<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE rss [<!ENTITY % HTMLlat1 PUBLIC "-//W3C//ENTITIES Latin 1 for XHTML//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml-lat1.ent">]>
<rss version="2.0" xml:base="http://willy.boerland.com/myblog">
<channel>
 <title>Willy Dobbe - hack</title>
 <link>http://willy.boerland.com/myblog/taxonomy/term/25/0</link>
 <description></description>
 <language>en</language>
<item>
 <title>Cisco&#039;s IP Journal on IP spoofing</title>
 <link>http://willy.boerland.com/myblog/ciscos_ip_journal_on_ip_spoofing</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://www.cisco.com/web/about/ac123/ac147/images/ipj/ipj_10-4/104_ip-spoof_fig1_lg.jpg&quot;&gt;&lt;p&gt;
Over at the &lt;a href=&quot;http://www.cisco.com/web/about/ac123/ac147/archived_issues/ipj_10-4/104_ip-spoofing.html&quot;&gt;&quot;Internet protocol Jornal&lt;/a&gt; (&lt;i&gt;issue 10.4&lt;/i&gt;) you can find a good read on the dangers of IP spoofing. This problems is very old and very wide known. Even when I was in networking (1997-2002) this was wideley known and there was an easy cure. So I dont understand why Cisco decided to publish this now, a decade ago it would have been yesterdays news.&lt;/p&gt;
&lt;p&gt;&lt;iframe src=&quot;http://rcm.amazon.com/e/cm?t=willydobbe04-20&amp;amp;o=1&amp;amp;p=8&amp;amp;l=as1&amp;amp;asins=0201633469&amp;amp;fc1=000000&amp;amp;IS2=1&amp;amp;lt1=_blank&amp;amp;lc1=0000FF&amp;amp;bc1=000000&amp;amp;bg1=FFFFFF&amp;amp;f=ifr&quot; style=&quot;width:120px;height:240px;&quot; scrolling=&quot;no&quot; marginwidth=&quot;0&quot; marginheight=&quot;0&quot; frameborder=&quot;0&quot; align=right valign=top&gt;&lt;/iframe&gt;Everyone who ever read the TCP/IP bible (TCP/IP illustrated) knows this. All you have to configure on a router is &lt;a href=&quot;http://www.cisco.com/en/US/docs/ios/11_1/feature/guide/uni_rpf.html&quot;&gt;&lt;tt&gt;IP UNICAST REVERSE PATH&lt;/tt&gt;&lt;/a&gt;, in combination with cisco CEF. Then all packets that are routed are inspected. If the sender address (the From IP address) is in the routing table, it is checked to see if the router would route it the packet would have been send over the same interface the packet orginated from. If so, the sender is valid and the packet is routed, if not, it is proabbly a forged packet and it is dropped. That simple, one command and there is no IP spoofing anymore. In 1998 cisco released this feature I think, a decade ago!&lt;/p&gt;
&lt;p&gt;All ISP&#039;s (at least in the Netherlands) have this kind of ingress filtering acitvated on their routers since a decade, it is impossible to spoof and route a packet in the Netherlands and most parts of the world for that matter.&lt;/p&gt;
&lt;p&gt;I remember though that Casema (which I used as a cable modem provider between 1996-2001) didnt have this feature for some time. You could route a packet towards 1.1.1.1 with the sender address 10.255.255.255. 1.1.1.1 would give an &quot;ICMP unreachable message&quot; from the border routers of casema and it would be send towards the complete internal network -all systems- of Casema creating a kind of internal DoS. &lt;/p&gt;
&lt;p&gt;But to publish this article one decade after a decade seems like rerunning old stories. 10 years is on the net a lifetime.&lt;/p&gt;
</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing">routing</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip_0">TCP/IP</category>
 <pubDate>Tue, 12 Feb 2008 11:38:12 +0100</pubDate>
