<?xml version="1.0" encoding="utf-8" ?>

<rss version="2.0" 
   xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
   xmlns:admin="http://webns.net/mvcb/"
   xmlns:dc="http://purl.org/dc/elements/1.1/"
   xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
   xmlns:wfw="http://wellformedweb.org/CommentAPI/"
   xmlns:content="http://purl.org/rss/1.0/modules/content/"
   >
<channel>
    <title>jjncj.com - geek</title>
    <link>http://jjncj.com/blog/</link>
    <description>News and writings by JJ and CJ and Family</description>
    <dc:language>en</dc:language>
    <admin:errorReportsTo rdf:resource="mailto:blogadmin@jjncj.com" />
    <generator>Serendipity 1.5.1 - http://www.s9y.org/</generator>
    <pubDate>Mon, 22 Sep 2008 14:50:52 GMT</pubDate>

    <image>
        <url>http://jjncj.com/blog/templates/default/img/s9y_banner_small.png</url>
        <title>RSS: jjncj.com - geek - News and writings by JJ and CJ and Family</title>
        <link>http://jjncj.com/blog/</link>
        <width>100</width>
        <height>21</height>
    </image>

<item>
    <title>Blogs are like e-mail addreses...</title>
    <link>http://jjncj.com/blog/archives/152-Blogs-are-like-e-mail-addreses....html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/152-Blogs-are-like-e-mail-addreses....html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=152</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=152</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    ...everybody has at least one.&lt;br /&gt;
&lt;br /&gt;
And I, not to buck the trend, now have two blogs.  Or 1.5, since I am not whole owner of this, the blog I share with my wife.&lt;br /&gt;
&lt;br /&gt;
My new blog is to be found at &lt;a href=&quot;http://joshuakugler.com&quot;&gt;joshuakugler.com&lt;/a&gt;.  It is a blog that will focus mainly on tech stuff: programming, system admin, and computer topics in general.&lt;br /&gt;
&lt;br /&gt;
And I have a new e-mail address, since bigfoot.com, after years of use, seems to now be having major technical problems.  I am now reachable at:&lt;br /&gt;
&lt;br /&gt;
&lt;a href=&quot;mailto:&amp;#106;&amp;#111;&amp;#115;&amp;#104;&amp;#117;&amp;#97;&amp;#64;&amp;#106;&amp;#111;&amp;#115;&amp;#104;&amp;#117;&amp;#97;&amp;#107;&amp;#117;&amp;#103;&amp;#108;&amp;#101;&amp;#114;&amp;#46;&amp;#99;&amp;#111;&amp;#109;&quot;&gt;&amp;#106;&amp;#111;&amp;#115;&amp;#104;&amp;#117;&amp;#97;&amp;#64;&amp;#106;&amp;#111;&amp;#115;&amp;#104;&amp;#117;&amp;#97;&amp;#107;&amp;#117;&amp;#103;&amp;#108;&amp;#101;&amp;#114;&amp;#46;&amp;#99;&amp;#111;&amp;#109;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
I hope you&#039;ll visit! 
    </content:encoded>

    <pubDate>Sun, 10 Aug 2008 16:49:53 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/152-guid.html</guid>
    <category>bigfoot</category>
<category>blog</category>
<category>geek</category>
<category>tech</category>

</item>
<item>
    <title>Words, Symbols, and Meanings</title>
    <link>http://jjncj.com/blog/archives/98-Words,-Symbols,-and-Meanings.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/98-Words,-Symbols,-and-Meanings.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=98</wfw:comment>

