KeePass Password Safe

KeePass is a free open source password manager, which helps you to manage your passwords in a secure way. You can put all your passwords in one database, which is locked with one master key or a key file. So you only have to remember one single master password or select the key file to unlock the whole database. The databases are encrypted using the best and most secure encryption algorithms currently known (AES and Twofish). For more information, see the features page.

via KeePass Password Safe.

I haven’t tried this yet.  Using something like this requires a complete paradigm shift as to how one uses the web.  I currently have a password system in my head that has worked for quite some time.  It will be interesting how useful this is in real life use cases.  Having the ability to have some other entity remember usernames and passwords can lead to very secure authentication.  There will be no way to  authenticate however if one does not have contact to this password database which could be a problem.

Inside NASA’s Deal for Inflatable Space Station Room

The new inflatable BEAM will be launched to the International Space Station by a Falcon 9 rocket built by another private spaceflight company, California-based SpaceX. The module will be cocooned inside the unpressurized cargo hold of SpaceX’s Dragon capsule atop the Falcon 9. NASA has already purchased the launch of the SpaceX Falcon under a separate Commercial Resupply Services contract.

via Inside NASA’s Deal for Inflatable Space Station Room.

This site is always fascinated with the technology of space.  Here’s an interesting tour of the International Space Station.

Fedora 18 released

This document provides the release notes for Fedora 18. It describes major changes offered in the Spherical Cow as compared to Fedora 17. For a detailed listing of all changes, refer to the Fedora Technical Notes.

via Release Notes.

The Gnome2 fork MATE is supposedly integrated with this release.  After reading the comments on slashdot I’m not keen on upgrading and will stick to FC14 or if another MATE release becomes available that supports system monitor.  System monitor is so important for security and general maintenance of the system and yet most consumer devices don’t include it.  System monitor is equivalent to the temperature guage in your car.  You want to know if the engine is overheating just like you want to know if your computer is causing unexpected traffic on the network.

Instagram Loses Half Its Daily Users In A Month, And Here’s Why

According to data provided by app traffic company AppStats, Instagram has lost more than half of all its active users in the month since proposing to change its original Privacy Policy and Terms of Service. In mid-December, Instagram boasted about 16.3 million daily active users; as of Jan. 14, Instagram only has about 7.6 million daily users.

via Instagram Loses Half Its Daily Users In A Month, And Here’s Why [REPORT].

Funny stuff from xkcd.

Attack Code, Metasploit Module Released For Serious Ruby On Rails Bugs

This just got (more) real: Researchers today unleashed exploit code for a pair of newly found vulnerabilities in the popular Web application programming platform Ruby on Rails (RoR), as well as a new Metasploit module for the most serious of the two flaws, raising concerns of potentially damaging attacks to come on Web servers and databases.

via Attack Code, Metasploit Module Released For Serious Ruby On Rails Bugs – Dark Reading.

Security experts recommend patching RoR apps now if you have not already done so. Said O’Donnell in a blog post yesterday:

Telco Analytics Firm Raises $30M

Scranage also notes that, unlike other data collection and analysis systems, Guavus’s software screens the vast volumes of data created constantly by networks, devices and subscribers for particular data types, stripping out vast quantities of data that provide no insight and feeding only “useful” data into analytics engines.

via Light Reading – Telco Analytics Firm Raises $30M.

MIT to conduct internal probe in wake of Aaron Swartz’s suicide

“Now is a time for everyone involved to reflect on their actions, and that includes all of us at MIT,” Reif said. “I have asked professor Hal Abelson to lead a thorough analysis of MIT’s involvement from the time that we first perceived unusual activity on our network in fall 2010 up to the present. I have asked that this analysis describe the options MIT had and the decisions MIT made, in order to understand and to learn from the actions MIT took. I will share the report with the MIT community when I receive it.”

via MIT to conduct internal probe in wake of Aaron Swartz’s suicide | Internet & Media – CNET News.

JSTOR Statement: Misuse Incident and Criminal Case

The criminal investigation and today’s indictment of Mr. Swartz has been directed by the United States Attorney’s Office. It was the government’s decision whether to prosecute, not JSTOR’s. As noted previously, our interest was in securing the content. Once this was achieved, we had no interest in this becoming an ongoing legal matter.

via JSTOR Statement: Misuse Incident and Criminal Case | About JSTOR.

Also … From:  Prosecutor as bully

Fifty years in jail, charges our government. Somehow, we need to get beyond the “I’m right so I’m right to nuke you” ethics that dominates our time. That begins with one word: Shame.

Top 30 Nmap Command Examples For Sys/Network Admins

The purpose of this post is to introduce a user to the nmap command line tool to scan a host and/or network, so to find out the possible vulnerable points in the hosts. You will also learn how to use Nmap for offensive and defensive purposes.

via Top 30 Nmap Command Examples For Sys/Network Admins.

Nmap can be very useful which is why I have a link to it in the Tools section on this page.