<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The DF Lab &#187; miscellaneous</title>
	<atom:link href="http://blog.danfego.net/category/miscellaneous/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.danfego.net</link>
	<description>A guy like me?</description>
	<lastBuildDate>Tue, 03 Nov 2009 15:31:40 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Disabling Annoying Middle-Mouse Click Function in Firefox</title>
		<link>http://blog.danfego.net/2009/07/disabling-annoying-middle-mouse-click-function-in-firefox/</link>
		<comments>http://blog.danfego.net/2009/07/disabling-annoying-middle-mouse-click-function-in-firefox/#comments</comments>
		<pubDate>Sun, 12 Jul 2009 17:39:46 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>
		<category><![CDATA[configuration]]></category>
		<category><![CDATA[firefox]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=275</guid>
		<description><![CDATA[Starting today, I&#8217;ve had enough with accidentally missing my middle clicks on links and ending up having a (seemingly) random page pop. I should have looked at this a long time ago, but now is a good a time as any. By going into about:config and changing &#8220;middlemouse.contentLoadURL&#8221; from &#8220;true&#8221; to &#8220;false&#8221; I am now [...]]]></description>
			<content:encoded><![CDATA[<p>Starting today, I&#8217;ve had enough with accidentally missing my middle clicks on links and ending up having a (seemingly) random page pop. I should have looked at this a long time ago, but now is a good a time as any. By going into about:config and changing &#8220;middlemouse.contentLoadURL&#8221; from &#8220;true&#8221; to &#8220;false&#8221; I am now rid of this annoyance.</p>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2009%2F07%2Fdisabling-annoying-middle-mouse-click-function-in-firefox%2F&amp;title=Disabling%20Annoying%20Middle-Mouse%20Click%20Function%20in%20Firefox" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F07%2Fdisabling-annoying-middle-mouse-click-function-in-firefox%2F&amp;title=Disabling%20Annoying%20Middle-Mouse%20Click%20Function%20in%20Firefox" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2009/07/disabling-annoying-middle-mouse-click-function-in-firefox/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F07%2Fdisabling-annoying-middle-mouse-click-function-in-firefox%2F&amp;title=Disabling%20Annoying%20Middle-Mouse%20Click%20Function%20in%20Firefox" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2009%2F07%2Fdisabling-annoying-middle-mouse-click-function-in-firefox%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2009/07/disabling-annoying-middle-mouse-click-function-in-firefox/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Beware of Google?</title>
		<link>http://blog.danfego.net/2009/05/beware-of-google/</link>
		<comments>http://blog.danfego.net/2009/05/beware-of-google/#comments</comments>
		<pubDate>Sat, 30 May 2009 20:08:50 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[standards]]></category>
		<category><![CDATA[web]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=241</guid>
		<description><![CDATA[Earlier today, I read an interesting blog post by Dion Moult entitled &#8220;Beware of Google.&#8221; Skeptical, I gave it a full read, and have been giving it some thought. This whole idea comes somewhat counter to my normal thinking, since I&#8217;ve been drinking the Google Kool-Aid for years now. But I do think he makes [...]]]></description>
			<content:encoded><![CDATA[<p>Earlier today, I read an interesting <a href="http://thinkmoult.com/2009/05/30/beware-of-google/">blog post</a> by <a href="http://thinkmoult.com/">Dion Moult</a> entitled &#8220;Beware of Google.&#8221; Skeptical, I gave it a full read, and have been giving it some thought. This whole idea comes somewhat counter to my normal thinking, since I&#8217;ve been drinking the Google Kool-Aid for years now. But I do think he makes a strong point in that Google has built itself a somewhat monopolistic empire (though Google <a href="http://www.businessinsider.com/googles-were-not-a-monopoly-powerpoint-presentation-2009-5">disagrees</a>). In effect, in time, he argues, that just about every useful web application will be using Google&#8217;s APIs and toolkits. He writes:</p>
<blockquote><p>It doesn’t matter if it’s open-sourced, if you have to use Google Toolkit to make anything decent, that’s &#8220;Google is here to define what can be done&#8221; for you.</p></blockquote>