    <slash:comments>1</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=98</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    In response to &lt;a href=&quot;http://useopensource.blogspot.com/2007/06/more-symbols.html&quot;  title=&quot;More Symbols...&quot;&gt;Tristan&#039;s post&lt;/a&gt; which is in response to &lt;a href=&quot;http://www.pthree.org/2007/06/20/symbols/&quot;  title=&quot;Symbols&quot;&gt;Aaron&#039;s post&lt;/a&gt;, the logo for &lt;a href=&quot;http://www.canonical.com/&quot;  title=&quot;Free Software!&quot;&gt;Canonical&lt;/a&gt; is probably not accidental.  Merriam-Webster defines canonical as:&lt;br /&gt;
&lt;blockquote&gt;of, relating to, or forming a canon&lt;/blockquote&gt;&lt;br /&gt;
And a canon is:&lt;br /&gt;
&lt;blockquote&gt;a : an accepted principle or rule&lt;br /&gt;
b : a criterion or standard of judgment&lt;br /&gt;
c : a body of principles, rules, standards, or norms&lt;/blockquote&gt;&lt;br /&gt;
But it also says canonical means:&lt;br /&gt;
&lt;blockquote&gt;conforming to a general rule or acceptable procedure&lt;/blockquote&gt;&lt;br /&gt;
Which Canonical most certainly doesn&#039;t.  Well, it may conform to free software, but certainly not to the widely accepted practices of proprietary software.&lt;br /&gt;
&lt;br /&gt;
So, Canonical is a cannon designed to change/improve/destroy the currently canonical definition of how software is supposed to be created, sold and supported, thus forming the new software development canon?  Sounds good to me. 
    </content:encoded>

    <pubDate>Thu, 21 Jun 2007 10:35:00 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/98-guid.html</guid>
    <category>geek</category>
<category>humor</category>
<category>linux</category>
<category>marketing</category>
<category>open source</category>
<category>random</category>
<category>tech</category>
<category>ubuntu</category>

</item>
<item>
    <title>Linux on Dell Officially</title>
    <link>http://jjncj.com/blog/archives/86-Linux-on-Dell-Officially.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/86-Linux-on-Dell-Officially.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=86</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=86</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    It&#039;s happened!  Dell has officially said it will support Linux!  And what distribution will they officially support?  Why, &lt;a href=&quot;http://www.fabianrodriguez.com/blog/archives/2007/04/30/its-d-day/&quot;  title=&quot;Ubuntu on Dell!&quot;&gt;Ubuntu, of course&lt;/a&gt;.  Details are still filtering out.  Keep watching.&lt;br /&gt;
&lt;br /&gt;
For details released before the official word, see &lt;a href=&quot;http://www.desktoplinux.com/news/NS8661763902.html&quot;&gt;this Desktop Linux article&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
Woohoo!&lt;br /&gt;
&lt;br /&gt;
UPDATE: More information on the &lt;a href=&quot;http://www.ubuntu.com/news/dell-to-offer-ubuntu&quot;&gt;Ubuntu site&lt;/a&gt; as well as the &lt;a href=&quot;http://direct2dell.com/one2one/archive/2007/05/01/13147.aspx&quot;&gt;Dell site&lt;/a&gt;. 
    </content:encoded>

    <pubDate>Tue, 01 May 2007 08:34:00 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/86-guid.html</guid>
    <category>dell</category>
<category>geek</category>
<category>linux</category>
<category>open source</category>
<category>tech</category>
<category>ubuntu</category>

</item>
<item>
    <title>Admiral, would you like your carrier Open Source?</title>
    <link>http://jjncj.com/blog/archives/83-Admiral,-would-you-like-your-carrier-Open-Source.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/83-Admiral,-would-you-like-your-carrier-Open-Source.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=83</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=83</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    Mike Kruckenberg writes about a talk given at the 2007 MySQL &lt;a href=&quot;http://www.mysqlconf.com/mysqluc2007/&quot;  title=&quot;MySQL UC 2007&quot;&gt;User Conference&lt;/a&gt;.  It seems the United States Navy is using MySQL running on four-node Linux cluster to handle operations aboard one of their &lt;a href=&quot;http://mike.kruckenberg.com/archives/2007/04/mission_critical_flight_planning_applications_at_the_us_navy.html&quot;  title=&quot;MySQL at Sea&quot;&gt;aircraft carriers&lt;/a&gt;.  Great to see Open Source getting its sea legs.  Or is that improving its sea legs?  Anyone know of other &quot;nautical&quot; Open Source applications or deployments? 
    </content:encoded>

