Why I hate tiny-fied URLs…

In theory if the world were filled we universally good people, “bitly” and “TinyURL.com“, which given long URLs provide short ones, are a great idea. However whenever I get one I find that I’m frankly terrified to click on them.


SSL certs – probably not worth the bits they’re printed on…

This failure of the trusted Certificate Authority (CA) “Comodo”:


highlights something that is becoming more apparent:

SSL certificates probably aren’t worth the bits they’re printed on.

Zone Firewall TCP reassembly size

If you get something like this in your Cisco’s IOS firewall log:

Mar 12 15:05:33 3129: 003121: *Mar 12 15:03:03.195 EST: %FW-4-TCP_OoO_SEG: Dropping TCP Segment: seq:525214740 1415 bytes is out-of-order; expected seq:525170856. Reason: TCP reassembly queue overflow – session to on zone-pair ccp-zp-in-out class ccp-protocol-http

The kitchen sink of security tools…

This seems to be a useful location to find security tools:


Everything including the kitchen sink!

Apparently George Romero was right…

That a deadly virus would escape from the military possibly causing zombies:


He was just wrong that humans would be the target.

Another case of “With friends like these…”

Well, researchers have devised a way around most modern anti-virus software. Yet another example of, “With friends like these, who needs enemies.”

Again, I know “security by obscurity” is false security, but it’s not like the bad guys need as much help as they’re getting!

How to kill a session on a Cisco PIX/FWSM

Completely different from Cisco IOS, so hard to remember:

Log into the PIX/FWSM and go to “enable” mode. Do a “who”:

Choose the IP of the session you want to kill and grab the number. In this case I want to kill the “” session, so I want “2”. Then kill it:

A good Blackberry security primer…

ComputerWorld has published a good Blackberry security primer here:


I highly recommend all Blackberry owners read it.

Rubber Or Glue, It Still Sticks…

This brings up a sort of interesting if not chilling thought in the world of security, particularly for large organizations:

Mozilla shuts online store after security breach

The title of this entry, which I’ve included verbatim, is important.

Eating ourselves alive…

Here is yet another example of how the “good guys” are figuring out ways to subvert security to “help” us:


