<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Open Source Security</title>
	<atom:link href="http://www.ratliff.net/blog/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ratliff.net/blog</link>
	<description>A blog about open source and security and open source security</description>
	<lastBuildDate>Tue, 05 Jul 2011 15:59:08 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>Comment on Metasploit Training by Raphael Mudge by Matthias Buchner</title>
		<link>http://www.ratliff.net/blog/2011/06/28/metasploit-training-by-raphael-mudge/comment-page-1/#comment-4021</link>
		<dc:creator>Matthias Buchner</dc:creator>
		<pubDate>Tue, 05 Jul 2011 15:59:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=337#comment-4021</guid>
		<description>I also posted on my blog about the training. I made a screencast of the lab that you will be able to find there.

http://codebazaar.blogspot.com/2011/06/introduction-to-metasploit-and-armitage.html</description>
		<content:encoded><![CDATA[<p>I also posted on my blog about the training. I made a screencast of the lab that you will be able to find there.</p>
<p><a href="http://codebazaar.blogspot.com/2011/06/introduction-to-metasploit-and-armitage.html" rel="nofollow">http://codebazaar.blogspot.com/2011/06/introduction-to-metasploit-and-armitage.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Gnome 3 by Emily Ratliff</title>
		<link>http://www.ratliff.net/blog/2011/06/22/gnome-3/comment-page-1/#comment-4004</link>
		<dc:creator>Emily Ratliff</dc:creator>
		<pubDate>Wed, 22 Jun 2011 16:26:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=326#comment-4004</guid>
		<description>Apparently, the graphics driver for my virtual machine is insufficient, so when I first log on to a newly installed Fedora 15 it frowns at me and throws the error message that it is going into fallback mode. This will create a lasting impression.</description>
		<content:encoded><![CDATA[<p>Apparently, the graphics driver for my virtual machine is insufficient, so when I first log on to a newly installed Fedora 15 it frowns at me and throws the error message that it is going into fallback mode. This will create a lasting impression.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Security Apocalypse by pIrlanta</title>
		<link>http://www.ratliff.net/blog/2011/06/08/security-apocalypse/comment-page-1/#comment-4001</link>
		<dc:creator>pIrlanta</dc:creator>
		<pubDate>Sat, 18 Jun 2011 07:14:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=319#comment-4001</guid>
		<description>hackers always win the battle. simple math: 100000 hackers vs 1 firewall :) who win ? :)))</description>
		<content:encoded><![CDATA[<p>hackers always win the battle. simple math: 100000 hackers vs 1 firewall <img src='http://www.ratliff.net/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  who win ? <img src='http://www.ratliff.net/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ))</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Weak passwords – curable with pam_cracklib by p?rlanta</title>
		<link>http://www.ratliff.net/blog/2009/04/12/weak-passwords-%e2%80%93-curable-with-pam_cracklib/comment-page-1/#comment-4000</link>
		<dc:creator>p?rlanta</dc:creator>
		<pubDate>Sat, 18 Jun 2011 07:12:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=125#comment-4000</guid>
		<description>lol evaletleri :) i use q1w2e3r4t5 too :)</description>
		<content:encoded><![CDATA[<p>lol evaletleri <img src='http://www.ratliff.net/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  i use q1w2e3r4t5 too <img src='http://www.ratliff.net/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Security Apocalypse by Emily Ratliff</title>
		<link>http://www.ratliff.net/blog/2011/06/08/security-apocalypse/comment-page-1/#comment-3994</link>
		<dc:creator>Emily Ratliff</dc:creator>
		<pubDate>Sun, 12 Jun 2011 03:36:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=319#comment-3994</guid>
		<description>IMF - hacked
http://www.reuters.com/article/2011/06/12/imf-cyberattack-idUSN119943120110612</description>
		<content:encoded><![CDATA[<p>IMF &#8211; hacked<br />
<a href="http://www.reuters.com/article/2011/06/12/imf-cyberattack-idUSN119943120110612" rel="nofollow">http://www.reuters.com/article/2011/06/12/imf-cyberattack-idUSN119943120110612</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Security Apocalypse by Emily Ratliff</title>
		<link>http://www.ratliff.net/blog/2011/06/08/security-apocalypse/comment-page-1/#comment-3992</link>
		<dc:creator>Emily Ratliff</dc:creator>
		<pubDate>Thu, 09 Jun 2011 12:59:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=319#comment-3992</guid>
		<description>Citibank - hacked
http://www.theregister.co.uk/2011/06/09/citibank_hack_attack/</description>
		<content:encoded><![CDATA[<p>Citibank &#8211; hacked<br />
<a href="http://www.theregister.co.uk/2011/06/09/citibank_hack_attack/" rel="nofollow">http://www.theregister.co.uk/2011/06/09/citibank_hack_attack/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Weak passwords – curable with pam_cracklib by evaletleri</title>
		<link>http://www.ratliff.net/blog/2009/04/12/weak-passwords-%e2%80%93-curable-with-pam_cracklib/comment-page-1/#comment-3991</link>
		<dc:creator>evaletleri</dc:creator>
		<pubDate>Sat, 04 Jun 2011 08:43:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=125#comment-3991</guid>
		<description>:) qwerty and q1w2e3r4t5 is my favorite</description>
		<content:encoded><![CDATA[<p> <img src='http://www.ratliff.net/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  qwerty and q1w2e3r4t5 is my favorite</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Bin Laden&#8217;s Computer by johann</title>
		<link>http://www.ratliff.net/blog/2011/05/04/bin-ladens-computer/comment-page-1/#comment-3975</link>
		<dc:creator>johann</dc:creator>
		<pubDate>Fri, 20 May 2011 14:41:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=315#comment-3975</guid>
		<description>It didn&#039;t seem they were that security saavy. One report I read their email security was essentially Osama writing orders out to a document, storing it on a usb key, and then having a courier go to an internet cafe and email out information from the usb key. 