    <pubDate>Wed, 25 Apr 2007 07:54:14 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/83-guid.html</guid>
    <category>geek</category>
<category>linux</category>
<category>mysql</category>
<category>open source</category>
<category>tech</category>

</item>
<item>
    <title>IETab is harmful</title>
    <link>http://jjncj.com/blog/archives/79-IETab-is-harmful.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/79-IETab-is-harmful.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=79</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=79</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    The &lt;a href=&quot;http://www.mozilla.com/en-US/firefox/&quot;  title=&quot;Get Firefox!&quot;&gt;Firefox web browser&lt;/a&gt; has an extention called IETab which enables you to open a tab and browse websites via Firefox, but using the Internet Explorer rendering engine.  This can help, for instance, if a site staunchly proclaims itself &quot;IE only&quot; and will not make changes for alternate browsers.  Over at Hacking for Christ, Gervase Markham has a post entitled &lt;a href=&quot;http://weblogs.mozillazine.org/gerv/archives/2007/04/ietab_considered_harmful.html&quot;&gt;&quot;IETab Considered Harmful?&quot;&lt;/a&gt;.  He references the Slashdot article about &lt;a href=&quot;http://ask.slashdot.org/article.pl?sid=07/04/18/235204&quot;&gt;MovieLink suggesting that users use IETab&lt;/a&gt; so MovieLink doesn&#039;t have to go to the &quot;trouble&quot; of making their web site Firefox compatible.  Gerv observes:&lt;br /&gt;
&lt;blockquote&gt;The harm is that this &#039;solution&#039; still excludes everyone on a Mac or on Linux, and its availability also makes the site far less likely to change to support Firefox properly. In other words, whereas before Mac and Linux users could add Windows Firefox users to their numbers when petitioning sites to upgrade to support web standards, the existence of IETab divides those two groups and gives those of us using non-Windows operating systems, and those who want to see sites supporting standards properly, far less clout.&lt;/blockquote&gt;&lt;br /&gt;
Very true.  The problem I have with IETab, however, is one of security.  If you are using the IE rendering engine, you are opening yourself up to all the problems, standards non-compliance, and security holes you&#039;d have if you used Internet Explorer directly.  I keep telling friends, family, clients, and colleagues to use Firefox for better security.  If there are sites out there encouraging users to &quot;just install IETab to use our site,&quot; most of that security advantage will be negated.&lt;br /&gt;
&lt;br /&gt;
At the conservative end, I think IETab should carry a big, fat warning along the lines of &quot;This plugin is for development and testing only! Using it may compromise your system&#039;s security!&quot;  On the extreme end, I would have it done away with altogether.  If you need multiple versions of IE for testing, on the Linux side of things, there is &lt;a href=&quot;http://www.tatanka.com.br/ies4linux/page/Main_Page&quot;  title=&quot;IEs4Linux&quot;&gt;IEs4Linux&lt;/a&gt;, which allows you to install and run multiple versions of Internet Explorer on your Linux machine.  I&#039;m sure there is something similar for Windows.  For Mac, you&#039;re still stuck, as IE no longer is available for Mac (at least last I checked).  I suppose you could install Linux under Parallels and then install IEs4Linux. &lt;img src=&quot;http://jjncj.com/blog/templates/default/img/emoticons/smile.png&quot; alt=&quot;:-)&quot; style=&quot;display: inline; vertical-align: bottom;&quot; class=&quot;emoticon&quot; /&gt;&lt;br /&gt;
&lt;br /&gt;
So, yes Gerv, IETab is harmful, but not only for the reasons you bring up. 
    </content:encoded>

    <pubDate>Fri, 20 Apr 2007 08:10:22 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/79-guid.html</guid>
    <category>carelessness</category>
<category>development</category>
<category>firefox</category>
<category>geek</category>
<category>linux</category>
<category>microsoft</category>
<category>programming</category>
<category>security</category>

</item>
<item>
    <title>There are no Mac viruses because...you can't</title>
    <link>http://jjncj.com/blog/archives/74-There-are-no-Mac-viruses-because...you-cant.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/74-There-are-no-Mac-viruses-because...you-cant.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=74</wfw:comment>