</item>
<item>
 <title>Stupidity</title>
 <link>http://willy.boerland.com/myblog/stupidity</link>
 <description>
&lt;div class=&quot;quotes-quote&quot;&gt;
  &lt;p&gt;Social Engineering: Because There Is No Patch To Human Stupidity&lt;/p&gt;
&lt;/div&gt;
&lt;div class=&quot;quotes-author&quot;&gt;
  &lt;p&gt;&amp;mdash; Podcast &lt;a href=&quot;http://www.twit.tv/93&quot; rel=&quot;nofollow&quot;&gt;93&lt;/a&gt; of TWIT&lt;/p&gt;
&lt;/div&gt;
</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <pubDate>Tue, 03 Apr 2007 11:52:29 +0200</pubDate>
</item>
<item>
 <title>Skype protocol hacked? Skype functionality going mobile?</title>
 <link>http://willy.boerland.com/myblog/skype_protocol_hacked_skype_functionality_going_mobile</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://images.google.com/images?q=tbn:oeV_TcRmIKU7eM:http://www.sme.sk/cdata/2828999/skype-maly.jpg&quot; align=right valign=top&gt;&lt;a title=&quot;Skype Hacked! Skype Made Mobile! - Profy.Com&quot; href=&quot;http://www.profy.com/2006/11/14/skype-hacked-skype-made-mobile/&quot;&gt;Skype Hacked! Skype Made Mobile!&lt;/a&gt;&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;blockquote&gt;
It’s true. The rumors have been confirmed. Skype is going mobile! But not in quite the way you might have expected it! Skype has been hacked. Officially.&lt;br /&gt;
&lt;/i&gt;&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;See the &quot;proof&quot; video on &lt;a href=&quot;http://www.skypejournal.com/blog/archives/2006/11/talkplus_demo_call_to_echo123_from_a_mob.php&quot;&gt;the skypejournal&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;&lt;embed style=&quot;width:400px; height:326px;&quot; id=&quot;VideoPlayback&quot; type=&quot;application/x-shockwave-flash&quot; src=&quot;http://video.google.com/googleplayer.swf?docId=-4392642747720880135&amp;amp;hl=en&quot; flashvars=&quot;&quot;&gt; &lt;/embed&gt;&lt;/p&gt;
</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/mobility/connectivity_technology/gsm">GSM</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/hardware">hardware</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip/voip">VOIP</category>
 <pubDate>Wed, 15 Nov 2006 04:31:23 +0100</pubDate>
</item>
<item>
 <title>Als je stem prive wilt houden, kies dan geen CDA</title>
 <link>http://willy.boerland.com/myblog/als_je_stem_prive_wilt_houden_kies_dan_geen_cda</link>
 <description>&lt;p&gt;Als je je stem wel wilt uitbrengen, maar zeker wilt weten dat niemand anders die ziet, stem dan geen CDA!&lt;/p&gt;
&lt;p&gt;&lt;object width=&quot;425&quot; height=&quot;350&quot;&gt;&lt;param name=&quot;movie&quot; value=&quot;http://www.youtube.com/v/B05wPomCjEY&quot;&gt;&lt;/param&gt;&lt;param name=&quot;wmode&quot; value=&quot;transparent&quot;&gt;&lt;/param&gt;&lt;embed src=&quot;http://www.youtube.com/v/B05wPomCjEY&quot; type=&quot;application/x-shockwave-flash&quot; wmode=&quot;transparent&quot; width=&quot;425&quot; height=&quot;350&quot;&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.wijvertrouwenstemcomputersniet.nl&quot;&gt;&lt;img src=&quot;http://www.wijvertrouwenstemcomputersniet.nl/images/f/fd/Bnr-2.gif&quot; border=0 alt=&quot;Verhef je stem voor een controleerbare uitslag! - www.wijvertrouwenstemcomputersniet.nl&quot;&gt;&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Okay, dat is niet helemaal de boodschap van wijvertrouwenstemcomputersniet.nl (&lt;i&gt;de boodschap is dat digitaal stemmen zoals nu in Nederland plaats gaat vinden niet auditable is en niet veilig)&lt;/i&gt;, maar wel een leuk bij-effect.&lt;/p&gt;