<p>Given the exhaustive list of services Google provides, I&#8217;d say this is actually a rather realistic path we&#8217;re trudging down. However, I feel like there is one force for freedom that will swoop in and save the day (and no, it&#8217;s not <a href="http://xkcd.com/344/">Richard Stallman</a>). It&#8217;s open standards for data. If open formats exist and are used to the letter and the ability to export and import from Google services are provided, then things will ultimately find a balance. Sure, billions of people will still flock to their amazing services (myself included), but having that freedom to have your own data with you gives you more than just peace of mind. It gives you the ability, on a whim, to pick up and move to another service in a snap. Of course, I&#8217;m also aware that standards are often <em>not</em> followed to the letter. Just look at proprietary additions to HTML and CSS by different browsers and what Microsoft has been <a href="http://www.odfalliance.org/blog/index.php/site/microsofts_odf_support_falls_short/">doing with ODF</a>.</p>
<p>In any case, back to the ideal world where standards are followed. As an example, let&#8217;s say Google Calendar starts doing some freaky tracking of where you go and you don&#8217;t like it (clearly I&#8217;m starved for creativity). Even now, you can go in, <a href="http://www.google.com/calendar/exporticalzip">export your calendars</a>, and dump them into, say, Yahoo. Or perhaps iCal on your Mac, or some other Desktop application. The point is, that you are not one bit tied to Google&#8217;s services, except to the extent that you make yourself tied to them (with the exception of email, where addresses are particularly annoying to change).</p>
<p>And then you may say, &#8220;well what if no alternatives exist?&#8221; And I say, alternatives <em>will</em> exist. Always. Perhaps they&#8217;ll be a bit slow-coming. Perhaps they won&#8217;t be as shiny. But sure as hell they&#8217;ll exist. Because there will always be people out there, like Dion <img src='http://blog.danfego.net/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> , that are watching the current web Giant(s) with a watchful eye. And that&#8217;s where the &#8220;power of community&#8221; (cliche, right?) comes into play. Google may have thousands (is it thousands?) of developers, but any given project, seen as an important enough need, can garner many, many talented developers to contribute to the cause.</p>
<p>So while it&#8217;s good to keep an eye out, I won&#8217;t be stressing too much about the future of the web. I&#8217;ll just keep my data safe, accessible, and ready to move on a moment&#8217;s notice.</p>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fbeware-of-google%2F&amp;title=Beware%20of%20Google%3F" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fbeware-of-google%2F&amp;title=Beware%20of%20Google%3F" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2009/05/beware-of-google/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fbeware-of-google%2F&amp;title=Beware%20of%20Google%3F" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fbeware-of-google%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2009/05/beware-of-google/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Computer (and its woes)</title>
		<link>http://blog.danfego.net/2009/05/new-computer-and-its-woes/</link>
		<comments>http://blog.danfego.net/2009/05/new-computer-and-its-woes/#comments</comments>
		<pubDate>Tue, 26 May 2009 06:03:02 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>
		<category><![CDATA[games]]></category>
		<category><![CDATA[gentoo]]></category>
		<category><![CDATA[hardware]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=234</guid>
		<description><![CDATA[After a long time coming, I finally took the plunge and bought a new computer, mostly for the occasion of graduating from college. So after a bunch of looking around, I went and bought this computer. In any case, I received it after a couple of days of intense waiting, and now I&#8217;ve got it [...]]]></description>
			<content:encoded><![CDATA[<p>After a long time coming, I finally took the plunge and bought a new computer, mostly for the occasion of graduating from college. So after a bunch of looking around, I went and bought <a href="http://www.newegg.com/Product/Product.aspx?Item=N82E16883103154">this computer</a>. In any case, I received it after a couple of days of intense waiting, and now I&#8217;ve got it and am very pleased with it (and the 23&#8243; monitor I got with it).</p>
<p>However, after spending a day on it, I felt the need to get started with Linux. However, Vista isn&#8217;t <em>that</em> bad when you have a quad-core processor and 8 gigs of RAM. My problem is as follows:</p>
<ul>
<li>I need to be able to play games</li>
<li>I want my games to run <em>well</em></li>
<li>I need a Linux environment</li>
<li>Ideally, I&#8217;d run Linux natively</li>
</ul>