    <slash:comments>1</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=74</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    &lt;a href=&quot;http://izzy.homeip.net&quot;  title=&quot;Izzy&#039;s blog&quot;&gt;Izzy&lt;/a&gt; has a good post about &lt;a href=&quot;http://izzy.homeip.net/archives/31-OS-Security-and-Myths.html&quot;&gt;security, viruses, and myths&lt;/a&gt;.  In it, he explores the &quot;age old&quot; question as to why there are no viruses for Macs.  While, in the past, the answer &lt;strong&gt;may&lt;/strong&gt; have been market share, the main reason now is the same reason there are no viruses for Linux, Solaris, or any operating system with a strong security model: You. Simply. Can&#039;t. Write. One. At least not one that will have any measureable affect.&lt;br /&gt;
&lt;br /&gt;
Why? Two words: security model.  In the non-Windows world, users run as normal users, and not as administrators.  Any application or script compromised can only modify files owned by that user.  Any attempts to modify system files or system binaries will be denied.  Now, Windows Vista is supposed to solve some of this by making a user run as a normal user, and prompting for additional privileges when needed, but I&#039;ve read it&#039;s so annoying, people are turning the feature off and running as administrator.&lt;br /&gt;
&lt;br /&gt;
Another reason: bad software design.  Example: scripts in Word documents and in Lookout, er, Outlook e-mails that run without user intervention, and e-mail themselves to everyone in your address list.  Yes, KDE4 will have DBus-in-everything-even-your-toaster&lt;sup&gt;&amp;reg;&lt;/sup&gt;, but to my knowledge, scripts attached to e-mails will not run without user intervention.  And if you run a script or binary attached to an e-mail, you had better know what it is (there are also the holes in MS products that can be used to lie about the type of a file: calling an executable file a jpeg, for instance).&lt;br /&gt;
&lt;br /&gt;
Another choice that makes Linux a little bit more secure (not sure about Mac) is that any file on a web site or in an e-mail is either opened by the application that can view it (&lt;b&gt;not&lt;/b&gt; execute it) or it must be saved and have its execute permission set.  No accidentally executing a program attached to an e-mail here.  Granted, you could say, &quot;Open this EXE attachment with Wine&quot; (a windows emulator) or, &quot;Open this Python script attachment with the Python interpreter,&quot; but again, you must take an explicit action, and are warned that opening an attachment can compromise your system&#039;s security. [Disclaimer: I&#039;ve not checked the behavior of Kommander scripts for KDE.  Clicking on one may offer to open them with the Kommander script interpreter.]&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;But even if&lt;/b&gt; you open an attachment with malicious code, it is running as your user, and no files can be modified other than your own.  Conclusion: the virus can&#039;t spread on the system, and it can&#039;t infect system files.  The worst it can do is replicate itself (poorly) to the user&#039;s files and &lt;b&gt;maybe&lt;/b&gt; other people in the user&#039;s address book.  It can&#039;t install itself as a system service, install a key-stroke logger, or other such malicious behavior.&lt;br /&gt;
&lt;br /&gt;
Note: If you have scripts in your home directory which you run as administrator, make sure they&#039;re owned by administrator and not by you.  Hmm...need to check my ~/bin.  But then again, if you have scripts in your home directory that you run as administrator, it probably means they are custom scripts that would be very hard to write viruses for anyway.&lt;br /&gt;
&lt;br /&gt;
So, it all comes down to security and how it is enforced.  If Microsoft wants a secure system, they should write an emulator for backwards compatibility, throw away Windows, and start from the ground up to design and write a secure operating system. 
    </content:encoded>

    <pubDate>Tue, 10 Apr 2007 22:37:00 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/74-guid.html</guid>
    <category>apple</category>
<category>development</category>
<category>geek</category>
<category>linux</category>
<category>macintosh</category>
<category>microsoft</category>
<category>osx</category>
<category>security</category>
<category>software</category>
<category>tech</category>
<category>vista</category>

