Blogs

15 Jun

Indisputable risk of the AT&T iPad hack

Tagged AT&T, cracking, iPad, networking security, phishng, spear phishing, weaponized email

The tech and security news stream has been full of iPad AT&T hack coverage with AT&T trying to downplay the severity of the hack and security experts rebutting AT&T's claims stating that the ICC-ID can be used to determine other information.  I'm not an expert on 3G security and don't know much about ICC-IDs but I can tell you that this leak has serious indisputable security implications regardless of potential attacks via the 3G network which everyone seems to be focusing on at the moment.

The leak of verified email addresses, especially of high-profile individuals and those with security clearance, is a huge problem.  Obtaining current email addresses is the first step in targeted attacks like the recent one against Google and others. 

Now that these addresses are public you can bet many accounts on that list are receiving carefully crafted, targeted phishing emails known in the industry as "spear phishing" or "weaponized email".  A single click on a link in a very legitimate looking email could compromise not only the computer on which the link was clicked but potentially every computer on the same network.  Imagine if New York City Mayor Michael Bloomberg or White House Chief of Staff Rahm Emanuel, both whose emails were leaked, were to click on a malicious link in an email appearing to be from a legitimate source.  What kind of damage could that do?  If Google and other high-tech corporations could be hacked, I'm sure the US government is not unhackable.

09 Jun

Stay connected to your communities with ego feeds

Tagged feed, Flickr, google reader, productivity, rss, social, web, youtube

rssicon

Whether creating content is your job or just a hobby it's useful to follow and interact with your various online communities.  Most webapps send email notifications to let you know when someone has favored or commented on your content but that can be overwhelming.  Here's a trick I use to stay current with site activity without the email clutter.  Turn off email notifications and subscribe to activity feeds instead.

19 May

My Android Apps List

Tagged Android, apps, gadgets, mobile

Android market logoThis is a list of apps I currently have installed on my Android phone.  I'll try to keep the list up to date but if you want real-time updates follow @KylesApps on Twitter which uses AppAware to automatically tweet my app activity.

Update

2010-06-07

I've decided to provide a link to my appbrain page instead. It won't have my opinions but it'll be up to date.

View installed apps on Appbrain

03 Feb

Shoddy DeLOCK craftsmanship and QA

Tagged crap, gadgets, hardware, soldering

delock box

This was supposed to be a post about how much better my new hard drive case performs than my old case but I couldn't get the new case to work.  So, like any curious geek I poked around to see if I could find out what was wrong even though I have very little knowledge of electronics engineering.  What I came to find was the shoddiest craftsmanship I've seen in a modern electronic gadget.  The reseller (not manufacturer) who sold the device through Amazon UK promptly issued a full refund so there's no hard feelings toward them.  The reseller told me not to send the defective unit back so I decided to prod a bit more and blog about it.

02 Feb

How the "to." URL shortener works

Tagged dns, domain, fqdn, networking, networking security, tld, url shortener

to URL imageMy friend Paul tweeted about a new URL shortener like bit.ly and is.gd but with one major difference.  The domain for this shortener is only 2 letters "t-o" and they're not separated by a dot.  The link to the shortener was posted as http://to./ which appears to be an invalid link since it has no top level domain (com, net, org etc.) but low and behold, it worked.

14 Jan

Aunty Marialani's "Go Cook 'em!" Hawaiian style cookbook

Tagged food, hawaii

Here's another unorthodox post but it's a subject very dear to me, local Hawaiian food.

I dislike email forwards since it's usually some lame inspirational message or joke but this one was a gem.  Attached to the email was an interesting cookbook with an awesome title, "Aunty Marialani's Go Cook 'em!". 

Download the cookbook

File removed. See update below.

Most readers from Hawaii will recognize the name but for those of you who don't, here's the video clip from where the title comes.

 

07 Jan

Status.net Word Filter Plugin (Wordfilter)

Tagged code, Laconica, microblogging, php, plugin, profanity, status.net

The TWiT Network has pretty strict rules about profanity across all channels including the netcasts, chatrooms and the TWiT Army Canteen. There are usually moderators lurking the IRC and microblog but once in a while some profanity gets through the cracks.

16 Dec

Poor Man's Dock - add a simple dock style launcher in XFCE

Tagged FLOSS, tips, ui, xfce

dock desktop

After having gotten fed up with Gnome I decided to try XFCE as suggested by most of my Linux-using Twitter friends and I must say, it's a huge improvement.  One thing I missed though was Gome-do's dock launcher.  While I could install Gnome-do in XFCE it would install a ton of required packages and also requires compiz to look normal.  Instead I decided to create a simple and fast dock launcher that needed no extra packages.

31 Oct

Twitter lists crowdsource invaluable metadata, will replace follower count

Tagged meta, tags, twitter, twitter lists, web

 

Today Twitter rolled out the new "lists" feature to the remaining tweeters who were not already part of the beta and at first glance it's clear that Twitter lists will drastically change the way we view our social network.

27 Sep

Yamanote chocolate train (Meiji)

Tagged japan, marketing, meiji, tokyo, train

It's not uncommon to see advertising on the sides of trains in Japan but it is rare to see one that's been completely covered in ads. Update: According to my friend @euphorythm, when a train's exterior is covered in a single company's advertising they say it's been "hijacked".

All code on this site is free for use at your own risk and provided as-is under the WTFPL license unless otherwise stated. Attribution is appreciated but not required.
Blog content, with the exception of externally quoted material, is licensed under the Creative Commons Attribution 3.0 license