<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Newsletter #435 Preview: The Night Owl Examines the Great Mac Security Fraud</title>
	<atom:link href="http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/</link>
	<description>Tech Commentaries From Best-Selllng Author Gene Steinberg</description>
	<lastBuildDate>Wed, 17 Mar 2010 21:43:41 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<item>
		<title>By: Bruno Dexter</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9844</link>
		<dc:creator>Bruno Dexter</dc:creator>
		<pubDate>Mon, 31 Mar 2008 19:39:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9844</guid>
		<description>If a x-over cable was used (and I believe on the 2nd day it was) than the &quot;test&quot; was a poor example of a security breach.
I say hack it under real world conditions or shut up.  Just because I&#039;m an ace at flight simulator doesn&#039;t mean I&#039;m ready to fly for a commercial airliner.</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/safari.png' title='Safari 525.13' style='border:0px;' alt='Safari 525.13'/> <a href='http://www.apple.com/safari/' title='Safari 525.13' rel='nofollow'>Safari 525.13</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/mac.png' title='Mac OS' style='border:0px;' alt='Mac OS'/> Mac OS <p>If a x-over cable was used (and I believe on the 2nd day it was) than the &#8220;test&#8221; was a poor example of a security breach.<br />
I say hack it under real world conditions or shut up.  Just because I&#8217;m an ace at flight simulator doesn&#8217;t mean I&#8217;m ready to fly for a commercial airliner.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gene Steinberg</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9843</link>
		<dc:creator>Gene Steinberg</dc:creator>
		<pubDate>Mon, 31 Mar 2008 19:09:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9843</guid>
		<description>&lt;blockquote&gt;Part of the contest rules required it to be a new, non-public vulnerability. So, no using old vulnerabilities on Windows. The contest did not require that you develop the hack on the spot though.&lt;/blockquote&gt;

And how much lead time did they have to prepare to unearth that &quot;non-public vulnerability&quot;?

Peace,
Gene</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/safari.png' title='Safari 525.16' style='border:0px;' alt='Safari 525.16'/> <a href='http://www.apple.com/safari/' title='Safari 525.16' rel='nofollow'>Safari 525.16</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/mac.png' title='Mac OS' style='border:0px;' alt='Mac OS'/> Mac OS <blockquote><p>Part of the contest rules required it to be a new, non-public vulnerability. So, no using old vulnerabilities on Windows. The contest did not require that you develop the hack on the spot though.</p></blockquote>
<p>And how much lead time did they have to prepare to unearth that &#8220;non-public vulnerability&#8221;?</p>
<p>Peace,<br />
Gene</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9842</link>
		<dc:creator>Ben</dc:creator>
		<pubDate>Mon, 31 Mar 2008 19:01:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9842</guid>
		<description>Part of the contest rules required it to be a new, non-public vulnerability. So, no using old vulnerabilities on Windows. The contest did not require that you develop the hack on the spot though.</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/firefox.png' title='Firefox 2.0.0.13' style='border:0px;' alt='Firefox 2.0.0.13'/> <a href='http://mozilla.org' title='Firefox 2.0.0.13' rel='nofollow'>Firefox 2.0.0.13</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/win.png' title='Windows XP' style='border:0px;' alt='Windows XP'/> Windows XP<p>Part of the contest rules required it to be a new, non-public vulnerability. So, no using old vulnerabilities on Windows. The contest did not require that you develop the hack on the spot though.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gene Steinberg</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9832</link>
		<dc:creator>Gene Steinberg</dc:creator>
		<pubDate>Mon, 31 Mar 2008 16:09:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9832</guid>
		<description>&lt;blockquote&gt;But doesn&#039;t Vista have many known vulnerabilities also? Why couldn&#039;t they exploit those as quickly as the Mac?&lt;/blockquote&gt;

Because that won&#039;t get you front page headlines :)

You know that Windows can be exploited. They&#039;ve been there, done that.

