Archive for November, 2007

DAFT PUNK – “Technologic”

DAFT PUNK – “Technologic”


Surf it, scroll it, pose it, click it,
Cross it, crack it, twitch – update it,
Name it, rate it, tune it, print it,
Scan it, send it, fax – rename it,
Touch it, bring it, obey it, watch it,
Turn it, leave it, stop – format it.

Buy it, use it, break it, fix it,
Trash it, change it, melt – upgrade it,
Charge it, pawn it, zoom it, press it,
Snap it, work it, quick – erase it,
Write it, cut it, paste it, save it,
Load it, check it, quick – rewrite it,
Plug it, play it, burn it, rip it,
Drag and drop it, zip – unzip it,
Surf it, scroll it, pose it, click it,
Cross it, crack it, twitch – update it,
Name it, rate it, tune it, print it,
Scan it, send it, fax – rename it,
Touch it, bring it, obey it, watch it,
Turn it, leave it, stop – format it.

How true it is ;)

[1] DAFT PUNK LYRICS – Technologic [www.azlyrics.com]

Win32 Apache bundles for development?

WAMP – Windows Apache Mysql Php/Perl

After a recent discussion I have been looking into Win32 Apache bundles for home development on low end computers. There appear to be a couple of options for this one – the front runners at the moment are;

XAMPP
The distribution for Windows 98, NT, 2000, 2003, XP and Vista. This version contains: Apache, MySQL, PHP + PEAR, Perl, mod_php, mod_perl, mod_ssl, OpenSSL, phpMyAdmin, Webalizer, Mercury Mail Transport System for Win32 and NetWare Systems v3.32, Ming, JpGraph, FileZilla FTP Server, mcrypt, eAccelerator, SQLite, and WEB-DAV + mod_auth_mysql.

The Uniform Server
The Uniform Server is a WAMP package that allows you to run a server on any MS Windows OS based computer. It is small and mobile to download or move around and can also be used or setup as a production/live server. Developers also use The Uniform Server to test their applications made with either PHP, MySQL, Perl, or the Apache HTTPd Server.

Apache2Triad
Server bundle of : Apache2 , MySQL , PostgreSQL , OpenSSL , Xmail , SlimFTPd Software developing triad of : PHP , Perl and Python + Apache2TriadCP , PHPmyadmin , PHPPgAdmin , AWStats , UebiMiau , PHPXMail , PHPSFTPd. All latest stables , all manuals

WampServer
WampServer 2.0 : Apache 2.2.6, PHP 5.2.5 + PECL, SQLitemanager, MySQL 5.0.45 and Phpmyadmin

[1] Start a Webserver with PHP and MYSQL support on your home Computer (2007-Oct-27) [GeniusHackers.Com]

Firefox 2.0.0.10

Mozilla have released Firefox 2.0.0.10.

Fixed in Firefox 2.0.0.10 [1]
MFSA 2007-39 Referer-spoofing via window.location race condition
MFSA 2007-38 Memory corruption vulnerabilities (rv:1.8.1.10)
MFSA 2007-37 jar: URI scheme XSS hazard

All three vulnerabilities are rated as HIGH impact.

We strongly recommend that all Firefox users upgrade to this latest release. If you already have Firefox 2.x, you will receive an automated update notification within 24 to 48 hours. This update can also be applied manually by selecting “Check for Updates…” from the Help menu starting now. [3]

[1] Fixed in Firefox 2.0.0.10 [Mozilla]
[2] Mozilla Firefox 2.0.0.10 Release Notes [Mozilla]
[3] Firefox 2.0.0.10 stability update now available for download [Mozilla]

Apple QuickTime RTSP vulnerability

A new zero-day via Quicktime;

Apple QuickTime contains a stack buffer overflow vulnerability that may allow a remote, unauthenticated attacker to execute arbitrary code or cause a denial of service condition. [2]

There is currently no Vendor statement or work around. Probably not surprising given Apples approach to zero-days and security announcements in general.

The vulnerability is caused due to a boundary error when processing RTSP replies and can be exploited to cause a stack-based buffer overflow via a specially crafted RTSP reply containing an overly long “Content-Type” header. [3]

This is a working exploit in the wild.

