<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>(A)bort, (R)etry, (I)gnore: Perspectives on Information Security &#187; Current Events</title>
	<atom:link href="http://freshdefense.net/blog/index.php/category/currentevents/feed/" rel="self" type="application/rss+xml" />
	<link>http://freshdefense.net/blog</link>
	<description>Perspectives on Information Security and Intrusion Defense</description>
	<lastBuildDate>Thu, 02 Feb 2012 22:08:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Nexus holders smuggle (surprised?)</title>
		<link>http://freshdefense.net/blog/2011/07/19/nexus-holders-smuggle-surprised/</link>
		<comments>http://freshdefense.net/blog/2011/07/19/nexus-holders-smuggle-surprised/#comments</comments>
		<pubDate>Tue, 19 Jul 2011 21:54:59 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=257</guid>
		<description><![CDATA[http://www.cbc.ca/news/canada/british-columbia/story/2011/07/18/bc-nexus-pass-smuggling-border.html?ref=rss &#8220;I&#8217;m shocked; shocked to discover gambling in this establishment!&#8221; If you mark people as trusted, some of them will take advantage. It&#8217;s human nature. And the answer isn&#8217;t more enforcement. If your protective trade tariffs and domestic prices are much too high, people will shop elsewhere. And you can catch people buying engagement rings, [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2011/07/19/nexus-holders-smuggle-surprised/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Futility of Physical Security Measures</title>
		<link>http://freshdefense.net/blog/2011/06/18/the-futility-of-physical-security-measures/</link>
		<comments>http://freshdefense.net/blog/2011/06/18/the-futility-of-physical-security-measures/#comments</comments>
		<pubDate>Sat, 18 Jun 2011 19:07:46 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[General Post]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=253</guid>
		<description><![CDATA[I recently made and posted a Youtube video of my 2 year old son getting a pat down at airport security. I figured I should provide a few words of context here to clarify my intent and the circumstances surrounding the video &#8212; and what security lessons we should draw from this incident and others [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2011/06/18/the-futility-of-physical-security-measures/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BestBuy (and others) Disclose My Email Addr</title>
		<link>http://freshdefense.net/blog/2011/04/04/bestbuy-discloses-my-email-addr/</link>
		<comments>http://freshdefense.net/blog/2011/04/04/bestbuy-discloses-my-email-addr/#comments</comments>
		<pubDate>Mon, 04 Apr 2011 22:19:29 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Complaints]]></category>
		<category><![CDATA[Current Events]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=244</guid>
		<description><![CDATA[Update 5 April 2011: This is a big story. A big IT services FAIL: http://www.cbc.ca/news/business/story/2011/04/05/business-data-breach.html?ref=rss I&#8217;m getting ready for the wave of spam. BestBuy&#8217;s direct email service (i.e., legitimate spam) was hacked and the attackers got real, live email addresses: http://www.thestreet.com/story/11070689/1/retailers-victims-of-e-mail-hackers.html?CM_VEN=AD&#124;TWR&#124;JC On the one hand, this is no big deal. On the other, it&#8217;s kind [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2011/04/04/bestbuy-discloses-my-email-addr/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>An Independent Internet: The Cloud Won&#8217;t Save You</title>
		<link>http://freshdefense.net/blog/2010/12/03/an-independent-internet-the-cloud-wont-save-you/</link>
		<comments>http://freshdefense.net/blog/2010/12/03/an-independent-internet-the-cloud-wont-save-you/#comments</comments>
		<pubDate>Fri, 03 Dec 2010 22:10:10 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=213</guid>
		<description><![CDATA[Sad story about influence on wikileaks&#8217;s ability to distribute content (see link below). Wikileaks runs into two problems: government pressure against companies providing hosting or directory services to wikileaks material &#8220;market&#8221; pressure arising from DDoS attack against shared infrastructure that has enough collateral damage to force the infrastructure owner to stop providing hosting or directory [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/12/03/an-independent-internet-the-cloud-wont-save-you/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Lax Institutional Cybersecurity Bites UNC Cancer Researcher</title>
		<link>http://freshdefense.net/blog/2010/10/13/lax-institutional-cybersecurity-bites-unc-cancer-researcher/</link>
		<comments>http://freshdefense.net/blog/2010/10/13/lax-institutional-cybersecurity-bites-unc-cancer-researcher/#comments</comments>
		<pubDate>Wed, 13 Oct 2010 16:39:14 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[cancer]]></category>
		<category><![CDATA[PII]]></category>
		<category><![CDATA[UNC]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=211</guid>