</item>
<item>
    <title>A New Software Development Model</title>
    <link>http://jjncj.com/blog/archives/57-A-New-Software-Development-Model.html</link>
            <category>geek</category>
            <category>humor</category>
    
    <comments>http://jjncj.com/blog/archives/57-A-New-Software-Development-Model.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=57</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=57</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    Those of us who have been through software development, or sat through a software engineering course, learned about many different software development models: Waterfall, Iterative, etc.  Larry Wall, the creator and &quot;chief programmer&quot; for Perl came up with a new one when asked &quot;What criteria mark the closure of perl6 specification?&quot;&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote&gt;It seems you are presuming a Waterfall model of development here. We&#039;re not doing the Waterfall, we&#039;re doing the Whirlpool, where the strange attractor whirls around with feedback at many levels but eventually converges on something in the middle. In other words, a whirlpool sucks, but the trick is to position your whirlpool over your intended destination, and you&#039;ll eventually get there, though perhaps a bit dizzier than you&#039;d like.&lt;/blockquote&gt;&lt;br /&gt;
&lt;br /&gt;
I&#039;m sure we&#039;ll see it in all the major text books in a few years. 
    </content:encoded>

    <pubDate>Wed, 21 Mar 2007 11:41:27 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/57-guid.html</guid>
    <category>development</category>
<category>geek</category>
<category>humor</category>
<category>perl</category>
<category>software</category>

</item>
<item>
    <title>Beautiful Uses for Old Computer Hardware</title>
    <link>http://jjncj.com/blog/archives/56-Beautiful-Uses-for-Old-Computer-Hardware.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/56-Beautiful-Uses-for-Old-Computer-Hardware.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=56</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=56</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    You have a few hundred old computer mother boards.  Your company needs a sign for their new lobby.  What do you do?  If you&#039;re the geeks at &lt;a href=&quot;http://www.serverbeach.com/&quot;  title=&quot;Great Hosting!&quot;&gt;ServerBeach&lt;/a&gt;, you spend twelve hours on a weekend, and come up with the &lt;a href=&quot;http://bigmarketing.wordpress.com/2007/02/05/the-mother-of-all-motherboards/&quot;  title=&quot;Hardware Art&quot;&gt;the most beautiful lobby sign&lt;/a&gt; I&#039;ve seen anywhere.&lt;br /&gt;
&lt;br /&gt;
Certainly something that will make any geek catch his or her breath at first sight.&lt;br /&gt;
 
    </content:encoded>

    <pubDate>Mon, 19 Mar 2007 22:45:04 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/56-guid.html</guid>
    <category>art</category>
<category>geek</category>
<category>hardware</category>
<category>tech</category>

</item>
<item>
    <title>The Truth About Rome's Fall</title>
    <link>http://jjncj.com/blog/archives/49-The-Truth-About-Romes-Fall.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/49-The-Truth-About-Romes-Fall.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=49</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=49</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    &quot;...  one of the main causes of the fall of the Roman Empire was that, lacking zero, they had no way to indicate successful termination of their C programs.&quot;  -- Robert Firth&lt;br /&gt;
&lt;br /&gt;
[Old, but good.] 
    </content:encoded>

    <pubDate>Wed, 07 Mar 2007 22:20:52 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/49-guid.html</guid>
    <category>geek</category>
<category>programming</category>
<category>tech</category>

</item>
<item>
    <title>E-bay's sign-in server can assist phishers</title>
    <link>http://jjncj.com/blog/archives/36-E-bays-sign-in-server-can-assist-phishers.html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/36-E-bays-sign-in-server-can-assist-phishers.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=36</wfw:comment>

    <slash:comments>1</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=36</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    I came across an interesting phishing attempt the other day.  I got an e-mail that wanted me to sign in to E-Bay for a &quot;dispute resolution.&quot;  The odd thing was, all the links actually went to E-Bay&#039;s sign in page.  Well, that is odd for two reasons: 1) links in E-Bay e-mails don&#039;t usually link straight to the sign-in page (you are redirected there if you need to be signed in), and 2) if you are being &quot;phished,&quot; the phishers don&#039;t link to the legitimate site.  So, I investigated further and discovered that after you signed in on the legitimate sign-in page, it redirected you to the URL that the phisher had provided, which was a page that looked like the e-bay sign in page.  It appears it was designed to convince you that you had mistyped your password and were being prompted again.  This was especially scary for two reasons: 1) if you had checked the URL and the security certificate before you signed in, you might not check the second time and enter your information again, and 2) it was using E-Bay&#039;s own sign-in procedure to redirect you to a phishing page.  I contacted E-Bay about this and suggested they lock down their redirector.  They e-mailed me back the standard boiler-plate reply and said:&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote&gt;Thank you for writing to eBay regarding the email you received.&lt;br /&gt;
&lt;br /&gt;
Emails such as this, commonly referred to as &quot;spoof&quot; or &quot;phished&quot; &lt;br /&gt;
messages, are sent in an attempt to collect sensitive personal or &lt;br /&gt;
financial information from the recipients. &lt;br /&gt;
&lt;br /&gt;
The email you reported was not sent by eBay. We have reported this email&lt;br /&gt;
to the appropriate authorities. &lt;br /&gt;
&lt;br /&gt;
In the future, be very cautious of any email that asks you to submit &lt;br /&gt;
information such as your credit card numbers or passwords. If you are &lt;br /&gt;
ever concerned about an email you receive from eBay, simply follow these&lt;br /&gt;
steps:&lt;br /&gt;
&lt;br /&gt;
1. Open a new Web browser and type www.ebay.com into your browser &lt;br /&gt;
address field to go directly to the eBay site. &lt;br /&gt;
&lt;br /&gt;
2. On eBay, sign into your account and click the &quot;My eBay&quot; button at the&lt;br /&gt;
top of the page.&lt;br /&gt;
&lt;br /&gt;
3. Check the My Messages section located at the top of the My eBay page.&lt;br /&gt;
If an email affects your eBay account, it&#039;s now in My Messages. Any &lt;br /&gt;
email sent to your registered eBay email address from eBay or from &lt;br /&gt;
another eBay member via eBay&#039;s member-to-member communication system &lt;br /&gt;
will now appear in My Messages.&lt;/blockquote&gt;&lt;br /&gt;
&lt;br /&gt;
All very good advice, but it does not fix the problem that E-Bay&#039;s sign-in procedure can be used to catch people off guard and possible obtain their login credentials.&lt;br /&gt;
&lt;br /&gt;
You can see an example of what happens by going &lt;a href=&quot;http://signin.ebay.com/ws/eBayISAPI.dll?SignInMCAlert&amp;ru=http://jjncj.com/blog/archives/36-E-bays-sign-in-server-can-assist-phishers.html&quot;  title=&quot;E-Bay Redirector Example&quot;&gt;to this link&lt;/a&gt;.  After you sign in, you will be redirected back to this post.&lt;br /&gt;
&lt;br /&gt;
I hope E-Bay fixes this soon. 
    </content:encoded>

    <pubDate>Mon, 19 Feb 2007 21:54:46 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/36-guid.html</guid>
    <category>ebay</category>
<category>geek</category>
<category>phishing</category>
<category>security</category>
<category>tech</category>

</item>
<item>
    <title>Time to change languages</title>
    <link>http://jjncj.com/blog/archives/17-Time-to-change-languages.html</link>
            <category>geek</category>
            <category>programming</category>
    
    <comments>http://jjncj.com/blog/archives/17-Time-to-change-languages.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=17</wfw:comment>

    <slash:comments>3</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=17</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    If you&#039;re starting to end sentences &lt;a href=&quot;http://akbourne.com/2006/07/20/coding/&quot; &gt;with semicolons&lt;/a&gt; try Python. &lt;img src=&quot;http://jjncj.com/blog/templates/default/img/emoticons/smile.png&quot; alt=&quot;:-)&quot; style=&quot;display: inline; vertical-align: bottom;&quot; class=&quot;emoticon&quot; /&gt; My new primary language.  I have a draft saved at the moment about my transition to Python.  Short story: I&#039;m loving it.  Stay tuned. 
    </content:encoded>