There are several things you can do until this gets patched (just remember to undo them after you patch!). [4]
1) Block the RTSP protocol. Ports are 554/tcp and 6970-6999/udp.
2) Set the Killbit for Quicktime CLSID’s:
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}
{4063BE15-3B08-470D-A0D5-B37161CFFD69}

How to set the kill bit is available in MS Support Document 240797

Pending a patch from Microsoft, users are advised to restrict outbound connections on port TCP 554 using their firewalls, advice that’s probably easier to apply in corporate environments. Home users are warned to avoid any temptation to follow links to untrusted websites. [5]

[1] waiting, waiting [Apple]
[2] Apple QuickTime RTSP Content-Type header stack buffer overflow Vulnerability Note VU#659761 [US CERT]
[3] Apple QuickTime RTSP “Content-Type” Header Buffer Overflow [Secunia]
[4] Apple QuickTime 7.3 RTSP Response 0day [SANS]
[5] QuickTime streaming media exploit targets unpatched bug [The Register]
[6] Apple QuickTime RTSP Response Header Remote Stack Based Buffer Overflow Vulnerability [SecurityFocus]
[7] Apple QuickTime RTSP “Content-Type” Buffer Overflow Vulnerability [FrSIRT]

This weeks links: 2007-11-26

The 9 Most Badass Bible Verses
If the Bible had been written by King Leonidas and the rest of the Spartans from 300, it would probably read pretty much the same as it does now.
It turns out, the Bible is already chock full of ass kicking. Here are the verses that make us want to take to the streets and put some unbelievers to the sword.
Cracked
My favourite line by far is; KIDS: DON’T FUCK WITH GOD OR BEARS WILL EAT YOU

The Voice of the Underground is silenced
“Would the passenger in the red shirt pretending to read a paper, but is actually staring at that woman’s chest, please stop. You are not fooling anyone. You filthy pervert”

Top 10 Threat Predictions for 2008
As 2007 comes to a close, it’s a good time to reflect on the current threat landscape. McAfee Avert Labs has identified ten noteworthy trends that we expect to unfold in 2008.
McAfee VERT Predictions 2008 (PDF)

100 Notable Books of the Year (2007)
The Book Review has selected this list from books reviewed since the Holiday Books issue of Dec. 3, 2006. (This list will run in the Dec. 2 print edition of the Book Review.)
New York Times

Best Books of 2007
Editor’s picks, customer’s favourites … Best of 2007.
Amazon

Tips for Second Life Presentations
But on this post I’m looking at how people can step up beyond their usual real world methods when giving a presentation or talk in Second Life (SL). Now I’m not an expert on Second Life, but I have noticed a few things that work and don’t work when presenting a talk. Most of them are really simple if you think about it. — (2007-10-30) Man with no Blog

Learning 2.0 – 23 Things – Week #8

Week 8: Online Applications & Tools
# Take a look at some online productivity (word processing, spreadsheet) tools.
# Explore any site from the Web 2.0 awards list, play with it and write a blog post about your findings.

#18 Web-based Apps: They’re not just for desktops
For this discovery exercise, participants are asked to take a look at a web-based word processing tool, create a simple document and then document your discoveries in your blog.
My online word processor/spreadsheet application choice is Google Docs, I have used this on a few occasions to collaboratively prepare documents, programs, menus and catering quantity lists for Cub Scout camps.
* JUNGLE BOOK NAMES
* JOTI GEAR LIST
I don’t think the online office products are going to replace the local workstation based copies for business document creation any time soon, but I think they will take their place for social collaborative documents such as school councils, Scout groups, community organisations and the like.

#19 Discovering Web 2.0 tools
For this discovery exercise, participants are asked to select any site from this list of Web 2.0 Awards nominees and explore it. With so many to choose from, it might be handy to first select a category that interests you (like Books or Personal Organization) and then simply select a tool/site to explore. Be careful to select a tool that is Free and that doesn’t require a plug-in or download. The majority of these free, so this shouldn’t be a problem.

Twitter: Find out what other people are doing in real time. Become part of a world-wide community that keeps in touch by answering the question, “what are you doing?”

I think I’ll have a look at Twitter as it is something that I haven’t thought of as very useful, maybe it will surprise me. I’ll throw a link in here once I get an idea of how it is working ;) visibleprocrast

  • Each twit (post) is limited to 140 characters.
  • Add your Twitter feed through the WordPress.com RSS Feed Widget

I think Last.fm will be worth a look;

Let Last.fm take note of what you like to listen to and let is present you with music it thinks you’ll also enjoy. Take a look at what other people are listening to and what’s hot in the community.

[1] Learning 2.0 – The Things

Goodbye John, hello Kevin-07

“Today the Australian people have decided that we as a nation will move forward,” he said.
“To plan for the future, to prepare for the future, to embrace the future and together as Australians to unite and write a new page in our nation’s history.” — Kevin Rudd

The wash up from Australia’s first new-media election campaign, the first to be awash with online forums and new media exposure, with Google running an Australian election site and even being peripherally involved in electioneering incidents.

