Blog

Zombie postings with Captcha automation

Just got another comment posting request relating to a version 5.0 release of automated forum/blog spamming software which is guaranteed to get your customers ‘closer to your products’ by improving product and site visibility. It can also do in-forum PMs ‘for a more personal touch’ — ie violate any terms and conditions of a user environment to spam the web for cheap ...

Flash Exploit Protection

The folks over at www.foregroundsecurity.com have discovered (another) Flash exploit that makes use of a same-origin policy interpretatino malformation in the application. This vulnerability allows the same-origin policy of Adobe Flash to be exploited to allow nearly any site that allows user generated content to be attacked. No fix for this vulnerability currently exists. Two ways of dealing wit ...

And we’re on 2.8.6

Another quick upgrade to make it safe — 2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges. Not really pertinent here but good to keep it closed 🙂 The patching deals mainly with untrusted user issues, but “upgrading to 2.8.6 is recommended”. But you knew that already 🙂 ...

Virus Scanner Comparison

They ran a comparison of virus removal software in Oct ’09. Full results are here. Question is, why not compare latest versions throughout? Their methodology (a “work in progress”) suggests that the vendos provide their software, which is updated “as per the manual”… ...

Cloud Computing – on Crack

There are a range of ways that cloud computing can be used to leverage the power of a range of machine to achieve cheaply what you wouldn’t necessarily invest physically in. And to crack PGP or system passwords, you typically just need a lot of machines. So there are a few demonstrations here and here that show off the whole process, including spawning more instances than they typicially wa ...

Mobile Payments 2009 at The Forum, The Campus, Bryanston

And the light dims as the presentations are to start – two days of presentations on mobile payments and payment mechanisms. Featuring Paul Stemmet from MXit, Aletha Ling from Fundamo, Adrian Vermooten from ABSA who compares the pros and cons of the operator vs the banking-centric business model for mobile payments, let’s hope that the presentations and the stay up here in the city of ...

Serving video off the cloud

The website for Love never Dies features three videos, one of the Coney Island Waltz, and the other of the press release of the musical by Andrew Lloyd Webber. However, the video, run via the jquery plugin of an SWF video player is being served off http://cloudfront.loveneverdies.com. Which is in the cloud. ...

Postfix maximum individual mail size and mailbox size

If you’re getting the "5.3.4 Messag exceeds fixed limit” error, check on the default vs set values in your /etc/postfix/main.cf using postconf -d (for the default) and postconf -n (for the values you have set manually in the main.cf) Default for message_size_limit (maximum size per mail) is 10240000 (bytes, ie approx 10MB) Up this to your desired value, eg 30MB by setting postconf -e ...