</description>
 <category domain="http://willy.boerland.com/myblog/politics/cda">cda</category>
 <category domain="http://willy.boerland.com/myblog/mobility/connectivity_technology">Connectivity Technology</category>
 <category domain="http://willy.boerland.com/myblog/software/gnu_0">GNU</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/hardware">hardware</category>
 <category domain="http://willy.boerland.com/myblog/society/law/intellectual_property">intellectual property</category>
 <category domain="http://willy.boerland.com/myblog/politics/kabinet">kabinet</category>
 <category domain="http://willy.boerland.com/myblog/taal_language/nederlands">nederlands</category>
 <category domain="http://willy.boerland.com/myblog/politics/politics_netherlands">politics netherlands</category>
 <pubDate>Thu, 12 Oct 2006 16:31:10 +0200</pubDate>
</item>
<item>
 <title>Wij Vertrouwen Stem Computers Niet (een vandaag)</title>
 <link>http://willy.boerland.com/myblog/wij_vertrouwen_stem_computers_niet_een_vandaag</link>
 <description>&lt;p&gt;&lt;a href=&quot;http://www.wijvertrouwenstemcomputersniet.nl/&quot; rel=&quot;nofollow&quot;&gt;wijvertrouwenstemcomputersniet.nl&lt;/a&gt;, een site waar ex hacker ex hacktic ex xs4all ex ITSX &lt;a href=&quot;http://en.wikipedia.org/wiki/Rop_Gonggrijp&quot; rel=&quot;nofollow&quot;&gt;Gonggrijp&lt;/a&gt; en conrnuiten duidelijken maken waarom vernieuwing zonder transparantie achteruitgang is (&lt;a href=&quot;http://willy.boerland.com/myblog/wij_vertrouwen_stem_computers_niet&quot; rel=&quot;nofollow&quot;&gt;oudere posting&lt;/a&gt;).  En vandaag dus &lt;strike&gt;&lt;a href=&quot;http://www.tweevandaag.com/&quot; rel=&quot;nofollow&quot;&gt;twee&lt;/a&gt;&lt;/strike&gt; &lt;a href=&quot;http://www.eenvandaag.com/&quot; rel=&quot;nofollow&quot;&gt;een vandaag&lt;/a&gt; (&lt;i&gt;yek!&lt;/i&gt;) kijken om te zien hoe eenvoudig &lt;a href=&quot;http://www.nedap.com/&quot; rel=&quot;nofollow&quot;&gt;nedap&lt;/a&gt; het ons gemaakt heeft om de democratie te stelen. Zie de &lt;a title=&quot;YouTube - Teaser&quot; href=&quot;http://www.youtube.com/watch?v=IzN3jWtsykw&quot; rel=&quot;nofollow&quot;&gt;teaser&lt;/a&gt; op youtube.&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/hardware">hardware</category>
 <category domain="http://willy.boerland.com/myblog/society/law/intellectual_property">intellectual property</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/media/journalism">journalism</category>
 <category domain="http://willy.boerland.com/myblog/taal_language/nederlands">nederlands</category>
 <category domain="http://willy.boerland.com/myblog/politics/politics_netherlands">politics netherlands</category>
 <category domain="http://willy.boerland.com/myblog/media/tv">tv</category>
 <pubDate>Wed, 04 Oct 2006 13:11:18 +0200</pubDate>
</item>
<item>
 <title>Drupal coding: How to handle text in a secure fashion</title>
 <link>http://willy.boerland.com/myblog/drupal_coding_how_to_handle_text_in_a_secure_fashion</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://images.google.com/images?q=tbn:lBW2MHe92NeOTM:http://www.woodruffforpets.com/embroidered/black-hat.jpg&quot; align=right valign=top /&gt;When I did my first Unix system administration back in 1996 or so, I immediately did have a lot of respect for the beauty of Unix and system adminstrators who know, eat, sleep and dream Unix. Shortly after I got my first root prompt, there was this buzz, there was an option to bring down any Unix (and every other BSD TCP/IP stack) system with just one simple &quot;ping command&quot;. &lt;/p&gt;
