507 . This error states "Mozilla Firefox 2.0 before 2.0.0.1 allows remote attackers to bypass Cross-Site Scripting (XSS) protection via vectors related to a Function.prototype regression error."<br/><br/>Later discussions has lead to requests for a backup routine in gmail, and that google should take responsibility for backing up these user's email. The thing is, users already have a way of backing up the emails, as gmail permits POP access to the account. <br/><br/>This is solely the user's responsibility: <br/>1) It was the users' computer that got compromised, so google had no way of knowing whether this was the user or an attack.<br/>2) the users already had method available to make backups of the data. <br/>3) The users had not performed such backups<br/><br/>At the same time, please read up on how to secure the communication done with emails at http://www.secure-my-email.com , adding digital signatures and encrypting the content. ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=24" rel="tag">Google</a> <a href="http://www.kfwebs.net/news/category.php?cid=3" rel="tag">Security</a> </p><p>
	Earlier ( <a href="http://www.kfwebs.net/news/606/Security-and-user-accountability">www.kfwebs.net</a> ) I wrote about how the lack of user interest in security resulted in computers getting hijacked with a trojan horse, getting used to perform financial transactions while the users were logged into their internet bank account. <br/><br/>Now I want to present a fairly recent example of google's mail service, gmail, getting targeted. <br/><br/>The google help pages states: "If you're not able to locate a message in your Inbox, Sent Mail, All Mail, or Trash, it's been permanently removed from your Gmail account. Unfortunately, we're unable to recover messages or Contact entries that have been deleted from your account.<br/><br/>If you're concerned that someone may have gained access to your account, we suggest that you take the following measures: " at <a href="http://mail.google.com/support/bin/answer.py?answer=50208">mail.google.com</a> <br/><br/>And this is exactly what happened to many in the newsgroup thread <a href="http://groups.google.com/group/Gmail-Problem-solving/browse_thread/thread/e19d6ab5d41e58eb/bd2a9386c2a1ad41">groups.google.com</a><br/><br/>"Found my account clean..nothing in Inbox, contacts ,sent mail..How can all these information residing in different folders disappear?"<br/><br/>As it turns out, the cause is most likely an insecure system, that was attacked either through a trojan horse or a cross-site scripting attack.  Suspicions are that it is related to an error in Firefox 2.0 (not updated to 2.0.0.1) that can be read about at <a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2006-6507">nvd.nist.gov</a> . This error states "Mozilla Firefox 2.0 before 2.0.0.1 allows remote attackers to bypass Cross-Site Scripting (XSS) protection via vectors related to a Function.prototype regression error."<br/><br/>Later discussions has lead to requests for a backup routine in gmail, and that google should take responsibility for backing up these user's email. The thing is, users already have a way of backing up the emails, as gmail permits POP access to the account. <br/><br/>This is solely the user's responsibility: <br/>1) It was the users' computer that got compromised, so google had no way of knowing whether this was the user or an attack.<br/>2) the users already had method available to make backups of the data. <br/>3) The users had not performed such backups<br/><br/>At the same time, please read up on how to secure the communication done with emails at <a href="http://www.secure-my-email.com">www.secure-my-email.com</a> , adding digital signatures and encrypting the content. <br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Google</category><category>Security</category>	<pubDate>Wed, 03 Jan 2007 17:41:29 +0100</pubDate>
       </item>
             <item>
        <title>Security and user accountability</title>
  