		<description><![CDATA[http://chronicle.com/article/Chapel-Hill-Researcher-Fights/124821/ The article is fairly sympathetic to her (Bonnie C. Yankaskas, Ph.D.) plight; if those are substantially the facts as reported, this looks like an administration undertaking C-Y-A security measures. Can a non-specialist, even as PI of the project, be blamed for not following &#8220;best practices&#8221; when most best practices are (1) ill-defined and (2) [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/10/13/lax-institutional-cybersecurity-bites-unc-cancer-researcher/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Using GPS to Violate the 4th Amendment</title>
		<link>http://freshdefense.net/blog/2010/08/25/gps4th/</link>
		<comments>http://freshdefense.net/blog/2010/08/25/gps4th/#comments</comments>
		<pubDate>Wed, 25 Aug 2010 18:42:26 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[Editorial]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=194</guid>
		<description><![CDATA[Threats to privacy exist in a number of forms. What is interesting about the following case is that the government is using the prosecution of someone who is probably guilty of breaking drug laws as a vehicle to expand its surveillance powers over law-abiding citizens. This is akin to the story of the motorcyclist in [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/08/25/gps4th/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Shutting Down the Internet</title>
		<link>http://freshdefense.net/blog/2010/07/08/shutting-down-the-internet/</link>
		<comments>http://freshdefense.net/blog/2010/07/08/shutting-down-the-internet/#comments</comments>
		<pubDate>Thu, 08 Jul 2010 05:16:27 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[Editorial]]></category>
		<category><![CDATA[Technical Article]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[internet shutdown]]></category>
		<category><![CDATA[ISP]]></category>
		<category><![CDATA[politifact]]></category>
		<category><![CDATA[routing]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=169</guid>
		<description><![CDATA[I was recently cited, among others (including Sal Stolfo and Chris Kruegel), for a Politifact article by Lukas Pleva on whether it was possible for private industry to shut down the Internet as a protection measure during some large-scale cyber attack with or without some form of government involvement: The article is here: Glenn Beck [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/07/08/shutting-down-the-internet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SISMAT 2010 Seminar and Infosec Education Funding</title>
		<link>http://freshdefense.net/blog/2010/07/03/sismat-2010-seminar-and-infosec-education-funding/</link>
		<comments>http://freshdefense.net/blog/2010/07/03/sismat-2010-seminar-and-infosec-education-funding/#comments</comments>
		<pubDate>Sat, 03 Jul 2010 14:59:54 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[General Post]]></category>
		<category><![CDATA[dartmouth]]></category>
		<category><![CDATA[hacker curriculum]]></category>
		<category><![CDATA[hanover]]></category>
		<category><![CDATA[SISMAT]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=171</guid>
		<description><![CDATA[I recently spent 11 days in Hanover, NH at Dartmouth College leading the SISMAT (Secure Information Systems Mentoring and Training) summer seminar. This seminar is one part of a comprehensive training, job, and research program for undergraduates. Students go on to an internship in information security and then a follow-on research project at their home [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/07/03/sismat-2010-seminar-and-infosec-education-funding/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ethical Vulnerability Disclosure (+mediacircus)</title>
		<link>http://freshdefense.net/blog/2010/06/17/ethical-vulnerability-disclosure-mediacircus/</link>
		<comments>http://freshdefense.net/blog/2010/06/17/ethical-vulnerability-disclosure-mediacircus/#comments</comments>
		<pubDate>Fri, 18 Jun 2010 03:11:40 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[dailydave]]></category>
		<category><![CDATA[disclosure]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=166</guid>
		<description><![CDATA[Today there was a meaty post (on the longish side, but worth it) on the DailyDave mailing list about ethical disclosure of vulnerabilities with respect to a recent Microsoft vulnerability. http://lists.immunitysec.com/pipermail/dailydave/2010-June/006130.html Juicy tidbit: &#8220;So since most researchers in the security community have had their spines and sense of justice/fairness contractually removed by their respective employers, [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/06/17/ethical-vulnerability-disclosure-mediacircus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>US Cybersecurity Research Agenda</title>
		<link>http://freshdefense.net/blog/2010/05/28/us-cybersecurity-research-agenda/</link>
		<comments>http://freshdefense.net/blog/2010/05/28/us-cybersecurity-research-agenda/#comments</comments>
		<pubDate>Fri, 28 May 2010 15:20:17 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Current Events]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[research agenda]]></category>
		<category><![CDATA[USA]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=162</guid>
