I am unavailable on the tenth, but I have confirmed the room.

Sean Quinlan s...@quinlan.org has agreed to act as Facilitator. RSVP to him
next weekend/week.  Folks working on something should volunteer to speak
for a minute or an hour  to him.

We still need a speaker.

Perhaps someone would like to explain the "new" multi-language web DoS
threat that doesn't affect Perl (but affects Python & PHP).

http://www.nruns.com/_downloads/advisory28122011.pdf
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-4885
https://isc.sans.edu/diary.html?storyid=12286
http://www.hnsearch.com/search#request/all&q=hash+collision

Reported 2003
http://www.cs.rice.edu/~scrosby/hash/CrosbyWallach_UsenixSec2003.pdf

Fixed in Perl 2005
http://perldoc.perl.org/perlsec.html#Algorithmic-Complexity-Attacks



This will be the last time in the "summer" room  E51-*376*.
We'll return to old traditional E51-*372* for Feb - May. (confirmed)

Speaking of security ... if your home (or office) router has WPS simple
setup feature, *TURN WPS OFF. NOW.*
Wi-Fi Protected Setup (WPS) PIN Brute Force Vulnerability
https://isc.sans.edu/diary/Wi-Fi+Protected+Setup+WPS+PIN+Brute+Force+Vulnerability/12292

-- 
Bill
@n1vux bill.n1...@gmail.com
_______________________________________________
Boston-pm-announce mailing list
Boston-pm-announce@mail.pm.org
http://mail.pm.org/mailman/listinfo/boston-pm-announce

Reply via email to