<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>YISTA &#187; Security</title>
	<atom:link href="http://yista.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://yista.com</link>
	<description>Yah, I Saw That Already</description>
	<lastBuildDate>Sun, 19 Sep 2010 16:26:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>New Tech Defined: DNSSEC</title>
		<link>http://yista.com/2009/05/04/new-tech-defined-dnssec/</link>
		<comments>http://yista.com/2009/05/04/new-tech-defined-dnssec/#comments</comments>
		<pubDate>Tue, 05 May 2009 03:14:52 +0000</pubDate>
		<dc:creator>George Burnett</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[DNS]]></category>

		<guid isPermaLink="false">http://yista.com/?p=417</guid>
		<description><![CDATA[What is DNSSEC? DNSSEC (short for DNS Security Extensions) adds security to the Domain Name System. DNSSEC was designed to protect the Internet from certain attacks, such as DNS cache poisoning (discovered by Dan Kaminsky). It is a set of extensions to DNS, which provide: [...]]]></description>
			<content:encoded><![CDATA[<p><strong>What is DNSSEC?</strong></p>
<p><strong>DNSSEC</strong> (short for <strong>DNS Security Extensions</strong>) adds security     to the <a href="http://en.wikipedia.org/wiki/Domain_Name_System">Domain Name System</a>.<strong> </strong>DNSSEC was designed to protect the Internet     from certain attacks, such as DNS cache poisoning (<a href="http://www.doxpara.com/?p=1204">discovered by Dan Kaminsky</a>). It is a set of extensions to DNS, which     provide: a) origin authentication of DNS data, b) data integrity, and c)     authenticated denial of existence.</p>
<p>These mechanisms require changes to the <a href="http://www.bind9.net/rfc">DNS protocol</a>. DNSSEC adds four     new resource record types: Resource Record Signature (RRSIG), DNS Public     Key (DNSKEY), Delegation Signer (DS), and Next Secure (NSEC). These new     RRs are described in detail in <a href="http://www.rfc-archive.org/getrfc.php?rfc=4034" target="rfc4034">RFC 4034</a>.</p>
<p>DNSSEC services protect against most of the threats to the Domain Name System. There are several distinct classes of <a href="http://www.dnssec.net/dns-threats">threats</a> to the Domain Name System,     most of which are DNS-related instances of more general problems, but a     few of which are specific to peculiarities of the DNS protocol.</p>
<p>Note that <strong>DNSSEC</strong> <span style="text-decoration: underline;">does not</span> provide confidentiality of data.  Also, <strong>DNSSEC</strong> <span style="text-decoration: underline;">does not</span> protect against <a href="http://ddos-mitigation.org/">DDoS Attacks</a>.</p>
<p>For more details introductory information on DNSSEC <a href="http://www.rfc-archive.org/getrfc.php?rfc=4033">go here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://yista.com/2009/05/04/new-tech-defined-dnssec/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Top Internet Threats</title>
		<link>http://yista.com/2009/03/21/top-internet-threats/</link>
		<comments>http://yista.com/2009/03/21/top-internet-threats/#comments</comments>
		<pubDate>Sun, 22 Mar 2009 05:52:15 +0000</pubDate>
		<dc:creator>George Burnett</dc:creator>
				<category><![CDATA[Networking]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Internet]]></category>

		<guid isPermaLink="false">http://yista.com/?p=412</guid>
		<description><![CDATA[The internet is filled with threats real and imagined, from malicious hackers to government censors. Beyond the hacks and cracks — and in celebration of Sunshine Week — we&#8217;ve compiled a brief list of some of the biggest public and private threats facing the internet. [...]]]></description>
			<content:encoded><![CDATA[<p><img style="border: 0pt none; margin: 0px 0px 5px 5px; float: right;" title="Threatstory" src="http://blog.wired.com/27bstroke6/images/2009/03/19/threatstory.jpeg" border="0" alt="Data Center" width="350" height="208" /> The internet is filled with threats real and imagined, from malicious hackers to government censors.</p>
<p>Beyond the <a href="http://blog.wired.com/27bstroke6/hacks_and_cracks/index.html">hacks and cracks</a> — and in celebration of <a href="http://www.sunshineweek.org/">Sunshine Week</a> — we&#8217;ve compiled a brief list of some of the biggest public and private threats facing the internet.</p>
<p><strong>1. Warrantless Government Monitoring</strong></p>
<p><strong>2. Private Censorship</strong></p>
<p><strong>3.</strong> <strong>Government Censorship</strong></p>
<p><strong>4.</strong> <strong>Deep Packet Inspection</strong></p>
<p><strong>5. ISP Tiered Pricing</strong></p>
<p><strong>6. Recording Industry Association of America </strong><strong>Proposes &#8220;Three-Strikes&#8221; Policy</strong></p>
<p><strong>7. Digital Millennium Copyright Act Abuses</strong></p>
<p>You can read more about these Internet threats on the Wired Blog.</p>
<p>[via <a href="http://blog.wired.com/27bstroke6/2009/03/wireds-top-inte.html">Wired</a>]</p>
]]></content:encoded>
			<wfw:commentRss>http://yista.com/2009/03/21/top-internet-threats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MacBook Zero-Day @ CanSecWest</title>
		<link>http://yista.com/2007/04/23/macbook-zero-day-cansecwest/</link>
		<comments>http://yista.com/2007/04/23/macbook-zero-day-cansecwest/#comments</comments>
		<pubDate>Mon, 23 Apr 2007 15:19:58 +0000</pubDate>
		<dc:creator>George Burnett</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[Hacks]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://yista.com/2007/04/23/macbook-zero-day-cansecwest/</guid>
		<description><![CDATA[Macaulay, a software engineer, was able to hack into a MacBook through a zero-day security hole in Apple&#8217;s Safari browser. The computer was one of two offered as a prize in the &#8220;PWN to Own&#8221; hack-a-Mac contest at the CanSecWest conference in Vancouver. Macaulay teamed [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.yista.com/content/_images/machacker_med.gif" alt="Mac Hack" align="right" />Macaulay, a software engineer, was able to hack into a MacBook through a zero-day security hole in Apple&#8217;s Safari browser. The computer was one of two offered as a prize in the &#8220;<strong><em>PWN to Own</em></strong>&#8221; hack-a-Mac contest at the <a href="http://cansecwest.com/">CanSecWest</a> conference in Vancouver.</p>
<p>Macaulay teamed with Dino Dai Zovi, a security researcher until recently with <a href="http://www.matasano.com/log/mtso">Matasano Security</a>. Dai Zovi, who has previously been credited by Apple for finding flaws in Mac software, found the Safari vulnerability and wrote the exploit overnight in about 9 hours, he said.</p>
<p>&#8220;<em>The vulnerability and the exploit are mine,</em>&#8221; Dai Zovi said in a telephone interview from New York. &#8220;<em>Shane is my man on the ground.</em>&#8221;</p>
<p>Dai Zovi plans to apply for a $10,000 bug bounty TippingPoint announced on Thursday if a previously unknown Apple bug was used. &#8220;<em>Shane can have the laptop, I want the money,</em>&#8221; Dai Zovi said. TippingPoint runs the <a href="http://news.com.com/Offering+a+bounty+for+security+bugs/2100-7350_3-5802411.html">Zero Day Initiative bug bounty program</a>.</p>
<p>[<a href="http://news.com.com/2100-7349_3-6178131.html?part=rss&amp;tag=2547-1_3-0-5&amp;subj=news">CNet</a>]</p>
]]></content:encoded>
			<wfw:commentRss>http://yista.com/2007/04/23/macbook-zero-day-cansecwest/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

