Archive for August, 2005

CAN-2005-1527

Monday, August 22nd, 2005

There is a major vulnerability in the awstats log analyzer, versions 6.4 and lower. Basically, awstats passes a string from the log file straight to Perl’s eval() (which is truly an awful idea, from both security and performance standpoint). Naturally this leads to pwnage if you can get Apache to log a particularly misformed request.
And […]

Sex, violence, and crude language

Thursday, August 18th, 2005

The recent Hot Coffee mod controversy had inspired a number of (mostly Democrat) politicians, including Sen. Clinton, to attack the computer game industry. They call for federal studies on the effect of games on children’s mental development; they are trying to start Congressional inquiries; they are wooing the crowds with “think of the children”. In […]

US visa policy impedes science

Wednesday, August 17th, 2005

Xioayun Wang is a professor at Shandong University, China. She is one of the leading cryptographers of today; she helped break (well, not quite break, but drastically reduce the complexity of) MD5, SHA0, and SHA1 hash functions. Thanks to her, projects that currently rely on MD5 and SHA1 for verification of data (like BitTorrent, Portage, […]

Back from the dead (with random links)

Tuesday, August 16th, 2005

Exams are over with; now, once again, I have some time to write.
First, A. Lebedev, greatest Russian web designer, author of the famous Ководство (translated into English as Mandership) has designed a keyboard. The ultimate keyboard. Optimus, the Ultimate Keyboard of Doom. I imagine writing a custom driver for the thing to use it with […]

Random links of the hour

Thursday, August 4th, 2005

A humorous but accurate (warning: pdf) explanation of why apache’s config files are not everyone’s cup of tea. (Not that I have a problem with them — but that is purely thanks to Gentoo and Debian providing sensible and self-documented default config files for their users to build on.)
One of deviantArt’s founders has been forced […]

Proper CSS

Tuesday, August 2nd, 2005

It appears that IE7 will fix numerous bugs in CSS support. That did not seem particularly newsworthy — I had seen Zen Garden just like everyone else, but for my purposes IE displayed CSS well enough — until I read about two very interesting uses for CSS that are not supported by IE6. First, using […]

On the way to the University

Monday, August 1st, 2005

Saw a little scene on the way to the University this morning. Two police cars in the right lane. Next to them, a Ford SUV — an Explorer or an Expedition, I think. A motorcycle — a new-looking yellow sportbike — on the ground, on its side, in front of the Ford. A person, in […]