<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Equilibrium Networks &#187; Communications security</title>
	<atom:link href="http://blog.eqnets.com/category/security/communications-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.eqnets.com</link>
	<description>Science, networks, and security</description>
	<lastBuildDate>Mon, 30 Jan 2012 00:36:45 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='blog.eqnets.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Equilibrium Networks &#187; Communications security</title>
		<link>http://blog.eqnets.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://blog.eqnets.com/osd.xml" title="Equilibrium Networks" />
	<atom:link rel='hub' href='http://blog.eqnets.com/?pushpress=hub'/>
		<item>
		<title>Random bit</title>
		<link>http://blog.eqnets.com/2011/01/17/random-bit-3/</link>
		<comments>http://blog.eqnets.com/2011/01/17/random-bit-3/#comments</comments>
		<pubDate>Mon, 17 Jan 2011 01:21:16 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Random bits]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1176</guid>
		<description><![CDATA[“&#8217;To check out the worm, you have to know the machines,&#8217; said an American expert on nuclear intelligence. &#8216;The reason the worm has been effective is that the Israelis tried it out.&#8217;”<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1176&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.nytimes.com/2011/01/16/world/middleeast/16stuxnet.html?_r=1">“&#8217;To check out the worm, you have to know the machines,&#8217; said an American  expert on nuclear intelligence. &#8216;The reason the worm has been effective  is that the Israelis tried it out.&#8217;”</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1176/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1176/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1176/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1176/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1176/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1176/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1176/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1176/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1176&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2011/01/17/random-bit-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bits</title>
		<link>http://blog.eqnets.com/2010/11/19/random-bits-84/</link>
		<comments>http://blog.eqnets.com/2010/11/19/random-bits-84/#comments</comments>
		<pubDate>Fri, 19 Nov 2010 16:30:20 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Networks]]></category>
		<category><![CDATA[Random bits]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1171</guid>
		<description><![CDATA[&#8220;Stuxnet targets only frequency drives from these two companies that are running at high speeds — between 807 Hz and 1210 Hz. Such high speeds are used only for select applications. Symantec is careful not to say definitively that Stuxnet was targeting a nuclear facility, but notes that “frequency converter drives that output over 600 [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1171&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.informationdissemination.net/2010/11/it-was-smartest-bomb-yet.html">&#8220;Stuxnet targets only frequency drives from these two companies that are  running at high speeds — between 807 Hz and 1210 Hz. Such high speeds  are used only for select applications. Symantec is careful not to say  definitively that Stuxnet was targeting a nuclear facility, but notes  that “frequency converter drives that output over 600 Hz are regulated  for export in the United States by the Nuclear Regulatory Commission as  they can be used for uranium enrichment.&#8221;</a></p>
<p>Making progress towards finding <a href="http://www.technologyreview.com/blog/arxiv/25999/">&#8220;a set of floating point calculations [that] can uniquely identify any processor&#8230;They can&#8217;t yet spot specific processors but they can use this technique  to identify families of them&#8230;this kind of approach would allow much more specific cyberattacks than are possible today.&#8221;</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1171/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1171/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1171/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1171/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1171/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1171/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1171/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1171/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1171&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/11/19/random-bits-84/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>MIRCON and network counteroffensives</title>
		<link>http://blog.eqnets.com/2010/10/13/mircon-and-network-counteroffensives/</link>
		<comments>http://blog.eqnets.com/2010/10/13/mircon-and-network-counteroffensives/#comments</comments>
		<pubDate>Wed, 13 Oct 2010 17:42:08 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[Communications security]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1164</guid>
		<description><![CDATA[I popped in for a couple of stretches at Mandiant&#8217;s MIRcon incident response conference today and yesterday and was struck by a panel discussion on Tuesday about defenders going on offense. The gist was half a) it&#8217;s of dubious legality and wisdom and half b) you&#8217;ve got be an expert to do it properly. Now [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1164&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I popped in for a couple of stretches at Mandiant&#8217;s <a href="http://www.mandiant.com/news_events/article/mircon_event_page/">MIRcon incident response conference</a> today and yesterday and was struck by a panel discussion on Tuesday about defenders going on offense. The gist was half a) it&#8217;s of dubious legality and wisdom and half b) you&#8217;ve got be an expert to do it properly. Now politics and economics being what they are, a) will ultimately be irrelevant without a prohibition and b) will govern the dynamics.</p>
