<?xml version="1.0" encoding="UTF-8"?>
<opml version="1.0">
  <head>
    <title>cmdln.net_2007-03-04</title>
    <expansionState>0,1,3,7,9,10,17,25,26,27,31,35,39,44,53,55,64,70,78,81,82,88,95,96,103</expansionState>
  </head>
  <body>
    <outline text="Intro" Offset="00:17">
      <outline text="NYT article on podio books" Offset="00:46">
        <outline text="http://www.nytimes.com/2007/03/01/books/01podb.html?_r=2&amp;pagewanted=1&amp;oref=slogin"/>
      </outline>
      <outline text="DC CopyNight" Offset="03:02">
        <outline text="Still struggling to figure out how to get some traction"/>
        <outline text="More voices to keep bar, salon setting"/>
        <outline text="Return of Carey, IP law professional"/>
      </outline>
      <outline text="Donate to help Joe Murphy" Offset="04:07">
        <outline text="http://michaelandevo.com"/>
      </outline>
    </outline>
    <outline text="Security Alerts" Offset="04:55">
      <outline text="Latest worm actually helped by flaws in security software" Offset="05:14">
        <outline text="http://techdirt.com/articles/20070302/092436.shtml"/>
        <outline text="Each added piece of software is a new opportunity for attack"/>
        <outline text="Some speculate malware authors are targeting security vendors in particular"/>
        <outline text="Most likely just using every opening"/>
        <outline text="I would suggest that as security software becomes more popular, becomes a more likely target"/>
        <outline text="And malware authors have some control over the prominence of security software"/>
      </outline>
      <outline text="Malware authors now using &quot;dynamic code obfuscation&quot;" Offset="08:05">
        <outline text="http://www.securityabsurdity.com/archives/28"/>
        <outline text="Utilizes code obfuscation techniques, changing symbols"/>
        <outline text="Also uses multiple encryption keys"/>
        <outline text="For signature based defense, this presents a combinatorial explosion"/>
        <outline text="Researchers are adding a tool, VOMM, to Metasploit to do this automatically"/>
        <outline text="Strengthens the case for behavior based or functional recognition"/>
        <outline text="May also be worth trying to identify the common components, like VOMM, Metasploit"/>
      </outline>
    </outline>
    <outline text="News" Offset="11:03">
      <outline text="Fair use bill introduced" Offset="11:16">
        <outline text="http://news.google.com/news/url?sa=T&amp;ct=us/12-0&amp;fd=R&amp;url=http://arstechnica.com/news.ars/post/20070228-8942.html&amp;cid=1114009617&amp;ei=NfDlRc79D5HMswGV8InADA">
          <outline text="Analysis indicates the bill is actually about protecting against inducement charges, consequence of Grokster"/>
          <outline text="Speculation is that the CEA and similar lobbyists influenced the content of the bill"/>
          <outline text="What DMCA focused provisions are in the bill are sparse compared to bill Boucher introduced in 2003"/>
          <outline text="Specificity of items reduces flexibility, power of those aspects of the bill">
            <outline text="Fair use is open to continual interpretation"/>
            <outline text="Specific list precludes future interpretations"/>
          </outline>
          <outline text="Allowances are for circumvention but does not legalize the making or sharing of tools for doing so"/>
        </outline>
        <outline text="http://feeds.wired.com/~r/wired/topheadlines/~3/97482213/boucher_and_doo.html">
          <outline text="More typical coverage, less critical of weakened anti-DMCA provisions"/>
          <outline text="Quotes Boucher on why this bill is narrower"/>
          <outline text="Hints that Boucher may try to introduce broader protections in the future"/>
        </outline>
        <outline text="http://feeds.macworld.com/~r/macworld/all/~3/97602200/index.php">
          <outline text="Quotes the RIAA"/>
          <outline text="Characterizing this as a repeal of the DMCA"/>
          <outline text="Conflating hacking for fair use with hacking for piracy"/>
          <outline text="Itemizes digital music, VoD and eBooks as made possible by the DMCA"/>
        </outline>
      </outline>
      <outline text="Another kerfuffle over Black Hat presentation" Offset="15:46">
        <outline text="http://www.wired.com/news/columns/0,72819-0.html?tw=rss.index"/>
        <outline text="RFID cloning has been demonstrated repeatedly"/>
        <outline text="Even before HID's use of RFID, cloning of their credentials was a known weakness"/>
        <outline text="Paget performed this demonstration previously"/>
        <outline text="If Paget built his demo system from standard parts, with no knowledge of HID's technology, what are the implications of the patent protection?"/>
