<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Security Through Stupidity</title>
	<atom:link href="http://emergentchaos.com/archives/2007/04/security-through-stupidity.html/feed" rel="self" type="application/rss+xml" />
	<link>http://emergentchaos.com/archives/2007/04/security-through-stupidity.html</link>
	<description>The Emergent Chaos Jazz Combo</description>
	<lastBuildDate>Wed, 01 Feb 2012 19:20:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Teltariat</title>
		<link>http://emergentchaos.com/archives/2007/04/security-through-stupidity.html/comment-page-1#comment-3558</link>
		<dc:creator>Teltariat</dc:creator>
		<pubDate>Sat, 28 Apr 2007 20:44:21 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=2339#comment-3558</guid>
		<description>&gt; Most fresh Windows installs can be compromised in less time than it takes you to download the patches. I&#039;ve observed less than half an hour from connection to infection for an unpatched Windows 2000 system on dialup.
Less than half an hour? This is no longer the case.
Today, your freshly set up Windows machine can be compromised in 5 minutes flat.
</description>
		<content:encoded><![CDATA[<p>> Most fresh Windows installs can be compromised in less time than it takes you to download the patches. I&#8217;ve observed less than half an hour from connection to infection for an unpatched Windows 2000 system on dialup.<br />
Less than half an hour? This is no longer the case.<br />
Today, your freshly set up Windows machine can be compromised in 5 minutes flat.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Orv</title>
		<link>http://emergentchaos.com/archives/2007/04/security-through-stupidity.html/comment-page-1#comment-3557</link>
		<dc:creator>Orv</dc:creator>
		<pubDate>Fri, 27 Apr 2007 20:09:57 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=2339#comment-3557</guid>
		<description>I know what you mean about a firewall often just mimicking the list of ports that don&#039;t have services on them.  I find, though, that a firewall can be especially helpful when dealing with devices that have totally brain-dead security -- like your music box, or most networked printers.  There&#039;s usually no reason for these devices to communicate with the Internet.  I&#039;ll often set up a firewall with just a blocklist of IPs that never, ever, ever should talk to anyone, and list all the network printers and other embedded devices.  The other machines get free reign.
A firewall is also vital when setting up Windows.  Most fresh Windows installs can be compromised in less time than it takes you to download the patches.  I&#039;ve observed less than half an hour from connection to infection for an unpatched Windows 2000 system on dialup.
</description>
		<content:encoded><![CDATA[<p>I know what you mean about a firewall often just mimicking the list of ports that don&#8217;t have services on them.  I find, though, that a firewall can be especially helpful when dealing with devices that have totally brain-dead security &#8212; like your music box, or most networked printers.  There&#8217;s usually no reason for these devices to communicate with the Internet.  I&#8217;ll often set up a firewall with just a blocklist of IPs that never, ever, ever should talk to anyone, and list all the network printers and other embedded devices.  The other machines get free reign.<br />
A firewall is also vital when setting up Windows.  Most fresh Windows installs can be compromised in less time than it takes you to download the patches.  I&#8217;ve observed less than half an hour from connection to infection for an unpatched Windows 2000 system on dialup.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mordaxus</title>
		<link>http://emergentchaos.com/archives/2007/04/security-through-stupidity.html/comment-page-1#comment-3556</link>
		<dc:creator>Mordaxus</dc:creator>
		<pubDate>Fri, 27 Apr 2007 16:33:47 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=2339#comment-3556</guid>
		<description>I have intentionally not said who they are, because they may have fixed things in the last couple of years, and I don&#039;t want to get into a pissing contest. I genuinely do not care. If you buy something, the easy thing to do it to nmap the box and telnet to it during the time you can return it.
I hope that somewhere the development groups of music player companies are downloading Nessus.
What I&#039;m using now is an Airport Express from Apple. I have one that is just a piece of stereo equipment, plugged into the aux port of the receiver.
</description>
		<content:encoded><![CDATA[<p>I have intentionally not said who they are, because they may have fixed things in the last couple of years, and I don&#8217;t want to get into a pissing contest. I genuinely do not care. If you buy something, the easy thing to do it to nmap the box and telnet to it during the time you can return it.<br />
I hope that somewhere the development groups of music player companies are downloading Nessus.<br />
What I&#8217;m using now is an Airport Express from Apple. I have one that is just a piece of stereo equipment, plugged into the aux port of the receiver.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John</title>
		<link>http://emergentchaos.com/archives/2007/04/security-through-stupidity.html/comment-page-1#comment-3555</link>
		<dc:creator>John</dc:creator>
		<pubDate>Fri, 27 Apr 2007 14:40:38 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=2339#comment-3555</guid>
		<description>Just wondering if you want to share the brands/models of the boxes, especially the one that you are using now?
</description>
		<content:encoded><![CDATA[<p>Just wondering if you want to share the brands/models of the boxes, especially the one that you are using now?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