&lt;p&gt;This was later knowns as the &lt;a href=&quot;http://en.wikipedia.org/wiki/Ping_of_death&quot; rel=&quot;nofollow&quot;&gt;Ping of Death&lt;/a&gt;. This was an &lt;a href=&quot;http://insecure.org/sploits/ping-o-death.html&quot; rel=&quot;nofollow&quot;&gt;attack&lt;/a&gt; against the network layer of the OSI stack. Soon followed by even easier Denial of Service attacks like flood, smurf and the likes.&lt;/p&gt;
&lt;p&gt; A couple of years later, attacks moved to a higher level, all the lower stuff was less easy to &quot;hack&quot;. So we saw a lot of &quot;&lt;a href=&quot;http://en.wikipedia.org/wiki/Buffer_overflow&quot; rel=&quot;nofollow&quot;&gt;buffer overlow&lt;/a&gt;&quot; attacks in the late 90ies. This kind of attack is still happening, but most attention is now focussed to once again a higher level. So a couple of years back, we saw a lot of &lt;a href=&quot;http://en.wikipedia.org/wiki/Hacker_%28computer_security%29&quot; rel=&quot;nofollow&quot;&gt;attacks&lt;/a&gt; on the application level.&lt;/p&gt;
&lt;p&gt;For webservices, &lt;a href=&quot;http://en.wikipedia.org/wiki/Cross_site_scripting&quot; rel=&quot;nofollow&quot;&gt;Cross Site Scripting&lt;/a&gt; (XSS) was the most used one. Most CMS-es, including better ones like &lt;a href=&quot;http://www.drupal.org&quot; rel=&quot;nofollow&quot;&gt;Drupal&lt;/a&gt; did have these vulnabilities in them. And still, there are some Drupal modules that still have this kind of potential abuse in them. So when you do coding, it is not so hard to make code that can &lt;i&gt;do what is should&lt;/i&gt;; match the functional requirements thet you or your customer defined. It is hard to make code that &lt;i&gt;wont do what you dont want&lt;/i&gt;. Most customers are very good in describing what they want; to come up with a functional design. But nearly all of them fail to define what &lt;i&gt;shouldnt&lt;/i&gt;&lt;/p&gt; be possible.
&lt;p&gt;If you think you or your customer didnt define what shouldnt be possible, make sure you read the &lt;a title=&quot;How to handle text in a secure fashion | drupal.org&quot; href=&quot;http://drupal.org/node/28984&quot; rel=&quot;nofollow&quot;&gt;&quot;How to handle text in a secure fashion&quot;&lt;/a&gt; page on Drupal.org&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;blockquote&gt;
When handling and outputting text in HTML, you need to be careful that proper filtering or escaping is done. Otherwise there might be bugs when users try to use angle brackets or ampersands, or worse you could open up XSS exploits.&lt;br /&gt;
&lt;/blockquote&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;In a year or two we will be done with these XSS exploits and label it as yesterdays news. But will we still suffer from &quot;even higher&quot; attacks like &lt;a href=&quot;http://en.wikipedia.org/wiki/SQL_injection&quot; rel=&quot;nofollow&quot;&gt;SQL injection&lt;/a&gt; with the &lt;a href=&quot;http://www.darknet.org.uk/2006/06/sql-power-injector-v11-released/&quot; rel=&quot;nofollow&quot;&gt;automated test tools&lt;/a&gt; that are available for good or evil now?&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/internet/hack/d_dos">(d)DoS</category>
