<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Oh, lovely</title>
	<atom:link href="http://timworstall.com/2009/01/04/oh-lovely/feed/" rel="self" type="application/rss+xml" />
	<link>http://timworstall.com/2009/01/04/oh-lovely/</link>
	<description>It is all obvious or trivial except...</description>
	<lastBuildDate>Fri, 25 May 2012 01:39:51 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Paddy</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-32943</link>
		<dc:creator>Paddy</dc:creator>
		<pubDate>Thu, 30 Jul 2009 16:24:00 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-32943</guid>
		<description>@Linux crew

Linux is still only as secure as the person who configures and uses it. If you don&#039;t know what you are doing, are unfamiliar with security principles and are unwilling to learn then it can be as wide open as any other operating system. Same for all OS&#039;s, Windows does have holes, and these are patched, OSX has holes and are also patched (although less regularly?), if the operator DOES know what they are doing then there isn&#039;t a problem.</description>
		<content:encoded><![CDATA[<p>@Linux crew</p>
<p>Linux is still only as secure as the person who configures and uses it. If you don&#8217;t know what you are doing, are unfamiliar with security principles and are unwilling to learn then it can be as wide open as any other operating system. Same for all OS&#8217;s, Windows does have holes, and these are patched, OSX has holes and are also patched (although less regularly?), if the operator DOES know what they are doing then there isn&#8217;t a problem.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: The innocent won&#8217;t have anything to worry about &#8211; Counting Cats in Zanzibar</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-26685</link>
		<dc:creator>The innocent won&#8217;t have anything to worry about &#8211; Counting Cats in Zanzibar</dc:creator>
		<pubDate>Sun, 01 Feb 2009 11:30:22 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-26685</guid>
		<description>[...] enemies of everyone who believe in the principles he fought for. She points out a posting over on Timmys site, highlighting another, just another, act of contempt for all people by the bastards who rule [...]</description>
		<content:encoded><![CDATA[<p>[...] enemies of everyone who believe in the principles he fought for. She points out a posting over on Timmys site, highlighting another, just another, act of contempt for all people by the bastards who rule [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: eurealist.co.uk &#187; Blog Archive &#187; Check your firewalls, people</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25872</link>
		<dc:creator>eurealist.co.uk &#187; Blog Archive &#187; Check your firewalls, people</dc:creator>
		<pubDate>Fri, 09 Jan 2009 06:51:10 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25872</guid>
		<description>[...] Via Timmy, I see that our real government has approved yet more disgustingly illiberal powers for the police. THE Home Office has quietly adopted a new plan to allow police across Britain routinely to hack into people’s personal computers without a warrant. [...]</description>
		<content:encoded><![CDATA[<p>[...] Via Timmy, I see that our real government has approved yet more disgustingly illiberal powers for the police. THE Home Office has quietly adopted a new plan to allow police across Britain routinely to hack into people’s personal computers without a warrant. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Denny, Alaska</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25773</link>
		<dc:creator>Denny, Alaska</dc:creator>
		<pubDate>Wed, 07 Jan 2009 01:35:00 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25773</guid>
		<description>Come on: those of you who support the EU, what&#039;s your response to this absurdity? You spend virtually this entire comment string detailing how to stop the sleuthing at your home computer. Aren&#039;t you just the slightest bit concerned about your loss of liberties?</description>
		<content:encoded><![CDATA[<p>Come on: those of you who support the EU, what&#8217;s your response to this absurdity? You spend virtually this entire comment string detailing how to stop the sleuthing at your home computer. Aren&#8217;t you just the slightest bit concerned about your loss of liberties?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Official spyware? &#171; DaTechguy&#8217;s Blog</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25772</link>
		<dc:creator>Official spyware? &#171; DaTechguy&#8217;s Blog</dc:creator>
		<pubDate>Wed, 07 Jan 2009 00:41:09 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25772</guid>
		<description>[...] has been a lot of loose talk over the years of civil liberties being eroded but this looks like the real thing: THE Home Office has quietly adopted a new plan to allow police across Britain routinely to hack [...]</description>
		<content:encoded><![CDATA[<p>[...] has been a lot of loose talk over the years of civil liberties being eroded but this looks like the real thing: THE Home Office has quietly adopted a new plan to allow police across Britain routinely to hack [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Roger Thornhill</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25693</link>
		<dc:creator>Roger Thornhill</dc:creator>
		<pubDate>Mon, 05 Jan 2009 18:09:16 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25693</guid>
		<description>When Ubuntu can outlast OpenVMS, then I will take notice.

