<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Philosophically Secure</title>
	<atom:link href="http://eugk.net/wordpress/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://eugk.net/wordpress</link>
	<description>Eugene Kogan&#039;s blog on information security and software engineering</description>
	<lastBuildDate>Wed, 22 Oct 2008 23:35:08 -0400</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on Automated Web-Based Malware Behavior Analysis by eugenekogan</title>
		<link>http://eugk.net/wordpress/2008/10/21/automated-web-based-malware-behavior-analysis/comment-page-1/#comment-39195</link>
		<dc:creator>eugenekogan</dc:creator>
		<pubDate>Wed, 22 Oct 2008 23:35:08 +0000</pubDate>
		<guid isPermaLink="false">http://eugk.net/wordpress/?p=166#comment-39195</guid>
		<description>I got this comment from the presenter this morning:

Your name:     Tyler Hudak

Message:        Thanks for watching the video of my presentation! The reason I didn&#039;t show how the info is presented to the user (which comes in both the raw files generated and a tidy little HTML report) was that I was running short on time and OWASP was being VERY strict about going over at the conference (as they should). You are also correct in that its not that pretty, since its an internal-only device at this point. :)</description>
		<content:encoded><![CDATA[<p>I got this comment from the presenter this morning:</p>
<p>Your name:     Tyler Hudak</p>
<p>Message:        Thanks for watching the video of my presentation! The reason I didn&#8217;t show how the info is presented to the user (which comes in both the raw files generated and a tidy little HTML report) was that I was running short on time and OWASP was being VERY strict about going over at the conference (as they should). You are also correct in that its not that pretty, since its an internal-only device at this point. <img src='http://eugk.net/wordpress/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Django from the ground up by kevin</title>
		<link>http://eugk.net/wordpress/2008/09/26/django-from-the-ground-up/comment-page-1/#comment-31069</link>
		<dc:creator>kevin</dc:creator>
		<pubDate>Sat, 27 Sep 2008 00:30:51 +0000</pubDate>
		<guid isPermaLink="false">http://eugk.net/wordpress/?p=131#comment-31069</guid>
		<description>Thanks so much for the kind words about This Week in Django. Eric did an amazing job and has a few more casts lined up in the future. If you have any feedback regarding the site, just let us know!</description>
		<content:encoded><![CDATA[<p>Thanks so much for the kind words about This Week in Django. Eric did an amazing job and has a few more casts lined up in the future. If you have any feedback regarding the site, just let us know!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Software Reverse Engineering Tool Library by busie</title>
		<link>http://eugk.net/wordpress/2008/01/02/collaborative-rce-tool-library/comment-page-1/#comment-14737</link>
		<dc:creator>busie</dc:creator>
		<pubDate>Mon, 11 Aug 2008 09:49:46 +0000</pubDate>
		<guid isPermaLink="false">http://eugenekogan.net/wordpress/2008/01/02/collaborative-rce-tool-library/#comment-14737</guid>
		<description>i just want to know how the tool library works.we all know that with the books,there is this small sensitive wire thats inserted on the book and ifthe book is stolen the metal will triger the machine(those two posts that always by the door). with the tools i dont see that system being implemented i mean what if someone wants to borrow small tools say scribber,what does the library do to providesecurity to its property?</description>
		<content:encoded><![CDATA[<p>i just want to know how the tool library works.we all know that with the books,there is this small sensitive wire thats inserted on the book and ifthe book is stolen the metal will triger the machine(those two posts that always by the door). with the tools i dont see that system being implemented i mean what if someone wants to borrow small tools say scribber,what does the library do to providesecurity to its property?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Sandia Labs Backhacker Wins $4.3m in Court by Sephiroth</title>
		<link>http://eugk.net/wordpress/2007/02/20/sandia-labs-backhacker-wins-43m-in-court/comment-page-1/#comment-4027</link>
		<dc:creator>Sephiroth</dc:creator>
		<pubDate>Mon, 31 Mar 2008 18:10:18 +0000</pubDate>
		<guid isPermaLink="false">http://eugenekogan.net/wordpress/2007/02/20/sandia-labs-backhacker-wins-43m-in-court/#comment-4027</guid>
		<description>lol</description>
		<content:encoded><![CDATA[<p>lol</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Taking advantage of UPnP to be evil by hi</title>
		<link>http://eugk.net/wordpress/2008/01/13/taking-advantage-of-upnp-to-be-evil/comment-page-1/#comment-2706</link>
		<dc:creator>hi</dc:creator>
		<pubDate>Tue, 15 Jan 2008 20:44:29 +0000</pubDate>
		<guid isPermaLink="false">http://eugk.net/wordpress/2008/01/13/taking-advantage-of-upnp-to-be-evil/#comment-2706</guid>
		<description>eugene, you&#039;re awesome!</description>
		<content:encoded><![CDATA[<p>eugene, you&#8217;re awesome!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Apple&#8217;s less than perfect security &#8211; shocking by DeLeon</title>
		<link>http://eugk.net/wordpress/2007/03/15/apples-less-than-perfect-security-shocking/comment-page-1/#comment-31</link>
		<dc:creator>DeLeon</dc:creator>
		<pubDate>Thu, 15 Mar 2007 15:32:59 +0000</pubDate>
		<guid isPermaLink="false">http://eugenekogan.net/wordpress/2007/03/15/apples-less-than-perfect-security-shocking/#comment-31</guid>
		<description>Sure security is an issue. Sure we need to think about it. That\&#039;s one of the many reasons I chose a Macâ€”it has a smaller tighter kernel, it has less malicious exploit pressure, none of the vulnerabilities has ever been exploited successfully.</description>
		<content:encoded><![CDATA[<p>Sure security is an issue. Sure we need to think about it. That\&#8217;s one of the many reasons I chose a Macâ€”it has a smaller tighter kernel, it has less malicious exploit pressure, none of the vulnerabilities has ever been exploited successfully.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Sandia Labs Backhacker Wins $4.3m in Court by Mark Haddock</title>
		<link>http://eugk.net/wordpress/2007/02/20/sandia-labs-backhacker-wins-43m-in-court/comment-page-1/#comment-4</link>
		<dc:creator>Mark Haddock</dc:creator>
		<pubDate>Mon, 26 Feb 2007 03:24:40 +0000</pubDate>
		<guid isPermaLink="false">http://eugenekogan.net/wordpress/2007/02/20/sandia-labs-backhacker-wins-43m-in-court/#comment-4</guid>
		<description>You are missing a lot of the crucial facts of this case.  It was reported on extensively here in the local media; the Albuquerque Journal provided daily coverage of the trial.  Mr. Carpenter testified that he conducted &quot;backhacking&quot; operations regularly during his employment at Sandia, to the benefit of his employer.  He sent reports of his activities, in addition to the hacking tools that were the fruits of his labors, up the chain of command to officials at the Department of Energy.  His employer knew exactly what he was doing during the years that he was employed there.  