 <category domain="http://willy.boerland.com/myblog/software/cms/drupal">drupal</category>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip_0">TCP/IP</category>
 <pubDate>Fri, 08 Sep 2006 00:54:18 +0200</pubDate>
</item>
<item>
 <title>CrossSiteScripting (XSS)</title>
 <link>http://willy.boerland.com/myblog/crosssitescripting_xss_0</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://msdn.microsoft.com/workshop/graphics/ART_XSS.gif&quot; align=right valign=top /&gt;The other day I just happen to do some investigation to sites that my employer hosts that are vulnable to &lt;a href=&quot;http://en.wikipedia.org/wiki/Cross-site_scripting&quot; rel=&quot;nofollow&quot;&gt;XSS&lt;/a&gt;. From the dozen of heavy volume Dutch sites I tested, half of them could be &quot;infected&quot; with a simple Javascript page. I used the excellent &lt;a href=&quot;http://ha.ckers.org/xss.html&quot; rel=&quot;nofollow&quot;&gt;ha.ckers.org XSS&lt;/a&gt; page.&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;blockquote&gt;
Note from the author: XSS is Cross Site Scripting. If you don&#039;t know how XSS (Cross Site Scripting) works, this page probably won&#039;t help you. This page is for people who already understand the basics of XSS attacks but want a deep understanding of the nuances regarding filter evasion. This page will also not show you how to mitigate XSS vectors or how to write the actual cookie/credential stealing/replay/session riding portion of the attack.&lt;br /&gt;
&lt;/blockquote&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;And sure enough, people reacted like &quot;so you can display an alertbox or a cooke. Whats the big deal?&quot; For some, it took me some time to show the dangers. But now I have this extreme cool detailed XSS howto on&lt;br /&gt;
&lt;a title=&quot;XSS, Cookies, and Session ID Authentication – Three Ingredients for a Successful Hack  rel=&quot;nofollow&quot;&gt; The XSS Vulnerability&quot; href=&quot;http://www.informit.com/articles/article.asp?p=603037&amp;amp;rl=1&quot;&gt;informit&lt;/a&gt; regarding &quot;XSS, Cookies, and Session ID Authentication – Three Ingredients for a Successful Hack &gt; The XSS Vulnerability&lt;/p&gt;. Reading that, anyone can understand the potential / aka danger of XSS&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;blockquote&gt;
Cross site scripting (XSS) errors are generally considered nothing more than a nuisance — most people do not realize the inherent danger these types of bugs create. In this article Seth Fogie looks at a real life XSS attack and how it was used to bypass the authentication scheme of an online web application, leading to &quot;shell&quot; access to the web server.&lt;br /&gt;
&lt;/blockquote&gt;&lt;/i&gt;
&lt;p&gt;Seven detailed pages.&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip/webhosting">webhosting</category>
 <pubDate>Tue, 15 Aug 2006 00:58:04 +0200</pubDate>
</item>
<item>
 <title>Hacking Exposed, VOIP</title>
 <link>http://willy.boerland.com/myblog/hacking_exposed_voip</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://ec1.images-amazon.com/images/P/0072227427.01._AA240_SCLZZZZZZZ_.jpg&quot; align=right valign=top /&gt;&lt;a title=&quot;Hacking Exposed VoIP: Voice over IP Security Secrets and Solutions by David Endler and Mark Collier&quot; href=&quot;http://www.hackingvoip.com/sec_tools.html?vindex=1&quot; rel=&quot;nofollow&quot;&gt;Hacking Exposed VoIP&lt;/a&gt; Voice over IP Security Secrets and Solutions by David Endler and Mark Collier.