        <outline text="Tobacco company metaphor is pretty clear, though the HID reader patents aren't as obviously bogus"/>
        <outline text="This is solely and unambiguously about silencing criticism at the expense of user security"/>
        <outline text="This is a Diebold-like mentality"/>
      </outline>
      <outline text="Discussion of the Single Responsibility Principle" Offset="18:33">
        <outline text="http://www.codinghorror.com/blog/archives/000805.html"/>
        <outline text="Relates it, through cute movie reference, to a few other important principles">
          <outline text="Do not repeat yourself"/>
          <outline text="Once and only once"/>
          <outline text="Single point of truth - isn't this the same as DRY?"/>
        </outline>
        <outline text="I disagree about this conflicting with the generalist urge"/>
        <outline text="Agree that it is counterintuitive"/>
        <outline text="Following SRP leads to smaller, more loosely coupled pieces"/>
        <outline text="Much easier to identify relationships, properties and behaviors as a result"/>
        <outline text="I contend that that is more OO and general, easier to re-use objects for new purposes"/>
        <outline text="A counter intuition">
          <outline text="If two classes have the same attributes but are not the same, they should be defined separately"/>
          <outline text="Example from database"/>
          <outline text="Journal and security log tables"/>
          <outline text="Same columns, but not the same thing"/>
        </outline>
        <outline text="Following through on SRP may introduce more classes as relationships may get more complex"/>
      </outline>
      <outline text="First nanoscale carbon based transistor" Offset="23:22">
        <outline text="http://go.theregister.com/feed/http://www.reghardware.co.uk/2007/03/01/boffins_build_room_temp_one-electron_transistor/"/>
        <outline text="Constructed of a sheet of carbon one atom thick"/>
        <outline text="Talked about 1THz transistor in show 78 on 12/17/2006"/>
        <outline text="Unlike the 1tHz component, this is room temperature"/>
        <outline text="Uses an existing design, single electron transistor"/>
        <outline text="Past implementations needed to run near absolute zero"/>
        <outline text="Has the potential for improved power consumption and possible performance"/>
        <outline text="Sounds less developed then 1THz transistor">
          <outline text="Etching process is unreliable, not always yielding small enough structures"/>
          <outline text="Alterations in surrounding carbon can scatter the single electrons"/>
        </outline>
      </outline>
    </outline>
    <outline text="tail -f" Offset="26:00">
      <outline text="Elektra v. Barker arguments available but no ruling, yet" Offset="26:19">
        <outline text="http://recordingindustryvspeople.blogspot.com/2007/02/elektra-v-barker-making-available-oral.html"/>
        <outline text="Wrote about this on the site on 1/25 of this year"/>
        <outline text="This is a key case which can change the nature of internet sharing"/>
        <outline text="Attorney's arguments are available at the link"/>
        <outline text="No ruling, as of yet"/>
      </outline>
      <outline text="Maynor reveals flaws of Apple WiFi flaw" Offset="27:27">
        <outline text="http://feeds.feedburner.com/~r/arstechnica/BAaf/~3/99107181/7298"/>
        <outline text="Does seem to prove some of his claims about Apple trying to suppress or alter the story"/>
        <outline text="Maynor claims he will no longer exercise responsible disclosure, avoiding direct communication with Apple of future research"/>
        <outline text="Latest OSX, 10.4.8, does indeed seem to have fixed the issue"/>
        <outline text="Demonstrated a crash with 10.4.6 with the original code"/>
        <outline text="Claims will show full control in the future"/>
      </outline>
    </outline>
    <outline text="Outro" Offset="28:48">
      <outline text="Contact me">
        <outline text="Email to feedback@thecommandline.net"/>
        <outline text="Web site at http://thecommandline.net/"/>
        <outline text="IM to command.line@skype"/>
        <outline text="Listener comment line is 360-252-7284"/>
        <outline text="del.icio.us tag is &quot;for:cmdln&quot;"/>
      </outline>
      <outline text="I'd like to thank libsyn.com for AAC hosting and Wouter de Bie for MP3 hosting"/>
      <outline text="These notes and the show audio and music are covered by a Creative Commons license">
        <outline text="http://creativecommons.org/licenses/by-nc-sa/2.5/"/>
        <outline text="Attribution, non-commercial, share alike"/>
      </outline>
    </outline>
  </body>
</opml>