Coalition to lose control of Senate
PRIME Minister-elect Kevin Rudd will face a hostile Senate for his first eight months in office, with the coalition poised to block Labor legislation.
The coalition has lost its historic 39-37 Senate majority but the new Senate does not sit until July. — The Australian

The former ABC journalist Maxine McKew appears ready to unseat a prime minister;

Howard likely to lose in Bennelong
In Bennelong, where Mr Howard is battling to survive against the high-profile Labor candidate, former journalist Maxine McKew, the swing to Labor was 5.2% with 70% of votes counted. Mr Howard’s buffer of 4.1% appeared set to be eclipsed. — The Age

The exit polls from yesterday’s election would indicate that Mr Howard’s decision to hang onto the prime ministership last year may have played a major factor in his government’s defeat.news.com.au

I guess when your Coalition partners have taken over your conservative position, you’re looking at a problem;

Nationals set for record low
It seems federal Nationals leader Mark Vaile has failed to stem the decline of his party in yesterday’s federal election.
The Nationals could wind up with just 10 seats in the Parliament, the lowest number they have held.
ABC News

The other damage from election eve is the total wipe-out of the Democrat vote;

Party on brink of collapse
THE Australian Democrats look set to be cast into the political wilderness as the party leader and deputy were tipped to lose their seats.
With more than 50 per cent of the primary vote counted late last night, ABC analysts said the two serving Democrat senators had been beaten on preferences. — Herald Sun

Citizen Journalism
Throwing out a challenge to the established press, new political commentary stars have emerged Possum, LP and Poll Bludger. Of course when Caroline Overington (The Australian) sets the tone we shouldn’t be surprised.

“I take full responsibility for this campaign and I therefore accept full reponsibility for the defeat in this election” — John Howard

Australian 2007 Election online

Phil did thus write unto the masses;

Go to Google Maps at maps.google.com.au then select “My Maps” from the tab near the top-left. From that you can select “Australian 2007 Election” and while away the day learning many things, such as which seats are held by whom and with what percentage.
Unfortunately perhaps the greatest thing you’ll learn from the exercise is to be patient as it takes a long time for the page to finish loading completely. Apart from that problem, it’s a very cool use of technology.

gmap-elections1.jpg

What else do we have available?

Add our special Australian election content to Google Maps. Find your electorate, read your seat’s profile, locate a convenient polling booth, see your seat in satellite view, explore marginal seats, view candidates and much more.Google

Add the electorate layer* (KMZ) to your Google Earth

*This product incorporates data that is copyright © Commonwealth of Australia (Australian Electoral Commission) 2007.

[1] 2007 Australian Federal Election [Google]
[2] How to use Google’s Election Products [YouTube]
[3] australiavotes (channel) [YouTube]
[4] 2007 Federal Election [ABC news]

Is that a Core or Non-Core No?

worth_voting_for.jpg

quality.jpg

[1] Voting to restore the decent values Australia once held dear (2007-Nov-20) — Malcolm Fraser [The Age]
[2] The PM continues to misrepresent the truth. He must go (2007-Nov-21) — Bob Hawke [The Age]
[3] Australia has lost its moral compass under Howard’s rule (2007-Nov-22) — Paul Keating [The Age]

Comparing the HP6710b and HP2510p laptops

Looking for a light weight laptop to fit into our SOE laptop lineup. Comparing the hp6710b and hp2510p laptops;

Comparing the hp6710b and hp2510p laptops

Comparing the hp6710b and hp2510p laptops

The HP6710b is our standard SOE laptop the HP2510p is half the size and half the weight, for this it takes a power and usability hit – this laptop will not be a desktop replacement.

SPEC		6710b	2510p
Weight(kg)	2.59	1.29
HDMax(GB)	120	80
MemMax(GB)	4	2
FrontBus(MHz)	800	533
Processor	T7100	U7600
Processor(GHz)	1.80	1.20 
Display(in)	15.4	12.1
USB2.0(No.)	4	2

November 2007
M T W T F S S
« Oct   Dec »
 1234
567891011
12131415161718
19202122232425
2627282930  

Categories

del.icio.us

Flickr Photos

LaserForce

Birthday Dragon

Birthday Dragon

Birthday Dragon

Birthday Dragon

New Bow

Day 10 | stars | #FMSphotoadayMAY 2013

2013 Mother's Day Classic

More Photos

Twittering

Cluster Map


Follow

Get every new post delivered to your Inbox.

Join 27 other followers