<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Bruce Schneier vs DJ Cuppycake &#8211; Event Showdown Part 1</title>
	<atom:link href="http://alphavilleherald.com/2009/06/bruce-schneier-vs-dj-cuppycake-event-showdown-part-1.html/feed" rel="self" type="application/rss+xml" />
	<link>http://alphavilleherald.com/2009/06/bruce-schneier-vs-dj-cuppycake-event-showdown-part-1.html</link>
	<description>Always Fairly Unbalanced</description>
	<lastBuildDate>Tue, 04 Oct 2016 13:18:56 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
	<item>
		<title>By: That guy</title>
		<link>http://alphavilleherald.com/2009/06/bruce-schneier-vs-dj-cuppycake-event-showdown-part-1.html/comment-page-1#comment-4758</link>
		<dc:creator>That guy</dc:creator>
		<pubDate>Sat, 06 Jun 2009 17:40:23 +0000</pubDate>
		<guid isPermaLink="false">http://localhost/wp_2/?p=267#comment-4758</guid>
		<description>q1.) Linden Lab bans players who publicly reveal security issues with SL. Without responsible disclosure, how is it possible to motivate Linden Lab to fix security issues in a timely fashion?

It isn&#039;t. They&#039;re hellbent on their own self destruction.


q3.)  Is the built-in web browser in the Second Life client a possible concern?

Absolutely. As it progresses it will need to be able to run java, javascript, vbscript and a plethora of other very common and popular scripting languages that introduce critical security problems. With that new functionality Linden Lab&#039;s Second Life client will become the IE of virtual worlds. Not a good thing. There are a lot of really huge security concerns and with more functionality we&#039;ll only see more security concerns. Think about this, if prims can display webpages including running scripting languages like javascript that are automatically run on the computers of everyone in the vicinity, is that not a valid security concern? This built in web browser in SL is going to work by the client directing the embedded browser to go wherever it is commanded to go. Of course the user must manipulate the client to manipulate the browser or else it is manipulated by visiting a sim where the user set a certain page to display,etc,etc. The simple fact is that scripting capabilities are an essential part of the internet now and so eventually LL will need to implement the most popular standards if they really want second life to become web 2.0, which IMO it doesn&#039;t really have a chance of being. Have you ever wondered why it&#039;s taking them so long to integrate this &#039;new&#039; html-on-a-prim functionality that they announced ages ago?? This is why.

q4.) How safe should we feel based on the &quot;McAfee SECURE - TESTED DAILY&quot; logo on Second Life&#039;s web-based storefront?

As a former malware author, I can tell you that you shouldn&#039;t feel safe at all. Firstly, McAfee is shit. The best virus scanner in existence only picks up about 60 percent of malware, I believe. I can&#039;t remember the exact figure but it was obscene. Basically there are millions of viruses, trojans, worms, and other nasties that your AV doesn&#039;t pick up. Guaranteed. So with those stats and with knowing that McAfee has created perhaps the most overrated software in existence, I&#039;d have to say that they suck especially hard for having a mcafee symbol on their website.
</description>
		<content:encoded><![CDATA[<p>q1.) Linden Lab bans players who publicly reveal security issues with SL. Without responsible disclosure, how is it possible to motivate Linden Lab to fix security issues in a timely fashion?</p>
<p>It isn&#8217;t. They&#8217;re hellbent on their own self destruction.</p>
<p>q3.)  Is the built-in web browser in the Second Life client a possible concern?</p>
<p>Absolutely. As it progresses it will need to be able to run java, javascript, vbscript and a plethora of other very common and popular scripting languages that introduce critical security problems. With that new functionality Linden Lab&#8217;s Second Life client will become the IE of virtual worlds. Not a good thing. There are a lot of really huge security concerns and with more functionality we&#8217;ll only see more security concerns. Think about this, if prims can display webpages including running scripting languages like javascript that are automatically run on the computers of everyone in the vicinity, is that not a valid security concern? This built in web browser in SL is going to work by the client directing the embedded browser to go wherever it is commanded to go. Of course the user must manipulate the client to manipulate the browser or else it is manipulated by visiting a sim where the user set a certain page to display,etc,etc. The simple fact is that scripting capabilities are an essential part of the internet now and so eventually LL will need to implement the most popular standards if they really want second life to become web 2.0, which IMO it doesn&#8217;t really have a chance of being. Have you ever wondered why it&#8217;s taking them so long to integrate this &#8216;new&#8217; html-on-a-prim functionality that they announced ages ago?? This is why.</p>
<p>q4.) How safe should we feel based on the &#8220;McAfee SECURE &#8211; TESTED DAILY&#8221; logo on Second Life&#8217;s web-based storefront?</p>
<p>As a former malware author, I can tell you that you shouldn&#8217;t feel safe at all. Firstly, McAfee is shit. The best virus scanner in existence only picks up about 60 percent of malware, I believe. I can&#8217;t remember the exact figure but it was obscene. Basically there are millions of viruses, trojans, worms, and other nasties that your AV doesn&#8217;t pick up. Guaranteed. So with those stats and with knowing that McAfee has created perhaps the most overrated software in existence, I&#8217;d have to say that they suck especially hard for having a mcafee symbol on their website.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cuppycake</title>
		<link>http://alphavilleherald.com/2009/06/bruce-schneier-vs-dj-cuppycake-event-showdown-part-1.html/comment-page-1#comment-4757</link>
		<dc:creator>Cuppycake</dc:creator>
		<pubDate>Sat, 06 Jun 2009 16:51:40 +0000</pubDate>
		<guid isPermaLink="false">http://localhost/wp_2/?p=267#comment-4757</guid>
		<description>Aww, you&#039;re a sweetheart.  Thanks for stopping by Pix. :)
</description>
		<content:encoded><![CDATA[<p>Aww, you&#8217;re a sweetheart.  Thanks for stopping by Pix. <img src='http://alphavilleherald.com/site/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Neo Citizen</title>
		<link>http://alphavilleherald.com/2009/06/bruce-schneier-vs-dj-cuppycake-event-showdown-part-1.html/comment-page-1#comment-4756</link>
		<dc:creator>Neo Citizen</dc:creator>
		<pubDate>Sat, 06 Jun 2009 11:57:54 +0000</pubDate>
		<guid isPermaLink="false">http://localhost/wp_2/?p=267#comment-4756</guid>
		<description>I was present at this event - Pixeleen hadn&#039;t done any research on the subject material being presented and assumed that because it was being presented IN Second Life, that it had something to do directly WITH Second Life - so naturally she was outraged because she couldn&#039;t commandeer the entire lecture.

She was so disruptive and spent so much time trying to shout down the lecturer that by the end of the event, half the audience had muted her, including the presenters.

A reporter&#039;s job is to report the news, not be the news.
</description>
		<content:encoded><![CDATA[<p>I was present at this event &#8211; Pixeleen hadn&#8217;t done any research on the subject material being presented and assumed that because it was being presented IN Second Life, that it had something to do directly WITH Second Life &#8211; so naturally she was outraged because she couldn&#8217;t commandeer the entire lecture.</p>
<p>She was so disruptive and spent so much time trying to shout down the lecturer that by the end of the event, half the audience had muted her, including the presenters.</p>
<p>A reporter&#8217;s job is to report the news, not be the news.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