<p>I recalled Mandiant&#8217;s model: they have a bunch of people constantly working on highly technical stuff in a field that changes rapidly—this level of expertise requires economies of scale. The same is true for black hat hackers: economy of scale drives the less skilled to leverage off-the-shelf capabilities, and it drives the more highly skilled to collaborate on the most demanding projects.</p>
<p>Because defense costs more than offense, &#8220;offensors&#8221; could benefit from the same economies of scale. I can imagine a future in which people not only pay for but <em>subscribe</em> to offense as a service, where a group of (nominally) white hatters have their own organizations that do nothing but attack designated black hatters, thereby raising the costs of doing malicious business. The economics might work for the white hatters in much the same way it does for insurance companies, and the product would not be entirely dissimilar. If this sort of activity were tolerated by authorities it might often be preferred by many hackers over black hatting, even if the latter gave bigger paychecks. This could further affect the economics in a good way.</p>
<p>If it will make sense for corporations to go on network counteroffensives themselves, it will make more sense for them to outsource that role if they possibly can. And they might end up being able to.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1164/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1164/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1164/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1164/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1164/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1164/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1164/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1164/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1164&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/10/13/mircon-and-network-counteroffensives/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bit</title>
		<link>http://blog.eqnets.com/2010/09/30/random-bit-2/</link>
		<comments>http://blog.eqnets.com/2010/09/30/random-bit-2/#comments</comments>
		<pubDate>Thu, 30 Sep 2010 15:23:15 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Random bits]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1161</guid>
		<description><![CDATA[Galrahn has an interesting take on Stuxnet: &#8220;Welcome to the future of warfare, where simply planting doubt in the reliability of a system due to a cyberwarfare based malware payload infection is enough to achieve a mission kill against an enemy system.&#8221;<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1161&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.informationdissemination.net/2010/09/six-hundred-kilobytes-of-war-20.html">Galrahn has an interesting take</a> on <a href="http://en.wikipedia.org/wiki/Stuxnet">Stuxnet</a>: &#8220;Welcome to the future of warfare, where simply planting doubt in the  reliability of a system due to a cyberwarfare based malware payload  infection is enough to achieve a mission kill against an enemy system.&#8221;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1161/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1161&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/09/30/random-bit-2/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Initial software release</title>
		<link>http://blog.eqnets.com/2010/08/24/initial-software-release/</link>
		<comments>http://blog.eqnets.com/2010/08/24/initial-software-release/#comments</comments>
		<pubDate>Tue, 24 Aug 2010 02:11:05 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Equilibrium Networks]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1152</guid>
		<description><![CDATA[Our free/open-source visual network traffic monitoring software is now available for download at www.eqnets.com. A video of our enterprise system in action and technical documents detailing our approaches to traffic analysis, real-time interactive visualization and alerting are also available there. Besides a zero-cost download option, we are also offering Linux-oriented installation media for under $100 [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1152&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Our free/open-source visual network traffic monitoring software is now available for download at <a href="http://www.eqnets.com">www.eqnets.com</a>. A video of our enterprise system in action and technical documents detailing our approaches to traffic analysis, real-time interactive visualization and alerting are also available there.</p>
<p>Besides a zero-cost download option, we are also offering Linux-oriented installation media for under $100 and an enterprise version of our system with premium features such as configurable automatic alerting, nonlinear replay, and a 3D traffic display.</p>
<p>Discounts—including installation media for a nominal shipping and handling fee—are available to institutional researchers or in exchange for extensions to our platform.</p>
<p>The software can run in its entirely on a dedicated x86 workstation with four or more cores and a network tap, though our system supports distributed hardware configurations. An average graphics card is sufficient to operate the visualization engine.</p>
<p>Thanks and enjoy!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1152/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1152/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1152/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1152/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1152/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1152/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1152/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1152/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1152&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/08/24/initial-software-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bits</title>