		<description><![CDATA[Intelligent comments desired: http://cybersecurity.nitrd.gov/ http://www.whitehouse.gov/blog/2010/05/19/help-change-game-cybersecurity]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/05/28/us-cybersecurity-research-agenda/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Can Computer Code &#8220;Infect&#8221; Human Organisms?</title>
		<link>http://freshdefense.net/blog/2010/05/28/can-computer-code-infect-human-organisms/</link>
		<comments>http://freshdefense.net/blog/2010/05/28/can-computer-code-infect-human-organisms/#comments</comments>
		<pubDate>Fri, 28 May 2010 14:36:00 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Complaints]]></category>
		<category><![CDATA[Current Events]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=158</guid>
		<description><![CDATA[Recently, this story about a researcher &#8220;infecting&#8221; himself with a computer virus has made headlines in all sorts of computer press (e.g., Techworld, Slashdot, and Financial Times &#8212; this last via ACM Technews). The MSN article states: &#8220;University of Reading researcher Mark Gasson has become the first human known to be infected by a computer [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2010/05/28/can-computer-code-infect-human-organisms/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DHS Hiring Spree</title>
		<link>http://freshdefense.net/blog/2009/12/14/dhs-hiring-spree/</link>
		<comments>http://freshdefense.net/blog/2009/12/14/dhs-hiring-spree/#comments</comments>
		<pubDate>Mon, 14 Dec 2009 23:57:45 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[Editorial]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=117</guid>
		<description><![CDATA[The DHS is indeed committing to hiring 1000 clearable US citizens over the next three years. If you&#8217;re interested, you can &#8220;attend&#8221; their cyber job fair: http://www.dhs.gov/xabout/careers/cyberjobfair They are looking to fill these types of roles: Cyber Incident Response Vulnerability Detection and Assessment Networks and Systems Engineering Cyber Risk and Strategic Analysis Intelligence and Investigation [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2009/12/14/dhs-hiring-spree/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Information Considered Harmful</title>
		<link>http://freshdefense.net/blog/2009/12/09/information-considered-harmful/</link>
		<comments>http://freshdefense.net/blog/2009/12/09/information-considered-harmful/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 05:19:49 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=112</guid>
		<description><![CDATA[It looks like a manual containing information about TSA screening procedures has been posted to the web (with yet more poor redaction &#8212; will they never learn? Actually, software vendors should really improve their redaction function to eliminate all versions of sensitive info from the given file, and prove it to the user). http://us.cnn.com/2009/TRAVEL/12/08/u.s.tsa.training.manual/index.html Although [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2009/12/09/information-considered-harmful/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Deriving Intent From Biometrics</title>
		<link>http://freshdefense.net/blog/2009/11/01/deriving-intent-from-biometrics/</link>
		<comments>http://freshdefense.net/blog/2009/11/01/deriving-intent-from-biometrics/#comments</comments>
		<pubDate>Sun, 01 Nov 2009 08:02:29 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[Editorial]]></category>
		<category><![CDATA[biometrics]]></category>
		<category><![CDATA[HCR-20]]></category>
		<category><![CDATA[intent]]></category>
		<category><![CDATA[profiling]]></category>
		<category><![CDATA[TSA]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=103</guid>
		<description><![CDATA[Biometrics as a measure of intent dates at least to the polygraph. Humans often do have physical reactions to stress, but does this kind of system employed as a filter for further screening really buy us much safety? In the name of finding terrorists before they board an airplane, the TSA has adopted a number [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2009/11/01/deriving-intent-from-biometrics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Demand for a Cybersecurity Workforce</title>
		<link>http://freshdefense.net/blog/2009/10/26/demand-for-a-cybersecurity-workforce/</link>
		<comments>http://freshdefense.net/blog/2009/10/26/demand-for-a-cybersecurity-workforce/#comments</comments>
		<pubDate>Mon, 26 Oct 2009 21:35:01 +0000</pubDate>
		<dc:creator>xoren</dc:creator>
				<category><![CDATA[Current Events]]></category>
		<category><![CDATA[Editorial]]></category>

		<guid isPermaLink="false">http://freshdefense.net/blog/?p=100</guid>
		<description><![CDATA[This recent Washington Post article highlights the competition between DHS and NSA in their publically stated goals of hiring 1000 to 3000 new cybersecurity professionals per year over the next few years. I find it extremely doubtful that this level of expertise even exists. The sum total of &#8220;real&#8221; cybersecurity expertise (in terms of deep [...]]]></description>
		<wfw:commentRss>http://freshdefense.net/blog/2009/10/26/demand-for-a-cybersecurity-workforce/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.487 seconds -->