<p>This leaves me with the obvious option of dual-booting, but I&#8217;d really rather not. I find it so&#8230; traumatic, if you will, to have to reboot my computer every time I want to change what I&#8217;m doing. And since I tend to fire up <a href="http://teamfortress.com/">Team Fortress 2</a> rather frequently, I&#8217;m afraid I&#8217;d sit in Vista most of the time because of it, and only go to Linux when I <em>need</em> to. And that&#8217;s exactly the opposite of what I&#8217;d want. So what to do?</p>
<p>I don&#8217;t know what I&#8217;m going to do. In addition, while I&#8217;ve always had fun with Gentoo, the new installation I started has been proving challenging. The basic system was easy, but the framebuffered console and a desktop (with Compiz-Fusion) has proven difficult. This is in large part, I believe, because of the now-scattered documentation due to the data loss of our beloved <a href="http://en.gentoo-wiki.com/wiki/Main_Page">Gentoo Wiki</a>. And then I pop in an&#8230; an&#8230; Ubuntu (sorry, it just feels dirty to me) CD, and everything works. But it&#8217;s not quite <em>right</em>. It&#8217;s not perfect, and I don&#8217;t have portage, and I can&#8217;t use my shiny new computer to compile things all the time! (that was part of the reason I wanted such power <img src='http://blog.danfego.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ).</p>
<p>So I&#8217;m left with a dilemma. And because of my tendency to get paralyzed by indecision, I&#8217;ll probably stick with Vista for a while, until I figure out my solution, which will still probably involve dual-booting, since <a href="http://www.winehq.org/">Wine</a> doesn&#8217;t seem to be <a href="http://appdb.winehq.org/objectManager.php?sClass=version&#038;iId=9901">up to the task</a>. If anyone&#8217;s got a similar situation/setup/solution, I&#8217;d love to hear about it. I love my Linux, but I also love my games.</p>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fnew-computer-and-its-woes%2F&amp;title=New%20Computer%20%28and%20its%20woes%29" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fnew-computer-and-its-woes%2F&amp;title=New%20Computer%20%28and%20its%20woes%29" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2009/05/new-computer-and-its-woes/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fnew-computer-and-its-woes%2F&amp;title=New%20Computer%20%28and%20its%20woes%29" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fnew-computer-and-its-woes%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2009/05/new-computer-and-its-woes/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Wireless Security</title>
		<link>http://blog.danfego.net/2009/05/wireless-security/</link>
		<comments>http://blog.danfego.net/2009/05/wireless-security/#comments</comments>
		<pubDate>Sun, 10 May 2009 07:00:00 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=221</guid>
		<description><![CDATA[I thought I&#8217;d share this slightly humorous, slightly telling anecdote. I&#8217;ll try to keep it brief.
I just moved into a brand new apartment. Unfortunately, my wired internet isn&#8217;t going to be installed for another week and a half. Naturally, I turn to wireless (other peoples&#8217; wireless, that is). So I do a quick scan to [...]]]></description>
			<content:encoded><![CDATA[<p>I thought I&#8217;d share this slightly humorous, slightly telling anecdote. I&#8217;ll try to keep it brief.</p>
<p>I just moved into a brand new apartment. Unfortunately, my wired internet isn&#8217;t going to be installed for another week and a half. Naturally, I turn to wireless (other peoples&#8217; wireless, that is). So I do a quick scan to check out what&#8217;s around, and to my surprise, all the networks (minus the municipal one which doesn&#8217;t seem to work) had <em>some</em> kind of security, at least WEP.</p>
<p>After making <em>sure</em> that none of the networks were open, I busted out airodump, scanned, and saw only one network with any traffic going over it. This was necessary to get some packets so I could crack the key. I spent 54 minutes and 52 seconds (well, my computer did) sniffing enough packets to break the encryption. Turns out 367,366 IVs did it in this case. In any case, I come over to the computer with glee, seeing the network was cracked, and what do I see?</p>
<div id="attachment_231" class="wp-caption aligncenter" style="width: 666px"><img src="http://blog.danfego.net/wp-content/uploads/2009/05/aircrack-terminal-blurred.png" alt="Wow." title="aircrack-ng output" width="656" height="412" class="size-full wp-image-231" /><p class="wp-caption-text">Wow.</p></div>