With ways to integrate encryption to gmail, through greasemonkey scripts and things like TOR one could create a much more secure network if one were so inclined. 

Though I think TOR was just compromised with some honeypot exit nodes.</description>
		<content:encoded><![CDATA[<p>It didn&#8217;t seem they were that security saavy. One report I read their email security was essentially Osama writing orders out to a document, storing it on a usb key, and then having a courier go to an internet cafe and email out information from the usb key. </p>
<p>With ways to integrate encryption to gmail, through greasemonkey scripts and things like TOR one could create a much more secure network if one were so inclined. </p>
<p>Though I think TOR was just compromised with some honeypot exit nodes.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Bare Metal Versus Hosted Hypervisor Security by Klaus Heinrich Kiwi</title>
		<link>http://www.ratliff.net/blog/2010/08/09/bare-metal-versus-hosted-hypervisor-security/comment-page-1/#comment-3918</link>
		<dc:creator>Klaus Heinrich Kiwi</dc:creator>
		<pubDate>Wed, 18 Aug 2010 15:12:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=305#comment-3918</guid>
		<description>Hey George,
 I completely agree.

Network port sharing with bridges, as a simple example, should be clearly part of the TCB and is often done in a privileged guest in Type I hypervisors.

Speaking of which, I guess this whole concept of &quot;privileged guest&quot; that is common among Type I hypervisors must be taken into account when looking into virtualization security.

And also the fact that &quot;bare metal&quot; hypervisors doesn&#039;t necessarily mean it&#039;s a thinner layer.</description>
		<content:encoded><![CDATA[<p>Hey George,<br />
 I completely agree.</p>
<p>Network port sharing with bridges, as a simple example, should be clearly part of the TCB and is often done in a privileged guest in Type I hypervisors.</p>
<p>Speaking of which, I guess this whole concept of &#8220;privileged guest&#8221; that is common among Type I hypervisors must be taken into account when looking into virtualization security.</p>
<p>And also the fact that &#8220;bare metal&#8221; hypervisors doesn&#8217;t necessarily mean it&#8217;s a thinner layer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Cryptographic Snake Oil by Snake-oil security claims on crypto security product at Playhouse of privacy, security, hacking, encryption, intelligence and some business stuff</title>
		<link>http://www.ratliff.net/blog/2009/05/27/cryptographic-snake-oil/comment-page-1/#comment-3912</link>
		<dc:creator>Snake-oil security claims on crypto security product at Playhouse of privacy, security, hacking, encryption, intelligence and some business stuff</dc:creator>
		<pubDate>Mon, 19 Jul 2010 20:35:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.ratliff.net/blog/?p=184#comment-3912</guid>
		<description>[...] can see this very good Cryptographic Snake Oil Examples by Emility Ratliff (IBM Architect at Linux Security), that tried to make clear example on how to [...]</description>
		<content:encoded><![CDATA[<p>[...] can see this very good Cryptographic Snake Oil Examples by Emility Ratliff (IBM Architect at Linux Security), that tried to make clear example on how to [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