&lt;/p&gt;&lt;p&gt;Here you can donload the security tools mentioned in the book. I have some books from this serie and think I might buy this one as well.&lt;/p&gt;
&lt;p&gt;Though most of the &lt;a href=&quot;http://www.amazon.com/gp/product/customer-reviews/0072227427/103-7574072-1275017&quot; rel=&quot;nofollow&quot;&gt;reviews&lt;/a&gt; on Amazon are not positive. &lt;a href=&quot;http://www.theregister.co.uk/2006/08/03/voip_hacking_exposed/&quot; rel=&quot;nofollow&quot;&gt;El Reg&lt;/a&gt; has some notes on it as well. (Yes I know that the picture isnt the right one for the cover of the book, but I could find the right one)&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip/voip">VOIP</category>
 <pubDate>Sun, 06 Aug 2006 01:19:19 +0200</pubDate>
</item>
<item>
 <title>Cracker</title>
 <link>http://willy.boerland.com/myblog/cracker</link>
 <description>&lt;p&gt;MSFT site gedefaced. Standaard nieuws. Zeldzaam nieuws, een massa medium dat &lt;a href=&quot;http://nl.wikipedia.org/wiki/Hacker&quot; rel=&quot;nofollow&quot;&gt;hacker&lt;/a&gt; en cracker niet verward: &lt;a title=&quot;nu.nl/internet | Turkse cracker neemt Microsoft-site onder handen&quot; href=&quot;http://www.nu.nl/news/757881/50/Turkse_cracker_neemt_Microsoft-site_onder_handen.html&quot; rel=&quot;nofollow&quot;&gt;nu.nl/internet &lt;/a&gt;&lt;i&gt;&lt;br /&gt;
&lt;blockquote&gt;Een Turkse cracker is erin geslaagd een website van Microsoft Frankrijk te bekladden.&lt;/blockquote&gt;&lt;/i&gt;&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/software/microsoft">microsoft</category>
 <category domain="http://willy.boerland.com/myblog/taal_language/nederlands">nederlands</category>
 <category domain="http://willy.boerland.com/myblog/internet/hardware/sun">sun</category>
 <pubDate>Mon, 19 Jun 2006 11:21:23 +0200</pubDate>
</item>
<item>
 <title>Shakespeare and monkeys</title>
 <link>http://willy.boerland.com/myblog/shakespeare_and_monkeys</link>
 <description>&lt;table&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;a href=&quot;http://staff.xu.edu/~polt/typewriters/rem-portables.htm#5streamlined&quot; rel=&quot;nofollow&quot;&gt;&lt;img width=200 height=162 border=0 src=&quot;http://staff.xu.edu/~polt/typewriters/rem5str.jpg&quot; /&gt;&lt;/a&gt;
&lt;/td&gt;
&lt;td&gt;
+
&lt;/td&gt;
&lt;td&gt;
&lt;a href=&quot;http://www.i4u.com/article5777.html&quot; rel=&quot;nofollow&quot;&gt;&lt;img border=0 src=&quot;http://www.i4u.com/images/2006/bridgestone-e-paper.jpg&quot; /&gt;&lt;/a&gt;
&lt;/td&gt;
&lt;td&gt;
+
&lt;/td&gt;
&lt;td&gt;
&lt;a href=&quot;http://www.instructables.com/ex/i/40127CE021381029BC6B001143E7E506/?ALLSTEPS&quot; rel=&quot;nofollow&quot;&gt;&lt;img border=0 width=200 height=147 src=&quot;http://www.makezine.com/blog/c9fb01afc42feee5c28ea273.medium.jpg&quot; /&gt;&lt;/a&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;p&gt;Just an idea for an cool hardware mash-up (an &quot;hack&quot; in oldspeak)&lt;/p&gt;&lt;p&gt;Wouldn&#039;t be great(in any case very &lt;a href=&quot;http://us.imdb.com/title/tt0088846/combined&quot; rel=&quot;nofollow&quot;&gt;Brazil&lt;/a&gt;)to&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;take an old type writer&lt;/li&gt;
&lt;li&gt;&lt;a href=&quot;http://www.eink.com/technology/flexible.html&quot; rel=&quot;nofollow&quot;&gt;insert a sheet of electronic paper in the roll&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href=&quot;http://www.instructables.com/ex/i/40127CE021381029BC6B001143E7E506/?ALLSTEPS&quot; rel=&quot;nofollow&quot;&gt;add an USB interface to the keyboard.&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Disable necessary mechanical bits&lt;/li&gt;
&lt;li&gt;add a small form cpu&lt;/li&gt;