<p>That&#8217;s right, the key was found! And it was&#8230; 12:34:56:78:9A. Seriously? I sat there for a minute laughing and actually thinking that couldn&#8217;t be it. I mean, that&#8217;s the equivalent of &#8220;password&#8221; as a password. I tentatively try to connect with my newly-found WEP key and without a delay, I was connected to the network. Wow.</p>
<p>Lesson learned: try out simple WEP keys before going through the effort of cracking the network. You just might get lucky. I mean, if the person is using WEP anyway, they probably don&#8217;t know all that much about security.</p>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fwireless-security%2F&amp;title=Wireless%20Security" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fwireless-security%2F&amp;title=Wireless%20Security" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2009/05/wireless-security/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fwireless-security%2F&amp;title=Wireless%20Security" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2009%2F05%2Fwireless-security%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2009/05/wireless-security/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>CCDC Qualifying Round Review and Excitement</title>
		<link>http://blog.danfego.net/2009/01/ccdc-qualifying-round-review-and-excitement/</link>
		<comments>http://blog.danfego.net/2009/01/ccdc-qualifying-round-review-and-excitement/#comments</comments>
		<pubDate>Mon, 19 Jan 2009 06:24:17 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=142</guid>
		<description><![CDATA[The Competition
On Saturday, myself and 7 of my classmates from GWU had a chance to head up to Lancaster, PA to the home of White Wolf Security for the 4th Annual Mid-Atlantic Collegiate Cyber Defense Competition Qualifying Round.  At this round of the competition along with GWU were George Mason, Jameson Madison, and Millersville [...]]]></description>
			<content:encoded><![CDATA[<h3>The Competition</h3>
<p>On Saturday, myself and 7 of my classmates from GWU had a chance to head up to Lancaster, PA to the home of <a href="http://www.whitewolfsecurity.com/">White Wolf Security</a> for the 4th Annual Mid-Atlantic Collegiate Cyber Defense Competition Qualifying Round.  At this round of the competition along with GWU were George Mason, Jameson Madison, and Millersville Universities.  For those who aren&#8217;t familiar, the competition puts the students in the roles of system administrators who were recently hired to secure and maintain a company&#8217;s network.  The whole affair is pretty exciting, and the pressure can get very intense.  While attempting to prevent and root out attacks from an all-volunteer (but skilled) red team sitting in another room, a white team also throws business injects at us that have us do things like install wikis, set up PKI, and create office templates for our company.  We get scored separately on attack prevention, injects, and service uptime, and at the end of the day the top two teams move on to the next round.  The whole competition ran for about 7 hours, and we were getting pounded from minute 1.</p>
<h3>The Plan</h3>
<p>After experiencing the chaos last year, we put together a list of basic things to do as soon as everything started that would keep out the easiest attacks.  After blocking all external traffic with our firewall (for a few minutes so we could have some &#8220;safe time&#8221;), we set out to do these things in the first 15 minutes or so.  This was just changing all the passwords on the boxes, killing extraneous services, setting client firewalls, and backing up important data and configuration files.  I only managed to get to changing passwords on the boxes I was handling.  They gave us 4 Linux boxes, and those were the ones I was in charge of.  They weren&#8217;t the newest versions of the OS&#8217;s, and for the life of me I can&#8217;t understand how our <a href="http://www.nagios.org/">Nagios</a> box (Fedora, I believe) didn&#8217;t come with lsof, but I did my best to get everything locked down.</p>
<h3>The First Problem</h3>
<p>Well, the best plans of mice and men blah blah blah, and in the few minutes it took our firewall guy to figure out where the admin console was, the red had team managed to get onto two of the Linux boxes and leave their mark before I had a chance to change the root passwords.  After about an hour, I noticed the intrusion on one of the boxes as I attempted to set up iptables and noticed that there were a bunch of identical ACCEPT rules in there that I didn&#8217;t put there.  It was go time.</p>
<h3>The Source</h3>