	<link>http://www.kfwebs.net/news/606/Security-and-user-accountability</link>
	<guid>http://www.kfwebs.net/news/606/Security-and-user-accountability</guid>
	<description><![CDATA[Recently several people have found their bank accounts tapped for reserves after the customer has logged into the Internet bank for seemingly trivial matters.<br/><br/>Looking further at the matter it turned out that this was a result of Trojan horses (variant of worms/viruses) installed on the user's computer. This allowed the attacker to monitor the computer and act when the users themselves had logged into the Internet bank, instead of trying to attack the Internet bank itself or using phishing methods to gain credentials. <br/><br/>The security of Norwegian Internet banks are in themselves very secure,  for one thing the banks generally depend on some random token authentication that is difficult to lure from the customer., and as such it has brought forth alternative routes of attacks. <br/><br/>The attacks were detected by four different banks in Norway, and three quarters of them were stopped before the transactions were completed (cudos to the users that reacted when the cursor started moving around and doing actions not issued by the user itself and logged off before calling the bank)<br/><br/>But this once again brings up the importance of securing not only servers, but also clients, and the point of user accountability. The bank has no liability in this case, as it, from the bank's perspective just as well could've been the customer that issued mere 2,000 USD transactions. Of course, it will try to help the customer and trace the money still. <br/><br/>A chain is only as strong as its weakest link. When it come down to it, the weakest link in security is often men itself. Security is too often merely an illusion, an illusion sometimes made even worse when gullibility, naivete, or ignorance come into play. Albert Einstein is quoted as saying: "Only two things are infinite, the universe and human stupidity, and I'm not sure about the former." ( http://www.secure-my-internet.com/weakest_link.php )<br/><br/>So install antivirus scanners, install anti-spyware applications, look into alternative browsers such as Mozilla's Firefox instead of using Internet Explorer, and last but not least always think of security implications. <br/><br/>Read more at http://www.secure-my-internet.com]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=3" rel="tag">Security</a> </p><p>
	Recently several people have found their bank accounts tapped for reserves after the customer has logged into the Internet bank for seemingly trivial matters.<br/><br/>Looking further at the matter it turned out that this was a result of Trojan horses (variant of worms/viruses) installed on the user's computer. This allowed the attacker to monitor the computer and act when the users themselves had logged into the Internet bank, instead of trying to attack the Internet bank itself or using phishing methods to gain credentials. <br/><br/>The security of Norwegian Internet banks are in themselves very secure,  for one thing the banks generally depend on some random token authentication that is difficult to lure from the customer., and as such it has brought forth alternative routes of attacks. <br/><br/>The attacks were detected by four different banks in Norway, and three quarters of them were stopped before the transactions were completed (cudos to the users that reacted when the cursor started moving around and doing actions not issued by the user itself and logged off before calling the bank)<br/><br/>But this once again brings up the importance of securing not only servers, but also clients, and the point of user accountability. The bank has no liability in this case, as it, from the bank's perspective just as well could've been the customer that issued mere 2,000 USD transactions. Of course, it will try to help the customer and trace the money still. <br/><br/>A chain is only as strong as its weakest link. When it come down to it, the weakest link in security is often men itself. Security is too often merely an illusion, an illusion sometimes made even worse when gullibility, naivete, or ignorance come into play. Albert Einstein is quoted as saying: "Only two things are infinite, the universe and human stupidity, and I'm not sure about the former." ( <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.secure-my-internet.com/weakest_link.php">www.secure-my-internet.com</a> )<br/><br/>So install antivirus scanners, install anti-spyware applications, look into alternative browsers such as Mozilla's Firefox instead of using Internet Explorer, and last but not least always think of security implications. <br/><br/>Read more at <a href="http://www.kfwebs.net/linkcounter.php?url=http://www.secure-my-internet.com">www.secure-my-internet.com</a><br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Security</category>	<pubDate>Thu, 28 Dec 2006 15:53:24 +0100</pubDate>
       </item>
             <item>
        <title>Merry Christmas</title>
  
	<link>http://www.kfwebs.net/news/605/Merry-Christmas</link>
	<guid>http://www.kfwebs.net/news/605/Merry-Christmas</guid>
	<description><![CDATA[I want to wish all visitors a merry Christmas here from Norway, which for once isn't covered in Snow. ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: </p><p>
	I want to wish all visitors a merry Christmas here from Norway, which for once isn't covered in Snow. <br/>
	</p><p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
		<pubDate>Sun, 24 Dec 2006 16:21:03 +0100</pubDate>
       </item>
             <item>
        <title>Thieves thwart cops with crypto</title>
  
	<link>http://www.kfwebs.net/news/604/Thieves-thwart-cops-with-crypto</link>
	<guid>http://www.kfwebs.net/news/604/Thieves-thwart-cops-with-crypto</guid>
	<description><![CDATA[Although I condemn theft, it warms my heart that at least some are smart enough to implement some kind of encryption scheme for their data. <br/><br/>The ID thieves used stolen credit card numbers and created false identities to buy high-end electronics and other goods, which they then resold on eBay, prosecutors said. <br/><br/>When the gang's premises were raided by the members of the Serious and Organised Crime Agency (SOCA), Kostap was handcuffed with his hands in front of his body. He managed to leap up and flick an electrical switch that wiped databases that could have contained records of the gang's activities stretching back more than 10 years, SOCA said. (1652 chars more to read) ]]></description>
	<content:encoded><![CDATA[<p>
	Categories: <a href="http://www.kfwebs.net/news/category.php?cid=3" rel="tag">Security</a> </p><p>
	Although I condemn theft, it warms my heart that at least some are smart enough to implement some kind of encryption scheme for their data. <br/><br/>The ID thieves used stolen credit card numbers and created false identities to buy high-end electronics and other goods, which they then resold on eBay, prosecutors said. <br/><br/>When the gang's premises were raided by the members of the Serious and Organised Crime Agency (SOCA), Kostap was handcuffed with his hands in front of his body. He managed to leap up and flick an electrical switch that wiped databases that could have contained records of the gang's activities stretching back more than 10 years, SOCA said.<br/>
	</p> <p>There are 1652 chars more to read in this posting</p> <p><a href="http://www.secure-my-email.com"><img src="http://www.secure-my-email.com/images/banner-468x60-3.png" alt="secure-my-email.com When security matters" style="border: none;" /></a><br /><a href="http://www.linkedin.com/in/kristianfiskerstrand">Add to your LinkedIN.com network?</a></p>]]></content:encoded>
	<category>Security</category>	<pubDate>Tue, 19 Dec 2006 17:33:28 +0100</pubDate>
       </item>
       </channel>
</rss>

