News (132)

Kaminsky details DNS flaw

Security researcher Dan Kaminsky has offered more details about a fundamental flaw in the Domain Name System and the extent of the vulnerability. Read more »

UK hacker to face US court

A British man accused of hacking into US military and NASA computer systems today lost his appeal against extradition to face trial. Read more »

DNS disaster: first attacks reported

The first attacks that are likely to have stemmed from a serious Domain Name System flaw have been reported. Read more »

Georgian president suffers cyberattack

The website of the Georgian president was the subject of a distributed-denial-of-service attack over the weekend. Read more »

Microsoft probing ActiveX attacks targeting Access feature

Microsoft has issued a security advisory warning about targeted attacks being launched that exploit a hole in the ActiveX control for the Snapshot Viewer in the Microsoft Access database management system. Read more »

Google pleads with Viacom for YouTube privacy

Viacom is getting its hands on some of YouTube's sensitive user data as a result of the copyright-infringement lawsuit the conglomerate filed a year ago. Read more »

Google's changes rely on guinea pig users

Google is using users as crash test dummies to measure exactly what changes it should make to its main search website — both to its famously Spartan search box and to the results it produces. Read more »

Web banking: It's time to write down your password

Banks should stop forcing customers to create long, alphanumeric passwords because they can't protect against today's threats, according to AT&T computing researcher William Cheswick Read more »

Has Windows Vista's UAC feature failed Microsoft?

Experts agree that Microsoft's Windows Vista is relatively well-protected but its security features — such as User Account Control (UAC) — have been highlighted by security experts as one reason why the operating system is far less popular than its predecessor, Windows XP. Read more »

Seek.com.au targeted by e-mail harvesting tool

Security researchers have discovered an e-mail harvesting tool that was pre-configured to target Seek.com.au's candidate database — but a Seek executive claims its database is immune to such an attack. Read more »

Features (312)

Build Web applications without writing code

This article gives an overview of Iceberg -- a tool for building Web application without writing code. Read more »

Secure ASP.NET 2.0 sites with Membership API

Beginning with ASP.NET 2.0, the Membership API was added to simplify adding security to a Web application. This article explains how to use the Membership API with a SQL Server back-end. Read more »

Running totals in SQL Server queries

This article demonstrates how running totals are simple to create in SQL Server queries once you understand the requirements. Read more »

Moving the Tempdb and Master Database in SQL Server

This article walks you through the process of moving the Master and Tempdb databases to different drives. Read more »

Capturing SQL Server 2005 database file size information

It's very important to capture trends of the sizes of your SQL Server 2005 database because it allows you to plan for future space needs, notice types of problems, and plan for time periods of heavy volume. I'll show you the simple method that I use to capture this information. Read more »

What does a DBA do all day?

Data integrity is a DBA's number one responsibility, but do you know what else they do all day? Read more »

Hacking with no technology

The typical image of a hacker is a kid hunched over his keyboard in the wee hours of the night staring at commands on his computer screen that unlock the secrets of the national government. But the woman sitting next to you at Starbucks fiddling with her digital camera could be just as dangerous. Read more »

Seamlessly integrate applications with eBay using its Windows SDK

The eBay Windows SDK allows you to easily access eBay data within your application. Tony Patton gives you an overview of the functionality provided by the eBay Web services API. Read more »

Realise the flexibility of OpenSSH

OpenSSH is one of the most useful tools available. With it, you can access systems remotely and securely, transfer files securely, execute single commands on remote systems, secure normally insecure services, and much more. Read more »

Create cross-platform database-driven applications with JDBC

The Java Database Connectivity (JDBC) API offers a unified interface to different databases, providing a series of generic functions that are internally translated into native function calls. This makes it extremely easy to create database-driven applications that work across different RDBMS types. Read more »

Blog (18)

How to Lifestream with WordPress

Brendon Chase [blogs:codemonkeybusiness] -- Lifestreaming is the act of collecting and publishing all of your social networking activities in one stream. Here's the easy way to get started using your own install of WordPress. Read more »

Targeted for hacking by reporters at my table

Staff [blogs:syslog] -- I should have known it was only a matter of time. I've been covering security conferences on and off for about 14 years and considered myself lucky not to have been hacked, that I knew of. Until Thursday. Read more »

Software in the courts

Staff [blogs:syslog] -- In week's Roundup explores Google's assertion that privacy no longer exists, the UK-based NASA hacker loses his extradition appeal, Microsoft becomes a sponsor of the Apache Software Foundation and the Australian Tax Office chooses Windows and only Windows, again, for electronic submissions. Read more »

One ID to rule them all

Lana Kovacevic [blogs:webanatomy] -- OpenID is an open-source mechanism enabling you to use a single online identity to log-in to different websites that support OpenID. Read more »

Confessions of an accessibility sadist

Chris Duckett [blogs:betaliving] -- If your mouse dies because of a software update, most people would rollback the update -- a small minority will continue to move forward regardless. All in the name of science and testing the world of accessibility. Read more »

Assumption-based Hacking 101

Chris Duckett [blogs:betaliving] -- High-level thinking leads to assumptions, and assumptions are the mother of all mistakes -- consequently the best place to find a security hole is in a place where the programmer has made an incorrect assumption. Read more »

Quick Tip: Forwarding X11 to OS X

Chris Duckett [blogs:betaliving] -- Just because you are on a Mac doesn't mean you can't run your Linux applications. Here's how you can bring penguin power to your Mac. Read more »

Firefox 3's better performance and memory improvements

Staff [blogs:syslog] -- As beta 5 is due to come out next week, I take a look at some of the new features and improvements in Firefox 3. Read more »

Wireless theft -- what's the harm?

Staff [blogs:syslog] -- Hand up if you have logged in to use some poor schmuck's unprotected wireless connection to overcome a bandwidth drought? Read more »

Just how much memory is Firefox using?

Nick Gibson [blogs:byteclub] -- According to our logs 40% of you use Firefox: can you tell how much memory it's using? Here's a few tricks you should know if you're trying to cut it down to size. Read more »

Log in


Sign up | Forgot your password?

  • Chris Duckett Safari gets Gears

    Since its release in May last year, Gears has supported only Internet Explorer and Firefox browsers. With the addition of Safari into the Gears fold, it closes the loop of major browsers to support Gears Read more »

    -- posted by Chris Duckett

  • Renai LeMay MyPerfect.com.au has potential

    Victorian Web start-up My Perfect has a strong story and rationale for why it will succeed. But it has to overcome some challenges and design flaws first. Read more »

    -- posted by Renai LeMay

  • Brendon Chase Blog against poverty

    Worldwide Blog Action Day is 15 October, in 2008 the goal is to raise awareness and conversation around the worldwide topic of poverty and in the process raise money for the cause. Who's in? Read more »

    -- posted by Brendon Chase

What's on?