<p>I called over our team captain to let him know there was a problem, and I set out to figure out just what was going on.  I flushed the tables, set the firewall policies to DROP, and hopped over to /sbin to take a look if anything seemed weird.  After checking iptables again, I noticed some more ACCEPT rules were in there.  I cleared them out and opened the crontab to see if anything was running; it wasn&#8217;t.  Not sure what was going on, I took a moment to restart SSH to boot off any active connections, just in case.  Upon examining the files in /sbin, there were some that were world-writable.  I knew that wasn&#8217;t quite right.  One of those files, however, was iptables.  At cappy&#8217;s suggestion, I viewed the contents of the file, and sure enough it was a perl script instead of the iptables binary.  Since I was under the gun I didn&#8217;t quite deduce <em>what</em> the script did, but it called the real iptables (which they renamed) with ACCEPT commands, instead of the ones I kept giving it.  While the real iptables was mentioned in that perl script, I didn&#8217;t quite catch on right away, so I looked at the size of iptables on another computer and looked for a binary in /sbin with a similar size, and found it.  After that, I chmod-ed all the files in /sbin to remove world-writability, to prevent any further problems in case of non-root intrusion.</p>
<h3>The Solution</h3>
<p>At this point, I had found intruder access, a malicious script, and a moved iptables.  However, more and more ACCEPTs kept being added to my chains.  Once again at cappy&#8217;s suggestion, I moved the real iptables to another name, and left their script in place as &#8220;evidence,&#8221; and in case they had any mechanism for replacing it.  This seemed to finally stop the problem.  At this point, I just needed to figure out where our attackers came from.  The rules of the competition say we can&#8217;t completely block any IP addresses without approval from the white team, which will come if we have details proving that the IP is malicious.  I believe the reasoning for this is so that we can&#8217;t just block any IP range, as well as the fact that the scoring bot shifts IPs, so we could also screw ourselves if we just blocked lots of them.</p>
<h3>The Culprit</h3>
<p>I needed to find out the intruder, but I didn&#8217;t know how.  I took a look in /var/log and saw a bunch of files, more than I usually see, so apparently I don&#8217;t log enough on my own computer. <img src='http://blog.danfego.net/wp-includes/images/smilies/icon_razz.gif' alt=':-P' class='wp-smiley' />   My first look was at /var/log/messages, but that didn&#8217;t yield anything of value.  Next, I stumbled across /var/log/secure, which seemed to be a log of SSH activity.  I hit the jackpot, because I found logins about an hour and a half prior by two specific IP addresses.  I was ecstatic.  This was our culprit.  I was surprised that they didn&#8217;t delete such logs, but perhaps they didn&#8217;t think of it, or were instructed not to by the white team, as not to make our jobs of tracking them impossible.  In any case, I saved the log to a file, filled out an incident report, and sent it over to the white team.  They looked over the report and checked on <em>something</em> (I honestly don&#8217;t know what) and then let us block the IPs.  Mission accomplished.</p>
<h3>The Wikis</h3>
<p>Well, at least <em>that</em> mission was accomplished.  I felt pretty good a little after 11am when this all was wrapped up, but that quickly faded as business injects got annoying.  We had to install wiki software, which gave us infinite problems.  We first tried <a href="http://www.mediawiki.org/">MediaWiki</a>, which was a bust because our database server was using MySQL 3.x.  3.x?  What the hell?  I&#8217;ve never seen that anywhere before.  My <a href="http://en.wikipedia.org/wiki/MySQL#History">impeccable sources</a> tell me that it&#8217;s about 9 years old! Yeah, pretty egregious, but there wasn&#8217;t too much we could do about it under the circumstances.  So we looked for other softwares, of which there were many.  However, after failing to find Tigerwiki (apparently it&#8217;s discontinued) and having ridiculous troubles with <a href="http://moinmo.in/">MoinMoin</a> and <a href="http://tikiwiki.org/">TikiWiki</a>, we ended up running out of time and failing the inject.  That wouldn&#8217;t have been so bad if it weren&#8217;t for having another inject which built off of that one later in the day.  So that sucked.  In the end, we found an older version of MediaWiki (why didn&#8217;t we think of it earlier?) and installed that for the second inject, but we ran out of time and failed.  And in that last bit when I say &#8220;we,&#8221; I mean two of my teammates, because I was sick of wikis and had to step away before bashing the computer with a chair.</p>
<h3>The Cable</h3>