&lt;li&gt;record a great &quot;&lt;a href=&quot;http://www.a1freesoundeffects.com/freesounds/typewriterding.wav&quot; rel=&quot;nofollow&quot;&gt;ding&lt;/a&gt;&quot;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;And create a typewriter with electronic paper output..and finally a decent spellchecker. An nice addition to &lt;a href=&quot;http://www.makezine.com/blog/archive/2005/06/portable_rotary.html&quot; rel=&quot;nofollow&quot;&gt;Mobile Rotary Dial phones&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;And the &lt;a href=&quot;http://en.wikipedia.org/wiki/Infinite_monkey_theorem&quot; rel=&quot;nofollow&quot;&gt;changes&lt;/a&gt; for the monkeys would improve significantly.&lt;br /&gt;&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/hardware">hardware</category>
 <pubDate>Mon, 12 Jun 2006 13:02:30 +0200</pubDate>
</item>
<item>
 <title>silver needle in the skype</title>
 <link>http://willy.boerland.com/myblog/silver_needle_in_the_skype</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://images.google.nl/images?q=tbn:rqwtqN_gPldhsM:www.searchengine-weblog.com/50226711/skype.jpg&quot; align=right valign=top /&gt;One of the best researches I have seen on Skype, the disadvantages and how to block it. Great Stuff and must read if you are into routing, security or VOIP in general.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.secdev.org/conf/skype_BHEU06.handout.pdf&quot; rel=&quot;nofollow&quot;&gt;skype needle&lt;/a&gt;.&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip_0">TCP/IP</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip/voip">VOIP</category>
 <pubDate>Wed, 05 Apr 2006 09:23:10 +0200</pubDate>
</item>
<item>
 <title>This post should have been posted from a KPN Hotspot...</title>
 <link>http://willy.boerland.com/myblog/this_post_should_have_been_posted_from_a_kpn_hotspot</link>
 <description>&lt;p&gt;But it was too damn cold and the wifi crapped out every time a train came into the station.. &lt;/p&gt;
&lt;p&gt;Of course posting from a hotspot is nothing special but this was different: I was using socks over SSH over an DNS tunnel to the &lt;a href=&quot;http://tor.eff.org/&quot; rel=&quot;nofollow&quot;&gt;TOR&lt;/a&gt; network. I had read the initial articles about using DNS as a covert channel to tunnel IP traffic from closed Wifi hotspots a couple years ago but last &lt;a href=&quot;to_fosdem_and_beyoned&quot; title=&quot;reference on weekend&quot; target=&quot;_self&quot; rel=&quot;nofollow&quot;&gt;weekend&lt;/a&gt; I was staying in an hotel with expensive Wifi and an 2 hour minimum so I decided to check what the state of the art of DNS tunneling is. &lt;/p&gt;
&lt;p&gt;And it turned out to be &lt;a href=&quot;http://afs.eecs.harvard.edu/~goodell/blossom/tor-via-dns.html&quot; rel=&quot;nofollow&quot;&gt;pretty easy&lt;/a&gt; using &lt;a href=&quot;http://www.aripollak.com/wiki/Main/SSHOverDNS&quot; rel=&quot;nofollow&quot;&gt;SSH&lt;/a&gt; and a little &lt;a href=&quot;http://www.doxpara.com/&quot; rel=&quot;nofollow&quot;&gt;perl script&lt;/a&gt; and a willing DNS server from the &lt;a href=&quot;http://tor.eff.org/&quot; rel=&quot;nofollow&quot;&gt;TOR&lt;/a&gt; network; it worked like a &quot;slow&quot; charm from my home network and the train journey from Haarlem offered a great opportunity for a field test but the stops in the stations were too short to post anything so I ended sitting outside on the platform but gave up after my fingers got too numb to type...the stuff I do for willy...&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/internet/routing/tcp_ip/wifi">wifi</category>
 <category domain="http://willy.boerland.com/myblog/mobility/connectivity_technology/wifi">WIFI</category>
 <pubDate>Sun, 05 Mar 2006 16:44:16 +0100</pubDate>
</item>
<item>
 <title>IE&#039;s security settings</title>