I hope that Apple supports Itanium in the future for their Mac Pros, then I might be able to load up OpenVMS for some utterly bullet-proof operations.

Until then, I am downloading Ubuntu.</description>
		<content:encoded><![CDATA[<p>When Ubuntu can outlast OpenVMS, then I will take notice.</p>
<p>I hope that Apple supports Itanium in the future for their Mac Pros, then I might be able to load up OpenVMS for some utterly bullet-proof operations.</p>
<p>Until then, I am downloading Ubuntu.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: EU Authorise Police Hacking into your PC &#171; Al Jahom&#8217;s Final Word</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25686</link>
		<dc:creator>EU Authorise Police Hacking into your PC &#171; Al Jahom&#8217;s Final Word</dc:creator>
		<pubDate>Mon, 05 Jan 2009 17:15:50 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25686</guid>
		<description>[...] http://timworstall.com/2009/01/04/oh-lovely/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://timworstall.com/2009/01/04/oh-lovely/" rel="nofollow">http://timworstall.com/2009/01/04/oh-lovely/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David G</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25682</link>
		<dc:creator>David G</dc:creator>
		<pubDate>Mon, 05 Jan 2009 13:47:39 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25682</guid>
		<description>Whilst I take all the above precautions anyway I have a question : IF they can read my disk, they can write to it. How are they going to explain the provenance of any data they find if they try to use it in evidence ? One assumes that this kind of covert hack will be used to evidence gather as a pre-cursor to getting a  warrant to take the computer away for forensic examination (where there are very strict rules about maintaining the chain of evidence). Surely the act of reading my HD will make all of the above inadmissible ?</description>
		<content:encoded><![CDATA[<p>Whilst I take all the above precautions anyway I have a question : IF they can read my disk, they can write to it. How are they going to explain the provenance of any data they find if they try to use it in evidence ? One assumes that this kind of covert hack will be used to evidence gather as a pre-cursor to getting a  warrant to take the computer away for forensic examination (where there are very strict rules about maintaining the chain of evidence). Surely the act of reading my HD will make all of the above inadmissible ?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: keith</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25681</link>
		<dc:creator>keith</dc:creator>
		<pubDate>Mon, 05 Jan 2009 12:34:18 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25681</guid>
		<description>@mandrill
This is maybe what you were thinking of...

http://www.theregister.co.uk/2008/03/29/ubuntu_left_standing/</description>
		<content:encoded><![CDATA[<p>@mandrill<br />
This is maybe what you were thinking of&#8230;</p>
<p><a href="http://www.theregister.co.uk/2008/03/29/ubuntu_left_standing/" rel="nofollow">http://www.theregister.co.uk/2008/03/29/ubuntu_left_standing/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mandrill</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25679</link>
		<dc:creator>mandrill</dc:creator>
		<pubDate>Mon, 05 Jan 2009 11:28:38 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25679</guid>
		<description>Ian B, If I remember correctly the annual hackers conference challenges all comers to hack (i.e compromise the security of) the major OS&#039;s. Last year OSX took less than 30 seconds to fold, with XP and Vista close behind. Ubuntu was still standing strong when the conference finished. I can&#039;t seem to find a reference to this on the webs, though I do remember reading about it at the time. If anyone else can find a link, I&#039;d be grateful if you passed it on.

If you want to keep the cops from looking at your HDD use Linux, OpenBSD, Solaris, or BeOS. Open Source is generally far more secure than proprietory, closed source operating systems, more often than not because its prgogrammed and maintained by very skilled and motivated people, some of whom will either have been, or are hackers themselves and so know all the tricks.</description>
		<content:encoded><![CDATA[<p>Ian B, If I remember correctly the annual hackers conference challenges all comers to hack (i.e compromise the security of) the major OS&#8217;s. Last year OSX took less than 30 seconds to fold, with XP and Vista close behind. Ubuntu was still standing strong when the conference finished. I can&#8217;t seem to find a reference to this on the webs, though I do remember reading about it at the time. If anyone else can find a link, I&#8217;d be grateful if you passed it on.</p>
<p>If you want to keep the cops from looking at your HDD use Linux, OpenBSD, Solaris, or BeOS. Open Source is generally far more secure than proprietory, closed source operating systems, more often than not because its prgogrammed and maintained by very skilled and motivated people, some of whom will either have been, or are hackers themselves and so know all the tricks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: keith</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25666</link>
		<dc:creator>keith</dc:creator>
		<pubDate>Mon, 05 Jan 2009 09:32:07 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25666</guid>
		<description>Disk encryption like PGP is only effective against &quot;cold&quot; attacks where someone takes your computer and tries to read its contents. Once you&#039;ve powered up your PC and typed in the decrypt key to access your disk the malware also gets access.

