<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Conner&#039;s Blog &#187; security</title>
	<atom:link href="http://connermccall.com/topic/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://connermccall.com</link>
	<description>asking questions and failing to answer them</description>
	<lastBuildDate>Tue, 27 Jul 2010 16:24:08 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Sensationalism at Its Worse</title>
		<link>http://connermccall.com/20090506/sensationalism-at-its-worse/</link>
		<comments>http://connermccall.com/20090506/sensationalism-at-its-worse/#comments</comments>
		<pubDate>Wed, 06 May 2009 18:19:56 +0000</pubDate>
		<dc:creator>Conner</dc:creator>
				<category><![CDATA[Thoughts]]></category>
		<category><![CDATA[gps]]></category>
		<category><![CDATA[journalism]]></category>
		<category><![CDATA[media]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://connermccall.com/?p=1099</guid>
		<description><![CDATA[I wouldn&#8217;t be writing this if I hadn&#8217;t met someone today who was actually worried about it.  ABC published this article a while ago, and it must have aired on channel five recently.  It&#8217;s your basic public safety piece.  It&#8217;s about a &#8220;reformed&#8221; thief who breaks into a car and a home and steals a [...]]]></description>
			<content:encoded><![CDATA[<p>I wouldn&#8217;t be writing this if I hadn&#8217;t met someone today who was actually worried about it.  ABC <a href="http://abclocal.go.com/wpvi/story?section=news/national_world&amp;id=6752528">published this article</a> a while ago, and it must have aired on channel five recently.  It&#8217;s your basic public safety piece.  It&#8217;s about a &#8220;reformed&#8221; thief who breaks into a car and a home and steals a bunch of stuff and how the family is shocked to find out they are vulnerable.</p>
<p>These pieces always drive me a little nuts.  Everyone&#8217;s home would be an easy target if someone spent time learning their routine.  In this example, the thief knew the family was at a Little League game so it was obvious he would have free reign of the home for an hour or so.</p>
<p>This was the part of the article the woman I met today was worried about.</p>
<blockquote><p>Let&#8217;s start with your car. If your GPS has a key lock, use it. If it doesn&#8217;t, don&#8217;t list your home as &#8220;home.&#8221; Instead, call your address &#8220;ice cream store&#8221; or &#8220;supermarket.&#8221; That way, a thief can&#8217;t find out where you live.</p></blockquote>
<p>Dear ABC, I really doubt car thieves make it a priority to rob the same person twice.  Additionally, it&#8217;s not difficult to find the home address in a vehicle.  The last time I checked your home address is on a few items on your car including the registration and possibly your insurance card.   If a thief was really stupid enough to intentionally rob the same person twice, its the work of a minute to open the glove box and put the address into your GPS.</p>
<p>For anyone reading this who might not have their address in their car.  Please don&#8217;t think your safe renaming your home address &#8220;Ice Cream Store&#8221;   <a href="http://en.wikipedia.org/wiki/Security_through_obscurity#Arguments_against">Security by obscurity</a> is a poor form of security in any guise.</p>
    ]]></content:encoded>
			<wfw:commentRss>http://connermccall.com/20090506/sensationalism-at-its-worse/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thoughts and Links 11/14 Edition</title>
		<link>http://connermccall.com/20081114/thoughts-and-links-1114-edition/</link>
		<comments>http://connermccall.com/20081114/thoughts-and-links-1114-edition/#comments</comments>
		<pubDate>Fri, 14 Nov 2008 20:48:09 +0000</pubDate>
		<dc:creator>Conner</dc:creator>
				<category><![CDATA[Thoughts]]></category>
		<category><![CDATA[basketball]]></category>
		<category><![CDATA[canada]]></category>
		<category><![CDATA[cats]]></category>
		<category><![CDATA[lebron james]]></category>
		<category><![CDATA[music]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://connermccall.com/?p=512</guid>
		<description><![CDATA[If you own a cat, you need to see this.  Protect yourself. Be careful in Canada, someone is chopping off feet. The NCAA extended the three point line for men&#8217;s basketball.  I guess they felt high scoring was bad for the game. If you are in MSP, check out this list of things to do. [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li>If you own a cat, you need to <a title="How to Tell if Your Cat is Plotting to Kill You" href="http://www.catswhothrowupgrass.com/kill.php">see this</a>.  Protect yourself.</li>
<li>Be careful in Canada, someone is <a href="http://www.cnn.com/2008/CRIME/11/12/canada.feet.mystery/index.html">chopping off feet</a>.</li>
<li>The NCAA <a href="http://www.startribune.com/sports/gophers/34435049.html?elr=KArks:DCiU1OiP:DiiUiD3aPc:_Yyc:aUU">extended the three point line</a> for men&#8217;s basketball.  I guess they felt high scoring was bad for the game.</li>
<li>If you are in MSP, check out this <a href="http://feeds.feedburner.com/~r/freshmn/~3/452526265/">list of things to do</a>. [<a href="http://fresh.mn">via Fresh.mn</a>]</li>
<li><a href="http://www.marginalrevolution.com/marginalrevolution/2008/11/now-is-the-time.html">This article&#8217;s</a> idea is interesting, but what&#8217;s even more interesting is the amount of land the U.S. government owns in the west<span id="more-512"></span></li>
<li>In another Duh! moment, we discover that when <a href="http://www.cnn.com/2008/HEALTH/11/13/alcohol.tax.deaths/index.html">people consume less alcohol</a> because it costs more, less people die in alcohol related deaths.  Of course we don&#8217;t consider taxing gas more to <a href="http://blog.toyota.com/2008/09/on-safety-and-d.html">prevent deaths</a>.</li>
<li><a href="http://www.schneier.com/blog/archives/2008/11/reading_a_lette.html">Another reminder</a> to shred everything, including envelopes.</li>
<li>I was reminded of <a href="http://flickr.com/photos/connerm/477456280/">the dessert</a> at Chino Latino&#8217;s today.  It was amazing.</li>
<li><a href="http://minnesota.publicradio.org/display/web/2008/11/11/tom_morello/">Tom Morello performed</a> at The Current this week.  If you like music you have to watch.  If you don&#8217;t like music, the door is on the left.</li>
<li>Lebron James will be remembered as the best NBA player ever.  He&#8217;s a freak of nature.  If you don&#8217;t believe me <a href="http://sports.yahoo.com/nba/blog/ball_dont_lie/post/Video-LeBron-James-dunks-from-free-throw-line-?urn=nba,121604">watch this</a>.</li>
</ul>
    ]]></content:encoded>
			<wfw:commentRss>http://connermccall.com/20081114/thoughts-and-links-1114-edition/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Setting File Permission</title>
		<link>http://connermccall.com/20080808/setting-file-permission/</link>
		<comments>http://connermccall.com/20080808/setting-file-permission/#comments</comments>
		<pubDate>Fri, 08 Aug 2008 14:24:01 +0000</pubDate>
		<dc:creator>Conner</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[apache]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://connermccall.com/?p=167</guid>
		<description><![CDATA[Can we all please agree to stop doing this?  From here. sudo chmod 0777 /var/cache/eaccelerator Why in the world would you do this? It is  saner and more secure to set the directory owner to the user your web server runs as.  Yes, in this case it probably won&#8217;t make much difference, but I don&#8217;t [...]]]></description>
			<content:encoded><![CDATA[<p>Can we all please agree to stop doing this?  From <a href="http://wiki.developer.mindtouch.com/User:Aurora/Defunct_Pages/EAccelerator">here</a>.<br />
<code>sudo chmod 0777 /var/cache/eaccelerator</code><br />
Why in the world would you do this?  It is  saner and more secure to set the directory owner to the user your web server runs as.  Yes, in this case it probably won&#8217;t make much difference, but I don&#8217;t know how many times I&#8217;ve seen tutorials and forum posts that state, &#8220;oh, just run chmod 777 on that directory&#8221;</p>
<p>I understand that making your tutorials easy to follow is important.  Still, could we all at least make an effort to recommend that instead of running chmod 0777, that the user change the ownership to the appropriate user or group?</p>
<p>Oh and in the case of the above tutorial, the appropriate command should have been:<br />
<code>sudo chown www-data</code><br />
Then, only root and the webserver have write access to the directory.  Much better than allowing everyone full access.</p>
    ]]></content:encoded>
			<wfw:commentRss>http://connermccall.com/20080808/setting-file-permission/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Quick App Recommendation</title>
		<link>http://connermccall.com/20080801/quick-app-recommendation/</link>
		<comments>http://connermccall.com/20080801/quick-app-recommendation/#comments</comments>
		<pubDate>Fri, 01 Aug 2008 13:43:19 +0000</pubDate>
		<dc:creator>Conner</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[advice]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://connermccall.com/?p=132</guid>
		<description><![CDATA[Well it&#8217;s a bookmarklet to be honest, but it is an incredibly useful tool.  I discovered it listening to This week in Tech at twit.tv.(Great Podcast by the Way)  It is called SuperGenPass.  It is a bookmarklet, which means that it is in your browsers bookmarks but instead of going to a web page, it [...]]]></description>
			<content:encoded><![CDATA[<p>Well it&#8217;s a bookmarklet to be honest, but it is an incredibly useful tool.  I discovered it listening to This week in Tech at <a title="Twit Netcast Network" href="http://twit.tv">twit.tv</a>.(Great Podcast by the Way)  It is called <a title="SuperGenPass" href="http://supergenpass.com">SuperGenPass</a>.  It is a bookmarklet, which means that it is in your browsers bookmarks but instead of going to a web page, it performs an action.</p>
<p>This bookmarket allows you to generate random passwords using a word or phrase.  Basically what you do is you choose a Master Password.  Now when you visit a site you want to log into, you input your Master Password into the password field and click on the bookmarklet and it generates a random password.  Now the great thing about this is that it allows you to use the same Master Password for all websites, but when it generates the random password it uses the domain you are at.  In my blog&#8217;s case it would use connermccall.com as part of the password creation process. Using a random test phrase as my master password, this bookmarklet generated this password &#8216;zTew5ZoSsfjU&#8217;.</p>
<p>This means that you only need to remember your master password, but you can use original and secure passwords at all of your sites, and since it&#8217;s a bookmarket, as long as you have access to your browser or the web, you can always recreate your passwords.  This is a great way to increase your safety and security on the Internet, without causing much inconvienence, which really should be the point of all security software.</p>
    ]]></content:encoded>
			<wfw:commentRss>http://connermccall.com/20080801/quick-app-recommendation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