		<link>http://blog.eqnets.com/2010/06/01/random-bits-83/</link>
		<comments>http://blog.eqnets.com/2010/06/01/random-bits-83/#comments</comments>
		<pubDate>Tue, 01 Jun 2010 16:22:47 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Random bits]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1148</guid>
		<description><![CDATA[There&#8217;s been some buzz (see here and here) over the deputy SECDEF&#8217;s comments last week: “Individual users who do not want to enroll could stay in the ‘wild, wild west’ of the unprotected internet&#8230;I think it’s gonna have to be voluntary&#8230;People could opt into protection – or choose to stay out. Individual users may well [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1148&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>There&#8217;s been some buzz (see <a href="http://www.wired.com/dangerroom/2010/05/cyber-command-we-dont-wanna-defend-the-internet-but-we-just-might-have-to/">here</a> and <a href="http://taosecurity.blogspot.com/2010/05/more-evidence-military-will-eventually.html">here</a>) over the deputy SECDEF&#8217;s comments last week:</p>
<p>“Individual users who do not want to enroll could stay in the ‘wild,  wild west’ of the unprotected internet&#8230;I think it’s gonna have to be voluntary&#8230;People could  opt into protection – or choose to stay out. Individual users may well  choose to stay out&#8230;But it’s the vulnerability of certain critical infrastructure – power,  transportation, finance. This starts to give you an angle at doing  that.”</p>
<p>The idea that deploying Einstein more widely is anything more than a step towards a government-sponsored security monoculture escapes me. There is no way that this will get any real traction because it&#8217;s not like the USG can credibly claim that its own networks are secure. If Einstein is free, then companies might use it. But that&#8217;s about as far as that goes.</p>
<p>Other stuff:</p>
<p><a href="http://threatpost.com/en_us/blogs/survey-shows-most-flaws-sold-5000-or-less-052010">&#8220;the vast majority of vulnerabilities, both client-side and server-side,  are being sold for less than $5,000&#8243;</a></p>
<p>Point: <a href="http://www.zdnet.com/blog/security/security-engineering-broken-promises/6503">&#8220;some of the most alluring approaches to assuring information security [and] why they fail to make a difference to regular  users and businesses alike&#8221;</a></p>
<p>Counterpoint: <a href="http://smusec.blogspot.com/2010/05/security-engineering-is-not-solution-to.html">&#8220;blaming security engineering for the impact of targeted attacks is a  herring as red as they come&#8221;</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1148/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1148&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/06/01/random-bits-83/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bits</title>
		<link>http://blog.eqnets.com/2010/05/19/random-bits-82/</link>
		<comments>http://blog.eqnets.com/2010/05/19/random-bits-82/#comments</comments>
		<pubDate>Wed, 19 May 2010 05:31:29 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Networks]]></category>
		<category><![CDATA[Random bits]]></category>
		<category><![CDATA[Science]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1145</guid>
		<description><![CDATA[&#8220;like-sign dimuon charge asymmetry&#8230;in disagreement with the prediction of the standard model by 3.2 standard deviations&#8221; OK, now VMs are totally safe! No need to worry about escape attacks or rootkits&#8230;but seriously, it&#8217;s good that not everyone takes hypervisor security for granted. &#8220;there is now a significant body of work showing how to break conventional [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1145&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www-d0.fnal.gov/Run2Physics/WWW/results/final/B/B10A/">&#8220;like-sign dimuon charge asymmetry&#8230;in disagreement with the prediction of the standard model by 3.2 standard deviations&#8221;</a></p>
<p><a href="http://www.itnews.com.au/News/174755,boffins-propose-guaranteed-hypervisor-security.aspx">OK, now VMs are totally safe! No need to worry about escape attacks or rootkits&#8230;but seriously, it&#8217;s good that not everyone takes hypervisor security for granted.</a></p>
<p><a href="http://www.technologyreview.com/blog/arxiv/25189/">&#8220;there is now a significant body of work showing how to break  conventional quantum cryptography systems based on various practical  weaknesses in the way they are set up&#8230;while the known loopholes can be papered over, it&#8217;s the unknown  ones that represent threats in the future&#8230;[researchers have shown that it's easy] with a little malicious  intent to bend the assumptions behind perfect quantum cryptography.&#8221;</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1145/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1145/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1145/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1145/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1145/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1145/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1145/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1145/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1145&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/05/19/random-bits-82/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bits</title>
		<link>http://blog.eqnets.com/2010/05/07/random-bits-81/</link>
		<comments>http://blog.eqnets.com/2010/05/07/random-bits-81/#comments</comments>
		<pubDate>Fri, 07 May 2010 04:08:58 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Mathematics]]></category>
		<category><![CDATA[Networks]]></category>
		<category><![CDATA[Random bits]]></category>
		<category><![CDATA[Science]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1143</guid>