If you&#039;re really paranoid, then use a Linux Live CD (e.g. Knoppix) and store your data on an encrypted USB drive mounted with &quot;no execute&quot; permission. Your online banking will then be completely safe from software keyloggers &amp; trojans. All you then have to worry about are hardware keyloggers, traffic sniffing and the security of your banks systems...

Oh b******r it, I think I&#039;ll go back to slate &amp; chalk.</description>
		<content:encoded><![CDATA[<p>Disk encryption like PGP is only effective against &#8220;cold&#8221; attacks where someone takes your computer and tries to read its contents. Once you&#8217;ve powered up your PC and typed in the decrypt key to access your disk the malware also gets access.</p>
<p>If you&#8217;re really paranoid, then use a Linux Live CD (e.g. Knoppix) and store your data on an encrypted USB drive mounted with &#8220;no execute&#8221; permission. Your online banking will then be completely safe from software keyloggers &amp; trojans. All you then have to worry about are hardware keyloggers, traffic sniffing and the security of your banks systems&#8230;</p>
<p>Oh b******r it, I think I&#8217;ll go back to slate &amp; chalk.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Även polisen kommer att kunna hacka sig in i din PC genom IPRED lagen</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25661</link>
		<dc:creator>Även polisen kommer att kunna hacka sig in i din PC genom IPRED lagen</dc:creator>
		<pubDate>Mon, 05 Jan 2009 08:18:27 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25661</guid>
		<description>[...] lite i smyg för att inte störa allmänheten. Effekterna blir omfattande säger Tim Worstall i sin blogg. Utan domstolsbeslut kan polisen eller M15 hacka sig in och hämta vilka uppgifter de [...]</description>
		<content:encoded><![CDATA[<p>[...] lite i smyg för att inte störa allmänheten. Effekterna blir omfattande säger Tim Worstall i sin blogg. Utan domstolsbeslut kan polisen eller M15 hacka sig in och hämta vilka uppgifter de [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael Taylor</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25658</link>
		<dc:creator>Michael Taylor</dc:creator>
		<pubDate>Mon, 05 Jan 2009 07:19:18 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25658</guid>
		<description>Does installing PGP whole disk encryption sort this one out?</description>
		<content:encoded><![CDATA[<p>Does installing PGP whole disk encryption sort this one out?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25653</link>
		<dc:creator>David</dc:creator>
		<pubDate>Mon, 05 Jan 2009 00:59:10 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25653</guid>
		<description>Thank God there are people who look out for others.</description>
		<content:encoded><![CDATA[<p>Thank God there are people who look out for others.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Roger Thornhill</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25651</link>
		<dc:creator>Roger Thornhill</dc:creator>
		<pubDate>Sun, 04 Jan 2009 21:44:33 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25651</guid>
		<description>I&#039;d like to see a comment by one of those federastic Labour jockeys who scoffed at getting 1984.

I think my MP needs a reminder...</description>
		<content:encoded><![CDATA[<p>I&#8217;d like to see a comment by one of those federastic Labour jockeys who scoffed at getting 1984.</p>
<p>I think my MP needs a reminder&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ian B</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25650</link>
		<dc:creator>Ian B</dc:creator>
		<pubDate>Sun, 04 Jan 2009 21:36:53 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25650</guid>
		<description>Keith, I&#039;d say that if a bluehat (haha!) hacker can see what OS you&#039;re using, you&#039;ve already lost the battle.</description>
		<content:encoded><![CDATA[<p>Keith, I&#8217;d say that if a bluehat (haha!) hacker can see what OS you&#8217;re using, you&#8217;ve already lost the battle.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: keith</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25649</link>
		<dc:creator>keith</dc:creator>
		<pubDate>Sun, 04 Jan 2009 21:33:26 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25649</guid>
		<description>All wifi is suspect! WEP can be cracked in minutes with suitable software (aircrack-ng). WPA has an exploitable flaw. WPA2 can be brute forced cracked in reasonable times using accelerated hardware (PC graphics cards turn out to be very good at the type of bulk calculation required) - google Elcomsoft.

Powerline ethernet broadcasts your traffic over mains electricity cables and can be seen outside your premises.

MS-Windows has more  holes than a Swiss cheese. You&#039;ve only got to look at the constant stream of patches from MS and virus scanner updates to see how bad.

Mac &amp; Linux are better but by no means perfect.

EM radiation from screens and keyboards can be pick up by suitable receivers.

“Is there any way we can protect our pcs against this?”

