Follow Slashdot blog updates by subscribing to our blog RSS feed

 



Forgot your password?
typodupeerror
Security

Linux, Twitter, and Red Hat "Win" Big At Pwnie Awards 63

hugmeplz writes "The third annual Pwnie Awards took place last night at Black Hat in Las Vegas, and a full list of the winners has been posted. 'Most Epic Fail' honors went to the notorious Twitter/Google Apps hack from earlier this month that raised all sorts of questions about cloud computing security. Red Hat got skewered with the 'Mass 0wnage' award, also known as the 'Pwnie for Breaking the Internet,' for issuing a version of OpenSSH that left a backdoor open to hackers. The Linux development team earned 'Lamest Vendor Response' recognition for 'continually assuming that all kernel memory corruption bugs are only Denial-of-Service.' Naturally, Microsoft didn't slip past judges' eyes. Its vulnerability that enabled the Conficker worm to do its thing earned honors as the 'Most Overhyped Bug.' On the more positive side, the Pwnie Awards recognized security pros Wei Yongjun, sgrakkyu, Sebastian Kramer and Bernhard Mueller for accomplishments such as discovering bugs and demonstrating exploits. The Pwnie for Best Song went to Doctor Braid for his song Nice Report. Solar Designer snagged the Lifetime Achievement Award, for among other things, being the first to demonstrate heap buffer overflow exploitation, according to the Pwnie Awards Web site."
Cellphones

Apple Says iPhone Jailbreaking Could Hurt Cell Towers 495

AHuxley writes "Apple suggests that the nation's cellphone networks could be open to 'potentially catastrophic' cyberattacks by iPhone-using hackers at home and abroad if iPhone owners are permitted to legally jailbreak their wireless devices. The Copyright Office is currently considering a request by the Electronic Frontier Foundation to legalize the widespread practice of jailbreaking. Apple has responded to the request by saying that if the 'baseband processor' software — which enables a connection to cell phone towers — is exposed, then a user could crash the tower software, or use the Exclusive Chip Identification number to make calls anonymously. Apple also thinks its closed business model is what made the iPhone a success. The Vodafone scandal from a few years back showed how a network could be compromised, but that was from within. So, what do you think? Is Apple playing the 'evil genius' hacker card or can 'anyone' with a smartphone and a genius friend pop a US cell tower?"
Software

Submission + - CoreCodec Appologizes for CoreAVC Takedown (arstechnica.com)

I Don't Believe in Imaginary Property writes: "In a follow-up to the previous story, CoreCodec has apologized for the incorrect DMCA Takedown notice that took the CoreAVC project offline. There's also a public statement by cofounder Dan Marlin saying in part, 'I'd like to publicly apologize to Alan for the disconnect between him and us as well as the disruption to the project as there was no ill will intended and we were already working on a resolution with him before this went public.' They've also created a new policy for sending out DMCA Takedown notices, so that they won't misuse them in the future."
Software

Second Life To Open Source Server Code 221

mrspin writes "Having already taken the timid steps of open-sourcing the code for its client software, Linden Lab has confirmed that they'll be going the whole way, and will soon be opening up the server code for Second Life. This furthers Second Life's ambitions to be a fully distributed 3D network — built on interoperability and not owned by one company — a bit like the Internet itself. ZDNet's The Social Web asks: 'who will be the first to offer Second Life hosting or use the server code for their own internal purposes? IBM would be an obvious candidate, perhaps offering corporate Second Life services. And for the rest of us? GoogleLife, free virtual land — ad supported of course. It's certainly a possibility.'"
Businesses

Coldwell Banker To Sell Second Life Properties 175

Dekortage sends news of what may be a new development in the attempted mainstreaming of Second Life. We've seen plenty of examples of real-world news media, politicos, and PR campaigns setting up in SL. But so far most of this action has been about first-life organizations trying to gain real-world publicity by their forays into SL. CNN is reporting that the real estate firm Coldwell Banker is moving into SL for the purpose of selling and renting in-world properties. From the article: "Coldwell Banker has bought extensive tracts of property on the central 'mainland' of Second Life. (Most companies own 'islands' scattered all over.) It subdivided this digital land into 520 individual houses and living units, half of which it will sell and half it will rent... 'A small number of land barons mostly control real estate in Second Life, and we thought we could bring real estate to the masses,' [a VP explained]."
The Internet

Looking Inside the Second Life Data Centers 103

An anonymous reader writes "InformationWeek looks inside the data centers that power the game Second Life. Tidbits from the article: The software architecture is an extension of the virtual world metaphor of Second Life. At any time, it's possible to walk into one of Second Life's two data centers, pat one of the rack-mounted servers, and say that particular server is running virtual New York, or San Francisco, or ancient Rome, and imagine itty-bitty people and buildings inside the 1U rack-mounted servers. Linden Lab, which develops and maintains Second Life, runs 2,000 Intel- and AMD-based servers in two co-location facilities in San Francisco and Dallas. And, contrary to widespread belief among Second Life users, Linden Lab has not decided whether to open-source the Second Life server software."

Slashdot Top Deals

The world is moving so fast these days that the man who says it can't be done is generally interrupted by someone doing it. -- E. Hubbard

Working...