<p>The rest of the day was <em>relatively</em> less pressure for me, just keeping a check on my systems, handling another inject, and trying to get our damn Nagios box to actually work.  For some reason, it wasn&#8217;t connected to anything.  We couldn&#8217;t explain it, though we thought our routes were a bit screwy.  After a lot of investigation, one of my teammates brilliantly found that there was no network cable in the computer.  I know, I know, that&#8217;s normally the first thing to check, but we were given computers and were allowed to assume that there&#8217;d at least be cables in everything!  And it&#8217;s not like it had come loose or fallen out or anything; there was just no cable for that box.  So we went to the white team and they remedied the problem, but we all had a good laugh over that.  In the afternoon there was also another intrusion that I helped get logs for, but it wasn&#8217;t nearly as exciting as the morning breach.</p>
<h3>The Nagios Box</h3>
<p>Amidst everything else I was doing, I took a good shot in the afternoon to configure our Nagios box.  I remembered from the last competition that the IPs were wrong, so that seemed to be what I&#8217;d probably have to do again, just fix up the network portion to that which we were assigned for all the entries.  Simple enough with sed.  However, I found enormous difficulties getting into the web console, considering they didn&#8217;t give us the username and password, and they weren&#8217;t any kind of defaults.  Well, in the end, it turns out they were.  &#8220;nagiosadmin&#8221; is apparently a standard username, and the password was the standard one for the competition.  It just took <strong>way</strong> too long to figure that out.  Once I fixed the IPs and logged in, I realized that all most of the checks were failing.  Not good.  That generally meant that the scorebot also would be counting those tests as failures.  I talked to our firewall guy, who had egress filtering on (blocking outgoing traffic), which he suggested would give such results.  We argued, he got busy, and I never got to see the beautiful green colors of Nagios that come with a fully working network.  Oh well.  At around 4, the competition ended, we packed up our computers, and we headed over to another room for a debrief.</p>
<h3>The End</h3>
<p>All tired, hungry, and anxious to hear the results, we waited and were fed pizza while the event organizers talked to us for a while.  Then they let the red team have a go and both tell us what they did to us over the day, as well as query us about our strategies and give us some tips for defending.  I actually got to talk to the guy who put that perl script on the Linux boxes, and he asked &#8220;did you find the others?&#8221;  We laughed, and then realized that we hadn&#8217;t even <em>looked</em> for others.  It didn&#8217;t even occur to us for some reason.  So he pointed out that if you find something malicious, there&#8217;s almost certainly something else there, and you should make some effort to find it.  He suggested grepping all the files in /sbin for &#8220;perl&#8221;, while I probably would have used &#8220;find&#8221; to find any files modified in the last few hours.  Either way, it&#8217;s something solid that I learned and will most certainly apply at the next competition.  Which leads to the most awesome part: GWU got 2nd place, and we&#8217;ll be competing at the regionals in Baltimore in March!  We&#8217;ve got a lot of work to do, myself included.</p>
<p>All in all, I found the whole thing very worthwhile for the third time, and recommend any college students in the US with an interest in computer security to look at creating a team and competing in a regional competition.  The whole affair, while stressful, is not only fun but a great experience for anyone interested in information assurance.  As a matter of fact, I&#8217;m not particularly enthralled with security and I found it a great experience too.  In past events (but not this one, because of the inauguration), we had Secret Service agents there as well to talk to us a bit and have to consult regarding some of the legal issues with intrusions, to discuss our incident reports with, and have drinks with afterward. <img src='http://blog.danfego.net/wp-includes/images/smilies/icon_razz.gif' alt=':-P' class='wp-smiley' />   I can&#8217;t wait until March.  Maybe we&#8217;ll make nationals!</p>
<p><strong>External Links</strong></p>
<ul>
<li><a href="http://www.whitewolfsecurity.com/">White Wolf Security</a></li>
<li><a href="http://cyberwatchcenter.org/ccdc/">Mid-Atlantic CCDC Information</a></li>
<li><a href="http://nationalccdc.org/">National CCDC Website</a></li>
<li><a href="http://www.nagios.org/">Nagios Website</a></li>
