<?xml version="1.0" encoding="utf-8"?><!-- generator="wordpress/2.0.5" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments on: Trust Storm</title>
	<link>http://thurston.halfcat.org/blog/2009/01/12/trust-storm/</link>
	<description>We are the people your IT department warned you about</description>
	<pubDate>Sat, 13 Mar 2010 13:15:37 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.5</generator>

	<item>
		<title>by: Chandler Howell</title>
		<link>http://thurston.halfcat.org/blog/2009/01/12/trust-storm/#comment-289368</link>
		<pubDate>Tue, 13 Jan 2009 16:17:14 +0000</pubDate>
		<guid>http://thurston.halfcat.org/blog/2009/01/12/trust-storm/#comment-289368</guid>
					<description>The asymmetric rules of engagement really hurt the Good Guys here--they can't exploit the vulnerability to clean up the machines, though the Bad Guys certainly would, so the Bad Guys get a "Free Pass" to fix the vulnerability, either now or next time.

There's also a "Security by Obscurity" lesson here--I suspect that the malware writers expected that the lack of authentication would not be discovered behind the other layers of protection for their tool--until it was.</description>
		<content:encoded><![CDATA[<p>The asymmetric rules of engagement really hurt the Good Guys here&#8211;they can&#8217;t exploit the vulnerability to clean up the machines, though the Bad Guys certainly would, so the Bad Guys get a &#8220;Free Pass&#8221; to fix the vulnerability, either now or next time.</p>
<p>There&#8217;s also a &#8220;Security by Obscurity&#8221; lesson here&#8211;I suspect that the malware writers expected that the lack of authentication would not be discovered behind the other layers of protection for their tool&#8211;until it was.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: bob</title>
		<link>http://thurston.halfcat.org/blog/2009/01/12/trust-storm/#comment-289359</link>
		<pubDate>Tue, 13 Jan 2009 14:49:22 +0000</pubDate>
		<guid>http://thurston.halfcat.org/blog/2009/01/12/trust-storm/#comment-289359</guid>
					<description>Of course now the storm folks will add authentication to their network...  But before that happens could the good gys act as an anti-body and cure the disease?</description>
		<content:encoded><![CDATA[<p>Of course now the storm folks will add authentication to their network&#8230;  But before that happens could the good gys act as an anti-body and cure the disease?
</p>
]]></content:encoded>
				</item>
</channel>
</rss>