 <link>http://willy.boerland.com/myblog/ies_security_settings</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://images.google.com/images?q=tbn:54L5H3zq6bCIxM:www.onestab.net/images/friends_ie.jpg&quot; align=right valign=top /&gt;&lt;a title=&quot;Internet Explorer Security Humor :: Mozilla Stuff :: JohnHaller.com&quot; href=&quot;http://johnhaller.com/jh/mozilla/ie_security_humor/&quot; rel=&quot;nofollow&quot;&gt;Internet Explorer Security Humor&lt;/a&gt;, This one minute animation was created to help people understand Internet Explorer&#039;s security levels.&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/society/geeks_nerds">geeks/nerds</category>
 <category domain="http://willy.boerland.com/myblog/software/gnu_0">GNU</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/software/gnu/mozilla">mozilla</category>
 <category domain="http://willy.boerland.com/myblog/humor/parody">parody</category>
 <category domain="http://willy.boerland.com/myblog/humor/picture">picture</category>
 <pubDate>Sun, 19 Feb 2006 22:54:00 +0100</pubDate>
</item>
<item>
 <title>Leet speak owned network</title>
 <link>http://willy.boerland.com/myblog/leet_speak_owned_network</link>
 <description>&lt;p&gt;&lt;img src=&quot;http://media2.damnfunnypictures.com/dfp/Carolina_News_Owned_5.jpg&quot; /&gt;&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://media2.damnfunnypictures.com/dfp/Carolina_News_Owned_5.jpg&quot; rel=&quot;nofollow&quot;&gt;Carolina news owned&lt;/a&gt;. &lt;br /&gt;&lt;a href=&quot;http://en.wikipedia.org/wiki/Leet/1337&quot; rel=&quot;nofollow&quot;&gt;Funny&lt;/a&gt; indeed.&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/humor/humour">humour</category>
 <category domain="http://willy.boerland.com/myblog/internet/internet_culture">internet culture</category>
 <category domain="http://willy.boerland.com/myblog/humor/parody">parody</category>
 <category domain="http://willy.boerland.com/myblog/media/tv">tv</category>
 <pubDate>Tue, 17 Jan 2006 13:51:19 +0100</pubDate>
</item>
<item>
 <title>Enable Windows Security</title>
 <link>http://willy.boerland.com/myblog/enable_windows_security</link>
 <description>&lt;p&gt;&lt;a title=&quot;xpy - that is right, it is egg&#039;s pie&quot; href=&quot;http://xpy.whyeye.org/&quot; rel=&quot;nofollow&quot;&gt;xpy - that is right, it is egg&#039;s pie&lt;/a&gt;&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;blockquote&gt;
Small tool which disables the default threats of a Windows XP installation. Besides disabling Windows and some of its components to communicate with Microsoft servers, xpy improves privacy settings and your system&#039;s security.
&lt;p&gt;
Features:&lt;br /&gt;
  •  Disable Windows &quot;calling home&quot;&lt;br /&gt;
  •  Disable questionable services&lt;br /&gt;
  •  Disarm Internet Explorer&lt;br /&gt;
  •  Disarm Windows Media Player&lt;br /&gt;
  •  Remove Windows Messenger&lt;br /&gt;
  •  Improve privacy and security&lt;br /&gt;
  •  Improve performance&lt;br /&gt;
&lt;/p&gt;&lt;/blockquote&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;Sounds more like a de-install of Windows according to MSFT. You might as well install &lt;a href=&quot;http://www.ubuntulinux.org/&quot; rel=&quot;nofollow&quot;&gt;Linux For Humans&lt;/a&gt;. I did that the other day as well on my Work Laptop and it fits my needs...&lt;/p&gt;</description>
 <category domain="http://willy.boerland.com/myblog/taal_language/english">english</category>
 <category domain="http://willy.boerland.com/myblog/internet/hack">hack</category>
 <category domain="http://willy.boerland.com/myblog/software/microsoft">microsoft</category>
 <category domain="http://willy.boerland.com/myblog/humor/weird">weird</category>
 <pubDate>Thu, 29 Dec 2005 13:42:14 +0100</pubDate>
</item>
</channel>
</rss>