</ul>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fccdc-qualifying-round-review-and-excitement%2F&amp;title=CCDC%20Qualifying%20Round%20Review%20and%20Excitement" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fccdc-qualifying-round-review-and-excitement%2F&amp;title=CCDC%20Qualifying%20Round%20Review%20and%20Excitement" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2009/01/ccdc-qualifying-round-review-and-excitement/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fccdc-qualifying-round-review-and-excitement%2F&amp;title=CCDC%20Qualifying%20Round%20Review%20and%20Excitement" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fccdc-qualifying-round-review-and-excitement%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2009/01/ccdc-qualifying-round-review-and-excitement/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Comment Issues</title>
		<link>http://blog.danfego.net/2009/01/comment-issues/</link>
		<comments>http://blog.danfego.net/2009/01/comment-issues/#comments</comments>
		<pubDate>Sun, 18 Jan 2009 06:27:37 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[plugin]]></category>
		<category><![CDATA[theme]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=134</guid>
		<description><![CDATA[A visitor to my blog yesterday was kind enough to bring to my attention a technical issue with commenting on my site.  I had a CAPTCHA plugin enabled, but unfortunately it didn&#8217;t seem to work properly, so no one at all could post.  After investigating the issue a bit, I came across a [...]]]></description>
			<content:encoded><![CDATA[<p>A visitor to my blog yesterday was kind enough to bring to my attention a technical issue with commenting on my site.  I had a CAPTCHA plugin enabled, but unfortunately it didn&#8217;t seem to work properly, so no one at all could post.  After investigating the issue a bit, I came across a piece of advice for the plugin I was using (<a href="http://wordpress.org/extend/plugins/mycaptcha/">MyCaptcha</a>) which said to make sure that the following line was in my comments.php file:</p>
<p><code>&lt;?php do_action('comment_form', $post-&gt;ID); ?&gt;</code></p>
<p>In the same breath, it was mentioned that most themes do in fact have this in there.  Well, to my luck, the theme I&#8217;m currently using (<a href="http://wordpress.org/extend/themes/inove">iNove</a>) <em>doesn&#8217;t</em> have that line in the comments.php file.  So I had to add it.  Unfortunately, I only realized this after going through a few other plugins to see if I could solve the problem by switching it up.  I guess all these plugins rely on the same line, since they all seemed to have a similar issue.  Finally, I&#8217;ve settled on <a href="http://kahi.cz/wordpress/ravens-antispam-plugin/">Raven&#8217;s Antispam</a> plugin, mostly because that was the plugin I was trying when I decided to add the above line to my comments.php file.  Seems to do the trick (at least it lets users post), and it&#8217;s supposed to be transparent unless Javascript is disabled.  Seemingly ideal!  So anyway, hopefully that will end my problems for good with this issue.</p>
<p>Also, I realized I don&#8217;t make it all that apparent what my email address is, so in case anyone wants to contact me regarding my blog (or anything else for that matter), that can be at <a href="mailto:dan@danfego.net">dan@danfego.net</a>.</p>
<p><strong>External Links</strong></p>
<ul>
<li><a href="http://wordpress.org/extend/plugins/mycaptcha">Wordpress MyCaptcha Plugin</a></li>
<li><a href="http://wordpress.org/extend/themes/inove">Wordpress iNove Theme</a></li>
<li><a href="http://kahi.cz/wordpress/ravens-antispam-plugin/">Raven&#8217;s Antispam Wordpress Plugin</a></li>
</ul>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fcomment-issues%2F&amp;title=Comment%20Issues" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fcomment-issues%2F&amp;title=Comment%20Issues" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2009/01/comment-issues/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fcomment-issues%2F&amp;title=Comment%20Issues" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2009%2F01%2Fcomment-issues%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2009/01/comment-issues/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Silence is Defeat Relocation</title>
		<link>http://blog.danfego.net/2008/12/silence-is-defeat-relocation/</link>
		<comments>http://blog.danfego.net/2008/12/silence-is-defeat-relocation/#comments</comments>
		<pubDate>Tue, 23 Dec 2008 01:00:58 +0000</pubDate>
		<dc:creator>Dan</dc:creator>
				<category><![CDATA[miscellaneous]]></category>

		<guid isPermaLink="false">http://blog.danfego.net/?p=87</guid>
		<description><![CDATA[I just received an email from Silence is Defeat about a domain relocation, from .org to .com.  It appears their .org now redirects to an eBay auction, auctioning off the domain name itself.