Peace,
Gene</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/safari.png' title='Safari 525.16' style='border:0px;' alt='Safari 525.16'/> <a href='http://www.apple.com/safari/' title='Safari 525.16' rel='nofollow'>Safari 525.16</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/mac.png' title='Mac OS' style='border:0px;' alt='Mac OS'/> Mac OS <blockquote><p>But doesn&#8217;t Vista have many known vulnerabilities also? Why couldn&#8217;t they exploit those as quickly as the Mac?</p></blockquote>
<p>Because that won&#8217;t get you front page headlines <img src='http://www.technightowl.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>You know that Windows can be exploited. They&#8217;ve been there, done that.</p>
<p>Peace,<br />
Gene</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: slappy</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9831</link>
		<dc:creator>slappy</dc:creator>
		<pubDate>Mon, 31 Mar 2008 16:07:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9831</guid>
		<description>But doesn&#039;t Vista have many known vulnerabilities also? Why couldn&#039;t they exploit those as quickly as the Mac?</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/safari.png' title='Safari 525.13' style='border:0px;' alt='Safari 525.13'/> <a href='http://www.apple.com/safari/' title='Safari 525.13' rel='nofollow'>Safari 525.13</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/mac.png' title='Mac OS' style='border:0px;' alt='Mac OS'/> Mac OS <p>But doesn&#8217;t Vista have many known vulnerabilities also? Why couldn&#8217;t they exploit those as quickly as the Mac?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mathue</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9829</link>
		<dc:creator>mathue</dc:creator>
		<pubDate>Mon, 31 Mar 2008 15:52:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9829</guid>
		<description>&quot;Thus the original $20,000 price went unclaimed.&quot;

price,

Prize?</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/safari.png' title='Safari 525.13' style='border:0px;' alt='Safari 525.13'/> <a href='http://www.apple.com/safari/' title='Safari 525.13' rel='nofollow'>Safari 525.13</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/mac.png' title='Mac OS' style='border:0px;' alt='Mac OS'/> Mac OS <p>&#8220;Thus the original $20,000 price went unclaimed.&#8221;</p>
<p>price,</p>
<p>Prize?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gonzo</title>
		<link>http://www.technightowl.com/2008/03/newsletter-435-preview-the-night-owl-examines-the-great-mac-security-fraud/comment-page-1/#comment-9827</link>
		<dc:creator>Gonzo</dc:creator>
		<pubDate>Mon, 31 Mar 2008 14:54:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.macnightowl.com/?p=908#comment-9827</guid>
		<description>As I understand the article, it was a vulnerability that was already known to him. Since they weren&#039;t able to penetrate any of the systems on the first day, they were then able to direct the operator of the system to certain websites (as I also understand the article, they never had &quot;direct access&quot; (i.e. hands on the device), just access to the systems over a closed network). Since he already knew about the Safari vulnerability, he had a site already setup to exploit it. That&#039;s how he was able to penetrate the system so quickly.</description>
		<content:encoded><![CDATA[ <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/net/firefox.png' title='Firefox 2.0.0.13' style='border:0px;' alt='Firefox 2.0.0.13'/> <a href='http://mozilla.org' title='Firefox 2.0.0.13' rel='nofollow'>Firefox 2.0.0.13</a>  <img src='http://www.technightowl.com/wp-content/plugins/useragent-spy/img/16/os/win.png' title='Windows Vista' style='border:0px;' alt='Windows Vista'/> Windows Vista<p>As I understand the article, it was a vulnerability that was already known to him. Since they weren&#8217;t able to penetrate any of the systems on the first day, they were then able to direct the operator of the system to certain websites (as I also understand the article, they never had &#8220;direct access&#8221; (i.e. hands on the device), just access to the systems over a closed network). Since he already knew about the Safari vulnerability, he had a site already setup to exploit it. That&#8217;s how he was able to penetrate the system so quickly.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