It was only when he found information that was stashed on a foreign server that indicated that agencies OUTSIDE of Sandia and the DOE were affected was he ordered to not do anything with the information.  Mr. Carpenter tried to find channels within Sandia to get the information to the Army and affected defense contractors, but his employer told him that they only cared about their computers.  

You might want to do some more reading on the press coverage to get all of the facts before you rush to judgment.  Do you really think that one good lawyer can push a case through the hurdles of the legal system (including the judge), and &quot;trick&quot; a jury into large punitive damages?  Don&#039;t you think that Sandia had good lawyers?  According to the new mexico courts web site, they hired three attorneys at a good firm in Albuquerque, besides the attorneys they already have on staff.  

And all of their attorneys are being paid by your tax dollars; they have a bottomless pit of money to draw from.  The real court system doesn&#039;t work like the court systems on Law and Order or other Hollywood movies.  Take some time and educate yourself about Mr. Carpenter&#039;s case, and see if you still feel the same way.</description>
		<content:encoded><![CDATA[<p>You are missing a lot of the crucial facts of this case.  It was reported on extensively here in the local media; the Albuquerque Journal provided daily coverage of the trial.  Mr. Carpenter testified that he conducted &#8220;backhacking&#8221; operations regularly during his employment at Sandia, to the benefit of his employer.  He sent reports of his activities, in addition to the hacking tools that were the fruits of his labors, up the chain of command to officials at the Department of Energy.  His employer knew exactly what he was doing during the years that he was employed there.  </p>
<p>It was only when he found information that was stashed on a foreign server that indicated that agencies OUTSIDE of Sandia and the DOE were affected was he ordered to not do anything with the information.  Mr. Carpenter tried to find channels within Sandia to get the information to the Army and affected defense contractors, but his employer told him that they only cared about their computers.  </p>
<p>You might want to do some more reading on the press coverage to get all of the facts before you rush to judgment.  Do you really think that one good lawyer can push a case through the hurdles of the legal system (including the judge), and &#8220;trick&#8221; a jury into large punitive damages?  Don&#8217;t you think that Sandia had good lawyers?  According to the new mexico courts web site, they hired three attorneys at a good firm in Albuquerque, besides the attorneys they already have on staff.  </p>
<p>And all of their attorneys are being paid by your tax dollars; they have a bottomless pit of money to draw from.  The real court system doesn&#8217;t work like the court systems on Law and Order or other Hollywood movies.  Take some time and educate yourself about Mr. Carpenter&#8217;s case, and see if you still feel the same way.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
