Posts in OS X

Friday, March 26, 2004

ONLamp.com: Top Ten Tips to Make Attacker’s Lives Hell

ONLamp.com: Top Ten Tips to Make Attacker’s Lives Hell

Good stuff here. Articles like this often lack practical implementation info, but this gives you some specifics to follow. One app it mentions that I wasn’t aware of is URLScan, a free tool from MS to filter server requests. Not that I’d ever use a MS Server for anything that the public could access, but if you must, this seems like a requirement for your IIS box.

Posted in InfoSec, The Web Problem, OS X by funkatron on 03/26 at 09:14 AM

Tuesday, March 16, 2004

What Felix said about assuming…

It always seemed like a bad idea to do some kind of server or client detection by checking for a short string anywhere in the fingerprint. This is a good example of why.

Posted in The Web Problem, OS X, PHP by funkatron on 03/16 at 07:46 PM

Sunday, November 30, 2003

New Lamebrain mailing list—please re-subscribe!

A new testing version of LameBrain is now available: 0.6.2b3. This adds a number of minor features and fixes. Please give it a spin and send feedback to the mailing list.

Speaking of which… I’ve set up a new mailing list for Lamebrain at my new host. This is where I will announce new non-public releases, can chat about bugs and feature requests, and the like. I wasn’t able to recover addresses from the old list, so you’ll need to re-subscribe:

Subscribe to Lamebrain-general by filling out the following form. You will be sent email requesting confirmation, to prevent others from gratuitously subscribing you. This is a private list, which means that the list of members is not available to non-members.

Your email address: tr>
Your name (optional): tr>
You may enter a privacy password below. This provides only mild security, but should prevent others from messing with your subscription. Do not use a valuable password as it will occasionally be emailed back to you in cleartext.

If you choose not to enter a password, one will be automatically generated for you, and it will be sent to you once you’ve confirmed your subscription. You can always request a mail-back of your password when you edit your personal options. Once a month, your password will be emailed to you as a reminder.

Pick a password: tr>
Reenter password to confirm: /tr>
Which language do you prefer to display your messages? English (USA)  
Would you like to receive list mail batched in a daily digest? No Yes

Posted in OS X by funkatron on 11/30 at 09:27 AM

Friday, August 22, 2003

Apple does dumb shit too

Things I discovered tonight:

  • A: .Mac account passwords can be 6-32 characters
  • B: The .Mac iDisk Utility for XP (which Apple wrote) can only use passwords of 6-8 characters
  • A+B = God forbid I use a .Mac password over 8 characters and want to upload to my iDisk from XP

Also, Appleworks sucks.

Posted in OS X by funkatron on 08/22 at 11:22 PM

Wednesday, August 20, 2003

New Widget: dropTar

dropTar 1.0dropTar is a Konfabulator widget I cooked up to quickly handle tarring and zipping of files. You just drop one or more files or folders on the icon, and dropTar does its thing. dropTar uses hfstar, so your resource forks are safe.

Download dropTar now (108k)

Posted in OS X by funkatron on 08/20 at 08:32 PM
Page 7 of 11 pages « First  <  5 6 7 8 9 >  Last »