You can make life harder for hackers (black or white) by using Mac/Linux, encrypted disks, VPNs and wired networks but the bottom line is you cannot stop anybody with sufficient motivation and resource.</description>
		<content:encoded><![CDATA[<p>All wifi is suspect! WEP can be cracked in minutes with suitable software (aircrack-ng). WPA has an exploitable flaw. WPA2 can be brute forced cracked in reasonable times using accelerated hardware (PC graphics cards turn out to be very good at the type of bulk calculation required) &#8211; google Elcomsoft.</p>
<p>Powerline ethernet broadcasts your traffic over mains electricity cables and can be seen outside your premises.</p>
<p>MS-Windows has more  holes than a Swiss cheese. You&#8217;ve only got to look at the constant stream of patches from MS and virus scanner updates to see how bad.</p>
<p>Mac &amp; Linux are better but by no means perfect.</p>
<p>EM radiation from screens and keyboards can be pick up by suitable receivers.</p>
<p>“Is there any way we can protect our pcs against this?”</p>
<p>You can make life harder for hackers (black or white) by using Mac/Linux, encrypted disks, VPNs and wired networks but the bottom line is you cannot stop anybody with sufficient motivation and resource.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kay Tie</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25646</link>
		<dc:creator>Kay Tie</dc:creator>
		<pubDate>Sun, 04 Jan 2009 18:32:12 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25646</guid>
		<description>&quot;don’t use WiFi unless you’re confident as to the security aspects&quot;

I can recommend the new generation of power-line ethernet adapters. They plug into a mains socket, require no software, no Windows driver faff, and just work. Bit of a pain for laptops, but for desktops, printers, etc. they are great.</description>
		<content:encoded><![CDATA[<p>&#8220;don’t use WiFi unless you’re confident as to the security aspects&#8221;</p>
<p>I can recommend the new generation of power-line ethernet adapters. They plug into a mains socket, require no software, no Windows driver faff, and just work. Bit of a pain for laptops, but for desktops, printers, etc. they are great.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ian B</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25644</link>
		<dc:creator>Ian B</dc:creator>
		<pubDate>Sun, 04 Jan 2009 17:52:36 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25644</guid>
		<description>Use a router with a good hardware firewall, don&#039;t use WiFi unless you&#039;re confident as to the security aspects or having nothing you&#039;d prefer to remain private on your PC, don&#039;t share drives with sensitive information on them, wear two pairs of underpants at all times.</description>
		<content:encoded><![CDATA[<p>Use a router with a good hardware firewall, don&#8217;t use WiFi unless you&#8217;re confident as to the security aspects or having nothing you&#8217;d prefer to remain private on your PC, don&#8217;t share drives with sensitive information on them, wear two pairs of underpants at all times.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kay Tie</title>
		<link>http://timworstall.com/2009/01/04/oh-lovely/comment-page-1/#comment-25638</link>
		<dc:creator>Kay Tie</dc:creator>
		<pubDate>Sun, 04 Jan 2009 15:16:19 +0000</pubDate>
		<guid isPermaLink="false">http://timworstall.com/?p=5587#comment-25638</guid>
		<description>&quot;Is there any way we can protect our pcs against this?&quot;

Of course. Make sure you have WPA encryption on your wifi router, not WEP. Make sure your OS is kept up-to-date. And use a Mac where possible.

I don&#039;t expect the police to have any better hacking abilities than the malware community, who make a lot of money from phishing, botnets, etc. They have a lot more incentive than an employee of plod or even a software vendor to the Home Office (not that this will restrain the vendors in offering magic solutions to the Home Office).

The most effective technique, and one that is hard to resist, is where the police break in to your house and insert keyboard logger hardware into your machine. But I believe they still need a search warrant to do that.</description>
		<content:encoded><![CDATA[<p>&#8220;Is there any way we can protect our pcs against this?&#8221;</p>
<p>Of course. Make sure you have WPA encryption on your wifi router, not WEP. Make sure your OS is kept up-to-date. And use a Mac where possible.</p>
<p>I don&#8217;t expect the police to have any better hacking abilities than the malware community, who make a lot of money from phishing, botnets, etc. They have a lot more incentive than an employee of plod or even a software vendor to the Home Office (not that this will restrain the vendors in offering magic solutions to the Home Office).</p>
<p>The most effective technique, and one that is hard to resist, is where the police break in to your house and insert keyboard logger hardware into your machine. But I believe they still need a search warrant to do that.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Object Caching 447/447 objects using disk: basic

Served from: timworstall.com @ 2012-05-25 05:13:59 -->