    <pubDate>Tue, 30 Jan 2007 23:02:00 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/17-guid.html</guid>
    <category>geek</category>
<category>programming</category>

</item>
<item>
    <title>You know you've been browsing the web too much when...</title>
    <link>http://jjncj.com/blog/archives/16-You-know-youve-been-browsing-the-web-too-much-when....html</link>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/16-You-know-youve-been-browsing-the-web-too-much-when....html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=16</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=16</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    As a counterpoint to &lt;a href=&quot;http://akbourne.com/2007/01/29/resize/&quot;  title=&quot;Too much Photoshop&quot;&gt;Jon&#039;s&lt;/a&gt; Photoshop overdose, I have my own story.  When I was still living in the dorms, I was reading one night (in front of the computer, since I was working on a computer science class assignment) and turned the page.  I realized I didn&#039;t want to turn the page, and for the briefest moment, I started to reach for the &quot;Back&quot; button. 
    </content:encoded>

    <pubDate>Tue, 30 Jan 2007 21:34:30 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/16-guid.html</guid>
    <category>geek</category>

</item>
<item>
    <title>Ah, the fun of technology</title>
    <link>http://jjncj.com/blog/archives/7-Ah,-the-fun-of-technology.html</link>
            <category>geek</category>
            <category>tech</category>
    
    <comments>http://jjncj.com/blog/archives/7-Ah,-the-fun-of-technology.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=7</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=7</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    So, blogs support these things called trackbacks.  It&#039;s so blog writers will know you&#039;ve made reference to their article in your blog.  Of course, they don&#039;t always work out of the box, so things have to be tweaked.  &lt;a href=&quot;http://akbourne.com/&quot;  &gt;Jon&lt;/a&gt; and I think we have worked out the reason I couldn&#039;t create trackbacks to his site.  We&#039;ll test this out by pointing you to one of this post on the joys (that Crystal and I are experiencing as well) of deciphering &quot;&lt;a href=&quot;http://akbourne.com/2007/01/24/boppy/&quot;&gt;toddlerese&lt;/a&gt;.&quot; 
    </content:encoded>

    <pubDate>Thu, 25 Jan 2007 23:08:00 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/7-guid.html</guid>
    <category>geek</category>
<category>tech</category>

</item>
<item>
    <title>It's always nice to be noticed</title>
    <link>http://jjncj.com/blog/archives/6-Its-always-nice-to-be-noticed.html</link>
            <category>family</category>
            <category>geek</category>
    
    <comments>http://jjncj.com/blog/archives/6-Its-always-nice-to-be-noticed.html#comments</comments>
    <wfw:comment>http://jjncj.com/blog/wfwcomment.php?cid=6</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>http://jjncj.com/blog/rss.php?version=2.0&amp;type=comments&amp;cid=6</wfw:commentRss>
    

    <author>joshua@joshuakugler.com (Joshua Kugler)</author>
    <content:encoded>
    &lt;a href=&quot;http://akbourne.com/2007/01/24/kuglerssite/&quot; &gt;John Bourne&lt;/a&gt; made mention of our new &lt;a href=&quot;http://jjncj.com/&quot; &gt;web site&lt;/a&gt;.  It&#039;s nice to get pointed to by an established blogger.  And, no, Jon, I don&#039;t mind you filing the notice under &quot;geek.&quot; &lt;img src=&quot;http://jjncj.com/blog/templates/default/img/emoticons/smile.png&quot; alt=&quot;:-)&quot; style=&quot;display: inline; vertical-align: bottom;&quot; class=&quot;emoticon&quot; /&gt; 
    </content:encoded>

    <pubDate>Thu, 25 Jan 2007 21:44:58 +0000</pubDate>
    <guid isPermaLink="false">http://jjncj.com/blog/archives/6-guid.html</guid>
    <category>family</category>
<category>geek</category>

</item>

</channel>
</rss>