		<description><![CDATA[Principles of Robust Timing Over the Internet &#8220;[An IPv4 address space] black market already exists, albeit on a small scale&#8230;[currently] IPv4 addresses are still relatively easy to get&#8230;[some believe] that regional registries such as ARIN should head off a potentially deleterious black market by creating a &#8220;white market&#8221; with established rules for trading IPv4 addresses [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1143&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://queue.acm.org/detail.cfm?id=1773943">Principles of Robust Timing Over the Internet</a></p>
<p><a href="http://www.infoworld.com/print/121729">&#8220;[An IPv4 address space] black market already exists, albeit on a small scale&#8230;[currently] IPv4  addresses are still relatively easy to get&#8230;[some believe]  that regional registries such as ARIN should head off a potentially  deleterious black market by creating a &#8220;white market&#8221; with established  rules for trading IPv4 addresses at market-established costs&#8230;But the opportunity  to cleanly switch from IPv4 to IPv6 passed many years ago. The current  transition strategy, called &#8220;dual stack,&#8221; requires businesses to remain  connected to both IPv4 and IPv6 networks until most of the Internet gets  to &#8220;the other side&#8221; &#8212; a process expected to take at least five years.&#8221;</a></p>
<p><a href="http://www.technologyreview.com/blog/arxiv/25151/">&#8220;Frosted windows may never be private again&#8221;</a></p>
<p><a href="http://www.technologyreview.com/blog/arxiv/25146/">&#8220;a fundamental limit to the level of privacy that is possible when social  networks are mined for recommendations&#8221;</a></p>
<p><a href="http://krebsonsecurity.com/2010/04/nsa-on-computer-network-attack-defense/">&#8220;The 605-page [NSA IAD] PDF document reads like a listing of the pros and cons for a  huge array of defensive and counterintelligence approaches and  technologies that an entity might adopt in defending its networks&#8230;[one] section delves into the challenges of  attributing the true origin(s) of a computer network attack&#8221;</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1143/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1143&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/05/07/random-bits-81/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bits</title>
		<link>http://blog.eqnets.com/2010/04/30/random-bits-80/</link>
		<comments>http://blog.eqnets.com/2010/04/30/random-bits-80/#comments</comments>
		<pubDate>Fri, 30 Apr 2010 18:58:11 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Random bits]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1139</guid>
		<description><![CDATA[&#8220;Who can do a better job of protecting us from cyberthreats: private companies like Google, or Uncle Sam?&#8221; Cyberwings. That&#8217;ll raise morale. Or not. Computer security on the Death Star was a joke<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1139&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.csmonitor.com/Commentary/Walter-Rodgers/2010/0429/Cyberattacks-Can-Google-or-Uncle-Sam-protect-you">&#8220;Who can do a better job of protecting us from cyberthreats: private  companies like Google, or Uncle Sam?&#8221;</a></p>
<p><a href="http://www.wired.com/dangerroom/2010/04/design-the-air-forces-cyberwarrior-badge-cause-the-real-one-sucks/">Cyberwings</a>. That&#8217;ll raise morale. Or not.</p>
<p><a href="http://abstrusegoose.com/262">Computer security on the Death Star was a joke</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1139/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1139&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/04/30/random-bits-80/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
		<item>
		<title>Random bits</title>
		<link>http://blog.eqnets.com/2010/04/23/random-bits-79/</link>
		<comments>http://blog.eqnets.com/2010/04/23/random-bits-79/#comments</comments>
		<pubDate>Fri, 23 Apr 2010 21:19:43 +0000</pubDate>
		<dc:creator>eqnets</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[Communications security]]></category>
		<category><![CDATA[Random bits]]></category>

		<guid isPermaLink="false">http://blog.eqnets.com/?p=1137</guid>
		<description><![CDATA[&#8220;in [Richard Clarke's] Cyberwar, like in real war, truth is the first casualty&#8221; Cyberdeterrence through tattlling? This is ridiculous. Not bloody likely that will work against serious hackers. And not bloody likely that it would be done in cases where potentially state-sponsored hackers were caught. Cybersecurity and National Policy<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1137&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.wired.com/threatlevel/2010/04/cyberwar-richard-clarke/">&#8220;in [Richard Clarke's] <em>Cyberwar</em>, like in real war, truth is the first casualty&#8221;</a></p>
<p><a href="http://www.technologyreview.com/computing/25060/page1/">Cyberdeterrence through tattlling?</a> This is ridiculous. Not bloody likely that will work against serious hackers. And not bloody likely that it would be done in cases where potentially state-sponsored hackers were caught.</p>
<p><a href="http://www.harvardnsj.com/2010/04/cybersecurity-and-national-policy/">Cybersecurity and National Policy</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eqnets.wordpress.com/1137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eqnets.wordpress.com/1137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eqnets.wordpress.com/1137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eqnets.wordpress.com/1137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eqnets.wordpress.com/1137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eqnets.wordpress.com/1137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eqnets.wordpress.com/1137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eqnets.wordpress.com/1137/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eqnets.com&amp;blog=7805830&amp;post=1137&amp;subd=eqnets&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eqnets.com/2010/04/23/random-bits-79/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">eqnets</media:title>
		</media:content>
	</item>
	</channel>
</rss>