The email I received was as follows:
Hello &#60;username&#62;,
You&#8217;re receiving this email because you have the account &#8216;&#60;username&#62;&#8217; on the SilenceIsDefeat public access [...]]]></description>
			<content:encoded><![CDATA[<p>I just received an email from <a href="http://www.silenceisdefeat.com/">Silence is Defeat</a> about a domain relocation, from .org to .com.  It appears their .org now redirects to an eBay auction, auctioning off the domain name itself.</p>
<p>The email I received was as follows:</p>
<blockquote><p>Hello &lt;username&gt;,</p>
<p>You&#8217;re receiving this email because you have the account &#8216;&lt;username&gt;&#8217; on the SilenceIsDefeat public access unix system.</p>
<p>Silenceisdefeat now runs at this address:</p>
<p>*  silenceisdefeat.com</p>
<p>Please note that the old address no longer works, and use the new address for mail, web, and shell access.</p>
<p>You can greatly assist this change by blogging about the new address, replacing any old links to SD with the new address, and even putting up a new link.</p>
<p>As always, you can get in touch with other silenceisdefeat users and administrators in #sd on irc.oftc.net.</p>
<p>Thanks!<br />
The SD team</p></blockquote>
<p>I thought I&#8217;d take this opportunity to spread the word about the change, as well as give a plug to silenceisdefeat.  They provide a great service that has come through in a clinch for me on more than one occasion when I&#8217;ve needed a public shell to work from (that didn&#8217;t suck).  My primary shell for university uses SunOS and has some weird quirks, so it&#8217;s nice to have an alternative.</p>
<p>Short version: silenceisdefeat.org is now <a href="http://www.silenceisdefeat.com/">silenceisdefeat.com</a>, and they&#8217;re still awesome!</p>

<div class="sociable">
<span class="sociable_tagline">
<strong>Share and Enjoy:</strong>
	<span>These icons link to social bookmarking sites where readers can share and discover new web pages.</span>
</span>
<ul>
	<li><a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fblog.danfego.net%2F2008%2F12%2Fsilence-is-defeat-relocation%2F&amp;title=Silence%20is%20Defeat%20Relocation" title="Digg" onfocus="sociable_description_link(this, 'bodytext')" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a></li>
	<li><a href="http://del.icio.us/post?url=http%3A%2F%2Fblog.danfego.net%2F2008%2F12%2Fsilence-is-defeat-relocation%2F&amp;title=Silence%20is%20Defeat%20Relocation" title="del.icio.us" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a></li>
	<li><a href="http://www.stumbleupon.com/submit.php?url=http://blog.danfego.net/2008/12/silence-is-defeat-relocation/" title="StumbleUpon" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a></li>
	<li><a href="http://reddit.com/submit?url=http%3A%2F%2Fblog.danfego.net%2F2008%2F12%2Fsilence-is-defeat-relocation%2F&amp;title=Silence%20is%20Defeat%20Relocation" title="Reddit" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a></li>
	<li><a href="http://technorati.com/faves?add=http%3A%2F%2Fblog.danfego.net%2F2008%2F12%2Fsilence-is-defeat-relocation%2F" title="Technorati" rel="nofollow" target="_blank"><img src="http://blog.danfego.net/wp-content/plugins/sociable-zyblog-edition/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a></li>
</ul>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.danfego.net/2008/12/silence-is-defeat-relocation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
